Your message dated Wed, 24 Dec 2014 15:43:43 +0000
with message-id <[email protected]>
and subject line Bug#773263: fixed in subversion 1.6.17dfsg-4+deb7u7
has caused the Debian Bug report #773263,
regarding subversion: CVE-2014-3580
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)
--
773263: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=773263
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Package: subversion
Version: 1.5.1dfsg1-5
Severity: grave
Tags: security
Hi,
please see
http://subversion.apache.org/security/CVE-2014-3580-advisory.txt for
further information.
Cheers,
Moritz
--- End Message ---
--- Begin Message ---
Source: subversion
Source-Version: 1.6.17dfsg-4+deb7u7
We believe that the bug you reported is fixed in the latest version of
subversion, which is due to be installed in the Debian FTP archive.
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
James McCoy <[email protected]> (supplier of updated subversion package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Thu, 18 Dec 2014 21:55:36 -0500
Source: subversion
Binary: subversion libsvn1 libsvn-dev libsvn-doc libapache2-svn
python-subversion subversion-tools libsvn-java libsvn-perl libsvn-ruby1.8
libsvn-ruby
Architecture: source all amd64
Version: 1.6.17dfsg-4+deb7u7
Distribution: wheezy-security
Urgency: high
Maintainer: James McCoy <[email protected]>
Changed-By: James McCoy <[email protected]>
Description:
libapache2-svn - Subversion server modules for Apache
libsvn-dev - Development files for Subversion libraries
libsvn-doc - Developer documentation for libsvn
libsvn-java - Java bindings for Subversion
libsvn-perl - Perl bindings for Subversion
libsvn-ruby - Ruby bindings for Subversion (dummy package)
libsvn-ruby1.8 - Ruby bindings for Subversion
libsvn1 - Shared libraries used by Subversion
python-subversion - Python bindings for Subversion
subversion - Advanced version control system
subversion-tools - Assorted tools related to Subversion
Closes: 773263
Changes:
subversion (1.6.17dfsg-4+deb7u7) wheezy-security; urgency=high
.
* patches/CVE-2014-3580: mod_dav_svn DoS vulnerability with invalid REPORT
requests (Closes: #773263)
Checksums-Sha1:
5155fe297749bbbc47ff130527f1c95995861c1c 3054
subversion_1.6.17dfsg-4+deb7u7.dsc
1fa5a3dea7ca8e6dda01d37e35a7818514c18625 115037
subversion_1.6.17dfsg-4+deb7u7.diff.gz
d55d0c2e0436106bfd2f610fcd45db17e02c1f76 2083570
libsvn-doc_1.6.17dfsg-4+deb7u7_all.deb
3267a94737131a88c4ed9523c4a529d2f1dd97db 222108
subversion-tools_1.6.17dfsg-4+deb7u7_all.deb
591755909aa4b7ab3f96908bb4c4392c71a9f954 764
libsvn-ruby_1.6.17dfsg-4+deb7u7_all.deb
a0f026ecfd6d850978ae97a34658d9c80db48a9b 1317528
subversion_1.6.17dfsg-4+deb7u7_amd64.deb
665796984faf7f44eb0d4c92a5dc4a3115d82a4e 934840
libsvn1_1.6.17dfsg-4+deb7u7_amd64.deb
25bcd19d0d39894d11a7e4b1c9e6dff9d2cfb3ac 1304348
libsvn-dev_1.6.17dfsg-4+deb7u7_amd64.deb
a1d3e040810a467f724378a2be096e892e8bf008 173216
libapache2-svn_1.6.17dfsg-4+deb7u7_amd64.deb
6e3e581659501cfc3a087aa0d18c62e4b4d59d24 1340300
python-subversion_1.6.17dfsg-4+deb7u7_amd64.deb
7353903903d6d17b2cdabceb53618a801b60658b 306250
libsvn-java_1.6.17dfsg-4+deb7u7_amd64.deb
b751a769782412f93c13dc6c52605c70973bd7c6 1082936
libsvn-perl_1.6.17dfsg-4+deb7u7_amd64.deb
9a6b2fd83e70ba68b870cadadc74fcaffaf038c1 627994
libsvn-ruby1.8_1.6.17dfsg-4+deb7u7_amd64.deb
Checksums-Sha256:
b493fdb5551bbe320223d984883989a227ba65816bd65bfafc20eb46400f5ade 3054
subversion_1.6.17dfsg-4+deb7u7.dsc
7b6002e49ba17429a1c5a26dbfd7b97fcf081d68522164a2aa675863a39f1f72 115037
subversion_1.6.17dfsg-4+deb7u7.diff.gz
c22e0c66db69ef1ffdbf8fc9c69f60fb6018ce3321ad3b37afa2976bf33ee595 2083570
libsvn-doc_1.6.17dfsg-4+deb7u7_all.deb
390bfbf44c19d46530596fd6a9a444377da638af091741cf417ab56b4059f3ac 222108
subversion-tools_1.6.17dfsg-4+deb7u7_all.deb
c634e35a026c4e4123652fb5d5c69f263befd9fb2aa7cbeab9580fac743a3398 764
libsvn-ruby_1.6.17dfsg-4+deb7u7_all.deb
5e08d8a7b0a3c743fd80a11c73024b1fed91544e49b7e02642000a8d63813cce 1317528
subversion_1.6.17dfsg-4+deb7u7_amd64.deb
c6940853953065bd1182ac24621b2fa2269b0dd23e2f6e886dbe842afb4fc535 934840
libsvn1_1.6.17dfsg-4+deb7u7_amd64.deb
e206d8d868e977e03b45c6b6c8d3388a6eb9ec89b52d81c2eced166bf685ff45 1304348
libsvn-dev_1.6.17dfsg-4+deb7u7_amd64.deb
f7370c4b85b8950e35b574b36dda186d845e535292f2ef75a65e82336e6676ac 173216
libapache2-svn_1.6.17dfsg-4+deb7u7_amd64.deb
f0e8965d7e23cd56adce1fe614ba0d81d89b1b8d73ec267b67933c814409dd93 1340300
python-subversion_1.6.17dfsg-4+deb7u7_amd64.deb
6eb79442234e26a374e1d31ccff4e0745d275b533a9ee0435f4304abf5e72d26 306250
libsvn-java_1.6.17dfsg-4+deb7u7_amd64.deb
78ea8057298aa7f1a84e8e555ebc46469fbc08f4ca31412fb225069577a4027a 1082936
libsvn-perl_1.6.17dfsg-4+deb7u7_amd64.deb
039f10d8e6cee922d07b1d8cfae93ad845935dc7003862b934e2f6fc926c694c 627994
libsvn-ruby1.8_1.6.17dfsg-4+deb7u7_amd64.deb
Files:
6a0fcfeb1315c6e5c74cbd3bc1c12603 3054 vcs optional
subversion_1.6.17dfsg-4+deb7u7.dsc
3a56bb4b9a8c33d7a8b56907bc42ca3b 115037 vcs optional
subversion_1.6.17dfsg-4+deb7u7.diff.gz
be101d2086d77a36d46d920b1ca3db3e 2083570 doc extra
libsvn-doc_1.6.17dfsg-4+deb7u7_all.deb
912741f6927e3fb81b9a46e24f65ad41 222108 vcs extra
subversion-tools_1.6.17dfsg-4+deb7u7_all.deb
30a7d3d8c03cdea93bba773274823a6b 764 ruby optional
libsvn-ruby_1.6.17dfsg-4+deb7u7_all.deb
07a19a5bb5ccf5065d4a8c525ba8dea2 1317528 vcs optional
subversion_1.6.17dfsg-4+deb7u7_amd64.deb
320b881ca629a182c4a606a7712a8a6d 934840 vcs optional
libsvn1_1.6.17dfsg-4+deb7u7_amd64.deb
5f7847fe3c12d3e4d1cafc6bff180332 1304348 libdevel extra
libsvn-dev_1.6.17dfsg-4+deb7u7_amd64.deb
a9a9f738c3ed958cc1db70c3bfca3597 173216 httpd optional
libapache2-svn_1.6.17dfsg-4+deb7u7_amd64.deb
dd7a9f5ea3956c330349cd7e7d47c04b 1340300 python optional
python-subversion_1.6.17dfsg-4+deb7u7_amd64.deb
021d4f9ca4cb04c783c69ff9cda6b7b7 306250 java optional
libsvn-java_1.6.17dfsg-4+deb7u7_amd64.deb
11ee3d11507682a426f629214cf6ba77 1082936 perl optional
libsvn-perl_1.6.17dfsg-4+deb7u7_amd64.deb
5538c7e3d0d7bf526070515d27a2168d 627994 ruby optional
libsvn-ruby1.8_1.6.17dfsg-4+deb7u7_amd64.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
iQJ8BAEBCgBmBQJUlCfKXxSAAAAAAC4AKGlzc3Vlci1mcHJAbm90YXRpb25zLm9w
ZW5wZ3AuZmlmdGhob3JzZW1hbi5uZXQ5MUJGQkY0RDY5NTZCRDVERjdCNzJEMjNE
RkU2OTFBRTMzMUJBM0RCAAoJEN/mka4zG6PbfGwQALyn6v0kdiZwxGpHx6o8zD6T
J7M/v3V3Ja607Y0IWB/AQJM0vdCoJ8NxUAqlnz+jQ8fqf4nO8DjbzqYetxBF0xPB
gZp+TGuVZm1qMRip3mSYchU8477jSFzaI1Us146iXJUnIidZoKsoHlChzmsKI/9P
+W4dVCSpCHgiEZrzmD1yJHxy/pwFSSejIpMIDjgL6wNIycj+MLvpFV/DI6tiHXOj
MBkwCPbbDLJl5q9J5OreshXYYmF4DNGXLXZBodDPswe49341SGtWdvpwlUW+qQNN
dQ+Un4gzm7bLEtPvpmhGWGWaoPHyB1bKFFK9Vi17iRB209m3jV1HiXIonmdiI/G+
Dl4xx6gcIfQ05qUqkKQPl551Ety5Anf8328lYaPOk72nlIDenKJRk+oeQjSYnJBW
9+Q9lO67cVdEAJ8P6sJ6hXI0QmDtrxMvn/tSf6bZL+FzCLnyfOk/vFdgcwVvlm98
55okZxTn5pvn9HHI6Zw7sUXzNd2T1hs29t1kVyL6TxS+wM65HoSxiRnFdYuSRVpm
E2yLd5fFtMrwAHJ0qa3AtUFUoVyKW2g3WrPj346DZgTC0CU1g2jFtD7G2xTy34j2
vIeAwBVweHmnFIAMXbHSUKkAkW5xWkDiZBYpeOZp23gkw7N0XAe1zrEJ0W5fpWyO
J41oxz1pF0rUoFKkPQrv
=AVXy
-----END PGP SIGNATURE-----
--- End Message ---