QID 354537

QID 354537: Amazon Linux Security Advisory for nodejs : ALAS-2022-214

Amazon has released a security update for nodejs to fix the vulnerabilities. Affected Product:Amazon Linux 2022

Successful exploitation of this vulnerability could lead to a securitybreach or could affect integrity, availability, and confidentiality.

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution
    Please refer to Amazon advisory: ALAS-2022-214 for affected packages and patching details, or update with your package manager.
    Vendor References
    Software Advisories
    Advisory ID Software Component Link
    ALAS-2022-214 amazon linux 2022 URL Logo alas.aws.amazon.com/AL2022/ALAS-2022-214.html