-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 13 Oct 2021 00:43:20 +0200 Source: nodejs Architecture: source Version: 12.22.7~dfsg-1 Distribution: unstable Urgency: medium Maintainer: Debian Javascript Maintainers <pkg-javascript-devel@alioth-lists.debian.net> Changed-By: Jérémy Lal <kapouer@melix.org> Changes: nodejs (12.22.7~dfsg-1) unstable; urgency=medium . * New upstream version 12.22.7~dfsg + CVE-2021-22959: HTTP Request Smuggling due to spaced in headers (Medium) + CVE-2021-22960: HTTP Request Smuggling when parsing the body (Medium) * copyright: + highlight.pack.js no longer in tarball + update deps/cares paths * source overrides: update expression Checksums-Sha1: 99d8227bfedad046a5ff8651514587220ff47ba5 3494 nodejs_12.22.7~dfsg-1.dsc ca2fb86ebdfbc7486c6347683bd8a8535d5be313 86416 nodejs_12.22.7~dfsg.orig-types-node.tar.xz 22b9c5d344cefeb93e4153d6714d7cc2c6dbd387 18582060 nodejs_12.22.7~dfsg.orig.tar.xz e013bf80ea53cb9bc33b232595eab98ad3e0d932 136884 nodejs_12.22.7~dfsg-1.debian.tar.xz 82b61428a36ef3033110ee1016118d0a32cd45f0 8226 nodejs_12.22.7~dfsg-1_source.buildinfo Checksums-Sha256: cd0978ef4a2f46deac0ce8f30039d9caa04892a857b45456ceeecd8fe1545b21 3494 nodejs_12.22.7~dfsg-1.dsc 546018cf26101b7f0c279e35a642b6712404f14ffcf0fc898b0764aa7d7929bc 86416 nodejs_12.22.7~dfsg.orig-types-node.tar.xz 8627359f22d43e6c025374d790ebc35cf00241e4db4c500cef1c430398b4f6ce 18582060 nodejs_12.22.7~dfsg.orig.tar.xz b1ddb478185403499819c62745aea543de2bca5d3cf03b169cfd332f22171bd4 136884 nodejs_12.22.7~dfsg-1.debian.tar.xz 9805043c764dd86e80938ce19a082c67e4e8360f5d3e03b59e5a025715b72054 8226 nodejs_12.22.7~dfsg-1_source.buildinfo Files: de899fe5338548ed8917445134a1953f 3494 javascript optional nodejs_12.22.7~dfsg-1.dsc 0aec9030da783848bca7aa81d6397921 86416 javascript optional nodejs_12.22.7~dfsg.orig-types-node.tar.xz c1b05ae2a8a190b2f78efd579c15e392 18582060 javascript optional nodejs_12.22.7~dfsg.orig.tar.xz 4411bf337d76b8dd817bd0c8f109b3bd 136884 javascript optional nodejs_12.22.7~dfsg-1.debian.tar.xz cafa3d54e677182055d0f14508bdd639 8226 javascript optional nodejs_12.22.7~dfsg-1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQJGBAEBCgAwFiEEA8Tnq7iA9SQwbkgVZhHAXt0583QFAmFmD/ASHGthcG91ZXJA bWVsaXgub3JnAAoJEGYRwF7dOfN0O1kQAKUX9j2Mj+plFr+CXicUchHnM7OGIANg jsY17uP1IER/eK18/S89yKZT1rjFRfIvCYEk/FPWdIixRoDa22tXLa8Yh7RmjxC0 eS5omZYDAHBAGFkyiOZuaaH6prDcbfijW8LTHML6R4gtgQ1iYHniSXV+zL+zJ5GW R84r+UfVSTfOmS1heZogNeMpLkDe5YlVV2EPftuwt4jCIE3QVT1fJZg0x2/yO76y KCNuCdXFq1pzrvpVHCw0kK05q5my+fx2H/uacLuQaq9p61gCfmCD976OWnRZgaiV 8YcjVWQp77gEYTCM2e6iz6SkHWzQLGw0ZMNwISHL2GnR9IYUj6rVxcVx1ZkoZQ1C fh4ITTZ6Gx3AmD0B242/uLDwaH0o/dffQSTjM+4yodfBDMmxWP1jhT3utv7JnCxA h6o3e4F0x1j89oJPKoqagG8OX+aMYX6i4UDlDXuBuq0aUW2CiGeIA4N0tIQI7j4n W0fQs/1etCNeAIlCs/aHcZ7oF2aqmVZEnSFQzsc3ERk3iTHEUFyBR1ZJZOwa7dfW LuzbDT8zmhwqYiXXXjvlXlFc7lNEBeboJRfP7vhfnyA2XPvknNxM0yo5GX/kafOJ 2PsRBYigshAU8b3RJqmzUrQ+L6zLxd19c+dCB4C7C/3Lo9iguZ7AnhJfiezJsN3g 8kN+TY2U/wv5 =3J1U -----END PGP SIGNATURE-----