Bug#682403: icedove: New upstream (14)/3 missing (security related) updates

2012-09-01 Thread Carsten Schönert
Hello Daniel

On 08/29/12 17:54, Daniel Baumann wrote:
 any chance for having version 15 in experimental anytime soon?
 
Yes we work on it.
We know that it may seems to someone if there is nothing happen, but
that's not correct. In the past we have worked on version 14 of icedove,
but there is still some trouble with the needed libs. That is not as
hard to fix but Christoph and also Guido is moving home right now.
Christoph has set his focus in his spare free time to package the
security fixes as this is more importend than package new versions. I'm
on holiday in few days, so a version 14 or 15 will take some more time.

-- 
Regards
Carsten


-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#682403: icedove: New upstream (14)/3 missing (security related) updates

2012-09-01 Thread markus

Hello Carsten,

are there any news about Christoph?
Mozilla released Thunderbird 15 some days ago.
I'm using 10.0.6 at the moment but some addons already require 14.0 
(like enigmail).
Also, mozilla has updated to list of known vulnerabilities and there is 
a new ESR version too.

I really hope christoph finds some time to work on this. :)

Regards,
Markus

On 07/22/2012 08:58 PM, Carsten Schoenert wrote:

forcemerge 682403 682019
serverity 682403 wishlist
thanks

Hello Markus,

unfortunatley you are right. Mozilla released the version 14 of
thunderbird. Eric (see #682016) opened also a bug related to that
curcumstance. But Christoph as uploader is tied up with buisness
at the moment.
So it will take a little bit of time to package the newest version
of icedove.

I setting the severity to wishlist because you requested a new version,
security fixes for squeeze and actual for the wheezy releases are
nearly reworked in.

Regards
Carsten

On Sun, Jul 22, 2012 at 03:14:41PM +0200, markus wrote:

Package: icedove
Version: 11.0-1
Severity: grave
Tags: security
Justification: user security hole

Dear Maintainer,

there are 3 missing updates in experimental. The current experimental version
in debian is 11.0. The current thunderbird version is 14.0.
Mozilla published a list of known vulnerabilties (this is why I choose grave, I
hope this is ok):
https://www.mozilla.org/security/known-vulnerabilities/thunderbird.html
I think a lot of users use experimental since it's the only non-ESR version.
It would be awesome if you could publish a new version.

Thank you.






--
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#682403: icedove: New upstream (14)/3 missing (security related) updates

2012-09-01 Thread markus
I've just realized there were already new replies, I didn't receive any 
emails so I thought there weren't any.

sorry for my unnecessary email.


--
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#682403: icedove: New upstream (14)/3 missing (security related) updates

2012-08-29 Thread Daniel Baumann

any chance for having version 15 in experimental anytime soon?

--
Address:Daniel Baumann, Donnerbuehlweg 3, CH-3012 Bern
Email:  daniel.baum...@progress-technologies.net
Internet:   http://people.progress-technologies.net/~daniel.baumann/


--
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#682403: icedove: New upstream (14)/3 missing (security related) updates

2012-07-22 Thread markus
Package: icedove
Version: 11.0-1
Severity: grave
Tags: security
Justification: user security hole

Dear Maintainer,

there are 3 missing updates in experimental. The current experimental version
in debian is 11.0. The current thunderbird version is 14.0.
Mozilla published a list of known vulnerabilties (this is why I choose grave, I
hope this is ok):
https://www.mozilla.org/security/known-vulnerabilities/thunderbird.html
I think a lot of users use experimental since it's the only non-ESR version.
It would be awesome if you could publish a new version.

Thank you.



-- System Information:
Debian Release: wheezy/sid
  APT prefers testing
  APT policy: (700, 'testing'), (650, 'unstable'), (600, 'experimental')
Architecture: i386 (i686)

Kernel: Linux 3.2.0-3-686-pae (SMP w/4 CPU cores)
Locale: LANG=en_US.utf8, LC_CTYPE=en_US.utf8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash

Versions of packages icedove depends on:
ii  debianutils   4.3.2
ii  fontconfig2.9.0-6
ii  libasound21.0.25-3
ii  libatk1.0-0   2.4.0-2
ii  libc6 2.13-33
ii  libcairo2 1.12.2-2
ii  libdbus-1-3   1.6.0-1
ii  libdbus-glib-1-2  0.100-1
ii  libevent-2.0-52.0.19-stable-3
ii  libffi5   3.0.10-3
ii  libfontconfig12.9.0-6
ii  libfreetype6  2.4.9-1
ii  libgcc1   1:4.7.1-2
ii  libgdk-pixbuf2.0-02.26.1-1
ii  libglib2.0-0  2.32.3-1
ii  libgtk2.0-0   2.24.10-1
ii  libhunspell-1.3-0 1.3.2-4
ii  libjpeg8  8d-1
ii  libnspr4-0d   2:4.9.1-1
ii  libnss3-1d2:3.13.5-1
ii  libpango1.0-0 1.30.0-1
ii  libpixman-1-0 0.26.0-3
ii  libsqlite3-0  3.7.13-1
ii  libstartup-notification0  0.12-1
ii  libstdc++64.7.1-2
ii  libvpx1   1.1.0-1
ii  libx11-6  2:1.5.0-1
ii  libxext6  2:1.3.1-2
ii  libxrender1   1:0.9.7-1
ii  libxt61:1.1.3-1
ii  psmisc22.19-1
ii  zlib1g1:1.2.7.dfsg-13

Versions of packages icedove recommends:
ii  myspell-en-us [myspell-dictionary]  1:3.3.0-3

Versions of packages icedove suggests:
ii  gconf-service 3.2.5-1
ii  libgconf-2-4  3.2.5-1
ii  libgssapi-krb5-2  1.10.1+dfsg-1
ii  libnotify40.7.5-1
ii  ttf-lyx   2.0.3-3

-- no debconf information


-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#682403: icedove: New upstream (14)/3 missing (security related) updates

2012-07-22 Thread Carsten Schoenert
forcemerge 682403 682019
serverity 682403 wishlist
thanks

Hello Markus,

unfortunatley you are right. Mozilla released the version 14 of
thunderbird. Eric (see #682016) opened also a bug related to that 
curcumstance. But Christoph as uploader is tied up with buisness
at the moment.
So it will take a little bit of time to package the newest version 
of icedove.

I setting the severity to wishlist because you requested a new version,
security fixes for squeeze and actual for the wheezy releases are 
nearly reworked in.

Regards
Carsten

On Sun, Jul 22, 2012 at 03:14:41PM +0200, markus wrote:
 Package: icedove
 Version: 11.0-1
 Severity: grave
 Tags: security
 Justification: user security hole
 
 Dear Maintainer,
 
 there are 3 missing updates in experimental. The current experimental version
 in debian is 11.0. The current thunderbird version is 14.0.
 Mozilla published a list of known vulnerabilties (this is why I choose grave, 
 I
 hope this is ok):
 https://www.mozilla.org/security/known-vulnerabilities/thunderbird.html
 I think a lot of users use experimental since it's the only non-ESR version.
 It would be awesome if you could publish a new version.
 
 Thank you.
 
 
 


-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org