Skip to content

Commit 28f557b

Browse files
authored
1 parent 33df913 commit 28f557b

2 files changed

Lines changed: 205 additions & 0 deletions

File tree

locale/en/blog/release/v12.22.6.md

Lines changed: 104 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,104 @@
1+
---
2+
date: 2021-08-31T15:03:32.801Z
3+
version: 12.22.6
4+
category: release
5+
title: Node v12.22.6 (LTS)
6+
slug: node-v12-22-6
7+
layout: blog-post.hbs
8+
author: Myles Borins
9+
---
10+
11+
### Notable Changes
12+
13+
These are vulnerabilities in the node-tar, arborist, and npm cli modules which
14+
are related to the initial reports and subsequent remediation of node-tar
15+
vulnerabilities [CVE-2021-32803](https://github.com/advisories/GHSA-r628-mhmh-qjhw)
16+
and [CVE-2021-32804](https://github.com/advisories/GHSA-3jfq-g458-7qm9).
17+
Subsequent internal security review of node-tar and additional external bounty
18+
reports have resulted in another 5 CVE being remediated in core npm CLI
19+
dependencies including node-tar, and npm arborist.
20+
21+
You can read more about it in:
22+
23+
* [CVE-2021-37701](https://github.com/npm/node-tar/security/advisories/GHSA-9r2w-394v-53qc)
24+
* [CVE-2021-37712](https://github.com/npm/node-tar/security/advisories/GHSA-qq89-hq3f-393p)
25+
* [CVE-2021-37713](https://github.com/npm/node-tar/security/advisories/GHSA-5955-9wpr-37jh)
26+
* [CVE-2021-39134](https://github.com/npm/arborist/security/advisories/GHSA-2h3h-q99f-3fhc)
27+
* [CVE-2021-39135](https://github.com/npm/arborist/security/advisories/GHSA-gmw6-94gg-2rc2)
28+
29+
### Commits
30+
31+
* [[`a0154b586b`](https://github.com/nodejs/node/commit/a0154b586b)] - **deps**: update archs files for OpenSSL-1.1.1l (Richard Lau) [#39869](https://github.com/nodejs/node/pull/39869)
32+
* [[`7a95637eb7`](https://github.com/nodejs/node/commit/7a95637eb7)] - **deps**: upgrade openssl sources to 1.1.1l (Richard Lau) [#39869](https://github.com/nodejs/node/pull/39869)
33+
* [[`840b0ffff6`](https://github.com/nodejs/node/commit/840b0ffff6)] - **deps**: upgrade npm to 6.14.15 (Darcy Clarke) [#39856](https://github.com/nodejs/node/pull/39856)
34+
35+
Windows 32-bit Installer: https://nodejs.org/dist/v12.22.6/node-v12.22.6-x86.msi<br>
36+
Windows 64-bit Installer: https://nodejs.org/dist/v12.22.6/node-v12.22.6-x64.msi<br>
37+
Windows 32-bit Binary: https://nodejs.org/dist/v12.22.6/win-x86/node.exe<br>
38+
Windows 64-bit Binary: https://nodejs.org/dist/v12.22.6/win-x64/node.exe<br>
39+
macOS 64-bit Installer: https://nodejs.org/dist/v12.22.6/node-v12.22.6.pkg<br>
40+
macOS Intel 64-bit Binary: https://nodejs.org/dist/v12.22.6/node-v12.22.6-darwin-x64.tar.gz<br>
41+
Linux 64-bit Binary: https://nodejs.org/dist/v12.22.6/node-v12.22.6-linux-x64.tar.xz<br>
42+
Linux PPC LE 64-bit Binary: https://nodejs.org/dist/v12.22.6/node-v12.22.6-linux-ppc64le.tar.xz<br>
43+
Linux s390x 64-bit Binary: https://nodejs.org/dist/v12.22.6/node-v12.22.6-linux-s390x.tar.xz<br>
44+
AIX 64-bit Binary: https://nodejs.org/dist/v12.22.6/node-v12.22.6-aix-ppc64.tar.gz<br>
45+
SmartOS 64-bit Binary: https://nodejs.org/dist/v12.22.6/node-v12.22.6-sunos-x64.tar.xz<br>
46+
ARMv7 32-bit Binary: https://nodejs.org/dist/v12.22.6/node-v12.22.6-linux-armv7l.tar.xz<br>
47+
ARMv8 64-bit Binary: https://nodejs.org/dist/v12.22.6/node-v12.22.6-linux-arm64.tar.xz<br>
48+
Source Code: https://nodejs.org/dist/v12.22.6/node-v12.22.6.tar.gz<br>
49+
Other release files: https://nodejs.org/dist/v12.22.6/<br>
50+
Documentation: https://nodejs.org/docs/v12.22.6/api/
51+
52+
### SHASUMS
53+
54+
```
55+
-----BEGIN PGP SIGNED MESSAGE-----
56+
Hash: SHA256
57+
58+
eb2fc7741587f5149178265cbc5b244d9a9cffb6a5fe62e20ee966d57ec9217a node-v12.22.6-aix-ppc64.tar.gz
59+
2124e9e17bf6b81ad579223f8efff537238c9cace17721e60614c5091f00e2d1 node-v12.22.6-darwin-x64.tar.gz
60+
699eaa1550e79fdcd3d5f5080958a42b88f36cfe57760572a3a53e0d358f1ea6 node-v12.22.6-darwin-x64.tar.xz
61+
85a6cb008dc40e97a3d1f8e3825d8b74210ecbee7d0d5177d1b80c942f3576a8 node-v12.22.6-headers.tar.gz
62+
0782ad32a8e2d11e7da6d546ea068456effe1f228100f74ac98851b508692b0f node-v12.22.6-headers.tar.xz
63+
f65bf376b6b074b78240ea84d0ab7ca6cacb34c1c066b6653d76045a38565bc2 node-v12.22.6-linux-arm64.tar.gz
64+
39b1ee686c78315c04593d2e216595d052ae3378d9e50a0a72d8f2dc95e69e58 node-v12.22.6-linux-arm64.tar.xz
65+
90fdb1c46132c019d97c8cc40f0c02b01fa7dddfe733b030668c512112273b00 node-v12.22.6-linux-armv7l.tar.gz
66+
a3495fb6361fdb05266b5a294448a24d0a97c8f1419422986083a32804109029 node-v12.22.6-linux-armv7l.tar.xz
67+
46b1adefb66c525f519b5d0c918bd52650b061fa49ad2a1f7309dc7ba137ed35 node-v12.22.6-linux-ppc64le.tar.gz
68+
e05ac6cf72cd28e201b96971858f6d6367bc08568056c92e918329b63c42f449 node-v12.22.6-linux-ppc64le.tar.xz
69+
5d01cc9b1ac70d55c4cc24ab337675dfbf194241436f8a21cdc129b2643de5a5 node-v12.22.6-linux-s390x.tar.gz
70+
5f9b580fc0d9cb412c0482ede23de2c68063942fecd44565cc0e509ed06b4d02 node-v12.22.6-linux-s390x.tar.xz
71+
6e5ce9cc7dcd31b182730cd662b1813c201fa98089e1013db4abd141716852dc node-v12.22.6-linux-x64.tar.gz
72+
80fc80cdb3d829ea4d752c2e52067a426f6c4fd629ecca5a858d268af8d5ec7e node-v12.22.6-linux-x64.tar.xz
73+
cc854edac9b82a8b816c7f658c04fcd3a3748479fe0dcd2e5bc26dcd08ba4c24 node-v12.22.6.pkg
74+
39727bd2853a3fc98e9f8fa97612e1901ce5c7c9070b5e14ed709b70e2fe3818 node-v12.22.6-sunos-x64.tar.gz
75+
241fba8cb47dc0753e2baeab9c9d64b4c5bffa60b6e17697589b15c80e7a9bd3 node-v12.22.6-sunos-x64.tar.xz
76+
02763dcf6532a997143b03c1f7d23552a3bd19ddcad1fd2425956db7596cbc9c node-v12.22.6.tar.gz
77+
c2022f16b8f689620c3472c2b5261fdabbd0ab976bf9ac3b7db6747a2e9b0f7a node-v12.22.6.tar.xz
78+
49ab4062f830a25eb2904281bbbda6a3fa2b7080bc2bdf73695b5c2b78597c89 node-v12.22.6-win-x64.7z
79+
d35a21d6d7b517c6bf4132abfbbdd447dfe46f5e1de3194d5f4152395a1ac6a2 node-v12.22.6-win-x64.zip
80+
e06b427d77274a650d6599fcffb09d3450fee8e4209dc6c8eb1d5b148b721500 node-v12.22.6-win-x86.7z
81+
a62cdc9449973f2251b6a77365f36e00ab34d6ab2d179c8a8e4f0482282f8835 node-v12.22.6-win-x86.zip
82+
a3f5a626a60ec9ad78cbd7162c6b847efd59fc36195a203316d47956c3081017 node-v12.22.6-x64.msi
83+
4c1559f0eab12a27a8f344791b98cfa71eb86847722d2c27f85124dad89857f2 node-v12.22.6-x86.msi
84+
b2edda82b5dd4a57c8e8971d0e15dcd5032166f6fc0624d48d5c08c4c42b4342 win-x64/node.exe
85+
28e5c24831deedbf4fb8a9560f2c4f95205479c589f54a9a53ec346f6a5cf8bf win-x64/node.lib
86+
779755808bcbe3ba35c3e17d8e50574bac050b4cc6a03ed45707cc28f4905674 win-x64/node_pdb.7z
87+
030414c7a5d69b4e76b4ab3d6fcfe148c644207f6f64dcfbcc9556967091dec4 win-x64/node_pdb.zip
88+
4cff7813ce2eee6373c74be8c9663100e83eb1c59454b6de73d9b2ee07850c3e win-x86/node.exe
89+
dad0e6bef1c45f4f43fbf84c33df6b910ace8122eff3f8d39d5ebecd25320ba4 win-x86/node.lib
90+
9ab6df86f89fdb58dc833c5fdafe2cf7472012e397501e8d69ad666e06e7ecb9 win-x86/node_pdb.7z
91+
fffe9a7d636045cd3c836e5fafde830cc2a6fe01607e6d6686da67f7bf6311e3 win-x86/node_pdb.zip
92+
-----BEGIN PGP SIGNATURE-----
93+
94+
iQEzBAEBCAAdFiEEDv/hvO/ZyE49CYFSkzsB9AtcqUYFAmEuQ80ACgkQkzsB9Atc
95+
qUb1Ugf8CFIAKY0baA/DqoBMQ6TgROy39cXBuQPV+eczQA7tUrkabbwjoacgB0nV
96+
xrtf5Q8jKZb0ooypyHmNBFlZQmhc/zvM4tDuKilSwiM1kRkZJ8zKYPGhxGz+2oUG
97+
IeNhP2//lfOFS/Sc1YEi6xTGjehnRYQv/K5s8LV+TpuFJZzsXC2myxkEF68zeYa5
98+
tqIEe6HSpmD6TMfKCXsXE6sUlmmdalm7roXoy+c6syBGsBMZZV972N/LZaROQOyM
99+
r8z11IbUsJzoTr91OFCV+xHGbA9Z+0Dda0yzB2T9gF2NkierCzMEc/Auexi35HoP
100+
bVw08kC1SyRLLGUBzqxQ9vFZawkYFA==
101+
=zmbX
102+
-----END PGP SIGNATURE-----
103+
104+
```

locale/en/blog/release/v14.17.6.md

Lines changed: 101 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,101 @@
1+
---
2+
date: 2021-08-31T15:03:39.337Z
3+
version: 14.17.6
4+
category: release
5+
title: Node v14.17.6 (LTS)
6+
slug: node-v14-17-6
7+
layout: blog-post.hbs
8+
author: Myles Borins
9+
---
10+
11+
### Notable Changes
12+
13+
These are vulnerabilities in the node-tar, arborist, and npm cli modules which
14+
are related to the initial reports and subsequent remediation of node-tar
15+
vulnerabilities [CVE-2021-32803](https://github.com/advisories/GHSA-r628-mhmh-qjhw)
16+
and [CVE-2021-32804](https://github.com/advisories/GHSA-3jfq-g458-7qm9).
17+
Subsequent internal security review of node-tar and additional external bounty
18+
reports have resulted in another 5 CVE being remediated in core npm CLI
19+
dependencies including node-tar, and npm arborist.
20+
21+
You can read more about it in:
22+
23+
* [CVE-2021-37701](https://github.com/npm/node-tar/security/advisories/GHSA-9r2w-394v-53qc)
24+
* [CVE-2021-37712](https://github.com/npm/node-tar/security/advisories/GHSA-qq89-hq3f-393p)
25+
* [CVE-2021-37713](https://github.com/npm/node-tar/security/advisories/GHSA-5955-9wpr-37jh)
26+
* [CVE-2021-39134](https://github.com/npm/arborist/security/advisories/GHSA-2h3h-q99f-3fhc)
27+
* [CVE-2021-39135](https://github.com/npm/arborist/security/advisories/GHSA-gmw6-94gg-2rc2)
28+
29+
### Commits
30+
31+
* [[`5b3f70bfb5`](https://github.com/nodejs/node/commit/5b3f70bfb5)] - **deps**: update archs files for OpenSSL-1.1.1l (Richard Lau) [#39868](https://github.com/nodejs/node/pull/39868)
32+
* [[`71372625ae`](https://github.com/nodejs/node/commit/71372625ae)] - **deps**: upgrade openssl sources to 1.1.1l (Richard Lau) [#39868](https://github.com/nodejs/node/pull/39868)
33+
* [[`4276984803`](https://github.com/nodejs/node/commit/4276984803)] - **deps**: upgrade npm to 6.14.15 (Darcy Clarke) [#39856](https://github.com/nodejs/node/pull/39856)
34+
35+
Windows 32-bit Installer: https://nodejs.org/dist/v14.17.6/node-v14.17.6-x86.msi<br>
36+
Windows 64-bit Installer: https://nodejs.org/dist/v14.17.6/node-v14.17.6-x64.msi<br>
37+
Windows 32-bit Binary: https://nodejs.org/dist/v14.17.6/win-x86/node.exe<br>
38+
Windows 64-bit Binary: https://nodejs.org/dist/v14.17.6/win-x64/node.exe<br>
39+
macOS 64-bit Installer: https://nodejs.org/dist/v14.17.6/node-v14.17.6.pkg<br>
40+
macOS Intel 64-bit Binary: https://nodejs.org/dist/v14.17.6/node-v14.17.6-darwin-x64.tar.gz<br>
41+
Linux 64-bit Binary: https://nodejs.org/dist/v14.17.6/node-v14.17.6-linux-x64.tar.xz<br>
42+
Linux PPC LE 64-bit Binary: https://nodejs.org/dist/v14.17.6/node-v14.17.6-linux-ppc64le.tar.xz<br>
43+
Linux s390x 64-bit Binary: https://nodejs.org/dist/v14.17.6/node-v14.17.6-linux-s390x.tar.xz<br>
44+
AIX 64-bit Binary: https://nodejs.org/dist/v14.17.6/node-v14.17.6-aix-ppc64.tar.gz<br>
45+
ARMv7 32-bit Binary: https://nodejs.org/dist/v14.17.6/node-v14.17.6-linux-armv7l.tar.xz<br>
46+
ARMv8 64-bit Binary: https://nodejs.org/dist/v14.17.6/node-v14.17.6-linux-arm64.tar.xz<br>
47+
Source Code: https://nodejs.org/dist/v14.17.6/node-v14.17.6.tar.gz<br>
48+
Other release files: https://nodejs.org/dist/v14.17.6/<br>
49+
Documentation: https://nodejs.org/docs/v14.17.6/api/
50+
51+
### SHASUMS
52+
53+
```
54+
-----BEGIN PGP SIGNED MESSAGE-----
55+
Hash: SHA256
56+
57+
8a809d7c75f9e695396b53aa95bcf8ec49b9ec5a993e82c02c2e067f48b89e81 node-v14.17.6-aix-ppc64.tar.gz
58+
e3e4c02240d74fb1dc8a514daa62e5de04f7eaee0bcbca06a366ece73a52ad88 node-v14.17.6-darwin-x64.tar.gz
59+
b8f94e44b56e7ff52ad9b9c7f2ec263a95aa06d5efcf67c663167588a8467bf6 node-v14.17.6-darwin-x64.tar.xz
60+
7841543802bdf04c94d15a9c0eb3945d91c579da3ddf8c7056873f7c8cffec4b node-v14.17.6-headers.tar.gz
61+
9429d544af0507c92f309fb1a0b7c2082b52846bdff3cd8aa039ada0461c95b9 node-v14.17.6-headers.tar.xz
62+
3355eae15582be48f6be0910e279abbf2324f4538d3ccb2da7e66edab6e6b0fe node-v14.17.6-linux-arm64.tar.gz
63+
9c4f3a651e03cd9b5bddd33a80e8be6a6eb15e518513e410bb0852a658699156 node-v14.17.6-linux-arm64.tar.xz
64+
977e0ae2f6729f4feba5f75a4c317174bc9617610699afd2c478c7dff6c5ba13 node-v14.17.6-linux-armv7l.tar.gz
65+
09ad804c7354ebaded407d0ce64e72e534801fc435be084af3e5b16b1a9c96d0 node-v14.17.6-linux-armv7l.tar.xz
66+
180d13998617f1ef85beec008ef7fe49b30e0d2ecb2bd7897c1d51f95c803aa9 node-v14.17.6-linux-ppc64le.tar.gz
67+
2f978fc75484fde36f44033dc726b7572d8e8cee460b9f278c855d6af5e85262 node-v14.17.6-linux-ppc64le.tar.xz
68+
8a2e1ff691f8723ff740bc5d9dede29da58397c23955b9e43bb4d4831181235c node-v14.17.6-linux-s390x.tar.gz
69+
3677f35b97608056013b5368f86eecdb044bdccc1b3976c1d4448736c37b6a0c node-v14.17.6-linux-s390x.tar.xz
70+
19e376214450e93e58687198070b4ab46e42357032ec65f23a7e35b0e86ad6e2 node-v14.17.6-linux-x64.tar.gz
71+
3bbe4faf356738d88b45be222bf5e858330541ff16bd0d4cfad36540c331461b node-v14.17.6-linux-x64.tar.xz
72+
04687d7547b213b32bbae97e9d2841ad697fedabaa061f5d4462845b55af09c6 node-v14.17.6.pkg
73+
f64559c87faa2f1ce93c3d2cd09723af254ec320a53cbfd1a2ba8fba28e488d0 node-v14.17.6.tar.gz
74+
f458cd0b1cb1540611cb08709d833c0c59c74da79310ae1984cc8bad1404ad5e node-v14.17.6.tar.xz
75+
ee4f072532caebcc588cc535a3a972fa3b83cf0337509217ad0e3567fb785991 node-v14.17.6-win-x64.7z
76+
b83e9ce542fda7fc519cec6eb24a2575a84862ea4227dedc171a8e0b5b614ac0 node-v14.17.6-win-x64.zip
77+
ae75725bad06dc0bfa9929835d950026bb44336932bf6be374277d031a692825 node-v14.17.6-win-x86.7z
78+
3e105bcb2234b5cc0b618c15fbd3f1b530be082dfa77d3e740544ee65b6cf784 node-v14.17.6-win-x86.zip
79+
e72ceb05c7596a6e381172369dce1c374a2b09ee739dca330be58f3977b5c03d node-v14.17.6-x64.msi
80+
5a8225d7dbbe5707b183e89c2ff779a9db7826a94f83d99cd6c879ec60044c3f node-v14.17.6-x86.msi
81+
3ce996581d1b357cbada188730da7966b69dc94bb0098ec38b3334764f309318 win-x64/node.exe
82+
e456fef578acd36eb661055445b4a06c81c47b2cfe0066619e7faa135137d4f6 win-x64/node.lib
83+
f4e7aa3997e065c89bef93b1e1f3804ee34eedd5c461ab515c1eeca6932ef03b win-x64/node_pdb.7z
84+
cf02c88f97dd8e404a34d8206a60354305368688dcce5b0fa963c424e2452c62 win-x64/node_pdb.zip
85+
9838fe04cb24eafd3a65338790699517dbad2babc7c0b2d98884eda8ca45ee5a win-x86/node.exe
86+
176a1b13a4cb1008d1aef1d862d9519ea3b3e412c98a08c013aa441c0054ee4d win-x86/node.lib
87+
17fac76708d2336dda2790459daccc71c54a6eb5b585024f494dc575e8355dbd win-x86/node_pdb.7z
88+
5a6dc153f8a7b0930875737ef76a68359b1d6431cfe6feef3736a538734e7436 win-x86/node_pdb.zip
89+
-----BEGIN PGP SIGNATURE-----
90+
91+
iQEzBAEBCAAdFiEEDv/hvO/ZyE49CYFSkzsB9AtcqUYFAmEuQ/gACgkQkzsB9Atc
92+
qUaibwf+NbKm98uLvMQU8PAqIREjp5CNHSIetDCo2Wp1X9v2DaO0AK7J9xmzkp//
93+
gf9o1gGNnSqdt09lUOGp4/mr/3nW+9EncZ1gBKYtfiRloq+yLX7GSro7vCiDnqFn
94+
19YbRhAsuIMO2Mx305nGJxTNTnhOhVH1IKhOfwuBeAfXCXm9sKmpEQViwev0LKzF
95+
ZyTH9mDYxyx3tLWdNf5OSNdTdWHTKJBHRJ/w5kLHE/EaDEQHX6G87vBhWzo0LuZz
96+
X9064TJlVAk0H9sHC/lztcNocr8J7nA91R70KGGerntKfFy4dvD86q0u2Ee+FKSs
97+
rfKqkcIgCr0rs2hadcEufW+8oR6XUw==
98+
=3xNG
99+
-----END PGP SIGNATURE-----
100+
101+
```

0 commit comments

Comments
 (0)