[Pkg-javascript-devel] Processed: tagging 1040592, found 1040592 in 2.0.2-1

2023-07-07 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tags 1040592 + upstream Bug #1040592 [src:node-dottie] node-dottie: CVE-2023-26132 Added tag(s) upstream. > found 1040592 2.0.2-1 Bug #1040592 [src:node-dottie] node-dottie: CVE-2023-26132 Marked as found in versions node-dottie/2.0.2-1. > thanks

[Pkg-javascript-devel] node-tough-cookie_4.1.3+~4.0.2-2_sourceonly.changes ACCEPTED into unstable

2023-07-07 Thread Debian FTP Masters
Thank you for your contribution to Debian. Accepted: -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Format: 1.8 Date: Sat, 08 Jul 2023 06:47:05 +0400 Source: node-tough-cookie Architecture: source Version: 4.1.3+~4.0.2-2 Distribution: unstable Urgency: medium Maintainer: Debian Javascript Mai

[Pkg-javascript-devel] Processing of node-tough-cookie_4.1.3+~4.0.2-2_sourceonly.changes

2023-07-07 Thread Debian FTP Masters
node-tough-cookie_4.1.3+~4.0.2-2_sourceonly.changes uploaded successfully to localhost along with the files: node-tough-cookie_4.1.3+~4.0.2-2.dsc node-tough-cookie_4.1.3+~4.0.2-2.debian.tar.xz Greetings, Your Debian queue daemon (running on host usper.debian.org) -- Pkg-javascript-

[Pkg-javascript-devel] Bug#1040592: node-dottie: CVE-2023-26132

2023-07-07 Thread Moritz Mühlenhoff
Source: node-dottie X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerability was published for node-dottie. CVE-2023-26132[0]: | Versions of the package dottie before 2.0.4 are vulnerable to | Prototype Pollution due to insufficient checks, via th

[Pkg-javascript-devel] Bug#1040584: seek-bzip: broken symlinks: /usr/bin/seek-bunzip, /usr/bin/seek-table

2023-07-07 Thread Andreas Beckmann
Package: seek-bzip Version: 1.0.5-2 Severity: serious User: debian...@lists.debian.org Usertags: piuparts Hi, during a test with piuparts I noticed your package ships (or creates) broken symlinks: 0m22.5s ERROR: FAIL: Broken symlinks: /usr/bin/seek-bunzip -> ../share/nodejs/@openpgp/seek-bzip/

[Pkg-javascript-devel] Bug#1040563: bookworm-pu: package node-tough-cookie/4.0.0-2+deb12u1

2023-07-07 Thread Yadd
Package: release.debian.org Severity: normal Tags: bookworm User: release.debian@packages.debian.org Usertags: pu X-Debbugs-Cc: node-tough-coo...@packages.debian.org Control: affects -1 + src:node-tough-cookie [ Reason ] node-tough-cookie is vulnerable to prototype pollution [ Impact ] Littel

[Pkg-javascript-devel] node-tough-cookie_4.1.3+~4.0.2-1_sourceonly.changes ACCEPTED into unstable

2023-07-07 Thread Debian FTP Masters
Thank you for your contribution to Debian. Accepted: -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Format: 1.8 Date: Fri, 07 Jul 2023 16:05:05 +0400 Source: node-tough-cookie Built-For-Profiles: nocheck Architecture: source Version: 4.1.3+~4.0.2-1 Distribution: unstable Urgency: medium Maint

[Pkg-javascript-devel] Processing of node-tough-cookie_4.1.3+~4.0.2-1_sourceonly.changes

2023-07-07 Thread Debian FTP Masters
node-tough-cookie_4.1.3+~4.0.2-1_sourceonly.changes uploaded successfully to localhost along with the files: node-tough-cookie_4.1.3+~4.0.2-1.dsc node-tough-cookie_4.1.3+~4.0.2.orig-typestough-cookie.tar.xz node-tough-cookie_4.1.3+~4.0.2.orig.tar.xz node-tough-cookie_4.1.3+~4.0.2-1.debian.