Bug#987959: pev: peres affected by off-by-one error in libpe

2021-05-06 Thread Petter Reinholdtsen


I asked for an unblock from the release team in
https://bugs.debian.org/988095 >.

-- 
Happy hacking
Petter Reinholdtsen



Damit Sie weiterhin online bezahlen können

2021-05-06 Thread Porsche Card



  
  


Porsche
 ®Card
Damit Sie
weiterhin online bezahlen können

Aufgrund
der EU-Richtlinie PSD2 müssen Sie Online-Zahlungen mit Ihrer
Lufthansa Porsche Credit Card immer häufiger freigeben.
Aktivieren Sie dazu ab sofort eines unserer zwei Mastercard®
Identity Check™ Verfahren:

1)
Freigabe über die Porsche
Credit Card-App
2)
Freigabe über smsTAN und Sicherheitsfrage

Aktivieren
Sie jetzt das Verfahren Ihrer Wahl, um auch zukünftig online
bezahlen zu können.

Jetzt
aktivieren



Viele
Grüße von 
Ihrem Porsche-Team








©
1&1 Mail and Media GmbH

Impressum

1&1
Mail & Media GmbH, Elgendorfer
Str. 57, 56410 Montabaur,
Hauptsitz Montabaur, Amtsgericht Montabaur, HRB 7666
Geschäftsführer: Alexander Charles, Thomas Ludwig,
Jan Oetjen, Sandra Vollmer





Processing of orbit2_2.14.20-3_source.changes

2021-05-06 Thread Debian FTP Masters
orbit2_2.14.20-3_source.changes uploaded successfully to localhost
along with the files:
  orbit2_2.14.20-3.dsc
  orbit2_2.14.20-3.debian.tar.xz
  orbit2_2.14.20-3_amd64.buildinfo

Greetings,

Your Debian queue daemon (running on host usper.debian.org)



orbit2_2.14.20-3_source.changes REJECTED

2021-05-06 Thread Debian FTP Masters



orbit2_2.14.20-3.dsc: Refers to non-existing file 'orbit2_2.14.20.orig.tar.bz2'
Perhaps you need to include the file in your upload?

If the orig tarball is missing, the -sa flag for dpkg-buildpackage will be your 
friend.



===

Please feel free to respond to this email if you don't understand why
your files were rejected, or if you upload new files which address our
concerns.



Processing of orbit2_2.14.20-3_source.changes

2021-05-06 Thread Debian FTP Masters
orbit2_2.14.20-3_source.changes uploaded successfully to localhost
along with the files:
  orbit2_2.14.20-3.dsc
  orbit2_2.14.20-3.debian.tar.xz
  orbit2_2.14.20-3_amd64.buildinfo

Greetings,

Your Debian queue daemon (running on host usper.debian.org)



orbit2_2.14.20-3_source.changes REJECTED

2021-05-06 Thread Debian FTP Masters



orbit2_2.14.20-3.dsc: Refers to non-existing file 'orbit2_2.14.20.orig.tar.bz2'
Perhaps you need to include the file in your upload?

If the orig tarball is missing, the -sa flag for dpkg-buildpackage will be your 
friend.



===

Please feel free to respond to this email if you don't understand why
your files were rejected, or if you upload new files which address our
concerns.



Bug#988151: CVE-2020-23922

2021-05-06 Thread Moritz Muehlenhoff
Source: giflib
Severity: important
Tags: security
X-Debbugs-Cc: Debian Security Team 

CVE-2020-23922:
https://sourceforge.net/p/giflib/bugs/151/



Processing of orbit2_2.14.20-3_source.changes

2021-05-06 Thread Debian FTP Masters
orbit2_2.14.20-3_source.changes uploaded successfully to localhost
along with the files:
  orbit2_2.14.20-3.dsc
  orbit2_2.14.20-3.debian.tar.xz

Greetings,

Your Debian queue daemon (running on host usper.debian.org)



orbit2_2.14.20-3_source.changes REJECTED

2021-05-06 Thread Debian FTP Masters



orbit2_2.14.20-3.dsc: Refers to non-existing file 'orbit2_2.14.20.orig.tar.bz2'
Perhaps you need to include the file in your upload?

If the orig tarball is missing, the -sa flag for dpkg-buildpackage will be your 
friend.



===

Please feel free to respond to this email if you don't understand why
your files were rejected, or if you upload new files which address our
concerns.



Bug#987959: pev: peres affected by off-by-one error in libpe

2021-05-06 Thread Benoît Sevens
Since it can corrupt adjacent heap chunk metadata, this definitely looks
like a security issue to me.

On Thu, May 6, 2021 at 9:29 AM Petter Reinholdtsen  wrote:

>
> I asked for an unblock from the release team in
> https://bugs.debian.org/988095 >.
>
> --
> Happy hacking
> Petter Reinholdtsen
>


Processed: tagging 988151, bug 988151 is forwarded to https://sourceforge.net/p/giflib/bugs/151/

2021-05-06 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org:

> tags 988151 + upstream
Bug #988151 [src:giflib] CVE-2020-23922
Added tag(s) upstream.
> forwarded 988151 https://sourceforge.net/p/giflib/bugs/151/
Bug #988151 [src:giflib] CVE-2020-23922
Set Bug forwarded-to-address to 'https://sourceforge.net/p/giflib/bugs/151/'.
> thanks
Stopping processing here.

Please contact me if you need assistance.
-- 
988151: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=988151
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems