• Bug#1108044: trafficserver: CVE-2025-49763 CVE-2025-31698

    From Salvatore Bonaccorso@21:1/5 to All on Thu Jun 19 18:20:01 2025
    U291cmNlOiB0cmFmZmljc2VydmVyClZlcnNpb246IDkuMi41K2RzLTArZGViMTJ1MgpTZXZlcml0 eTogZ3JhdmUKVGFnczogc2VjdXJpdHkgdXBzdHJlYW0KSnVzdGlmaWNhdGlvbjogdXNlciBzZWN1 cml0eSBob2xlClgtRGViYnVncy1DYzogY2FybmlsQGRlYmlhbi5vcmcsIERlYmlhbiBTZWN1cml0 eSBUZWFtIDx0ZWFtQHNlY3VyaXR5LmRlYmlhbi5vcmc+CkNvbnRyb2w6IGZvdW5kIC0xIDkuMi41 K2RzLTEKCkhpLAoKVGhlIGZvbGxvd2luZyB2dWxuZXJhYmlsaXRpZXMgd2VyZSBwdWJsaXNoZWQg Zm9yIHRyYWZmaWNzZXJ2ZXIuCgpDVkUtMjAyNS00OTc2M1swXToKfCBFU0kgcGx1Z2luIGRvZXMg bm90IGhhdmUgdGhlIGxpbWl0IGZvciBtYXhpbXVtIGluY2x1c2lvbiBkZXB0aCwgYW5kCnwgdGhh dCBhbGxvd3MgZXhjZXNzaXZlIG1lbW9yeSBjb25zdW1wdGlvbiBpZiBtYWxpY2lvdXMgaW5zdHJ1 Y3Rpb25zCnwgYXJlIGluc2VydGVkLiAgVXNlcnMgY2FuIHVzZSBhIG5ldyBzZXR0aW5nIGZvciB0 aGUgcGx1Z2luICgtLW1heC0KfCBpbmNsdXNpb24tZGVwdGgpIHRvIGxpbWl0IGl0LiBUaGlzIGlz c3VlIGFmZmVjdHMgQXBhY2hlIFRyYWZmaWMKfCBTZXJ2ZXI6IGZyb20gMTAuMC4wIHRocm91Z2gg MTAuMC41LCBmcm9tIDkuMC4wIHRocm91Z2ggOS4yLjEwLgp8IFVzZXJzIGFyZSByZWNvbW1lbmRl ZCB0byB1cGdyYWRlIHRvIHZlcnNpb24gOS4yLjExIG9yIDEwLjAuNiwgIHdoaWNoCnwgZml4ZXMg dGhlIGlzc3VlLgoKCkNWRS0yMDI1LTMxNjk4WzFdOgp8IEFDTCBjb25maWd1cmVkIGluIGlwX2Fs bG93LmNvbmZpZyBvciByZW1hcC5jb25maWcgZG9lcyBub3QgdXNlIElQCnwgYWRkcmVzc2VzIHRo YXQgYXJlIHByb3ZpZGVkIGJ5IFBST1hZIHByb3RvY29sLiAgVXNlcnMgY2FuIHVzZSBhIG5ldwp8 IHNldHRpbmcgKHByb3h5LmNvbmZpZy5hY2wuc3ViamVjdHMpIHRvIGNob29zZSB3aGljaCBJUCBh ZGRyZXNzZXMgdG8KfCB1c2UgZm9yIHRoZSBBQ0wgaWYgQXBhY2hlIFRyYWZmaWMgU2VydmVyIGlz IGNvbmZpZ3VyZWQgdG8gYWNjZXB0CnwgUFJPWFkgcHJvdG9jb2wuwqAgVGhpcyBpc3N1ZSBhZmZl Y3RzIHVuZGVmaW5lZDogZnJvbSAxMC4wLjAgdGhyb3VnaAp8IDEwLjAuNiwgZnJvbSA5LjAuMCB0 aHJvdWdoIDkuMi4xMC4gIFVzZXJzIGFyZSByZWNvbW1lbmRlZCB0byB1cGdyYWRlCnwgdG8gdmVy c2lvbiA5LjIuMTEgb3IgMTAuMC42LCB3aGljaCBmaXhlcyB0aGUgaXNzdWUuCgoKSWYgeW91IGZp eCB0aGUgdnVsbmVyYWJpbGl0aWVzIHBsZWFzZSBhbHNvIG1ha2Ugc3VyZSB0byBpbmNsdWRlIHRo ZQpDVkUgKENvbW1vbiBWdWxuZXJhYmlsaXRpZXMgJiBFeHBvc3VyZXMpIGlkcyBpbiB5b3VyIGNo YW5nZWxvZyBlbnRyeS4KCkZvciBmdXJ0aGVyIGluZm9ybWF0aW9uIHNlZToKClswXSBodHRwczov L3NlY3VyaXR5LXRyYWNrZXIuZGViaWFuLm9yZy90cmFja2VyL0NWRS0yMDI1LTQ5NzYzCiAgICBo dHRwczovL3d3dy5jdmUub3JnL0NWRVJlY29yZD9pZD1DVkUtMjAyNS00OTc2MwpbMV0gaHR0cHM6 Ly9zZWN1cml0eS10cmFja2VyLmRlYmlhbi5vcmcvdHJhY2tlci9DVkUtMjAyNS0zMTY5OAogICAg aHR0cHM6Ly93d3cuY3ZlLm9yZy9DVkVSZWNvcmQ/aWQ9Q1ZFLTIwMjUtMzE2OTgKWzJdIGh0dHBz Oi8vd3d3Lm9wZW53YWxsLmNvbS9saXN0cy9vc3Mtc2VjdXJpdHkvMjAyNS8wNi8xNy83CgpSZWdh cmRzLApTYWx2YXRvcmUK

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)
  • From Debian Bug Tracking System@21:1/5 to All on Thu Jun 26 18:10:02 2025
    This is a multi-part message in MIME format...

    Your message dated Thu, 26 Jun 2025 16:03:16 +0000
    with message-id <[email protected]>
    and subject line Bug#1108044: fixed in trafficserver 9.2.5+ds-0+deb12u3
    has caused the Debian Bug report #1108044,
    regarding trafficserver: CVE-2025-49763 CVE-2025-31698
    to be marked as done.

    This means that you claim that the problem has been dealt with.
    If this is not the case it is now your responsibility to reopen the
    Bug report if necessary, and/or fix the problem forthwith.

    (NB: If you are a system administrator and have no idea what this
    message is talking about, this may indicate a serious mail system misconfiguration somewhere. Please contact [email protected]
    immediately.)


    --
    1108044: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1108044
    Debian Bug Tracking System
    Contact [email protected] with problems

    Received: (at submit) by bugs.debian.org; 19 Jun 2025 16:17:37 +0000 X-Spam-Checker-Version: SpamAssassin 4.0.1-bugs.debian.org_2005_01_02
    (2024-03-25) on buxtehude.debian.org
    X-Spam-Level:
    X-Spam-Status: No, score=-8.6 required=4.0 tests=BAYES_00,FROMDEVELOPER,
    KHOP_HELO_FCRDNS,RCVD_IN_VALIDITY_CERTIFIED_BLOCKED,
    RCVD_IN_VALIDITY_RPBL_BLOCKED,RCVD_IN_VALIDITY_SAFE_BLOCKED,
    RDNS_DYNAMIC,SPF_HELO_NONE,SPF_NONE,XMAILER_REPORTBUG autolearn=ham
    autolearn_force=no version=4.0.1-bugs.debian.org_2005_01_02 X-Spam-Bayes: score:0.0000 Tokens: new, 32; hammy, 150; neutral, 69; spammy,
    0. spammytokens: hammytokens:0.000-+--H*F:U*carnil,
    0.000-+--XDebbugsCc, 0.000-+--X-Debbugs-Cc, 0.000-+--H*r:eldamar.lan,
    0.000-+--H*M:reportbug
    Return-path: <[email protected]>
    Received: from c-82-192-244-13.customer.ggaweb.ch ([82.192.244.13]:34524 helo=eldamar.lan)
    b