Your message dated Wed, 23 Aug 2006 23:32:11 -0700
with message-id <[EMAIL PROTECTED]>
and subject line Bug#382474: fixed in capi4hylafax 1:01.03.00.99.svn.300-1
has caused the attached Bug report to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what I am
talking about this indicates a serious mail system misconfiguration
somewhere.  Please contact me immediately.)

Debian bug tracking system administrator
(administrator, Debian Bugs database)

--- Begin Message ---
package: capi4hylafax
version: 01.02.03-10

i have a problem with c2faxrecv and as result with faxrecv and faxdispatch:

when an incoming fax-call provides the cidnumber, everything is fine - the fax is converted to pdf and will be delivered via email. but when the incoming call is "anonymous" (without cidnumber) it seems that faxdispatch a) isn't called or b) cant handle the empty string for cidnumber.

session logs following

incoming call provides senders number (msn)

c2faxrecv - INFO: Fax received and calling
'/var/spool/hylafax/bin/faxrcvd "recvq/fax00003.tif" "faxCAPI" "0000
0003" "" "+49 30 1234567" "" "9876543"'.

incoming call does not provide senders number

c2faxrecv - INFO: Fax received and calling
'/var/spool/hylafax/bin/faxrcvd "recvq/fax00007.tif" "faxCAPI" "0000
0007" "" "+49'.

the parameter cidnumber is truncated after the country-id (49 for
germany) when incoming call is "anonymous".
when i start faxrcvd manually from shell with

/var/spool/hylafax/bin/faxrcvd "recvq/fax00007.tif" "faxCAPI" "00000007"
"" "+49" (note the change of cidnumber here)

it works fine and faxdispatch is called too.

so i think, that c2faxrecv can't handle anonymous incoming calls (where the sending station isn't providing any information or number). the parameter cidnumber is truncated after the country code and the parameters cidname and destination are missing completely.

i am using sarge and dont have any unstable mirrors in my sources.list

regards,
arne


--- End Message ---
--- Begin Message ---
Source: capi4hylafax
Source-Version: 1:01.03.00.99.svn.300-1

We believe that the bug you reported is fixed in the latest version of
capi4hylafax, which is due to be installed in the Debian FTP archive:

capi4hylafax_01.03.00.99.svn.300-1.diff.gz
  to pool/main/c/capi4hylafax/capi4hylafax_01.03.00.99.svn.300-1.diff.gz
capi4hylafax_01.03.00.99.svn.300-1.dsc
  to pool/main/c/capi4hylafax/capi4hylafax_01.03.00.99.svn.300-1.dsc
capi4hylafax_01.03.00.99.svn.300-1_sparc.deb
  to pool/main/c/capi4hylafax/capi4hylafax_01.03.00.99.svn.300-1_sparc.deb
capi4hylafax_01.03.00.99.svn.300.orig.tar.gz
  to pool/main/c/capi4hylafax/capi4hylafax_01.03.00.99.svn.300.orig.tar.gz



A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to [EMAIL PROTECTED],
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Lionel Elie Mamane <[EMAIL PROTECTED]> (supplier of updated capi4hylafax 
package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [EMAIL PROTECTED])


-----BEGIN PGP SIGNED MESSAGE-----
Hash: RIPEMD160

Format: 1.7
Date: Wed, 23 Aug 2006 23:15:32 +0200
Source: capi4hylafax
Binary: capi4hylafax
Architecture: source sparc
Version: 1:01.03.00.99.svn.300-1
Distribution: unstable
Urgency: high
Maintainer: Lionel Elie Mamane <[EMAIL PROTECTED]>
Changed-By: Lionel Elie Mamane <[EMAIL PROTECTED]>
Description: 
 capi4hylafax - Faxing over CAPI 2.0 device
Closes: 382474
Changes: 
 capi4hylafax (1:01.03.00.99.svn.300-1) unstable; urgency=low
 .
   * New upstream release:
     - Fix for #358567 taken upstream
     - Fix for long (> 200 chars) lines in config files
     - Higher debbugging level
   * Bumped up Standards-Version
 .
 capi4hylafax (1:01.03.00.99.svn.297-4) UNRELEASED; urgency=high
 .
   * Don't let null characters from cidnumber prematurely terminate C
     string preparing command line for faxrcvd in c2faxrecv
     (closes: #382474).
     Also remove shell metacharacters while I'm at it. This probably fixes
     a security vulnerability (arbitrary remote command execution under
     uucp identity): the said command line contains untrusted
     sender-controlled data, the sender's identification (the TSI
     string). (The ITU T.30 specification restricts this string to a prefix
     '+' and digits only, but rumour has it an attacker can transmit
     arbitrary ASCII data, including null characters.)
Files: 
 dc7276e8c3b28efb084af14225565144 708 comm extra 
capi4hylafax_01.03.00.99.svn.300-1.dsc
 af2610c5219e89ef9dc47eead30276b4 533410 comm extra 
capi4hylafax_01.03.00.99.svn.300.orig.tar.gz
 964e9a7c78dea6b6e681bddf18b6cc99 153873 comm extra 
capi4hylafax_01.03.00.99.svn.300-1.diff.gz
 da0d046449d1772bd9dc14316a60bf51 227218 comm extra 
capi4hylafax_01.03.00.99.svn.300-1_sparc.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (GNU/Linux)

iEYEAREDAAYFAkTtQ4EACgkQscRzFz57S3OrHQCdF8mCckblBv6dMSos6cij6GV4
DIgAoJizTNXTwhiLeUQcpXL9YOHFpWLx
=0HKh
-----END PGP SIGNATURE-----


--- End Message ---

Reply via email to