openafs: CVE-2017-17432: OPENAFS-SA-2017-001: Rx assertion failure from insufficient input validation

Related Vulnerabilities: CVE-2017-17432   CVE-2016-4536   CVE-2016-9772  

Debian Bug report logs - #883602
openafs: CVE-2017-17432: OPENAFS-SA-2017-001: Rx assertion failure from insufficient input validation

version graph

Reported by: Benjamin Kaduk <kaduk@mit.edu>

Date: Tue, 5 Dec 2017 16:03:07 UTC

Severity: important

Tags: fixed-upstream, security, upstream

Found in versions openafs/1.6.1-3+deb7u7, openafs/1.6.1-1

Fixed in versions openafs/1.6.22-1, openafs/1.8.0~pre3-1, openafs/1.6.20-2+deb9u1, openafs/1.6.9-2+deb8u6, openafs/1.8.0~pre4-1

Done: Benjamin Kaduk <kaduk@mit.edu>

Bug is archived. No further changes may be made.

Toggle useless messages

View this report as an mbox folder, status mbox, maintainer mbox


Report forwarded to debian-bugs-dist@lists.debian.org:
Bug#883602; Package src:openafs. (Tue, 05 Dec 2017 16:03:09 GMT) (full text, mbox, link).


Acknowledgement sent to Benjamin Kaduk <kaduk@mit.edu>:
New Bug report received and forwarded. (Tue, 05 Dec 2017 16:03:09 GMT) (full text, mbox, link).


Message #5 received at submit@bugs.debian.org (full text, mbox, reply):

From: Benjamin Kaduk <kaduk@mit.edu>
To: submit@bugs.debian.org
Subject: OPENAFS-SA-2017-001: Rx assertion failure from insufficient input validation
Date: Tue, 5 Dec 2017 10:01:14 -0600
Source: openafs
Version: 1.6.1-3+deb7u7
Tags: security upstream fixed-upstream pending
Severity: important

Upstream OpenAFS released security advisory OPENAFS-SA-2017-001
today; insufficient validation of data contained in Rx ack packets
leads to the use of an invalid MTU value, ultimately leading to an
assertion failure and application crash or kernel BUG.



Reply sent to Benjamin Kaduk <kaduk@mit.edu>:
You have taken responsibility. (Tue, 05 Dec 2017 17:09:05 GMT) (full text, mbox, link).


Notification sent to Benjamin Kaduk <kaduk@mit.edu>:
Bug acknowledged by developer. (Tue, 05 Dec 2017 17:09:05 GMT) (full text, mbox, link).


Message #10 received at 883602-close@bugs.debian.org (full text, mbox, reply):

From: Benjamin Kaduk <kaduk@mit.edu>
To: 883602-close@bugs.debian.org
Subject: Bug#883602: fixed in openafs 1.6.22-1
Date: Tue, 05 Dec 2017 17:04:49 +0000
Source: openafs
Source-Version: 1.6.22-1

We believe that the bug you reported is fixed in the latest version of
openafs, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 883602@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Benjamin Kaduk <kaduk@mit.edu> (supplier of updated openafs package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmaster@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Tue, 05 Dec 2017 10:28:15 -0600
Source: openafs
Binary: openafs-client openafs-fuse openafs-kpasswd openafs-fileserver openafs-dbserver openafs-doc openafs-krb5 libkopenafs1 libafsauthent1 libafsrpc1 libopenafs-dev openafs-modules-source openafs-modules-dkms libpam-openafs-kaserver
Architecture: source amd64 all
Version: 1.6.22-1
Distribution: unstable
Urgency: high
Maintainer: Benjamin Kaduk <kaduk@mit.edu>
Changed-By: Benjamin Kaduk <kaduk@mit.edu>
Description:
 libafsauthent1 - AFS distributed file system runtime library (authentication)
 libafsrpc1 - AFS distributed file system runtime library (RPC layer)
 libkopenafs1 - AFS distributed file system runtime library (PAGs)
 libopenafs-dev - AFS distributed filesystem development libraries
 libpam-openafs-kaserver - AFS distributed filesystem kaserver PAM module
 openafs-client - AFS distributed filesystem client support
 openafs-dbserver - AFS distributed filesystem database server
 openafs-doc - AFS distributed filesystem documentation
 openafs-fileserver - AFS distributed filesystem file server
 openafs-fuse - AFS distributed file system experimental FUSE client
 openafs-kpasswd - AFS distributed filesystem old password changing
 openafs-krb5 - AFS distributed filesystem Kerberos 5 integration
 openafs-modules-dkms - AFS distributed filesystem kernel module DKMS source
 openafs-modules-source - AFS distributed filesystem kernel module source
Closes: 883602
Changes:
 openafs (1.6.22-1) unstable; urgency=high
 .
   * New upstream security release:
     - Fix for OPENAFS-SA-2017-001. (Closes: #883602)
     - Improved support for recent Linux versions
Checksums-Sha1:
 1fe8eb137bee011e728c80f913854f71e7ed78ac 3726 openafs_1.6.22-1.dsc
 6e004a114a3debc5c3d5b28062872071ec36cdc2 6668764 openafs_1.6.22.orig.tar.xz
 75632d5c8dce4a18bd7ac4da39b7afa44bb0abd3 136424 openafs_1.6.22-1.debian.tar.xz
 3b16878861406a656f9d46346c39aa62be4dcfbe 578028 libafsauthent1-dbgsym_1.6.22-1_amd64.deb
 6996c06e636ae31d11c28581df875df3d4907cee 230500 libafsauthent1_1.6.22-1_amd64.deb
 96439ee70ccb071c4283ee4a587f9c30cdcfc12d 403328 libafsrpc1-dbgsym_1.6.22-1_amd64.deb
 0bc2be28c8785ce8b7c9b7c41ad896bb8a37131f 215228 libafsrpc1_1.6.22-1_amd64.deb
 24e55b793a33faa3199e59606a21305adf965f64 8268 libkopenafs1-dbgsym_1.6.22-1_amd64.deb
 4a21b8d7a1caa9c8bae82ba91a0c1443497b2c13 102804 libkopenafs1_1.6.22-1_amd64.deb
 9df0a6ba04b7164702c1c516ab417ba312962298 110640 libopenafs-dev-dbgsym_1.6.22-1_amd64.deb
 aeaec071648e9c35c1fae5fd581989bf0d9fbe6c 1599044 libopenafs-dev_1.6.22-1_amd64.deb
 9d71c19590b51a0c84bc2d2d523d734a87f966a6 1201980 libpam-openafs-kaserver-dbgsym_1.6.22-1_amd64.deb
 eab94c72783914af0ddef4bd94e267b9fb474197 196852 libpam-openafs-kaserver_1.6.22-1_amd64.deb
 035cc2c531177cb02ee97bc97c711fe0e5681016 9551660 openafs-client-dbgsym_1.6.22-1_amd64.deb
 83445ef17d310bc537ae7a332936eecb9bdf1021 1992292 openafs-client_1.6.22-1_amd64.deb
 0b1a39ad7da062784ad0e8d191e07ce2ba617e05 2418472 openafs-dbserver-dbgsym_1.6.22-1_amd64.deb
 0d13266cd040e7c8cd42aeded33a8f78f49a30fe 472740 openafs-dbserver_1.6.22-1_amd64.deb
 336402d9147aef18ed5d46c2bac0116b940d7d88 4001004 openafs-doc_1.6.22-1_all.deb
 bdf39ac78ec025804c6db093fe9fba2d5b85e241 10172692 openafs-fileserver-dbgsym_1.6.22-1_amd64.deb
 cae6bb5c7480f1c8bad445cbab3dc3937bdd0f96 1377712 openafs-fileserver_1.6.22-1_amd64.deb
 44caec6b029e67fa6111a80392db5ff703a49fd2 1945212 openafs-fuse-dbgsym_1.6.22-1_amd64.deb
 3974812660d279b23594f9397e19f9481d16a3b7 309140 openafs-fuse_1.6.22-1_amd64.deb
 722c7598a9a0196b7d66441de80c37c7dc3d38e9 886988 openafs-kpasswd-dbgsym_1.6.22-1_amd64.deb
 0aba86685225f032af5a5b5386b12c466bd03f59 206408 openafs-kpasswd_1.6.22-1_amd64.deb
 25781bb0e6d4dc1de70475128091f55fa7cec627 997920 openafs-krb5-dbgsym_1.6.22-1_amd64.deb
 294df2fa185340a431693371ab973366ad1dcfad 274648 openafs-krb5_1.6.22-1_amd64.deb
 a53e8a4cd669cf7df14b4cc09b68dabfe74e2f60 952788 openafs-modules-dkms_1.6.22-1_all.deb
 34a18de0109522b458205f4d2ea4e7fd347878f8 1161968 openafs-modules-source_1.6.22-1_all.deb
 46bfea039a0e761b6391e0a89dfd39179d81cb6e 17188 openafs_1.6.22-1_amd64.buildinfo
Checksums-Sha256:
 e7f2bfcb53e2c43168cf9757dd19ee440df7e8ae9f6230203ebd05c16fe03fe0 3726 openafs_1.6.22-1.dsc
 0b1345117057172b7b8e248ecb446cf3b59d9f44dcdd65a24a9081c2c169020f 6668764 openafs_1.6.22.orig.tar.xz
 0131827be700a5d96c765e3d2dbc9bae6e7db77e4638f764d57421793582d2df 136424 openafs_1.6.22-1.debian.tar.xz
 37f37a029d5d13f84e757c443bc36422e798365d996806ae3ff1c0b6de6603f8 578028 libafsauthent1-dbgsym_1.6.22-1_amd64.deb
 26476fd01e9f3a27d87087ee73286226fcda3543113f56e68b43807dff0deb4d 230500 libafsauthent1_1.6.22-1_amd64.deb
 063f46ecc166075fec60a1cd5885c55e99895f0380d039ad354fd814e8e85f41 403328 libafsrpc1-dbgsym_1.6.22-1_amd64.deb
 8a9213cbe9b0b1195bef8d81c2e177659bd9cb988c97678f61e334bfa85c0e86 215228 libafsrpc1_1.6.22-1_amd64.deb
 2f8d7809bf775a357787b082e6ff013f9e4ad25e88d307f74bc63f300d1bb916 8268 libkopenafs1-dbgsym_1.6.22-1_amd64.deb
 293db7d2d422a15265fdb618cc50890c09afe5b3f674617159b0bffe974953a8 102804 libkopenafs1_1.6.22-1_amd64.deb
 82924fbd11e6da4fc5eca0df40b3dda43efaa95531af2870731748816bf77b73 110640 libopenafs-dev-dbgsym_1.6.22-1_amd64.deb
 cac4cf80b55c2d3ae17ccd05f8905a561bfcbea77a6650127b5dcbecaaa19606 1599044 libopenafs-dev_1.6.22-1_amd64.deb
 e45dc25fe9979c2652977296b4c728a8cf7ad45727659a4aaa38a3aa9b34af6f 1201980 libpam-openafs-kaserver-dbgsym_1.6.22-1_amd64.deb
 687bfbb20f9bf75d9aacd61a984e9978bf1fe21d46343037e28e30e72e1ae225 196852 libpam-openafs-kaserver_1.6.22-1_amd64.deb
 11160f329a1003278bedc26748986781199afd2a599b201a8173c42c46d24eb2 9551660 openafs-client-dbgsym_1.6.22-1_amd64.deb
 9b953b309795eb71f6f904a9f5ad033d0880ae073bb256f3f17aa25defa05c13 1992292 openafs-client_1.6.22-1_amd64.deb
 e2aa91d723d784cc30142f05d474b4f5f5db312b62a063908b057b608c033df9 2418472 openafs-dbserver-dbgsym_1.6.22-1_amd64.deb
 2a915b01ea96bb8323992884ea8cf08d23e832a73e48f2a1e84031f03298c60f 472740 openafs-dbserver_1.6.22-1_amd64.deb
 97a01eacf21202455546c5b5b0c7941a264ed917b1a33f3bd73ab7aa6abd52c7 4001004 openafs-doc_1.6.22-1_all.deb
 dd2cb80842924704237d4189a72516bb32252ff343034f6a6e5bd08109f004a5 10172692 openafs-fileserver-dbgsym_1.6.22-1_amd64.deb
 6022d119542118dc2d66d956a722df2069d862c8ca144830a71f3d95761ca085 1377712 openafs-fileserver_1.6.22-1_amd64.deb
 59f897875c7ced83efe6be682cc90784f06053e07712158b1360d805b2d8ef48 1945212 openafs-fuse-dbgsym_1.6.22-1_amd64.deb
 b37661b704792d021796ca4edc104a4d83b5f702532303dab531f7a3bbf2a345 309140 openafs-fuse_1.6.22-1_amd64.deb
 4dcf5a0f11447a3d7c116de340bdc69d9836463c8021101077693337b1bc871f 886988 openafs-kpasswd-dbgsym_1.6.22-1_amd64.deb
 848ac5254a0a7bdb7e1c6e527b45c98b3a9ab3fc6b0134571e91c6ac7077311e 206408 openafs-kpasswd_1.6.22-1_amd64.deb
 19d094fa32d13b8501794a4188b19190add2c59ec5c22a71c01d19b7037e7f24 997920 openafs-krb5-dbgsym_1.6.22-1_amd64.deb
 1575b4b6ad1fa708cfd404615870f5240c61847c759f411eadcc6211fd625b94 274648 openafs-krb5_1.6.22-1_amd64.deb
 8de54421d2f8269d6cfe04a593c548a897b046716a8b3437041173cf26f1af0e 952788 openafs-modules-dkms_1.6.22-1_all.deb
 c44f68f515804116739dc27431e34a538ff72a11f92d47b1bca93472faaa0746 1161968 openafs-modules-source_1.6.22-1_all.deb
 80bcafb9f3137ab46ff30ae901781733fd6b6473054ccce5f189a62e20a22f94 17188 openafs_1.6.22-1_amd64.buildinfo
Files:
 8a3b7dc7c3ad0319900bb269a4f3b724 3726 net optional openafs_1.6.22-1.dsc
 427e618daf8b9675153710c19882007e 6668764 net optional openafs_1.6.22.orig.tar.xz
 3748acab8487679b8027396b6f3444c6 136424 net optional openafs_1.6.22-1.debian.tar.xz
 bba7d0d90551f2006be010fbf711a910 578028 debug optional libafsauthent1-dbgsym_1.6.22-1_amd64.deb
 958cd1e915422b11b2314396833a6bfd 230500 libs optional libafsauthent1_1.6.22-1_amd64.deb
 004339ac09c932271fea9d69a8c04b65 403328 debug optional libafsrpc1-dbgsym_1.6.22-1_amd64.deb
 7ae75b4f71d499e66bafa39a7c75f30d 215228 libs optional libafsrpc1_1.6.22-1_amd64.deb
 1896b7d52a08cfff2ed92283ee2495b3 8268 debug optional libkopenafs1-dbgsym_1.6.22-1_amd64.deb
 18b15860f183db0c41b4b40441c153cd 102804 libs optional libkopenafs1_1.6.22-1_amd64.deb
 c9a120476aee970f08ea076d565f38f1 110640 debug optional libopenafs-dev-dbgsym_1.6.22-1_amd64.deb
 82be46c0e7851f95f784b91158c16bf4 1599044 libdevel optional libopenafs-dev_1.6.22-1_amd64.deb
 aece4c5b677e43dc49d0fecbea106cb4 1201980 debug optional libpam-openafs-kaserver-dbgsym_1.6.22-1_amd64.deb
 6061a2c72ebf63d3ddfff6cc4bc18f36 196852 admin optional libpam-openafs-kaserver_1.6.22-1_amd64.deb
 539b08252252292c9129b3e09d98c6f7 9551660 debug optional openafs-client-dbgsym_1.6.22-1_amd64.deb
 c624b397037c2564766d2752217db017 1992292 net optional openafs-client_1.6.22-1_amd64.deb
 562cc53477cafdc4e80f35104b018731 2418472 debug optional openafs-dbserver-dbgsym_1.6.22-1_amd64.deb
 6d4dcc6b6521a5d8a041f811cf04ca9d 472740 net optional openafs-dbserver_1.6.22-1_amd64.deb
 256ad0826121ff6c0f80ff76309395c1 4001004 doc optional openafs-doc_1.6.22-1_all.deb
 1e065471fb9d484112521c15ec4f69a5 10172692 debug optional openafs-fileserver-dbgsym_1.6.22-1_amd64.deb
 a2d0b47e4738d5d57bd97686e1c2b303 1377712 net optional openafs-fileserver_1.6.22-1_amd64.deb
 39d894651554f00842b94a4d097ceb43 1945212 debug optional openafs-fuse-dbgsym_1.6.22-1_amd64.deb
 4042d8f3f054682779d30b53c66ae223 309140 net optional openafs-fuse_1.6.22-1_amd64.deb
 bf8c581fe2d98a7e90a70e41fdd7c6f8 886988 debug optional openafs-kpasswd-dbgsym_1.6.22-1_amd64.deb
 1d34f8417c6a45fa931e630d885bd0be 206408 net optional openafs-kpasswd_1.6.22-1_amd64.deb
 18ad6e2f79e5ea94089942e67ac91418 997920 debug optional openafs-krb5-dbgsym_1.6.22-1_amd64.deb
 2c84d9e0294e9f7ec0d4e21b48fedc96 274648 net optional openafs-krb5_1.6.22-1_amd64.deb
 48fca8c80993458a794acfa743545bb3 952788 kernel optional openafs-modules-dkms_1.6.22-1_all.deb
 638b29dc609f23f79fc7368a60917b6e 1161968 kernel optional openafs-modules-source_1.6.22-1_all.deb
 8303d0b2db12b839c9db18e0d5d8319b 17188 net optional openafs_1.6.22-1_amd64.buildinfo

-----BEGIN PGP SIGNATURE-----
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=bGp6
-----END PGP SIGNATURE-----




Information forwarded to debian-bugs-dist@lists.debian.org, Benjamin Kaduk <kaduk@mit.edu>:
Bug#883602; Package src:openafs. (Tue, 05 Dec 2017 18:15:07 GMT) (full text, mbox, link).


Acknowledgement sent to Kristen deJarnette <kris10dejarnette@gmail.com>:
Extra info received and forwarded to list. Copy sent to Benjamin Kaduk <kaduk@mit.edu>. (Tue, 05 Dec 2017 18:15:07 GMT) (full text, mbox, link).


Message #15 received at 883602@bugs.debian.org (full text, mbox, reply):

From: Kristen deJarnette <kris10dejarnette@gmail.com>
To: 883602@bugs.debian.org
Subject: Re: pedophile AlertWarning RMWe
Date: Tue, 5 Dec 2017 10:12:19 -0800
[Message part 1 (text/plain, inline)]
Thanks for nothing please take me off your list

On Dec 5, 2017 10:06 AM, "kidslivesafe" <owner@bugs.debian.org> wrote:

> child predator warning
>
>
> <http://grimsupport.com/cl/r-S4IHSJ1K0IGS103N0S1JF78SFC3S0S0S0S15S2SBSCCS21FS8O8SA>
>
>
> <http://grimsupport.com/cl/ua-S4IHSJ1K0IGS103N0S1JF78SFC3S0S0S0S15S2SBSCCS21FS8O8SA>
>
>
> <http://grimsupport.com/cl/op-S4IHSJ1K0IGS103N0S1JF78SFC3S0S0S0S15S2SBSCCS21FS8O8SA>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
> Your message dated Tue, 05 Dec 2017 17:04:49 +0000 with message-id and
> subject line Bug#883602: fixed in openafs 1.6.22-1 has caused the Debian
> Bug report #883602, regarding OPENAFS-SA-2017-001: Rx assertion failure
> from insufficient input validation to be marked as done. This means that
> you claim that the problem has been dealt with. If this is not the case it
> is now your responsibility to reopen the Bug report if necessary, and/or
> fix the problem forthwith. (NB: If you are a system administrator and have
> no idea what this message is talking about, this may indicate a serious
> mail system misconfiguration somewhere. Please contact
> owner@bugs.debian.org immediately.) -- 883602:
> https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=883602 Debian Bug
> Tracking System Contact owner@bugs.debian.org with problems
>
> ---------- Forwarded message ----------
> From: Benjamin Kaduk <kaduk@mit.edu>
> To: submit@bugs.debian.org
> Cc:
> Bcc:
> Date: Tue, 5 Dec 2017 10:01:14 -0600
> Subject: OPENAFS-SA-2017-001: Rx assertion failure from insufficient input
> validation
> Source: openafs
> Version: 1.6.1-3+deb7u7
> Tags: security upstream fixed-upstream pending
> Severity: important
>
> Upstream OpenAFS released security advisory OPENAFS-SA-2017-001
> today; insufficient validation of data contained in Rx ack packets
> leads to the use of an invalid MTU value, ultimately leading to an
> assertion failure and application crash or kernel BUG.
>
>
>
> ---------- Forwarded message ----------
> From: Benjamin Kaduk <kaduk@mit.edu>
> To: 883602-close@bugs.debian.org
> Cc:
> Bcc:
> Date: Tue, 05 Dec 2017 17:04:49 +0000
> Subject: Bug#883602: fixed in openafs 1.6.22-1
> Source: openafs
> Source-Version: 1.6.22-1
>
> We believe that the bug you reported is fixed in the latest version of
> openafs, which is due to be installed in the Debian FTP archive.
>
> A summary of the changes between this version and the previous one is
> attached.
>
> Thank you for reporting the bug, which will now be closed.  If you
> have further comments please address them to 883602@bugs.debian.org,
> and the maintainer will reopen the bug report if appropriate.
>
> Debian distribution maintenance software
> pp.
> Benjamin Kaduk <kaduk@mit.edu> (supplier of updated openafs package)
>
> (This message was generated automatically at their request; if you
> believe that there is a problem with it please contact the archive
> administrators by mailing ftpmaster@ftp-master.debian.org)
>
>
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA512
>
> Format: 1.8
> Date: Tue, 05 Dec 2017 10:28:15 -0600
> Source: openafs
> Binary: openafs-client openafs-fuse openafs-kpasswd openafs-fileserver
> openafs-dbserver openafs-doc openafs-krb5 libkopenafs1 libafsauthent1
> libafsrpc1 libopenafs-dev openafs-modules-source openafs-modules-dkms
> libpam-openafs-kaserver
> Architecture: source amd64 all
> Version: 1.6.22-1
> Distribution: unstable
> Urgency: high
> Maintainer: Benjamin Kaduk <kaduk@mit.edu>
> Changed-By: Benjamin Kaduk <kaduk@mit.edu>
> Description:
>  libafsauthent1 - AFS distributed file system runtime library
> (authentication)
>  libafsrpc1 - AFS distributed file system runtime library (RPC layer)
>  libkopenafs1 - AFS distributed file system runtime library (PAGs)
>  libopenafs-dev - AFS distributed filesystem development libraries
>  libpam-openafs-kaserver - AFS distributed filesystem kaserver PAM module
>  openafs-client - AFS distributed filesystem client support
>  openafs-dbserver - AFS distributed filesystem database server
>  openafs-doc - AFS distributed filesystem documentation
>  openafs-fileserver - AFS distributed filesystem file server
>  openafs-fuse - AFS distributed file system experimental FUSE client
>  openafs-kpasswd - AFS distributed filesystem old password changing
>  openafs-krb5 - AFS distributed filesystem Kerberos 5 integration
>  openafs-modules-dkms - AFS distributed filesystem kernel module DKMS
> source
>  openafs-modules-source - AFS distributed filesystem kernel module source
> Closes: 883602
> Changes:
>  openafs (1.6.22-1) unstable; urgency=high
>  .
>    * New upstream security release:
>      - Fix for OPENAFS-SA-2017-001. (Closes: #883602)
>      - Improved support for recent Linux versions
> Checksums-Sha1:
>  1fe8eb137bee011e728c80f913854f71e7ed78ac 3726 openafs_1.6.22-1.dsc
>  6e004a114a3debc5c3d5b28062872071ec36cdc2 6668764
> openafs_1.6.22.orig.tar.xz
>  75632d5c8dce4a18bd7ac4da39b7afa44bb0abd3 136424
> openafs_1.6.22-1.debian.tar.xz
>  3b16878861406a656f9d46346c39aa62be4dcfbe 578028
> libafsauthent1-dbgsym_1.6.22-1_amd64.deb
>  6996c06e636ae31d11c28581df875df3d4907cee 230500
> libafsauthent1_1.6.22-1_amd64.deb
>  96439ee70ccb071c4283ee4a587f9c30cdcfc12d 403328
> libafsrpc1-dbgsym_1.6.22-1_amd64.deb
>  0bc2be28c8785ce8b7c9b7c41ad896bb8a37131f 215228
> libafsrpc1_1.6.22-1_amd64.deb
>  24e55b793a33faa3199e59606a21305adf965f64 8268
> libkopenafs1-dbgsym_1.6.22-1_amd64.deb
>  4a21b8d7a1caa9c8bae82ba91a0c1443497b2c13 102804
> libkopenafs1_1.6.22-1_amd64.deb
>  9df0a6ba04b7164702c1c516ab417ba312962298 110640
> libopenafs-dev-dbgsym_1.6.22-1_amd64.deb
>  aeaec071648e9c35c1fae5fd581989bf0d9fbe6c 1599044
> libopenafs-dev_1.6.22-1_amd64.deb
>  9d71c19590b51a0c84bc2d2d523d734a87f966a6 1201980 libpam-openafs-kaserver-
> dbgsym_1.6.22-1_amd64.deb
>  eab94c72783914af0ddef4bd94e267b9fb474197 196852
> libpam-openafs-kaserver_1.6.22-1_amd64.deb
>  035cc2c531177cb02ee97bc97c711fe0e5681016 9551660
> openafs-client-dbgsym_1.6.22-1_amd64.deb
>  83445ef17d310bc537ae7a332936eecb9bdf1021 1992292
> openafs-client_1.6.22-1_amd64.deb
>  0b1a39ad7da062784ad0e8d191e07ce2ba617e05 2418472
> openafs-dbserver-dbgsym_1.6.22-1_amd64.deb
>  0d13266cd040e7c8cd42aeded33a8f78f49a30fe 472740
> openafs-dbserver_1.6.22-1_amd64.deb
>  336402d9147aef18ed5d46c2bac0116b940d7d88 4001004
> openafs-doc_1.6.22-1_all.deb
>  bdf39ac78ec025804c6db093fe9fba2d5b85e241 10172692
> openafs-fileserver-dbgsym_1.6.22-1_amd64.deb
>  cae6bb5c7480f1c8bad445cbab3dc3937bdd0f96 1377712
> openafs-fileserver_1.6.22-1_amd64.deb
>  44caec6b029e67fa6111a80392db5ff703a49fd2 1945212
> openafs-fuse-dbgsym_1.6.22-1_amd64.deb
>  3974812660d279b23594f9397e19f9481d16a3b7 309140
> openafs-fuse_1.6.22-1_amd64.deb
>  722c7598a9a0196b7d66441de80c37c7dc3d38e9 886988
> openafs-kpasswd-dbgsym_1.6.22-1_amd64.deb
>  0aba86685225f032af5a5b5386b12c466bd03f59 206408 openafs-kpasswd_1.6.22-1_
> amd64.deb
>  25781bb0e6d4dc1de70475128091f55fa7cec627 997920
> openafs-krb5-dbgsym_1.6.22-1_amd64.deb
>  294df2fa185340a431693371ab973366ad1dcfad 274648
> openafs-krb5_1.6.22-1_amd64.deb
>  a53e8a4cd669cf7df14b4cc09b68dabfe74e2f60 952788
> openafs-modules-dkms_1.6.22-1_all.deb
>  34a18de0109522b458205f4d2ea4e7fd347878f8 1161968
> openafs-modules-source_1.6.22-1_all.deb
>  46bfea039a0e761b6391e0a89dfd39179d81cb6e 17188 openafs_1.6.22-1_amd64.
> buildinfo
> Checksums-Sha256:
>  e7f2bfcb53e2c43168cf9757dd19ee440df7e8ae9f6230203ebd05c16fe03fe0 3726
> openafs_1.6.22-1.dsc
>  0b1345117057172b7b8e248ecb446cf3b59d9f44dcdd65a24a9081c2c169020f 6668764
> openafs_1.6.22.orig.tar.xz
>  0131827be700a5d96c765e3d2dbc9bae6e7db77e4638f764d57421793582d2df 136424
> openafs_1.6.22-1.debian.tar.xz
>  37f37a029d5d13f84e757c443bc36422e798365d996806ae3ff1c0b6de6603f8 578028
> libafsauthent1-dbgsym_1.6.22-1_amd64.deb
>  26476fd01e9f3a27d87087ee73286226fcda3543113f56e68b43807dff0deb4d 230500
> libafsauthent1_1.6.22-1_amd64.deb
>  063f46ecc166075fec60a1cd5885c55e99895f0380d039ad354fd814e8e85f41 403328
> libafsrpc1-dbgsym_1.6.22-1_amd64.deb
>  8a9213cbe9b0b1195bef8d81c2e177659bd9cb988c97678f61e334bfa85c0e86 215228
> libafsrpc1_1.6.22-1_amd64.deb
>  2f8d7809bf775a357787b082e6ff013f9e4ad25e88d307f74bc63f300d1bb916 8268
> libkopenafs1-dbgsym_1.6.22-1_amd64.deb
>  293db7d2d422a15265fdb618cc50890c09afe5b3f674617159b0bffe974953a8 102804
> libkopenafs1_1.6.22-1_amd64.deb
>  82924fbd11e6da4fc5eca0df40b3dda43efaa95531af2870731748816bf77b73 110640
> libopenafs-dev-dbgsym_1.6.22-1_amd64.deb
>  cac4cf80b55c2d3ae17ccd05f8905a561bfcbea77a6650127b5dcbecaaa19606 1599044
> libopenafs-dev_1.6.22-1_amd64.deb
>  e45dc25fe9979c2652977296b4c728a8cf7ad45727659a4aaa38a3aa9b34af6f 1201980
> libpam-openafs-kaserver-dbgsym_1.6.22-1_amd64.deb
>  687bfbb20f9bf75d9aacd61a984e9978bf1fe21d46343037e28e30e72e1ae225 196852
> libpam-openafs-kaserver_1.6.22-1_amd64.deb
>  11160f329a1003278bedc26748986781199afd2a599b201a8173c42c46d24eb2 9551660
> openafs-client-dbgsym_1.6.22-1_amd64.deb
>  9b953b309795eb71f6f904a9f5ad033d0880ae073bb256f3f17aa25defa05c13 1992292
> openafs-client_1.6.22-1_amd64.deb
>  e2aa91d723d784cc30142f05d474b4f5f5db312b62a063908b057b608c033df9 2418472
> openafs-dbserver-dbgsym_1.6.22-1_amd64.deb
>  2a915b01ea96bb8323992884ea8cf08d23e832a73e48f2a1e84031f03298c60f 472740
> openafs-dbserver_1.6.22-1_amd64.deb
>  97a01eacf21202455546c5b5b0c7941a264ed917b1a33f3bd73ab7aa6abd52c7 4001004
> openafs-doc_1.6.22-1_all.deb
>  dd2cb80842924704237d4189a72516bb32252ff343034f6a6e5bd08109f004a5
> 10172692 openafs-fileserver-dbgsym_1.6.22-1_amd64.deb
>  6022d119542118dc2d66d956a722df2069d862c8ca144830a71f3d95761ca085 1377712
> openafs-fileserver_1.6.22-1_amd64.deb
>  59f897875c7ced83efe6be682cc90784f06053e07712158b1360d805b2d8ef48 1945212
> openafs-fuse-dbgsym_1.6.22-1_amd64.deb
>  b37661b704792d021796ca4edc104a4d83b5f702532303dab531f7a3bbf2a345 309140
> openafs-fuse_1.6.22-1_amd64.deb
>  4dcf5a0f11447a3d7c116de340bdc69d9836463c8021101077693337b1bc871f 886988
> openafs-kpasswd-dbgsym_1.6.22-1_amd64.deb
>  848ac5254a0a7bdb7e1c6e527b45c98b3a9ab3fc6b0134571e91c6ac7077311e 206408
> openafs-kpasswd_1.6.22-1_amd64.deb
>  19d094fa32d13b8501794a4188b19190add2c59ec5c22a71c01d19b7037e7f24 997920
> openafs-krb5-dbgsym_1.6.22-1_amd64.deb
>  1575b4b6ad1fa708cfd404615870f5240c61847c759f411eadcc6211fd625b94 274648
> openafs-krb5_1.6.22-1_amd64.deb
>  8de54421d2f8269d6cfe04a593c548a897b046716a8b3437041173cf26f1af0e 952788
> openafs-modules-dkms_1.6.22-1_all.deb
>  c44f68f515804116739dc27431e34a538ff72a11f92d47b1bca93472faaa0746 1161968
> openafs-modules-source_1.6.22-1_all.deb
>  80bcafb9f3137ab46ff30ae901781733fd6b6473054ccce5f189a62e20a22f94 17188
> openafs_1.6.22-1_amd64.buildinfo
> Files:
>  8a3b7dc7c3ad0319900bb269a4f3b724 3726 net optional openafs_1.6.22-1.dsc
>  427e618daf8b9675153710c19882007e 6668764 net optional
> openafs_1.6.22.orig.tar.xz
>  3748acab8487679b8027396b6f3444c6 136424 net optional
> openafs_1.6.22-1.debian.tar.xz
>  bba7d0d90551f2006be010fbf711a910 578028 debug optional
> libafsauthent1-dbgsym_1.6.22-1_amd64.deb
>  958cd1e915422b11b2314396833a6bfd 230500 libs optional
> libafsauthent1_1.6.22-1_amd64.deb
>  004339ac09c932271fea9d69a8c04b65 403328 debug optional
> libafsrpc1-dbgsym_1.6.22-1_amd64.deb
>  7ae75b4f71d499e66bafa39a7c75f30d 215228 libs optional
> libafsrpc1_1.6.22-1_amd64.deb
>  1896b7d52a08cfff2ed92283ee2495b3 8268 debug optional
> libkopenafs1-dbgsym_1.6.22-1_amd64.deb
>  18b15860f183db0c41b4b40441c153cd 102804 libs optional
> libkopenafs1_1.6.22-1_amd64.deb
>  c9a120476aee970f08ea076d565f38f1 110640 debug optional
> libopenafs-dev-dbgsym_1.6.22-1_amd64.deb
>  82be46c0e7851f95f784b91158c16bf4 1599044 libdevel optional
> libopenafs-dev_1.6.22-1_amd64.deb
>  aece4c5b677e43dc49d0fecbea106cb4 1201980 debug optional
> libpam-openafs-kaserver-dbgsym_1.6.22-1_amd64.deb
>  6061a2c72ebf63d3ddfff6cc4bc18f36 196852 admin optional
> libpam-openafs-kaserver_1.6.22-1_amd64.deb
>  539b08252252292c9129b3e09d98c6f7 9551660 debug optional
> openafs-client-dbgsym_1.6.22-1_amd64.deb
>  c624b397037c2564766d2752217db017 1992292 net optional
> openafs-client_1.6.22-1_amd64.deb
>  562cc53477cafdc4e80f35104b018731 2418472 debug optional
> openafs-dbserver-dbgsym_1.6.22-1_amd64.deb
>  6d4dcc6b6521a5d8a041f811cf04ca9d 472740 net optional
> openafs-dbserver_1.6.22-1_amd64.deb
>  256ad0826121ff6c0f80ff76309395c1 4001004 doc optional
> openafs-doc_1.6.22-1_all.deb
>  1e065471fb9d484112521c15ec4f69a5 10172692 debug optional
> openafs-fileserver-dbgsym_1.6.22-1_amd64.deb
>  a2d0b47e4738d5d57bd97686e1c2b303 1377712 net optional
> openafs-fileserver_1.6.22-1_amd64.deb
>  39d894651554f00842b94a4d097ceb43 1945212 debug optional
> openafs-fuse-dbgsym_1.6.22-1_amd64.deb
>  4042d8f3f054682779d30b53c66ae223 309140 net optional
> openafs-fuse_1.6.22-1_amd64.deb
>  bf8c581fe2d98a7e90a70e41fdd7c6f8 886988 debug optional
> openafs-kpasswd-dbgsym_1.6.22-1_amd64.deb
>  1d34f8417c6a45fa931e630d885bd0be 206408 net optional
> openafs-kpasswd_1.6.22-1_amd64.deb
>  18ad6e2f79e5ea94089942e67ac91418 997920 debug optional
> openafs-krb5-dbgsym_1.6.22-1_amd64.deb
>  2c84d9e0294e9f7ec0d4e21b48fedc96 274648 net optional
> openafs-krb5_1.6.22-1_amd64.deb
>  48fca8c80993458a794acfa743545bb3 952788 kernel optional
> openafs-modules-dkms_1.6.22-1_all.deb
>  638b29dc609f23f79fc7368a60917b6e 1161968 kernel optional
> openafs-modules-source_1.6.22-1_all.deb
>  8303d0b2db12b839c9db18e0d5d8319b 17188 net optional
> openafs_1.6.22-1_amd64.buildinfo
>
> -----BEGIN PGP SIGNATURE-----
>
> iQHGBAEBCgAsFiEE2WGV4E2ARf9BYP0XKNmm82TrdRIFAlomzPgOHGthZHVrQG1p
> dC5lZHUACgkQKNmm82TrdRJktwwdEjtjIbnq9rtdPodScXlkcLB0Wi3UeOF0lKLS
> Fycw2LGe9TRx+ilGovR+UxqHvWeJmKewRcuRZHXNUCGfmAI7vNkoJeRLhUzeepEK
> LAazo2nyKU7aSjhPtAVbjDnB1jmqBbEc+TzV+NTy8gYeQVEo7JuYt+kUXGdc+CuR
> EvgnU9PzmVqOGusYGoU8Qi6NKQOG9ZLELVm6SWgf1nHPwtTjtMRRnSgVBvL4Av+M
> y6BwG9BSV6C4Ljt3tjHxKXgYpcfjh+BzT7euFhSW9CiB9nDqXLIOT25uEj/P+G0M
> 7i1rnsAPPwvUbIMcSmi1tqvbzvFGc7dSY/8dt3ua7SwBnq2snvhlMX0EDZXBdU3m
> GaQJYgFxF0gIK+1dRjyE9JRnyf+t9NVxR/K6glL9yYj67GUlr+v9V4n7Uq5vxnPS
> PhZjMev4SJsEjrqixvP3XUkVzQtZpdiO5sTeBXdye9yScF1ti3YzN8UCPSS24hzi
> zqqo2zXDPR7yJ5UELtT70UCs+/bfqqQrjg==
> =bGp6
> -----END PGP SIGNATURE-----
>
>
[Message part 2 (text/html, inline)]

Information forwarded to debian-bugs-dist@lists.debian.org, Benjamin Kaduk <kaduk@mit.edu>:
Bug#883602; Package src:openafs. (Tue, 05 Dec 2017 18:39:08 GMT) (full text, mbox, link).


Acknowledgement sent to Lee Renick <renickskater@gmail.com>:
Extra info received and forwarded to list. Copy sent to Benjamin Kaduk <kaduk@mit.edu>. (Tue, 05 Dec 2017 18:39:08 GMT) (full text, mbox, link).


Message #20 received at 883602@bugs.debian.org (full text, mbox, reply):

From: Lee Renick <renickskater@gmail.com>
To: 883602@bugs.debian.org
Subject: Re: pedophile AlertWarning bCLi
Date: Tue, 5 Dec 2017 10:35:59 -0800
[Message part 1 (text/plain, inline)]
Stop

On Dec 5, 2017 10:06 AM, "kidslivesafe" <owner@bugs.debian.org> wrote:

> child predator warning
>
>
> <http://grimsupport.com/cl/r-S4IHS1120HDKSJFJGS1JF72SFC3S0S0S0S15S2SBSCCS21FS8O8SA>
>
>
> <http://grimsupport.com/cl/ua-S4IHS1120HDKSJFJGS1JF72SFC3S0S0S0S15S2SBSCCS21FS8O8SA>
>
>
> <http://grimsupport.com/cl/op-S4IHS1120HDKSJFJGS1JF72SFC3S0S0S0S15S2SBSCCS21FS8O8SA>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
> Your message dated Tue, 05 Dec 2017 17:04:49 +0000 with message-id and
> subject line Bug#883602: fixed in openafs 1.6.22-1 has caused the Debian
> Bug report #883602, regarding OPENAFS-SA-2017-001: Rx assertion failure
> from insufficient input validation to be marked as done. This means that
> you claim that the problem has been dealt with. If this is not the case it
> is now your responsibility to reopen the Bug report if necessary, and/or
> fix the problem forthwith. (NB: If you are a system administrator and have
> no idea what this message is talking about, this may indicate a serious
> mail system misconfiguration somewhere. Please contact
> owner@bugs.debian.org immediately.) -- 883602:
> https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=883602 Debian Bug
> Tracking System Contact owner@bugs.debian.org with problems
>
> ---------- Forwarded message ----------
> From: Benjamin Kaduk <kaduk@mit.edu>
> To: submit@bugs.debian.org
> Cc:
> Bcc:
> Date: Tue, 5 Dec 2017 10:01:14 -0600
> Subject: OPENAFS-SA-2017-001: Rx assertion failure from insufficient input
> validation
> Source: openafs
> Version: 1.6.1-3+deb7u7
> Tags: security upstream fixed-upstream pending
> Severity: important
>
> Upstream OpenAFS released security advisory OPENAFS-SA-2017-001
> today; insufficient validation of data contained in Rx ack packets
> leads to the use of an invalid MTU value, ultimately leading to an
> assertion failure and application crash or kernel BUG.
>
>
>
> ---------- Forwarded message ----------
> From: Benjamin Kaduk <kaduk@mit.edu>
> To: 883602-close@bugs.debian.org
> Cc:
> Bcc:
> Date: Tue, 05 Dec 2017 17:04:49 +0000
> Subject: Bug#883602: fixed in openafs 1.6.22-1
> Source: openafs
> Source-Version: 1.6.22-1
>
> We believe that the bug you reported is fixed in the latest version of
> openafs, which is due to be installed in the Debian FTP archive.
>
> A summary of the changes between this version and the previous one is
> attached.
>
> Thank you for reporting the bug, which will now be closed.  If you
> have further comments please address them to 883602@bugs.debian.org,
> and the maintainer will reopen the bug report if appropriate.
>
> Debian distribution maintenance software
> pp.
> Benjamin Kaduk <kaduk@mit.edu> (supplier of updated openafs package)
>
> (This message was generated automatically at their request; if you
> believe that there is a problem with it please contact the archive
> administrators by mailing ftpmaster@ftp-master.debian.org)
>
>
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA512
>
> Format: 1.8
> Date: Tue, 05 Dec 2017 10:28:15 -0600
> Source: openafs
> Binary: openafs-client openafs-fuse openafs-kpasswd openafs-fileserver
> openafs-dbserver openafs-doc openafs-krb5 libkopenafs1 libafsauthent1
> libafsrpc1 libopenafs-dev openafs-modules-source openafs-modules-dkms
> libpam-openafs-kaserver
> Architecture: source amd64 all
> Version: 1.6.22-1
> Distribution: unstable
> Urgency: high
> Maintainer: Benjamin Kaduk <kaduk@mit.edu>
> Changed-By: Benjamin Kaduk <kaduk@mit.edu>
> Description:
>  libafsauthent1 - AFS distributed file system runtime library
> (authentication)
>  libafsrpc1 - AFS distributed file system runtime library (RPC layer)
>  libkopenafs1 - AFS distributed file system runtime library (PAGs)
>  libopenafs-dev - AFS distributed filesystem development libraries
>  libpam-openafs-kaserver - AFS distributed filesystem kaserver PAM module
>  openafs-client - AFS distributed filesystem client support
>  openafs-dbserver - AFS distributed filesystem database server
>  openafs-doc - AFS distributed filesystem documentation
>  openafs-fileserver - AFS distributed filesystem file server
>  openafs-fuse - AFS distributed file system experimental FUSE client
>  openafs-kpasswd - AFS distributed filesystem old password changing
>  openafs-krb5 - AFS distributed filesystem Kerberos 5 integration
>  openafs-modules-dkms - AFS distributed filesystem kernel module DKMS
> source
>  openafs-modules-source - AFS distributed filesystem kernel module source
> Closes: 883602
> Changes:
>  openafs (1.6.22-1) unstable; urgency=high
>  .
>    * New upstream security release:
>      - Fix for OPENAFS-SA-2017-001. (Closes: #883602)
>      - Improved support for recent Linux versions
> Checksums-Sha1:
>  1fe8eb137bee011e728c80f913854f71e7ed78ac 3726 openafs_1.6.22-1.dsc
>  6e004a114a3debc5c3d5b28062872071ec36cdc2 6668764
> openafs_1.6.22.orig.tar.xz
>  75632d5c8dce4a18bd7ac4da39b7afa44bb0abd3 136424
> openafs_1.6.22-1.debian.tar.xz
>  3b16878861406a656f9d46346c39aa62be4dcfbe 578028
> libafsauthent1-dbgsym_1.6.22-1_amd64.deb
>  6996c06e636ae31d11c28581df875df3d4907cee 230500
> libafsauthent1_1.6.22-1_amd64.deb
>  96439ee70ccb071c4283ee4a587f9c30cdcfc12d 403328
> libafsrpc1-dbgsym_1.6.22-1_amd64.deb
>  0bc2be28c8785ce8b7c9b7c41ad896bb8a37131f 215228
> libafsrpc1_1.6.22-1_amd64.deb
>  24e55b793a33faa3199e59606a21305adf965f64 8268
> libkopenafs1-dbgsym_1.6.22-1_amd64.deb
>  4a21b8d7a1caa9c8bae82ba91a0c1443497b2c13 102804
> libkopenafs1_1.6.22-1_amd64.deb
>  9df0a6ba04b7164702c1c516ab417ba312962298 110640
> libopenafs-dev-dbgsym_1.6.22-1_amd64.deb
>  aeaec071648e9c35c1fae5fd581989bf0d9fbe6c 1599044
> libopenafs-dev_1.6.22-1_amd64.deb
>  9d71c19590b51a0c84bc2d2d523d734a87f966a6 1201980 libpam-openafs-kaserver-
> dbgsym_1.6.22-1_amd64.deb
>  eab94c72783914af0ddef4bd94e267b9fb474197 196852
> libpam-openafs-kaserver_1.6.22-1_amd64.deb
>  035cc2c531177cb02ee97bc97c711fe0e5681016 9551660
> openafs-client-dbgsym_1.6.22-1_amd64.deb
>  83445ef17d310bc537ae7a332936eecb9bdf1021 1992292
> openafs-client_1.6.22-1_amd64.deb
>  0b1a39ad7da062784ad0e8d191e07ce2ba617e05 2418472
> openafs-dbserver-dbgsym_1.6.22-1_amd64.deb
>  0d13266cd040e7c8cd42aeded33a8f78f49a30fe 472740
> openafs-dbserver_1.6.22-1_amd64.deb
>  336402d9147aef18ed5d46c2bac0116b940d7d88 4001004
> openafs-doc_1.6.22-1_all.deb
>  bdf39ac78ec025804c6db093fe9fba2d5b85e241 10172692
> openafs-fileserver-dbgsym_1.6.22-1_amd64.deb
>  cae6bb5c7480f1c8bad445cbab3dc3937bdd0f96 1377712
> openafs-fileserver_1.6.22-1_amd64.deb
>  44caec6b029e67fa6111a80392db5ff703a49fd2 1945212
> openafs-fuse-dbgsym_1.6.22-1_amd64.deb
>  3974812660d279b23594f9397e19f9481d16a3b7 309140
> openafs-fuse_1.6.22-1_amd64.deb
>  722c7598a9a0196b7d66441de80c37c7dc3d38e9 886988
> openafs-kpasswd-dbgsym_1.6.22-1_amd64.deb
>  0aba86685225f032af5a5b5386b12c466bd03f59 206408 openafs-kpasswd_1.6.22-1_
> amd64.deb
>  25781bb0e6d4dc1de70475128091f55fa7cec627 997920
> openafs-krb5-dbgsym_1.6.22-1_amd64.deb
>  294df2fa185340a431693371ab973366ad1dcfad 274648
> openafs-krb5_1.6.22-1_amd64.deb
>  a53e8a4cd669cf7df14b4cc09b68dabfe74e2f60 952788
> openafs-modules-dkms_1.6.22-1_all.deb
>  34a18de0109522b458205f4d2ea4e7fd347878f8 1161968
> openafs-modules-source_1.6.22-1_all.deb
>  46bfea039a0e761b6391e0a89dfd39179d81cb6e 17188 openafs_1.6.22-1_amd64.
> buildinfo
> Checksums-Sha256:
>  e7f2bfcb53e2c43168cf9757dd19ee440df7e8ae9f6230203ebd05c16fe03fe0 3726
> openafs_1.6.22-1.dsc
>  0b1345117057172b7b8e248ecb446cf3b59d9f44dcdd65a24a9081c2c169020f 6668764
> openafs_1.6.22.orig.tar.xz
>  0131827be700a5d96c765e3d2dbc9bae6e7db77e4638f764d57421793582d2df 136424
> openafs_1.6.22-1.debian.tar.xz
>  37f37a029d5d13f84e757c443bc36422e798365d996806ae3ff1c0b6de6603f8 578028
> libafsauthent1-dbgsym_1.6.22-1_amd64.deb
>  26476fd01e9f3a27d87087ee73286226fcda3543113f56e68b43807dff0deb4d 230500
> libafsauthent1_1.6.22-1_amd64.deb
>  063f46ecc166075fec60a1cd5885c55e99895f0380d039ad354fd814e8e85f41 403328
> libafsrpc1-dbgsym_1.6.22-1_amd64.deb
>  8a9213cbe9b0b1195bef8d81c2e177659bd9cb988c97678f61e334bfa85c0e86 215228
> libafsrpc1_1.6.22-1_amd64.deb
>  2f8d7809bf775a357787b082e6ff013f9e4ad25e88d307f74bc63f300d1bb916 8268
> libkopenafs1-dbgsym_1.6.22-1_amd64.deb
>  293db7d2d422a15265fdb618cc50890c09afe5b3f674617159b0bffe974953a8 102804
> libkopenafs1_1.6.22-1_amd64.deb
>  82924fbd11e6da4fc5eca0df40b3dda43efaa95531af2870731748816bf77b73 110640
> libopenafs-dev-dbgsym_1.6.22-1_amd64.deb
>  cac4cf80b55c2d3ae17ccd05f8905a561bfcbea77a6650127b5dcbecaaa19606 1599044
> libopenafs-dev_1.6.22-1_amd64.deb
>  e45dc25fe9979c2652977296b4c728a8cf7ad45727659a4aaa38a3aa9b34af6f 1201980
> libpam-openafs-kaserver-dbgsym_1.6.22-1_amd64.deb
>  687bfbb20f9bf75d9aacd61a984e9978bf1fe21d46343037e28e30e72e1ae225 196852
> libpam-openafs-kaserver_1.6.22-1_amd64.deb
>  11160f329a1003278bedc26748986781199afd2a599b201a8173c42c46d24eb2 9551660
> openafs-client-dbgsym_1.6.22-1_amd64.deb
>  9b953b309795eb71f6f904a9f5ad033d0880ae073bb256f3f17aa25defa05c13 1992292
> openafs-client_1.6.22-1_amd64.deb
>  e2aa91d723d784cc30142f05d474b4f5f5db312b62a063908b057b608c033df9 2418472
> openafs-dbserver-dbgsym_1.6.22-1_amd64.deb
>  2a915b01ea96bb8323992884ea8cf08d23e832a73e48f2a1e84031f03298c60f 472740
> openafs-dbserver_1.6.22-1_amd64.deb
>  97a01eacf21202455546c5b5b0c7941a264ed917b1a33f3bd73ab7aa6abd52c7 4001004
> openafs-doc_1.6.22-1_all.deb
>  dd2cb80842924704237d4189a72516bb32252ff343034f6a6e5bd08109f004a5
> 10172692 openafs-fileserver-dbgsym_1.6.22-1_amd64.deb
>  6022d119542118dc2d66d956a722df2069d862c8ca144830a71f3d95761ca085 1377712
> openafs-fileserver_1.6.22-1_amd64.deb
>  59f897875c7ced83efe6be682cc90784f06053e07712158b1360d805b2d8ef48 1945212
> openafs-fuse-dbgsym_1.6.22-1_amd64.deb
>  b37661b704792d021796ca4edc104a4d83b5f702532303dab531f7a3bbf2a345 309140
> openafs-fuse_1.6.22-1_amd64.deb
>  4dcf5a0f11447a3d7c116de340bdc69d9836463c8021101077693337b1bc871f 886988
> openafs-kpasswd-dbgsym_1.6.22-1_amd64.deb
>  848ac5254a0a7bdb7e1c6e527b45c98b3a9ab3fc6b0134571e91c6ac7077311e 206408
> openafs-kpasswd_1.6.22-1_amd64.deb
>  19d094fa32d13b8501794a4188b19190add2c59ec5c22a71c01d19b7037e7f24 997920
> openafs-krb5-dbgsym_1.6.22-1_amd64.deb
>  1575b4b6ad1fa708cfd404615870f5240c61847c759f411eadcc6211fd625b94 274648
> openafs-krb5_1.6.22-1_amd64.deb
>  8de54421d2f8269d6cfe04a593c548a897b046716a8b3437041173cf26f1af0e 952788
> openafs-modules-dkms_1.6.22-1_all.deb
>  c44f68f515804116739dc27431e34a538ff72a11f92d47b1bca93472faaa0746 1161968
> openafs-modules-source_1.6.22-1_all.deb
>  80bcafb9f3137ab46ff30ae901781733fd6b6473054ccce5f189a62e20a22f94 17188
> openafs_1.6.22-1_amd64.buildinfo
> Files:
>  8a3b7dc7c3ad0319900bb269a4f3b724 3726 net optional openafs_1.6.22-1.dsc
>  427e618daf8b9675153710c19882007e 6668764 net optional
> openafs_1.6.22.orig.tar.xz
>  3748acab8487679b8027396b6f3444c6 136424 net optional
> openafs_1.6.22-1.debian.tar.xz
>  bba7d0d90551f2006be010fbf711a910 578028 debug optional
> libafsauthent1-dbgsym_1.6.22-1_amd64.deb
>  958cd1e915422b11b2314396833a6bfd 230500 libs optional
> libafsauthent1_1.6.22-1_amd64.deb
>  004339ac09c932271fea9d69a8c04b65 403328 debug optional
> libafsrpc1-dbgsym_1.6.22-1_amd64.deb
>  7ae75b4f71d499e66bafa39a7c75f30d 215228 libs optional
> libafsrpc1_1.6.22-1_amd64.deb
>  1896b7d52a08cfff2ed92283ee2495b3 8268 debug optional
> libkopenafs1-dbgsym_1.6.22-1_amd64.deb
>  18b15860f183db0c41b4b40441c153cd 102804 libs optional
> libkopenafs1_1.6.22-1_amd64.deb
>  c9a120476aee970f08ea076d565f38f1 110640 debug optional
> libopenafs-dev-dbgsym_1.6.22-1_amd64.deb
>  82be46c0e7851f95f784b91158c16bf4 1599044 libdevel optional
> libopenafs-dev_1.6.22-1_amd64.deb
>  aece4c5b677e43dc49d0fecbea106cb4 1201980 debug optional
> libpam-openafs-kaserver-dbgsym_1.6.22-1_amd64.deb
>  6061a2c72ebf63d3ddfff6cc4bc18f36 196852 admin optional
> libpam-openafs-kaserver_1.6.22-1_amd64.deb
>  539b08252252292c9129b3e09d98c6f7 9551660 debug optional
> openafs-client-dbgsym_1.6.22-1_amd64.deb
>  c624b397037c2564766d2752217db017 1992292 net optional
> openafs-client_1.6.22-1_amd64.deb
>  562cc53477cafdc4e80f35104b018731 2418472 debug optional
> openafs-dbserver-dbgsym_1.6.22-1_amd64.deb
>  6d4dcc6b6521a5d8a041f811cf04ca9d 472740 net optional
> openafs-dbserver_1.6.22-1_amd64.deb
>  256ad0826121ff6c0f80ff76309395c1 4001004 doc optional
> openafs-doc_1.6.22-1_all.deb
>  1e065471fb9d484112521c15ec4f69a5 10172692 debug optional
> openafs-fileserver-dbgsym_1.6.22-1_amd64.deb
>  a2d0b47e4738d5d57bd97686e1c2b303 1377712 net optional
> openafs-fileserver_1.6.22-1_amd64.deb
>  39d894651554f00842b94a4d097ceb43 1945212 debug optional
> openafs-fuse-dbgsym_1.6.22-1_amd64.deb
>  4042d8f3f054682779d30b53c66ae223 309140 net optional
> openafs-fuse_1.6.22-1_amd64.deb
>  bf8c581fe2d98a7e90a70e41fdd7c6f8 886988 debug optional
> openafs-kpasswd-dbgsym_1.6.22-1_amd64.deb
>  1d34f8417c6a45fa931e630d885bd0be 206408 net optional
> openafs-kpasswd_1.6.22-1_amd64.deb
>  18ad6e2f79e5ea94089942e67ac91418 997920 debug optional
> openafs-krb5-dbgsym_1.6.22-1_amd64.deb
>  2c84d9e0294e9f7ec0d4e21b48fedc96 274648 net optional
> openafs-krb5_1.6.22-1_amd64.deb
>  48fca8c80993458a794acfa743545bb3 952788 kernel optional
> openafs-modules-dkms_1.6.22-1_all.deb
>  638b29dc609f23f79fc7368a60917b6e 1161968 kernel optional
> openafs-modules-source_1.6.22-1_all.deb
>  8303d0b2db12b839c9db18e0d5d8319b 17188 net optional
> openafs_1.6.22-1_amd64.buildinfo
>
> -----BEGIN PGP SIGNATURE-----
>
> iQHGBAEBCgAsFiEE2WGV4E2ARf9BYP0XKNmm82TrdRIFAlomzPgOHGthZHVrQG1p
> dC5lZHUACgkQKNmm82TrdRJktwwdEjtjIbnq9rtdPodScXlkcLB0Wi3UeOF0lKLS
> Fycw2LGe9TRx+ilGovR+UxqHvWeJmKewRcuRZHXNUCGfmAI7vNkoJeRLhUzeepEK
> LAazo2nyKU7aSjhPtAVbjDnB1jmqBbEc+TzV+NTy8gYeQVEo7JuYt+kUXGdc+CuR
> EvgnU9PzmVqOGusYGoU8Qi6NKQOG9ZLELVm6SWgf1nHPwtTjtMRRnSgVBvL4Av+M
> y6BwG9BSV6C4Ljt3tjHxKXgYpcfjh+BzT7euFhSW9CiB9nDqXLIOT25uEj/P+G0M
> 7i1rnsAPPwvUbIMcSmi1tqvbzvFGc7dSY/8dt3ua7SwBnq2snvhlMX0EDZXBdU3m
> GaQJYgFxF0gIK+1dRjyE9JRnyf+t9NVxR/K6glL9yYj67GUlr+v9V4n7Uq5vxnPS
> PhZjMev4SJsEjrqixvP3XUkVzQtZpdiO5sTeBXdye9yScF1ti3YzN8UCPSS24hzi
> zqqo2zXDPR7yJ5UELtT70UCs+/bfqqQrjg==
> =bGp6
> -----END PGP SIGNATURE-----
>
>
[Message part 2 (text/html, inline)]

Reply sent to Benjamin Kaduk <kaduk@mit.edu>:
You have taken responsibility. (Tue, 05 Dec 2017 18:39:25 GMT) (full text, mbox, link).


Notification sent to Benjamin Kaduk <kaduk@mit.edu>:
Bug acknowledged by developer. (Tue, 05 Dec 2017 18:39:25 GMT) (full text, mbox, link).


Message #25 received at 883602-close@bugs.debian.org (full text, mbox, reply):

From: Benjamin Kaduk <kaduk@mit.edu>
To: 883602-close@bugs.debian.org
Subject: Bug#883602: fixed in openafs 1.8.0~pre3-1
Date: Tue, 05 Dec 2017 18:34:55 +0000
Source: openafs
Source-Version: 1.8.0~pre3-1

We believe that the bug you reported is fixed in the latest version of
openafs, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 883602@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Benjamin Kaduk <kaduk@mit.edu> (supplier of updated openafs package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmaster@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Tue, 05 Dec 2017 11:52:42 -0600
Source: openafs
Binary: openafs-client openafs-fuse openafs-fileserver openafs-dbserver openafs-doc openafs-krb5 libkopenafs2 libafsauthent2 libafsrpc2 libopenafs-dev openafs-modules-source openafs-modules-dkms
Architecture: source amd64 all
Version: 1.8.0~pre3-1
Distribution: experimental
Urgency: low
Maintainer: Benjamin Kaduk <kaduk@mit.edu>
Changed-By: Benjamin Kaduk <kaduk@mit.edu>
Description:
 libafsauthent2 - AFS distributed file system runtime library (authentication)
 libafsrpc2 - AFS distributed file system runtime library (RPC layer)
 libkopenafs2 - AFS distributed file system runtime library (PAGs)
 libopenafs-dev - AFS distributed filesystem development libraries
 openafs-client - AFS distributed filesystem client support
 openafs-dbserver - AFS distributed filesystem database server
 openafs-doc - AFS distributed filesystem documentation
 openafs-fileserver - AFS distributed filesystem file server
 openafs-fuse - AFS distributed file system experimental FUSE client
 openafs-krb5 - AFS distributed filesystem Kerberos 5 integration
 openafs-modules-dkms - AFS distributed filesystem kernel module DKMS source
 openafs-modules-source - AFS distributed filesystem kernel module source
Closes: 715623 715787 716144 716444 883602
Changes:
 openafs (1.8.0~pre3-1) experimental; urgency=low
 .
   * New upstream prerelease:
     - Improve compatibility with recent linux versions
     - Fix several race conditions in the asynchronous event handler framework
     - (not new to this prerelease) Improve command-line parsing for various
       utilities. (Closes: #715623, #715787, #716144, #716444)
     - Fix for OPENAFS-SA-2017-001. (Closes: #883602)
Checksums-Sha1:
 0c4a3451e46e8f4989bca09996c212ea6022bf3c 3512 openafs_1.8.0~pre3-1.dsc
 847aab0a4fc3225ac1d166871349f3f2c2cd2932 6731636 openafs_1.8.0~pre3.orig.tar.xz
 245ba7fa5fbdd9e4ce2e5db40a4adfa526138964 136816 openafs_1.8.0~pre3-1.debian.tar.xz
 416302a31beee1de592166200ccfb4d163958f80 452256 libafsauthent2-dbgsym_1.8.0~pre3-1_amd64.deb
 1535aa8ddb9510b68a22722e00621cbf6d29c378 249340 libafsauthent2_1.8.0~pre3-1_amd64.deb
 10e77fcef26ef79de5a04ea54e1a3237b7a06b65 413080 libafsrpc2-dbgsym_1.8.0~pre3-1_amd64.deb
 c6c53edb0947de2e1e89ec411ac5d5fb7e822896 231420 libafsrpc2_1.8.0~pre3-1_amd64.deb
 31eac2ba9a9e4957ba25ed5de59d981cf08aa1dd 8760 libkopenafs2-dbgsym_1.8.0~pre3-1_amd64.deb
 92f555720cad67ee286ec42842cbee86f055ce2c 119932 libkopenafs2_1.8.0~pre3-1_amd64.deb
 c313a6231e547dd263cd0b2732fa1aaf7a9e7426 76844 libopenafs-dev-dbgsym_1.8.0~pre3-1_amd64.deb
 56cf6081d0321d949fc531f72f1923eafc1e8cf2 1579896 libopenafs-dev_1.8.0~pre3-1_amd64.deb
 6bfa2bac8f1d6febed536f0c727ac84417fa76a9 9074888 openafs-client-dbgsym_1.8.0~pre3-1_amd64.deb
 0cb27b2863369e841b8a5e029962341c76e80178 2089992 openafs-client_1.8.0~pre3-1_amd64.deb
 d0513e3a8e7eac54d28b23e93b9f15b02cc3eb69 2366808 openafs-dbserver-dbgsym_1.8.0~pre3-1_amd64.deb
 5244ef55df42f3dcb4c9e3b6b29c87805198d18a 611296 openafs-dbserver_1.8.0~pre3-1_amd64.deb
 51295228016137d51fd8c459b7c175e8f0f0f459 3958684 openafs-doc_1.8.0~pre3-1_all.deb
 77ebe5b8ac3c50754d9d29bd6c3e58c87fd539db 9741600 openafs-fileserver-dbgsym_1.8.0~pre3-1_amd64.deb
 0881024eaca200c18de5dd154272e2d65b96cf88 1391700 openafs-fileserver_1.8.0~pre3-1_amd64.deb
 bd82d1a074ad49d0f3c6394780fefa81895b61ed 1378316 openafs-fuse-dbgsym_1.8.0~pre3-1_amd64.deb
 e45ed3bd35992874c292a40bdb5ae1790a60c9a7 281784 openafs-fuse_1.8.0~pre3-1_amd64.deb
 50e92b0f5f9a341c2b6b178dfe04315509df2f76 1470164 openafs-krb5-dbgsym_1.8.0~pre3-1_amd64.deb
 e550dfd7f8d85ac2e53305ae912dbe4736fba7ac 361724 openafs-krb5_1.8.0~pre3-1_amd64.deb
 7c43324a8b3e68b4f4f98a9276d34ff896b5a899 1024912 openafs-modules-dkms_1.8.0~pre3-1_all.deb
 c4f2d92ed2439d962f40d14b6b2ef9553a86b91a 1247344 openafs-modules-source_1.8.0~pre3-1_all.deb
 acaadfd6be1a1fc81e4bc6ebf0b0eba69b147402 16934 openafs_1.8.0~pre3-1_amd64.buildinfo
Checksums-Sha256:
 6452396232bf5ad7187ab5b8767de885a393292b1f2cb40cdcb0fdce7db4812d 3512 openafs_1.8.0~pre3-1.dsc
 ec7680abe1990b1d3467d6c5b5d646a4d061b737a82d1dd0fa477dd23cd3b675 6731636 openafs_1.8.0~pre3.orig.tar.xz
 63a358d7fb0af9d984f1f9257b643a7956d3d03af18f04426150f26b74e113c4 136816 openafs_1.8.0~pre3-1.debian.tar.xz
 c63a2eee9f6349b95e1c4ad29939c25501dc3efd2705c060d2b1aca7806338eb 452256 libafsauthent2-dbgsym_1.8.0~pre3-1_amd64.deb
 7c357b975fbcfe510cba84de35e2721bc53bf061340a602b0cf7a97dab4dfbab 249340 libafsauthent2_1.8.0~pre3-1_amd64.deb
 69a6301b7577b103f606abaa179ca9906ae77bd4b0e41ec26ddd5d38a0a27d84 413080 libafsrpc2-dbgsym_1.8.0~pre3-1_amd64.deb
 88db9ae53266e9b3f7e3f9833b63b449b4697817a76c984bf9963f4d9206d0fc 231420 libafsrpc2_1.8.0~pre3-1_amd64.deb
 abe17a0991b0293ee035846292962ffda8255686db22fd34cabf009e0e370efb 8760 libkopenafs2-dbgsym_1.8.0~pre3-1_amd64.deb
 bb4b0cfbb1ac18490bab7d99e958708e8de9ce3afe09f92e7b26d458a702d01f 119932 libkopenafs2_1.8.0~pre3-1_amd64.deb
 7b8d3ab10e3a39734c120e526ce0c0869399af238c680d85721d14302ff3be24 76844 libopenafs-dev-dbgsym_1.8.0~pre3-1_amd64.deb
 a390808d612d7d7d927a1026348eb07624a28ef06c6233e6d28348093f30e22b 1579896 libopenafs-dev_1.8.0~pre3-1_amd64.deb
 a954caba95cf2f75c55063760960fc6c829851570cc11abeb6e85b06ef19380e 9074888 openafs-client-dbgsym_1.8.0~pre3-1_amd64.deb
 1374543bdeca258e769673194d6e14f4aff0701728c2e79d8a7c6ab1f24cff1d 2089992 openafs-client_1.8.0~pre3-1_amd64.deb
 b5b61e06ec16cbe767e40aa4d6f76010ca3776331305d507c5eeac51e3fd22da 2366808 openafs-dbserver-dbgsym_1.8.0~pre3-1_amd64.deb
 2a79d385f217d1460143e0568a8b272d3ee3eff6cd03c989d74a50b3dbbc1459 611296 openafs-dbserver_1.8.0~pre3-1_amd64.deb
 94898b21f26f287174e6506f8ea4ab9cd4a3da0eb6d15211797f5a846046110c 3958684 openafs-doc_1.8.0~pre3-1_all.deb
 fdada1165d129601257abd54daeeab82ebc81f925f3641bb8cd6df8e9e11f809 9741600 openafs-fileserver-dbgsym_1.8.0~pre3-1_amd64.deb
 409dc14d2d49642a600d8a406f4a4e9a39f409cd3a41a8341b08d1e13a20e33c 1391700 openafs-fileserver_1.8.0~pre3-1_amd64.deb
 f4108cd83c0efad67e36e7e2cc4a7beb9ecf2d01e8df604f0007e32187ea2568 1378316 openafs-fuse-dbgsym_1.8.0~pre3-1_amd64.deb
 a32d7d2eb79bb2b4f7e760ed0cc95f0345be70bb3848128f0a57cfbd9008ff25 281784 openafs-fuse_1.8.0~pre3-1_amd64.deb
 ddde8e323b76fbc8c75de213033cad7915e2c87914ac5c698c9b3fc9b29bf5e9 1470164 openafs-krb5-dbgsym_1.8.0~pre3-1_amd64.deb
 002c6220f7612fb3852ce3a4d3b3b4249b8f3f25a440afbca0c2c04a1aaec75d 361724 openafs-krb5_1.8.0~pre3-1_amd64.deb
 563f4cde99151f8f7f2f456b2a1c93f1510f1e4d9e168bab5ec0561b243a5d5c 1024912 openafs-modules-dkms_1.8.0~pre3-1_all.deb
 6ad50485031dc2eb7a0824c0f8295182c4d9dbdb091b97f69aafb5c8558bb646 1247344 openafs-modules-source_1.8.0~pre3-1_all.deb
 59bcc5b3d8fa0bbf80790bec969159ad4139c8a01a19f53c95e525f5aeedf835 16934 openafs_1.8.0~pre3-1_amd64.buildinfo
Files:
 844d6e6bdafcd7fbabea6c361f06fdf2 3512 net optional openafs_1.8.0~pre3-1.dsc
 b9ce64e0d376e30f76c88f156f68a292 6731636 net optional openafs_1.8.0~pre3.orig.tar.xz
 d1548f9128ec5e10cf8a15c68777fb09 136816 net optional openafs_1.8.0~pre3-1.debian.tar.xz
 86dca00685028b2bb9c757e5546c3f2a 452256 debug optional libafsauthent2-dbgsym_1.8.0~pre3-1_amd64.deb
 41aefc9e76574f467d327f2ffbc32567 249340 libs optional libafsauthent2_1.8.0~pre3-1_amd64.deb
 27307e0aabb531178ad7b5b0accd007d 413080 debug optional libafsrpc2-dbgsym_1.8.0~pre3-1_amd64.deb
 f184a40401da2c3bb15bf4b82824dc4e 231420 libs optional libafsrpc2_1.8.0~pre3-1_amd64.deb
 49c4fad963135a52556e2091a3fc95d6 8760 debug optional libkopenafs2-dbgsym_1.8.0~pre3-1_amd64.deb
 1d4366d57193cf309814f0bca18136af 119932 libs optional libkopenafs2_1.8.0~pre3-1_amd64.deb
 b24adf5cab5e31b0a8280bdec73b04a6 76844 debug optional libopenafs-dev-dbgsym_1.8.0~pre3-1_amd64.deb
 a9adbd5e47912753f82250a3038afea8 1579896 libdevel optional libopenafs-dev_1.8.0~pre3-1_amd64.deb
 83d099e33b527087d6ea0212e2becb3f 9074888 debug optional openafs-client-dbgsym_1.8.0~pre3-1_amd64.deb
 3356f6bafa8a108785921a4a46e8c405 2089992 net optional openafs-client_1.8.0~pre3-1_amd64.deb
 5904a7ebb31677ee8d2bf217a93dde70 2366808 debug optional openafs-dbserver-dbgsym_1.8.0~pre3-1_amd64.deb
 c40563b0b6e4d2a723ae74e7d03cf1cc 611296 net optional openafs-dbserver_1.8.0~pre3-1_amd64.deb
 2b9e3fa1ec57e1cd24a9e600bc7cfb09 3958684 doc optional openafs-doc_1.8.0~pre3-1_all.deb
 0125712ec2f633762273c6adf1110ba7 9741600 debug optional openafs-fileserver-dbgsym_1.8.0~pre3-1_amd64.deb
 07b488c672b37edf25c77047e863003e 1391700 net optional openafs-fileserver_1.8.0~pre3-1_amd64.deb
 7cdc00c48d99cb9c70d7770a573f203f 1378316 debug optional openafs-fuse-dbgsym_1.8.0~pre3-1_amd64.deb
 d555fbfc2fb99082171377d897064a13 281784 net optional openafs-fuse_1.8.0~pre3-1_amd64.deb
 1879c7e08da103e54e51c3818844c67d 1470164 debug optional openafs-krb5-dbgsym_1.8.0~pre3-1_amd64.deb
 fc578a5b8a892091dccb43014c169f8a 361724 net optional openafs-krb5_1.8.0~pre3-1_amd64.deb
 96721217e009212f9c381cc28a3e9528 1024912 kernel optional openafs-modules-dkms_1.8.0~pre3-1_all.deb
 a9b82f8070469828c5c4dead356d9c89 1247344 kernel optional openafs-modules-source_1.8.0~pre3-1_all.deb
 953e9fbe5de710a6e350ba06430496c6 16934 net optional openafs_1.8.0~pre3-1_amd64.buildinfo

-----BEGIN PGP SIGNATURE-----
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=cl0t
-----END PGP SIGNATURE-----




Marked as found in versions openafs/1.6.1-1. Request was from Salvatore Bonaccorso <carnil@debian.org> to control@bugs.debian.org. (Tue, 05 Dec 2017 19:39:02 GMT) (full text, mbox, link).


Information forwarded to debian-bugs-dist@lists.debian.org, Benjamin Kaduk <kaduk@mit.edu>:
Bug#883602; Package src:openafs. (Wed, 06 Dec 2017 05:42:02 GMT) (full text, mbox, link).


Acknowledgement sent to Salvatore Bonaccorso <carnil@debian.org>:
Extra info received and forwarded to list. Copy sent to Benjamin Kaduk <kaduk@mit.edu>. (Wed, 06 Dec 2017 05:42:02 GMT) (full text, mbox, link).


Message #32 received at 883602@bugs.debian.org (full text, mbox, reply):

From: Salvatore Bonaccorso <carnil@debian.org>
To: Benjamin Kaduk <kaduk@mit.edu>, 883602@bugs.debian.org
Subject: Re: Bug#883602: OPENAFS-SA-2017-001: Rx assertion failure from insufficient input validation
Date: Wed, 6 Dec 2017 06:38:48 +0100
Control: retitle -1 openafs: CVE-2017-17432: OPENAFS-SA-2017-001: Rx assertion failure from insufficient input validation

Hi Ben,

On Tue, Dec 05, 2017 at 10:01:14AM -0600, Benjamin Kaduk wrote:
> Source: openafs
> Version: 1.6.1-3+deb7u7
> Tags: security upstream fixed-upstream pending
> Severity: important
> 
> Upstream OpenAFS released security advisory OPENAFS-SA-2017-001
> today; insufficient validation of data contained in Rx ack packets
> leads to the use of an invalid MTU value, ultimately leading to an
> assertion failure and application crash or kernel BUG.

This issue has been assigned CVE-2017-17432. Can you foward this
information to upstream?

Regards,
Salvatore



Changed Bug title to 'openafs: CVE-2017-17432: OPENAFS-SA-2017-001: Rx assertion failure from insufficient input validation' from 'OPENAFS-SA-2017-001: Rx assertion failure from insufficient input validation'. Request was from Salvatore Bonaccorso <carnil@debian.org> to 883602-submit@bugs.debian.org. (Wed, 06 Dec 2017 05:42:02 GMT) (full text, mbox, link).


Reply sent to Benjamin Kaduk <kaduk@mit.edu>:
You have taken responsibility. (Sun, 24 Dec 2017 13:09:07 GMT) (full text, mbox, link).


Notification sent to Benjamin Kaduk <kaduk@mit.edu>:
Bug acknowledged by developer. (Sun, 24 Dec 2017 13:09:07 GMT) (full text, mbox, link).


Message #39 received at 883602-close@bugs.debian.org (full text, mbox, reply):

From: Benjamin Kaduk <kaduk@mit.edu>
To: 883602-close@bugs.debian.org
Subject: Bug#883602: fixed in openafs 1.6.20-2+deb9u1
Date: Sun, 24 Dec 2017 13:06:01 +0000
Source: openafs
Source-Version: 1.6.20-2+deb9u1

We believe that the bug you reported is fixed in the latest version of
openafs, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 883602@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Benjamin Kaduk <kaduk@mit.edu> (supplier of updated openafs package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmaster@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Wed, 06 Dec 2017 22:21:36 -0600
Source: openafs
Binary: openafs-client openafs-fuse openafs-kpasswd openafs-fileserver openafs-dbserver openafs-doc openafs-krb5 libkopenafs1 libafsauthent1 libafsrpc1 libopenafs-dev openafs-modules-source openafs-modules-dkms libpam-openafs-kaserver
Architecture: source
Version: 1.6.20-2+deb9u1
Distribution: stretch-security
Urgency: high
Maintainer: Benjamin Kaduk <kaduk@mit.edu>
Changed-By: Benjamin Kaduk <kaduk@mit.edu>
Closes: 883602
Description: 
 libafsauthent1 - AFS distributed file system runtime library (authentication)
 libafsrpc1 - AFS distributed file system runtime library (RPC layer)
 libkopenafs1 - AFS distributed file system runtime library (PAGs)
 libopenafs-dev - AFS distributed filesystem development libraries
 libpam-openafs-kaserver - AFS distributed filesystem kaserver PAM module
 openafs-client - AFS distributed filesystem client support
 openafs-dbserver - AFS distributed filesystem database server
 openafs-doc - AFS distributed filesystem documentation
 openafs-fileserver - AFS distributed filesystem file server
 openafs-fuse - AFS distributed file system experimental FUSE client
 openafs-kpasswd - AFS distributed filesystem old password changing
 openafs-krb5 - AFS distributed filesystem Kerberos 5 integration
 openafs-modules-dkms - AFS distributed filesystem kernel module DKMS source
 openafs-modules-source - AFS distributed filesystem kernel module source
Changes:
 openafs (1.6.20-2+deb9u1) stretch-security; urgency=high
 .
   * Apply upstream patch for OPENAFS-SA-2017-001 (CVE-2017-17432).
     (Closes: #883602)
Checksums-Sha1: 
 d30e54d9f931ea285f271802652a9b94e6a603e7 4049 openafs_1.6.20-2+deb9u1.dsc
 9919a55a0c399060b5b5b9dc35f470bd8396bbce 6664824 openafs_1.6.20.orig.tar.xz
 c5bd720e67a3f075496385712ce866b56041042f 142652 openafs_1.6.20-2+deb9u1.debian.tar.xz
Checksums-Sha256: 
 256e440651c0af1eeb985b339b9810ee94a017befd3c9746260fc5f1bd4ae699 4049 openafs_1.6.20-2+deb9u1.dsc
 0bd1543b205df80fbc9cf2fa5b102802d02907ae81d6f0f49c2e9f6614b8ffd7 6664824 openafs_1.6.20.orig.tar.xz
 1a107c1b1ebbde3884904348f9ed21d3b79055237b5abe09e2c992ceffca641a 142652 openafs_1.6.20-2+deb9u1.debian.tar.xz
Files: 
 4fd5041612e31f90a2f2b170fc6b517d 4049 net optional openafs_1.6.20-2+deb9u1.dsc
 600186f1973b9863ca7defc504546c47 6664824 net optional openafs_1.6.20.orig.tar.xz
 ae099642c8dcee4d7f2e7ed68b9d61ad 142652 net optional openafs_1.6.20-2+deb9u1.debian.tar.xz

-----BEGIN PGP SIGNATURE-----
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=ZBFX
-----END PGP SIGNATURE-----




Reply sent to Benjamin Kaduk <kaduk@mit.edu>:
You have taken responsibility. (Mon, 25 Dec 2017 10:36:12 GMT) (full text, mbox, link).


Notification sent to Benjamin Kaduk <kaduk@mit.edu>:
Bug acknowledged by developer. (Mon, 25 Dec 2017 10:36:12 GMT) (full text, mbox, link).


Message #44 received at 883602-close@bugs.debian.org (full text, mbox, reply):

From: Benjamin Kaduk <kaduk@mit.edu>
To: 883602-close@bugs.debian.org
Subject: Bug#883602: fixed in openafs 1.6.9-2+deb8u6
Date: Mon, 25 Dec 2017 10:33:29 +0000
Source: openafs
Source-Version: 1.6.9-2+deb8u6

We believe that the bug you reported is fixed in the latest version of
openafs, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 883602@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Benjamin Kaduk <kaduk@mit.edu> (supplier of updated openafs package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmaster@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Fri, 08 Dec 2017 20:59:25 -0600
Source: openafs
Binary: openafs-client openafs-fuse openafs-kpasswd openafs-fileserver openafs-dbserver openafs-doc openafs-krb5 libkopenafs1 libafsauthent1 libafsrpc1 libopenafs-dev openafs-modules-source openafs-modules-dkms libpam-openafs-kaserver openafs-dbg
Architecture: all source
Version: 1.6.9-2+deb8u6
Distribution: jessie-security
Urgency: high
Maintainer: Benjamin Kaduk <kaduk@mit.edu>
Changed-By: Benjamin Kaduk <kaduk@mit.edu>
Closes: 846922 883602
Description: 
 libafsauthent1 - AFS distributed file system runtime library (authentication)
 libafsrpc1 - AFS distributed file system runtime library (RPC layer)
 libkopenafs1 - AFS distributed file system runtime library (PAGs)
 libopenafs-dev - AFS distributed filesystem development libraries
 libpam-openafs-kaserver - AFS distributed filesystem kaserver PAM module
 openafs-client - AFS distributed filesystem client support
 openafs-dbg - AFS distributed filesystem debugging information
 openafs-dbserver - AFS distributed filesystem database server
 openafs-doc - AFS distributed filesystem documentation
 openafs-fileserver - AFS distributed filesystem file server
 openafs-fuse - AFS distributed file system experimental FUSE client
 openafs-kpasswd - AFS distributed filesystem old password changing
 openafs-krb5 - AFS distributed filesystem Kerberos 5 integration
 openafs-modules-dkms - AFS distributed filesystem kernel module DKMS source
 openafs-modules-source - AFS distributed filesystem kernel module source
Changes:
 openafs (1.6.9-2+deb8u6) jessie-security; urgency=high
 .
   * CVE-2017-17432: remote triggered Rx assertion failure (Closes: #883602)
   * CVE-2016-4536: information leakage from OpenAFS clients
   * CVE-2016-9772: information leakage from directory objects
     (Closes: #846922)
Checksums-Sha1: 
 41c7a7d8cb06fb646672cfb2d67632989344d975 4143 openafs_1.6.9-2+deb8u6.dsc
 72a49524e38166cf066658e409ba59a1799450d8 150668 openafs_1.6.9-2+deb8u6.debian.tar.xz
 a8e07c62659d82e63431d7f62a23d2e13453745a 3999800 openafs-doc_1.6.9-2+deb8u6_all.deb
 25357f43233fdfc5572b4f605145744279b95c76 1127388 openafs-modules-source_1.6.9-2+deb8u6_all.deb
 eff70f54244e72a984c3ced872f029c733487e80 939392 openafs-modules-dkms_1.6.9-2+deb8u6_all.deb
Checksums-Sha256: 
 e58ff8b49ac7dc4e9a40a56ca4c14d5cf8bbfb728883752001f003602fe4ab60 4143 openafs_1.6.9-2+deb8u6.dsc
 ad3909ebacbf1be9b024ad6dc121d908a90793456f72c637475cce16d449e7b3 150668 openafs_1.6.9-2+deb8u6.debian.tar.xz
 d15ac8e533cd2de75342d978451d08824c4faea7b54fe7af4ccdcdb5df76cf17 3999800 openafs-doc_1.6.9-2+deb8u6_all.deb
 e471efbb7afbcd67e5620435ad50b58e7b06d6631b4d49a3ec46c1cfd00456c0 1127388 openafs-modules-source_1.6.9-2+deb8u6_all.deb
 fd423d6597e83793d0d30674d7215157f48351c085f0f5dcfd248020ea619ec7 939392 openafs-modules-dkms_1.6.9-2+deb8u6_all.deb
Files: 
 e199ecfce35cee2764db272b7645e903 4143 net optional openafs_1.6.9-2+deb8u6.dsc
 20243fe114b1f17b15f6c1953d886f61 150668 net optional openafs_1.6.9-2+deb8u6.debian.tar.xz
 668854b0cb04e8343a34e9babd332e18 3999800 doc optional openafs-doc_1.6.9-2+deb8u6_all.deb
 60896d319c6078df17a9d003eceb3d50 1127388 kernel extra openafs-modules-source_1.6.9-2+deb8u6_all.deb
 e62f0f8c2069a98de51fd48d01ce795a 939392 kernel extra openafs-modules-dkms_1.6.9-2+deb8u6_all.deb

-----BEGIN PGP SIGNATURE-----
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=xgeJ
-----END PGP SIGNATURE-----




Message #45 received at 883602-close@bugs.debian.org (full text, mbox, reply):

From: "Mr. X" <rugchanok.p@pnu.ac.th>
To: Recipients <rugchanok.p@pnu.ac.th>
Subject: Hello
Date: Thu, 04 Jan 2018 14:46:31 +0200
My name is Heather ten Broeke from Atlanta Georgia i have a project for you contact my private email :heatherbrooeke1313@gmail.com for details.



Reply sent to Benjamin Kaduk <kaduk@mit.edu>:
You have taken responsibility. (Sat, 06 Jan 2018 03:12:17 GMT) (full text, mbox, link).


Notification sent to Benjamin Kaduk <kaduk@mit.edu>:
Bug acknowledged by developer. (Sat, 06 Jan 2018 03:12:17 GMT) (full text, mbox, link).


Message #50 received at 883602-close@bugs.debian.org (full text, mbox, reply):

From: Benjamin Kaduk <kaduk@mit.edu>
To: 883602-close@bugs.debian.org
Subject: Bug#883602: fixed in openafs 1.8.0~pre4-1
Date: Sat, 06 Jan 2018 03:09:56 +0000
Source: openafs
Source-Version: 1.8.0~pre4-1

We believe that the bug you reported is fixed in the latest version of
openafs, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 883602@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Benjamin Kaduk <kaduk@mit.edu> (supplier of updated openafs package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmaster@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Wed, 03 Jan 2018 22:14:49 -0600
Source: openafs
Binary: openafs-client openafs-fuse openafs-fileserver openafs-dbserver openafs-doc openafs-krb5 libkopenafs2 libafsauthent2 libafsrpc2 libopenafs-dev openafs-modules-source openafs-modules-dkms
Architecture: source amd64 all
Version: 1.8.0~pre4-1
Distribution: unstable
Urgency: low
Maintainer: Benjamin Kaduk <kaduk@mit.edu>
Changed-By: Benjamin Kaduk <kaduk@mit.edu>
Description:
 libafsauthent2 - AFS distributed file system runtime library (authentication)
 libafsrpc2 - AFS distributed file system runtime library (RPC layer)
 libkopenafs2 - AFS distributed file system runtime library (PAGs)
 libopenafs-dev - AFS distributed filesystem development libraries
 openafs-client - AFS distributed filesystem client support
 openafs-dbserver - AFS distributed filesystem database server
 openafs-doc - AFS distributed filesystem documentation
 openafs-fileserver - AFS distributed filesystem file server
 openafs-fuse - AFS distributed file system experimental FUSE client
 openafs-krb5 - AFS distributed filesystem Kerberos 5 integration
 openafs-modules-dkms - AFS distributed filesystem kernel module DKMS source
 openafs-modules-source - AFS distributed filesystem kernel module source
Closes: 715623 715787 716144 716234 716444 848664 874280 883602
Changes:
 openafs (1.8.0~pre4-1) unstable; urgency=low
 .
   [ Benjamin Kaduk ]
   * New upstream major release (prerelease):
     - Servers no longer use rxkad.keytab for long-term keys, which are
       now stored in KeyFileExt.  Administrators must use akeyconvert
       or similar tooling to populate the KeyFileExt after updating the
       krb5 keys in rxkad.keytab.  In most cases, `akeyconvert` with no
       arguments will suffice; that command is run automatically in the
       package's postinstall script.
     - kaserver, klog.afs, pam-openafs-kaserver, and other kauth-related
       tools are removed.
     - Server log handling has changed.  Logs are not truncated at
       startup by default, and are re-opened on SIGUSR1, to be compatible
       with external log rotation tools.
     - Client time management support (afsd -settime and afsd -nosettime)
       has been removed.
     - Linux versions prior to 2.6 are no longer supported by the client.
     - Desupport 32-bit s390/s390x
     - Most binaries now use pthreads instead of LWP green threads.
     - The fileserver ihandle fsync thread is removed.
     - Support Linux up to 4.14
     - Provide vldb cache timeout option for clients
     - Eliminate potential 100ms delay after rx receive window changes
     - Modify volume update date after salvager makes changes
     - Improve ubik safety for relabels and writes shortly after an election
     - Preserve volume stats during reclone and restore operations
     - Improve command-line parsing for various utilities.
       (Closes: #715623, #715787, #716144, #716234, #716444)
     - Fix for OPENAFS-SA-2017-001. (Closes: #883602)
     - Many other generic improvements throughout the tree; consult the
       upstream changelog for details.
   * Add versioned build-depends for renamed symbols in heimdal-multidev.
     (Closes: #848664)
   * Bump Standards-Version to 4.1.3 (no changes needed).
   * Update Dutch debconf translation; thanks Frans Spiesschaert.
     (Closes: #874280)
 .
   [ Anders Kaseorg ]
   * Use dh_auto_configure.
   * Correct some paths in the openafs-doc packaging
Checksums-Sha1:
 2379c7c7941006241870d52cbd18f49d0be22cdf 3512 openafs_1.8.0~pre4-1.dsc
 5101f6981bd7a8606f2e18649a992d6b9f5d8b54 6732712 openafs_1.8.0~pre4.orig.tar.xz
 e5962a8d1b6b1eb863167b0cef760c7d467c5340 136732 openafs_1.8.0~pre4-1.debian.tar.xz
 4bab5bbdbdd0462cae821efd4ad14f8928160ce7 448212 libafsauthent2-dbgsym_1.8.0~pre4-1_amd64.deb
 e85921a20ca382be4c339cc228aa64e291117f91 249176 libafsauthent2_1.8.0~pre4-1_amd64.deb
 48009706bfd29969bae611b56574fc7644ad9753 414620 libafsrpc2-dbgsym_1.8.0~pre4-1_amd64.deb
 6d7ace165985c44dd9e2a2da8447ee5147fd902d 231660 libafsrpc2_1.8.0~pre4-1_amd64.deb
 3fa39b07f0713a3eaf78ff76a7b0d28cb15bd289 8828 libkopenafs2-dbgsym_1.8.0~pre4-1_amd64.deb
 22cf2800dc7af0f1988a4f74d1f2d136b518064c 119804 libkopenafs2_1.8.0~pre4-1_amd64.deb
 5af65927c1a4f0259dc07959f14e10c4fb44d0bd 74512 libopenafs-dev-dbgsym_1.8.0~pre4-1_amd64.deb
 47a941f8b16cc553c7e683ad68b2d8d3e3f3b9a2 1575744 libopenafs-dev_1.8.0~pre4-1_amd64.deb
 ea5dbda9cc9bcc0ad1568abce927e982004bf91b 9049856 openafs-client-dbgsym_1.8.0~pre4-1_amd64.deb
 782dc19e4e09c0a8f0ac55d33b4d1a14577ec631 2089884 openafs-client_1.8.0~pre4-1_amd64.deb
 5b2cb2f6e1a885b671e1f545b6fce10665080ec9 2356388 openafs-dbserver-dbgsym_1.8.0~pre4-1_amd64.deb
 f0d8dc9bf5ad457e628e4ed7efb583de98c8872e 611148 openafs-dbserver_1.8.0~pre4-1_amd64.deb
 0debedc5f622b8a0a1c2108a15e970d6b941de2f 3970500 openafs-doc_1.8.0~pre4-1_all.deb
 e42b1d112dc3446503a84f34b230678c9edd2d2d 9687124 openafs-fileserver-dbgsym_1.8.0~pre4-1_amd64.deb
 72879589a3be6cda3d7459240fead20ccdca6b56 1395332 openafs-fileserver_1.8.0~pre4-1_amd64.deb
 099901ae8f9899cf5401c6a9e2ffeddfd6d0d2b3 1370252 openafs-fuse-dbgsym_1.8.0~pre4-1_amd64.deb
 f2386ecb6bc2259b53a132a4afff7d534c97d4e9 281772 openafs-fuse_1.8.0~pre4-1_amd64.deb
 fa1577859d314d9d5dca15962b492a05624197b2 1469732 openafs-krb5-dbgsym_1.8.0~pre4-1_amd64.deb
 ca0aea80354e85a53d1949ac12559fc527a3433d 361512 openafs-krb5_1.8.0~pre4-1_amd64.deb
 7168e206a53e45696a652ac07630e025e3a33b22 1026596 openafs-modules-dkms_1.8.0~pre4-1_all.deb
 79632f80ca435d161da29ae8c2c97cdb09ab5819 1248112 openafs-modules-source_1.8.0~pre4-1_all.deb
 9b83c022d7f90217465c50f8c9fdb89f05f74fd2 16896 openafs_1.8.0~pre4-1_amd64.buildinfo
Checksums-Sha256:
 d808a7a4a046f8400624900e473de61dc1baf534042b8069fc5d2832899b630b 3512 openafs_1.8.0~pre4-1.dsc
 63b3dd2c81808152f4380f09a4c78fb2d162f8e60600f8b9ffce235437491bc6 6732712 openafs_1.8.0~pre4.orig.tar.xz
 69fd1e84b28b6d4de22cb0aa899fb0f6a1d3fb711bcb3e49ad2a03b945631955 136732 openafs_1.8.0~pre4-1.debian.tar.xz
 f6ae6b0cc26ba9e10aed4897062d7ee3de0f3fbf3299f5cded8e1c67a04dd300 448212 libafsauthent2-dbgsym_1.8.0~pre4-1_amd64.deb
 b609c5a3f49f4dc192ce0b70a63fab3cfc6c33f060a520a294878f3edbab320e 249176 libafsauthent2_1.8.0~pre4-1_amd64.deb
 3a507dc60821ef756302d24bd3c9b0112b2b7fb8be5f44865b332863cc5ce38f 414620 libafsrpc2-dbgsym_1.8.0~pre4-1_amd64.deb
 e31dea7cde2968a76a871bd985b0daf668e25d98332aa0720d160ad544b40f28 231660 libafsrpc2_1.8.0~pre4-1_amd64.deb
 d4b7595910ca3d32b9d853979fa25409f3472b808f6bc8b17b8bd8c1d2fdfe9c 8828 libkopenafs2-dbgsym_1.8.0~pre4-1_amd64.deb
 89bfb01e9d774e93baa0f74d3c1f5d1d60eb7af404b18c0f480b5d87fee8f8ce 119804 libkopenafs2_1.8.0~pre4-1_amd64.deb
 3e0e9ce249523fcef87305c735c996525a876441549f36ed390f13d9c6530a09 74512 libopenafs-dev-dbgsym_1.8.0~pre4-1_amd64.deb
 3e5a345c8ccf1e40946822f7c8a8126c74230cddbcc2b06667cbc52be72bf07b 1575744 libopenafs-dev_1.8.0~pre4-1_amd64.deb
 ed0d765be33318469b8cc924f8a34b2d208a0ddb3b29756974df423ba8c30e28 9049856 openafs-client-dbgsym_1.8.0~pre4-1_amd64.deb
 bb6e7de9e2515653f0772cf269127e1192fbd3aee5ddcd5db85e6472ecb93a0b 2089884 openafs-client_1.8.0~pre4-1_amd64.deb
 5778a428584d8f31e420d0ea3074335349635525323c629dad0da196b7379491 2356388 openafs-dbserver-dbgsym_1.8.0~pre4-1_amd64.deb
 d4956563ab4ba731034b3e189c5d6aa1e2575c4647dde0c0e63f35a926614f87 611148 openafs-dbserver_1.8.0~pre4-1_amd64.deb
 8b2572779dff46b46ccd605f4bebca45eb75e9cfb7bbc332ace440b6a79294a6 3970500 openafs-doc_1.8.0~pre4-1_all.deb
 bf2fa2c4d5bb37f0263b5bd07f635210d4b58dfe2943094cf1ef4c3ee0de87f5 9687124 openafs-fileserver-dbgsym_1.8.0~pre4-1_amd64.deb
 9910c75b8703b338e25fb1aac73a80213f7bed25007148fd6dc1e271dae00ace 1395332 openafs-fileserver_1.8.0~pre4-1_amd64.deb
 2cd354fe0adbf905e796a14dbb2225831e2916c11e20e8569bc2aff43ab189ae 1370252 openafs-fuse-dbgsym_1.8.0~pre4-1_amd64.deb
 3753ba937e1b54fb5dc57d753e030e604aa012dcd6c97ab0fbf9d6c17c7d796e 281772 openafs-fuse_1.8.0~pre4-1_amd64.deb
 ea4769d4f110e190d6a82db36a9247475f7fa8c97db1bae62fbd248a653e38a7 1469732 openafs-krb5-dbgsym_1.8.0~pre4-1_amd64.deb
 2042de2a0ed755902cf3b284b84976a01012580c505e76be9de9a4562d2fc1bd 361512 openafs-krb5_1.8.0~pre4-1_amd64.deb
 0732b511a05a67cf81ca99ae28c4344125ff6f530453e56ad0cc2d9f824320f3 1026596 openafs-modules-dkms_1.8.0~pre4-1_all.deb
 bbeb2dfead786c33fa457bfd64a68290e76d8724376f6f31d3aafc34743c8542 1248112 openafs-modules-source_1.8.0~pre4-1_all.deb
 3464207167c1827c19285268547cb23aa2b183f0490c3518bcfbe03b79299c84 16896 openafs_1.8.0~pre4-1_amd64.buildinfo
Files:
 d0d517f13e84a815042c5275d7a1390a 3512 net optional openafs_1.8.0~pre4-1.dsc
 ba29f02899c4c53818928bf0ddfe9726 6732712 net optional openafs_1.8.0~pre4.orig.tar.xz
 4e7201ed77b240317b58153ac07b7aec 136732 net optional openafs_1.8.0~pre4-1.debian.tar.xz
 3cc73b56848938beb0797600000f9209 448212 debug optional libafsauthent2-dbgsym_1.8.0~pre4-1_amd64.deb
 b75077038cd37ffb153e837795893631 249176 libs optional libafsauthent2_1.8.0~pre4-1_amd64.deb
 081243c5495db5147903c116b0095de9 414620 debug optional libafsrpc2-dbgsym_1.8.0~pre4-1_amd64.deb
 dd23a800e30d45f2c58132b9faee9102 231660 libs optional libafsrpc2_1.8.0~pre4-1_amd64.deb
 bb91829da9050e035feba72b57dabe1f 8828 debug optional libkopenafs2-dbgsym_1.8.0~pre4-1_amd64.deb
 955da5305b8739e5aa3208a727998bfa 119804 libs optional libkopenafs2_1.8.0~pre4-1_amd64.deb
 536ef23df3ac2b3e200f07eabda12bbb 74512 debug optional libopenafs-dev-dbgsym_1.8.0~pre4-1_amd64.deb
 9fd8526cd9a61f064c0e49603abebf2d 1575744 libdevel optional libopenafs-dev_1.8.0~pre4-1_amd64.deb
 823f4a925b70d06359f998e0e891bec0 9049856 debug optional openafs-client-dbgsym_1.8.0~pre4-1_amd64.deb
 013c3ec1b894555c9bbb6e4640e7b615 2089884 net optional openafs-client_1.8.0~pre4-1_amd64.deb
 ed8f1b71b3fe63917a82d73ffe290bbd 2356388 debug optional openafs-dbserver-dbgsym_1.8.0~pre4-1_amd64.deb
 bba4388f58d09c806c330833c3f54801 611148 net optional openafs-dbserver_1.8.0~pre4-1_amd64.deb
 a8f9f10bd5bd86c70a3e66829ef456f6 3970500 doc optional openafs-doc_1.8.0~pre4-1_all.deb
 13e1d5217d17aa447249a4a37ef21459 9687124 debug optional openafs-fileserver-dbgsym_1.8.0~pre4-1_amd64.deb
 671ca915c88e960167e1132e4c5d1f0c 1395332 net optional openafs-fileserver_1.8.0~pre4-1_amd64.deb
 280a4c9896ca7a4d02199f31bdda6551 1370252 debug optional openafs-fuse-dbgsym_1.8.0~pre4-1_amd64.deb
 fbcd5c57785d6a7f99b323fe87961b58 281772 net optional openafs-fuse_1.8.0~pre4-1_amd64.deb
 b7e9f44d705a6702a8ac3bc0db3db7e0 1469732 debug optional openafs-krb5-dbgsym_1.8.0~pre4-1_amd64.deb
 c9b7e6486bc522a4523757903b8ce426 361512 net optional openafs-krb5_1.8.0~pre4-1_amd64.deb
 e43909cda76a41328a25955b7c621822 1026596 kernel optional openafs-modules-dkms_1.8.0~pre4-1_all.deb
 bc63b34b934924c39b8195e02b56ae8b 1248112 kernel optional openafs-modules-source_1.8.0~pre4-1_all.deb
 56de0531acdb6803a9b7c2b953aff599 16896 net optional openafs_1.8.0~pre4-1_amd64.buildinfo

-----BEGIN PGP SIGNATURE-----
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=+Wgz
-----END PGP SIGNATURE-----




Bug archived. Request was from Debbugs Internal Request <owner@bugs.debian.org> to internal_control@bugs.debian.org. (Sat, 03 Feb 2018 07:24:56 GMT) (full text, mbox, link).


Send a report that this bug log contains spam.


Debian bug tracking system administrator <owner@bugs.debian.org>. Last modified: Wed Jun 19 17:51:31 2019; Machine Name: buxtehude

Debian Bug tracking system

Debbugs is free software and licensed under the terms of the GNU Public License version 2. The current version can be obtained from https://bugs.debian.org/debbugs-source/.

Copyright © 1999 Darren O. Benham, 1997,2003 nCipher Corporation Ltd, 1994-97 Ian Jackson, 2005-2017 Don Armstrong, and many other contributors.