Discussion:
[ftpmaster@ftp-master.debian.org: Accepted busybox 1:1.37.0-1 (source) into unstable]
(too old to reply)
Salvatore Bonaccorso
2024-10-06 19:30:01 UTC
Permalink
Source: busybox
Source-Version: 1:1.37.0-1

----- Forwarded message from Debian FTP Masters <***@ftp-master.debian.org> -----

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Sun, 06 Oct 2024 10:20:49 +0300
Source: busybox
Architecture: source
Version: 1:1.37.0-1
Distribution: unstable
Urgency: medium
Maintainer: Debian Install System Team <debian-***@lists.debian.org>
Changed-By: Michael Tokarev <***@tls.msk.ru>
Changes:
busybox (1:1.37.0-1) unstable; urgency=medium
.
* new upstream release 1.37.0
Closes: CVE-2021-42380 (awk use-after-realloc)
Cloese: CVE-2023-42363 (awk use-after-free)
* d/patches/: refresh platform-linux.diff and version.patch
* d/patches/: remove:
- install-fix-chown-resetting-suid-sgid-bits-from-chmod.patch
- syslogd-daemonize-after-init-make-errs-visible.patch
- syslogd-decrease-stack-usage-50-bytes.patch
- syslogd-fix-breakage-caused-by-daemonize-_after_-ini.patch
* d/config/pkg/*: update configs:
- enable time64
- enable find exec-ok for regular and static builds
- enable getfattr for regular and static builds
- enable ip-link-can for regular and static builds
- enable feature udhcpd bootp
Checksums-Sha1:
b726349e0ade5391b468cf80616bd5f888c6a5f4 2529 busybox_1.37.0-1.dsc
50efee4e4438b8aea90ea6895dac818d23125549 2565764 busybox_1.37.0.orig.tar.bz2
d602b689b78080e7c48112b2fcd187fcaf5f599f 232 busybox_1.37.0.orig.tar.bz2.asc
79fee9e4ee23e567d147cfeef9d6c566aa59b5f5 62848 busybox_1.37.0-1.debian.tar.xz
4fc97373c8939a50360dbdd2461c1c731c66ee94 6691 busybox_1.37.0-1_source.buildinfo
Checksums-Sha256:
9da7fbe1a51cd5ad7b3e64e3a1d66262141914a3f96b5997cc3e2e8ff90802bc 2529 busybox_1.37.0-1.dsc
3311dff32e746499f4df0d5df04d7eb396382d7e108bb9250e7b519b837043a4 2565764 busybox_1.37.0.orig.tar.bz2
771f2b06609b670e9c7f864832ece85a661dc7e5e6505a8e82436940fea5c7f8 232 busybox_1.37.0.orig.tar.bz2.asc
196af8b4b51c85aea7c4b0dc02cf83274d036fc12a2c221953b5463c48035604 62848 busybox_1.37.0-1.debian.tar.xz
c12fe81fe369a1fb01bbc01343a6be939d1b356cb9a52d73b24214c85df4e472 6691 busybox_1.37.0-1_source.buildinfo
Files:
fb68a6069a4ed70722e2404758300b06 2529 utils optional busybox_1.37.0-1.dsc
865b68ab41b923d9cdbebf3f2c8b04ec 2565764 utils optional busybox_1.37.0.orig.tar.bz2
493c2999dbfb2eb07f4555981b712ddb 232 utils optional busybox_1.37.0.orig.tar.bz2.asc
34bf385c251d4f74089ceeedd665bfde 62848 utils optional busybox_1.37.0-1.debian.tar.xz
ada4ed46bea29a3b30e55601bc7785a5 6691 utils optional busybox_1.37.0-1_source.buildinfo

-----BEGIN PGP SIGNATURE-----
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=4o2d
-----END PGP SIGNATURE-----

----- End forwarded message -----
Debian Bug Tracking System
2024-10-06 19:40:01 UTC
Permalink
Your message dated Sun, 6 Oct 2024 21:26:55 +0200
with message-id <ZwLkf0KpcdiXJ-***@eldamar.lan>
and subject line [***@ftp-master.debian.org: Accepted busybox 1:1.37.0-1 (source) into unstable]
has caused the Debian Bug report #1059050,
regarding busybox: CVE-2023-42363
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ***@bugs.debian.org
immediately.)
--
1059050: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1059050
Debian Bug Tracking System
Contact ***@bugs.debian.org with problems
Loading...