In some cases Node.js did does not clear the OpenSSL error stack after operations that may set it. This may lead to false positive errors during subsequent cryptographic operations that happen to be on the same thread. This in turn could be used to cause a denial of service.
Created nodejs tracking bugs for this issue:
Affects: epel-all [bug 2172173]
Affects: fedora-all [bug 2172174]
Created nodejs:16/nodejs tracking bugs for this issue:
Affects: fedora-all [bug 2172171]
Created nodejs:18/nodejs tracking bugs for this issue:
Affects: fedora-all [bug 2172172]