Your message dated Mon, 30 Jul 2012 19:02:08 +0000
with message-id <[email protected]>
and subject line Bug#681097: fixed in automake1.11 1:1.11.1-1+squeeze1
has caused the Debian Bug report #681097,
regarding CVE-2012-3386: Information disclosure
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)
--
681097: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=681097
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Package: automake
Version: 1:1.11-1.2.201001121001
Severity: important
Tags: security
Hi,
a security issue has been found in automake. It's not earth-shattering, but we
should
still get it into Wheezy.
http://thread.gmane.org/gmane.comp.sysutils.automake.patches/8572
This also affects the source packages automake, automake1.7, automake1.9 and
automake1.10...
Cheers,
Moritz
--- End Message ---
--- Begin Message ---
Source: automake1.11
Source-Version: 1:1.11.1-1+squeeze1
We believe that the bug you reported is fixed in the latest version of
automake1.11, which is due to be installed in the Debian FTP archive.
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Eric Dorland <[email protected]> (supplier of updated automake1.11 package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.8
Date: Sun, 29 Jul 2012 03:19:19 -0400
Source: automake1.11
Binary: automake
Architecture: source all
Version: 1:1.11.1-1+squeeze1
Distribution: stable
Urgency: low
Maintainer: Eric Dorland <[email protected]>
Changed-By: Eric Dorland <[email protected]>
Description:
automake - A tool for generating GNU Standards-compliant Makefiles
Closes: 681097
Changes:
automake1.11 (1:1.11.1-1+squeeze1) stable; urgency=low
.
* lib/am/distdir.am: Fixes CVE-2012-3386 "Temporary worldwide write
permissions during make distcheck". (Closes: #681097)
Checksums-Sha1:
2fbe62e65c574864db14d192a9cc169e99c25de2 1316
automake1.11_1.11.1-1+squeeze1.dsc
f6c8d8b27886c4b238b772c7fb63128fc0a0a090 6532
automake1.11_1.11.1-1+squeeze1.debian.tar.bz2
1bcc1cc81dfe9d039b44dda26131cf97e7d113be 610936
automake_1.11.1-1+squeeze1_all.deb
Checksums-Sha256:
e32016cdef33013ff27a39ba0776d4ea4a75e06d99b2fac1eaa050db9c56b701 1316
automake1.11_1.11.1-1+squeeze1.dsc
5f0ef5fb9e0debeb654bf2840c8968cd21a5422ba7f6641ba53273f7d761b77b 6532
automake1.11_1.11.1-1+squeeze1.debian.tar.bz2
25f54f4b8da23bbb8e53721dde022e0f229452e588d2c23a698085de939280a9 610936
automake_1.11.1-1+squeeze1_all.deb
Files:
e86ffc0f025f7215935d0459cb001d88 1316 devel optional
automake1.11_1.11.1-1+squeeze1.dsc
628d1cbb259e2c98e80d4204f9b45594 6532 devel optional
automake1.11_1.11.1-1+squeeze1.debian.tar.bz2
4328d731e0e228598aaf791f1178d4a8 610936 devel optional
automake_1.11.1-1+squeeze1_all.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)
iEYEARECAAYFAlAVoR4ACgkQYemOzxbZcMYFkgCfTScSH0KF2JbajRd9iOULR1Fi
k88AnRIN8FwtbiH2hEn5VtF/n7M4vn5E
=O48G
-----END PGP SIGNATURE-----
--- End Message ---