From patchwork Mon Jan 13 22:51:45 2025 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: =?utf-8?q?Andr=C3=A9_Batista?= X-Patchwork-Id: 37052 Return-Path: X-Original-To: patchwork@mira.cbaines.net Delivered-To: patchwork@mira.cbaines.net Received: by mira.cbaines.net (Postfix, from userid 113) id 12C8527BBE2; Mon, 13 Jan 2025 22:53:14 +0000 (GMT) X-Spam-Checker-Version: SpamAssassin 3.4.6 (2021-04-09) on mira.cbaines.net X-Spam-Level: X-Spam-Status: No, score=-7.6 required=5.0 tests=BAYES_00,DKIMWL_WL_HIGH, DKIM_SIGNED,DKIM_VALID,MAILING_LIST_MULTI,RCVD_IN_DNSWL_BLOCKED, RCVD_IN_VALIDITY_CERTIFIED,RCVD_IN_VALIDITY_RPBL,RCVD_IN_VALIDITY_SAFE, SPF_HELO_PASS,URIBL_BLOCKED autolearn=ham autolearn_force=no version=3.4.6 Received: from lists.gnu.org (lists.gnu.org [209.51.188.17]) by mira.cbaines.net (Postfix) with ESMTPS id 583A827BBE2 for ; Mon, 13 Jan 2025 22:53:12 +0000 (GMT) Received: from localhost ([::1] helo=lists1p.gnu.org) by lists.gnu.org with esmtp (Exim 4.90_1) (envelope-from ) id 1tXTIy-0003b0-TG; Mon, 13 Jan 2025 17:53:08 -0500 Received: from eggs.gnu.org ([2001:470:142:3::10]) by lists.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.90_1) (envelope-from ) id 1tXTIv-0003aW-N1 for guix-patches@gnu.org; Mon, 13 Jan 2025 17:53:05 -0500 Received: from debbugs.gnu.org ([2001:470:142:5::43]) by eggs.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_128_GCM_SHA256:128) (Exim 4.90_1) (envelope-from ) id 1tXTIv-0005Yu-Ca for guix-patches@gnu.org; Mon, 13 Jan 2025 17:53:05 -0500 DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=debbugs.gnu.org; s=debbugs-gnu-org; h=MIME-Version:Date:From:To:Subject; bh=uE+XI8l2MqvL/4faTW0odnPYb3/bx6LQMbP7QYSqaEg=; b=b3hOs/L7JzVAxYnkUJhVKkoIgbGbcO34B66OFZJ4Hnp2/Op+X0wzqot0m6/4/QmeBzUPiif4x4cJWqNJwVf4G4PfrYn8zHLtpUoIXq+wtQ9Hh01PmiD0/2CbsjdFxy7XMyXvFXa01krm7582U/Nr/qHmWP2vsxfZDuD2b3k5UIUaP2VT1/ovXDyTuk5AB7DZnqYZggPBIQ/m6A7I9KqrPc9NT9Qvxh/qlb1TW5x4ZlEUle3braqn3yG/FD8OdGH7DI5K8sNdBRPUM02tvnrduwcHfXBS+Lh66EPHcg23kvL2Fiz9N5eS+mC5Ja7pmkHWpbsFY1YUUuBs0esX5h9FuA==; Received: from Debian-debbugs by debbugs.gnu.org with local (Exim 4.84_2) (envelope-from ) id 1tXTIr-0001Oj-U0; Mon, 13 Jan 2025 17:53:01 -0500 X-Loop: help-debbugs@gnu.org Subject: [bug#75546] [PATCH] gnu: torbrowser: Update to 14.0.4 [security-fixes]. Resent-From: =?utf-8?b?QW5kcsOp?= Batista Original-Sender: "Debbugs-submit" Resent-CC: clement@lassieur.org, jonathan.brielmaier@web.de, mhw@netris.org, ian@retrospec.tv, guix-patches@gnu.org Resent-Date: Mon, 13 Jan 2025 22:53:01 +0000 Resent-Message-ID: Resent-Sender: help-debbugs@gnu.org X-GNU-PR-Message: report 75546 X-GNU-PR-Package: guix-patches X-GNU-PR-Keywords: patch To: 75546@debbugs.gnu.org Cc: =?utf-8?b?QW5kcsOp?= Batista , clement@lassieur.org, jonathan.brielmaier@web.de, mhw@netris.org, ian@retrospec.tv X-Debbugs-Original-To: guix-patches@gnu.org X-Debbugs-Original-Xcc: clement@lassieur.org, jonathan.brielmaier@web.de, mhw@netris.org, ian@retrospec.tv Received: via spool by submit@debbugs.gnu.org id=B.17368087245215 (code B ref -1); Mon, 13 Jan 2025 22:53:01 +0000 Received: (at submit) by debbugs.gnu.org; 13 Jan 2025 22:52:04 +0000 Received: from localhost ([127.0.0.1]:53183 helo=debbugs.gnu.org) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1tXTHv-0001Lt-Db for submit@debbugs.gnu.org; Mon, 13 Jan 2025 17:52:03 -0500 Received: from lists.gnu.org ([2001:470:142::17]:55606) by debbugs.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.84_2) (envelope-from ) id 1tXTHt-0001L1-C8 for submit@debbugs.gnu.org; Mon, 13 Jan 2025 17:52:02 -0500 Received: from eggs.gnu.org ([2001:470:142:3::10]) by lists.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.90_1) (envelope-from ) id 1tXTHo-0003UX-1n for guix-patches@gnu.org; Mon, 13 Jan 2025 17:51:56 -0500 Received: from mx1.riseup.net ([198.252.153.129]) by eggs.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.90_1) (envelope-from ) id 1tXTHm-0005H3-CJ for guix-patches@gnu.org; Mon, 13 Jan 2025 17:51:55 -0500 Received: from fews02-sea.riseup.net (fews02-sea-pn.riseup.net [10.0.1.112]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by mx1.riseup.net (Postfix) with ESMTPS id 4YX6vY1xMnzDqYc for ; Mon, 13 Jan 2025 22:51:53 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=riseup.net; s=squak; t=1736808713; bh=UwTKsztwrJ/YqKzCnh5g1H30vyzi76AzXTZgRcot5JE=; h=From:To:Cc:Subject:Date:From; b=YeXTzv8iVRePwG2IJLgHjqSiDhi45XdYUuHB7ZNqHIKGvWXwHFesKkqIlA1muVtaK 9eoruJuz9o9UXXVi3Kf8fAYuMZ/VYxOkMYBcMo7em8kglpNCyaSlPtOj8HBbzPAvgo 7qA2D0A5RsrBQSC1HtGIqCi/dcmwKAx27jBWmFng= X-Riseup-User-ID: 4A62BC6E1029B32597ECA49C2D0E7A645BD56827436CCDD248CC16740A623196 Received: from [127.0.0.1] (localhost [127.0.0.1]) by fews02-sea.riseup.net (Postfix) with ESMTPSA id 4YX6vX1flrzFsxV; Mon, 13 Jan 2025 22:51:52 +0000 (UTC) From: =?utf-8?b?QW5kcsOp?= Batista Date: Mon, 13 Jan 2025 19:51:45 -0300 Message-ID: <20250113225145.2460-1-nandre@riseup.net> MIME-Version: 1.0 Received-SPF: pass client-ip=198.252.153.129; envelope-from=nandre@riseup.net; helo=mx1.riseup.net X-Spam_score_int: -27 X-Spam_score: -2.8 X-Spam_bar: -- X-Spam_report: (-2.8 / 5.0 requ) BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_LOW=-0.7, RCVD_IN_MSPIKE_H3=0.001, RCVD_IN_MSPIKE_WL=0.001, RCVD_IN_VALIDITY_CERTIFIED_BLOCKED=0.001, RCVD_IN_VALIDITY_RPBL_BLOCKED=0.001, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001 autolearn=ham autolearn_force=no X-Spam_action: no action X-BeenThere: debbugs-submit@debbugs.gnu.org X-Mailman-Version: 2.1.18 Precedence: list X-BeenThere: guix-patches@gnu.org List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: guix-patches-bounces+patchwork=mira.cbaines.net@gnu.org Sender: guix-patches-bounces+patchwork=mira.cbaines.net@gnu.org X-getmail-retrieved-from-mailbox: Patches Fixes CVEs 2025-0237, 2025-0238, 2025-0239, 2025-0240, 2025-0241, 2025-0242 and 2025-0243. See for details. * gnu/packages/tor-browsers.scm (%torbrowser-build-date): Update to 20250106125732. (%torbrowser-version): Update to 14.0.4. (%torbrowser-firefox-version): Update to 128.6.0esr-14.0-1-build1. (torbrowser-translation-base): Update to bb1df34ec79d55dcd1e0ebc80cb2c72d27c462b7. (torbrowser-translation-specific): Update to ed3c2270e0a932596abb9fdb9a9f7151fb74d3a1. Change-Id: I913c052a401ca5a805b2c794e825cdaaacf6d09e --- gnu/packages/tor-browsers.scm | 18 +++++++++--------- 1 file changed, 9 insertions(+), 9 deletions(-) base-commit: 575dc58975281e8c2c779c9b3098746606cfc5dd diff --git a/gnu/packages/tor-browsers.scm b/gnu/packages/tor-browsers.scm index 32294e2bad5..9608a9cb983 100644 --- a/gnu/packages/tor-browsers.scm +++ b/gnu/packages/tor-browsers.scm @@ -116,16 +116,16 @@ (define firefox-locales ;; We copy the official build id, which is defined at ;; tor-browser-build/rbm.conf (browser_release_date). -(define %torbrowser-build-date "20241125154204") +(define %torbrowser-build-date "20250106125732") ;; To find the last version, look at https://www.torproject.org/download/. -(define %torbrowser-version "14.0.3") +(define %torbrowser-version "14.0.4") ;; To find the last Firefox version, browse ;; https://archive.torproject.org/tor-package-archive/torbrowser/<%torbrowser-version> ;; There should be only one archive that starts with ;; "src-firefox-tor-browser-". -(define %torbrowser-firefox-version "128.5.0esr-14.0-1-build2") +(define %torbrowser-firefox-version "128.6.0esr-14.0-1-build1") ;; See tor-browser-build/rbm.conf for the list. (define %torbrowser-locales (list "ar" "ca" "cs" "da" "de" "el" "es-ES" "fa" "fi" "fr" @@ -139,11 +139,11 @@ (define torbrowser-translation-base (method git-fetch) (uri (git-reference (url "https://gitlab.torproject.org/tpo/translation.git") - (commit "caa431bbea1a76d7ad61eeda94086a1513762605"))) + (commit "bb1df34ec79d55dcd1e0ebc80cb2c72d27c462b7"))) (file-name "translation-base-browser") (sha256 (base32 - "0zdkcykzh8m1rv6valx0mk6yvh2q4jrj2qxk0frh7nwxwc509b5c")))) + "0mhfbmghvdd1rpvpr8ppkdpzwwb9v03a211qgi27j3iwaa04zh9m")))) ;; See tor-browser-build/projects/translation/config. (define torbrowser-translation-specific @@ -151,11 +151,11 @@ (define torbrowser-translation-specific (method git-fetch) (uri (git-reference (url "https://gitlab.torproject.org/tpo/translation.git") - (commit "4314d0a7ce780ffdf82b84e324bfbc437198f993"))) + (commit "ed3c2270e0a932596abb9fdb9a9f7151fb74d3a1"))) (file-name "translation-tor-browser") (sha256 (base32 - "04dx6mjcgfmarnaxxkmrlgwgxdr37frgz5j3wakp9wixys6p6cdv")))) + "143cfv29n0fvq547nk3ziidfib8s3f8k10qjvgv0zldsc3sdgw5h")))) (define torbrowser-assets ;; This is a prebuilt Torbrowser from which we take the assets we need. @@ -171,7 +171,7 @@ (define torbrowser-assets version "/tor-browser-linux-x86_64-" version ".tar.xz")) (sha256 (base32 - "01mzc1d3vad3i8mwqmk2s17ynfhr45sfxgqcy5g9f5ahk6rl7msr")))) + "1f4gkyszvpykwy0hp6hp5yrbxgnq4yb082f24m93ayfmhlcjb5dv")))) (arguments (list #:install-plan @@ -213,7 +213,7 @@ (define* (make-torbrowser #:key ".tar.xz")) (sha256 (base32 - "1nnsmz6v8xnp67ih0jgail27c4cg6zfdax8qkd6hcn8i7pscgc72")))) + "16zyixbddwaiw1bzsai5crdg58kmacshsr0rp37m85qk0a8vryg3")))) (build-system mozilla-build-system) (inputs (list go-gitlab-torproject-org-tpo-anti-censorship-pluggable-transports-lyrebird