node: bump to 14.17.4 16262/head
authorHirokazu MORIKAWA <morikw2@gmail.com>
Sat, 31 Jul 2021 02:28:02 +0000 (11:28 +0900)
committerHirokazu MORIKAWA <morikw2@gmail.com>
Sat, 31 Jul 2021 02:28:02 +0000 (11:28 +0900)
commitcee32c84afb6c6bb4d414b496e04acb1d1a629ed
treea9b9a7a3f1b23d6c1973e9e929bce27e8ecaffd4
parent5a33d5a7ef84a29b20669990287f6711f2cea911
node: bump to 14.17.4

July 2021 Security Releases:

Use after free on close http2 on stream canceling (High) (CVE-2021-22930)
Node.js is vulnerable to a use after free attack where an attacker might be able to exploit the memory corruption, to change process behavior.
You can read more about it in https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-22930

Signed-off-by: Hirokazu MORIKAWA <morikw2@gmail.com>
lang/node/Makefile
lang/node/patches/003-path.patch