Your message dated Thu, 02 Sep 2021 05:21:00 +0000
with message-id <[email protected]>
and subject line Bug#993476: fixed in inetutils 2:2.2-1
has caused the Debian Bug report #993476,
regarding inetutils: security bug in ftp client
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)


-- 
993476: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=993476
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Package: inetutils-ftp

Hi!  Just to let you know that inetutils 2.2 contains a fix for
long-standing security bug, a patch that should apply to earlier
versions:

https://git.savannah.gnu.org/cgit/inetutils.git/commit/?id=58cb043b190fd04effdaea7c9403416b436e50dd

See bug report with plenty of links to earlier similar issues in other
ftp clients:

https://lists.gnu.org/archive/html/bug-inetutils/2021-06/msg00002.html

/Simon

Attachment: signature.asc
Description: PGP signature


--- End Message ---
--- Begin Message ---
Source: inetutils
Source-Version: 2:2.2-1
Done: Guillem Jover <[email protected]>

We believe that the bug you reported is fixed in the latest version of
inetutils, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Guillem Jover <[email protected]> (supplier of updated inetutils package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Thu, 02 Sep 2021 07:02:33 +0200
Source: inetutils
Architecture: source
Version: 2:2.2-1
Distribution: unstable
Urgency: medium
Maintainer: Guillem Jover <[email protected]>
Changed-By: Guillem Jover <[email protected]>
Closes: 993476
Changes:
 inetutils (2:2.2-1) unstable; urgency=medium
 .
   * New upstream release.
     - Fix inetutils-ftp security bug trusting FTP PASV responses.
       Closes: #993476
Checksums-Sha1:
 3da9453b358861a17711683d7998de88c98d69fb 3056 inetutils_2.2-1.dsc
 a6b0783d315657e51a09ee281af1210cc5293b9f 1529508 inetutils_2.2.orig.tar.xz
 bcf6f5804cba5915d1fb513d2981b09164c162ac 488 inetutils_2.2.orig.tar.xz.asc
 743a2c588e19ab77f5783937ec3b155545934bea 76784 inetutils_2.2-1.debian.tar.xz
 c8ebb601ca738493f8cac53de97fe7b6bf12204a 12254 inetutils_2.2-1_amd64.buildinfo
Checksums-Sha256:
 e83f3dbeb995dc70efa352950f2b4acdf05d5ebd271658a3dc81f56f227acfe5 3056 
inetutils_2.2-1.dsc
 d547f69172df73afef691a0f7886280fd781acea28def4ff4b4b212086a89d80 1529508 
inetutils_2.2.orig.tar.xz
 812c2c7837a9729f73e4af99a13ef649405b737530070cccb4a6f41d2cd81b74 488 
inetutils_2.2.orig.tar.xz.asc
 816b8a33e0a0429076106e5ccbb5536e65ce33d0d1f5b04a5214ed6f5853275f 76784 
inetutils_2.2-1.debian.tar.xz
 b2f057952f2f7b1d34f29822bfb810bf85413382ab9b2b0036e7ee41ce5c9cc8 12254 
inetutils_2.2-1_amd64.buildinfo
Files:
 06cd1594a314011a33d420f97de00bc5 3056 net optional inetutils_2.2-1.dsc
 de8c1b49cbde2b30e481c61c65357ad4 1529508 net optional inetutils_2.2.orig.tar.xz
 fc503b580068e616dbb85e4316435691 488 net optional inetutils_2.2.orig.tar.xz.asc
 a70bdc6f2a9365d47db9f3e38c659418 76784 net optional 
inetutils_2.2-1.debian.tar.xz
 4332b96a09bf55fd37314a7f7e352b6f 12254 net optional 
inetutils_2.2-1_amd64.buildinfo

-----BEGIN PGP SIGNATURE-----
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=3+nY
-----END PGP SIGNATURE-----

--- End Message ---

Reply via email to