-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Wed, 01 May 2019 17:38:43 +1000 Source: jquery Binary: libjs-jquery Architecture: source all Version: 1.7.2+dfsg-3.2+deb8u6 Distribution: jessie-security Urgency: high Maintainer: Debian Javascript Maintainers <pkg-javascript-devel@lists.alioth.debian.org> Changed-By: Brian May <bam@debian.org> Description: libjs-jquery - JavaScript library for dynamic web applications Changes: jquery (1.7.2+dfsg-3.2+deb8u6) jessie-security; urgency=high . * Non-maintainer upload by the LTS Team. * Fix CVE-2019-11358, jQuery.extend could be used to pollute the native Object.prototype. * Fix problem calling uglify during build. Checksums-Sha1: f707e6c867b557f3f084fa065a841b55483c1c98 2028 jquery_1.7.2+dfsg-3.2+deb8u6.dsc 1c17c0b49b4a37af469fb63a5c56cfdf919f769e 147053 jquery_1.7.2+dfsg.orig.tar.gz 925162f0b4d5142686ab3337e032107b95747bec 6348 jquery_1.7.2+dfsg-3.2+deb8u6.debian.tar.xz b99e4ae85e281aa98f3f3033d2e4eb3f09c8c084 98168 libjs-jquery_1.7.2+dfsg-3.2+deb8u6_all.deb Checksums-Sha256: ebb8947e539092493b9684146bdf9456689acc179f76717e7d3417e5e804c5db 2028 jquery_1.7.2+dfsg-3.2+deb8u6.dsc 43384d8c975c723a3b7d6f46e7ff1518d161760e0781a37675eeda1a05a503fe 147053 jquery_1.7.2+dfsg.orig.tar.gz 007b6eb38a4787c74173840b1dec1e86cd50494398b8fda50208b83718508ab3 6348 jquery_1.7.2+dfsg-3.2+deb8u6.debian.tar.xz 87e0097abedb97b75f693b42c677571c4e72905539efd79009b58d43b258f20d 98168 libjs-jquery_1.7.2+dfsg-3.2+deb8u6_all.deb Files: e10b2e5493fb8c5d141ce9db4326aa83 2028 web optional jquery_1.7.2+dfsg-3.2+deb8u6.dsc c75b2e33e0d769bedfea8f4e7ca45d4c 147053 web optional jquery_1.7.2+dfsg.orig.tar.gz f3c2c7799a07dfdbaff7f8756ec10e3b 6348 web optional jquery_1.7.2+dfsg-3.2+deb8u6.debian.tar.xz 9a2fefa81227d3d5258b98e7f241a407 98168 web optional libjs-jquery_1.7.2+dfsg-3.2+deb8u6_all.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEKpwfR8DOwu5vyB4TKpJZkldkSvoFAlzP3dQACgkQKpJZkldk Svo9+g//XJnVzcsLLFWEmVdlfgL61I+DtzpAlnt/eGPDJrNET7ytptBihM6hEQH1 fr4H/Xuo/AJq3sXq4aaIXv41MCzKVeRKUQ68SdfQ94Y9vpRE+D60P4OHX4td8jvB a18k2JOELKXhOZcQ65cPhy5oYB8YSZWMRTpspyyp/EfA2PY8bdOgXi5HqYYPtNG3 NzgMcpIQKVRyhWNahLQ1/gpPwoQn5jcFxn+Zm70th9PwIXWs2aV+3Wsv++NgraYM jS2+6SQVpne7MezTo6aULlTCr6EsN176BMmAggDXM3mAKC9DFRDq9BepAweaxAs6 8G/J1RG17peeXlAHQHEwj/IiOpUwsPY/Yywl6XGeN0KBc7cQcUhW48J9Sg8dkLAv 1CDpfSAyS5yUK3/LZxYIl4t08xZ/3238p4KQVlcfNhVznPfPC2mw/qxtOVUwHWRD VnMLG/ZD94dktxePJvTF9mcWcB13yyeHkPXS9mYs7XwkHQckgzgnie/HZb9uE15t sHYi7iDo8aQtRnEX3IyrO8qIpShaaCwQljrOysuCwzgdMzWRO2ktfE9KZG/ur0Tx U15+r8lOhfijqHGr/he8ERSMY61pOhIr+cMuJ6aAsIpLj1xowjS/uCTlmaa9rVSK DcUW01xHqOuDM9aIK9ahiHMIPiTQsj9gjXwApzaV5TeQmXUv72g= =1omx -----END PGP SIGNATURE-----