Discussion:
Processed: bookworm-pu: package python-urllib3/1.26.12-1+deb12u1
Add Reply
Debian Bug Tracking System
2024-12-22 14:30:01 UTC
Reply
Permalink
affects -1 + src:python-urllib3
Bug #1091087 [release.debian.org] bookworm-pu: package python-urllib3/1.26.12-1+deb12u1
Added indication that 1091087 affects src:python-urllib3
--
1091087: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1091087
Debian Bug Tracking System
Contact ***@bugs.debian.org with problems
Debian Bug Tracking System
2025-01-02 20:50:02 UTC
Reply
Permalink
tags -1 + confirmed
Bug #1091087 [release.debian.org] bookworm-pu: package python-urllib3/1.26.12-1+deb12u1
Added tag(s) confirmed.
--
1091087: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1091087
Debian Bug Tracking System
Contact ***@bugs.debian.org with problems
Adam D. Barratt
2025-01-02 20:50:02 UTC
Reply
Permalink
Control: tags -1 + confirmed
Fix 3 no-dsa vulnerabilities (CVE-2023-43804, CVE-2023-45803 and
CVE-2024-37891) and a bug where urllib3.util.ssltransport fails to
load
(#1089507).
Please go ahead.

Regards,

Adam
Adam D Barratt
2025-01-03 18:40:03 UTC
Reply
Permalink
package release.debian.org
tags 1091087 = bookworm pending
thanks

Hi,

The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm.

Thanks for your contribution!

Upload details
==============

Package: python-urllib3
Version: 1.26.12-1+deb12u1

Explanation: fix possible information leak during cross-origin redirects [CVE-2023-43804]; fix "request body not stripped after redirect from 303 status changes request method to GET" [CVE-2023-45803]; fix "Proxy-Authorization request header isn't stripped during cross-origin redirects" [CVE-2024-37891]
Debian Bug Tracking System
2025-01-03 18:40:03 UTC
Reply
Permalink
Post by Adam D Barratt
package release.debian.org
Limiting to bugs with field 'package' containing at least one of 'release.debian.org'
Limit currently set to 'package':'release.debian.org'
Post by Adam D Barratt
tags 1091087 = bookworm pending
Bug #1091087 [release.debian.org] bookworm-pu: package python-urllib3/1.26.12-1+deb12u1
Added tag(s) pending; removed tag(s) confirmed.
Post by Adam D Barratt
thanks
Stopping processing here.

Please contact me if you need assistance.
--
1091087: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1091087
Debian Bug Tracking System
Contact ***@bugs.debian.org with problems
Debian Bug Tracking System
2025-01-11 11:20:12 UTC
Reply
Permalink
Your message dated Sat, 11 Jan 2025 11:03:09 +0000
with message-id <E1tWZGn-009jak-***@coccia.debian.org>
and subject line Close 1091087
has caused the Debian Bug report #1091087,
regarding bookworm-pu: package python-urllib3/1.26.12-1+deb12u1
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ***@bugs.debian.org
immediately.)
--
1091087: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1091087
Debian Bug Tracking System
Contact ***@bugs.debian.org with problems
Loading...