Your message dated Sun, 19 Sep 2010 14:47:07 +0000
with message-id <[email protected]>
and subject line Bug#596954: fixed in bastille 1:3.0.9-13
has caused the Debian Bug report #596954,
regarding bastille removes all permissions from several executables
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)


-- 
596954: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=596954
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Package: bastille
Version: 1:3.0.9-12
Severity: normal

bastille set ssh and apt-get permissions to 000, perhaps some others too, I 
haven't checked yet.
This might have happened with the lenny version (1:2.1.1), before I upgraded to 
 1:3.0.9-12, but 
I don't remember exactly.


-- System Information:
Debian Release: 5.0.2
  APT prefers stable
  APT policy: (990, 'stable'), (500, 'oldstable'), (500, 'testing')
Architecture: i386 (i686)

Kernel: Linux 2.6.26-2-686 (SMP w/1 CPU core)
Locale: LANG=de_DE.UTF8, LC_CTYPE=de_DE.UTF8 (charmap=UTF-8) (ignored: LC_ALL 
set to de_DE.UTF8)
Shell: /bin/sh linked to /bin/dash

Versions of packages bastille depends on:
ii  libcurses-perl                1.23-1+b1  Curses interface for Perl
ii  perl [perl5]                  5.10.0-19  Larry Wall's Practical Extraction 

Versions of packages bastille recommends:
ii  bind9-host [host]      1:9.5.1.dfsg.P3-1 Version of 'host' bundled with BIN
ii  psad                   2.1.3-1.1         The Port Scan Attack Detector
ii  whois                  4.7.30            an intelligent whois client

Versions of packages bastille suggests:
ii  acct                      6.4~pre1-6     The GNU Accounting utilities for p
ii  perl-tk                   1:804.028-1+b1 Perl module providing the Tk graph

-- no debconf information



--- End Message ---
--- Begin Message ---
Source: bastille
Source-Version: 1:3.0.9-13

We believe that the bug you reported is fixed in the latest version of
bastille, which is due to be installed in the Debian FTP archive:

bastille_3.0.9-13.diff.gz
  to main/b/bastille/bastille_3.0.9-13.diff.gz
bastille_3.0.9-13.dsc
  to main/b/bastille/bastille_3.0.9-13.dsc
bastille_3.0.9-13_all.deb
  to main/b/bastille/bastille_3.0.9-13_all.deb



A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Javier Fernandez-Sanguino Pen~a <[email protected]> (supplier of updated bastille 
package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.8
Date: Sun, 19 Sep 2010 14:46:19 +0200
Source: bastille
Binary: bastille
Architecture: source all
Version: 1:3.0.9-13
Distribution: unstable
Urgency: high
Maintainer: Javier Fernandez-Sanguino Pen~a <[email protected]>
Changed-By: Javier Fernandez-Sanguino Pen~a <[email protected]>
Description: 
 bastille   - Security hardening tool
Closes: 545052 596954
Changes: 
 bastille (1:3.0.9-13) unstable; urgency=high
 .
   * Bastille/Debian_API.pm: Fix bug in the permissions
     definition in the B_statoverride.Also, return inmediately if distribution
     is Debian or if dpkg-statoverride is not available.
     This bug caused bastille to set 0000 permissions when using
     dpkg-statoveride, thus the 'high' urgency. (Closes: #596954, 545052)
   * Bastille/API.pm: do not warn multiple times about the OS not being 
supported,
     just send this message to STDERR once.
   * Use debhelper compatibility version 5
   * debian/control: Depend on perl instead of on perl5.
   * debian/bastille.substvars: removed
Checksums-Sha1: 
 711951cd33626946bba156bcd5f9dfc3093c9e59 1005 bastille_3.0.9-13.dsc
 2296aafc39dbdc0b81ec41cab440d24af3ef6411 41519 bastille_3.0.9-13.diff.gz
 66c5989e1ae0c71a409465c328a0433a3d45d6bc 467920 bastille_3.0.9-13_all.deb
Checksums-Sha256: 
 70c7221219204f72fe07653278a045afcb3eb48c555fe43304b8c8e657de27d8 1005 
bastille_3.0.9-13.dsc
 3ec654bab55c0599e7de96d5042245fdf674eb4ca2cf725b3b27ba5b532533d9 41519 
bastille_3.0.9-13.diff.gz
 7c886ddf57a481a84b0259530c199c310db25cd385d3a13301d3b34770136b2c 467920 
bastille_3.0.9-13_all.deb
Files: 
 908a281b8ba7b9c7300d81ccdad306c8 1005 admin optional bastille_3.0.9-13.dsc
 b629a33e3f84d40449b5f031d3d3882c 41519 admin optional bastille_3.0.9-13.diff.gz
 f4650a1e599bd0553525c1b09c7bd147 467920 admin optional 
bastille_3.0.9-13_all.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (GNU/Linux)

iD8DBQFMlhu/sandgtyBSwkRAgmkAJ49deqGm6BRemsLbz4vscrpVqMRIgCaAqM7
CFty2qf35wQrav+GQvNnl5o=
=KMtu
-----END PGP SIGNATURE-----



--- End Message ---

Reply via email to