-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 03 Mar 2025 13:57:32 -0500 Source: mozjs128 Built-For-Profiles: noudeb Architecture: source Version: 128.8.0-1 Distribution: unstable Urgency: high Maintainer: Debian GNOME Maintainers <pkg-gnome-maintainers@lists.alioth.debian.org> Changed-By: Jeremy Bícha <jbicha@ubuntu.com> Changes: mozjs128 (128.8.0-1) unstable; urgency=high . * New upstream release - CVE-2025-1933 JIT corruption of WASM i386 return value on 64-bit CPUs - CVE-2025-1934 Unexpected GC during RegExp bailout processing - CVE-2025-1936 Adding %00 and a fake extension changed interpretation - CVE-2025-1937 Memory safety bugs Checksums-Sha1: 82a47cf8c7396bc7025f281f5d358104d0b0a2ff 2409 mozjs128_128.8.0-1.dsc bc4ee9f7b7a4d16ebb98b61d14c72be9a0932520 157077828 mozjs128_128.8.0.orig.tar.xz b74f4683df7b29ed85d97c9f29514bd557339f43 67612 mozjs128_128.8.0-1.debian.tar.xz 19d37294eeba6dcf44e644e7b5c640d43eb84bed 8896 mozjs128_128.8.0-1_source.buildinfo Checksums-Sha256: 5eb23b4b3a1531adf5625a86932bad652b24967cf7c75fac522be3a6c0cb1cae 2409 mozjs128_128.8.0-1.dsc 7a140557475df2a59a81823fa6057a34e6875938b74267a0f10cdbc0734d03d2 157077828 mozjs128_128.8.0.orig.tar.xz a20692bf1f7baee88dc2c4871d5d53ce29b691792d793b1d66c24cdf20887e23 67612 mozjs128_128.8.0-1.debian.tar.xz eff54f411444370af1bf13193934e7cd4d32f94eb513517e66d46e8f351ac779 8896 mozjs128_128.8.0-1_source.buildinfo Files: 5967418270e709b3a3bf0d82a5c896b5 2409 libs optional mozjs128_128.8.0-1.dsc 56bf5fafcf5554b10cb2feba57e7472a 157077828 libs optional mozjs128_128.8.0.orig.tar.xz 84ebba75f65fd37b70e55ba6bed59b31 67612 libs optional mozjs128_128.8.0-1.debian.tar.xz 63b09cbe14b2cb86c621bb162d477cc1 8896 libs optional mozjs128_128.8.0-1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEETQvhLw5HdtiqzpaW5mx3Wuv+bH0FAmfHGI8ACgkQ5mx3Wuv+ bH3xZhAAt3scxMOnQgi9AyH8Jo+iV7chK0c7GUNd5Q/cM4CBfY52EcI8MQlHtuZm lnzMVmL4ugzFjl89Zw8e623lr36LhrrOylYgMahzeL04g62MEiUeFt7NKKpI4c0H AxBypkYP6i4Flnm7S20+nzZjDLwI2hZQIMvvOkEcNAQ2RsEdX+cGGZPXpBtlGZLN u4VybgECxAcTtcWWc41SQEfHtqtjerneOC2jQFwUh5L5Ms03r9TDXZr2O4hjOdNO mxYZiRjMnmNiV0vOY/Zz8Agbr2Q91o32WB52O9GqvJGj8+pStiDRSK8ujvk0zJzv rhMxRmhB3wN7mdRCQBMsd4wa4icau4vxQrrTGl1576wYS6KCdfmFi67AK2MmwTqf D0TXeeEMEh0T3Mn41fOXOP7fH6gg/fA6XMGSYeXOPHdlt7Xs7LXT2HaymtIe6VuW c3Lq/+sZHxzsYdF2qYTLeNW/DNtRioYUJH2x07yb/XCN/oai3aQ45wAHksw30GQn RgzWWbWTD/6Rfg4wt/FQV0QosVCeVY7xqWl7Hsi2egVHkdTc/oSo6F/jExQb3I+d IBP3Fz064AI4L8nDvwkIaWog7klAnWYwr9rb7/xrmtpgDUU+8E9+6b8GZN2bcycI NKkblGUbboX+iiFFOb6CFoCYFi+JbshYIpOriqseHw21dgbep8k= =mEk0 -----END PGP SIGNATURE-----