Back to bug 2230948

Who When What Removed Added
Mauro Matteo Cascella 2023-08-10 10:15:09 UTC Blocks 2230962
Mauro Matteo Cascella 2023-08-10 10:16:08 UTC Depends On 2230966, 2230967, 2230965, 2230964
Sandipan Roy 2023-08-22 07:05:30 UTC Alias TRIAGE-CVE-2023-32002 CVE-2023-32002
Summary TRIAGE-CVE-2023-32002 nodejs: Permissions policies can be bypassed via Module._load CVE-2023-32002 nodejs: Permissions policies can be bypassed via Module._load
Sandipan Roy 2023-08-22 07:06:39 UTC Depends On 2233380, 2233374, 2233376, 2233377, 2233373, 2233371, 2233381, 2233375, 2233372, 2233378
Sandipan Roy 2023-08-22 07:27:15 UTC Doc Text A vulnerability was found in NodeJS. This security issue occurs as the use of Module._load() can bypass the policy mechanism and require modules outside of the policy.json definition for a given module.
Sandipan Roy 2023-08-23 15:07:03 UTC Depends On 2233856, 2233855, 2233857, 2233860, 2233859, 2233862, 2233858, 2233861
RHEL Program Management Team 2023-08-23 16:32:26 UTC Depends On 2233893
RHEL Program Management Team 2023-08-23 16:32:33 UTC Depends On 2233894
RHEL Program Management Team 2023-08-24 10:40:32 UTC Depends On 2234405
RHEL Program Management Team 2023-08-24 10:41:50 UTC Depends On 2234410
errata-xmlrpc 2023-09-26 14:50:41 UTC Link ID Red Hat Product Errata RHSA-2023:5361
errata-xmlrpc 2023-09-26 14:51:37 UTC Link ID Red Hat Product Errata RHSA-2023:5363
errata-xmlrpc 2023-09-26 14:52:09 UTC Link ID Red Hat Product Errata RHSA-2023:5360
errata-xmlrpc 2023-09-26 14:58:50 UTC Link ID Red Hat Product Errata RHSA-2023:5362

Back to bug 2230948