|
Message-ID: <ZNP6L6elsrB8pFsh@llamedos.localdomain> Date: Wed, 9 Aug 2023 21:42:23 +0100 From: Ken Moffat <zarniwhoop@...world.com> To: "oss-security@...ts.openwall.com" <oss-security@...ts.openwall.com> Subject: Node.js security updates for August Reading the blog entry for this, https://nodejs.org/en/blog/vulnerability/august-2023-security-releases it appears that ALL of these vulnerabilities are for an experimental feature ? If so, is it practical to disable the feature when building current LTS releases, or indeed when building current release ? If not, is there any easy way to determine what uses it ? ĸen -- Ankh-Morpork! It's a wonderful town! The trolls are up and the dwarfs are down! Slightly better than living in a hole in the ground! Ankh-Morpork! It's a wonderfuuuuullll townnn!
Powered by blists - more mailing lists
Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.
Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.