l improvement for certificate verification
and identification for this Debian release, but only the binary
ftp-ssl is affected by the present issue.
Best regards,
Mats Erik Andersson, DM
diff -Nru netkit-ftp-ssl-0.17.34+0.2/debian/changelog
netkit-ftp-ssl-0.17.34+0.2/debian/changelog
--- netkit-ftp-ssl
established in
the report #788331, and the remedy is identical
to the one applied to testing as well has been
queued for jessie-pu. The relevant debdiff is
herewith attached.
Best regards,
Mats Erik Andersson, present maintainer of linux-ftpd-ssl.
diff -Nru linux-ftpd-ssl-0.17.33+0.3/debian
Saturday den 27 June 2015 klockan 23:11 skrev Adam D. Barratt detta:
> > > Please go ahead, thanks (bearing in mind the notes above).
> >
> > I have uploaded a built package to 'mentors.debian.net'.
> > It is the only location known to be accessible to me.
> > Tell me if I should deposit the pack
Saturday den 27 June 2015 klockan 19:27 skrev Adam D. Barratt detta:
> On Sat, 2015-06-27 at 19:47 +0200, Mats Erik Andersson wrote:
> > was recently uncovered to produce a denial of service,
> > as was demonstrated in #788331.
>
> That bug should be closed in the changelog.
.
Best regards,
Mats Erik Andersson, present maintainer
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
This proposed change protects against #788331,
which in an identical form has been applied
to version 0.17.35+0.3+2, present in testing.
Observe that the update of the source patch
'd
verbatim in its repository. The solution was to reset
the effective user identification then running in test mode,
thus cancelling all ill effects.
The complete debdiff of the package, as deposited at mentors.d.n,
is included below.
Best regards,
Mats Erik Andersson, maintainer of GNU Rush
diff -Nru
been resolved and uploaded to unstable by
rush_1.7+dfsg-4
and I propose the identical patching for the package kept
in the stable release. The upstream project has incorporated
my patch verbatim in its repository.
Best regards,
Mats Erik Andersson, maintainer of GNU Rush
diff -Nru rush-1.7
between the published package and my proposed
update is included in this message. As said, the full package
is deposited at "experimental" since a week's time. I am writing
this query encouraged by my sponsor Sven Hoexter.
Best regards,
Mats Erik Andersson, DM
changelog
sure that such a change would not make the Release Team
reject the corresponding change, thus also invalidating the update
that already has passed into "unstable".
Best regards,
Mats Erik Andersson, fil. dr
Abonnerar på: debian-mentors, debian-devel-games, debian-perl,
deb
9 matches
Mail list logo