Package: nodejs Version: 18.19.0+dfsg-6~deb12u2 CVE: CVE-2025-23166 Severity: Important
Hi, The following vulnerability affects the Bookworm nodejs package version 18.19.0+dfsg-6~deb12u2. CVE-2025-23166<https://security-tracker.debian.org/tracker/CVE-2025-23166>: Improper error handling in async cryptographic operations crashes process This issue appears to have already been fixed in the unstable release (https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1105832). Are there any plans to backport the fix to the Bookworm release as well? I appreciate your time and guidance on this matter. Regards, Syeda Shagufta Naaz
-- Pkg-javascript-devel mailing list [email protected] https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/pkg-javascript-devel
