Your message dated Wed, 20 Apr 2011 01:56:22 +0000
with message-id <e1qcmeu-0007ok...@franck.debian.org>
and subject line Bug#617960: fixed in widelands 1:15-3squeeze1
has caused the Debian Bug report #617960,
regarding widelands: potential security issue in internet games
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)


-- 
617960: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=617960
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Package: widelands
Version: 1:15-2
Severity: grave
Tags: security upstream
Justification: user security hole

Hi,

there is a fix[1] for a potential security issue in internet games
available upstream.  It looks like this might allow overwriting
arbitrary files as the user, but I have not done any verification.

Regards,
Ansgar

[1] 
<http://bazaar.launchpad.net/~widelands-dev/widelands/build-15/revision/5021>



--- End Message ---
--- Begin Message ---
Source: widelands
Source-Version: 1:15-3squeeze1

We believe that the bug you reported is fixed in the latest version of
widelands, which is due to be installed in the Debian FTP archive:

widelands-data_15-3squeeze1_all.deb
  to main/w/widelands/widelands-data_15-3squeeze1_all.deb
widelands-dbg_15-3squeeze1_amd64.deb
  to main/w/widelands/widelands-dbg_15-3squeeze1_amd64.deb
widelands_15-3squeeze1.debian.tar.gz
  to main/w/widelands/widelands_15-3squeeze1.debian.tar.gz
widelands_15-3squeeze1.dsc
  to main/w/widelands/widelands_15-3squeeze1.dsc
widelands_15-3squeeze1_amd64.deb
  to main/w/widelands/widelands_15-3squeeze1_amd64.deb



A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 617...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Enrico Tassi <gareuselesi...@debian.org> (supplier of updated widelands package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.8
Date: Tue, 19 Apr 2011 14:35:07 +0200
Source: widelands
Binary: widelands widelands-data widelands-dbg
Architecture: source amd64 all
Version: 1:15-3squeeze1
Distribution: stable
Urgency: high
Maintainer: Martin Quinson <mquin...@debian.org>
Changed-By: Enrico Tassi <gareuselesi...@debian.org>
Description: 
 widelands  - fantasy real-time strategy game
 widelands-data - fantasy real-time strategy game (data files)
 widelands-dbg - fantasy real-time strategy game (debug cruft)
Closes: 617960
Changes: 
 widelands (1:15-3squeeze1) stable; urgency=high
 .
   * Closes a potential security issue in internet games.
     Added: patches/secfix-617960 (Closes: #617960)
Checksums-Sha1: 
 0ac995704bf6d96aa20d5e7f4e259223f3ede86b 1580 widelands_15-3squeeze1.dsc
 25e5d2af05c03d83cd20fa0ea2df42de270d87b3 14326 
widelands_15-3squeeze1.debian.tar.gz
 8dc7ab6776a560bd9e5701de316d4a356dfdf933 1868704 
widelands_15-3squeeze1_amd64.deb
 492e25e4014e0e77e0257015eab6c5c5eb705286 108770746 
widelands-data_15-3squeeze1_all.deb
 2335a8e6405f90e6520458928da9a6e98632cfb2 16639872 
widelands-dbg_15-3squeeze1_amd64.deb
Checksums-Sha256: 
 7c6983a0f485ab1f29d3863659cc744da09c8b4d2609a233fb47bebf330302af 1580 
widelands_15-3squeeze1.dsc
 1e4e7c9acfeb58191d366954e743c64c1b015ac34c60ee0c38a42a4e44471b6b 14326 
widelands_15-3squeeze1.debian.tar.gz
 d33b1f0dc5e90a17127c10e650e07f155d6b8fd0e7bc525dc90287673dae56cf 1868704 
widelands_15-3squeeze1_amd64.deb
 75829e891ea06b5ba062407ee198ca5084242951cb60ceb24c6d93be90115503 108770746 
widelands-data_15-3squeeze1_all.deb
 6525412c9ee0ae34f22c697dcfa056b855881ff0878e2e49ede31618dd57de1c 16639872 
widelands-dbg_15-3squeeze1_amd64.deb
Files: 
 7066fc04baf9d8aca0365752e229cfd8 1580 games extra widelands_15-3squeeze1.dsc
 4812fee028d60a0fb1f945af5676516f 14326 games extra 
widelands_15-3squeeze1.debian.tar.gz
 29f1a136bc82d855e6fcf148925c004b 1868704 games extra 
widelands_15-3squeeze1_amd64.deb
 fb939ba6cd93745c120c4d3ea2381310 108770746 games extra 
widelands-data_15-3squeeze1_all.deb
 6673155550f479eb1b6ba03561765de5 16639872 debug extra 
widelands-dbg_15-3squeeze1_amd64.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)

iEYEARECAAYFAk2tkCEACgkQ7kkcPgEj8vLafgCgqX5JuGT8C9QRr8em8B4V9JKa
2q0AnjnxZ73gbB7iRCx0ZPuY6LsAwJZl
=3TSJ
-----END PGP SIGNATURE-----



--- End Message ---

Reply via email to