-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 01 Mar 2023 13:47:23 +0000 Source: node-css-what Binary: node-css-what Architecture: all Version: 4.0.0-3+deb11u1 Distribution: bullseye Urgency: medium Maintainer: all Build Daemon (x86-csail-02) Changed-By: Bastien Roucariès Description: node-css-what - CSS selector parser Closes: 989264 1032188 Changes: node-css-what (4.0.0-3+deb11u1) bullseye; urgency=medium . * Team upload * node-css-what was vulnerable to Regular Expression Denial of Service (ReDoS) due to the usage of insecure regular expression in the re_attr variable. The exploitation of this vulnerability could be triggered via the parse function. Fix CVE-2022-21222, CVE-2021-33587 (Closes: #989264, #1032188) Checksums-Sha1: 579b9b3c957e8d010ab1f0737e0fd67bc1108efd 7246 node-css-what_4.0.0-3+deb11u1_all-buildd.buildinfo 38188ee8208ecbd5afdebcb6674292936806f81a 10828 node-css-what_4.0.0-3+deb11u1_all.deb Checksums-Sha256: 546a87dea6ce31c491c7772eeff519bdfb67db9df80bcef8789270060277fd71 7246 node-css-what_4.0.0-3+deb11u1_all-buildd.buildinfo c13eb636d8de7b5c17163ef9be81322203cb4c3327c4dc56df50d3eeac5020e3 10828 node-css-what_4.0.0-3+deb11u1_all.deb Files: 59c25b6d3acf01b83e129074562df121 7246 javascript optional node-css-what_4.0.0-3+deb11u1_all-buildd.buildinfo a63809727a0dc23ac5298a72b0d1177c 10828 javascript optional node-css-what_4.0.0-3+deb11u1_all.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEtzb3SVunlrB0F8t8ExOkVqF4GXMFAmSMyzsACgkQExOkVqF4 GXOrqw/+IfCbFG6WX5RcOtYkbJ/plaVhoamN7D9BTm5SZXEPZnh+pdqtnfyiHTKQ s8uthWCCB9kKP/VEyPwiZDLUOXzheVMSbVNVWPFcxQhCkUnJV9w0fQ5CJ/JzgTOb Vhy3hftEL3O65GkFshrTx9AU36euJcUlLtsOWuN5EUL1q8R1/O23hVr44n6avsYF /dExhlySG+yUZUkrbeb7W36n2vqE0CU5x0PLInVfdwsAcwV98q5CmPg7kYyJgk6n W7hB/CCpnX3QbVwkmaO2lWGyB6bNSZYbtLSVETulGGgl0jvLaO/89zaqEsaWBxUU UDXqsTGr3kvc/ugILjuJKD7xI1uob/6UmOf0HjmXS6+RTftk07W+BA3+LEnwKznK n0uIEMdmcP+VF44ImG9uUI6l8FfbmR/2QrlC2i4fCebtb9ezTedriibHJJG06Zwo krySlZhHcI1msMk7abBikiNdXZFFgFKtkPZlrU/U8iFZo7GVbphDBgjqXpfjTRrq wIrRZ1YPez1MJd+ZSKzNrNFCIU+6Rkyopaa7soQeVGuglkdNkhUS1MKe6eAmYM9n G2gv9wYK/9opV2aMuvco0KbgQfjplA6BwGtSQVc3cjSfrU0Ylohxv+5awqZHwP0j COK1PWEq3wIakMeV/YNvkNtyyczm75nWzhnyPbR+KAoGc041RBw= =COn8 -----END PGP SIGNATURE-----