Your message dated Wed, 25 Oct 2006 06:49:10 -0700
with message-id <[EMAIL PROTECTED]>
and subject line Bug#275431: fixed in cyrus-sasl-2.1 2.1.22-0~pre03
has caused the attached Bug report to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what I am
talking about this indicates a serious mail system misconfiguration
somewhere. Please contact me immediately.)
Debian bug tracking system administrator
(administrator, Debian Bugs database)
--- Begin Message ---
Package: cyrus-sasl2
Severity: critical
Tags: security sarge sid
Justification: root security hole
See:
http://security.gentoo.org/glsa/glsa-200410-05.xml
https://bugzilla.andrew.cmu.edu/cgi-bin/cvsweb.cgi/src/sasl/lib/common.c.diff?r1=1.103&r2=1.104
http://lwn.net/Articles/105693/
I will upload a NMU (version -1.2) shortly.
-- System Information:
Debian Release: 3.1
APT prefers unstable
APT policy: (990, 'unstable')
Architecture: i386 (i686)
Kernel: Linux 2.4.28-pre3-debian5+skas+lmsensors+3c59xvlan
Locale: LANG=pt_BR, LC_CTYPE=pt_BR
--
"One disk to rule them all, One disk to find them. One disk to bring
them all and in the darkness grind them. In the Land of Redmond
where the shadows lie." -- The Silicon Valley Tarot
Henrique Holschuh
--- End Message ---
--- Begin Message ---
Source: cyrus-sasl-2.1
Source-Version: 2.1.22-0~pre03
We believe that the bug you reported is fixed in the latest version of
cyrus-sasl-2.1, which is due to be installed in the Debian FTP archive:
cyrus-sasl-2.1-bin_2.1.22-0~pre03_i386.deb
to pool/main/c/cyrus-sasl-2.1/cyrus-sasl-2.1-bin_2.1.22-0~pre03_i386.deb
cyrus-sasl-2.1-doc_2.1.22-0~pre03_all.deb
to pool/main/c/cyrus-sasl-2.1/cyrus-sasl-2.1-doc_2.1.22-0~pre03_all.deb
cyrus-sasl-2.1_2.1.22-0~pre03.diff.gz
to pool/main/c/cyrus-sasl-2.1/cyrus-sasl-2.1_2.1.22-0~pre03.diff.gz
cyrus-sasl-2.1_2.1.22-0~pre03.dsc
to pool/main/c/cyrus-sasl-2.1/cyrus-sasl-2.1_2.1.22-0~pre03.dsc
libsasl2-2-dev_2.1.22-0~pre03_i386.deb
to pool/main/c/cyrus-sasl-2.1/libsasl2-2-dev_2.1.22-0~pre03_i386.deb
libsasl2-2-modules-gssapi-mit_2.1.22-0~pre03_i386.deb
to
pool/main/c/cyrus-sasl-2.1/libsasl2-2-modules-gssapi-mit_2.1.22-0~pre03_i386.deb
libsasl2-2-modules-ldap_2.1.22-0~pre03_i386.deb
to pool/main/c/cyrus-sasl-2.1/libsasl2-2-modules-ldap_2.1.22-0~pre03_i386.deb
libsasl2-2-modules-otp_2.1.22-0~pre03_i386.deb
to pool/main/c/cyrus-sasl-2.1/libsasl2-2-modules-otp_2.1.22-0~pre03_i386.deb
libsasl2-2-modules-sql_2.1.22-0~pre03_i386.deb
to pool/main/c/cyrus-sasl-2.1/libsasl2-2-modules-sql_2.1.22-0~pre03_i386.deb
libsasl2-2-modules_2.1.22-0~pre03_i386.deb
to pool/main/c/cyrus-sasl-2.1/libsasl2-2-modules_2.1.22-0~pre03_i386.deb
libsasl2-2_2.1.22-0~pre03_i386.deb
to pool/main/c/cyrus-sasl-2.1/libsasl2-2_2.1.22-0~pre03_i386.deb
libsasl2-dev_2.1.22-0~pre03_i386.deb
to pool/main/c/cyrus-sasl-2.1/libsasl2-dev_2.1.22-0~pre03_i386.deb
libsasl2-modules-gssapi-heimdal_2.1.22-0~pre03_i386.deb
to
pool/main/c/cyrus-sasl-2.1/libsasl2-modules-gssapi-heimdal_2.1.22-0~pre03_i386.deb
libsasl2-modules-sql_2.1.22-0~pre03_i386.deb
to pool/main/c/cyrus-sasl-2.1/libsasl2-modules-sql_2.1.22-0~pre03_i386.deb
libsasl2-modules_2.1.22-0~pre03_i386.deb
to pool/main/c/cyrus-sasl-2.1/libsasl2-modules_2.1.22-0~pre03_i386.deb
libsasl2_2.1.22-0~pre03_i386.deb
to pool/main/c/cyrus-sasl-2.1/libsasl2_2.1.22-0~pre03_i386.deb
sasl2-bin_2.1.22-0~pre03_i386.deb
to pool/main/c/cyrus-sasl-2.1/sasl2-bin_2.1.22-0~pre03_i386.deb
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to [EMAIL PROTECTED],
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Fabian Fagerholm <[EMAIL PROTECTED]> (supplier of updated cyrus-sasl-2.1
package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [EMAIL PROTECTED])
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Mon, 23 Oct 2006 17:27:18 +0300
Source: cyrus-sasl-2.1
Binary: libsasl2-2 cyrus-sasl-2.1-bin libsasl2 libsasl2-2-dev sasl2-bin
libsasl2-2-modules-ldap libsasl2-dev libsasl2-2-modules-gssapi-mit
libsasl2-modules-gssapi-heimdal libsasl2-2-modules-otp cyrus-sasl-2.1-doc
libsasl2-modules-sql libsasl2-2-modules-sql libsasl2-modules libsasl2-2-modules
Architecture: source i386 all
Version: 2.1.22-0~pre03
Distribution: experimental
Urgency: low
Maintainer: Fabian Fagerholm <[EMAIL PROTECTED]>
Changed-By: Fabian Fagerholm <[EMAIL PROTECTED]>
Description:
cyrus-sasl-2.1-bin - Administration programs for SASL users database
cyrus-sasl-2.1-doc - Documentation for Cyrus SASL library and utilities
libsasl2 - Authentication abstraction library
libsasl2-2 - Authentication abstraction library
libsasl2-2-dev - Development files for SASL authentication abstraction library
libsasl2-2-modules - Pluggable Authentication Modules for SASL
libsasl2-2-modules-gssapi-mit - Pluggable Authentication Modules for SASL
(GSSAPI)
libsasl2-2-modules-ldap - Pluggable Authentication Modules for SASL (LDAP)
libsasl2-2-modules-otp - Pluggable Authentication Modules for SASL (OTP)
libsasl2-2-modules-sql - Pluggable Authentication Modules for SASL (SQL)
libsasl2-dev - Development files for SASL authentication abstraction library
libsasl2-modules - Pluggable Authentication Modules for SASL
libsasl2-modules-gssapi-heimdal - Pluggable Authentication Modules for SASL
(GSSAPI)
libsasl2-modules-sql - Pluggable Authentication Modules for SASL (SQL)
sasl2-bin - Administration programs for SASL users database
Closes: 275431
Changes:
cyrus-sasl-2.1 (2.1.22-0~pre03) experimental; urgency=low
.
[ Roberto C. Sanchez ]
* Acknowledge previous NMU (Closes: #275431)
.
[ Fabian Fagerholm ]
* debian/cyrus-sasl-2.1-bin.saslauthd.init: exit 0 when saslauthd binary
is missing (policy 9.3.2) and exit 0 when START != yes.
* debian/rules: enable --with-ldap and --enable-ldapdb.
* debian/control: create an LDAP modules package.
* debian/libsasl2-2-modules-ldap.{dirs,install}: install libldapdb.* into
LDAP modules package.
.
[ Andreas Metzler ]
* debian/control: Change lsb-base from Build-Depends to Depends for
cyrus-sasl-2.1-bin.
Files:
bc1cdce5c9c70898d3f847270f508229 1324 libs important
cyrus-sasl-2.1_2.1.22-0~pre03.dsc
c86aacde1503a7806ad22c9901089883 22938 libs important
cyrus-sasl-2.1_2.1.22-0~pre03.diff.gz
1d7eb9f66a55df13ff62dbddd918b8f9 96860 doc important
cyrus-sasl-2.1-doc_2.1.22-0~pre03_all.deb
c2deb8389f15a460bfc5a6c3749d01b2 108700 utils important
cyrus-sasl-2.1-bin_2.1.22-0~pre03_i386.deb
dc3f41dd4e8f66b5fe1ffdd1ef8a1248 38998 libs important
sasl2-bin_2.1.22-0~pre03_i386.deb
cd5b24c49c8e8fb6dd88317a55f85599 38984 oldlibs important
libsasl2_2.1.22-0~pre03_i386.deb
346755dd65dff9c22592a1e372b1ae7b 97888 libs important
libsasl2-2_2.1.22-0~pre03_i386.deb
dc4e0e384232f700a9908150c002e8c6 39006 oldlibs important
libsasl2-modules_2.1.22-0~pre03_i386.deb
9908419565888a851602e8e162ecc442 144768 libs important
libsasl2-2-modules_2.1.22-0~pre03_i386.deb
bae4d92a0acd20fc90bfebc112db7a53 52102 libs optional
libsasl2-2-modules-ldap_2.1.22-0~pre03_i386.deb
001c620e0c38e59361d67c7a7f8e7f55 69918 libs optional
libsasl2-2-modules-otp_2.1.22-0~pre03_i386.deb
4b082758db858cffca6063f4597d169f 39018 oldlibs important
libsasl2-modules-sql_2.1.22-0~pre03_i386.deb
6614dc8c217c48d94154705ff5fc110a 59054 libs optional
libsasl2-2-modules-sql_2.1.22-0~pre03_i386.deb
c8f8d0a319e615e1e17d1bf99f13edde 39046 oldlibs important
libsasl2-modules-gssapi-heimdal_2.1.22-0~pre03_i386.deb
660e2c6468cfba03855c4c9fe52d5916 60780 libs optional
libsasl2-2-modules-gssapi-mit_2.1.22-0~pre03_i386.deb
442d2c20aef54e840b6435c476c82ae5 39004 oldlibs important
libsasl2-dev_2.1.22-0~pre03_i386.deb
35691ee23765b4e6c3d3629bff2ce2f2 257410 libdevel optional
libsasl2-2-dev_2.1.22-0~pre03_i386.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (GNU/Linux)
iD8DBQFFPNXB76VUNpZBmeIRAgvAAJ9ygZDhduYmJamtcepC5Ft2i8hxKACff+hF
h7HQpEl8WTIF8iCc9e9fM4E=
=hCBH
-----END PGP SIGNATURE-----
--- End Message ---