Your message dated Tue, 30 Dec 2014 17:03:39 +0000
with message-id <e1y60cp-0000yl...@franck.debian.org>
and subject line Bug#773041: fixed in libmspack 0.4-2
has caused the Debian Bug report #773041,
regarding libmspack: hangs on a crafted CAB file
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)


-- 
773041: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=773041
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Package: cabextract
Version: 1.4-4+b1
Severity: minor
Usertags: afl

The attached file makes cabextract hang forever (or at least for two minutes, after which I lost my patience :-P).

This bug was found using American fuzzy lop:
http://lcamtuf.coredump.cx/afl/


-- System Information:
Debian Release: 8.0
 APT prefers unstable
 APT policy: (990, 'unstable'), (500, 'experimental')
Architecture: i386 (x86_64)
Foreign Architectures: amd64

Kernel: Linux 3.2.0-4-amd64 (SMP w/2 CPU cores)
Locale: LANG=C, LC_CTYPE=pl_PL.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash
Init: sysvinit (via /sbin/init)

Versions of packages cabextract depends on:
ii  libc6  2.19-13

--
Jakub Wilk

Attachment: hang.cab
Description: application/cab


--- End Message ---
--- Begin Message ---
Source: libmspack
Source-Version: 0.4-2

We believe that the bug you reported is fixed in the latest version of
libmspack, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 773...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Marc Dequènes (Duck) <d...@duckcorp.org> (supplier of updated libmspack package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Tue, 30 Dec 2014 17:40:47 +0100
Source: libmspack
Binary: libmspack0 libmspack-dev libmspack-dbg libmspack-doc
Architecture: source amd64 all
Version: 0.4-2
Distribution: unstable
Urgency: medium
Maintainer: Marc Dequènes (Duck) <d...@duckcorp.org>
Changed-By: Marc Dequènes (Duck) <d...@duckcorp.org>
Description:
 libmspack-dbg - library for Microsoft compression formats (debugging symbols)
 libmspack-dev - library for Microsoft compression formats (development files)
 libmspack-doc - library for Microsoft compression formats (documentation)
 libmspack0 - library for Microsoft compression formats (shared library)
Closes: 773041
Changes:
 libmspack (0.4-2) unstable; urgency=medium
 .
   * Added patch 'qtmd-fix-frame_end-overflow.patch' to fix an overflow
     causing an infinite loop in some situation (Closes: #773041).
Checksums-Sha1:
 f84986daa0318462b156e739abfa10a83e3c3f35 2064 libmspack_0.4-2.dsc
 fb6cbf08a9fc2fbfd713ba2d048f06d7aeeccceb 3516 libmspack_0.4-2.debian.tar.xz
 a9ea854769dcd26dad3a965daee1cc8d5f42fc20 45570 libmspack0_0.4-2_amd64.deb
 bebc11d8e2e89c1e87998a913d6ece23d768a946 63944 libmspack-dev_0.4-2_amd64.deb
 583b9ab31401e42fb336e2d5e085e83fff638192 82966 libmspack-dbg_0.4-2_amd64.deb
 6a6ed210f9125f7a11b2f1a835197a38b2189609 87766 libmspack-doc_0.4-2_all.deb
Checksums-Sha256:
 45c8f9a2280a0857b1dc2a3b1ed2a1c593eefc25b003dcb1e8ccdd9d5201c008 2064 
libmspack_0.4-2.dsc
 cc59f38c4661112139817ddbb177ec966b7ffbb8fa215ccf9fa6531e9b1c6e54 3516 
libmspack_0.4-2.debian.tar.xz
 d5bfe0ddfd7eae30bf5dff7b68053f28f8844f1fa204fc6419992e3e6d623091 45570 
libmspack0_0.4-2_amd64.deb
 60bd8c1fcbce7a165fc62313b048b02d1d4c0cda19ec86e713f1f2c429019e6b 63944 
libmspack-dev_0.4-2_amd64.deb
 e5a5a5da15bcedcaf6439732e08941ba9619f72718bd630978d20bee0c901aad 82966 
libmspack-dbg_0.4-2_amd64.deb
 578913a0c8bc6bba3abf7b045f10a73f55449f0219a97a653b5c2f1bc7c298e5 87766 
libmspack-doc_0.4-2_all.deb
Files:
 2f4d81be6b8025ba24d3318678200fd7 2064 libs optional libmspack_0.4-2.dsc
 40301461d418e010cd6fbbf3d3fd6a55 3516 libs optional 
libmspack_0.4-2.debian.tar.xz
 a1f869d6e77d53784d9cdcd089c64366 45570 libs optional libmspack0_0.4-2_amd64.deb
 d4258fb2c2747ec3c0edfafe8ff7db11 63944 libdevel optional 
libmspack-dev_0.4-2_amd64.deb
 6bb0e11c8893f0fc0b1a0f701f9d5b32 82966 debug extra 
libmspack-dbg_0.4-2_amd64.deb
 fb93a34a6279963a791dcc6e09448ba0 87766 doc optional libmspack-doc_0.4-2_all.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1

iQIcBAEBCgAGBQJUotguAAoJEFXp+fesHEQ/WVgQAKZMKwZpeaGokq9RqOp4rsbr
ADo7kRd/h8eceZRVhWllB3HdBgSOJXSOPfltNloUiNdXMhRRVpQd5/LJT/g9ObGG
wz44AfCm4o311P5hKekv05H69LJSK1GvOIAPJpxVXgdfI4u67HGBPesq19UNdobf
oDbuDxICgkymAB/QqoqFrKBW9aOpwWgqpqugG7l0EUhLx7HeBmcLL9lXA6FWACWb
88XDneCPkeYs/H+LfsYEPVyIyo1sWVP+3ZnJ8SkDzqu2WoLP9dK0fFa69eERiy5n
hT6gIX+jIS4VrEjPXkv9GDdCe8/Nw/p/BR6vf+39liN372hyvo0A0aJa7XXYJDdU
Civ6IdQ02UIAmMjf3/yY7orBYV5+6vR2rorSfg/wzQG22LXkCK/D2DJFrBiJdcvo
p3cB9qz/2rwyz4uCvXAoGCPJZBxYQJBhcqExIgOPIODnnHGmo3lzyc265LI0avly
BZ66rrPPflaP7fc+FOVmZcJvAf4PTvZTT5JX6WXFJMKoPzBzdJ4iLAmR8i4PhKiz
/1hMJNYlp8SMYuYB6f75qdL1Wo01AT4Edc+p8YT5pevVuWNiPoOApAXNKDYwv9vm
ktMmy7G7leEnVY4s9DhEmm/zMZr+jMTvzlmli4IUoAkPd0xXPqoxaWraODQV+WPp
zK0J4mgyKmMNZ0X5JiUi
=aOVn
-----END PGP SIGNATURE-----

--- End Message ---

Reply via email to