-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - ------------------------------------------------------------------------- Debian Security Advisory DSA-5291-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff November 28, 2022 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : mujs CVE ID : CVE-2022-30974 CVE-2022-30975 CVE-2022-44789 Multiple security issues were discovered in MuJS, a lightweight JavaScript interpreter, which could result in denial of service and potentially the execution of arbitrary code. For the stable distribution (bullseye), these problems have been fixed in version 1.1.0-1+deb11u2. We recommend that you upgrade your mujs packages. For the detailed security status of mujs please refer to its security tracker page at: https://security-tracker.debian.org/tracker/mujs Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: debian-security-announce@lists.debian.org -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEtuYvPRKsOElcDakFEMKTtsN8TjYFAmOFDJYACgkQEMKTtsN8 TjaAig//ZqldnlH6KJxGSEtnKDeH6ep71yuIrKCTe1D0Y43ZW/NEkwkY9dAXxYO0 np5uz7BqTZwgyU17nHuVD9TKvO0shPdMQw1qHI1kza+16w1g5aJ4QWKtURFQjJ7r b/BS3HgGCBRjQ7NVM126WzVNobiBnkrJqab/Bsi7vvZdu7KPubXpc3OivwAa4uA9 Dfb7awFoZTTS8eunAH8hKl6/UiY7rTXrQuLBinXeIiNPH38aeEKr+9MWehSRdEPs T8tQoUsE0HYj0pgj+gAu0IZyRwz8O/9mT909N7vUgqHDsTgC0ej5+MTSTM50s5aX MGBOAjQTpx1eRJePylo3T0RhsV/LM2rF9Jx/7PSuiX+ySqYkHJgLll846RxWJfQL HdIY6Nx6Jkk4gAxIFPEa+Skum62zZTg1QUsCHC0sJizhn5Jtlj4EfwusbMDJm734 JNkXHZ5kV8zl0piDK4F546p8pB0AuLa2iWiy4kz8TOxwQ6f5h+UrCnWG/jvAtgJw 5gADyjmoxsAZMIdKe3Xb4n8fGE8LX1qutYkx2k857ZAJXNrJUPycmcYozy4KOAlf 15Aj6vzrXhgEjUFJCppOUMosOi01pMSmC7HhKjnpyuGJwU3auVkHaCemmyck6y6B fZwfxU/gRE4x5GFlIH3GTuWrYENUvpxI4weInZb/xbEWWouwklw=oEne -----END PGP SIGNATURE-----