Your message dated Thu, 23 Jun 2005 22:15:15 -0500
with message-id <[EMAIL PROTECTED]>
and subject line nanoblogger: Unspecified security problems leading to 
execution of arbitrary code
has caused the attached Bug report to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what I am
talking about this indicates a serious mail system misconfiguration
somewhere.  Please contact me immediately.)

Debian bug tracking system administrator
(administrator, Debian Bugs database)

--------------------------------------
Received: (at submit) by bugs.debian.org; 22 Jun 2005 23:57:08 +0000
>From [EMAIL PROTECTED] Wed Jun 22 16:57:08 2005
Return-path: <[EMAIL PROTECTED]>
Received: from inutil.org (vserver151.vserver151.serverflex.de) 
[193.22.164.111] 
        by spohr.debian.org with esmtp (Exim 3.35 1 (Debian))
        id 1DlF5f-00070a-00; Wed, 22 Jun 2005 16:57:08 -0700
Received: from dsl-084-059-135-149.arcor-ip.net ([84.59.135.149] 
helo=localhost.localdomain)
        by vserver151.vserver151.serverflex.de with esmtpsa 
(TLS-1.0:RSA_AES_256_CBC_SHA:32)
        (Exim 4.50)
        id 1DlF0l-0000hf-RP
        for [EMAIL PROTECTED]; Thu, 23 Jun 2005 01:52:03 +0200
Received: from jmm by localhost.localdomain with local (Exim 4.51)
        id 1DlF5e-0002dA-3Z; Thu, 23 Jun 2005 01:57:06 +0200
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
From: Moritz Muehlenhoff <[EMAIL PROTECTED]>
To: Debian Bug Tracking System <[EMAIL PROTECTED]>
Subject: nanoblogger: Unspecified security problems leading to execution of 
arbitrary
 code
X-Mailer: reportbug 3.15
Date: Thu, 23 Jun 2005 01:57:06 +0200
Message-Id: <[EMAIL PROTECTED]>
X-SA-Exim-Connect-IP: 84.59.135.149
X-SA-Exim-Mail-From: [EMAIL PROTECTED]
X-SA-Exim-Scanned: No (on vserver151.vserver151.serverflex.de); SAEximRunCond 
expanded to false
Delivered-To: [EMAIL PROTECTED]
X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 
        (1.212-2003-09-23-exp) on spohr.debian.org
X-Spam-Status: No, hits=-8.0 required=4.0 tests=BAYES_00,HAS_PACKAGE 
        autolearn=no version=2.60-bugs.debian.org_2005_01_02
X-Spam-Level: 

Package: nanoblogger
Version: 3.1-3
Severity: grave
Tags: security
Justification: user security hole

>From the 3.2.2 changelog:
* Fixed bug that could lead to arbitrary execution in a couple of the plugins

It seems as if the plugin system was modified for 3.2, so it may very well
be possible that this doesn't affect the 3.1 version in Debian. Can you
clarify that?

Cheers,
        Moritz

-- System Information:
Debian Release: testing/unstable
  APT prefers unstable
  APT policy: (500, 'unstable')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.12-rc5
Locale: LANG=C, [EMAIL PROTECTED] (charmap=ISO-8859-15)

-- no debconf information

---------------------------------------
Received: (at 315492-done) by bugs.debian.org; 24 Jun 2005 03:08:44 +0000
>From [EMAIL PROTECTED] Thu Jun 23 20:08:44 2005
Return-path: <[EMAIL PROTECTED]>
Received: from dsl-201-128-61-219.prod-infinitum.com.mx (localhost.localdomain) 
[201.128.61.219] 
        by spohr.debian.org with esmtp (Exim 3.35 1 (Debian))
        id 1DleYe-0005je-00; Thu, 23 Jun 2005 20:08:44 -0700
Received: from billy by localhost.localdomain with local (Exim 4.51)
        id 1Dleey-0002yY-Ez
        for [EMAIL PROTECTED]; Thu, 23 Jun 2005 22:15:16 -0500
Subject: nanoblogger: Unspecified security problems leading to execution of
        arbitrary code
From: William Vera <[EMAIL PROTECTED]>
Reply-To: [EMAIL PROTECTED]
To: [EMAIL PROTECTED]
Content-Type: text/plain
Content-Transfer-Encoding: 7bit
Date: Thu, 23 Jun 2005 22:15:15 -0500
Message-Id: <[EMAIL PROTECTED]>
Mime-Version: 1.0
X-Mailer: Evolution 2.2.2 
Delivered-To: [EMAIL PROTECTED]
X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 
        (1.212-2003-09-23-exp) on spohr.debian.org
X-Spam-Status: No, hits=-0.1 required=4.0 tests=BAYES_44 autolearn=no 
        version=2.60-bugs.debian.org_2005_01_02
X-Spam-Level: 

It really does not affect the version 3.1, however already I have
updated the package :) 
Thanks
-- 
William Vera <[EMAIL PROTECTED]> PGP Key: 1024D/F5CC22A4
Fingerprint: 3E73 FA1F 5C57 6005 0439  4D75 1FD2 BF96 F5CC 22A4


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to