Your message dated Sat, 23 Sep 2017 10:02:46 +0000
with message-id <e1dvhgo-0001zk...@fasolo.debian.org>
and subject line Bug#875447: fixed in emacs25 25.1+1-4+deb9u1
has caused the Debian Bug report #875447,
regarding emacs25: CVE-2017-14482: enriched text remote code execution
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)


-- 
875447: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=875447
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Source: emacs25
Version: 25.1+1-4
Severity: grave
Tags: patch upstream security
Justification: user security hole
Forwarded: https://bugs.gnu.org/28350
Control: clone -1 -2 -3
Control: reassign -2 src:emacs24 24.4+1-4
Control: retitle -2 emacs24: enriched text remote code execution
Control: reassing -3 src:emacs23 23.4+1-4
Control: retitle -3 emacs23: enriched text remote code execution

Hi

See http://www.openwall.com/lists/oss-security/2017/09/11/1 for
details. The bug has been reported upstream at:

https://bugs.gnu.org/28350

Upstream commit:

https://git.savannah.gnu.org/cgit/emacs.git/commit/?h=emacs-25&id=9ad0fcc54442a9a01d41be19880250783426db70

Regards,
Salvatore

--- End Message ---
--- Begin Message ---
Source: emacs25
Source-Version: 25.1+1-4+deb9u1

We believe that the bug you reported is fixed in the latest version of
emacs25, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 875...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Rob Browning <r...@defaultvalue.org> (supplier of updated emacs25 package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Format: 1.8
Date: Wed, 13 Sep 2017 01:33:28 -0500
Source: emacs25
Binary: emacs25-lucid emacs25-lucid-dbg emacs25-nox emacs25-nox-dbg emacs25 
emacs25-dbg emacs25-bin-common emacs25-common emacs25-el
Architecture: source amd64 all
Version: 25.1+1-4+deb9u1
Distribution: stretch-security
Urgency: high
Maintainer: Rob Browning <r...@defaultvalue.org>
Changed-By: Rob Browning <r...@defaultvalue.org>
Description:
 emacs25    - GNU Emacs editor (with GTK+ GUI support)
 emacs25-bin-common - GNU Emacs editor's shared, architecture dependent files
 emacs25-common - GNU Emacs editor's shared, architecture independent 
infrastructur
 emacs25-dbg - Debugging symbols for emacs25
 emacs25-el - GNU Emacs LISP (.el) files
 emacs25-lucid - GNU Emacs editor (with Lucid GUI support)
 emacs25-lucid-dbg - Debugging symbols for emacs25-lucid
 emacs25-nox - GNU Emacs editor (without GUI support)
 emacs25-nox-dbg - Debugging symbols for emacs25-nox
Closes: 875447
Changes:
 emacs25 (25.1+1-4+deb9u1) stretch-security; urgency=high
 .
   * Block remote code execution via enriched text.  Add
     0012-A-remote-execution-exploit-via-enriched-text-has-bee.patch to
     fix the problem.  Thanks to David Bremner for the alert and
     Salvatore Bonaccorso for reporting the problem to Debian.
     (Closes: 875447)
Checksums-Sha1:
 33acc5493860d00379255ce81c11dbe0c5498ba1 2870 emacs25_25.1+1-4+deb9u1.dsc
 e5357a302a9609e2efc2c942b03b9110245280bd 23167732 emacs25_25.1+1.orig.tar.xz
 c351ae97ad93d5cf332b4bcbc7b3afdc9d0c8365 52132 
emacs25_25.1+1-4+deb9u1.debian.tar.xz
 e5dfa8d23813656ceaa4729917f8adcf86ace602 280994 
emacs25-bin-common-dbgsym_25.1+1-4+deb9u1_amd64.deb
 88d3f60b4db2659b2d8ad0250a4e1f9e18e52466 147422 
emacs25-bin-common_25.1+1-4+deb9u1_amd64.deb
 3243dfde44c26edac423362e4efe19049c46f234 13153374 
emacs25-common_25.1+1-4+deb9u1_all.deb
 f735f73a465c72b0e9db86fb29b41923307f5700 5201156 
emacs25-dbg_25.1+1-4+deb9u1_amd64.deb
 7f3b73445113d984772fa3da7c2262690697b7c7 15656464 
emacs25-el_25.1+1-4+deb9u1_all.deb
 7dd1033125d717d3b0bc70ebd5fa3cfb746aa3ef 5293514 
emacs25-lucid-dbg_25.1+1-4+deb9u1_amd64.deb
 8f3d80d4333d1dc4e1d0369e4915162f7f790d90 3512756 
emacs25-lucid_25.1+1-4+deb9u1_amd64.deb
 89ce00524e82482077c181070d6b7880652bc71e 3663872 
emacs25-nox-dbg_25.1+1-4+deb9u1_amd64.deb
 89de66a319a9e03e46bd15cc0a719ffb339f6133 3082144 
emacs25-nox_25.1+1-4+deb9u1_amd64.deb
 36323f85f9ee6d93a1614026ccc173ca4403f685 19707 
emacs25_25.1+1-4+deb9u1_amd64.buildinfo
 a17d47d67f265d0cb2a1b4dccaeef1b21e5564ea 3506178 
emacs25_25.1+1-4+deb9u1_amd64.deb
Checksums-Sha256:
 edd8a78d42f6139162febb93fe4928a75802a6a0ee361d461cc99231f33312e9 2870 
emacs25_25.1+1-4+deb9u1.dsc
 aec0d7e112d91cdf4627b67eb479764c66cd70f9b5de474cd09df53f47c0450c 23167732 
emacs25_25.1+1.orig.tar.xz
 d1fbd6293a4d52d3ef5fd9ce41d909fc4facd0cc54ced9e1204f952fb28c9132 52132 
emacs25_25.1+1-4+deb9u1.debian.tar.xz
 3451507ca39e967603eeb9788562746ab0ec88ee0efbf196dbb9b780693f37a0 280994 
emacs25-bin-common-dbgsym_25.1+1-4+deb9u1_amd64.deb
 d32993dc41f44ec7206f333c9d14226156debf66562cef03d0a7dfd36ff3589f 147422 
emacs25-bin-common_25.1+1-4+deb9u1_amd64.deb
 c179c74f5309f0530864972dce88ea463ae34a4b34ea6fbad2e5c648f06848f4 13153374 
emacs25-common_25.1+1-4+deb9u1_all.deb
 b60fd23c098bfeafb69561eb07e8d85a504ce1da2de2d33ba4baae3c6036afc0 5201156 
emacs25-dbg_25.1+1-4+deb9u1_amd64.deb
 940e31cf1d2dec8b0441070cb4f7d368b66b075752807f78a0a208606c999f3a 15656464 
emacs25-el_25.1+1-4+deb9u1_all.deb
 336b33630adf78b17b3ecbfb26d90e105405e4b6add878191a2966e32cd123e1 5293514 
emacs25-lucid-dbg_25.1+1-4+deb9u1_amd64.deb
 5daee038767baba35e65dbad65bdcc3a378dcf35b7fbe1e5a07e5caa4e3f0805 3512756 
emacs25-lucid_25.1+1-4+deb9u1_amd64.deb
 ba62d5226c7a75655db3b5d33dac15fd729fd464d115c565503fc74de7d01b6d 3663872 
emacs25-nox-dbg_25.1+1-4+deb9u1_amd64.deb
 c40a2edc40bc36f1269b52cfbd865eef98b6c437d64fa2cd7417af00a0bbe99a 3082144 
emacs25-nox_25.1+1-4+deb9u1_amd64.deb
 b18c50768cea95e281fa70c07376cab2b0ef01e029e11817127065291c0cf588 19707 
emacs25_25.1+1-4+deb9u1_amd64.buildinfo
 bc5c6eaa9358b8bf31c6b5ca6118cebc18a75c1a08c37f745a62a61b51ba2046 3506178 
emacs25_25.1+1-4+deb9u1_amd64.deb
Files:
 7dbd566a6cabb230e60b5698cb790afd 2870 editors optional 
emacs25_25.1+1-4+deb9u1.dsc
 60306d460ed79d4e3a5487ea84d31aae 23167732 editors optional 
emacs25_25.1+1.orig.tar.xz
 7d2719582fc804bcf82366bf728db1e0 52132 editors optional 
emacs25_25.1+1-4+deb9u1.debian.tar.xz
 d37af9756f7e6728275025c1e632ceca 280994 debug extra 
emacs25-bin-common-dbgsym_25.1+1-4+deb9u1_amd64.deb
 f56450c5edaa0936306b675589eca3e5 147422 editors optional 
emacs25-bin-common_25.1+1-4+deb9u1_amd64.deb
 ac35d1e90a908b4f21c8286c78b21c80 13153374 editors optional 
emacs25-common_25.1+1-4+deb9u1_all.deb
 c837d70524d6c5d1adc1806a6272bbad 5201156 debug extra 
emacs25-dbg_25.1+1-4+deb9u1_amd64.deb
 f2fbf0a957bde6c1e4f158ba5976a211 15656464 editors optional 
emacs25-el_25.1+1-4+deb9u1_all.deb
 f9e4ca30c8c36a9b5e9711b17ea8ce81 5293514 debug extra 
emacs25-lucid-dbg_25.1+1-4+deb9u1_amd64.deb
 720741da1461d0ba16783bc1dd145405 3512756 editors optional 
emacs25-lucid_25.1+1-4+deb9u1_amd64.deb
 8cb16c233dfec81dfe042df693aaa4ea 3663872 debug extra 
emacs25-nox-dbg_25.1+1-4+deb9u1_amd64.deb
 38b41bab3379d299f48ae21d59e888a6 3082144 editors optional 
emacs25-nox_25.1+1-4+deb9u1_amd64.deb
 58e08e1852d8437acc1ffd0065f1f1d6 19707 editors optional 
emacs25_25.1+1-4+deb9u1_amd64.buildinfo
 980fe9913fbacefd522612945d382838 3506178 editors optional 
emacs25_25.1+1-4+deb9u1_amd64.deb

-----BEGIN PGP SIGNATURE-----
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=KwmB
-----END PGP SIGNATURE-----

--- End Message ---

Reply via email to