Your message dated Tue, 15 Sep 2026 10:00:24 +0000
with message-id <[email protected]>
and subject line Bug#1017877: fixed in reload4j 1.2.26-1
has caused the Debian Bug report #1017877,
regarding ITP: reload4j -- Drop-in replacement for Apache log4j 1.2 Java 
logging framework
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)


-- 
1017877: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1017877
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Package: wnpp
Severity: wishlist
Owner: tony mancill <[email protected]>
X-Debbugs-Cc: [email protected]

* Package name    : reload4j
  Version         : 1.2.22
  Upstream Author : Ceki Gülcü
* URL             : https://reload4j.qos.ch/
* License         : Apache 2.0
  Programming Lang: Java
  Description     : Drop-in replacement for Apache log4j 1.2 Java logging 
framework

The reload4j project is a fork of Apache log4j version 1.2.17 in order
to fix most pressing security issues. It is intended as a drop-in
replacement for log4j version 1.2.17. By drop-in, we mean the
replacement of log4j.jar with reload4j.jar in your build without needing
to make changes to source code, i.e., to your java files.

With release 1.2.18.0 and later, the reload4j project offers a clear and
easy migration path for the thousands of users who have an urgent need
to fix vulnerabilities in log4j 1.2.17.

This is being packaged because it is a dependency of slf4j [1] since
version 1.7.33 (Debian currently ships version 1.7.32 [2]) and because a
number of upstream projects have switched to reload4j.  Having a
separate reload4j source package will allow us to provide a clean
transition from liblog4j1.2-java -> libreload4j-java and fully EOL
Apache log4j 1.2.

[1] https://www.slf4j.org/
[2] https://tracker.debian.org/pkg/libslf4j-java

Attachment: signature.asc
Description: PGP signature


--- End Message ---
--- Begin Message ---
Source: reload4j
Source-Version: 1.2.26-1
Done: Jérôme Charaoui <[email protected]>

We believe that the bug you reported is fixed in the latest version of
reload4j, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Jérôme Charaoui <[email protected]> (supplier of updated reload4j package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Mon, 14 Sep 2026 16:59:26 -0400
Source: reload4j
Binary: libreload4j-java
Built-For-Profiles: nocheck
Architecture: source all
Version: 1.2.26-1
Distribution: unstable
Urgency: medium
Maintainer: Debian Java Maintainers 
<[email protected]>
Changed-By: Jérôme Charaoui <[email protected]>
Description:
 libreload4j-java - Drop-in replacement for Apache log4j 1.2 Java logging 
framework
Closes: 1017877
Changes:
 reload4j (1.2.26-1) unstable; urgency=medium
 .
   * Initial packaging (Closes: #1017877)
Checksums-Sha1:
 97d0b2eb25a209a5c8f14163f2d93668e5cfc855 1498 reload4j_1.2.26-1.dsc
 270771e7bc989715ac8fb962718bedd9938923a0 577364 reload4j_1.2.26.orig.tar.gz
 0fa6b65296614c75e32697bc42cec0f0b13b871f 2056 reload4j_1.2.26-1.debian.tar.xz
 70e4ec8b49c4510b91ab6d8dbc1b63184034ef50 328140 
libreload4j-java_1.2.26-1_all.deb
 5f53bad9b47f73556263e75b4563b72d25b3ff8a 10196 
reload4j_1.2.26-1_amd64.buildinfo
Checksums-Sha256:
 d76f8fdf6324ca21101f9e17c98202b2ea19906a9599334d48f40b63a4cb7a5b 1498 
reload4j_1.2.26-1.dsc
 5792ba331e481b6eebeab18e6c456a52f3125a6d939326d85ddb9c55b7fb508e 577364 
reload4j_1.2.26.orig.tar.gz
 f734b3a53217759cf3ddcbbcc653cb075811ace25bc2f1714edcdaad400ec223 2056 
reload4j_1.2.26-1.debian.tar.xz
 3ff6fe8770f7c59d2c117bc1e0447aac50c0874581deba32d5b18baea8cce337 328140 
libreload4j-java_1.2.26-1_all.deb
 0b3181fc8a3f71fe31b0e32e9bb8d0e0f751f4c706031ac4357dbdbc46ccc402 10196 
reload4j_1.2.26-1_amd64.buildinfo
Files:
 3e612b633f2b503a71d69b35910bb814 1498 java optional reload4j_1.2.26-1.dsc
 e77ffde55aa47f910573faf10f2465c5 577364 java optional 
reload4j_1.2.26.orig.tar.gz
 a746a903e5a50afe35e0b4048aee18fd 2056 java optional 
reload4j_1.2.26-1.debian.tar.xz
 0747268a0ca8feef752ec41ced547911 328140 java optional 
libreload4j-java_1.2.26-1_all.deb
 4e69faeb913d0698d4553de139992cea 10196 java optional 
reload4j_1.2.26-1_amd64.buildinfo

-----BEGIN PGP SIGNATURE-----

iHUEARYKAB0WIQTAq04Rv2xblqv/eu5pxS9ljpiFQgUCaqiRAwAKCRBpxS9ljpiF
Qu1mAP95MnrcU6LL5ebU22rD/yHbTR3YOGCHtJ+bV1PzsOCtHgEAqSV/kh8mLDvr
kWbEZXVUWpn4U/2DhmVY4a8ZtmIDbQ8=
=MHs5
-----END PGP SIGNATURE-----

Attachment: pgpSHwQ1GA2fp.pgp
Description: PGP signature


--- End Message ---

Reply via email to