[Pkg-bazaar-maint] Bug#709068: marked as done (python-bzrlib: possible abuse of match_hostname() for DoS usings certs with many wildcards)

Debian Bug Tracking System owner at bugs.debian.org
Tue May 21 00:21:18 UTC 2013


Your message dated Tue, 21 May 2013 00:17:50 +0000
with message-id <E1UeaH0-0008A4-0N at franck.debian.org>
and subject line Bug#709068: fixed in bzr 2.6.0~bzr6574-1
has caused the Debian Bug report #709068,
regarding python-bzrlib: possible abuse of match_hostname() for DoS usings certs with many wildcards
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact owner at bugs.debian.org
immediately.)


-- 
709068: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=709068
Debian Bug Tracking System
Contact owner at bugs.debian.org with problems
-------------- next part --------------
An embedded message was scrubbed...
From: Henri Salo <henri at nerv.fi>
Subject: python3: CVE-2013-2099: ssl.match_hostname() trips over crafted wildcard
Date: Thu, 16 May 2013 16:03:15 +0300
Size: 2804
URL: <http://lists.alioth.debian.org/pipermail/pkg-bazaar-maint/attachments/20130521/33dd2725/attachment-0002.mht>
-------------- next part --------------
An embedded message was scrubbed...
From: Andrew Starr-Bochicchio <asb at debian.org>
Subject: Bug#709068: fixed in bzr 2.6.0~bzr6574-1
Date: Tue, 21 May 2013 00:17:50 +0000
Size: 6646
URL: <http://lists.alioth.debian.org/pipermail/pkg-bazaar-maint/attachments/20130521/33dd2725/attachment-0003.mht>


More information about the Pkg-bazaar-maint mailing list