0
0
mirror of https://github.com/nodejs/node.git synced 2024-11-28 06:28:40 +01:00
nodejs/doc
Myles Borins f172c5ad5b
2021-08-31, Version 14.17.6 'Fermium' (LTS)
This is a security release.

Notable changes:

These are vulnerabilities in the node-tar, arborist, and npm cli modules which
are related to the initial reports and subsequent remediation of node-tar
vulnerabilities CVE-2021-32803 (https://github.com/advisories/GHSA-r628-mhmh-qjhw)
and CVE-2021-32804 (https://github.com/advisories/GHSA-3jfq-g458-7qm9).
Subsequent internal security review of node-tar and additional external bounty
reports have resulted in another 5 CVE being remediated in core npm CLI
dependencies including node-tar, and npm arborist.

You can read more about it in:

* CVE-2021-37701: https://github.com/npm/node-tar/security/advisories/GHSA-9r2w-394v-53qc
* CVE-2021-37712: https://github.com/npm/node-tar/security/advisories/GHSA-qq89-hq3f-393p
* CVE-2021-37713: https://github.com/npm/node-tar/security/advisories/GHSA-5955-9wpr-37jh
* CVE-2021-39134: https://github.com/npm/arborist/security/advisories/GHSA-2h3h-q99f-3fhc
* CVE-2021-39135: https://github.com/npm/arborist/security/advisories/GHSA-gmw6-94gg-2rc2

PR-URL: https://github.com/nodejs-private/node-private/pull/287
2021-08-31 10:56:51 -04:00
..
api doc: move reference to OpenSSL flags SSL_OP_* 2021-08-30 23:42:11 +00:00
api_assets doc: fix color contrast issue in light mode 2021-08-06 17:30:15 +00:00
changelogs 2021-08-31, Version 14.17.6 'Fermium' (LTS) 2021-08-31 10:56:51 -04:00
guides doc: document JavaScript tool for benchmark comparison 2021-08-28 08:57:49 -07:00
.eslintrc.yaml
abi_version_registry.json src: update NODE_MODULE_VERSION to 96 2021-08-30 21:02:58 +02:00
first_timer_badge.png
full-white-stripe.jpg
node.1 repl: enable --experimental-repl-await /w opt-out 2021-07-16 15:14:26 -07:00
osx_installer_logo.png
template.html
thin-white-stripe.jpg