Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package mozjs102 for openSUSE:Factory checked in at 2023-05-10 16:17:01 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/mozjs102 (Old) and /work/SRC/openSUSE:Factory/.mozjs102.new.1533 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "mozjs102" Wed May 10 16:17:01 2023 rev:12 rq:1085783 version:102.11.0 Changes: -------- --- /work/SRC/openSUSE:Factory/mozjs102/mozjs102.changes 2023-04-27 19:59:16.145338110 +0200 +++ /work/SRC/openSUSE:Factory/.mozjs102.new.1533/mozjs102.changes 2023-05-10 16:17:12.262506165 +0200 @@ -1,0 +2,18 @@ +Tue May 9 07:49:33 UTC 2023 - Bjørn Lie <bjorn....@gmail.com> + +- Update to version 102.11.0: + + Various security fixes. + + CVE-2023-32205: Browser prompts could have been obscured by + popups + + CVE-2023-32206: Crash in RLBox Expat driver + + CVE-2023-32207: Potential permissions request bypass via + clickjacking + + CVE-2023-32211: Content process crash due to invalid wasm code + + CVE-2023-32212: Potential spoof due to obscured address bar + + CVE-2023-32213: Potential memory corruption in + FileReader::DoReadData() + + CVE-2023-32214: Potential DoS via exposed protocol handlers + + CVE-2023-32215: Memory safety bugs fixed in Firefox 113 and + Firefox ESR 102.11 + +------------------------------------------------------------------- Old: ---- firefox-102.10.0esr.source.tar.xz firefox-102.10.0esr.source.tar.xz.asc New: ---- firefox-102.11.0esr.source.tar.xz firefox-102.11.0esr.source.tar.xz.asc ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ mozjs102.spec ++++++ --- /var/tmp/diff_new_pack.iFS2PQ/_old 2023-05-10 16:17:16.798532997 +0200 +++ /var/tmp/diff_new_pack.iFS2PQ/_new 2023-05-10 16:17:16.802533021 +0200 @@ -41,7 +41,7 @@ %global big_endian 1 %endif Name: mozjs%{major} -Version: 102.10.0 +Version: 102.11.0 Release: 1%{?dist} Summary: SpiderMonkey JavaScript library License: MPL-2.0 ++++++ firefox-102.10.0esr.source.tar.xz -> firefox-102.11.0esr.source.tar.xz ++++++ /work/SRC/openSUSE:Factory/mozjs102/firefox-102.10.0esr.source.tar.xz /work/SRC/openSUSE:Factory/.mozjs102.new.1533/firefox-102.11.0esr.source.tar.xz differ: char 15, line 1