Your message dated Sun, 30 Sep 2012 15:04:21 +0000
with message-id <e1til49-0007l8...@franck.debian.org>
and subject line Bug#689222: fixed in dietlibc 0.33~cvs20120325-4
has caused the Debian Bug report #689222,
regarding dietlibc: buffer overflow on armhf
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)
--
689222: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=689222
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Package: dietlibc-dev
Version: 0.33~cvs20120325-3
Severity: critical
Justification: buffer overflow
The ARM assembly version of sigsetjmp(3) can store up to 42 integers
into the jmp_buf, on armhf without NEON it will store 26 integers;
the dietlibc jmp_buf only has enough space for 24 integers; thus,
any use of sigsetjmp() or setjmp() will overwrite user data.
Patch follows. Apparently, it’s armhf fixing weekend (RCBW) for me.
bye,
//mirabilos
--
13:37⎜«Natureshadow» Deep inside, I hate mirabilos. I mean, he's a good
guy. But he's always right! In every fsckin' situation, he's right. Even
with his deeply perverted taste in software and borked ambition towards
broken OSes - in the end, he's damn right about it :(! […] works in mksh
--- End Message ---
--- Begin Message ---
Source: dietlibc
Source-Version: 0.33~cvs20120325-4
We believe that the bug you reported is fixed in the latest version of
dietlibc, which is due to be installed in the Debian FTP archive.
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to 689...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Thorsten Glaser <t...@mirbsd.de> (supplier of updated dietlibc package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@debian.org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA384
Format: 1.8
Date: Sun, 30 Sep 2012 14:15:34 +0000
Source: dietlibc
Binary: dietlibc-dev dietlibc-doc
Architecture: source all
Version: 0.33~cvs20120325-4
Distribution: unstable
Urgency: low
Maintainer: Hector Oron <zu...@debian.org>
Changed-By: Thorsten Glaser <t...@mirbsd.de>
Description:
dietlibc-dev - diet libc - a libc optimized for small size
dietlibc-doc - diet libc documentation - a libc optimized for small size
Closes: 689222
Changes:
dietlibc (0.33~cvs20120325-4) unstable; urgency=low
.
[ Peter Michael Green ]
* Tweak arm assembler patch so it works with armv6 vfp too.
.
[ Thorsten Glaser ]
* Fix jmp_buf size for armhf (Closes: #689222)
Checksums-Sha1:
fa59d11ea49d0bcb5a936a22435f8f3d7a65aa29 2069 dietlibc_0.33~cvs20120325-4.dsc
5f49ca341cd2ec34debb7bc76926fcdbed047268 37028
dietlibc_0.33~cvs20120325-4.debian.tar.gz
2e8bc8fc1448e56620385249708d0f7aa1b7448e 57416
dietlibc-doc_0.33~cvs20120325-4_all.deb
Checksums-Sha256:
772232397b099ba8f6a9376add7f0361bf4cd8ecc89ded7c6d2eb3f462db2974 2069
dietlibc_0.33~cvs20120325-4.dsc
43f86feb35ee727d85ef89abf61d28eb2948a0f15b7d767f4c971f2964ec0eb0 37028
dietlibc_0.33~cvs20120325-4.debian.tar.gz
aa264dffc89bef7a0726e4d54975163dcb709d3b12574b54ec091cedf985c328 57416
dietlibc-doc_0.33~cvs20120325-4_all.deb
Files:
f79d507d4ed6d349999f5f8184869c8b 2069 devel optional
dietlibc_0.33~cvs20120325-4.dsc
b155b57a674f59fc9956b734f4431e92 37028 devel optional
dietlibc_0.33~cvs20120325-4.debian.tar.gz
ea1d05ef8b43140c696b50f2933d8f74 57416 doc optional
dietlibc-doc_0.33~cvs20120325-4_all.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (MirBSD)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=lGuK
-----END PGP SIGNATURE-----
------------=_1349017566-14228-1
Content-Type: message/rfc822
Content-Disposition: inline
Content-Transfer-Encoding: 7bit
Received: (at submit) by bugs.debian.org; 30 Sep 2012 14:11:18 +0000
X-Spam-Checker-Version: SpamAssassin 3.3.1-bugs.debian.org_2005_01_02
(2010-03-16) on buxtehude.debian.org
X-Spam-Level:
X-Spam-Status: No, score=-9.9 required=4.0 tests=BAYES_00,FOURLA,HAS_PACKAGE,
MURPHY_DRUGS_REL8 autolearn=ham version=3.3.1-bugs.debian.org_2005_01_02
X-Spam-Bayes: score:0.0000 Tokens: new, 6; hammy, 123; neutral, 51; spammy, 1.
spammytokens:0.912-+--(unknown) hammytokens:0.000-+--(unknown),
0.000-+--(unknown), 0.000-+--(unknown), 0.000-+--(unknown),
0.000-+--(unknown)
X-Return-path: <t...@herc.mirbsd.org>
X-Received: from static-87-79-237-121.netcologne.de
([87.79.237.121] helo=herc.mirbsd.org ident=root)
by buxtehude.debian.org with esmtps (TLS1.0:DHE_RSA_AES_256_CBC_SHA1:32)
(Exim 4.72)
(envelope-from <t...@herc.mirbsd.org>)
id 1TIKEn-0005Sz-DK
for sub...@bugs.debian.org; Sun, 30 Sep 2012 14:11:18 +0000
X-Received: from herc.mirbsd.org (tg@localhost [IPv6:::1])
by herc.mirbsd.org (8.14.5/8.14.5) with ESMTP id q8UEA9TN012044
(version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO)
for <sub...@bugs.debian.org>; Sun, 30 Sep 2012 14:10:13 GMT
X-Received: (from tg@localhost)
by herc.mirbsd.org (8.14.5/8.14.5/Submit) id q8UEA9Th022782;
Sun, 30 Sep 2012 14:10:09 GMT
X-Received: by S/MIME Plugin for MirBSD 10 Kv#10uB0-20120817 i386; Sun Sep 30
14:10:08 UTC 2012
Date: Sun, 30 Sep 2012 14:10:08 +0000 (UTC)
From: Thorsten Glaser <t...@mirbsd.de>
X-X-Sender: t...@herc.mirbsd.org
To: sub...@bugs.debian.org
Subject: dietlibc: buffer overflow on armhf
Message-ID: <pine.bsm.4.64l.1209301407520.5...@herc.mirbsd.org>
X-Message-Flag: Your mailer is broken. Get an update at
http://www.washington.edu/pine/getpine/pcpine.html for free.
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset=utf-8
Content-Transfer-Encoding: QUOTED-PRINTABLE
X-Delivered-To: sub...@bugs.debian.org
Package: dietlibc-dev
Version: 0.33~cvs20120325-3
Severity: critical
Justification: buffer overflow
The ARM assembly version of sigsetjmp(3) can store up to 42 integers
into the jmp_buf, on armhf without NEON it will store 26 integers;
the dietlibc jmp_buf only has enough space for 24 integers; thus,
any use of sigsetjmp() or setjmp() will overwrite user data.
Patch follows. Apparently, it=E2=80=99s armhf fixing weekend (RCBW) for me.
bye,
//mirabilos
--=20
13:37=E2=8E=9C=C2=ABNatureshadow=C2=BB Deep inside, I hate mirabilos. I mea=
n, he's a good
guy. But he's always right! In every fsckin' situation, he's right. Even
with his deeply perverted taste in software and borked ambition towards
broken OSes - in the end, he's damn right about it :(! [=E2=80=A6] works in=
mksh
------------=_1349017566-14228-1--
ReSent-Date: Sun, 30 Sep 2012 15:09:32 +0000 (UTC)
ReSent-From: Thorsten Glaser <t...@mirbsd.org>
ReSent-To: 684324-cl...@bugs.debian.org
ReSent-Subject: Bug#689222: fixed in dietlibc 0.33~cvs20120325-4
ReSent-Message-ID: <pine.bsm.4.64l.1209301509320.5...@herc.mirbsd.org>
Source: dietlibc
Source-Version: 0.33~cvs20120325-4
We believe that the bug you reported is fixed in the latest version of
dietlibc, which is due to be installed in the Debian FTP archive.
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to 689...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Thorsten Glaser <t...@mirbsd.de> (supplier of updated dietlibc package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@debian.org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA384
Format: 1.8
Date: Sun, 30 Sep 2012 14:15:34 +0000
Source: dietlibc
Binary: dietlibc-dev dietlibc-doc
Architecture: source all
Version: 0.33~cvs20120325-4
Distribution: unstable
Urgency: low
Maintainer: Hector Oron <zu...@debian.org>
Changed-By: Thorsten Glaser <t...@mirbsd.de>
Description:
dietlibc-dev - diet libc - a libc optimized for small size
dietlibc-doc - diet libc documentation - a libc optimized for small size
Closes: 689222
Changes:
dietlibc (0.33~cvs20120325-4) unstable; urgency=low
.
[ Peter Michael Green ]
* Tweak arm assembler patch so it works with armv6 vfp too.
.
[ Thorsten Glaser ]
* Fix jmp_buf size for armhf (Closes: #689222)
Checksums-Sha1:
fa59d11ea49d0bcb5a936a22435f8f3d7a65aa29 2069 dietlibc_0.33~cvs20120325-4.dsc
5f49ca341cd2ec34debb7bc76926fcdbed047268 37028
dietlibc_0.33~cvs20120325-4.debian.tar.gz
2e8bc8fc1448e56620385249708d0f7aa1b7448e 57416
dietlibc-doc_0.33~cvs20120325-4_all.deb
Checksums-Sha256:
772232397b099ba8f6a9376add7f0361bf4cd8ecc89ded7c6d2eb3f462db2974 2069
dietlibc_0.33~cvs20120325-4.dsc
43f86feb35ee727d85ef89abf61d28eb2948a0f15b7d767f4c971f2964ec0eb0 37028
dietlibc_0.33~cvs20120325-4.debian.tar.gz
aa264dffc89bef7a0726e4d54975163dcb709d3b12574b54ec091cedf985c328 57416
dietlibc-doc_0.33~cvs20120325-4_all.deb
Files:
f79d507d4ed6d349999f5f8184869c8b 2069 devel optional
dietlibc_0.33~cvs20120325-4.dsc
b155b57a674f59fc9956b734f4431e92 37028 devel optional
dietlibc_0.33~cvs20120325-4.debian.tar.gz
ea1d05ef8b43140c696b50f2933d8f74 57416 doc optional
dietlibc-doc_0.33~cvs20120325-4_all.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (MirBSD)
iQIcBAEBCQAGBQJQaFYvAAoJEHa1NLLpkAfgPI0QAL22MAW5jfzZKAImC2tMfnaG
esbXdnDWTm4sjdSuK91DaLNBNl31T2PlYrpfcims6tgouq49gQ8SMUPFdqcJPUXz
eZRmIG10SF53saiTyy+JAotkMyrSD5bQbj4RcrXl3o1x5ABZpgQrlknaWh0r4D50
6yKWJAAzs8x3QBV3m9s/NLGZS2DMJ3pPfCLiTPq71gdO9MqFnspqlNFY5/jcuwQ4
PMWHLB7iLaYBPbGfa0PbVX+3AJ61rb4tz/Kq1gqHX2+fPbiy0vLGlJSJPW+RsvMV
4pu3OcZWjqP6wN2OL1Fi+If4lZLUUSn1jVdPwnSMTmG+FGB1FMh3SFn7vFpx4hx7
6l0PRYVIw1W0tvOmrQQU9faQ7ARGBGMLLnYQq+qmIUoEIU/gbpABBVEqDrD4KaJs
JqIfjxrR6J14RpnRx2oci/N147dq4xLXhzFsR/v1a1l700Tt8gDetLl7VnE9kg/j
RcBSX1WeExUX/kSRAUIX2B8xb30aYUkerHqz81p1hKiR24Zh/gCLQMeQf3UE43YE
O6JdiCocUIUPBWmr94pPPDthzw4Ur37WLJj8ItenRCTLPxyaygT9f2KzqkYDO/Sr
Jp9CEbkxFFlcDmVGzl6Aqu6Y2Zlg5J6vw3A76ZX8U/ZNCiHCbHk1xf31DD1l9Siw
5clPxz5jqtg5KccbYXsg
=lGuK
-----END PGP SIGNATURE-----
------------=_1349017566-14228-1
Content-Type: message/rfc822
Content-Disposition: inline
Content-Transfer-Encoding: 7bit
Received: (at submit) by bugs.debian.org; 30 Sep 2012 14:11:18 +0000
X-Spam-Checker-Version: SpamAssassin 3.3.1-bugs.debian.org_2005_01_02
(2010-03-16) on buxtehude.debian.org
X-Spam-Level:
X-Spam-Status: No, score=-9.9 required=4.0 tests=BAYES_00,FOURLA,HAS_PACKAGE,
MURPHY_DRUGS_REL8 autolearn=ham version=3.3.1-bugs.debian.org_2005_01_02
X-Spam-Bayes: score:0.0000 Tokens: new, 6; hammy, 123; neutral, 51; spammy, 1.
spammytokens:0.912-+--(unknown) hammytokens:0.000-+--(unknown),
0.000-+--(unknown), 0.000-+--(unknown), 0.000-+--(unknown),
0.000-+--(unknown)
Return-path: <t...@herc.mirbsd.org>
Received: from static-87-79-237-121.netcologne.de
([87.79.237.121] helo=herc.mirbsd.org ident=root)
by buxtehude.debian.org with esmtps (TLS1.0:DHE_RSA_AES_256_CBC_SHA1:32)
(Exim 4.72)
(envelope-from <t...@herc.mirbsd.org>)
id 1TIKEn-0005Sz-DK
for sub...@bugs.debian.org; Sun, 30 Sep 2012 14:11:18 +0000
Received: from herc.mirbsd.org (tg@localhost [IPv6:::1])
by herc.mirbsd.org (8.14.5/8.14.5) with ESMTP id q8UEA9TN012044
(version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO)
for <sub...@bugs.debian.org>; Sun, 30 Sep 2012 14:10:13 GMT
Received: (from tg@localhost)
by herc.mirbsd.org (8.14.5/8.14.5/Submit) id q8UEA9Th022782;
Sun, 30 Sep 2012 14:10:09 GMT
Received: by S/MIME Plugin for MirBSD 10 Kv#10uB0-20120817 i386; Sun Sep 30
14:10:08 UTC 2012
Date: Sun, 30 Sep 2012 14:10:08 +0000 (UTC)
From: Thorsten Glaser <t...@mirbsd.de>
X-X-Sender: t...@herc.mirbsd.org
To: sub...@bugs.debian.org
Subject: dietlibc: buffer overflow on armhf
Message-ID: <pine.bsm.4.64l.1209301407520.5...@herc.mirbsd.org>
X-Message-Flag: Your mailer is broken. Get an update at
http://www.washington.edu/pine/getpine/pcpine.html for free.
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset=utf-8
Content-Transfer-Encoding: QUOTED-PRINTABLE
Delivered-To: sub...@bugs.debian.org
Package: dietlibc-dev
Version: 0.33~cvs20120325-3
Severity: critical
Justification: buffer overflow
The ARM assembly version of sigsetjmp(3) can store up to 42 integers
into the jmp_buf, on armhf without NEON it will store 26 integers;
the dietlibc jmp_buf only has enough space for 24 integers; thus,
any use of sigsetjmp() or setjmp() will overwrite user data.
Patch follows. Apparently, it=E2=80=99s armhf fixing weekend (RCBW) for me.
bye,
//mirabilos
--=20
13:37=E2=8E=9C=C2=ABNatureshadow=C2=BB Deep inside, I hate mirabilos. I mea=
n, he's a good
guy. But he's always right! In every fsckin' situation, he's right. Even
with his deeply perverted taste in software and borked ambition towards
broken OSes - in the end, he's damn right about it :(! [=E2=80=A6] works in=
mksh
------------=_1349017566-14228-1--
--- End Message ---