Fedora Account System
Red Hat Associate
Red Hat Customer
A flaw in Node.js HTTP/2 client allows a server to send an unlimited number of ORIGIN frames, which could lead to an Out of Memory error on the client. This vulnerability affects all supported release lines: **Node.js 22**, **Node.js 24**, and **Node.js 26**.
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2026:35841 https://access.redhat.com/errata/RHSA-2026:35841
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2026:35842 https://access.redhat.com/errata/RHSA-2026:35842
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:35891 https://access.redhat.com/errata/RHSA-2026:35891
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:35892 https://access.redhat.com/errata/RHSA-2026:35892
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2026:39868 https://access.redhat.com/errata/RHSA-2026:39868
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2026:41947 https://access.redhat.com/errata/RHSA-2026:41947