CVE-2021-22930
Summary
| CVE | CVE-2021-22930 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-10-07 14:15:00 UTC |
| Updated | 2024-01-05 10:15:00 UTC |
| Description | Node.js before 16.6.0, 14.17.4, and 12.22.4 is vulnerable to a use after free attack where an attacker might be able to exploit the memory corruption, to change process behavior. |
NVD Known Affected Configurations (CPE 2.3)
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 159398 Oracle Enterprise Linux Security Update for nodejs:12 (ELSA-2021-3623)
- 159408 Oracle Enterprise Linux Security Update for nodejs:14 (ELSA-2021-3666)
- 179690 Debian Security Update for nodejs (CVE-2021-22930)
- 181111 Debian Security Update for nodejs (DLA 3137-1)
- 239590 Red Hat Update for rh-nodejs12-nodejs and rh-nodejs12-nodejs-nodemon (RHSA-2021:3281)
- 239591 Red Hat Update for rh-nodejs14-nodejs and rh-nodejs14-nodejs-nodemon (RHSA-2021:3280)
- 239645 Red Hat Update for nodejs:12 (RHSA-2021:3623)
- 239654 Red Hat Update for nodejs:12 (RHSA-2021:3639)
- 239655 Red Hat Update for nodejs:12 (RHSA-2021:3638)
- 239658 Red Hat Update for nodejs:14 (RHSA-2021:3666)
- 375877 Kibana Multiple Security Vulnerabilities (ESA-2021-21, ESA-2021-22, ESA-2021-24)
- 375890 Node.js Memory Corruption Vulnerability July 2021
- 377157 Alibaba Cloud Linux Security Update for nodejs:14 (ALINUX3-SA-2021:0072)
- 500443 Alpine Linux Security Update for nodejs
- 501452 Alpine Linux Security Update for nodejs
- 501885 Alpine Linux Security Update for nodejs-current
- 504206 Alpine Linux Security Update for nodejs
- 505101 Alpine Linux Security Update for nodejs-current
- 690032 Free Berkeley Software Distribution (FreeBSD) Security Update for node.js (b092bd4f-1b16-11ec-9d9d-0022489ad614)
- 690033 Free Berkeley Software Distribution (FreeBSD) Security Update for node.js (f53dab71-1b15-11ec-9d9d-0022489ad614)
- 710820 Gentoo Linux c-ares Multiple Vulnerabilities (GLSA 202401-02)
- 750993 SUSE Enterprise Linux Security Update for nodejs8 (SUSE-SU-2021:2790-1)
- 751061 OpenSUSE Security Update for nodejs12 (openSUSE-SU-2021:2875-1)
- 751071 OpenSUSE Security Update for nodejs12 (openSUSE-SU-2021:1214-1)
- 751093 OpenSUSE Security Update for nodejs10 (openSUSE-SU-2021:2953-1)
- 751112 OpenSUSE Security Update for nodejs10 (openSUSE-SU-2021:1239-1)
- 751171 OpenSUSE Security Update for nodejs14 (openSUSE-SU-2021:3211-1)
- 751178 OpenSUSE Security Update for nodejs14 (openSUSE-SU-2021:1313-1)
- 751204 OpenSUSE Security Update for nodejs8 (openSUSE-SU-2021:3294-1)
- 751229 OpenSUSE Security Update for nodejs8 (openSUSE-SU-2021:1343-1)
- 752490 SUSE Enterprise Linux Security Update for nodejs10 (SUSE-SU-2022:2855-1)
- 901767 Common Base Linux Mariner (CBL-Mariner) Security Update for nodejs (6742-1)
- 940217 AlmaLinux Security Update for nodejs:12 (ALSA-2021:3623)
- 940388 AlmaLinux Security Update for nodejs:14 (ALSA-2021:3666)