Your message dated Wed, 21 Apr 2021 21:13:24 +0200
with message-id <[email protected]>
and subject line Re: Bug#987294: nmu: rust-sniffglue_0.11.1-6
has caused the Debian Bug report #987294,
regarding nmu: rust-sniffglue_0.11.1-6
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)


-- 
987294: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=987294
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Package: release.debian.org
Severity: normal
User: [email protected]
Usertags: binnmu

rust-stackvector recently had a memory safety bug that was reported by the
rustsec team as a security issue and the Debian security team as a rc bug.

I fixed this in rust-stackvector 1.6.0-3 , but due to the way rust packaging
works applications need to be rebuilt before they will pick up the fix. 
Based on grepping the package indexes, I belive that rust-sniffglue is the only
application that is built against rust-stackvector (though it's possible that
there are applications built with older tooling that I have missed).

nmu rust-sniffglue_0.11.1-6 . ANY . unstable . -m "Rebuild against 
rust-stackvector 1.0.6-3"

-- System Information:
Debian Release: 10.5
  APT prefers stable-updates
  APT policy: (500, 'stable-updates'), (500, 'oldoldstable'), (500, 'stable')
Architecture: amd64 (x86_64)
Foreign Architectures: i386

Kernel: Linux 4.19.0-10-amd64 (SMP w/4 CPU cores)
Kernel taint flags: TAINT_OOT_MODULE, TAINT_UNSIGNED_MODULE
Locale: LANG=en_GB.UTF-8, LC_CTYPE=en_GB.UTF-8 (charmap=UTF-8), 
LANGUAGE=en_GB:en (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled

--- End Message ---
--- Begin Message ---
On 2021-04-21 00:12:44, plugwash wrote:
> Package: release.debian.org
> Severity: normal
> User: [email protected]
> Usertags: binnmu
> 
> rust-stackvector recently had a memory safety bug that was reported by the
> rustsec team as a security issue and the Debian security team as a rc bug.
> 
> I fixed this in rust-stackvector 1.6.0-3 , but due to the way rust packaging
> works applications need to be rebuilt before they will pick up the fix. 
> Based on grepping the package indexes, I belive that rust-sniffglue is the 
> only
> application that is built against rust-stackvector (though it's possible that
> there are applications built with older tooling that I have missed).
> 
> nmu rust-sniffglue_0.11.1-6 . ANY . unstable . -m "Rebuild against 
> rust-stackvector 1.0.6-3"

Scheduled

Cheers
-- 
Sebastian Ramacher

--- End Message ---

Reply via email to