Your message dated Mon, 09 Mar 2009 21:19:50 +0000
with message-id <[email protected]>
and subject line Bug#504644: fixed in psi 0.12.1-1
has caused the Debian Bug report #504644,
regarding psi: Segfaults when registering a new account
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)
--
504644: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504644
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Package: psi
Version: 0.11-8
Severity: important
This is one of the bugs that make me doubt whether anyone actually
uses the package in question :-(
I installed psi, did the first start and wanted to "Register a new
account". After entering an arbitrary name for "Server" and hitting
"Next", psi segfaults.
The behaviour can also triggered via "General" -> "Account Setup" ->
"Add" -> Check "[x] Register new account" -> "Add" which brings you
to the same dialog window as above.
The last lines in strace are:
clock_gettime(CLOCK_MONOTONIC, {656, 487600027}) = 0
stat64("/usr/share/psi/crypto", 0x86af7fc) = -1 ENOENT (No such file or
directory)
lstat64("/usr/share/psi/crypto", 0xbfeab3a0) = -1 ENOENT (No such file or
directory)
stat64("/home/cbiedl/.psi/crypto", 0x867737c) = -1 ENOENT (No such file or
directory)
lstat64("/home/cbiedl/.psi/crypto", 0xbfeab3a0) = -1 ENOENT (No such file or
directory)
stat64("/usr/lib/qt4/plugins/crypto", 0x867737c) = -1 ENOENT (No such file or
directory)
lstat64("/usr/lib/qt4/plugins/crypto", 0xbfeab3a0) = -1 ENOENT (No such file or
directory)
stat64("/usr/bin/crypto", 0x867737c) = -1 ENOENT (No such file or directory)
lstat64("/usr/bin/crypto", 0xbfeab3a0) = -1 ENOENT (No such file or directory)
--- SIGSEGV (Segmentation fault) @ 0 (0) ---
+++ killed by SIGSEGV +++
The bug appearently exists in sid, too (0.12-1).
Christoph
-- System Information:
Debian Release: lenny/sid
APT prefers testing
APT policy: (500, 'testing')
Architecture: i386 (i686)
Kernel: Linux 2.6.26.5 (PREEMPT)
Locale: LANG=de_DE.UTF-8, LC_CTYPE=de_DE.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/bash
Versions of packages psi depends on:
ii libaspell15 0.60.6-1 GNU Aspell spell-checker runtime l
ii libc6 2.7-15 GNU C Library: Shared libraries
ii libgcc1 1:4.3.2-1 GCC support library
ii libqca2 2.0.0-4 libraries for the Qt Cryptographic
ii libqt4-gui 4.4.3-1 transitional package for Qt 4 GUI
ii libqt4-network 4.4.3-1 Qt 4 network module
ii libqt4-qt3support 4.4.3-1 Qt 3 compatibility library for Qt
ii libqt4-xml 4.4.3-1 Qt 4 XML module
ii libqtcore4 4.4.3-1 Qt 4 core module
ii libstdc++6 4.3.2-1 The GNU Standard C++ Library v3
ii libx11-6 2:1.1.5-2 X11 client-side library
ii libxss1 1:1.1.3-1 X11 Screen Saver extension library
ii zlib1g 1:1.2.3.3.dfsg-12 compression library - runtime
Versions of packages psi recommends:
pn libqca2-plugin-ossl <none> (no description available)
pn sox <none> (no description available)
Versions of packages psi suggests:
pn libqca2-plugin-gnupg <none> (no description available)
pn psi-translations <none> (no description available)
pn xdg-utils <none> (no description available)
-- no debconf information
signature.asc
Description: Digital signature
--- End Message ---
--- Begin Message ---
Source: psi
Source-Version: 0.12.1-1
We believe that the bug you reported is fixed in the latest version of
psi, which is due to be installed in the Debian FTP archive:
psi_0.12.1-1.diff.gz
to pool/main/p/psi/psi_0.12.1-1.diff.gz
psi_0.12.1-1.dsc
to pool/main/p/psi/psi_0.12.1-1.dsc
psi_0.12.1-1_i386.deb
to pool/main/p/psi/psi_0.12.1-1_i386.deb
psi_0.12.1.orig.tar.gz
to pool/main/p/psi/psi_0.12.1.orig.tar.gz
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Jan Niehusmann <[email protected]> (supplier of updated psi package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.8
Date: Mon, 09 Mar 2009 18:31:53 +0100
Source: psi
Binary: psi
Architecture: source i386
Version: 0.12.1-1
Distribution: unstable
Urgency: high
Maintainer: Jan Niehusmann <[email protected]>
Changed-By: Jan Niehusmann <[email protected]>
Description:
psi - Jabber client using Qt
Closes: 504644 518468
Changes:
psi (0.12.1-1) unstable; urgency=high
.
* New Upstream Version
This fixes remote DoS vulnerability CVE-2008-6393 found and reported
by Jesus Olmos Gonzalez (jolmos (at) isecauditors (dot) com).
The original advisory is available at:
http://www.securityfocus.com/archive/1/499563
(Closes: Bug#518468)
* Depend on qt << 4.5.0 as psi needs some patches to work with qt 4.5
* Psi currently doesn't handle missing ssl plugin gracefully. Therefore,
depend on libqca2-plugin-ossl instead of only recommending it.
(Closes: Bug#504644)
Checksums-Sha1:
cd13a3ce23ed4090cccd938604dae481f04ab6cd 1207 psi_0.12.1-1.dsc
9663d3f68e252da0762a9cc4059023fba0b28974 2504019 psi_0.12.1.orig.tar.gz
5a7983bbd5009f4e56eaf27800ce59194f2d9d58 10781 psi_0.12.1-1.diff.gz
78ae448f1041a6cd14e8de339981462706362de0 2908170 psi_0.12.1-1_i386.deb
Checksums-Sha256:
29d6946b0ad7e90531a4336a8fb069c674cc16d47e917c7759fa8a472697b629 1207
psi_0.12.1-1.dsc
3e0a1f0e01c3140b0f84c4553aeb41721f2e6ae3e6c9793eca75e47ab975b497 2504019
psi_0.12.1.orig.tar.gz
371174557c75293600bcdaa7b34c95dc1a21e0a2a5713d50c2f6d1533ef38cdd 10781
psi_0.12.1-1.diff.gz
54e9187a1ca11302ce5ac55e55cf53bfa05746bc7032e062849ad752ca66b7de 2908170
psi_0.12.1-1_i386.deb
Files:
f69dcdc49bcce922707e5aaca82a65bc 1207 net optional psi_0.12.1-1.dsc
8b98247aed1ec126dfe47c15cf6c0230 2504019 net optional psi_0.12.1.orig.tar.gz
f201e97ea5a6ca0f23e15bb34ba647ed 10781 net optional psi_0.12.1-1.diff.gz
4221ee4975f1fe55c0d6f2968baf1d42 2908170 net optional psi_0.12.1-1_i386.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)
iJwEAQECAAYFAkm1foMACgkQgUvx9im0397LFgP9FGQVUUQ5t2U7ZEw4/afC6WTj
LLjuLIJrdfcTwY4rYZ2xdc5UhRVi/rVAWKLHC/zyfXnU9aABvN2tUuwyRuv64ErK
QUq/e+PwUhM3ko4ZPv3oVh/yRfM/WeUWdLCOoVyfJcXcBXVnfMW31SdlqeYdzDmG
RJw0kt+df6jbwtz1uXQ=
=eU2x
-----END PGP SIGNATURE-----
--- End Message ---