Package: nodejs
Version: 18.19.0+dfsg-6~deb12u2
CVE: CVE-2025-23166
Severity: Important

Hi,

The following vulnerability affects the Bookworm nodejs package version 
18.19.0+dfsg-6~deb12u2.

CVE-2025-23166<https://security-tracker.debian.org/tracker/CVE-2025-23166>:
Improper error handling in async cryptographic operations crashes process

This issue appears to have already been fixed in the unstable release 
(https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1105832). Are there any 
plans to backport the fix to the Bookworm release as well?

I appreciate your time and guidance on this matter.

Regards,
Syeda Shagufta Naaz

-- 
Pkg-javascript-devel mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/pkg-javascript-devel

Reply via email to