Your message dated Sun, 06 Aug 2017 12:32:11 +0000 with message-id <e1dekj5-0001s7...@fasolo.debian.org> and subject line Bug#862712: fixed in node-brace-expansion 1.1.6-1+deb9u1 has caused the Debian Bug report #862712, regarding node-brace-expansion: regular expression denial of service to be marked as done.
This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what this message is talking about, this may indicate a serious mail system misconfiguration somewhere. Please contact ow...@bugs.debian.org immediately.) -- 862712: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=862712 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems
--- Begin Message ---Package: node-brace-expansion Version: 1.1.6-1 Severity: serious Tags: security There is a regular expression denial of service issue in node-brace-expansion <= 1.1.6. More details available here: https://nodesecurity.io/advisories/338 -- bye, pabs https://wiki.debian.org/PaulWise
signature.asc
Description: This is a digitally signed message part
--- End Message ---
--- Begin Message ---Source: node-brace-expansion Source-Version: 1.1.6-1+deb9u1 We believe that the bug you reported is fixed in the latest version of node-brace-expansion, which is due to be installed in the Debian FTP archive. A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to 862...@bugs.debian.org, and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Sruthi Chandran <s...@disroot.org> (supplier of updated node-brace-expansion package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing ftpmas...@ftp-master.debian.org) -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Wed, 26 Jul 2017 15:46:15 +0530 Source: node-brace-expansion Binary: node-brace-expansion Architecture: source all Version: 1.1.6-1+deb9u1 Distribution: stretch Urgency: medium Maintainer: Debian Javascript Maintainers <pkg-javascript-de...@lists.alioth.debian.org> Changed-By: Sruthi Chandran <s...@disroot.org> Description: node-brace-expansion - Brace expansion as known from sh/bash for Node.js Closes: 862712 Changes: node-brace-expansion (1.1.6-1+deb9u1) stretch; urgency=medium . * Fix regular expression denial of service issue (Closes: 862712) Checksums-Sha1: 009606be54805a42e203a26021b5b7783e42a5b4 2144 node-brace-expansion_1.1.6-1+deb9u1.dsc c5eff08dd0ab75d454164d7a122e2d773bb89713 3072 node-brace-expansion_1.1.6-1+deb9u1.debian.tar.xz 3d68bd157050210e940bb71c99135fa835f31f8b 5788 node-brace-expansion_1.1.6-1+deb9u1_all.deb ac5d7c257f3f11192fd84558063dbe25d01ae59a 5727 node-brace-expansion_1.1.6-1+deb9u1_amd64.buildinfo Checksums-Sha256: c8066a041b20e8b61471a517fce9f30ea33be238903f51d975a48c6425d5c04f 2144 node-brace-expansion_1.1.6-1+deb9u1.dsc c8d9d5c1aaaa9043819cf8bab66d343e102e90b81896c70a44b99366e2ba7db1 3072 node-brace-expansion_1.1.6-1+deb9u1.debian.tar.xz 0656ddbf354cd3cc3544ab9b033546466072c2c285a9d773fca753d0a21b7b4d 5788 node-brace-expansion_1.1.6-1+deb9u1_all.deb 9cd15a08626a68ab03af2b7271faa3aee90a6d5ea9f999851751078de8377d6d 5727 node-brace-expansion_1.1.6-1+deb9u1_amd64.buildinfo Files: e4aba5c4b9cd498cda5dba1bb9496443 2144 web extra node-brace-expansion_1.1.6-1+deb9u1.dsc c884f988e4685949f7fec08a79fbdeb6 3072 web extra node-brace-expansion_1.1.6-1+deb9u1.debian.tar.xz a4de3a4a3c8cf23e598c8001d4f37be6 5788 web extra node-brace-expansion_1.1.6-1+deb9u1_all.deb 5906daf9f891d980d114193d18702650 5727 web extra node-brace-expansion_1.1.6-1+deb9u1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEKnl0ri/BUtd4Z9pKzh+cZ0USwioFAlmDUE4ACgkQzh+cZ0US wiqJcw/9Ef2y+m+TY+YZnisxdl7DOrP8R8vkCzL7iElaPeygAHUM4pDLPy5YvA+q +eEq92ieNQVyzfv2ypo7J3p+Aa9TQYl7WJiZ0GE5VJmnwBNsXa+L4tSN9ZiHR61X WrYbmRunYeH5QYpHR2BTD1kECJYFUQ1Mzf/U3zPptq1gWMIaldHXu7M5fJHIn4a6 eZo1jdURaHfjnlm2EfjOTU7S8lbsyzutVodyaf5Zl1DFcUHcL1c+s83KaZ5SBarZ SIjjiFGnscKRF+jTumLE7LJGpyQMH4HyIqla42Ie+fodGQnQ2iidaMdk9u5AuGa4 3k/9A60IhOHM3m147WfwlGAfwdKAyPsVOK+3+0BI+C3FdfJHPNbtwCogo+ihbxnY grpRCbqAcpQIQjpuWGswGyGzEN3FmWQ6nG5QCz077Vde2r/FgxXsJ5vwnb/YZlHh YzxXSCyPKoFk3VzTaG0s1zbqbY83YTSZS80Hrd5eIQ4xSZLlSV9crs+NPKHlNu/K crvfXGx69aRrfGbRRa5W3jtw140DewdqvNVZAmUPXmSLaSnYaXNM4+ozYLGC+W6h RGyoMBq1EWnLsgyXQ1xklG/jLDhSRRB1ssL55sVgWYNXKjWhH84HluzTv1k+9265 BCHpPMdiGb1LEz+cevLtxydVUk7e4kAceTCujAwGqEFvfrXFjuI= =xCD/ -----END PGP SIGNATURE-----
--- End Message ---