ruby-zip_1.2.0-1.1_multi.changes uploaded successfully to localhost
along with the files:
ruby-zip_1.2.0-1.1.dsc
ruby-zip_1.2.0-1.1.debian.tar.xz
ruby-zip_1.2.0-1.1_source.buildinfo
Greetings,
Your Debian queue daemon (running on host usper.debian.org)
_
Control: tags 856269 + pending
Dear maintainer,
I've prepared an NMU for ruby-zip (versioned as 1.2.0-1.1) and
uploaded it to DELAYED/5. Please feel free to tell me if I
should delay it longer.
Regards,
Salvatore
diff -Nru ruby-zip-1.2.0/debian/changelog ruby-zip-1.2.0/debian/changelog
--- ruby-
Processing control commands:
> tags 856269 + pending
Bug #856269 [src:ruby-zip] ruby-zip: CVE-2017-5946
Added tag(s) pending.
--
856269: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=856269
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
___
Source: ruby-zip
Version: 1.1.6-1
Severity: grave
Tags: upstream patch security
Forwarded: https://github.com/rubyzip/rubyzip/issues/315
Hi,
the following vulnerability was published for ruby-zip.
CVE-2017-5946[0]:
| The Zip::File component in the rubyzip gem before 1.2.1 for Ruby has a
| direct