node: July 7th 2022 Security Releases
authorHirokazu MORIKAWA <morikw2@gmail.com>
Fri, 8 Jul 2022 23:26:01 +0000 (08:26 +0900)
committerJosef Schlehofer <pepe.schlehofer@gmail.com>
Mon, 11 Jul 2022 08:20:25 +0000 (10:20 +0200)
commit81cd7959f38e05db07846cc5ba8dcd06146a46e7
tree738cb7d22262a0e11cc310bae9f0da1c99af327b
parentd2a2c005dae3b641838ca6b41976664bda08df5e
node: July 7th 2022 Security Releases

Update to v16.16.0

Release for the following issues:
HTTP Request Smuggling - Flawed Parsing of Transfer-Encoding (Medium)(CVE-2022-32213)
HTTP Request Smuggling - Improper Delimiting of Header Fields (Medium)(CVE-2022-32214)
HTTP Request Smuggling - Incorrect Parsing of Multi-line Transfer-Encoding (Medium)(CVE-2022-32215)
DNS rebinding in --inspect via invalid IP addresses (High)(CVE-2022-32212)

https://nodejs.org/en/blog/vulnerability/july-2022-security-releases/

No vulnerabilities related with openssl (uses system openssl)

Signed-off-by: Hirokazu MORIKAWA <morikw2@gmail.com>
(cherry picked from commit 8db0d09823764d50b38ff27a9b13cac7fa46bdd2)
lang/node/Makefile