Bug#855405: pcre3: CVE-2017-6004

2017-02-17 Thread Salvatore Bonaccorso
Hi Matthew, On Fri, Feb 17, 2017 at 07:29:44PM +, Matthew Vernon wrote: > Hi, > > > Attached would be the proposed debdiff for a NMU in case needed (I > > will use in any case a delayed queue if I upload). > > > > Let me know if you would appreciate the NMU or prefer to do the upload > > on

Bug#855405: pcre3: CVE-2017-6004

2017-02-17 Thread Matthew Vernon
Hi, Attached would be the proposed debdiff for a NMU in case needed (I will use in any case a delayed queue if I upload). Let me know if you would appreciate the NMU or prefer to do the upload on your own if you agree. Thanks for this; given you've done the necessary work (that was quick!),

Bug#855405: pcre3: CVE-2017-6004

2017-02-17 Thread Salvatore Bonaccorso
Control: tags -1 + patch Hi Attached would be the proposed debdiff for a NMU in case needed (I will use in any case a delayed queue if I upload). Let me know if you would appreciate the NMU or prefer to do the upload on your own if you agree. Regards, Salvatore diff -Nru

Processed: Re: Bug#855405: pcre3: CVE-2017-6004

2017-02-17 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + patch Bug #855405 [src:pcre3] pcre3: CVE-2017-6004 Added tag(s) patch. -- 855405: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=855405 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems

Bug#855405: pcre3: CVE-2017-6004

2017-02-17 Thread Salvatore Bonaccorso
Source: pcre3 Version: 2:8.39-2 Severity: grave Tags: security upstream Justification: user security hole Hi, the following vulnerability was published for pcre3. Filling this for severity grave as RC, think it should be fixed in stretch. Thouch I'm unsure and would tend to mark it as no-dsa for