Your message dated Sat, 15 Jul 2017 22:17:16 +0000
with message-id <[email protected]>
and subject line Bug#867223: fixed in libclamunrar 0.99-3+deb9u1
has caused the Debian Bug report #867223,
regarding libclamunrar: CVE-2012-6706: arbitrary memory write
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)


-- 
867223: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=867223
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Source: libclamunrar
Version: 0.99-0+deb7u1
Severity: grave
Tags: security
Justification: user security hole

CVE-2012-6706 also affects libclamunrar. See #865461 for the original bug 
report against
unrar-nonfree.

Upstream fix:
https://github.com/vrtadmin/clamav-devel/commit/d4699442bce76574573dc564e7f2177d679b88bd

Felix

--- End Message ---
--- Begin Message ---
Source: libclamunrar
Source-Version: 0.99-3+deb9u1

We believe that the bug you reported is fixed in the latest version of
libclamunrar, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Scott Kitterman <[email protected]> (supplier of updated libclamunrar package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Format: 1.8
Date: Sat, 15 Jul 2017 13:30:29 -0400
Source: libclamunrar
Binary: libclamunrar7
Architecture: source amd64
Version: 0.99-3+deb9u1
Distribution: stretch
Urgency: medium
Maintainer: ClamAV Team <[email protected]>
Changed-By: Scott Kitterman <[email protected]>
Description:
 libclamunrar7 - anti-virus utility for Unix - unrar support
Closes: 867223
Changes:
 libclamunrar (0.99-3+deb9u1) stretch; urgency=medium
 .
   * Team upload.
 .
   [ Sebastian Andrzej Siewior ]
   * Cherry pick fix for arbitrary memory write. CVE-2012-6706
     (Closes: #867223).
Checksums-Sha1:
 860284d2e7dcbeb2117866653289a662acad38ad 2143 libclamunrar_0.99-3+deb9u1.dsc
 77954fc6970404e2c7afa85ab35417dea978875e 9136 
libclamunrar_0.99-3+deb9u1.debian.tar.xz
 1ddd09b42b7ab4c0c8d89502375e35599027a17f 67258 
libclamunrar7-dbgsym_0.99-3+deb9u1_amd64.deb
 fa33afb752fb3d3c65b0c7752d8beb5d1315a5ba 32630 
libclamunrar7_0.99-3+deb9u1_amd64.deb
 6ce3b44d366face252a9bb49f6de0cd387227f51 4980 
libclamunrar_0.99-3+deb9u1_amd64.buildinfo
Checksums-Sha256:
 00ae8b8572a4343751f3bb78fe8fc3a21f1ab7f819a0a5b19513aceccb72f268 2143 
libclamunrar_0.99-3+deb9u1.dsc
 8210c2d9f5add5d5cef0ed31666d7dc64df1e9287910c23deabc451ef40c95dc 9136 
libclamunrar_0.99-3+deb9u1.debian.tar.xz
 7902c306178939bf0231f85218276ba86845d53fc5b1bf5b3e51065f0c225b32 67258 
libclamunrar7-dbgsym_0.99-3+deb9u1_amd64.deb
 db81945abdc122f8fe6d9e414e2fd7c0ac6bc2b6a91846b6b4ad466d28a6d2cf 32630 
libclamunrar7_0.99-3+deb9u1_amd64.deb
 a6a899c834c4e89a39d19a404793a3fb2e6ecdac8c442bb11ac73b12e8904063 4980 
libclamunrar_0.99-3+deb9u1_amd64.buildinfo
Files:
 8df1ab4cda3dbf9efb5929a0ebb809b9 2143 non-free/libs extra 
libclamunrar_0.99-3+deb9u1.dsc
 93946aad4640b18775e3a1c84a8b0dc3 9136 non-free/libs extra 
libclamunrar_0.99-3+deb9u1.debian.tar.xz
 718401f8a89cd5a691faa209cf07b0d1 67258 non-free/debug extra 
libclamunrar7-dbgsym_0.99-3+deb9u1_amd64.deb
 91b7a8002ba1c4b4e9998071be056c1d 32630 non-free/libs extra 
libclamunrar7_0.99-3+deb9u1_amd64.deb
 b38ee3643cc4443ee1bf4a22da6b5741 4980 non-free/libs extra 
libclamunrar_0.99-3+deb9u1_amd64.buildinfo

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=ZVkt
-----END PGP SIGNATURE-----

--- End Message ---
_______________________________________________
Pkg-clamav-devel mailing list
[email protected]
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-clamav-devel

Reply via email to