[DRE-maint] ruby-rubocop-rspec 1.19.0-1 MIGRATED to testing

2017-11-18 Thread Debian testing watch
FYI: The status of the ruby-rubocop-rspec source package
in Debian's testing distribution has changed.

  Previous version: (not in testing)
  Current version:  1.19.0-1

-- 
This email is automatically generated once a day.  As the installation of
new packages into testing happens multiple times a day you will receive
later changes on the next day.
See https://release.debian.org/testing-watch/ for more information.

___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] tdiary 5.0.6-1 MIGRATED to testing

2017-11-18 Thread Debian testing watch
FYI: The status of the tdiary source package
in Debian's testing distribution has changed.

  Previous version: 5.0.5-1
  Current version:  5.0.6-1

-- 
This email is automatically generated once a day.  As the installation of
new packages into testing happens multiple times a day you will receive
later changes on the next day.
See https://release.debian.org/testing-watch/ for more information.

___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-hipchat is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-hipchat 1.5.2-3 is marked for autoremoval from testing on 2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] librarian-puppet is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
librarian-puppet 2.2.3-2 is marked for autoremoval from testing on 2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-httparty is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-httparty 0.13.7-1 is marked for autoremoval from testing on 2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] tdiary-theme 5.0.6-1 MIGRATED to testing

2017-11-18 Thread Debian testing watch
FYI: The status of the tdiary-theme source package
in Debian's testing distribution has changed.

  Previous version: 5.0.5-1
  Current version:  5.0.6-1

-- 
This email is automatically generated once a day.  As the installation of
new packages into testing happens multiple times a day you will receive
later changes on the next day.
See https://release.debian.org/testing-watch/ for more information.

___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-gitlab 4.2.0-1 MIGRATED to testing

2017-11-18 Thread Debian testing watch
FYI: The status of the ruby-gitlab source package
in Debian's testing distribution has changed.

  Previous version: (not in testing)
  Current version:  4.2.0-1

-- 
This email is automatically generated once a day.  As the installation of
new packages into testing happens multiple times a day you will receive
later changes on the next day.
See https://release.debian.org/testing-watch/ for more information.

___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-azure is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-azure 0.7.9-1 is marked for autoremoval from testing on 2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-ox is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-ox 2.1.1-2 is marked for autoremoval from testing on 2017-12-25

It is affected by these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] tdiary-contrib 5.0.6-1 MIGRATED to testing

2017-11-18 Thread Debian testing watch
FYI: The status of the tdiary-contrib source package
in Debian's testing distribution has changed.

  Previous version: 5.0.5-1
  Current version:  5.0.6-1

-- 
This email is automatically generated once a day.  As the installation of
new packages into testing happens multiple times a day you will receive
later changes on the next day.
See https://release.debian.org/testing-watch/ for more information.

___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-azure-core is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-azure-core 0.1.2-2 is marked for autoremoval from testing on 2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-rsec 0.4.2-1 MIGRATED to testing

2017-11-18 Thread Debian testing watch
FYI: The status of the ruby-rsec source package
in Debian's testing distribution has changed.

  Previous version: (not in testing)
  Current version:  0.4.2-1

-- 
This email is automatically generated once a day.  As the installation of
new packages into testing happens multiple times a day you will receive
later changes on the next day.
See https://release.debian.org/testing-watch/ for more information.

___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-asana is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-asana 0.6.0-1 is marked for autoremoval from testing on 2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-faraday-middleware is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-faraday-middleware 0.12.2-1 is marked for autoremoval from testing on 
2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-gitlab-flowdock-git-hook is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-gitlab-flowdock-git-hook 1.0.1-2 is marked for autoremoval from testing on 
2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-omniauth-oauth2 is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-omniauth-oauth2 1.4.0-1 is marked for autoremoval from testing on 
2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-grape-route-helpers is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-grape-route-helpers 2.1.0-1 is marked for autoremoval from testing on 
2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-faraday-middleware-multi-json is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-faraday-middleware-multi-json 0.0.6-2 is marked for autoremoval from 
testing on 2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-omniauth-wordpress is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-omniauth-wordpress 0.2.2-1 is marked for autoremoval from testing on 
2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-omniauth-oauth2-generic is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-omniauth-oauth2-generic 0.2.2-1 is marked for autoremoval from testing on 
2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-jeweler is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-jeweler 2.0.1-3 is marked for autoremoval from testing on 2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-omniauth-github is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-omniauth-github 1.1.2-2 is marked for autoremoval from testing on 
2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-grape-logging is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-grape-logging 1.7.0-1 is marked for autoremoval from testing on 2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-fog-azure is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-fog-azure 0.0.2-1 is marked for autoremoval from testing on 2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-github-api is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-github-api 0.14.2-1 is marked for autoremoval from testing on 2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-grape-msgpack is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-grape-msgpack 0.2.0-1 is marked for autoremoval from testing on 2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-flowdock is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-flowdock 0.7.1-1 is marked for autoremoval from testing on 2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-omniauth-azure-oauth2 is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-omniauth-azure-oauth2 0.0.6-1 is marked for autoremoval from testing on 
2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-grape is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-grape 0.16.2-2 is marked for autoremoval from testing on 2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-omniauth-facebook is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-omniauth-facebook 4.0.0-2 is marked for autoremoval from testing on 
2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-api-pagination is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-api-pagination 4.2.0-1 is marked for autoremoval from testing on 2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-tinder is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-tinder 1.10.1-3 is marked for autoremoval from testing on 2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-multi-xml is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-multi-xml 0.5.5-2 is marked for autoremoval from testing on 2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-omniauth-authentiq is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-omniauth-authentiq 0.3.1-1 is marked for autoremoval from testing on 
2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-omniauth-auth0 is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-omniauth-auth0 1.4.1-1 is marked for autoremoval from testing on 2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-omniauth-google-oauth2 is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-omniauth-google-oauth2 0.4.1-1 is marked for autoremoval from testing on 
2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-oauth2 is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-oauth2 1.4.0-2 is marked for autoremoval from testing on 2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] ruby-omniauth-gitlab is marked for autoremoval from testing

2017-11-18 Thread Debian testing autoremoval watch
ruby-omniauth-gitlab 1.0.2-1 is marked for autoremoval from testing on 
2017-12-25

It (build-)depends on packages with these RC bugs:
881445: ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj


___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] Bug#881445: marked as done (ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj)

2017-11-18 Thread Debian Bug Tracking System
Your message dated Sat, 18 Nov 2017 15:06:17 +
with message-id 
and subject line Bug#881445: fixed in ruby-ox 2.8.2-1
has caused the Debian Bug report #881445,
regarding ruby-ox: CVE-2017-15928: Segmentation fault in the parse_obj
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)


-- 
881445: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=881445
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Source: ruby-ox
Version: 2.1.1-2
Severity: grave
Tags: security upstream
Forwarded: https://github.com/ohler55/ox/issues/194

Hi,

the following vulnerability was published for ruby-ox.

Rationale for RC severity: think the issue warrants to be adressed for
the next stable release. The issue itself possibly though does not
warrant a DSA on it's own for stretch and jessie.

CVE-2017-15928[0]:
| In the Ox gem 2.8.0 for Ruby, the process crashes with a segmentation
| fault when a crafted input is supplied to parse_obj. NOTE: the vendor
| has stated "Ox should handle the error more gracefully" but has not
| confirmed a security implication.

If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

For further information see:

[0] https://security-tracker.debian.org/tracker/CVE-2017-15928
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-15928
[1] https://github.com/ohler55/ox/issues/194
[2] 
https://github.com/ohler55/ox/commit/e4565dbc167f0d38c3f93243d7a4fcfc391cbfc8

Regards,
Salvatore
--- End Message ---
--- Begin Message ---
Source: ruby-ox
Source-Version: 2.8.2-1

We believe that the bug you reported is fixed in the latest version of
ruby-ox, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 881...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Cédric Boutillier  (supplier of updated ruby-ox package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@ftp-master.debian.org)


-BEGIN PGP SIGNED MESSAGE-
Hash: SHA512

Format: 1.8
Date: Sat, 18 Nov 2017 15:04:44 +0100
Source: ruby-ox
Binary: ruby-ox
Architecture: source
Version: 2.8.2-1
Distribution: unstable
Urgency: medium
Maintainer: Debian Ruby Extras Maintainers 

Changed-By: Cédric Boutillier 
Description:
 ruby-ox- fast XML parser and object serializer
Closes: 881445
Changes:
 ruby-ox (2.8.2-1) unstable; urgency=medium
 .
   * New upstream version 2.8.2
 + fix CVE-2017-15928: segmentation fault in parse_obj
   (Closes: #881445)
   * Remove version in the gem2deb build-dependency
   * Use https:// in Vcs-* fields
   * Run wrap-and-sort on packaging files
   * Bump Standards-Version to 4.1.1 (no changes needed)
   * Bump debhelper compatibility level to 10
   * Refresh 000-fix-so-load-path.patch
Checksums-Sha1:
 4ad78c2a88cbe629c7ca068fb0b176722ab1cc68 1607 ruby-ox_2.8.2-1.dsc
 3bcb0ee7fd0d7e18c4fe67ec6296a42b3c0e0ca9 79209 ruby-ox_2.8.2.orig.tar.gz
 904b96d86ab63d8052a8603b4a2855b08e2dc9e0 3188 ruby-ox_2.8.2-1.debian.tar.xz
 3f62f2ed914c0a17f790a41a8da5e7796ccff36e 6137 ruby-ox_2.8.2-1_source.buildinfo
Checksums-Sha256:
 d55dcafa972fee1ba6e9b78bb580640151588420f718a5cdf8782f2704ce18f6 1607 
ruby-ox_2.8.2-1.dsc
 0d0bbc69677a204fbe295c3443ddb0fa893e3647b26794c3ca5d5d87ae21f6f4 79209 
ruby-ox_2.8.2.orig.tar.gz
 66ee937680c908e36bb3011db5a110b6cc5b000d5c2bd6555824e489303a838b 3188 
ruby-ox_2.8.2-1.debian.tar.xz
 76f6dca2321b06ef6dc8008eaa9b95f20948c6865e6a2f54a74702d389c1c1de 6137 
ruby-ox_2.8.2-1_source.buildinfo
Files:
 168c8852e890450d5fc1989b1b04c40d 1607 ruby optional ruby-ox_2.8.2-1.dsc
 6e16022002fe0701aafa6bfc71b2d3ae 79209 ruby optional ruby-ox_2.8.2.orig.tar.gz
 ecc166ac9a03c5d7527a14d7cf807bd8 3188 ruby optional 
ruby-ox_2.8.2-1.debian.tar.xz
 9e72028599d5c003c306fb7181cadc37 6137 ruby optional 
ruby-ox_2.8.2-1_source.buildinfo

-BEGIN PGP SIGNATURE-

iQEzBAEBCgAdFiEEnM1rMZ2/jkCrGr0aia+CtznNIXoFAloQP8QACgkQia+CtznN
IXoM8ggAlvZTDQ3CimHdk/EIGWHNqz1QoxuAS4vk3IAIGi0Lzfb8J7wX9e4mj1ed
rIef72BcYue/uzUgwHWPEoua2H/3Wej0oR1IgZzOpTq/5w2j+SEbcBMGYI9ScMO3
shCJg3YRLJgkE7SSwQ9rRj8KdpyD/daWQS1lLy88iOTZFyfXf0ZZ21Kl+tV7e/w3
FerwHwuQfijsK4fcwT+q8f0OCO248VSGjGtkJpIyn7/lJic0ypMbg7t75bOTgWn1
hKVYthRfmgECPUU+AvsVTPbDTMwzphxusMBlFhr9W5dRmzhnAA3uYz92IMRTe1

[DRE-maint] ruby-ox_2.8.2-1_source.changes ACCEPTED into unstable

2017-11-18 Thread Debian FTP Masters


Accepted:

-BEGIN PGP SIGNED MESSAGE-
Hash: SHA512

Format: 1.8
Date: Sat, 18 Nov 2017 15:04:44 +0100
Source: ruby-ox
Binary: ruby-ox
Architecture: source
Version: 2.8.2-1
Distribution: unstable
Urgency: medium
Maintainer: Debian Ruby Extras Maintainers 

Changed-By: Cédric Boutillier 
Description:
 ruby-ox- fast XML parser and object serializer
Closes: 881445
Changes:
 ruby-ox (2.8.2-1) unstable; urgency=medium
 .
   * New upstream version 2.8.2
 + fix CVE-2017-15928: segmentation fault in parse_obj
   (Closes: #881445)
   * Remove version in the gem2deb build-dependency
   * Use https:// in Vcs-* fields
   * Run wrap-and-sort on packaging files
   * Bump Standards-Version to 4.1.1 (no changes needed)
   * Bump debhelper compatibility level to 10
   * Refresh 000-fix-so-load-path.patch
Checksums-Sha1:
 4ad78c2a88cbe629c7ca068fb0b176722ab1cc68 1607 ruby-ox_2.8.2-1.dsc
 3bcb0ee7fd0d7e18c4fe67ec6296a42b3c0e0ca9 79209 ruby-ox_2.8.2.orig.tar.gz
 904b96d86ab63d8052a8603b4a2855b08e2dc9e0 3188 ruby-ox_2.8.2-1.debian.tar.xz
 3f62f2ed914c0a17f790a41a8da5e7796ccff36e 6137 ruby-ox_2.8.2-1_source.buildinfo
Checksums-Sha256:
 d55dcafa972fee1ba6e9b78bb580640151588420f718a5cdf8782f2704ce18f6 1607 
ruby-ox_2.8.2-1.dsc
 0d0bbc69677a204fbe295c3443ddb0fa893e3647b26794c3ca5d5d87ae21f6f4 79209 
ruby-ox_2.8.2.orig.tar.gz
 66ee937680c908e36bb3011db5a110b6cc5b000d5c2bd6555824e489303a838b 3188 
ruby-ox_2.8.2-1.debian.tar.xz
 76f6dca2321b06ef6dc8008eaa9b95f20948c6865e6a2f54a74702d389c1c1de 6137 
ruby-ox_2.8.2-1_source.buildinfo
Files:
 168c8852e890450d5fc1989b1b04c40d 1607 ruby optional ruby-ox_2.8.2-1.dsc
 6e16022002fe0701aafa6bfc71b2d3ae 79209 ruby optional ruby-ox_2.8.2.orig.tar.gz
 ecc166ac9a03c5d7527a14d7cf807bd8 3188 ruby optional 
ruby-ox_2.8.2-1.debian.tar.xz
 9e72028599d5c003c306fb7181cadc37 6137 ruby optional 
ruby-ox_2.8.2-1_source.buildinfo

-BEGIN PGP SIGNATURE-

iQEzBAEBCgAdFiEEnM1rMZ2/jkCrGr0aia+CtznNIXoFAloQP8QACgkQia+CtznN
IXoM8ggAlvZTDQ3CimHdk/EIGWHNqz1QoxuAS4vk3IAIGi0Lzfb8J7wX9e4mj1ed
rIef72BcYue/uzUgwHWPEoua2H/3Wej0oR1IgZzOpTq/5w2j+SEbcBMGYI9ScMO3
shCJg3YRLJgkE7SSwQ9rRj8KdpyD/daWQS1lLy88iOTZFyfXf0ZZ21Kl+tV7e/w3
FerwHwuQfijsK4fcwT+q8f0OCO248VSGjGtkJpIyn7/lJic0ypMbg7t75bOTgWn1
hKVYthRfmgECPUU+AvsVTPbDTMwzphxusMBlFhr9W5dRmzhnAA3uYz92IMRTe1Zj
rWn77KOo7aYXaMHDpmF2kLgeglu++Q==
=A91/
-END PGP SIGNATURE-


Thank you for your contribution to Debian.

___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers

[DRE-maint] Processing of ruby-ox_2.8.2-1_source.changes

2017-11-18 Thread Debian FTP Masters
ruby-ox_2.8.2-1_source.changes uploaded successfully to localhost
along with the files:
  ruby-ox_2.8.2-1.dsc
  ruby-ox_2.8.2.orig.tar.gz
  ruby-ox_2.8.2-1.debian.tar.xz
  ruby-ox_2.8.2-1_source.buildinfo

Greetings,

Your Debian queue daemon (running on host usper.debian.org)

___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers


[DRE-maint] Processed: Bug#881445 marked as pending

2017-11-18 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org:

> tag 881445 pending
Bug #881445 [src:ruby-ox] ruby-ox: CVE-2017-15928: Segmentation fault in the 
parse_obj
Added tag(s) pending.
> thanks
Stopping processing here.

Please contact me if you need assistance.
-- 
881445: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=881445
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems

___
Pkg-ruby-extras-maintainers mailing list
Pkg-ruby-extras-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers