Your message dated Tue, 12 Oct 2021 17:03:52 +0000
with message-id <[email protected]>
and subject line Bug#988734: fixed in lua5.3 5.3.6-1
has caused the Debian Bug report #988734,
regarding CVE-2020-24370
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)
--
988734: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=988734
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Package: lua5.3
Severity: important
Tags: security
X-Debbugs-Cc: Debian Security Team <[email protected]>
CVE-2020-24370:
http://lua-users.org/lists/lua-l/2020-07/msg00324.html
Patch:
https://github.com/lua/lua/commit/b5bc89846721375fe30772eb8c5ab2786f362bf9
Cheers,
Moritz
--- End Message ---
--- Begin Message ---
Source: lua5.3
Source-Version: 5.3.6-1
Done: Bastian Germann <[email protected]>
We believe that the bug you reported is fixed in the latest version of
lua5.3, which is due to be installed in the Debian FTP archive.
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Bastian Germann <[email protected]> (supplier of updated lua5.3 package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Tue, 12 Oct 2021 18:23:37 +0200
Source: lua5.3
Architecture: source
Version: 5.3.6-1
Distribution: unstable
Urgency: medium
Maintainer: Debian Lua Team <[email protected]>
Changed-By: Bastian Germann <[email protected]>
Closes: 920321 988734 995535
Changes:
lua5.3 (5.3.6-1) unstable; urgency=medium
.
* Team upload
* Make the package team-maintained (Closes: #995535)
* New upstream version 5.3.6 (Closes: #920321, #988734)
- Fixes CVE-2019-6706, CVE-2020-24370
- Drop upstream patch
* Fix a few lintian warnings
* d/copyright: Update year range
Checksums-Sha1:
c411e6ffe3b82bc69cf3aeb9b09bd140c5b30beb 1905 lua5.3_5.3.6-1.dsc
f27d20d6c81292149bc4308525a9d6733c224fa5 303770 lua5.3_5.3.6.orig.tar.gz
808136c205d40c320ebcc668d35153280fc8e348 7588 lua5.3_5.3.6-1.debian.tar.xz
c468488daebd8b810a2712f08a0e51063dd3febb 5508 lua5.3_5.3.6-1_source.buildinfo
Checksums-Sha256:
3d4b991ddaa053f77b5ad6b991db80f162a3ba84df1c8f0490623ceeb4a9594d 1905
lua5.3_5.3.6-1.dsc
fc5fd69bb8736323f026672b1b7235da613d7177e72558893a0bdcd320466d60 303770
lua5.3_5.3.6.orig.tar.gz
98f004dd3b93dbd16ad987c7ae77fa82c6d0f1e403ad182bbd31efdedd4e07f2 7588
lua5.3_5.3.6-1.debian.tar.xz
48ad3770e7b9fcae60b6a0cdc91a474027da0e953656c38c1c6a645ce0d8c00d 5508
lua5.3_5.3.6-1_source.buildinfo
Files:
d1ff51be9cab9224cebb5c87ce0fd55d 1905 interpreters optional lua5.3_5.3.6-1.dsc
83f23dbd5230140a3770d5f54076948d 303770 interpreters optional
lua5.3_5.3.6.orig.tar.gz
7699f06093a84b1fdac97aee0c2ab4f2 7588 interpreters optional
lua5.3_5.3.6-1.debian.tar.xz
2b1b81402acba8ce6d14952f33b15bac 5508 interpreters optional
lua5.3_5.3.6-1_source.buildinfo
-----BEGIN PGP SIGNATURE-----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=3dkQ
-----END PGP SIGNATURE-----
--- End Message ---