Message-Id: <email address hidden>
Date: Mon, 07 Mar 2005 01:47:15 -0500
From: Brendan O'Dea <email address hidden>
To: <email address hidden>
Subject: Bug#286922: fixed in perl 5.8.4-7
Source: perl
Source-Version: 5.8.4-7
We believe that the bug you reported is fixed in the latest version of
perl, which is due to be installed in the Debian FTP archive:
libcgi-fast-perl_5.8.4-7_all.deb
to pool/main/p/perl/libcgi-fast-perl_5.8.4-7_all.deb
libperl-dev_5.8.4-7_i386.deb
to pool/main/p/perl/libperl-dev_5.8.4-7_i386.deb
libperl-dev_5.8.4-7_powerpc.deb
to pool/main/p/perl/libperl-dev_5.8.4-7_powerpc.deb
libperl-dev_5.8.4-7_sparc.deb
to pool/main/p/perl/libperl-dev_5.8.4-7_sparc.deb
libperl5.8_5.8.4-7_i386.deb
to pool/main/p/perl/libperl5.8_5.8.4-7_i386.deb
libperl5.8_5.8.4-7_powerpc.deb
to pool/main/p/perl/libperl5.8_5.8.4-7_powerpc.deb
libperl5.8_5.8.4-7_sparc.deb
to pool/main/p/perl/libperl5.8_5.8.4-7_sparc.deb
perl-base_5.8.4-7_i386.deb
to pool/main/p/perl/perl-base_5.8.4-7_i386.deb
perl-base_5.8.4-7_powerpc.deb
to pool/main/p/perl/perl-base_5.8.4-7_powerpc.deb
perl-base_5.8.4-7_sparc.deb
to pool/main/p/perl/perl-base_5.8.4-7_sparc.deb
perl-debug_5.8.4-7_i386.deb
to pool/main/p/perl/perl-debug_5.8.4-7_i386.deb
perl-debug_5.8.4-7_powerpc.deb
to pool/main/p/perl/perl-debug_5.8.4-7_powerpc.deb
perl-debug_5.8.4-7_sparc.deb
to pool/main/p/perl/perl-debug_5.8.4-7_sparc.deb
perl-doc_5.8.4-7_all.deb
to pool/main/p/perl/perl-doc_5.8.4-7_all.deb
perl-modules_5.8.4-7_all.deb
to pool/main/p/perl/perl-modules_5.8.4-7_all.deb
perl-suid_5.8.4-7_i386.deb
to pool/main/p/perl/perl-suid_5.8.4-7_i386.deb
perl-suid_5.8.4-7_powerpc.deb
to pool/main/p/perl/perl-suid_5.8.4-7_powerpc.deb
perl-suid_5.8.4-7_sparc.deb
to pool/main/p/perl/perl-suid_5.8.4-7_sparc.deb
perl_5.8.4-7.diff.gz
to pool/main/p/perl/perl_5.8.4-7.diff.gz
perl_5.8.4-7.dsc
to pool/main/p/perl/perl_5.8.4-7.dsc
perl_5.8.4-7_i386.deb
to pool/main/p/perl/perl_5.8.4-7_i386.deb
perl_5.8.4-7_powerpc.deb
to pool/main/p/perl/perl_5.8.4-7_powerpc.deb
perl_5.8.4-7_sparc.deb
to pool/main/p/perl/perl_5.8.4-7_sparc.deb
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to <email address hidden>,
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Brendan O'Dea <email address hidden> (supplier of updated perl package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing <email address hidden>)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Mon, 7 Mar 2005 10:22:01 +1100
Source: perl
Binary: perl-base libcgi-fast-perl libperl-dev perl-debug perl-modules perl libperl5.8 perl-suid perl-doc
Architecture: all i386 powerpc source sparc
Version: 5.8.4-7
Distribution: unstable
Urgency: low
Maintainer: Brendan O'Dea <email address hidden>
Changed-By: Brendan O'Dea <email address hidden>
Description:
libperl-dev - Perl library: development files
libperl5.8 - Shared Perl library
perl - Larry Wall's Practical Extraction and Report Language
perl-base - The Pathologically Eclectic Rubbish Lister
perl-debug - Debug-enabled Perl interpreter
perl-suid - Runs setuid Perl scripts
Closes: 178243 198855 250877 255919 256731 263325 275142 281091 281092 281437 286905 286922 289709
Changes:
perl (5.8.4-7) unstable; urgency=low
.
* SECURITY [CAN-2005-0448]: rewrite File::Path::rmtree to avoid race
condition which allows an attacker with write permission on
directories in the tree being removed to make files setuid or to
remove arbitrary files (closes: #286905, #286922). Supersedes
the previous patch for CAN-2004-0452.
.
* Add PERL_DEBUGGING_MSTATS for debugperl (closes: #178243).
* Escape dashes in verbatim text to have groff render them as-is
rather than as \x{2010} (closes: #250877).
.
* CGI: handle escaped newlines in URLs (closes: #289709).
* Net::NNTP: fix precedence error in article routine (closes: #275142).
* Devel::Dprof: refer to executable as `perl' (closes: #198855).
* Remove spurious undefined warning in getopts.pl (closes: #255919).
* Remove XSI-isms from maintainer scripts (closes: #256731).
* Revise MakeMaker patch to defer expansion of $(MANnEXT) until
runtime (closes: #263325).
.
* Normalise case of a2p man page OPTIONS section, place optional
filename in brackets (closes: #281091, #281092).
.
* Fix octal glitch in perlreref(1) (closes: #281437).
* Have perl suggest both ReadLine variants (gnu, perl).
* Upgrade suggestion on perl-doc to recommends now that dselect is
less pedantic about the latter.
Files:
06d6c960bf7c8b7b7ce66e73bc689a86 3509162 perl standard perl_5.8.4-7_powerpc.deb
11a48c92fe6046185a1003394c28c1f9 7052380 doc optional perl-doc_5.8.4-7_all.deb
15d16eb40fc29280a13b901aa6f4d70a 775246 base required perl-base_5.8.4-7_sparc.deb
2e89765c8eedf6af4fd3636a3922539c 3547364 perl standard perl_5.8.4-7_sparc.deb
3692cc87735524ef57ceeed24d60f686 567012 libdevel optional libperl-dev_5.8.4-7_i386.deb
3aa29703d71dbb2fa5f9c4b8b8b203c7 624940 libdevel optional libperl-dev_5.8.4-7_powerpc.deb
463e43a1c602f74a385bd414e5f752a8 3840696 perl optional perl-debug_5.8.4-7_sparc.deb
4e7ab56ca74d59f1d98c3147a3a71138 3736402 perl optional perl-debug_5.8.4-7_i386.deb
61d993933b3a08b0049462a802766220 31698 perl optional perl-suid_5.8.4-7_i386.deb
6b236605cdb5beb02219ad1f2bb198f8 1034 libs optional libperl5.8_5.8.4-7_powerpc.deb
6dc36144aca73c10ec9f324117f3acde 38036 perl extra libcgi-fast-perl_5.8.4-7_all.deb
c861bb89e40c2723b2ce9f0525b22e6b 726 perl standard perl_5.8.4-7.dsc
8347b722dbee125c18d631bf5ca474ac 31032 perl optional perl-suid_5.8.4-7_sparc.deb
8d2973686564a7444c23847da092d840 3700708 perl optional perl-debug_5.8.4-7_powerpc.deb
95e330d949521ee026a7148b4ca014d5 2178102 perl standard perl-modules_5.8.4-7_all.deb
987b4cfbb284707e1f84f66a72232b5e 508830 libs optional libperl5.8_5.8.4-7_i386.deb
9db0cfba5fc66c4a0c8279606a91bd94 1034 libs optional libperl5.8_5.8.4-7_sparc.deb
9f4c86deaa8aa3f377d4ce8ccf3cda76 789658 base required perl-base_5.8.4-7_powerpc.deb
ab32aebec33b748b0ccaf0e52cb77a69 582240 libdevel optional libperl-dev_5.8.4-7_sparc.deb
bd4a96454f9a6b6dca5fcc54a24fe350 86680 perl standard perl_5.8.4-7.diff.gz
e4418c5838c05452631dbd1d561a2312 751654 base required perl-base_5.8.4-7_i386.deb
e69b276f51914a16eb2d6ac5e09f4f96 33576 perl optional perl-suid_5.8.4-7_powerpc.deb
fab241c803816d886180d671ac0334f2 3238062 perl standard perl_5.8.4-7_i386.deb
Message-Id: <email address hidden>
Date: Mon, 07 Mar 2005 01:47:15 -0500
From: Brendan O'Dea <email address hidden>
To: <email address hidden>
Subject: Bug#286922: fixed in perl 5.8.4-7
Source: perl
Source-Version: 5.8.4-7
We believe that the bug you reported is fixed in the latest version of
perl, which is due to be installed in the Debian FTP archive:
libcgi- fast-perl_ 5.8.4-7_ all.deb p/perl/ libcgi- fast-perl_ 5.8.4-7_ all.deb dev_5.8. 4-7_i386. deb p/perl/ libperl- dev_5.8. 4-7_i386. deb dev_5.8. 4-7_powerpc. deb p/perl/ libperl- dev_5.8. 4-7_powerpc. deb dev_5.8. 4-7_sparc. deb p/perl/ libperl- dev_5.8. 4-7_sparc. deb 8_5.8.4- 7_i386. deb p/perl/ libperl5. 8_5.8.4- 7_i386. deb 8_5.8.4- 7_powerpc. deb p/perl/ libperl5. 8_5.8.4- 7_powerpc. deb 8_5.8.4- 7_sparc. deb p/perl/ libperl5. 8_5.8.4- 7_sparc. deb 5.8.4-7_ i386.deb p/perl/ perl-base_ 5.8.4-7_ i386.deb 5.8.4-7_ powerpc. deb p/perl/ perl-base_ 5.8.4-7_ powerpc. deb 5.8.4-7_ sparc.deb p/perl/ perl-base_ 5.8.4-7_ sparc.deb 5.8.4-7_ i386.deb p/perl/ perl-debug_ 5.8.4-7_ i386.deb 5.8.4-7_ powerpc. deb p/perl/ perl-debug_ 5.8.4-7_ powerpc. deb 5.8.4-7_ sparc.deb p/perl/ perl-debug_ 5.8.4-7_ sparc.deb 5.8.4-7_ all.deb p/perl/ perl-doc_ 5.8.4-7_ all.deb 5.8.4-7_ all.deb p/perl/ perl-modules_ 5.8.4-7_ all.deb 5.8.4-7_ i386.deb p/perl/ perl-suid_ 5.8.4-7_ i386.deb 5.8.4-7_ powerpc. deb p/perl/ perl-suid_ 5.8.4-7_ powerpc. deb 5.8.4-7_ sparc.deb p/perl/ perl-suid_ 5.8.4-7_ sparc.deb 8.4-7.diff. gz p/perl/ perl_5. 8.4-7.diff. gz p/perl/ perl_5. 8.4-7.dsc 8.4-7_i386. deb p/perl/ perl_5. 8.4-7_i386. deb 8.4-7_powerpc. deb p/perl/ perl_5. 8.4-7_powerpc. deb 8.4-7_sparc. deb p/perl/ perl_5. 8.4-7_sparc. deb
to pool/main/
libperl-
to pool/main/
libperl-
to pool/main/
libperl-
to pool/main/
libperl5.
to pool/main/
libperl5.
to pool/main/
libperl5.
to pool/main/
perl-base_
to pool/main/
perl-base_
to pool/main/
perl-base_
to pool/main/
perl-debug_
to pool/main/
perl-debug_
to pool/main/
perl-debug_
to pool/main/
perl-doc_
to pool/main/
perl-modules_
to pool/main/
perl-suid_
to pool/main/
perl-suid_
to pool/main/
perl-suid_
to pool/main/
perl_5.
to pool/main/
perl_5.8.4-7.dsc
to pool/main/
perl_5.
to pool/main/
perl_5.
to pool/main/
perl_5.
to pool/main/
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to <email address hidden>,
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Brendan O'Dea <email address hidden> (supplier of updated perl package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing <email address hidden>)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7 MSTATS for debugperl (closes: #178243). 7b7ce66e73bc689 a86 3509162 perl standard perl_5. 8.4-7_powerpc. deb 185a1003394c28c 1f9 7052380 doc optional perl-doc_ 5.8.4-7_ all.deb 80a13b901aa6f4d 70a 775246 base required perl-base_ 5.8.4-7_ sparc.deb af4fd3636a39225 39c 3547364 perl standard perl_5. 8.4-7_sparc. deb ef57ceeed24d60f 686 567012 libdevel optional libperl- dev_5.8. 4-7_i386. deb 2fa5f9c4b8b8b20 3c7 624940 libdevel optional libperl- dev_5.8. 4-7_powerpc. deb 4a385bd414e5f75 2a8 3840696 perl optional perl-debug_ 5.8.4-7_ sparc.deb f1d98c3147a3a71 138 3736402 perl optional perl-debug_ 5.8.4-7_ i386.deb b0049462a802766 220 31698 perl optional perl-suid_ 5.8.4-7_ i386.deb b02219ad1f2bb19 8f8 1034 libs optional libperl5. 8_5.8.4- 7_powerpc. deb 10ec9f324117f3a cde 38036 perl extra libcgi- fast-perl_ 5.8.4-7_ all.deb 23b2ce9f0525b22 e6b 726 perl standard perl_5.8.4-7.dsc 5c18d631bf5ca47 4ac 31032 perl optional perl-suid_ 5.8.4-7_ sparc.deb 444c23847da092d 840 3700708 perl optional perl-debug_ 5.8.4-7_ powerpc. deb e026a7148b4ca01 4d5 2178102 perl standard perl-modules_ 5.8.4-7_ all.deb 7e1f84f66a72232 b5e 508830 libs optional libperl5. 8_5.8.4- 7_i386. deb 4a0c8279606a91b d94 1034 libs optional libperl5. 8_5.8.4- 7_sparc. deb f377d4ce8ccf3cd a76 789658 base required perl-base_ 5.8.4-7_ powerpc. deb 8b0ccaf0e52cb77 a69 582240 libdevel optional libperl- dev_5.8. 4-7_sparc. deb 6dca5fcc54a24fe 350 86680 perl standard perl_5. 8.4-7.diff. gz 52631dbd1d561a2 312 751654 base required perl-base_ 5.8.4-7_ i386.deb 16eb2d6ac5e09f4 f96 33576 perl optional perl-suid_ 5.8.4-7_ powerpc. deb 886180d671ac033 4f2 3238062 perl standard perl_5. 8.4-7_i386. deb
Date: Mon, 7 Mar 2005 10:22:01 +1100
Source: perl
Binary: perl-base libcgi-fast-perl libperl-dev perl-debug perl-modules perl libperl5.8 perl-suid perl-doc
Architecture: all i386 powerpc source sparc
Version: 5.8.4-7
Distribution: unstable
Urgency: low
Maintainer: Brendan O'Dea <email address hidden>
Changed-By: Brendan O'Dea <email address hidden>
Description:
libperl-dev - Perl library: development files
libperl5.8 - Shared Perl library
perl - Larry Wall's Practical Extraction and Report Language
perl-base - The Pathologically Eclectic Rubbish Lister
perl-debug - Debug-enabled Perl interpreter
perl-suid - Runs setuid Perl scripts
Closes: 178243 198855 250877 255919 256731 263325 275142 281091 281092 281437 286905 286922 289709
Changes:
perl (5.8.4-7) unstable; urgency=low
.
* SECURITY [CAN-2005-0448]: rewrite File::Path::rmtree to avoid race
condition which allows an attacker with write permission on
directories in the tree being removed to make files setuid or to
remove arbitrary files (closes: #286905, #286922). Supersedes
the previous patch for CAN-2004-0452.
.
* Add PERL_DEBUGGING_
* Escape dashes in verbatim text to have groff render them as-is
rather than as \x{2010} (closes: #250877).
.
* CGI: handle escaped newlines in URLs (closes: #289709).
* Net::NNTP: fix precedence error in article routine (closes: #275142).
* Devel::Dprof: refer to executable as `perl' (closes: #198855).
* Remove spurious undefined warning in getopts.pl (closes: #255919).
* Remove XSI-isms from maintainer scripts (closes: #256731).
* Revise MakeMaker patch to defer expansion of $(MANnEXT) until
runtime (closes: #263325).
.
* Normalise case of a2p man page OPTIONS section, place optional
filename in brackets (closes: #281091, #281092).
.
* Fix octal glitch in perlreref(1) (closes: #281437).
* Have perl suggest both ReadLine variants (gnu, perl).
* Upgrade suggestion on perl-doc to recommends now that dselect is
less pedantic about the latter.
Files:
06d6c960bf7c8b
11a48c92fe6046
15d16eb40fc292
2e89765c8eedf6
3692cc87735524
3aa29703d71dbb
463e43a1c602f7
4e7ab56ca74d59
61d993933b3a08
6b236605cdb5be
6dc36144aca73c
c861bb89e40c27
8347b722dbee12
8d2973686564a7
95e330d949521e
987b4cfbb28470
9db0cfba5fc66c
9f4c86deaa8aa3
ab32aebec33b74
bd4a96454f9a6b
e4418c5838c054
e69b276f51914a
fab241c803816d
-----BEGIN PGP SIGNATURE-----
Y68NyOALKMWZURA uCYAKCxlPgMf40k Hc1sF1iiHMOOiVA 7AQCcCA/ h L021Ieto=
Version: GnuPG v1.4.0 (GNU/Linux)
iD8DBQFCK/
mpgXx7fsS2scjvH
=8WTG
-----END PGP SIGNATURE-----