Bug#327233: Any movement on this?

2005-11-28 Thread Russ Allbery
nature of this vulnerability, though, I'd still rather proceed with that than upload a new release with this patch. I'll try to write up a migration proposal this week and start the discussion with the OpenSSH maintainers. Thank you for the reminder! -- Russ Allbery ([EMAIL PROTECTED

Bug#339734: openssh-server: Kerberos tickets are not saved (pam_krb5)

2005-11-28 Thread Russ Allbery
Service principal 11/28/05 20:20:58 11/29/05 06:20:43 krbtgt/[EMAIL PROTECTED] Kerberos 4 ticket cache: /tmp/tkt1001 klist: You have no tickets cached [EMAIL PROTECTED]:~$ logout Connection to localhost closed. -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org

Bug#340225: fatal: PAM: pam_setcred(): Error in service module

2005-11-28 Thread Russ Allbery
Oskar Liljeblad [EMAIL PROTECTED] writes: On Monday, November 21, 2005 at 15:35, Russ Allbery wrote: I can't duplicate this. It works great for me using the following configuration: authsufficient pam_unix.so nullok_secure authrequiredpam_krb5.so use_first_pass

Bug#339734: openssh-server: Kerberos tickets are not saved (pam_krb5)

2005-11-30 Thread Russ Allbery
and openssh-server. Looks like that was the secret. The problem is with ChallengeResponseAuthentication; if you turn it on, the module fails, and if you turn it off, it works. I'll try to figure out what's going on and fix this. -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org

Bug#340360: Needs fix for MIT Kerberos 1.4

2005-11-30 Thread Russ Allbery
with the current version to give people some warning and keep from creating a module that just loops, but a new version should be uploaded with the patch in this bug or some other fix. Please let me know if you need a sponsor or other help in preparing an upload. Thanks! -- Russ Allbery ([EMAIL PROTECTED

Bug#341608: krb5: FTBFS on hurd-i386: Does not link with -lpthread

2005-12-01 Thread Russ Allbery
are needed). However, I don't think it's the right long-term solution for applications to have to know about this sort of internal implementation detail, so ideally I think it should be fixed in libpthread in the long term. -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org

Bug#339734: openssh-server: Kerberos tickets are not saved (pam_krb5)

2005-12-01 Thread Russ Allbery
Russ Allbery [EMAIL PROTECTED] writes: Looks like that was the secret. The problem is with ChallengeResponseAuthentication; if you turn it on, the module fails, and if you turn it off, it works. I'll try to figure out what's going on and fix this. I have a patch for this, but I'm giving

Bug#341588: OpenAFS prevents suspension

2005-12-01 Thread Russ Allbery
and see if it works there? Thanks! -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#341681: openafs-modules-source: 1.4.0 module won't compile against kernel 2.6.14.2

2005-12-02 Thread Russ Allbery
packages etc recompiled from Unstable/Testing). Note that OpenAFS currently doesn't support overriding the compiler with CC. Are you sure that you're using that specific compiler for both the kernel and the modules? OpenAFS always uses whatever compiler is installed as cc. -- Russ Allbery ([EMAIL

Bug#191616: libkadm55: Missing headers for kadm

2005-12-02 Thread Russ Allbery
forwarded 191616 [EMAIL PROTECTED] thanks This is upstream bug #617. http://krbdev.mit.edu/rt/Ticket/Display.html?id=617 -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble

Bug#200205: libgssapi_krb5: support GSSAPI version 2

2005-12-02 Thread Russ Allbery
forwarded 200205 [EMAIL PROTECTED] thanks This is upstream bug #1650. http://krbdev.mit.edu/rt/Ticket/Display.html?id=1650 -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble

Bug#127322: krb5-telnetd: clear-text fallback doesn't use PAM

2005-12-02 Thread Russ Allbery
forwarded 127322 [EMAIL PROTECTED] severity 127322 wishlist thanks This is upstream bug #811. http://krbdev.mit.edu/rt/Ticket/Display.html?id=811 -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject

Bug#278271: send-pr used tmp files unsafely

2005-12-02 Thread Russ Allbery
tags 278271 upstream thanks This is upstream bug #2752. http://krbdev.mit.edu/rt/Ticket/Display.html?id=2752 -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL

Bug#341836: openafs-modules-source: Bug#245015 still valid: Build fails with KSRC defined on commandline

2005-12-03 Thread Russ Allbery
it, but I need to understand how and why so that I can maintain the package in the future. wontfix is for bugs where I agree that the behavior is as described but don't plan on changing it for some reason. In this case, I'd be quite happy to fix the problem if I could understand it. -- Russ Allbery

Bug#341898: krb5: block migration to testing for now

2005-12-03 Thread Russ Allbery
Package: krb5 Severity: serious Justification: maintainer krb5 accidentally got a high urgency from the experimental upload, but this is a new major release and it shouldn't go into testing that quickly. (Among other things, there are a few other packages that need updated versions that should

Bug#341926: libpam-krb5: ccache parameter is being ignored

2005-12-04 Thread Russ Allbery
into the next release so that people will hopefully be aware of that. Let me know if that fixes the problem. -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#342095: openafs-{db,file}server: Depends on to much crud

2005-12-05 Thread Russ Allbery
flag, and indeed the kernel module isn't required (only recommended). The init script for the file server and db server depends on having bos available because that's the correct way to stop and restart the server. I don't see any point in changing that. -- Russ Allbery ([EMAIL PROTECTED

Bug#340349: RFA: openldap2.2 -- OpenLDAP server (slapd)

2005-12-05 Thread Russ Allbery
him involved in the package maintenance as well. -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#341681: openafs-modules-source: 1.4.0 module won't compile against kernel 2.6.14.2

2005-12-05 Thread Russ Allbery
Turbo Fredriksson [EMAIL PROTECTED] writes: Russ == Russ Allbery [EMAIL PROTECTED] writes: The compiler is gcc-2.95.4 (on a semi-woody system - woody with LDAPv3/AFS packages etc recompiled from Unstable/Testing). Russ Note that OpenAFS currently doesn't support overriding the Russ

Bug#342157: openssh-server: calls PAM auth and setcred in different contexts

2005-12-05 Thread Russ Allbery
Package: openssh-server Version: 1:4.2p1-5 Severity: important Apologies if this was already reported. I went through the PAM bugs and didn't see it, other than as a comment in #63460 which is a different issue. The Debian PAM mini-policy says: 1) Use the same PAM handle for all

Bug#342157: openssh-server: calls PAM auth and setcred in different contexts

2005-12-05 Thread Russ Allbery
Russ Allbery [EMAIL PROTECTED] writes: It would be very nice if openssh-server could be modified to not fork that separate [pam] subprocess and instead do the PAM authentication calls in the parent process. I expect this will break various other PAM modules that rely on the separation

Bug#341836: openafs-modules-source: Bug#245015 still valid: Build fails with KSRC defined on commandline

2005-12-05 Thread Russ Allbery
of it aren't being used. I'll get this fixed one way or the other in the next upload, which should be done in a day or two, if not sooner. Thanks! -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject

Bug#342095: openafs-{db,file}server: Depends on to much crud

2005-12-06 Thread Russ Allbery
(seems 1.3 and 1.4 can't work together in the same cell!?). 1.3 and 1.4 work fine together in the same cell (and with 1.2 and with much earlier versions). You're going to have to give me more error information -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle

Bug#225907: Build failure on Alpha with 2.4.23

2005-05-07 Thread Russ Allbery
Falk Hueffner [EMAIL PROTECTED] writes: Russ Allbery [EMAIL PROTECTED] writes: Could you give this another try I still get the same error with openafs-modules-source 1.3.81-4 and kernel-source-2.4.27 2.4.27-9. I took a more extensive look at this, and I'm puzzled. This is a bit hard

Bug#308137: linda: kernel modules may not have Depends

2005-05-08 Thread Russ Allbery
Package: linda Version: 0.3.13 Severity: wishlist When run against the OpenAFS kernel module package built from openafs-modules-source, linda reports: W: openafs-modules-2.4.28; There is no Depends: line in the control file. The package has no Depends: line in the control file. This is not

Bug#308195: libcgi-fast-perl: please increase priority to optional

2005-05-08 Thread Russ Allbery
Package: libcgi-fast-perl Version: 5.8.4-8 Severity: wishlist I maintain a package (webauth) that isn't exactly the most widely used package in the archive but that seems to fit the definition of optional as it's currently being used and I understand it (useful in more than just specialized

Bug#225907: Build failure on Alpha with 2.4.23

2005-05-08 Thread Russ Allbery
- elif test x$ac_cv_linux_config_modversions = xno -a $AFS_SYSKVERS -lt 26; then - MPS=MP SP else if test ${ac_cv_linux_config_smp+set} = set; then echo $ECHO_N (cached) $ECHO_C 6 -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email

Bug#225907: Build failure on Alpha with 2.4.23

2005-05-08 Thread Russ Allbery
the diff between r1023 and r1056). It looks like the local fix was broken by the merge with 1.3.77 (see the diff between r1406 and r1457, which added the elif). I'm inclined to just restore the local fix, since I think it's still correct, and complain to upstream. -- Russ Allbery ([EMAIL PROTECTED

Bug#308399: openafs-client: openafs wont shutdown in kernel 2.6.12-rc3

2005-05-09 Thread Russ Allbery
with preempt enabled? I believe this problem is specific to that configuration. I'm working on packaging 1.3.82 right now, which has a fix for this. -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject

Bug#308399: openafs-client: openafs wont shutdown in kernel 2.6.12-rc3

2005-05-09 Thread Russ Allbery
, although I may start trying to cherry-pick patches from upstream. (But testing is going to be a serious issue.) -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL

Bug#308408: missing dependency

2005-05-09 Thread Russ Allbery
(the changelog even says that), and must have experienced brain fade when I did it. New package ready, and I'll drop my sponsor a line. Once it gets uploaded, I'll send a note to debian-release to get it approved for sarge. Thank you *very* much for the testing and for catching this stupid mistake. -- Russ

Bug#308429: ITP: libpgp-sign-perl -- Perl module to create detached PGP signatures

2005-05-10 Thread Russ Allbery
Package: wnpp Severity: wishlist Owner: Russ Allbery [EMAIL PROTECTED] * Package name: libpgp-sign-perl Version : 0.19 Upstream Author : Russ Allbery [EMAIL PROTECTED] * URL : http://www.eyrie.org/~eagle/software/pgp-sign/ * License : GPL or Artistic

Bug#308427: libnumber-format-perl: improved description

2005-05-10 Thread Russ Allbery
Package: libnumber-format-perl Version: 1.45-1 Severity: wishlist Tags: patch The current package description doesn't help much in figuring out why one would want this module. Here's a proposed patch to improve it. --- debian/control.orig 2005-05-09 22:48:18.0 -0700 +++ debian/control

Bug#304709: Status of libafs-perl

2005-05-10 Thread Russ Allbery
I am and should contact me (also as co-maintainer of OpenAFS) before working further on it, but this is likely to take a while. -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble

Bug#308431: ITP: libnews-article-perl -- Perl modules for manipulating Usenet articles

2005-05-10 Thread Russ Allbery
Package: wnpp Severity: wishlist Owner: Russ Allbery [EMAIL PROTECTED] * Package name: libnews-article-perl Version : 1.27 Upstream Author : Andrew Gierth [EMAIL PROTECTED] * URL : http://www.erlenstar.demon.co.uk/perl/ * License : GPL or Artistic

Bug#308399: openafs-client: openafs wont shutdown in kernel 2.6.12-rc3

2005-05-10 Thread Russ Allbery
Philip Clark [EMAIL PROTECTED] writes: do you know roughly when the new openafs-client package will be available? I see it didn't go in today. I don't, no. Hopefully this week, I think. -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email

Bug#308398: irmp3: Patch for adduser issues

2005-05-10 Thread Russ Allbery
Package: irmp3 Followup-For: Bug #308398 This patch should fix the problem. It does remove the user before stopping the daemon, but this shouldn't cause any negative effects. The change in addition to the Depends addition is just moving postrm to prerm. diff -ruNp

Bug#308569: lintian: warn for update-inetd/adduser in maint script without depends

2005-05-11 Thread Russ Allbery
Package: lintian Version: 1.23.8 Severity: wishlist Tags: patch The testing being done for the sarge release has revealed that a fair number of packages use update-inetd in maintainer scripts without a dependency on netbase or adduser without a dependency on adduser. The following tested patch

Bug#297706: libapache-mod-witch: patch for postrm problem

2005-05-11 Thread Russ Allbery
Package: libapache-mod-witch Version: 0.0.4 Followup-For: Bug #297706 sed uses \( and \) for grouping, not ( ). Here's a patch that fixes this problem. --- libapache-mod-witch-0.0.4/debian/postrm.orig2002-09-16 11:36:39.0 -0700 +++ libapache-mod-witch-0.0.4/debian/postrm

Bug#308844: libpam-openafs-kaserver pam_afs.so gives undefined symbol errors when used

2005-05-12 Thread Russ Allbery
the module just recently, but it definitely doesn't work right now. I'll try to get this into the upcoming testing-proposed-updates upload. -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe

Bug#309002: broken dependencies

2005-05-13 Thread Russ Allbery
} +Depends: ${shlibs:Depends} Recommends: libgettext-ruby-util Description: Gettext for ruby Ruby GetText Package is Native Language Support Library and Tools -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED

Bug#299894: libferite.so.1: cannot open shared object file

2005-05-13 Thread Russ Allbery
+DEB_SHLIBDEPS_INCLUDE_ferite := debian/libferite1/usr/lib -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#308031: mailutils: sql injection vulnerability in sql authentication module

2005-05-13 Thread Russ Allbery
)) + if (strchr ('\\\, *p)) len++; } @@ -84,7 +84,7 @@ for (p = (const unsigned char *) ustr, q = str; *p; p++) { - if (strchr ('\, *p)) + if (strchr ('\\\, *p)) *q++ = '\\'; *q++ = *p; } -- Russ Allbery ([EMAIL PROTECTED]) http

Bug#308688: missing dependency

2005-05-13 Thread Russ Allbery
@@ -18,7 +18,7 @@ Package: tftpd-hpa Architecture: any -Depends: ${shlibs:Depends}, debconf +Depends: ${shlibs:Depends}, debconf, netbase Conflicts: tftpd Provides: tftpd Description: HPA's tftp server -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle

Bug#307796: xtradius: sql injection in authmysql

2005-05-13 Thread Russ Allbery
, that code not only isn't built by default but doesn't even compile without hacking, and is not included in the .deb built by the package. I agree that it should still be fixed, but I don't see the justification for a grave severity or making the bug RC. -- Russ Allbery ([EMAIL PROTECTED

Bug#308755: Build-Depends on dropped perl-transitional package

2005-05-13 Thread Russ Allbery
-Depends-Indep: perl-5.6, debhelper ( 3.0.5), imagemagick, perlmagick, texinfo (= 4.6-1) +Build-Depends: debhelper ( 3.0.5) +Build-Depends-Indep: perl (= 5.6.0), imagemagick, perlmagick, texinfo (= 4.6-1) Standards-Version: 3.5.6 Package: webmagick -- Russ Allbery ([EMAIL PROTECTED

Bug#271678: need help on #271678 (sizefo struct?)

2005-05-15 Thread Russ Allbery
). This is an incompatible change in the kernel headers, and there isn't any way for the code to compile on both systems without some additional portability work. If you don't care about supporting woody, the current code is correct. -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org

Bug#249315: XFS warning should be displayed more prominently

2005-05-16 Thread Russ Allbery
not sure what message you might have received about this, or what might have produced it. A grep doesn't seem to turn up anything in the OpenAFS source that would have produced such a warning. -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email

Bug#309345: libpam-krb5: PAM_REINITIALIZE_CRED isn't handled correctly

2005-05-17 Thread Russ Allbery
, and the Linux PAM documentation has not been particularly enlightening. -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#249315: XFS warning should be displayed more prominently

2005-05-17 Thread Russ Allbery
or EXT3_SUPER_MAGIC. (I'm not sure if any of the other file system types are allowable; that's the conservative approach.) If there were a command-line program that would return the same information, I could just call that in the init script, but I don't know of one. -- Russ Allbery ([EMAIL

Bug#309448: OpenAFS 1.3.81 does not work with SMP kernel when using make-kpkg

2005-05-17 Thread Russ Allbery
on multiple 2.4.x kernels, both SP and MP, and never had a problem. I can try later on a 2.4.30 kernel. -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#309439: ssh-krb5: .k5login breaks password login

2005-05-17 Thread Russ Allbery
if that resolves the problem? (I'm not sure if that's subsequently been fixed in K5, but if not, it would explain this.) -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL

Bug#309448: OpenAFS 1.3.81, SMP kernel, make-kpkg

2005-05-18 Thread Russ Allbery
would cause building the module out of the unpacked source tree outside of make-kpkg to work and building it with make-kpkg to fail. That sounds very much like a mismatch of kernel source trees, but I'm not sure. -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle

Bug#309779: gtimer still unstable - freezes randomly, corrupts window

2005-05-19 Thread Russ Allbery
that might have happened that would have done this? -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#309779: gtimer still unstable - freezes randomly, corrupts window

2005-05-19 Thread Russ Allbery
be very useful. This looks like it might be hard to track down. -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#309448: OpenAFS 1.3.81, SMP kernel, make-kpkg

2005-05-19 Thread Russ Allbery
time tonight to do this and I'd be glad to take a look. Please let me know what you're happy to have me do or not do in terms of building, loading modules, etc. My GnuPG key is at http://www.eyrie.org/~eagle/personal/rra.gpg.txt if you want to encrypt the password. -- Russ Allbery ([EMAIL

Bug#309448: OpenAFS 1.3.81, SMP kernel, make-kpkg

2005-05-19 Thread Russ Allbery
server pool, in fact. -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#309495: anon-proxy: fails to clean /etc/environment on uninstall, debconf change

2005-05-20 Thread Russ Allbery
-upgrade) -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#345619: debian-policy: 4.8. binary-{arch, indep} should fail with error code 2 - must

2006-01-04 Thread Russ Allbery
. I'm not entirely sure how one does go about making a change like this. Get consensus on debian-devel, send a note to debian-devel-announce asking everyone to change their packages, and get a test into lintian? -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle

Bug#345619: debian-policy: 4.8. binary-{arch, indep} should fail with error code 2 - must

2006-01-04 Thread Russ Allbery
Kari Pahula [EMAIL PROTECTED] writes: On Wed, Jan 04, 2006 at 10:30:04AM -0800, Russ Allbery wrote: The difficulty with this sort of change is that it requires changing every Debian package, or near to. I'm going to have the same problem with As far as changes go, this one can be minimally

Bug#220259: Not fixed yet

2006-01-05 Thread Russ Allbery
trick to work. Yeah, I'd reopened it myself and that is indeed the problem. It'll get fixed in the next revision. Sorry about that. -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe

Bug#346322: rssh runs cvs for rdist and rsync, doesn't check cvs -e

2006-01-06 Thread Russ Allbery
Package: rssh Version: 2.3.0-1 Severity: grave Tags: security patch Justification: renders package unusable Due to missing curly braces in util.c, if rssh gets as far as checking to see if the issued command was CVS, the check will always succeed. Furthermore, this failure can be exploited to

Bug#346322: rssh runs cvs for rdist and rsync, doesn't check cvs -e

2006-01-06 Thread Russ Allbery
Russ Allbery [EMAIL PROTECTED] writes: Package: rssh Version: 2.3.0-1 Severity: grave Tags: security patch Justification: renders package unusable Due to missing curly braces in util.c, if rssh gets as far as checking to see if the issued command was CVS, the check will always succeed

Bug#346322: rssh runs cvs for rdist and rsync, doesn't check cvs -e

2006-01-07 Thread Russ Allbery
previous versions have the chroot problem fixed in 2.3.0). -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#347228: libxt6: Missing dependency on libx11-6.

2006-01-09 Thread Russ Allbery
David Nusinow [EMAIL PROTECTED] writes: Cool, same fix. I'll apply and also restore DH_OPTIONS afterwards for cleanliness sake. Thank you! Restoring DH_OPTIONS afterwards is somewhat pointless given that each line of a Makefile is run in its own separate shell. -- Russ Allbery ([EMAIL

Bug#347322: svn-buildpackage: option to not run dch after --svn-tag

2006-01-09 Thread Russ Allbery
Package: svn-buildpackage Version: 0.6.14 Severity: wishlist I don't use dch (I use XEmacs with debian-changelog-mode instead) and don't want the UNRELEASED changelog entry added since I have to edit most of it when I go to work on the next release. I understand why it's the default, but it

Bug#254113: ttf-freefont: extra space still present in 20051206-2

2006-01-12 Thread Russ Allbery
found 254113 20051206-2 thanks I can confirm that this bug is definitely still present in 20051206-2. Downgrading to 20051102-2 (currently in testing) solves the problem. -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL

Bug#341681: openafs-modules-source: 1.4.0 module won't compile against kernel 2.6.14.2

2005-12-07 Thread Russ Allbery
Turbo Fredriksson [EMAIL PROTECTED] writes: Russ == Russ Allbery [EMAIL PROTECTED] writes: Russ Turbo Fredriksson [EMAIL PROTECTED] writes: Still the same though. I tried do a 'make-kpkg clean' first, but that didn't help either... Russ Try deleting and reinstalling the source tree

Bug#342095: openafs-{db,file}server: Depends on to much crud

2005-12-07 Thread Russ Allbery
that will be fixed in the next release that I'm getting ready to upload. (Also, the source package depended on too much other stuff, which will also be fixed.) -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject

Bug#342271: libpam-krb5: /etc/krb5.conf used, but not documented!

2005-12-07 Thread Russ Allbery
on krb5-config. This will be fixed in the next upload. Thanks! -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#342095: openafs-{db,file}server: Depends on to much crud

2005-12-08 Thread Russ Allbery
. -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#342607: openafs-modules-source: build kernel module on Ubuntu dapper kernel fails

2005-12-10 Thread Russ Allbery
upstream for one of the Linux kernel module folks to take a look since I don't know this area well, but presuming they say it's sane, I'll commit this both upstream and to the Debian package. Thanks! -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/

Bug#207056: OpenAFS on XFS-patched Alpha kernel

2005-12-10 Thread Russ Allbery
at this point. I wanted to check with you first, though, in case you objected or had more information. Otherwise, I'll go ahead and close this bug. Thanks! -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject

Bug#343246: openafs-client: OpenAFS incompatible with fam

2005-12-13 Thread Russ Allbery
in README.Debian, which I will do in the next upload. -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#343267: openssh-client: scp should have a more descriptive prompt than Password:

2005-12-13 Thread Russ Allbery
what PAM module is running, which is sometimes not desirable. (It also turns out that other password prompts break some applications, such as some Windows ssh clients.) If you use PasswordAuthentication, ssh will indeed produce a password prompt like the one that you want. -- Russ Allbery

Bug#341898: krb5: block migration to testing for now

2005-12-14 Thread Russ Allbery
Adeodato Simó [EMAIL PROTECTED] writes: * Russ Allbery [Sat, 03 Dec 2005 14:17:52 -0800]: Block it from migrating to testing for right now, probably for about ten days from this message. So, are there any issues that would advice against closing this bug like, now? :) Yes, libapache

Bug#341898: krb5: block migration to testing for now

2005-12-14 Thread Russ Allbery
Russ Allbery [EMAIL PROTECTED] writes: Adeodato Simó [EMAIL PROTECTED] writes: This would enable for kdelibs to be a valid candidate for testing. I might be missing something, but I don't think it would. I've been watching exactly that to make sure that I wasn't holding up the KDE

Bug#341898: krb5: block migration to testing for now

2005-12-14 Thread Russ Allbery
Sam Hartman [EMAIL PROTECTED] writes: Russ, how do you feel about the thread on c.p.kerberos about the mutex lock on debian? That seems rather bothersome. Mostly mystified, since I can't duplicate it at all. -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle

Bug#341898: krb5: block migration to testing for now

2005-12-14 Thread Russ Allbery
some part of the picture? I'm probably being slightly too conservative about l-a-m-k; it's mostly the mistaken urgency that the bug was intended to correct for. :) -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/

Bug#341898: krb5: block migration to testing for now

2005-12-14 Thread Russ Allbery
Adeodato Simó [EMAIL PROTECTED] writes: * Russ Allbery [Wed, 14 Dec 2005 14:08:18 -0800]: The version in testing will break horribly if libkrb53 1.4.3 is installed. In order to give people a chance to not have their Apache modules break, libkrb53 conflicts with the older version

Bug#341898: krb5: block migration to testing for now

2005-12-14 Thread Russ Allbery
, painfully learnt learned with [1]). [1] http://lists.debian.org/debian-devel-changes/2004/12/msg01132.html Aha! Thanks! Okay, this bug has now been closed, and krb5 should become a candidate tomorrow. We'll see where that leads us. -- Russ Allbery ([EMAIL PROTECTED]) http

Bug#341836: openafs-modules-source: Bug#245015 still valid: Build fails with KSRC defined on commandline

2005-12-20 Thread Russ Allbery
more anyway, and in the process this problem should have gone away. -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#276189: OpenAFS and user-mode-linux

2005-12-20 Thread Russ Allbery
will be in a position to test it and make sure it works. Andreas, are you in a position to do that? If I provided a revised openafs-modules-source package, could you test it on user-mode-linux? -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email

Bug#338012: debarchiver: allow signing to work interactively

2005-11-07 Thread Russ Allbery
22:37:00.0 -0700 +++ /usr/bin/debarchiver2005-11-07 11:41:26.0 -0800 @@ -1006,6 +1006,10 @@ # 2005-10-14 Daniel Leidert [EMAIL PROTECTED] # No longer invokes a helper program. We run gpg in batch mode without # tty to work-around old problems. +# 2005-11-07 Russ

Bug#269493: qa.debian.org: version comparison also fails with extra dashes

2005-11-07 Thread Russ Allbery
Package: qa.debian.org Followup-For: Bug #269493 The current version comparison for the watch code also fails when the upstream version contains a dash because it terminates the Debian version at the first dash. See: http://dehs.alioth.debian.org/maintainer.php?name=libauthen-sasl-cyrus-perl

Bug#292156: krb5-config: obsolete entries

2005-11-07 Thread Russ Allbery
record. The libdefaults and login section that are reported above are either MIT-specific or for other Kerberos software and should stay, I believe. Thanks for the report! -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL

Bug#338203: 73 pkgs contain debhelper maintscript remnant (cruft?)

2005-11-08 Thread Russ Allbery
# generated by other debhelper scripts. #DEBHELPER# This refers to the #DEBHELPER# token. In any case, I would like to request that lintian includes a check to ensure that new packages do not contain that text. Please don't. -- Russ Allbery ([EMAIL PROTECTED]) http

Bug#329333: bug closing etiquette

2005-11-08 Thread Russ Allbery
of annoying that Autoconf's build system tries to run Automake, though. I wonder if that's fixable. If someone *does* have automake-1.7a installed, they may not get the same build that everyone else gets. -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE

Bug#336558: logcheck-database: better spamd rules

2005-11-11 Thread Russ Allbery
Package: logcheck-database Version: 1.2.42 Followup-For: Bug #336558 Here's some additional information on the spamd rules and a try at a more restrictive rule. It's hard to get a good restrictive rule written, since on the spam detection rules, spamd puts basically arbitrary key=value pairs

Bug#338306: openafs-modules-source: modules do not compile with gcc 3.4 (the compiler the kernel was compiled with)

2005-11-11 Thread Russ Allbery
of the BTS via e-mail, at least for me. Not sure why.) -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#344269: lintian: false executable-not-elf-or-script warning with perl magic header

2005-12-21 Thread Russ Allbery
on the assumption that any unrecognized file is started under /bin/sh. -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/

Bug#344269: lintian: false executable-not-elf-or-script warning with perl magic header

2005-12-22 Thread Russ Allbery
Frank Küster [EMAIL PROTECTED] writes: Russ Allbery [EMAIL PROTECTED] wrote: Frank Küster [EMAIL PROTECTED] writes: eval '(exit $?0)' eval 'exec perl -S $0 ${1+$@}' eval 'exec perl -S $0 $argv:q' if 0; use strict; Is that the first line of the file? Generally one still starts

Bug#276189: OpenAFS and user-mode-linux

2005-12-22 Thread Russ Allbery
module packages handle it. A mini-policy for how to handle UML would be *really* helpful for this. -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#344269: lintian: false executable-not-elf-or-script warning with perl magic header

2005-12-23 Thread Russ Allbery
that this weird construct works and only works without the shebang line, maybe fixing lintian to recognize it and not complain about it *is* the right thing to do. Although the problem it's addressing seems pretty obscure to me at this point. -- Russ Allbery ([EMAIL PROTECTED]) http

Bug#344543: libkrb53: double free + cache corruption if krb5_get_credentials fails

2005-12-23 Thread Russ Allbery
type Kerberos V4 krb_mk_req failed: You have no tickets cached Name (localhost:eagle): Do you have the steps required to duplicate this from a current unstable install? -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED

Bug#344543: libkrb53: double free + cache corruption if krb5_get_credentials fails

2005-12-23 Thread Russ Allbery
can't get keys for. -- Russ Allbery ([EMAIL PROTECTED]) http://www.eyrie.org/~eagle/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#344596: libubit1c2: package contains no libraries

2005-12-23 Thread Russ Allbery
Package: libubit1c2 Version: 3.6.4-4 Severity: grave Justification: renders package unusable In the last C++ migration, it looks like the package name was changed in debian/control without changing the corresponding install file, and as a result the library package is actually empty. I recommend

Bug#344597: RM: ubit -- RoQA; orphaned, out-of-date, unnoticed grave breakage

2005-12-23 Thread Russ Allbery
Package: ftp.debian.org Severity: normal Please remove ubit from the archive. The library package has been broken in unstable and testing (completely empty) since August without anyone noticing until I went to fix it for the xlibs transition. It's last maintainer upload was February of 2004,

Bug#251088: xdm: calling pam_setcred multiple times, redux

2005-12-23 Thread Russ Allbery
Package: xdm Followup-For: Bug #251088 As mentioned earlier in this bug report, xdm calls pam_setcred multiple times, which can cause problems and at the least is useless work. More seriously, it discards any changes made in the environment after the last call, which can result in such problems

Bug#344600: xlockmore: doesn't refresh credentials via PAM

2005-12-23 Thread Russ Allbery
Package: xlockmore Version: 1:5.13-2.1 Severity: normal When authenticating via PAM, xlockmore calls only pam_autenticate and not account management or session management. There's even a comment in the source saying that credentials aren't needed, which is false. xlock programs should call the

  1   2   3   4   5   6   7   8   9   10   >