Your message dated Fri, 10 Aug 2012 21:03:03 +0000
with message-id <e1szwmj-00006q...@franck.debian.org>
and subject line Bug#684456: fixed in qpid-cpp 0.16-7
has caused the Debian Bug report #684456,
regarding qpid-cpp: CVE-2012-3467
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)
--
684456: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=684456
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Package: qpid-cpp
Severity: grave
Tags: security
Justification: user security hole
Please see http://www.openwall.com/lists/oss-security/2012/08/09/6
Since we're in freeze, please fix this with an isolated patch.
Cheers,
Moritz
--- End Message ---
--- Begin Message ---
Source: qpid-cpp
Source-Version: 0.16-7
We believe that the bug you reported is fixed in the latest version of
qpid-cpp, which is due to be installed in the Debian FTP archive.
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to 684...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Cajus Pollmeier <ca...@debian.org> (supplier of updated qpid-cpp package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@debian.org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.8
Date: Fri, 10 Aug 2012 20:39:06 +0200
Source: qpid-cpp
Binary: qpidd qpid-client libqmf1 libqmf-dev libqmf2-1 libqmf2-dev
libqmfconsole2 libqmfconsole2-dev libqpidmessaging2 libqpidmessaging2-dev
libsslcommon2 libsslcommon2-dev librdmawrap2 librdmawrap2-dev libqpidtypes1
libqpidtypes1-dev libqpidcommon2 libqpidcommon2-dev libqpidclient2
libqpidclient2-dev libqpidbroker2 libqpidbroker2-dev libqmfengine1
libqmfengine1-dev python-cqpid python-qmf2 python-cqmf2 python-qmf qmfgen
qpid-doc ruby-qpid libqpid-ruby1.8 libqpid-perl
Architecture: source amd64 all
Version: 0.16-7
Distribution: unstable
Urgency: low
Maintainer: Cajus Pollmeier <ca...@debian.org>
Changed-By: Cajus Pollmeier <ca...@debian.org>
Description:
libqmf-dev - enterprise messaging system - QMF development files
libqmf1 - enterprise messaging system - QMF libraries
libqmf2-1 - enterprise messaging system - QMF2 libraries
libqmf2-dev - enterprise messaging system - QMF2 development files
libqmfconsole2 - enterprise messaging system - QMF console library
libqmfconsole2-dev - enterprise messaging system - QMF console development
files
libqmfengine1 - enterprise messaging system - QMF engine libraries
libqmfengine1-dev - enterprise messaging system - QMF engine development files
libqpid-perl - enterprise messaging system - Perl bindings
libqpid-ruby1.8 - Transitional package for ruby-qpid
libqpidbroker2 - enterprise messaging system - broker libraries
libqpidbroker2-dev - enterprise messaging system - broker development files
libqpidclient2 - enterprise messaging system - client libraries
libqpidclient2-dev - enterprise messaging system - client development files
libqpidcommon2 - enterprise messaging system - common libraries
libqpidcommon2-dev - enterprise messaging system - common development files
libqpidmessaging2 - enterprise messaging system - AMQP messaging libraries
libqpidmessaging2-dev - enterprise messaging system - AMQP messaging
development files
libqpidtypes1 - enterprise messaging system - API libraries
libqpidtypes1-dev - enterprise messaging system - API development files
librdmawrap2 - enterprise messaging system - RDMA libraries
librdmawrap2-dev - enterprise messaging system - RDMA development files
libsslcommon2 - enterprise messaging system - common SSL libraries
libsslcommon2-dev - enterprise messaging system - common SSL development files
python-cqmf2 - enterprise messaging system - Python CQMF2 bindings
python-cqpid - enterprise messaging system - Python CQPID bindings
python-qmf - enterprise messaging system - Python QMF module
python-qmf2 - enterprise messaging system - Python QMF2 bindings
qmfgen - enterprise messaging system - Python QMF interface generator
qpid-client - enterprise messaging system - AMQP client
qpid-doc - enterprise messaging system - documentation and examples
qpidd - enterprise messaging system - AMQP broker
ruby-qpid - enterprise messaging system - Ruby bindings
Closes: 684456
Changes:
qpid-cpp (0.16-7) unstable; urgency=low
.
* Fixes security issue CVE-2012-3467 which may allow bypassing the
broker authentication mechanism. Closes: #684456.
Checksums-Sha1:
4c3941547202ff4443c856f546a34bb06d716735 3249 qpid-cpp_0.16-7.dsc
0a4cf8be64bf06d8421677d066ef110128098d03 319774 qpid-cpp_0.16-7.debian.tar.gz
9af316fa90f59e54976c784dd6d004503ff90e01 802526 qpidd_0.16-7_amd64.deb
ffd0030d23db75be642b7377e92ca6172602cc16 105326 qpid-client_0.16-7_amd64.deb
d0c84411512e1fb268f587a6f223120882de8cd4 72014 libqmf1_0.16-7_amd64.deb
b3162483517b2e897e80a835e8d1e499f20551eb 6900 libqmf-dev_0.16-7_amd64.deb
30492e57ee3cae014111ffe222a1f65a0416d859 191058 libqmf2-1_0.16-7_amd64.deb
1040b5acb86255097f909361f74eef8fe61f8b74 40976 libqmf2-dev_0.16-7_amd64.deb
ea029581e2229e4a0ad80e59bb422ecd99d05164 92584 libqmfconsole2_0.16-7_amd64.deb
16a5a5687d68647504466afcdba3cc80080ff9f7 11624
libqmfconsole2-dev_0.16-7_amd64.deb
c709cb9b041721d4e412a761908191201bf22cf0 210332
libqpidmessaging2_0.16-7_amd64.deb
88962e3788ee55473af580ef7ee8dcac6c5565ac 13714
libqpidmessaging2-dev_0.16-7_amd64.deb
9b1f771e0cbffbce1577d7464c66b7dfdecf712b 80212 libsslcommon2_0.16-7_amd64.deb
32b8c2626113e0184699737452aa31da9d2bac08 3530
libsslcommon2-dev_0.16-7_amd64.deb
edb16e88561a9d95e04c898ba4a39624183cc6bb 56946 librdmawrap2_0.16-7_amd64.deb
185b85b72201f69c637a68f1ed4a59be3b06c0de 3544 librdmawrap2-dev_0.16-7_amd64.deb
f479ac2b3969481b6f9d57cf40cd31378770ff47 46772 libqpidtypes1_0.16-7_amd64.deb
1a95c1499e59eaa30700cadf5378b989220ca40d 6148
libqpidtypes1-dev_0.16-7_amd64.deb
5e95a159b4ff879392e1702c7b57e8584f0ffbe9 806048 libqpidcommon2_0.16-7_amd64.deb
848a98e024c38ca655816605acf8e9ba7836dfd1 177590
libqpidcommon2-dev_0.16-7_amd64.deb
5582aa510c469bf77cf6777c1e07bd482389674d 279974 libqpidclient2_0.16-7_amd64.deb
7269309edf8cbb9963bff17e5427c727950d482e 40926
libqpidclient2-dev_0.16-7_amd64.deb
6129764cbbb26e02db825cfddee0d34d020e88bb 1174650
libqpidbroker2_0.16-7_amd64.deb
f1c899d281f55cbdab26956a9571aff6ce23212f 70246
libqpidbroker2-dev_0.16-7_amd64.deb
bcadeb5c8e619ea5cee3589354b62ae100dd1506 193874 libqmfengine1_0.16-7_amd64.deb
8bb276af6f515fb02cf98a72609dca10b62616bd 13476
libqmfengine1-dev_0.16-7_amd64.deb
43df54b8e36ee822fbd9d8ed601e0f5eb34ba0b8 99516 python-cqpid_0.16-7_amd64.deb
ec9c27ba1cab1030621e1de6e9fd6edda2b5dc07 10034 python-qmf2_0.16-7_amd64.deb
36ff5ed7a391eb1c20e59b8bfe596cdc6ffbe52b 109912 python-cqmf2_0.16-7_amd64.deb
58622dc8f7c2ff29b21a7093c9b3100e5541ae43 94782 python-qmf_0.16-7_amd64.deb
4c112ab824f2b48510a64f8c48b9f9e9460571cd 25884 qmfgen_0.16-7_amd64.deb
03c77abd68482065d7f9f1cf697084c3bcda0b19 42964 qpid-doc_0.16-7_all.deb
8b1590a8d10385f263ff86fd1a6abc1e651adabe 222246 ruby-qpid_0.16-7_amd64.deb
4d2a8486cedfef61cfa917346e254fb08621e568 3292 libqpid-ruby1.8_0.16-7_amd64.deb
340c8a0a037640deaaf6c1f022e1d8738aac691b 83214 libqpid-perl_0.16-7_amd64.deb
Checksums-Sha256:
5b3902de7a0d6c2aaa3e16ca8247cb79f376c422cf87d549d807e810103ad19c 3249
qpid-cpp_0.16-7.dsc
461643eadd62191ca19d9156d00829de26fa8b9844a396eb52bd97f100e19c5c 319774
qpid-cpp_0.16-7.debian.tar.gz
687313ae053c39ad5f457c1dab3450d9057e1025e2256a4d9d0ecff72fe4098a 802526
qpidd_0.16-7_amd64.deb
cb0f4ae8d52dc3dcf86045915b6626c3ee1a367d9ffa09f757bb0dc41238dff2 105326
qpid-client_0.16-7_amd64.deb
05e9a25796029c901a2b7098d1c402e4e2b4eee258d3b86159f42215155401c1 72014
libqmf1_0.16-7_amd64.deb
a15ae14bcd79e19d72a50916e4b4bdfcf9f2a45d88abe0e1caf73283074dcc4f 6900
libqmf-dev_0.16-7_amd64.deb
20dd84fd7ab385dc90a958eee3d2d920ccb1775a24e40e7c559e9acf57306e01 191058
libqmf2-1_0.16-7_amd64.deb
c24e73ead1409370ae448a6c0156d037d0da35f2d5c44657a7463a535b76ef2a 40976
libqmf2-dev_0.16-7_amd64.deb
f0897aefdc93585703f769e4d9450dc2b947487b12b709c55d8a761bdb6079f3 92584
libqmfconsole2_0.16-7_amd64.deb
9230fc3d5a37ff0fa5d3beba758f30fe0db585c00e9c223a02db2fdf1728864c 11624
libqmfconsole2-dev_0.16-7_amd64.deb
3470a0a9117df4df735178c641c2adbf1409d541ad8930a9f6eb4a7dcbef3fc7 210332
libqpidmessaging2_0.16-7_amd64.deb
d111c056ecf40a541242b07b2bc6d710edcf90e091a6ba5e9af0d3b411c4192a 13714
libqpidmessaging2-dev_0.16-7_amd64.deb
15d9b40efc1b8264476fab8ac95fbae6791fbee0ed8dac9d8cff8c6b5c4544ba 80212
libsslcommon2_0.16-7_amd64.deb
8d78bd727e91430f17022fcfd5801a46247f1c948b2b181e3f04824821a5e373 3530
libsslcommon2-dev_0.16-7_amd64.deb
5450aeaa6616018e4981a046e07d9bd2af239f3886a346d57d4b96f413fb5e6b 56946
librdmawrap2_0.16-7_amd64.deb
3f74f82cbafd0b4c255bad1c3edc26be85f2e55aa8e9b505c144ea6e6cd93b8b 3544
librdmawrap2-dev_0.16-7_amd64.deb
9680eaa7e7535356c6214b882c3845881235971f6f281c996c35167592e4d7b0 46772
libqpidtypes1_0.16-7_amd64.deb
de88bb16f7185ff9aedaeda1c4b08465a9d4e34a0794a92a96597eb1b2e13d7d 6148
libqpidtypes1-dev_0.16-7_amd64.deb
4b548c7ae65f61418171812c0d6015ff35584993310f9d4393abe02f1e7d1347 806048
libqpidcommon2_0.16-7_amd64.deb
40f659c9f95520af5b9895670d09be5a29794afcbaea7ec06c71214b1530709c 177590
libqpidcommon2-dev_0.16-7_amd64.deb
85458b8d1ebfe285fa19f7744f6a55538a0e35c019a78428fd50522139db1074 279974
libqpidclient2_0.16-7_amd64.deb
bf045aeb1a967c9f993b781e57d7b2d937815a6efeee5d988694dadb71ed3aa0 40926
libqpidclient2-dev_0.16-7_amd64.deb
fd287cdc3ade2f46c781cc26169f2368b6dc4e3a37b9ae43300fbcf201858f26 1174650
libqpidbroker2_0.16-7_amd64.deb
66ea0af767aaf75037d376b7bff54629597030dedea83efcd31ae087639aef01 70246
libqpidbroker2-dev_0.16-7_amd64.deb
9997000d2305e34dc7e428428b16ce39ad48115f7eb219e2e970a1814ece4aa0 193874
libqmfengine1_0.16-7_amd64.deb
b39309230870424975d38e0deb772df47abc56e4703dfee801abde1f85ea060c 13476
libqmfengine1-dev_0.16-7_amd64.deb
ca7c442d99b51a48a106f23f05cf29ac169ecda58a986d23b60c7214a7879099 99516
python-cqpid_0.16-7_amd64.deb
d4454135125d8cb8185bf37c0ebecf5f3af88edda3bae44076d9a15ad2e7867e 10034
python-qmf2_0.16-7_amd64.deb
9b631fb76015c914b491cbde8ddf456eb92756ecb8c792902dbd6525952deed2 109912
python-cqmf2_0.16-7_amd64.deb
a2444f60389db758e8992e5f4761e6f2d09ebf4a05ca238c9c517bfe781f3248 94782
python-qmf_0.16-7_amd64.deb
3eaf19e263c94402ecb6385fef683c79ee24248ca602acae6ba7b93b28c0129d 25884
qmfgen_0.16-7_amd64.deb
89a4fa2055278171c7d500f749bfddb3c589b6537c6e1dbf846996324277b99b 42964
qpid-doc_0.16-7_all.deb
98f653020ff51594f28422ccb8ed9efef4f0dcb529ebd78be23e8a39590de566 222246
ruby-qpid_0.16-7_amd64.deb
b61a84a30c643e2435691de48ec27ab1e9b20f4a34f609211874079955efa239 3292
libqpid-ruby1.8_0.16-7_amd64.deb
59c2bbd4ffcbd025657bfcb6c33deebc57de3d7562c5367a834765e7d160e476 83214
libqpid-perl_0.16-7_amd64.deb
Files:
d07265c6f718ec551dc9d8e0307803b9 3249 misc extra qpid-cpp_0.16-7.dsc
c85d71614dd73a0e0bb317acc3bcd5a5 319774 misc extra
qpid-cpp_0.16-7.debian.tar.gz
5ad7214d6cc669b5863f7fed64a72e41 802526 misc extra qpidd_0.16-7_amd64.deb
c0d96ade426fd7a81a01a8237cba8b96 105326 misc extra qpid-client_0.16-7_amd64.deb
bb274de6faf5047a2f3402c5e79d82df 72014 misc extra libqmf1_0.16-7_amd64.deb
aa406b40518440d32e6433b4659d9f58 6900 libdevel extra
libqmf-dev_0.16-7_amd64.deb
915e5037ee0e8b198735240f03d81ab0 191058 misc extra libqmf2-1_0.16-7_amd64.deb
7a077ab5e46cf38f11f70c4419957ef8 40976 libdevel extra
libqmf2-dev_0.16-7_amd64.deb
26a92e4e093bbfb49760e596b8738d36 92584 misc extra
libqmfconsole2_0.16-7_amd64.deb
6912292b216ab2834584604f99cf60a6 11624 libdevel extra
libqmfconsole2-dev_0.16-7_amd64.deb
08a623ae2493babdb4932381ff55e589 210332 misc extra
libqpidmessaging2_0.16-7_amd64.deb
24251bc4f2c1a1a6bb046152a840978f 13714 libdevel extra
libqpidmessaging2-dev_0.16-7_amd64.deb
bd7afaa9de28716daa1aa2a1b60f4610 80212 misc extra
libsslcommon2_0.16-7_amd64.deb
b304c7bcdaf810179bf14d5b4a8c059c 3530 libdevel extra
libsslcommon2-dev_0.16-7_amd64.deb
f605af63ec35758f564016321cea2625 56946 misc extra librdmawrap2_0.16-7_amd64.deb
512e882468e6603bb4370d48c2aa0c9d 3544 libdevel extra
librdmawrap2-dev_0.16-7_amd64.deb
ea2fdefcc0b408bf3a133c814668b12d 46772 misc extra
libqpidtypes1_0.16-7_amd64.deb
ef39129831f0f9a08238a0c1b6548528 6148 libdevel extra
libqpidtypes1-dev_0.16-7_amd64.deb
c60c3f21e62c0b9d8325e5583b506122 806048 misc extra
libqpidcommon2_0.16-7_amd64.deb
980dbe02b263ea2a3d2623d87b972b50 177590 libdevel extra
libqpidcommon2-dev_0.16-7_amd64.deb
808ba72a899c9d59eb287d442c017b1c 279974 misc extra
libqpidclient2_0.16-7_amd64.deb
cc967ed1efdc286791de15654824efdd 40926 libdevel extra
libqpidclient2-dev_0.16-7_amd64.deb
43083e1a585dc8aeb48357b939af184a 1174650 misc extra
libqpidbroker2_0.16-7_amd64.deb
6c40de3a5e48d0ebae63b94457b3626c 70246 libdevel extra
libqpidbroker2-dev_0.16-7_amd64.deb
527bc302a27a260fd73462e0c6e69ff0 193874 misc extra
libqmfengine1_0.16-7_amd64.deb
95567d3774929c8862f08ce649f89f0d 13476 libdevel extra
libqmfengine1-dev_0.16-7_amd64.deb
2768565c0aa8f1841f157f99b3b5b460 99516 python extra
python-cqpid_0.16-7_amd64.deb
8c7c431588ed774bb01de91f06602931 10034 python extra
python-qmf2_0.16-7_amd64.deb
7021eeb14f27c9193c7a7c91e7f5254c 109912 python extra
python-cqmf2_0.16-7_amd64.deb
452fc1ece986d1ea969a9f42e223eb56 94782 python extra python-qmf_0.16-7_amd64.deb
8565b20cd0cd143e1f291655fc46f9ae 25884 python extra qmfgen_0.16-7_amd64.deb
9c38a42a2b96d88c2a653cd430cc6248 42964 doc extra qpid-doc_0.16-7_all.deb
0d591f98766676d29e2cb4d1ed382324 222246 ruby extra ruby-qpid_0.16-7_amd64.deb
86778852a6d482e53a4f399321a8a67d 3292 oldlibs extra
libqpid-ruby1.8_0.16-7_amd64.deb
a282b01704c946c30ff819df4b97b05c 83214 perl extra libqpid-perl_0.16-7_amd64.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)
iD8DBQFQJWk4tyibJ/7Y+CYRAqPAAJ4vkMIbM7tfNcF89m+OdhEGCrVL/ACgmmDa
rMM3y4ffPogTXVXoth1Py90=
=nKAl
-----END PGP SIGNATURE-----
--- End Message ---