Your message dated Sun, 16 Mar 2014 18:47:16 +0000
with message-id <e1wpg5c-0007fk...@franck.debian.org>
and subject line Bug#735410: fixed in virtualbox 4.1.18-dfsg-2+deb7u2
has caused the Debian Bug report #735410,
regarding virtualbox: CVE-2013-5892 CVE-2014-0407 CVE-2014-0406 CVE-2014-0404
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)


-- 
735410: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=735410
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Package: virtualbox
Severity: grave
Tags: security

http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html

Several vulnerabilities have been reported in VirtualBox. Details are scarce, so
please get in touch with upstream for more information on eventual backports
to oldstable/stable. Judging from the CVSS scores this is likely only local
denial of service, in that case we likely don't need a DSA.

CVE-2013-5892   
CVE-2014-0407
CVE-2014-0406
CVE-2014-0404

In addition CVE-2014-0405 seems to affect virtualbox-guest-additions-iso from 
non-free

Cheers,
        Moritz

--- End Message ---
--- Begin Message ---
Source: virtualbox
Source-Version: 4.1.18-dfsg-2+deb7u2

We believe that the bug you reported is fixed in the latest version of
virtualbox, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 735...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Felix Geyer <fge...@debian.org> (supplier of updated virtualbox package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Format: 1.8
Date: Sun, 09 Mar 2014 19:46:52 +0100
Source: virtualbox
Binary: virtualbox-qt virtualbox virtualbox-dbg virtualbox-dkms 
virtualbox-source virtualbox-guest-dkms virtualbox-guest-source 
virtualbox-guest-x11 virtualbox-guest-utils virtualbox-fuse virtualbox-ose-qt 
virtualbox-ose virtualbox-ose-dbg virtualbox-ose-dkms virtualbox-ose-source 
virtualbox-ose-guest-dkms virtualbox-ose-guest-source virtualbox-ose-guest-x11 
virtualbox-ose-guest-utils virtualbox-ose-fuse
Architecture: source amd64 all
Version: 4.1.18-dfsg-2+deb7u2
Distribution: wheezy-security
Urgency: high
Maintainer: Debian Virtualbox Team 
<pkg-virtualbox-de...@lists.alioth.debian.org>
Changed-By: Felix Geyer <fge...@debian.org>
Description: 
 virtualbox - x86 virtualization solution - base binaries
 virtualbox-dbg - x86 virtualization solution - debugging symbols
 virtualbox-dkms - x86 virtualization solution - kernel module sources for dkms
 virtualbox-fuse - x86 virtualization solution - virtual filesystem
 virtualbox-guest-dkms - x86 virtualization solution - guest addition module 
source for dk
 virtualbox-guest-source - x86 virtualization solution - guest addition module 
source
 virtualbox-guest-utils - x86 virtualization solution - non-X11 guest utilities
 virtualbox-guest-x11 - x86 virtualization solution - X11 guest utilities
 virtualbox-ose - transitional package for virtualbox
 virtualbox-ose-dbg - transitional package for virtualbox-dbg
 virtualbox-ose-dkms - transitional package for virtualbox-dkms
 virtualbox-ose-fuse - transitional package for virtualbox-fuse
 virtualbox-ose-guest-dkms - transitional package for virtualbox-guest-dkms
 virtualbox-ose-guest-source - transitional package for virtualbox-guest-source
 virtualbox-ose-guest-utils - transitional package for virtualbox-guest-utils
 virtualbox-ose-guest-x11 - transitional package for virtualbox-guest-x11
 virtualbox-ose-qt - transitional package for virtualbox-qt
 virtualbox-ose-source - transitional package for virtualbox-source
 virtualbox-qt - x86 virtualization solution - Qt based user interface
 virtualbox-source - x86 virtualization solution - kernel module source
Closes: 735410
Changes: 
 virtualbox (4.1.18-dfsg-2+deb7u2) wheezy-security; urgency=high
 .
   * Apply fixes from the January 2014 security advisory. (Closes: #735410)
     - Add debian/patches/38-security-fixes-2014-01.patch
     - CVE-2013-5892, CVE-2014-0407, CVE-2014-0406, CVE-2014-0404
Checksums-Sha1: 
 f7094be2a60fa4c247bd8a9ffba028de0dd8bb1e 4113 
virtualbox_4.1.18-dfsg-2+deb7u2.dsc
 c78e4fd5fbf5b6579ae6c5aa3d88b85d47e82de4 33362880 
virtualbox_4.1.18-dfsg.orig.tar.xz
 2d27670d10cbf33d8f62eb4058636083a76c8eb1 100430 
virtualbox_4.1.18-dfsg-2+deb7u2.debian.tar.gz
 1c7e9db7dead2d6fb4ced20918b34115b1f61ea6 4223840 
virtualbox-qt_4.1.18-dfsg-2+deb7u2_amd64.deb
 fdab67775965bb779ef6e9318f882550fc7b9e6e 12746984 
virtualbox_4.1.18-dfsg-2+deb7u2_amd64.deb
 5c40ceba42137c3455114ca765e903e3d5e962f0 51533900 
virtualbox-dbg_4.1.18-dfsg-2+deb7u2_amd64.deb
 dae0f3df278c4ab3380c44e263e03e98bbfa673f 497172 
virtualbox-dkms_4.1.18-dfsg-2+deb7u2_all.deb
 b56cf90cb8ec6f7b6884d2a9678726c399270dcf 597366 
virtualbox-source_4.1.18-dfsg-2+deb7u2_all.deb
 b725f40af248c9727cd27f563b5fe84c7e98f3a7 435318 
virtualbox-guest-dkms_4.1.18-dfsg-2+deb7u2_all.deb
 fd3536f2b5ecf0c9607790b87ac14e41b4f7891c 538820 
virtualbox-guest-source_4.1.18-dfsg-2+deb7u2_all.deb
 8a79ab9b3a6d10365e9a81ce70255174ae5563df 855614 
virtualbox-guest-x11_4.1.18-dfsg-2+deb7u2_amd64.deb
 81ae70f6160593236a39913050ca4cfe035c0190 307424 
virtualbox-guest-utils_4.1.18-dfsg-2+deb7u2_amd64.deb
 9d401b72ea0fcf82c3ded067d17880fb8d761c52 43668 
virtualbox-fuse_4.1.18-dfsg-2+deb7u2_amd64.deb
 c09462f4803c0e338900a8ec68c55d331c3ca64b 40836 
virtualbox-ose-qt_4.1.18-dfsg-2+deb7u2_all.deb
 209ae875a886d2bf2e3c94f64d64efc729cb18df 40826 
virtualbox-ose_4.1.18-dfsg-2+deb7u2_all.deb
 9158d592349925c17d311fa855933d35d20b3aff 40834 
virtualbox-ose-dbg_4.1.18-dfsg-2+deb7u2_all.deb
 c15ff8c86d53fdb599afda49300c1e4a0fa59292 40838 
virtualbox-ose-dkms_4.1.18-dfsg-2+deb7u2_all.deb
 720ac3880e3bd3d7cfbef4203365346842262828 40844 
virtualbox-ose-source_4.1.18-dfsg-2+deb7u2_all.deb
 f867b8b8e400fab9724520a8040b1475aa58a755 40852 
virtualbox-ose-guest-dkms_4.1.18-dfsg-2+deb7u2_all.deb
 b4105ef7d30c0d959f0991606b7dc089eb36c057 40846 
virtualbox-ose-guest-source_4.1.18-dfsg-2+deb7u2_all.deb
 d1f4d27336c32cd15df9acc0c283069a411ef899 40846 
virtualbox-ose-guest-x11_4.1.18-dfsg-2+deb7u2_all.deb
 e42ff4da603f9c2604f453c3db4fad26ec623610 40850 
virtualbox-ose-guest-utils_4.1.18-dfsg-2+deb7u2_all.deb
 315ab9113fc21047f93121b7387afa124e8804b4 40838 
virtualbox-ose-fuse_4.1.18-dfsg-2+deb7u2_all.deb
Checksums-Sha256: 
 3e88c2ce03f041e840bc3c2408f77f3006a1d8260750cf98dbcdfe20e5b5e050 4113 
virtualbox_4.1.18-dfsg-2+deb7u2.dsc
 b21f4f2839e73ed5652c66d9012c2ab119e3a336483689afb5eb4f97c21db1f6 33362880 
virtualbox_4.1.18-dfsg.orig.tar.xz
 9024612f514cccf30709e370b9076a2c2b7b3fbb19d0674171582ba23bbd0fd1 100430 
virtualbox_4.1.18-dfsg-2+deb7u2.debian.tar.gz
 9652385022861530edad4c8158ba681d519e8881a4384d6cfd626b172152bd63 4223840 
virtualbox-qt_4.1.18-dfsg-2+deb7u2_amd64.deb
 e97bef55e369da510342c92e28e56061ef4983e3a049267d04e3f5b2e9b5f9d4 12746984 
virtualbox_4.1.18-dfsg-2+deb7u2_amd64.deb
 5bb18806b1a56ec7cb2b099a3825b02043914cf6eff0f342c9c77c915ad34086 51533900 
virtualbox-dbg_4.1.18-dfsg-2+deb7u2_amd64.deb
 7a85495d6d62f3c9814a5cdc8078f3ee49bb8796b71066e2673155dbb7d2a72e 497172 
virtualbox-dkms_4.1.18-dfsg-2+deb7u2_all.deb
 0b76563a44aabbacb4b6933d22f0101a576bd26b0e53fba2e693f198b84085f1 597366 
virtualbox-source_4.1.18-dfsg-2+deb7u2_all.deb
 2d95059166bd4ea4021cc43f05d4a9162fcfb148cc9148688fa2eb80bb4a9acd 435318 
virtualbox-guest-dkms_4.1.18-dfsg-2+deb7u2_all.deb
 f872b1335ac08785356e51a83049565608ea850b4b45d50decbf39ee5d0e50e8 538820 
virtualbox-guest-source_4.1.18-dfsg-2+deb7u2_all.deb
 c34b5ac7ab21788c350aa643e8c814730139ddb2bbab2dca71b2b470f64d8ebe 855614 
virtualbox-guest-x11_4.1.18-dfsg-2+deb7u2_amd64.deb
 116d8644f83684a6bf0fdff650b65f797b700b3008cd9d497dd530be172662dc 307424 
virtualbox-guest-utils_4.1.18-dfsg-2+deb7u2_amd64.deb
 1972e0076eff27ca92e179d1b6b1c9fd7fc6875195a3c26f8fc9b28d73c5c1c9 43668 
virtualbox-fuse_4.1.18-dfsg-2+deb7u2_amd64.deb
 4cc15fe835a979cae9337d3b5822b09e5bc9ebb7fab5d6d19e0f1cc2058e1bd4 40836 
virtualbox-ose-qt_4.1.18-dfsg-2+deb7u2_all.deb
 eeb5a2538f67615a8a9f93bc23cee9b53e7543e6c622933291601d8477bad3f6 40826 
virtualbox-ose_4.1.18-dfsg-2+deb7u2_all.deb
 f52171bcf27593e8033150c7ce28918644f34f2dcd28fbe24cdaccc23f3af071 40834 
virtualbox-ose-dbg_4.1.18-dfsg-2+deb7u2_all.deb
 68abc4429664570243be14a89ca9fb0a88fab530c99a3ab6eb42c50d02660fac 40838 
virtualbox-ose-dkms_4.1.18-dfsg-2+deb7u2_all.deb
 0a1cb975f2cb8fad7a4e2b7764c1f022753a08c3c65000a2ebd1c0733d1314fb 40844 
virtualbox-ose-source_4.1.18-dfsg-2+deb7u2_all.deb
 39319c3fbabf24bf4880fd4ad8863f95d1ffebf6053da3ce6c2cee5dac9d3b14 40852 
virtualbox-ose-guest-dkms_4.1.18-dfsg-2+deb7u2_all.deb
 b86683aee9272086d60664c706e79b8f4afda9c42b96e6641bc7c46cee80aba8 40846 
virtualbox-ose-guest-source_4.1.18-dfsg-2+deb7u2_all.deb
 60a8f0ee6e766990669868faf9322a77edf24218cecc69b360c4e85d6b4a654b 40846 
virtualbox-ose-guest-x11_4.1.18-dfsg-2+deb7u2_all.deb
 509dba3cbbb4e617c04db3c1a4ac0ef4235a1e54823fe4aa9bf3b1a5ea19b578 40850 
virtualbox-ose-guest-utils_4.1.18-dfsg-2+deb7u2_all.deb
 d6c038fa4060e5ade9dbdb46f0aedb6b0a6ae76c2f0bf33af30ea4606f13972e 40838 
virtualbox-ose-fuse_4.1.18-dfsg-2+deb7u2_all.deb
Files: 
 d808272b801076cb599b2a8605c4fbda 4113 misc optional 
virtualbox_4.1.18-dfsg-2+deb7u2.dsc
 6b5b4496b2ebca1ad412c2f35b9dfb1c 33362880 misc optional 
virtualbox_4.1.18-dfsg.orig.tar.xz
 9a5a9413714257153b4deca372923929 100430 misc optional 
virtualbox_4.1.18-dfsg-2+deb7u2.debian.tar.gz
 693a2d5cf8293b7505ae5dd9bbf02210 4223840 misc optional 
virtualbox-qt_4.1.18-dfsg-2+deb7u2_amd64.deb
 eff175fec5d4677fb2c520e42f4548fb 12746984 misc optional 
virtualbox_4.1.18-dfsg-2+deb7u2_amd64.deb
 e3ef37a4f2035f7b1ef36ad19a57a1ed 51533900 debug extra 
virtualbox-dbg_4.1.18-dfsg-2+deb7u2_amd64.deb
 875eb9c6c6da0b75ff4b70d9174ec5d4 497172 kernel optional 
virtualbox-dkms_4.1.18-dfsg-2+deb7u2_all.deb
 dfe122cdca0e82a450860461bc00fe53 597366 kernel optional 
virtualbox-source_4.1.18-dfsg-2+deb7u2_all.deb
 c647eb79d6a7059c36dc4ddcd486946a 435318 kernel optional 
virtualbox-guest-dkms_4.1.18-dfsg-2+deb7u2_all.deb
 d4cc7875426cd39c8506786868dee783 538820 kernel optional 
virtualbox-guest-source_4.1.18-dfsg-2+deb7u2_all.deb
 7928f686fed6cc03ebd38bfd221a46a5 855614 x11 optional 
virtualbox-guest-x11_4.1.18-dfsg-2+deb7u2_amd64.deb
 fdd0884030138bf1f91b6111b1d481d0 307424 misc optional 
virtualbox-guest-utils_4.1.18-dfsg-2+deb7u2_amd64.deb
 ad26758f93b786fffe779077898baef8 43668 misc optional 
virtualbox-fuse_4.1.18-dfsg-2+deb7u2_amd64.deb
 ca7a0d3a7299cf65c4880e256df43c5c 40836 oldlibs extra 
virtualbox-ose-qt_4.1.18-dfsg-2+deb7u2_all.deb
 78af5cf2e891eba2572ec9c610c05c9e 40826 oldlibs extra 
virtualbox-ose_4.1.18-dfsg-2+deb7u2_all.deb
 bd716e58be10f647f9ae17bbe4f61112 40834 oldlibs extra 
virtualbox-ose-dbg_4.1.18-dfsg-2+deb7u2_all.deb
 2b187ee21660009ba2912990600d4d36 40838 oldlibs extra 
virtualbox-ose-dkms_4.1.18-dfsg-2+deb7u2_all.deb
 5fd086f031d75f9367ddff9e246ed217 40844 oldlibs extra 
virtualbox-ose-source_4.1.18-dfsg-2+deb7u2_all.deb
 92b9e69624170b5bde91bfba733d114f 40852 oldlibs extra 
virtualbox-ose-guest-dkms_4.1.18-dfsg-2+deb7u2_all.deb
 eebabbd214cc89e83a3fab7fec54277a 40846 oldlibs extra 
virtualbox-ose-guest-source_4.1.18-dfsg-2+deb7u2_all.deb
 0eaeced97801e13be1fa7e4db2d0a603 40846 oldlibs extra 
virtualbox-ose-guest-x11_4.1.18-dfsg-2+deb7u2_all.deb
 7cd29f3136075608a06d9526b5d909ae 40850 oldlibs extra 
virtualbox-ose-guest-utils_4.1.18-dfsg-2+deb7u2_all.deb
 8a9066895cf15b0fe6ecea56d9fd73f1 40838 oldlibs extra 
virtualbox-ose-fuse_4.1.18-dfsg-2+deb7u2_all.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=4ys3
-----END PGP SIGNATURE-----

--- End Message ---

Reply via email to