Bug#840379: jessie-pu: package bash/4.3-11+deb8u1

2016-11-05 Thread Adam D. Barratt
Control: tags -1 + pending On Tue, 2016-11-01 at 06:25 +0100, Salvatore Bonaccorso wrote: > Hi Adam, > > On Mon, Oct 31, 2016 at 09:17:35PM +, Adam D. Barratt wrote: > > Control: tags -1 + confirmed > > > > On Tue, 2016-10-11 at 07:02 +0200, Salvatore Bonaccorso wrote: > > > bash in Stable

Bug#840379: jessie-pu: package bash/4.3-11+deb8u1

2016-10-31 Thread Salvatore Bonaccorso
Hi Adam, On Mon, Oct 31, 2016 at 09:17:35PM +, Adam D. Barratt wrote: > Control: tags -1 + confirmed > > On Tue, 2016-10-11 at 07:02 +0200, Salvatore Bonaccorso wrote: > > bash in Stable is affected by > > > > CVE-2016-0634: Arbitrary code execution via malicious hostname > > > > and > >

Bug#840379: jessie-pu: package bash/4.3-11+deb8u1

2016-10-31 Thread Adam D. Barratt
Control: tags -1 + confirmed On Tue, 2016-10-11 at 07:02 +0200, Salvatore Bonaccorso wrote: > bash in Stable is affected by > > CVE-2016-0634: Arbitrary code execution via malicious hostname > > and > > CVE-2016-7543: Specially crafted SHELLOPTS+PS4 variables allows > command substitution > >

Bug#840379: jessie-pu: package bash/4.3-11+deb8u1

2016-10-10 Thread Salvatore Bonaccorso
Package: release.debian.org Severity: normal Tags: jessie User: release.debian@packages.debian.org Usertags: pu Hi Stable release managers, X-Debbugs-CC Matthias Klose if he agrees, or would me to drop in case he would like to do the upload himself. bash in Stable is