Your message dated Tue, 18 Dec 2007 22:17:05 +0000
with message-id <[EMAIL PROTECTED]>
and subject line Bug#417247: fixed in ckermit 211-9
has caused the attached Bug report to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what I am
talking about this indicates a serious mail system misconfiguration
somewhere. Please contact me immediately.)
Debian bug tracking system administrator
(administrator, Debian Bugs database)
--- Begin Message ---
Package: ckermit
Version: 211-7
Severity: normal
The kermit server, iksd, allows remote users to identify valid accounts on the
system with minimal effort.
Telnet to the iksd port, and enter a username. If the username exists, then a
password prompt is displayed.
If it doesn't, then an authentication failure is returned immediately.
This makes it trivial to find out which usernames are valid on the remote
system and which aren't.
-- System Information:
Debian Release: 4.0
APT prefers experimental
APT policy: (1000, 'experimental'), (500, 'unstable')
Architecture: i386 (i686)
Shell: /bin/sh linked to /bin/bash
Kernel: Linux 2.6.18-4-686
Locale: LANG=en_AU, LC_CTYPE=en_AU (charmap=ISO-8859-1)
Versions of packages ckermit depends on:
ii debconf [debconf-2.0] 1.5.13 Debian configuration management sy
ii libc6 2.5-0exp6 GNU C Library: Shared libraries
ii libncurses5 5.5-5 Shared libraries for terminal hand
ii libpam0g 0.79-4 Pluggable Authentication Modules l
ii libsocksd 1.1.18-2.1 SOCKS library for packages built u
ii netbase 4.29 Basic TCP/IP networking system
Versions of packages ckermit recommends:
ii openssh-client [ssh-client] 1:4.3p2-9 Secure shell client, an rlogin/rsh
-- debconf information excluded
--- End Message ---
--- Begin Message ---
Source: ckermit
Source-Version: 211-9
We believe that the bug you reported is fixed in the latest version of
ckermit, which is due to be installed in the Debian FTP archive:
ckermit_211-9.diff.gz
to pool/non-free/c/ckermit/ckermit_211-9.diff.gz
ckermit_211-9.dsc
to pool/non-free/c/ckermit/ckermit_211-9.dsc
ckermit_211-9_i386.deb
to pool/non-free/c/ckermit/ckermit_211-9_i386.deb
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to [EMAIL PROTECTED],
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Ian Beckwith <[EMAIL PROTECTED]> (supplier of updated ckermit package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [EMAIL PROTECTED])
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Thu, 13 Dec 2007 20:49:55 +0000
Source: ckermit
Binary: ckermit
Architecture: source i386
Version: 211-9
Distribution: unstable
Urgency: low
Maintainer: Ian Beckwith <[EMAIL PROTECTED]>
Changed-By: Ian Beckwith <[EMAIL PROTECTED]>
Description:
ckermit - a serial and network communications package
Closes: 417247
Changes:
ckermit (211-9) unstable; urgency=low
.
* Fix iksd user information disclosure when PAM is used (Closes: #417247).
* Update maintainer email address.
* Bump ck_patch to 2.
* Fix menu section.
* Stop ignoring return code of 'make clean'.
* Cut out unneeeded linkage: added "-Wl,-z,defs -Wl,--as-needed" to LNKFLAGS
* Bump Standards-Version to 3.7.3
Files:
380d595121c487ffd5b86f2a870554b5 613 non-free/comm extra ckermit_211-9.dsc
71cab868ae4641a1f8a71d5b120fbd05 36130 non-free/comm extra
ckermit_211-9.diff.gz
cac8fddfb798a3af1a88917ce6440ae7 1619772 non-free/comm extra
ckermit_211-9_i386.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
iD8DBQFHaELS+C5cwEsrK54RAo2CAKCACUp9eKQTLj/VeMZlhRB+NSuSuACfQ1P7
uzi8FTXNEpJrJVvYFuUYj+E=
=tbzd
-----END PGP SIGNATURE-----
--- End Message ---