Bug#272166: marked as done (vulnerable to holes fixed by DSA-549-1)

Debian Bug Tracking System owner@bugs.debian.org
Fri, 17 Sep 2004 17:03:10 -0700


Your message dated Fri, 17 Sep 2004 19:49:09 -0400
with message-id <20040917234909.GC28439@kitenet.net>
and subject line Bug#272166: vulnerable to holes fixed by DSA-549-1
has caused the attached Bug report to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what I am
talking about this indicates a serious mail system misconfiguration
somewhere.  Please contact me immediately.)

Debian bug tracking system administrator
(administrator, Debian Bugs database)

--------------------------------------
Received: (at submit) by bugs.debian.org; 17 Sep 2004 23:08:23 +0000
>From joey@kitenet.net Fri Sep 17 16:08:23 2004
Return-path: <joey@kitenet.net>
Received: from kitenet.net [64.62.161.42] (postfix)
	by spohr.debian.org with esmtp (Exim 3.35 1 (Debian))
	id 1C8Rq3-0004uE-00; Fri, 17 Sep 2004 16:08:23 -0700
Received: from dragon.kitenet.net (unknown [66.168.94.144])
	(using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits))
	(Client CN "Joey Hess", Issuer "Joey Hess" (verified OK))
	by kitenet.net (Postfix) with ESMTP id 1B97B18606
	for <submit@bugs.debian.org>; Fri, 17 Sep 2004 23:08:23 +0000 (GMT)
Received: by dragon.kitenet.net (Postfix, from userid 1000)
	id 6CEC66E7AC; Fri, 17 Sep 2004 19:09:08 -0400 (EDT)
Date: Fri, 17 Sep 2004 19:09:08 -0400
From: Joey Hess <joeyh@debian.org>
To: Debian Bug Tracking System <submit@bugs.debian.org>
Subject: vulnerable to holes fixed by DSA-549-1
Message-ID: <20040917230908.GA28561@kitenet.net>
Mime-Version: 1.0
Content-Type: multipart/signed; micalg=pgp-sha1;
	protocol="application/pgp-signature"; boundary="SUOF0GtieIMvvwua"
Content-Disposition: inline
X-Reportbug-Version: 2.64
User-Agent: Mutt/1.5.6+20040818i
Delivered-To: submit@bugs.debian.org
X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2004_03_25 
	(1.212-2003-09-23-exp) on spohr.debian.org
X-Spam-Status: No, hits=-8.0 required=4.0 tests=BAYES_00,HAS_PACKAGE 
	autolearn=no version=2.60-bugs.debian.org_2004_03_25
X-Spam-Level: 


--SUOF0GtieIMvvwua
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

Package: gtk+2.0
Severity: grave

For the record: This package is vulnerable to the security holes fixed
in stable by DSA-549-1. The CAN numbers of these security holes are
CAN-2004-0782 CAN-2004-0783 CAN-2004-0788.

-- System Information:
Debian Release: 3.1
  APT prefers unstable
  APT policy: (500, 'unstable')
Architecture: i386 (i686)
Kernel: Linux 2.4.27
Locale: LANG=3Den_US, LC_CTYPE=3Den_US

--=20
see shy jo

--SUOF0GtieIMvvwua
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: Digital signature
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.5 (GNU/Linux)

iD8DBQFBS26Ud8HHehbQuO8RAgQeAKCAfCCCBXxeR6Vzgmoy3GmkyvsJNQCfW5AP
Rywuop+tU4565LrERw9tYrA=
=xT/N
-----END PGP SIGNATURE-----

--SUOF0GtieIMvvwua--

---------------------------------------
Received: (at 272166-done) by bugs.debian.org; 17 Sep 2004 23:56:33 +0000
>From joey@kitenet.net Fri Sep 17 16:56:33 2004
Return-path: <joey@kitenet.net>
Received: from kitenet.net [64.62.161.42] (postfix)
	by spohr.debian.org with esmtp (Exim 3.35 1 (Debian))
	id 1C8Saf-000619-00; Fri, 17 Sep 2004 16:56:33 -0700
Received: from dragon.kitenet.net (unknown [66.168.94.144])
	(using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits))
	(Client CN "Joey Hess", Issuer "Joey Hess" (verified OK))
	by kitenet.net (Postfix) with ESMTP id E6F9518AF4;
	Fri, 17 Sep 2004 23:48:24 +0000 (GMT)
Received: by dragon.kitenet.net (Postfix, from userid 1000)
	id E31576E7AC; Fri, 17 Sep 2004 19:49:09 -0400 (EDT)
Date: Fri, 17 Sep 2004 19:49:09 -0400
From: Joey Hess <joeyh@debian.org>
To: Sebastien Bacher <seb128@debian.org>
Cc: 272166-done@bugs.debian.org
Subject: Re: Bug#272166: vulnerable to holes fixed by DSA-549-1
Message-ID: <20040917234909.GC28439@kitenet.net>
References: <20040917230908.GA28561@kitenet.net> <1095463954.27651.17.camel@seb128>
Mime-Version: 1.0
Content-Type: multipart/signed; micalg=pgp-sha1;
	protocol="application/pgp-signature"; boundary="2/5bycvrmDh4d1IB"
Content-Disposition: inline
In-Reply-To: <1095463954.27651.17.camel@seb128>
User-Agent: Mutt/1.5.6+20040818i
Delivered-To: 272166-done@bugs.debian.org
X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2004_03_25 
	(1.212-2003-09-23-exp) on spohr.debian.org
X-Spam-Status: No, hits=-6.0 required=4.0 tests=BAYES_00,HAS_BUG_NUMBER 
	autolearn=no version=2.60-bugs.debian.org_2004_03_25
X-Spam-Level: 


--2/5bycvrmDh4d1IB
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

Sebastien Bacher wrote:
> Is there a problem with the package uploaded today ? If not the bug
> should probably be tagged + sarge ...

I'm sorry that I missed that. I pinged Joey before sending the bug and
he said he'd talked to you but no fix had been uploaded yet. This bug
does not need to stay open to track the fix for sarge, though you may
want to add something to http://www.wolffelaar.nl/~sarge/

--=20
see shy jo

--2/5bycvrmDh4d1IB
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: Digital signature
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.5 (GNU/Linux)

iD8DBQFBS3f1d8HHehbQuO8RAszmAJwMAXWWtmi6haj674jOZSg8uFiVqwCfb4Hq
NcyYpstwKWSa6R1RlDWovGQ=
=JBOt
-----END PGP SIGNATURE-----

--2/5bycvrmDh4d1IB--