[SECURITY] [DLA 3484-1] firefox-esr security update

2023-07-07 Thread Emilio Pozuelo Monfort
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 - - Debian LTS Advisory DLA-3484-1debian-...@lists.debian.org https://www.debian.org/lts/security/ Emilio Pozuelo Monfort July 08, 2023

[SECURITY] [DLA 3483-1] nsis security update

2023-07-07 Thread Sean Whitton
- Debian LTS Advisory DLA-3483-1debian-...@lists.debian.org https://www.debian.org/lts/security/ Sean Whitton July 07, 2023 https://wiki.debian.org/LTS

Accepted nsis 3.04-1+deb9u1 (source) into oldoldstable

2023-07-07 Thread Debian FTP Masters
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Format: 1.8 Date: Fri, 07 Jul 2023 13:05:40 +0100 Source: nsis Architecture: source Version: 3.04-1+deb9u1 Distribution: buster-security Urgency: medium Maintainer: Thomas Gaugler Changed-By: Sean Whitton Changes: nsis (3.04-1+deb9u1)

Re: nsis CVE-2023-37378

2023-07-07 Thread Sean Whitton
Hello, On Fri 07 Jul 2023 at 12:23pm +02, Sylvain Beucler wrote: > Hello Sean, > > I had a quick test with my: > http://git.savannah.gnu.org/cgit/freedink.git/tree/nsis > which is kinda old but does call WriteUninstaller. > The installer and uninstaller appear to work correctly in a W10 VM. > >

Re: nsis CVE-2023-37378

2023-07-07 Thread Sylvain Beucler
Hello Sean, I had a quick test with my: http://git.savannah.gnu.org/cgit/freedink.git/tree/nsis which is kinda old but does call WriteUninstaller. The installer and uninstaller appear to work correctly in a W10 VM. About the source changes, I'd recommend to use the CVE ID as part of the patch

Re: WebKit 2.40 update for buster

2023-07-07 Thread Alberto Garcia
On Thu, Jul 06, 2023 at 08:27:51PM +0300, Adrian Bunk wrote: > A recent compiler is always already available: > > Debian *stable distributions (including LTS) already add a new LLVM > major version annually since that is required for the latest Rust > every new Firefox ESR branch needs. Thanks,

[SECURITY] [DLA 3482-1] debian-archive-keyring update

2023-07-07 Thread Jochen Sprickerhof
- Debian LTS Advisory DLA-3482-1debian-...@lists.debian.org https://www.debian.org/lts/security/ Jochen Sprickerhof July 07, 2023 https://wiki.debian.org/LTS