Your message dated Thu, 27 Jun 2024 21:35:24 +0000
with message-id <e1smwm4-000num...@fasolo.debian.org>
and subject line Bug#1074351: fixed in rust-curve25519-dalek 
4.1.3+20240618+dfsg-1
has caused the Debian Bug report #1074351,
regarding rust-curve25519-dalek: RUSTSEC-2024-0344
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)


-- 
1074351: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1074351
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Source: rust-curve25519-dalek
Version: 4+20240603+dfsg-2
Severity: grave
Tags: security upstream
Justification: user security hole
Forwarded: https://github.com/dalek-cryptography/curve25519-dalek/pull/659
X-Debbugs-Cc: car...@debian.org, Debian Security Team <t...@security.debian.org>

Hi

There is RUSTSEC-2024-0344 provided for rust-curve25519-dalek, can you
have a look for unstable?

https://rustsec.org/advisories/RUSTSEC-2024-0344.html
https://github.com/dalek-cryptography/curve25519-dalek/pull/659

Regards,
Salvatore

--- End Message ---
--- Begin Message ---
Source: rust-curve25519-dalek
Source-Version: 4.1.3+20240618+dfsg-1
Done: Jonas Smedegaard <d...@jones.dk>

We believe that the bug you reported is fixed in the latest version of
rust-curve25519-dalek, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 1074...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Jonas Smedegaard <d...@jones.dk> (supplier of updated rust-curve25519-dalek 
package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Thu, 27 Jun 2024 22:49:57 +0200
Source: rust-curve25519-dalek
Architecture: source
Version: 4.1.3+20240618+dfsg-1
Distribution: unstable
Urgency: high
Maintainer: Jonas Smedegaard <d...@jones.dk>
Changed-By: Jonas Smedegaard <d...@jones.dk>
Closes: 1074351
Changes:
 rust-curve25519-dalek (4.1.3+20240618+dfsg-1) unstable; urgency=high
 .
   [ upstream ]
   * new release;
     fixes RUSTSEC-2024-0344;
     closes: bug#1074351, thanks to Salvatore Bonaccorso
 .
   [ Jonas Smedegaard ]
   * rename patch 1002, and update DEP-3 headers
   * update watch file: bump base version
   * set urgency=high due to security bugfix
   * bump project versions in virtual packages and autopkgtests
Checksums-Sha1:
 230c291c9da895f43be9e21e18ae0172b814153d 5684 
rust-curve25519-dalek_4.1.3+20240618+dfsg-1.dsc
 b1c08044af821ad7e312e25011e61050ff1f902d 595456 
rust-curve25519-dalek_4.1.3+20240618+dfsg.orig.tar.xz
 a03b48e5061cf16a96bd97cc54ba64212756c800 20056 
rust-curve25519-dalek_4.1.3+20240618+dfsg-1.debian.tar.xz
 c03c62bfcbea819b8f9eeac64a9f865c97df9404 15627 
rust-curve25519-dalek_4.1.3+20240618+dfsg-1_amd64.buildinfo
Checksums-Sha256:
 cb25d486a7b1663d25594aef7a0043affbcb5171e3a694ca74e6a92a63f752b5 5684 
rust-curve25519-dalek_4.1.3+20240618+dfsg-1.dsc
 dd943696774ac4f0d2bb00d9a4be7225d441661066089f466213c80cce2fa99d 595456 
rust-curve25519-dalek_4.1.3+20240618+dfsg.orig.tar.xz
 e389b36e57fd020c07e9ba9f588622b18e077e03b2e5bd4543bfb2824efe82cd 20056 
rust-curve25519-dalek_4.1.3+20240618+dfsg-1.debian.tar.xz
 8939e6046b6e0071ab150573416576537551e8ded8a606a002abf46154cb09a3 15627 
rust-curve25519-dalek_4.1.3+20240618+dfsg-1_amd64.buildinfo
Files:
 1af802eeb0f6f9b3b6d31309bd6a3fc8 5684 rust optional 
rust-curve25519-dalek_4.1.3+20240618+dfsg-1.dsc
 fa373ec02a39a0dc343a4e7fabdc6d35 595456 rust optional 
rust-curve25519-dalek_4.1.3+20240618+dfsg.orig.tar.xz
 e12862c2d420bc80ae779791f8adbe15 20056 rust optional 
rust-curve25519-dalek_4.1.3+20240618+dfsg-1.debian.tar.xz
 c574091e4eca3d247b120f228e395282 15627 rust optional 
rust-curve25519-dalek_4.1.3+20240618+dfsg-1_amd64.buildinfo

-----BEGIN PGP SIGNATURE-----

iQIzBAEBCgAdFiEEn+Ppw2aRpp/1PMaELHwxRsGgASEFAmZ90TYACgkQLHwxRsGg
ASFahxAAgQhxVWg9RZlyKKXA0Y6kl/AkGWbk9r+W50NXtn3NhTVuK0JE22gmUfkh
MPQXRX/objfmcFEaGztQdW8DsehK3YFkQ8UjQj9Ee1rE4l+1KdLHxPi7v1CAwIB4
YLu/TdwrzXIt84b2B4zGoyVGY2L0Xj9JdUrFk6+If1KWb+LS3Wm9mM9ZdmyZFVbH
JV4NlDDUh6yS9nfxXS+BXfLbg8D6NRCg8yO1Gby0m4hoEz7lZme/0cKJilMTtcor
K97PjOwP7+Zl6qaRYUQVxtCdhTIWkZXlxgw7WQCAonbQxscDKN2Orgbj0J1IZrij
WkjWvvcCTPdmKYuof++7pq8LnMGKrI70qO/yHBTrGumgVsSjVIhtljl5sj9TNMyt
HYxZEeCj9a8CULUKM9t57+I2KF2HQWdVvluhRvOMU+ZM/i5HhI+mvmOpmIsAgQdj
0wCM30Qd8mfFYV1sPq8NZcYzGYSHeoCR8DLjiJkJdmuSTKXYJ+NoLI7rp21McOS8
Aj9DJvYeKNX94/7QOTtbJojzw0cWXzwKlU48KZlR6EvUBWG37BlN7SpyhiGa1Buu
NtIHpgrNZZaHkMsBFroAwbU1W2fty4KVt/Mbi/JvT8mD6ukafN370ztj+DHO+Qsr
KyNWwTFObc7bbXYUmH2p2CRf23U63DD5rr/H9OhxLvKiN8VNTWk=
=wVac
-----END PGP SIGNATURE-----

Attachment: pgpHRY1Et69pk.pgp
Description: PGP signature


--- End Message ---

Reply via email to