[Pkg-kde-extras] Bug#826402: marked as done (quassel: CVE-2016-4414: remote DoS due to invalid handshake data)
Your message dated Mon, 13 Jun 2016 22:17:18 + with message-idand subject line Bug#826402: fixed in quassel 1:0.10.0-2.3+deb8u3 has caused the Debian Bug report #826402, regarding quassel: CVE-2016-4414: remote DoS due to invalid handshake data to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what this message is talking about, this may indicate a serious mail system misconfiguration somewhere. Please contact ow...@bugs.debian.org immediately.) -- 826402: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=826402 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems --- Begin Message --- Package: quasselcore Version: 1:0.10.0-2.3+deb8u2 Severity: normal Tags: security Hi, The following vulnerability was published for quassel. CVE-2016-4414: remote DoSdue to invalid handshake data This is fixed in this commit: https://github.com/quassel/quassel/commit/e67887343c433cc35bc26ad6a9392588f427e746 Cheers, -- System Information: Debian Release: 8.5 APT prefers stable-updates APT policy: (500, 'stable-updates'), (500, 'stable') Architecture: amd64 (x86_64) Foreign Architectures: i386 Kernel: Linux 3.16.0-4-amd64 (SMP w/2 CPU cores) Locale: LANG=fr_FR.UTF-8, LC_CTYPE=fr_FR.UTF-8 (charmap=UTF-8) Shell: /bin/sh linked to /bin/dash Init: systemd (via /run/systemd/system) --- End Message --- --- Begin Message --- Source: quassel Source-Version: 1:0.10.0-2.3+deb8u3 We believe that the bug you reported is fixed in the latest version of quassel, which is due to be installed in the Debian FTP archive. A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to 826...@bugs.debian.org, and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Pierre Schweitzer (supplier of updated quassel package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing ftpmas...@ftp-master.debian.org) -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Format: 1.8 Date: Sun, 05 Jun 2016 12:41:35 +0200 Source: quassel Binary: quassel-core quassel-client quassel quassel-data quassel-client-kde4 quassel-kde4 quassel-data-kde4 Architecture: source amd64 all Version: 1:0.10.0-2.3+deb8u3 Distribution: jessie Urgency: medium Maintainer: Thomas Mueller Changed-By: Pierre Schweitzer Description: quassel- distributed IRC client - Qt-based monolithic core+client quassel-client - distributed IRC client - Qt-based client component quassel-client-kde4 - distributed IRC client - KDE-based client quassel-core - distributed IRC client - core component quassel-data - distributed IRC client - shared data (Qt version) quassel-data-kde4 - distributed IRC client - shared data (KDE4 version) quassel-kde4 - distributed IRC client - KDE-based monolithic core+client Closes: 826402 Changes: quassel (1:0.10.0-2.3+deb8u3) jessie; urgency=medium . * Non-maintainer upload. * Fix CVE-2016-4414: remote DoS in quassel core with invalid handshake data. (Closes: #826402) - Add debian/patches/CVE-2016-4414.patch, cherry-picked from upstream. Checksums-Sha1: e51ab98e59957d60ed8834d30ce8c6e8bf032d7e 2368 quassel_0.10.0-2.3+deb8u3.dsc 27822f284c4fc2466a22e365e99743a5cec9f94d 23640 quassel_0.10.0-2.3+deb8u3.debian.tar.xz 808b4e6e2f22e23b603e3160fc5c95531ff3f4be 1647860 quassel-core_0.10.0-2.3+deb8u3_amd64.deb 637848e762a0e3a17903330570b05d456e39d966 2439960 quassel-client_0.10.0-2.3+deb8u3_amd64.deb 2f713bb2ff4bec850024cf7ebc197a0abfcac0b5 2849662 quassel_0.10.0-2.3+deb8u3_amd64.deb b24db864915d243603c650c5a5d6ee8aef11a970 23094 quassel-data_0.10.0-2.3+deb8u3_all.deb 84ad521123a514655b12024cf26262d7fdc17bdb 839152 quassel-client-kde4_0.10.0-2.3+deb8u3_amd64.deb 7f152d8ba3b2b15a500b0ea83704158cb68e81b2 1076862 quassel-kde4_0.10.0-2.3+deb8u3_amd64.deb 17909c130ac101eb69044249c35aa0d152fd4c26 625600 quassel-data-kde4_0.10.0-2.3+deb8u3_all.deb Checksums-Sha256: 9985be51e5c07591e3f3617cbad4a5281d279efbcbe3c682ce42ac7bc2d2547e 2368 quassel_0.10.0-2.3+deb8u3.dsc 9c28918ced7f3940933def7a7524c2df0a5881678c8e029b604e4ceb0a88f21e 23640 quassel_0.10.0-2.3+deb8u3.debian.tar.xz b22c64fe1110acc494b1b9c75a7536b1ab593b7f4b2b695084be30495f6af775 1647860 quassel-core_0.10.0-2.3+deb8u3_amd64.deb b1765d92e30207ed2534cd6524604bfaf02b992fb9926385dd9dffc003edf22c 2439960 quassel-client_0.10.0-2.3+deb8u3_amd64.deb 49441806bb402c2a10eaaadc6c8f5d7cc351d5fcc6d3189ced5157de0851a896 2849662
[Pkg-kde-extras] ktorrent 4.3.1-5 MIGRATED to testing
FYI: The status of the ktorrent source package in Debian's testing distribution has changed. Previous version: 4.3.1-4 Current version: 4.3.1-5 -- This email is automatically generated once a day. As the installation of new packages into testing happens multiple times a day you will receive later changes on the next day. See https://release.debian.org/testing-watch/ for more information. ___ pkg-kde-extras mailing list pkg-kde-extras@lists.alioth.debian.org http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-kde-extras
[Pkg-kde-extras] konversation 1.6-3 MIGRATED to testing
FYI: The status of the konversation source package in Debian's testing distribution has changed. Previous version: 1.6-2 Current version: 1.6-3 -- This email is automatically generated once a day. As the installation of new packages into testing happens multiple times a day you will receive later changes on the next day. See https://release.debian.org/testing-watch/ for more information. ___ pkg-kde-extras mailing list pkg-kde-extras@lists.alioth.debian.org http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-kde-extras
[Pkg-kde-extras] investment partnership.
Dear Sir, I am obliged to open this vital business discussion with you for a possible investment partnership. We have the capacity to provide direct business funding for large investment projects from the network of wealthy Arab Businessmen and also from the Royal Household Investment Group. Our investment capital for Europe and Asia is over USD$10 BILLION Dollars. And we have the funds right there In Europe and Asia. We Have funds under management of Finance Companies in (1) Belgium(2) Holland (3) Canada (4) United States of America (USA) (5) Indonesia (6) Malaysia (7) Turkey. However, before we provide the investment funds, we would like to submit our Memorandum of Understanding/Agreement and Terms for your consideration and endorsement. Before that, we shall need the following informations: 1- Telephone Numbers and Fax 2- The investment Amount required. Kindly acknowledge my email for further information on the MOU and Investment Terms. Regards, Dr. Adel Al Sayed Masraf Al Rayan Investment Group, Doha, Qatar. Reply Email: (sadelal...@gmail.com or dr.adelalsayed...@outlook.com) Website: http://alrayaninvestment.hoxty.com/ ©Subsidiary & Team of http://www.alrayan.com/ Confidentiality Notice: This e-mail communication may contain confidential or legally privileged information that is intended only for the individual or entity named in the e-mail address. If you are not the intended recipient, you are hereby notified that any use, disclosure, copying, distribution, or reliance upon the contents of e-mail is strictly prohibited. Please delete this message from your inbox and deleted folders. Internet Communication cannot be guaranteed to be timely, secure, error or virus-free. ___ pkg-kde-extras mailing list pkg-kde-extras@lists.alioth.debian.org http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-kde-extras
[Pkg-kde-extras] Bug#827184: yakuake: "Manage Profiles" settings option doesn't work
Package: yakuake Version: 3.0.2-1 Severity: normal Dear Maintainer, Summary: the "Manage Profiles" menu item doesn't work as expected. Steps to reproduce: 1) Open Yakuake 2) Click on settings menu in bottom right 3) Click Manage Profiles Expected behaviour: Manage Profiles dialog box appears. Actual behaviour: Nothing appears. If I run yakuake from another console, I observe the following: ajd@hal:~$ yakuake Attempted to re-run an already running session. QMetaObject::invokeMethod: No such method Konsole::Part::showManageProfilesDialog(QWidget*) Regards, Andrew Donnellan -- System Information: Debian Release: stretch/sid APT prefers unstable APT policy: (500, 'unstable'), (500, 'testing'), (1, 'experimental') Architecture: amd64 (x86_64) Foreign Architectures: i386 Kernel: Linux 4.5.0-2-amd64 (SMP w/8 CPU cores) Locale: LANG=en_AU.UTF-8, LC_CTYPE=en_AU.UTF-8 (charmap=UTF-8) Shell: /bin/sh linked to /bin/dash Init: systemd (via /run/systemd/system) Versions of packages yakuake depends on: ii konsole-kpart 4:16.04.1-1 ii libc6 2.22-11 ii libgcc1 1:6.1.1-6 ii libkf5archive55.22.0-1 ii libkf5attica5 5.22.0-1 ii libkf5auth5 5.22.0-1 ii libkf5codecs5 5.22.0-1 ii libkf5completion5 5.22.0-1 ii libkf5configcore5 5.22.0-1 ii libkf5configgui5 5.22.0-1 ii libkf5configwidgets5 5.22.0-1 ii libkf5coreaddons5 5.22.0-1 ii libkf5crash5 5.22.0-1 ii libkf5dbusaddons5 5.22.0-1 ii libkf5globalaccel55.22.0-1 ii libkf5i18n5 5.22.1-1 ii libkf5iconthemes5 5.22.0-1 ii libkf5jobwidgets5 5.22.0-1 ii libkf5kiocore55.22.0-1 ii libkf5kiowidgets5 5.22.0-1 ii libkf5newstuff5 5.22.0-1 ii libkf5notifications5 5.22.0-1 ii libkf5notifyconfig5 5.22.0-1 ii libkf5parts5 5.22.0-1 ii libkf5service-bin 5.22.0-1 ii libkf5service55.22.0-1 ii libkf5sonnetui5 5.22.0-2 ii libkf5textwidgets55.22.0-1 ii libkf5widgetsaddons5 5.22.0-1 ii libkf5windowsystem5 5.22.0-1 ii libkf5xmlgui5 5.22.0-1 ii libqt5core5a 5.5.1+dfsg-17 ii libqt5dbus5 5.5.1+dfsg-17 ii libqt5gui55.5.1+dfsg-17 ii libqt5network55.5.1+dfsg-17 ii libqt5widgets55.5.1+dfsg-17 ii libqt5x11extras5 5.5.1-3 ii libqt5xml55.5.1+dfsg-17 ii libstdc++66.1.1-6 ii libx11-6 2:1.6.3-1 yakuake recommends no packages. yakuake suggests no packages. -- no debconf information ___ pkg-kde-extras mailing list pkg-kde-extras@lists.alioth.debian.org http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-kde-extras