Your message dated Tue, 13 Apr 2021 13:47:12 +0000
with message-id <e1lwjno-0005dj...@fasolo.debian.org>
and subject line Bug#985092: fixed in lib3mf 1.8.1+ds-3+deb10u1
has caused the Debian Bug report #985092,
regarding CVE-2021-21772
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)
--
985092: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=985092
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Source: lib3mf
Severity: grave
Tags: security
X-Debbugs-Cc: Debian Security Team <t...@security.debian.org>
This was assigned CVE-2021-21772:
https://talosintelligence.com/vulnerability_reports/TALOS-2020-1226
Cheers,
Moritz
--- End Message ---
--- Begin Message ---
Source: lib3mf
Source-Version: 1.8.1+ds-3+deb10u1
Done: Kristian Nielsen <kniel...@knielsen-hq.org>
We believe that the bug you reported is fixed in the latest version of
lib3mf, which is due to be installed in the Debian FTP archive.
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to 985...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Kristian Nielsen <kniel...@knielsen-hq.org> (supplier of updated lib3mf package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@ftp-master.debian.org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Mon, 05 Apr 2021 12:55:40 +0200
Source: lib3mf
Binary: lib3mf-dev lib3mf-doc lib3mf1 lib3mf1-dbgsym
Architecture: source amd64 all
Version: 1.8.1+ds-3+deb10u1
Distribution: buster-security
Urgency: high
Maintainer: Torsten Paul <torsten.p...@gmx.de>
Changed-By: Kristian Nielsen <kniel...@knielsen-hq.org>
Description:
lib3mf-dev - Lib3MF is a C++ implementation of the 3D Manufacturing Format (de
lib3mf-doc - Lib3MF is a C++ implementation of the 3D Manufacturing Format (do
lib3mf1 - Lib3MF is a C++ implementation of the 3D Manufacturing Format
Closes: 985092
Changes:
lib3mf (1.8.1+ds-3+deb10u1) buster-security; urgency=high
.
* Fix use-after-free (CVE-2021-21772), backporting fix from v2.1.1
(Closes: #985092)
Checksums-Sha1:
1dd3c553f3cdcaa9c9cfa5f6eb75cff642d5e032 1922 lib3mf_1.8.1+ds-3+deb10u1.dsc
a432157d2a0848d83d81062ce9cddc03b0f7cc06 7965380 lib3mf_1.8.1+ds.orig.tar.xz
1960af6a8a82ca25e274c46efb4ad28f72b4539a 29040
lib3mf_1.8.1+ds-3+deb10u1.debian.tar.xz
5abedf268f195764b68856aa083c756d258e9177 73104
lib3mf-dev_1.8.1+ds-3+deb10u1_amd64.deb
ae1be2c2a97a0965646439cff2b03de12ba02d56 1171240
lib3mf-doc_1.8.1+ds-3+deb10u1_all.deb
16a2c9eb41c07b6f6aeb708b3b6b3d0c088ec1ff 6504824
lib3mf1-dbgsym_1.8.1+ds-3+deb10u1_amd64.deb
a6fb524ae55e3ca573bf1a3019e788c7cd286f0e 383972
lib3mf1_1.8.1+ds-3+deb10u1_amd64.deb
4e2886bbbd69d5ca4dde48204939984d3eabdefe 7858
lib3mf_1.8.1+ds-3+deb10u1_amd64.buildinfo
Checksums-Sha256:
2f6436c4db729064bd44cdbb9118019376b9f26223de587f71ef0138e9d69f7c 1922
lib3mf_1.8.1+ds-3+deb10u1.dsc
fa412b38442d93d2ff93b46d6df379a35f281f11482bba6b30e1ac2e1e78039f 7965380
lib3mf_1.8.1+ds.orig.tar.xz
f4d7ca46d94e630fdce9e4fd31a0b7b2427eff0e1437947171b996e0b66ab3f4 29040
lib3mf_1.8.1+ds-3+deb10u1.debian.tar.xz
8e131949317031cd89c679aeb16241bf654bcc6eb41aaba05dfd23b15e0f42f6 73104
lib3mf-dev_1.8.1+ds-3+deb10u1_amd64.deb
d15348f3c3cca421c0c9a597ce76e5fc030456d531f656128c016482791014d9 1171240
lib3mf-doc_1.8.1+ds-3+deb10u1_all.deb
60fb2ac1577c764dc327a78455246adc82cf34e2951d10c175be28bad52fa7b6 6504824
lib3mf1-dbgsym_1.8.1+ds-3+deb10u1_amd64.deb
fd696087f94f7176fa96e5d2618158d4338fd0c1f1e0e0e08c85927bc248174c 383972
lib3mf1_1.8.1+ds-3+deb10u1_amd64.deb
d99d0868bea3ff3467b4abdfe2ce509bd4fa166a70748a74eaac2c8e57dae173 7858
lib3mf_1.8.1+ds-3+deb10u1_amd64.buildinfo
Files:
918fe77e711ec0dd19169cfd4fbc516f 1922 libs optional
lib3mf_1.8.1+ds-3+deb10u1.dsc
d36563c7dfda4f4854101ada43d43bad 7965380 libs optional
lib3mf_1.8.1+ds.orig.tar.xz
cdc2194f2b6519ee7c9661b863094fbb 29040 libs optional
lib3mf_1.8.1+ds-3+deb10u1.debian.tar.xz
7db66449b3b464e5bacd0723f3ed9f79 73104 libdevel optional
lib3mf-dev_1.8.1+ds-3+deb10u1_amd64.deb
68ac3ef5a5796e7f968013ee1cd5f70d 1171240 doc optional
lib3mf-doc_1.8.1+ds-3+deb10u1_all.deb
d9399a2d2b52e46f6ef16033b8624c75 6504824 debug optional
lib3mf1-dbgsym_1.8.1+ds-3+deb10u1_amd64.deb
f68cd9e7204819770f51a3b50a7467c1 383972 libs optional
lib3mf1_1.8.1+ds-3+deb10u1_amd64.deb
76034ca8a51e0237ad3d33eea894b20f 7858 libs optional
lib3mf_1.8.1+ds-3+deb10u1_amd64.buildinfo
-----BEGIN PGP SIGNATURE-----
iQIzBAEBCgAdFiEEtuYvPRKsOElcDakFEMKTtsN8TjYFAmBt74YACgkQEMKTtsN8
Tja2cA//VRir0sLwEl6reS+dtdPPkw7OyFVjsS2ApbCf/8X+C00dMB8dA5/UDJkK
70pvCdFXa4lADzTHhIkBor/xhOet+2/BM9rW1aWAjYb5rOBMVOjA/oPbriEnNSqv
WOdgLgHgmHyn0J3YhGKNn31fPV2lQdXFJS5ZjnmksteEDdi0dA2ERsGIyYDZmP18
FdNaCQ3cfmPgmwVTGuvOcnURvJKw99pmORQDU0JqpKAlDkw272O8R+gzQ8IRwNBh
vGr9+ou4h8EWNWuf4h9EdXQe5jlx1DCsyXJ4FCRyIhSMzemUMdyzX8BHq/wCZRlV
Rs8264reK+Un9OPN6z5DId02WiHKpgctTrAZt0vQqZLDVGyZI9tXU71zkFFcwhzM
2/ropogTOTsH+IFlMy5RLXDeylEMwRKlw6KpCuZyfBs4+JKJXGwjPMvzgbBfnqnY
L+zRho3IsRqm7HrI0JUP4zI+atsUdHORuwmF6i9vsv33QC2pHcb+WLGAKHjpzX3t
v3tqOqjcU0GGypyEFknzwPw7YZtgAOqGLw+stdpPlhIg3RXwpo5/4lO7Dh525mOC
77xY+Enqju9GANA8+SGT9QYtW6A/H2lOLnhvjYQNPgkDY8uBYv8xAMVE+HmsktF+
qdHFXw2HC/WZiy/oDn5HT19EPB93geWv9l+znPbU55AmM5EbFwI=
=kuka
-----END PGP SIGNATURE-----
--- End Message ---