Bug#881862: tcpdump: CVE-2017-16808: heap-based buffer over-read related to aoe_print in print-aoe.c and lookup_emem in addrtoname.c

2017-11-16 Thread Romain Francoise
Hi Salvatore, On Wed, Nov 15, 2017 at 10:04:18PM +0100, Salvatore Bonaccorso wrote: > the following vulnerability was published for tcpdump. This is > basically just to track the issue in Debian BTS. Upstream said that > [1] is not the first report and the issue is been reported alrady, and >

Bug#881137: xul-ext-https-everywhere: Please update xul-ext-https-everywhere to version 2017.10.30 by next pu

2017-11-16 Thread Michael Meskes
severity 881137 important thanks > Package: xul-ext-https-everywhere > Version: 5.2.8-1 > Severity: grave > Justification: renders package unusable As long as we have firefox-esr in a pre-57 release I don't see why the package is unusable. Nevertheless it should be upgraded of course. Michael

Bug#881902: roundcube-core: Missing editor tinymce

2017-11-16 Thread rollopack
Package: roundcube-core Version: 1.3.3+dfsg.1-1 Severity: important Hi, in the latest package of roundcube-core the tinymce editor folder (/usr/share/roundcube/program/js/tinymce/) is missing.

Bug#881812: xul-ext-treestyletab: two months out-of-date

2017-11-16 Thread Ian Bruce
Package: xul-ext-treestyletab Version: 0.19.2017061601-1 Followup-For: Bug #881812 Please upgrade this package to the current version, which is required in order to support Firefox v57, as recently uploaded to Unstable. https://addons.mozilla.org/en-US/firefox/addon/tree-style-tab/versions/

Bug#881901: openvpn: 'management tunnel' now ignores the port setting

2017-11-16 Thread Philip Hands
Package: openvpn Version: 2.4.0-6+deb9u2 Severity: normal Dear Maintainer, In version 2.3.4-5+deb8u2, if one had a setting of, e.g.: management tunnel 5656 the behaviour was as documented -- it would wait for the tunnel to come up, and then listen on port 5656 for the management interface.

Bug#877442: marked as pending

2017-11-16 Thread Dylan Aïssi
Hi Moritz, 2017-11-14 21:33 GMT+01:00 Moritz Muehlenhoff : > > There's still the possibility to fix this via a stable point update > [1], so I was wondering whether anything of that sort is planned by > you. > Thanks for the hint. Now, it is ongoing [1]. Best, Dylan [1]

Bug#873647: add patch for libshout

2017-11-16 Thread Sebastian Andrzej Siewior
control: tags -1 patch control: forwarded -1 http://lists.xiph.org/pipermail/icecast-dev/2017-November/002641.html Please find attached the patch. Sebastian >From 01fafc449f0de56743d08e7976933c49e2915bfa Mon Sep 17 00:00:00 2001 From: Sebastian Andrzej Siewior Date:

<    1   2   3