Processed: Re: Bug#811522: proposed RM: jenkins -- RoQA; multiple security issues, FTBFS, unmaintained in Debian

2016-02-01 Thread Debian Bug Tracking System
Processing control commands:

> retitle -1 RM: jenkins -- ROM; multiple security issues, FTBFS, unmaintained 
> in Debian
Bug #811522 [jenkins] proposed RM: jenkins -- RoQA; multiple security issues, 
FTBFS, unmaintained in Debian
Changed Bug title to 'RM: jenkins -- ROM; multiple security issues, FTBFS, 
unmaintained in Debian' from 'proposed RM: jenkins -- RoQA; multiple security 
issues, FTBFS, unmaintained in Debian'
> reassign -1 ftp.debian.org
Bug #811522 [jenkins] RM: jenkins -- ROM; multiple security issues, FTBFS, 
unmaintained in Debian
Bug reassigned from package 'jenkins' to 'ftp.debian.org'.
Ignoring request to alter found versions of bug #811522 to the same values 
previously set
Ignoring request to alter fixed versions of bug #811522 to the same values 
previously set

-- 
811522: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=811522
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems

__
This is the maintainer address of Debian's Java team
<http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-java-maintainers>. 
Please use
debian-j...@lists.debian.org for discussions and questions.


Bug#811522: proposed RM: jenkins -- RoQA; multiple security issues, FTBFS, unmaintained in Debian

2016-02-01 Thread Emmanuel Bourg
Control: retitle -1 RM: jenkins -- ROM; multiple security issues, FTBFS, 
unmaintained in Debian
Control: reassign -1 ftp.debian.org

Le 19/01/2016 17:11, Ansgar Burchardt a écrit :

> I suggest to remove the package from Debian.  If there are no
> objections, I'll reassign the request to the ftp.debian.org pseudo-
> package later.

Let's do it.

__
This is the maintainer address of Debian's Java team
. 
Please use
debian-j...@lists.debian.org for discussions and questions.

Bug#811522: proposed RM: jenkins -- RoQA; multiple security issues, FTBFS, unmaintained in Debian

2016-01-20 Thread Emmanuel Bourg
Hi Ansgar,

Le 19/01/2016 17:11, Ansgar Burchardt a écrit :

> I suggest to remove the package from Debian.  If there are no
> objections, I'll reassign the request to the ftp.debian.org pseudo-
> package later.

FYI the fate of the jenkins package is currently being discussed on the
debian-java list:

  https://lists.debian.org/debian-java/2016/01/msg00019.html


> I'm also wondering if "jenkins-memory-monitor" should also be removed
> at the same time or if it is also useful without jenkins?

jenkins-memory-monitor can indeed be removed with jenkins, as well as
the various plugins packaged and some libraries. Here is a quick list:

  access-modifier-checker
  bytecode-compatibility-transformer
  jellydoc
  jenkins-ant-plugin
  jenkins-antisamy-markup-formatter-plugin
  jenkins-commons-jelly
  jenkins-commons-jexl
  jenkins-constant-pool-scanner
  jenkins-crypto-util
  jenkins-dom4j
  jenkins-executable-war
  jenkins-htmlunit
  jenkins-htmlunit-core-js
  jenkins-instance-identity
  jenkins-json
  jenkins-mailer-plugin
  jenkins-matrix-auth-plugin
  jenkins-matrix-project-plugin
  jenkins-memory-monitor
  jenkins-remoting
  jenkins-ssh-cli-auth
  jenkins-task-reactor
  jenkins-test-annotations
  jenkins-trilead-ssh2
  jenkins-winstone
  jenkins-xstream
  maven-hpi-plugin
  maven-stapler-plugin
  sezpoz
  stapler
  stapler-adjunct-codemirror
  stapler-adjunct-timeline

Emmanuel Bourg

__
This is the maintainer address of Debian's Java team
. 
Please use
debian-j...@lists.debian.org for discussions and questions.

Bug#811522: proposed RM: jenkins -- RoQA; multiple security issues, FTBFS, unmaintained in Debian

2016-01-19 Thread Ansgar Burchardt
Package: jenkins
Severity: serious

Hi,

the jenkins package in Debian has multiple open security issues[1][2]
and fails to build with Groovy 2[3].  It also is quite outdated
(Debian: 1.565.3 released upstream mid-2014; current version: 1.644
from Jan 2016 with lots of releases inbetween).

Jenkins also isn't part of a stable release (currently only in
unstable).

I suggest to remove the package from Debian.  If there are no
objections, I'll reassign the request to the ftp.debian.org pseudo-
package later.

I'm also wondering if "jenkins-memory-monitor" should also be removed
at the same time or if it is also useful without jenkins?

Ansgar

  [1] 
  [2] 
  [3] 

__
This is the maintainer address of Debian's Java team
. 
Please use
debian-j...@lists.debian.org for discussions and questions.