-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Sat, 07 May 2022 17:09:06 +0900 Source: mruby Binary: libmruby-dev mruby mruby-dbgsym Architecture: source amd64 Version: 3.0.0-4 Distribution: unstable Urgency: medium Maintainer: Nobuhiro Iwamatsu <iwamatsu@debian.org> Changed-By: Nobuhiro Iwamatsu <iwamatsu@debian.org> Description: libmruby-dev - lightweight implementation of the Ruby language (development file mruby - lightweight implementation of the Ruby language Closes: 1009044 Changes: mruby (3.0.0-4) unstable; urgency=medium . * Fix CVE-2022-1212. (Closes: #1009044) Add d/patches/CVE-2022-1212.patch. Fix Use-After-Free in str_escape. * Fix CVE-2022-1286. Add d/patches/CVE-2022-1286.patch. Fix heap-buffer-overflow in mrb_vm_exe. * Add 'DEB_BUILD_MAINT_OPTIONS = hardening=+all' to d/rules. Checksums-Sha1: 8365839417048983a660a1e135064d7f22f9e6b4 1899 mruby_3.0.0-4.dsc 6a6a4aba765c242be9447b9d1fc4bf7e9396e226 9164 mruby_3.0.0-4.debian.tar.xz 9c198ccca967a50b523e06fbe5f65f515433f040 372412 libmruby-dev_3.0.0-4_amd64.deb 77815a1388cfdbcb553b824a1df9ba4215a3fed6 4261432 mruby-dbgsym_3.0.0-4_amd64.deb 5b46a0fc389fd1cc94c2ccfe05f1703d1aed0ce5 6694 mruby_3.0.0-4_amd64.buildinfo c48db82dcf3e671d3e3bf4ccfd5a676d17fcba04 611968 mruby_3.0.0-4_amd64.deb Checksums-Sha256: 9c7c8d9a5c3c05c3c7e53cb3d37b64cef403d6987174004eacca8676c432596f 1899 mruby_3.0.0-4.dsc 671bc4a069c9b48c3f9dc0bdad128c74aa850d0d5b5e0a37a169097239429e06 9164 mruby_3.0.0-4.debian.tar.xz 4948116c9f2ca1dd90bae9a4fa3b7ed95de20430d9ea9a5caf06a1185f1901a2 372412 libmruby-dev_3.0.0-4_amd64.deb d11d53a26fe8ddf71986dbf4881443a522b7fc60705ea5c9c624218b5932add3 4261432 mruby-dbgsym_3.0.0-4_amd64.deb abb719a21f5c32608b6357d921f87d62fd89cef74e1ebf0a77281065c5bccb56 6694 mruby_3.0.0-4_amd64.buildinfo 15b86fa3f76a547aa2b8d2d9a0ac869c07a3bd49abfd85fbcb75993783634008 611968 mruby_3.0.0-4_amd64.deb Files: e61364ed4d94098f661dcc1aafe1684c 1899 ruby optional mruby_3.0.0-4.dsc f80c659cd4970232bd25c3905c9e65a1 9164 ruby optional mruby_3.0.0-4.debian.tar.xz e72ca51bba93ac7ef6313c6d27b182b4 372412 libdevel optional libmruby-dev_3.0.0-4_amd64.deb af84b69d42fe0626dfe41e3e7faa2be1 4261432 debug optional mruby-dbgsym_3.0.0-4_amd64.deb b7c99699ce242198f93c9e01f37e4631 6694 ruby optional mruby_3.0.0-4_amd64.buildinfo d0f380f8428c672e6bdd4baf460e074d 611968 ruby optional mruby_3.0.0-4_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEXmKe5SMhlzV7hM9DMiR/u0CtH6YFAmJ4c98ACgkQMiR/u0Ct H6bmrQ//af22DZE5QaHyOnGu0vvv468JaO1NoaRPgzQr/57KBQptB4wEHsfqwATa Z7LBnX0iaZom3sveIzL7fQj3sLkse4QsJBUAJIRgWLGPVr7Pfoj3aPRy52wc4OFW LiFaA8JSBfk8wK8DScBZ2B1aLb44Mf7o4ZquCurYacqGNd6zzPdU6K1uWk4CrA6C lQDNnhMrkWEtle8PpAlBol/VNWch6kTox73rqXQXjswiPDgRIDRfEBiyGODJ2R9W 0OY5+z4scDDmTR8Rzq6d6fy2VI+D5A6EkPfggs9FfI7Gn0QntpEGra3go97JToTA AzAMztHUQEqrMMzcXVwZj7zkZRd71K4nBrp49HANMWrECJ8jaktfugOXfME0efl4 YEN+9mylBrMcD3RzrBnrKt5u1v/ReQBe9hYc2pZWcdI2C7waF/aRAo0R6UOP9qeH ljooMT3drqlxnAXj+vvRk6qbq9xwlh0/5fF+X2Gb58weOdzuD7E7r/C8NolkPXM2 7VGQADdoh3dqqt/RP7AsnN2pmb7IdgzIfU2xM4+vRu601YqCtWWlHrEqZO5x9iLy U3DAv6FQX7ml60b+Gd8q01ARTu9btEs4nk41F0OsOPa4WyMrPYriS3GR7QtXVxfj SBidIOQ5/1V394o4GB4e4YCRqvSKh2aZxtYb3/wqkTXYZVCoRnk= =hWAs -----END PGP SIGNATURE-----