-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 08 May 2023 11:59:12 -0400 Source: mozjs102 Built-For-Profiles: noudeb Architecture: source Version: 102.11.0-1 Distribution: unstable Urgency: high Maintainer: Debian GNOME Maintainers <pkg-gnome-maintainers@lists.alioth.debian.org> Changed-By: Jeremy Bícha <jbicha@ubuntu.com> Launchpad-Bugs-Fixed: 2018905 Changes: mozjs102 (102.11.0-1) unstable; urgency=high . * New upstream release (LP: #2018905) - CVE-2023-32205: Browser prompts could have been obscured by popups - CVE-2023-32206: Crash in RLBox Expat driver - CVE-2023-32207: Potential permissions request bypass via clickjacking - CVE-2023-32211: Content process crash due to invalid wasm code - CVE-2023-32212: Potential spoof due to obscured address bar - CVE-2023-32213: Potential memory corruption in FileReader::DoReadData() - CVE-2023-32214: Potential DoS via exposed protocol handlers - CVE-2023-32215: Memory safety bugs Checksums-Sha1: 783987846782cc56f7b5fd69c89cacd5557ade01 2281 mozjs102_102.11.0-1.dsc bf8120579fbb85d59bfec529f1a308f7c4190ed4 145625084 mozjs102_102.11.0.orig.tar.xz d880370266591e92e84e68cd17bee3ecf47fafc4 53616 mozjs102_102.11.0-1.debian.tar.xz 1de00cdb4d304eac7058f9ad452d1b6b2114a129 11581 mozjs102_102.11.0-1_source.buildinfo Checksums-Sha256: 89d5cf347fe4cf0cf4986bf7ed25fd2888fba27c3bfc6bb6299279872278d494 2281 mozjs102_102.11.0-1.dsc c99ae985dfd1c8ec681d1156b520347f2bfa61f87cd8ab1969914b22fad760ff 145625084 mozjs102_102.11.0.orig.tar.xz 675417b3504d06815bab7867df8ab62e46fec59064135d247b162f78fbba9583 53616 mozjs102_102.11.0-1.debian.tar.xz 6d01675c1c7bbf841ae704a01c8716d03441495baf9bad6139ec46f21cf36525 11581 mozjs102_102.11.0-1_source.buildinfo Files: 539c281ce025e7e2c6e0629f56970665 2281 libs optional mozjs102_102.11.0-1.dsc be1334a2c134160af32929b5a26fe979 145625084 libs optional mozjs102_102.11.0.orig.tar.xz 98e5990329180127c48fc89bc8e278c2 53616 libs optional mozjs102_102.11.0-1.debian.tar.xz 8788459f672f3269dddd64c73465f18a 11581 libs optional mozjs102_102.11.0-1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEETQvhLw5HdtiqzpaW5mx3Wuv+bH0FAmRaYnQACgkQ5mx3Wuv+ bH3E1BAAkX7dVCpmlmFv1PvgMLJcQxYUl1DOsiPJMlhTanI/Bvh0imYtwxp3Xp4B 4t4mJU3PMGEbuZtLhVEN7y/dyn1738gjxLeU4dCSpIYks9XvVBjfwU15waUSM2Zc THV6dQWZrhezw1UFQlOnl6LrwSVdsG7pa3CHZGmWY24l1Rx6p+qk/dvQKwiEGI5g UTmr5qI7vFJkflMie5eXHqOUSzyqLlKYWHJ52H+RYCs/TvumFPJEKpEPFgYA+/qQ UmfpdajmJ1y6H4QCa84SxffvQzZRB5DVlqNIvnAPLcY3Jf3/rb083LgvEOtiZ2oK ZWhZGysNie6Tj8MqbGgD4nZbElhH+hDhWvpb91eVldSL9kNVUQFcl4IYeLGqJgC2 2Muz+oBo3duUNYRhAzn9jcj9Byoe1Sfo6KrfuJKBIXC/qDRizO8QC7/FRdaj55mj oTGpGr8O14occ1xRlprffDNVIgxTo7fBaEn6qHkPiknxWWg46sVhhRuMFt3Gg+jD yqduA5eqyWu3CJByHLNFBY/qYgKaw3EMLwDhHZUtuBqV3btOUhq89veiZT9LrSrh rrg1rZveaKsd8S5BLJTKf3hna28fAv1d4ztb6DpSEC4iskXmpF0mG2+Yfe/HFowF 6+xhBr3waOE65BzFCDEmTKgs1UG35WYvP1Hjf7t4IDFWh1gRmAw= =88gt -----END PGP SIGNATURE-----