[DRE-maint] Bug#842504: marked as done (CVE-2016-7954: code execution via gem name collission in bundler)

Debian Bug Tracking System owner at bugs.debian.org
Fri Feb 7 21:39:02 GMT 2020


Your message dated Fri, 07 Feb 2020 21:34:37 +0000
with message-id <E1j0BGn-000GSI-Mr at fasolo.debian.org>
and subject line Bug#842504: fixed in bundler 2.1.4-1
has caused the Debian Bug report #842504,
regarding CVE-2016-7954: code execution via gem name collission in bundler
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact owner at bugs.debian.org
immediately.)


-- 
842504: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=842504
Debian Bug Tracking System
Contact owner at bugs.debian.org with problems
-------------- next part --------------
An embedded message was scrubbed...
From: Salvatore Bonaccorso <carnil at debian.org>
Subject: CVE-2016-7954: code execution via gem name collission in bundler
Date: Sat, 29 Oct 2016 21:27:25 +0200
Size: 4155
URL: <http://alioth-lists.debian.net/pipermail/pkg-ruby-extras-maintainers/attachments/20200207/8ddae6a5/attachment-0002.mht>
-------------- next part --------------
An embedded message was scrubbed...
From: Debian FTP Masters <ftpmaster at ftp-master.debian.org>
Subject: Bug#842504: fixed in bundler 2.1.4-1
Date: Fri, 07 Feb 2020 21:34:37 +0000
Size: 6075
URL: <http://alioth-lists.debian.net/pipermail/pkg-ruby-extras-maintainers/attachments/20200207/8ddae6a5/attachment-0003.mht>


More information about the Pkg-ruby-extras-maintainers mailing list