Your message dated Sat, 07 Apr 2018 23:02:09 +0000
with message-id <e1f4wqx-0008jz...@fasolo.debian.org>
and subject line Bug#893525: fixed in sharutils 1:4.15.2-2+deb9u1
has caused the Debian Bug report #893525,
regarding CVE-2018-1000097
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)


-- 
893525: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=893525
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Source: sharutils
Severity: grave
Tags: security

This has been assigned CVE-2018-1000097:
http://lists.gnu.org/archive/html/bug-gnu-utils/2018-02/msg00004.html

Proposed patch at:
http://lists.gnu.org/archive/html/bug-gnu-utils/2018-02/msg00005.html

Cheers,
        Moritz

--- End Message ---
--- Begin Message ---
Source: sharutils
Source-Version: 1:4.15.2-2+deb9u1

We believe that the bug you reported is fixed in the latest version of
sharutils, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 893...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Santiago Vila <sanv...@debian.org> (supplier of updated sharutils package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Format: 1.8
Date: Wed, 04 Apr 2018 19:46:18 +0200
Source: sharutils
Binary: sharutils sharutils-doc
Architecture: source
Version: 1:4.15.2-2+deb9u1
Distribution: stretch-security
Urgency: medium
Maintainer: Santiago Vila <sanv...@debian.org>
Changed-By: Santiago Vila <sanv...@debian.org>
Description:
 sharutils  - shar, unshar, uuencode, uudecode
 sharutils-doc - Documentation for GNU sharutils
Closes: 893525
Changes:
 sharutils (1:4.15.2-2+deb9u1) stretch-security; urgency=medium
 .
   * Apply patch from Petr Pisar to fix heap buffer overflow in unshar.
     This is CVE-2018-1000097. Closes: #893525.
Checksums-Sha1:
 a6e0d7650346b779e2c344133d57d5cd4da3d67d 1494 sharutils_4.15.2-2+deb9u1.dsc
 250377131bcf7a081f066ed0f9c51a0b7e0b0c04 1122476 sharutils_4.15.2.orig.tar.xz
 11c8d8cbacdbd5a851e42f85efa584ad70a95523 7784 
sharutils_4.15.2-2+deb9u1.debian.tar.xz
 1c1c9f87a17b55871ab2c8c75157bf6786830ff9 5525 
sharutils_4.15.2-2+deb9u1_source.buildinfo
Checksums-Sha256:
 2ed67aadd23af01243c5152ffad01710a2008ee60ab0a1a3d2f899f5ce29d071 1494 
sharutils_4.15.2-2+deb9u1.dsc
 2b05cff7de5d7b646dc1669bc36c35fdac02ac6ae4b6c19cb3340d87ec553a9a 1122476 
sharutils_4.15.2.orig.tar.xz
 78c3acce44d7d087953eb8ff383f8f894e35f049ed9648c9ef7e389935ff233f 7784 
sharutils_4.15.2-2+deb9u1.debian.tar.xz
 a0289d008fbab956057bbd9a54012400a39b2f7f7ab1f914d56acbd75c269aea 5525 
sharutils_4.15.2-2+deb9u1_source.buildinfo
Files:
 0d091caea0cb8addb727af32c172f482 1494 utils optional 
sharutils_4.15.2-2+deb9u1.dsc
 5975ce21da36491d7aa6dc2b0d9788e0 1122476 utils optional 
sharutils_4.15.2.orig.tar.xz
 2f47f5632d3fee81fd925c9cf2786bcc 7784 utils optional 
sharutils_4.15.2-2+deb9u1.debian.tar.xz
 2326da64be87a053d334698a1ccc5305 5525 utils optional 
sharutils_4.15.2-2+deb9u1_source.buildinfo

-----BEGIN PGP SIGNATURE-----

iQEzBAEBCAAdFiEE1Uw7+v+wQt44LaXXQc5/C58bizIFAlrFEWYACgkQQc5/C58b
izJVWQf/Zh/QKCfuyETYlxoMmHROnvQVT16cZ0cHV7cNESjmcxH0DfN02OWotbcF
qKF9Eq5enLhPo7cpiForBzq2RGqrbQmQzvskYCU6geTSznM7rLLawmLp58Eb00oA
nyo7fgr5kMuR25MCUK07zYX91PLn8Rx985IZUq7WUv9wIE9qXclutcMeq2L1vIip
/vUUIoz6KiTLRB4e3K4MtIRP/zoQjLdsnnuLL93vGsgphzic0EmeW+iK+CzKvgeL
VIILWm6mooIrr7GtNj46GkDgmwRb1V4raGhxoquckZjhr5q5lvu4QhmgrmcIZwYF
Kqorerji2oRZKzCR7EKwe9KbEoaiWQ==
=/dRH
-----END PGP SIGNATURE-----

--- End Message ---

Reply via email to