Your message dated Wed, 30 Sep 2015 15:35:04 +0000
with message-id <[email protected]>
and subject line Bug#798650: fixed in commons-httpclient 3.1-9+deb6u2
has caused the Debian Bug report #798650,
regarding CVE-2015-5262: https calls ignore http.socket.timeout during SSL 
Handshake
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)


-- 
798650: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=798650
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Source: commons-httpclient
Version: 3.1-11
Severity: important

Please see https://bugzilla.redhat.com/show_bug.cgi?id=1259892

Cheers,
 -- Guido

-- System Information:
Debian Release: 8.1
  APT prefers stable
  APT policy: (990, 'stable'), (500, 'stable-updates'), (500, 'unstable'), 
(500, 'testing'), (1, 'experimental')
Architecture: amd64 (x86_64)
Foreign Architectures: i386

Kernel: Linux 4.1.0-2-amd64 (SMP w/4 CPU cores)
Locale: LANG=de_DE.UTF-8, LC_CTYPE=de_DE.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash
Init: systemd (via /run/systemd/system)

--- End Message ---
--- Begin Message ---
Source: commons-httpclient
Source-Version: 3.1-9+deb6u2

We believe that the bug you reported is fixed in the latest version of
commons-httpclient, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Mike Gabriel <[email protected]> (supplier of updated commons-httpclient 
package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Format: 1.8
Date: Wed, 30 Sep 2015 16:10:18 +0200
Source: commons-httpclient
Binary: libcommons-httpclient-java libcommons-httpclient-java-doc
Architecture: source all
Version: 3.1-9+deb6u2
Distribution: squeeze-lts
Urgency: medium
Maintainer: Debian Java Maintainers 
<[email protected]>
Changed-By: Mike Gabriel <[email protected]>
Description: 
 libcommons-httpclient-java - A Java(TM) library for creating HTTP clients
 libcommons-httpclient-java-doc - Documentation for libcommons-httpclient-java
Closes: 798650
Changes: 
 commons-httpclient (3.1-9+deb6u2) squeeze-lts; urgency=medium
 .
   * Non-maintainer upload by the Debian LTS Team.
   * debian/patches:
     + CVE-2015-5262.patch. Respect configured SO_TIMEOUT during SSL handshake.
       (CVE-2015-5262). (Closes: #798650).
Checksums-Sha1: 
 c17f62809423ae857db62a14a6c50be4cb5ddef6 2433 
commons-httpclient_3.1-9+deb6u2.dsc
 6aa4a05e47d5b953196e38ed60396ba3c21be6d8 13340 
commons-httpclient_3.1-9+deb6u2.diff.gz
 aeacbe1f03aa60dec7119844d0aea8322d29be50 299660 
libcommons-httpclient-java_3.1-9+deb6u2_all.deb
 6f86b61b348fe41fade11b8c726ee1b30163c135 1548082 
libcommons-httpclient-java-doc_3.1-9+deb6u2_all.deb
Checksums-Sha256: 
 6cfdc1b50cc92a6cdf28851b6787013f7fc98fee933462f92f91c9e4da5694dc 2433 
commons-httpclient_3.1-9+deb6u2.dsc
 d9761a0a93cf117a4986f5d2553364eb55d9e78ca11147e2da5fb86be571536c 13340 
commons-httpclient_3.1-9+deb6u2.diff.gz
 2dc95b882c3d7784a5ed4ccecdc78a80ae3fcee0969f88f077a6ffdf932a2ea5 299660 
libcommons-httpclient-java_3.1-9+deb6u2_all.deb
 078bae7d2c0b4ee0016330a9200890f1a75bda6c797f45858a2a34260773fdd7 1548082 
libcommons-httpclient-java-doc_3.1-9+deb6u2_all.deb
Files: 
 cae20482aacfa17a4beb089492a4427f 2433 java optional 
commons-httpclient_3.1-9+deb6u2.dsc
 2a0b3f191dd4a211a1b97fdcc2575751 13340 java optional 
commons-httpclient_3.1-9+deb6u2.diff.gz
 348dec40ce6d4a1ae66dbed9c19bea7a 299660 java optional 
libcommons-httpclient-java_3.1-9+deb6u2_all.deb
 1f5b21892a3ab06bf2eb5c82c75e7e73 1548082 doc optional 
libcommons-httpclient-java-doc_3.1-9+deb6u2_all.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=2waL
-----END PGP SIGNATURE-----

--- End Message ---
__
This is the maintainer address of Debian's Java team
<http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-java-maintainers>. 
Please use
[email protected] for discussions and questions.

Reply via email to