Bug#1043504: Another regression fix for CVE-2022-23123

2023-08-13 Thread Daniel Markstedt
My apologies, the previous patch had a fatal typo that I noticed when running debuild. This "-2" version should work properly. On Sat, Aug 12, 2023 at 10:58 PM Daniel Markstedt wrote: > > Here is a patch with the upstream code change, for the 3.1.12~ds3 patchset. > I followed the maintainers'

Bug#1043504: Another regression fix for CVE-2022-23123

2023-08-13 Thread Daniel Markstedt
Here is a patch with the upstream code change, for the 3.1.12~ds3 patchset. I followed the maintainers' documentation and used quilt, so hopefully it should be compliant! Please let me know if there's anything I should be doing differently here. Thanks! Daniel CVE-2022-23123_part6.patch

Bug#1043504: Another regression fix for CVE-2022-23123

2023-08-11 Thread Daniel Markstedt
Package: netatalk Version: 3.1.12~ds-3+deb10u2 X-Debbugs-Cc: t...@security.debian.org,debian-...@lists.debian.org Dear Debian Security team, Would you be able to help me get the following critical regression fix into the Buster netatalk package? The regression was introduced with the patch for