Your message dated Thu, 7 Aug 2008 18:57:28 +0200 with message-id <[EMAIL PROTECTED]> and subject line fixed in unstable has caused the Debian Bug report #471670, regarding bzip2: CVE-2008-1372 buffer over-read via crafted archive file to be marked as done.
This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what this message is talking about, this may indicate a serious mail system misconfiguration somewhere. Please contact [EMAIL PROTECTED] immediately.) -- 471670: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=471670 Debian Bug Tracking System Contact [EMAIL PROTECTED] with problems
--- Begin Message ---Package: bzip2 Severity: grave Tags: security Hi, the following CVE (Common Vulnerabilities & Exposures) id was published for bzip2. CVE-2008-1372[0]: | bzlib.c in bzip2 before 1.0.5 allows user-assisted remote attackers to | cause a denial of service (crash) via a crafted file that triggers a | buffer over-read, as demonstrated by the PROTOS GENOME test suite. If you fix this vulnerability please also include the CVE id in your changelog entry. For further information: [0] http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1372 Kind regards Nico -- Nico Golde - http://www.ngolde.de - [EMAIL PROTECTED] - GPG: 0x73647CFF For security reasons, all text in this mail is double-rot13 encrypted.
pgpq8dqNyWV18.pgp
Description: PGP signature
--- End Message ---
--- Begin Message ---Version: 1.0.5-0.1 You incorrectly marked this bug as fixed. Now as a newer version is in unstable this bug was marked as unfixed again :/ Cheers Nico -- Nico Golde - http://www.ngolde.de - [EMAIL PROTECTED] - GPG: 0x73647CFF For security reasons, all text in this mail is double-rot13 encrypted.
pgpQK4mYOIMpw.pgp
Description: PGP signature
--- End Message ---