Bug#866890: pspp - cve-2017-10791 - cve-2017-10792

2017-07-03 Thread John Darrington
On Mon, Jul 03, 2017 at 11:37:30PM +0200, Friedrich Beckmann wrote: Hi John, today I looked a little bit at the hash function. I think the problem is that compared to the referenced code the x parameter is type int instead of unsigned int. Googling around the overflow

Bug#866890: pspp - cve-2017-10791 - cve-2017-10792

2017-07-03 Thread John Darrington
I suspect this report is mistaken. But this bit is Ben's code, so I'll let him comment on that. J' On Mon, Jul 03, 2017 at 07:22:57AM +0200, Friedrich Beckmann wrote: Dear owl337 team, thanks for looking at pspp and finding the security problems

Bug#850457: pspp 0.10.2-1 FTBS randomly

2017-06-03 Thread John Darrington
Hi Christoph, On Sat, Jun 03, 2017 at 12:27:12PM +0200, Christoph Berg wrote: Re: John Darrington 2017-06-03 <20170603061903.GA30068@jocasta.intra> > If I'm reading that log file correctly, the issue is simply that initdb is dumping that > message on stderr. Our te

Bug#850457: pspp 0.10.2-1 FTBS randomly

2017-06-03 Thread John Darrington
If I'm reading that log file correctly, the issue is simply that initdb is dumping that message on stderr. Our test considers that a failure. This would seem to suggest a problem with debian's postgres package. However I think we can safely ignore it by changing AT_CHECK([initdb -A trust],

Bug#820743: [Pkg-postgresql-public] Bug#820743: [hurd-i386] postgresql-common / postgresql-9.5 fails to install during pspp build

2016-04-12 Thread John Darrington
Just for clarification ... As correctly mentioned, the PostgreSQL server cannot run on the Hurd. However this does not mean that the PSPP postgres client option cannot or should not be enabled on the Hurd. It simply means that the regression test for that option cannot run. My recollection

Bug#532737: /usr/bin/dig: dig crashes on recursive PTR lookups for classless addresses

2009-06-11 Thread John Darrington
Package: dnsutils Version: 1:9.5.1.dfsg.P1-1 Severity: normal File: /usr/bin/dig This query: dig -x 203.82.214.165 +trace results in a Segmentation fault. -- System Information: Debian Release: 5.0 APT prefers testing APT policy: (500, 'testing') Architecture: i386 (i686) Kernel: Linux

Bug#517624: amaya: Amaya crashes on start-up.

2009-02-28 Thread John Darrington
Package: amaya Version: wx-9.53-1 Severity: grave Justification: renders package unusable When starting amaya, it aborts with the following error message: The program 'amaya-wx' received an X Window System error. This probably reflects a bug in the program. The error was 'BadMatch (invalid

Bug#486777: pspp: New upstream release

2008-06-17 Thread John Darrington
Package: pspp Version: 0.3.0-7 Severity: normal PSPP version 0.6.0 has been released. This version is 64bit safe, fixes many bugs and introduces new features. -- System Information: Debian Release: 4.0 APT prefers stable APT policy: (500, 'stable') Architecture: i386 (i686) Shell: /bin/sh

Bug#480437: ncurses5-config reports incorrect information

2008-05-09 Thread John Darrington
Package: ncurses-bin / libncurses5-dev Version: 5.6+20080308-1 Severity: important ncurses-bin ships the ncurses5-config binary. Running ncurses5-bin --cflags reports -I/usr/include/ncurses But this is wrong. The package does not provide /usr/include/ncurses. Even if libncurses5-dev is

Bug#390870: Xbiff cannot find its bitmaps

2007-04-12 Thread John Darrington
No. The problem seems to have been fixed in recent versions. J' On Tue, Apr 10, 2007 at 11:04:10PM +0200, Brice Goglin wrote: Hi, About 6 months ago, you reported a bug to the Debian BTS regarding xbiff not finding its bitmaps. I can't reproduce here. Did you reproduce this

Bug#405622: initscripts: /etc/init.d/mountnfs.sh fails to detect mounted files.

2007-01-04 Thread John Darrington
Package: initscripts Version: 2.86.ds1-36 Severity: important /etc/init.d/mountnfs.sh waits until all entries from /etc/fstab have been succesfully mounted. However, if one of these is a file, rather than a directory, then it fails to detect that it is in fact mounted. Thus, there is an

Bug#400851: tzdata: Daylight saving rules for Western Australia have changed.

2006-11-28 Thread John Darrington
Package: tzdata Version: 2006l-1 Severity: important Tags: l10n The government of Western Australia have decided (contrary to recent referendum) to introduce daylight saving. See

Bug#390870: Xbiff cannot find its bitmaps

2006-10-03 Thread John Darrington
Package: xbase-clients Version: 1:7.1.ds-3 When starting xbiff I get: Warning: Cannot convert string flagup to type Pixmap Warning: Cannot convert string flagdown to type Pixmap and xbiff displays a bunk bed instead of the mailbox. I expected to see a mailbox. strace indicates that it's

Bug#325993: fuse-utils: addgroup vs. groupadd

2006-04-12 Thread John Darrington
Package: fuse-utils Version: 2.5.2-4 Followup-For: Bug #325993 This seems to be because postinst says addgroup --system fuse whereas it ought to say groupadd --system fuse. Similarly postrm says delgroup --system fuse instead of groupdel --system fuse. -- System Information: Debian Release:

Bug#300504: lam-runtime: Name clash with wipe package.

2005-03-21 Thread John Darrington
On Mon, Mar 21, 2005 at 07:52:39PM +0100, Thomas Schoepf wrote: What does ls -l /usr/share/man/man1/wipe.1.gz show? [EMAIL PROTECTED]:~$ ls -l /usr/share/man/man1/wipe.1.gz -rw-r--r--1 root root 4215 Jul 27 1999 /usr/share/man/man1/wipe.1.gz This one is the man page

Bug#300504: lam-runtime: Name clash with wipe package.

2005-03-19 Thread John Darrington
Package: lam-runtime, wipe Version: 6.5.8-2 Severity: normal There are two manpages calles wipe(1). I have lam-runtime installed at the same time as wipe. When I type man wipe I expected to get the manpage for /usr/share/man/man1/wipe.1.gz Instead I got /usr/share/man/man1/lam-wipe.1.gz --