Your message dated Sat, 07 Apr 2018 22:48:07 +0000
with message-id <e1f4wcx-00066k...@fasolo.debian.org>
and subject line Bug#893525: fixed in sharutils 1:4.14-2+deb8u1
has caused the Debian Bug report #893525,
regarding CVE-2018-1000097
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)


-- 
893525: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=893525
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Source: sharutils
Severity: grave
Tags: security

This has been assigned CVE-2018-1000097:
http://lists.gnu.org/archive/html/bug-gnu-utils/2018-02/msg00004.html

Proposed patch at:
http://lists.gnu.org/archive/html/bug-gnu-utils/2018-02/msg00005.html

Cheers,
        Moritz

--- End Message ---
--- Begin Message ---
Source: sharutils
Source-Version: 1:4.14-2+deb8u1

We believe that the bug you reported is fixed in the latest version of
sharutils, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 893...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Santiago Vila <sanv...@debian.org> (supplier of updated sharutils package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Format: 1.8
Date: Wed, 04 Apr 2018 19:49:02 +0200
Source: sharutils
Binary: sharutils sharutils-doc
Architecture: source all
Version: 1:4.14-2+deb8u1
Distribution: jessie-security
Urgency: medium
Maintainer: Santiago Vila <sanv...@debian.org>
Changed-By: Santiago Vila <sanv...@debian.org>
Description:
 sharutils  - shar, unshar, uuencode, uudecode
 sharutils-doc - Documentation for GNU sharutils
Closes: 893525
Changes:
 sharutils (1:4.14-2+deb8u1) jessie-security; urgency=medium
 .
   * Apply patch from Petr Pisar to fix heap buffer overflow in unshar.
     This is CVE-2018-1000097. Closes: #893525.
Checksums-Sha1:
 c7fd75e63359185e79f7c23eedf14fa01314cf3f 1465 sharutils_4.14-2+deb8u1.dsc
 5d2d76caa6ee816202fb78395415bd863043d81b 1089052 sharutils_4.14.orig.tar.xz
 a69401184617dd8e3a6d03f30e37446446370ec6 6608 
sharutils_4.14-2+deb8u1.debian.tar.xz
 957347359889e5bf35735a05e84171f64d5aaa48 44234 
sharutils-doc_4.14-2+deb8u1_all.deb
Checksums-Sha256:
 eb7387cd9427c04d7caf5249db2c3b40eea4d31ef0fd8cbb3c8d7b31f04a4f4c 1465 
sharutils_4.14-2+deb8u1.dsc
 eae388efcf52aba0b081f09053189e0a3ad238561d88716b880b5c0676c07a0c 1089052 
sharutils_4.14.orig.tar.xz
 ecb9c2be1b57309681b5fd07cf2dff71a95e4d69114002a8bb1f9b5a66468b0b 6608 
sharutils_4.14-2+deb8u1.debian.tar.xz
 eaf3e411ac92819ae21ec2616edccdd0d0398b247f7adf20d3fe05307c7a8275 44234 
sharutils-doc_4.14-2+deb8u1_all.deb
Files:
 02b9d1f27b3e32c4ebf70a698dd2095d 1465 utils optional 
sharutils_4.14-2+deb8u1.dsc
 77ede22951bdb67279c6e78e79a04784 1089052 utils optional 
sharutils_4.14.orig.tar.xz
 e5580701d427c5c22a93f57e4c435349 6608 utils optional 
sharutils_4.14-2+deb8u1.debian.tar.xz
 3adaf0afb5e9793561b5d728e5518a60 44234 doc optional 
sharutils-doc_4.14-2+deb8u1_all.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1

iQEcBAEBCAAGBQJaxRIVAAoJEEHOfwufG4sy8HMIAKgaeBEi0ADeIwKKZYl+bPWP
uTFB4stmC4oYUWvbFeNqG1GFl2+blBV1zjakaDaDCaICUURNj41R+FHkYnbUzgbE
9xvmGvJFr6WLrtfW6NfyHmTHe8LpdaSGhCJfOGR4sOluDHTd/Q6X6/NvUDPuGWUf
ljpLR4tf6Dx+6C4gwUGmQGkSkWg5rfRcTTEOCPwRGwBNh0NZm5lOgrj51DnFBNT5
HC7Gw+X7+i6UvG/YzXCRqbqMuBI1FOHPGOvLBfQqJE6XPU8KWogI/ynBTRaX57SI
u0QeWYSVer8Hwu6XcI7R1UPxBEnEGaEo1c1sJFRFBxssxJeXNvZamJFXQwETkVM=
=V9L7
-----END PGP SIGNATURE-----

--- End Message ---

Reply via email to