[DRE-maint] Processing of ruby-zip_1.2.0-1.1_multi.changes

2017-02-27 Thread Debian FTP Masters
ruby-zip_1.2.0-1.1_multi.changes uploaded successfully to localhost along with the files: ruby-zip_1.2.0-1.1.dsc ruby-zip_1.2.0-1.1.debian.tar.xz ruby-zip_1.2.0-1.1_source.buildinfo Greetings, Your Debian queue daemon (running on host usper.debian.org) _

[DRE-maint] Bug#856269: ruby-zip: diff for NMU version 1.2.0-1.1

2017-02-27 Thread Salvatore Bonaccorso
Control: tags 856269 + pending Dear maintainer, I've prepared an NMU for ruby-zip (versioned as 1.2.0-1.1) and uploaded it to DELAYED/5. Please feel free to tell me if I should delay it longer. Regards, Salvatore diff -Nru ruby-zip-1.2.0/debian/changelog ruby-zip-1.2.0/debian/changelog --- ruby-

[DRE-maint] Processed: ruby-zip: diff for NMU version 1.2.0-1.1

2017-02-27 Thread Debian Bug Tracking System
Processing control commands: > tags 856269 + pending Bug #856269 [src:ruby-zip] ruby-zip: CVE-2017-5946 Added tag(s) pending. -- 856269: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=856269 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems ___

[DRE-maint] Bug#856269: ruby-zip: CVE-2017-5946

2017-02-27 Thread Salvatore Bonaccorso
Source: ruby-zip Version: 1.1.6-1 Severity: grave Tags: upstream patch security Forwarded: https://github.com/rubyzip/rubyzip/issues/315 Hi, the following vulnerability was published for ruby-zip. CVE-2017-5946[0]: | The Zip::File component in the rubyzip gem before 1.2.1 for Ruby has a | direct