Bug#760347: a must have missed a question somewhere

2014-09-03 Thread Mike O'Connor
Brian, I believe I have all the archives from the list. No need to start recreating anything… stew -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#534338: OpenSSL bindings for Perl -- licensing questions

2012-06-27 Thread Mike O'Connor
On Wed, Jun 27, 2012 at 12:52:28PM -0400, Guy Hulbert wrote: On Wed, 2012-27-06 at 12:49 -0400, Daniel Kahn Gillmor wrote: On 06/27/2012 12:38 PM, Guy Hulbert wrote: It's unenforcable if the modules in question do not incorporate any OpenSSL code and are just an interface to the library.

Bug#534338: OpenSSL bindings for Perl -- licensing questions

2012-06-27 Thread Mike O'Connor
Kai Storbeck k...@xs4all.nl writes: I'm a bit perplexed that the module authors have anything to do with this as long as they are clearly stating their code is released under the artistic license. The license of the perl module is not the concern. The concern is that we are violating the

Bug#677723: gnome-settings-daemon: --no-daemon option in manpage is invalid

2012-06-16 Thread Mike O'Connor
Package: gnome-settings-daemon Version: 3.4.2-3 Severity: minor The manpage for gnome-settings-daemon lists a --no-daemon option: --no-daemon Do not detach the daemon process from its controlling terminal However, try to run gnome-settings-daemon with that option fails:

Bug#677146: python-uno uses file from libreoffice-core in preinst without declaring PreDepends

2012-06-11 Thread Mike O'Connor
Package: python-uno Version: 1:3.5.3-5 Severity: serious Justification: Policy 7.2 during an upgrade, the python-uno preinst script calls: /usr/lib/libreoffice/program/unopkg This file seems to come from the libreoffice-core pacakge. According to the policy: Pre-Depends are also required

Bug#658341: upload of multi-arch enabled dpkg (in time for wheezy)

2012-02-02 Thread Mike O'Connor
On Thu, 2 Feb 2012 16:59:53 +0100, Guillem Jover guil...@debian.org wrote: In any case a multi-arch enabled dpkg will not miss wheezy.=20 Guillem, Are you really in a position to declare this? The release team as previously said [0] directly to you that they were looking for an upload in

Bug#625050: cannot reproduce

2011-11-04 Thread Mike O'Connor
tags 625050 unreproducible thanks I'm unable to reprodue this bug on amd64. Is anyone else able to reproduce this? pgp97XyjhsYYf.pgp Description: PGP signature

Bug#612562: unable to reproduce

2011-11-04 Thread Mike O'Connor
Thomas, I'm unable to reproduce this. It also looks like there has been a new version of this package uploaded since your report was filed. Are you still able to reproduce this bug? stew pgpcAqonAeWlx.pgp Description: PGP signature

Bug#614527: unable to reproduce

2011-11-04 Thread Mike O'Connor
I'm unable to reproduce this bug. Is anyone else able to reproduce this bug? stew -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#647319: RM: freesba -- RoQA; Buggy, unmaintained, NPOASR

2011-11-01 Thread Mike O'Connor
Package: ftp.debian.org Severity: normal freesba has only ever had one upload, its been RC buggy for months with no response from the maintainer. It has no reverse depends and a popcon ~ 10. thanks, stew -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of

Bug#646953: RM: aolserver4-nsimap -- RoQA; Buggy, unmaintained, miniscule popcon

2011-10-28 Thread Mike O'Connor
Package: ftp.debian.org Severity: normal aolserver4-nsimap has an RC bug that hasn't gotten a response in 6 months, it hasn't had an upload in years, and the popcon is 5 and it has no reverse depends. It seems like a good candidate for removal. thanks, stew -- To UNSUBSCRIBE, email to

Bug#646729: source code is required in main

2011-10-26 Thread Mike O'Connor
severity 646729 serious thanks The section of policy referenced in the Justification is quite clear on this one: 2. Source Code The program must include source code, and must allow distribution in source code as well as compiled form. We on the ftp team have been requiring this of

Bug#637622: dtc-common: places configuration files in /var/lib

2011-08-13 Thread Mike O'Connor
Package: dtc-common Severity: serious Justification: Policy 10.7.2 dtc seems to put lots of configuation files in /var/lib/dtc, contrary to policy. -- System Information: Debian Release: wheezy/sid APT prefers unstable APT policy: (600, 'unstable'), (500, 'testing'), (1, 'experimental')

Bug#637509: RM: dtc -- RoQA; consistently buggy and non-policy

2011-08-13 Thread Mike O'Connor
On Fri, 12 Aug 2011 22:01:58 +0800, Thomas Goirand tho...@goirand.fr wrote: Philipp Kern pk...@debian.org wrote: In case that the bug numbers are not obvious: #614302, #614304, #611680, #414480, #566654. We're going more than 4 years in the past here, with some being false positive.

Bug#637509: RM: dtc -- RoQA; consistently buggy and non-policy compliant

2011-08-13 Thread Mike O'Connor
On Fri, 12 Aug 2011 17:52:59 +0800, Thomas Goirand tho...@goirand.fr wrote: * This package depends on being able to modify configuration files of other packages. (see #637501 and the bugs referenced in that bug) Yes, which is the goal of the software, yes. If the gaol this software is

Bug#637501: dtc-common: modifies config files of other packages

2011-08-13 Thread Mike O'Connor
On Fri, 12 Aug 2011 17:31:19 +0800, Thomas Goirand tho...@goirand.fr wrote: The goal of my software is to handle the configuration of the server. If we follow what you are saying, then an administrator would have to spend hours to setup his server manually for a single installation. Do you

Bug#637622:

2011-08-13 Thread Mike O'Connor
Thomas Goirand writes: I don't see any configuration file there. seriously? How about named.conf? How about vhosts.conf? root@testdtc:~# source /etc/apache2/envvars root@testdtc:/root# apache2 -S 192.168.122.137:* is a NameVirtualHost default server www.foo.com

Bug#637618: I don't understand your response.

2011-08-13 Thread Mike O'Connor
I don't understand your response. I don't know what chrooted users have to do with this bug. The problem is that you are allowing the dtc user to run any program they wish as root. This means that any apache vulnerability easily becomes a remote root vulnerability. If your intention is to let

Bug#637498: dtc-common: does not sanitize input allowing SQL injection

2011-08-12 Thread Mike O'Connor
Package: dtc-common Version: 0.32.10-2 Severity: important Tags: upstream, security The two logPushlet.php pages do not sanitize input allowing for SQL injection. as an example, going to a url like: http://127.0.0.1/dtcadmin/logPushlet.php?vps_node='%20or%201%20into%20outfile%20'/tmp/kilroy

Bug#637501: dtc-common: modifies config files of other packages

2011-08-12 Thread Mike O'Connor
Package: dtc-common Version: 0.32.10-2 Severity: serious Justification: Policy 10.7.4 It seems to me that the package tries to subvert policy 10.7.4 here. Other bugs have been opened against this source package in the past (for example #414469, #402432, #414484). I think that trying to get

Bug#637505: dtc: minimized js files without source

2011-08-12 Thread Mike O'Connor
Source: dtc Version: missing source for shared/gfx/skin/grayboard/js/DD_roundies-min.js Severity: serious Justification: Policy 2.2.1 shared/gfx/skin/grayboard/js/DD_roundies-min.js is minimized javascript without included source. Upstream provides non-minimized source which is clearly the

Bug#637509: RM: dtc -- RoQA; consistently buggy and non-policy compliant

2011-08-12 Thread Mike O'Connor
Package: ftp.debian.org Severity: normal It's a shame having to do this for a package with an active maintainer, but I strongly feel like dtc should be removed from debian. My reasons for thinking this: * It seems like anyone that spends any time looking at this package finds security bugs. *

Bug#637509: RM: dtc -- RoQA; consistently buggy and non-policy compliant

2011-08-12 Thread Mike O'Connor
this bug wasn't enough. Note that when I first attempted to alert you to the issue that started http://lists.debian.org/debian-release/2011/07/msg00325.html that first you obviously didn't actually read my report fully. My report: On Mon, 11 Jul 2011 23:43:19 -0400, Mike O'Connor s...@vireo.org wrote

Bug#637617: dtc-common: install script creates logfile with weak permissions

2011-08-12 Thread Mike O'Connor
Package: dtc-common Severity: important Tags: upstream, security /usr/share/dtc/admin/install/functions: chmod 666 /var/log/dtc.log root@testdtc:~# ls -l /var/log/dtc.log -rw-rw-rw- 1 root root 27664 Aug 13 00:40 /var/log/dtc.log Why would a log file like this need to be world writable? 0666 is

Bug#637509: RM: dtc -- RoQA; consistently buggy and non-policy compliant

2011-08-12 Thread Mike O'Connor
On Sat, 13 Aug 2011 09:27:18 +0800, Thomas Goirand tho...@goirand.fr wrote: On 08/13/2011 12:27 AM, Ansgar Burchardt wrote: * No priviledge separation: everything -- including apache -- runs as the user dtc which also owns config files for apache, bind and others. This probably makes

Bug#637618: dtc-common: giving sudo access to chrootuid is giving access to root

2011-08-12 Thread Mike O'Connor
Package: dtc-common Severity: critical Tags: security Justification: root security hole the install script gives sudo access to the dtc user (the user that is running apache) unrestricted access to chrootuid, which essentially gives root access to the dtc account: root@testdtc:/var/lib/dtc/etc#

Bug#637619: dtc-common: predictable tmpfile create allows symlink attack

2011-08-12 Thread Mike O'Connor
Package: dtc-common Severity: normal Tags: upstream, security If maxmind is enabled, it uses the predictable filename: /tmp/maxmind.ws.cache allowing a symlink to use the dtc priveleges to overwrite a file: nobody@testdtc:/$ whoami nobody nobody@testdtc:/$ ln -s

Bug#637509: RM: dtc -- RoQA; consistently buggy and non-policy compliant

2011-08-12 Thread Mike O'Connor
On Fri, 12 Aug 2011 17:52:59 +0800, Thomas Goirand tho...@goirand.fr wrote: * It seems like anyone that spends any time looking at this package finds security bugs. .snip. This is purely your appreciation and your view on my software, I don't think this is reality. I was waiting for

Bug#634015: Proposition to team-maintain m2crypto.

2011-08-10 Thread Mike O'Connor
Package: python-m2crypto Severity: serious That may take a little more time, as I noted that demo/x509/proxylib.py is not free: # Matt Rodriguez, LBNL #Copyright (c) 2003, The Regents of the University of

Bug#635084: php-html-common: inaccurate copyright file

2011-07-22 Thread Mike O'Connor
Source: php-html-common Version: 1.2.5-1 Severity: serious Justification: Policy 12.5 debian/copyright refers to the php 2.02 license, but the source code refers to the 3.01 license. The copyright files claims that PHP Group is the copyright holder of this software. Where did that information

Bug#635085: php-net-ping: please update copyright file

2011-07-22 Thread Mike O'Connor
Source: php-net-ping Version: 2.4.5-2 Severity: serious Justification: Policy 12.5 The source code claims to be copyright by several of the upstream authors, but the source code itself doesn't have these copyright claims anyway. The sourcecode claims to be held by the the PHP Group. Please

Bug#607839: Question about GNOME Trademark and GNOME project packages in Debian

2011-07-15 Thread Mike O'Connor
On Fri, 15 Jul 2011 13:01:13 +0100 (BST), MJ Ray m...@phonecoop.coop wrote: Joerg Jaspert wrote: We feel that it is infeasible for Debian to be in complete compliance with the current GNOME trademark license. [...] OK, sorry if this is an old chestnut, but do we actually need a licence in

Bug#633617: dtc-core: config script gives false/misleading information

2011-07-12 Thread Mike O'Connor
Package: dtc-core Version: 0.32.10-2 Severity: normal debian/dtc-core.templates contains this: In any case, please make sure that your MySQL root password is set. As per default, Debian installs it with a blank password. To set your MySQL root password, issue the following command:

Bug#633643: libnatpmp: missing license in copyright file

2011-07-12 Thread Mike O'Connor
Source: libnatpmp Version: 20101211-2 Severity: serious Justification: Policy 12.5 Some of the source files carry a MIT like license which is not mentioned in the package copyright file bye, stew -- System Information: Debian Release: wheezy/sid APT prefers unstable APT policy: (600,

Bug#633616: dtc-xen_finish_install is suspect

2011-07-12 Thread Mike O'Connor
On Tue, 12 Jul 2011 20:08:30 +0800, Thomas Goirand tho...@goirand.fr wrote: It assumes I have ssh installed. If I don't, the script terminates early with an error. Sure, it assumes sshd to be installed: that's the hole point of the script! Do you think it should be made more

Bug#633643: libnatpmp: missing license in copyright file

2011-07-12 Thread Mike O'Connor
On Tue, 12 Jul 2011 21:43:02 +0800, Thomas Goirand tho...@goirand.fr wrote: On 07/12/2011 08:43 PM, Mike O'Connor wrote: Source: libnatpmp Version: 20101211-2 Severity: serious Justification: Policy 12.5 Some of the source files carry a MIT like license which is not mentioned

Bug#552995: unable to reproduce

2011-07-12 Thread Mike O'Connor
tag 552995 + unreproducible thanks I'm not able to reproduce this with a current version of emacs and ecb. I suspect that whatever was causing your problem has since been fixed. Can you confirm whether or not you are still able to reproduce this bug? Thanks, stew pgpwDce4x1n1l.pgp

Bug#269794: unreproducible

2011-07-12 Thread Mike O'Connor
tag 269794 + unreproducible tag 471693 + unreproducible tag 426805 + unreproducible tag 384590 + unreproducible thanks I'm not able to produce this bug with current versions of emacs/ecb. As these bugs were filed a long time ago, I believe it is quite possible that these bugs were fixed by

Bug#633616: dtc-xen_finish_install is suspect

2011-07-12 Thread Mike O'Connor
On Tue, 12 Jul 2011 23:30:19 +0800, Thomas Goirand tho...@goirand.fr wrote: On 07/12/2011 09:23 PM, Mike O'Connor wrote: Remember that the goal is to provide a helper to quickly disable port forwarding. It does work on a freshly installed server. I don't mind improving the script if you can

Bug#633665: tumgreyspf: inaccurate copryight file

2011-07-12 Thread Mike O'Connor
Source: tumgreyspf Version: 1.35-7 Severity: serious Justification: Policy 12.5 As discussed offline in email with maintainer, this package claims that the software is GPL-2+, when it seems that there is no reason to believe it is anything other than GPL-1 bye, stew -- System Information:

Bug#633666: user/group created by dtc-stats-daemon in postinst should be a system user

2011-07-12 Thread Mike O'Connor
Package: dtc-stats-daemon Version: 0.32.10-2 Severity: normal the package creates a new group and new user in postinst. According to policy 9.2.2, a package requiring a user should be allocating system users. bye, stew -- System Information: Debian Release: wheezy/sid APT prefers unstable

Bug#633665: tumgreyspf: inaccurate copryight file

2011-07-12 Thread Mike O'Connor
anything other than GPL-1 Pardon me, that should read anything other than GPL-2 stew pgpdWscDnjHrg.pgp Description: PGP signature

Bug#633579: mlmmj: inadequate debian/copyright

2011-07-11 Thread Mike O'Connor
Source: mlmmj Version: 1.2.17-2 Severity: serious Justification: Policy 12.5 find_email_adr.c is the source package is a 4-clause BSD license. This license is not documented in any of the copyright files. This needs to be documented, as does the copyright holder of this file. As an asside.

Bug#633580: dtc: inadequate debian/copyright

2011-07-11 Thread Mike O'Connor
Source: dtc Version: 0.32.10-2 Severity: serious Justification: Policy 12.5 shared/gfx/xanjaxXHR.js appears to be distributed under the AGPL, but this license isn't mentioned in debian/copyright. (there are also several other copies of this same file) --- debian/copyright contains the

Bug#633600: nova: inadequate copyright file

2011-07-11 Thread Mike O'Connor
Source: nova Version: 2011.2-1 Severity: serious Justification: Policy 12.5 In reviewing this source package, I find several problems with the copyright file: tools/ajaxterm/sarissa* are LGPL, but this is not mentioned in debian/copyright. The rest of ajaxterm is public domain In the

Bug#633602: sbox-dtc: should allocate a system user/group

2011-07-11 Thread Mike O'Connor
Package: sbox-dtc Version: 1.11.3-1 Severity: normal sbox-dtc uses groupadd/useradd without -r. According to policy 9.2.2, a package requiring a user should be allocating system users. when the package is purged, this user/group is left on the system. thanks, stew -- System Information:

Bug#633603: sbox-dtc: logrotate script recreates log with wrong user/group

2011-07-11 Thread Mike O'Connor
Package: sbox-dtc Version: 1.11.3-1 Severity: normal when I install sbox-dtc, it creates /var/log/sbox.log owned by dtc:dtcgrp However, the logrotate file it installs has: create 640 www-data www-data Seems like these cant both be correct. Should the adm group be givin read permission

Bug#633613: dtc-xen: purge does not remove all files

2011-07-11 Thread Mike O'Connor
Package: dtc-xen Version: 0.5.14-1 Severity: normal While purging the package, I get: dpkg: warning: while removing dtc-xen, directory '/usr/share/dtc-xen' not empty so not removed. When I inspect: # ls /usr/share/dtc-xen/ Properties.pyc daemon.pyc -- System Information: Debian Release:

Bug#633613: also /etc/dtc-xen

2011-07-11 Thread Mike O'Connor
I also see that: authorized_keys2 dtc-xen-firewall-custom-rules dtc-xen-firewall.sh dtc-xen.cert.cert dtc-xen.cert.csr dtc-xen.cert.key htpasswd privkey.pem are all left in /etc/dtc-xen after purging both dtc-xen and dtc-xen-firewall. pgpfCVAWhc3PS.pgp Description: PGP signature

Bug#633615: dtc-xen: vgdisplay_free_size is either useless or broken

2011-07-11 Thread Mike O'Connor
Package: dtc-xen Version: 0.5.14-1 Severity: minor I cannot figure out why /usr/sbin/vgdisplay_free_size is useful. It assumes that you have a lvm named lvm1? I don't see anything in dtc-xen that creates a lvm1. The only other reference I see is that the fsckVPSpartition verb in the SOAP

Bug#633616: dtc-xen_finish_install is suspect

2011-07-11 Thread Mike O'Connor
Package: dtc-xen Version: 0.5.14-1 Severity: normal I find a number of issues with /usr/sbin/dtc-xen_finish_install The user is told via debconf that this script should be run to finish the install of dtc-xen. This script however seems to do I bunch of things that I find suspect. chown

Bug#632142: reassign to emacs23

2011-07-10 Thread Mike O'Connor
reassign 632142 emacs23 thanks So the problem here is really that cedet, speedbar, eieio are now implemented by emacs directly. These packages, which are no longer in testing/unstable, should not have targetted emacs23. But since that cat is already out of the bag, the easiest way to avoid this

Bug#632142: how is cedet installed?

2011-07-06 Thread Mike O'Connor
When you say Installing ecb results in a broken package due to several errors regarding missing libs from CEDET (though all such packages are installed) What packages do you mean? CEDET is part of emacs, so there should be no additional packages. Do you have cedet packages installed From stable

Bug#632652: Invalid maintainer email address

2011-07-04 Thread Mike O'Connor
Source: gecko-mediaplayer Severity: serious Justification: 3.3 Trying to email the maintainer of this package results in: 550 5.1.1 norse...@ubuntu.com: Recipient address rejected: User unknown in virtual alias table A valid email address is required by policy 3.3. bye, stew

Bug#632653: Invalid maintainer email address

2011-07-04 Thread Mike O'Connor
Source: gnome-mplayer Severity: serious Justification: 3.3 Trying to email the maintainer of this package results in: 550 5.1.1 norse...@ubuntu.com: Recipient address rejected: User unknown in virtual alias table A valid email address is required by policy 3.3. bye, stew

Bug#632654: Invalid maintainer email address

2011-07-04 Thread Mike O'Connor
Source: tolua++ Severity: serious Justification: 3.3 Trying to email the maintainer of this package results in: 550 5.1.1 norse...@ubuntu.com: Recipient address rejected: User unknown in virtual alias table A valid email address is required by policy 3.3. bye, stew pgpzYSNwE7WGp.pgp

Bug#632655: Invalid maintainer email address

2011-07-04 Thread Mike O'Connor
Source: conky Severity: serious Justification: 3.3 Trying to email the maintainer of this package results in: 550 5.1.1 norse...@ubuntu.com: Recipient address rejected: User unknown in virtual alias table A valid email address is required by policy 3.3. bye, stew pgpekkDDBhmwd.pgp

Bug#632410: O: gtkglext -- OpenGL Extension to GTK+ (shared libraries)

2011-07-01 Thread Mike O'Connor
Package: wnpp Severity: normal After discovering that this package was no longer maintained, I had the oppertunity to speak to the listed maintainer of this package, who indicated that he is no longer participating in Debian, and his packages should be orphaned The package description is:

Bug#632411: O: pidgin-audacious -- pidgin integration with Audacious

2011-07-01 Thread Mike O'Connor
Package: wnpp Severity: normal The maintainer of this package has indicated to me that he is no loner participating in the Debian project and that his packages should be orphaned. The package description is: pidgin-audacious is a plugin for pidgin which provides integration with Audacious. .

Bug#632412: O: pidgin-mpris -- sets your available message to your currently playing track

2011-07-01 Thread Mike O'Connor
Package: wnpp Severity: normal The maintainer of this package has indicated to me that he is no loner participating in the Debian project and that his packages should be orphaned. The package description is: The pidgin-mpris plugin sets the title of a currently playing track in a user

Bug#632413: O: qpopper -- Enhanced Post Office Protocol server (POP3)

2011-07-01 Thread Mike O'Connor
Package: wnpp Severity: normal The maintainer of this package has indicated to me that he is no loner participating in the Debian project and that his packages should be orphaned. The package description is: This is The Qualcomm enhanced version of the Post Office Protocol Daemon (POP3

Bug#632414: O: upse

2011-07-01 Thread Mike O'Connor
Package: wnpp Severity: normal The maintainer of this package has indicated to me that he is no loner participating in the Debian project and that his packages should be orphaned. -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble?

Bug#632262: Invalid maintainer address

2011-06-30 Thread Mike O'Connor
Source: upse Justification: 3.3 Severity: serious The listed maintainer of this package is William Pitcock neno...@sacredspiral.co.uk, however the only listed MX record for this domain is unusable: stew@tang:~ $ host -t mx sacredspiral.co.uk sacredspiral.co.uk mail is handled by 5

Bug#632263: Invalid maintainer address

2011-06-30 Thread Mike O'Connor
Source: qpopper Justification: 3.3 Severity: serious The listed maintainer of this package is William Pitcock neno...@sacredspiral.co.uk, however the only listed MX record for this domain is unusable: stew@tang:~ $ host -t mx sacredspiral.co.uk sacredspiral.co.uk mail is handled by 5

Bug#632264: Invalid maintainer address

2011-06-30 Thread Mike O'Connor
Source: pidgin-mpris Justification: 3.3 Severity: serious The listed maintainer of this package is William Pitcock neno...@sacredspiral.co.uk, however the only listed MX record for this domain is unusable: stew@tang:~ $ host -t mx sacredspiral.co.uk sacredspiral.co.uk mail is handled by

Bug#632266: Invalid maintainer address

2011-06-30 Thread Mike O'Connor
Source: gtkglext Justification: 3.3 Severity: serious The listed maintainer of this package is William Pitcock neno...@sacredspiral.co.uk, however the only listed MX record for this domain is unusable: stew@tang:~ $ host -t mx sacredspiral.co.uk sacredspiral.co.uk mail is handled by 5

Bug#632265: Invalid maintainer address

2011-06-30 Thread Mike O'Connor
Source: pidgin-audacious Justification: 3.3 Severity: serious The listed maintainer of this package is William Pitcock neno...@sacredspiral.co.uk, however the only listed MX record for this domain is unusable: stew@tang:~ $ host -t mx sacredspiral.co.uk sacredspiral.co.uk mail is handled

Bug#630818: Invalid Maintainer

2011-06-17 Thread Mike O'Connor
Package: diff-ext Version: 0.3.2-1.1 Severity: serious Justification: Policy 3.3 The listed maintainer of this package is: Maintainer: Andrea Veri andrea.ver...@gmail.com However, attempting to email this address results in: andrea.ver...@gmail.com SMTP error from remote mail server

Bug#630830: xorg: licenses / copyright statements missing from copyright file

2011-06-17 Thread Mike O'Connor
Source: xorg Version: 1:7.6+7 Severity: serious Justification: Policy 12.5 The debian/copyright for this package is confusing to me. It seems to try to indicate that the copyright holder of this software changes depending on whether this is a debian or a ubuntu package? Can this be clarified?

Bug#630551: ifupdown: please don't include network and broadcast in example configurations

2011-06-14 Thread Mike O'Connor
Package: ifupdown Version: 0.6.10 Severity: wishlist one of the first examples in /usr/share/doc/ifupdown/exmamples/network-interfaces.gz is: # auto eth0 # iface eth0 inet static # address 192.168.0.42 # network 192.168.0.0 # netmask 255.255.255.0 # broadcast 192.168.0.255 #

Bug#617303: pending hijack

2011-06-08 Thread Mike O'Connor
tags 617303 +pending tags 617303 +fixed-upstream tags 548854 +pending thanks Since the maintainer of this package seems MIA, and hasn't responded to any of the bugs in this package in the last few years, I intend to hijack this package. I've sent the maintainer a private email, and I uploaded

Bug#627867: RM: notmuchsync -- ROM; ; NPOASR, obsolete

2011-05-24 Thread Mike O'Connor
Package: ftp.debian.org Severity: normal The functionality of notmuchsync has now been integrated into notmuch itself as of the 0.5 release of notmuch, which is now available for all arches in both testing and unstable, so this package is no longer of much value. thanks, stew -- To

Bug#627867: notmuchsync

2011-05-24 Thread Mike O'Connor
On Wed, 25 May 2011 02:54:47 +, Clint Adams cl...@debian.org wrote: Strictly speaking, it doesn't do the equivalent of notmuchsync -p. sure, but notmuch search --output=files tag:delete | xargs rm does, and I don't think this alone warrants keeping notmuchsync. pgp8MXt9yG4KK.pgp

Bug#344926: you mistakenly closed another again

2011-05-18 Thread Mike O'Connor
On Sat, 14 May 2011 20:40:05 +0800, jida...@jidanni.org wrote: You mistakenly closed another again. Well maybe this one is fixed anyway. This bug was automatically closed when the package it was assigned to (yaird) was removed from debian. Since the software this bug pertains to is no longer

Bug#624457: rkhunter: invalid maintainer address

2011-04-28 Thread Mike O'Connor
Package: rkhunter Version: 1.3.8-3 Severity: serious Justification: Policy 3.3 The 1.3.8-3 upload of rkhunter had the Maintainer listed as: Maintainer: Debian Forensics forensic-de...@lists.alioth.debian.org However, emailing that address results in: SMTP error from remote mail server after

Bug#624463: unhide.rb: invalid maintainer address

2011-04-28 Thread Mike O'Connor
Package: unhide.rb Version: 12-1 Severity: serious Justification: Policy 3.3 the unhide.rb packages lists this as Maintainer: Debian Forensics forensic-de...@lists.alioth.debian.org however, emailing that address results in: SMTP error from remote mail server after RCPT

Bug#624464: rsakeyfind: invalid maintainer address

2011-04-28 Thread Mike O'Connor
Package: rsakeyfind Version: 1.0.0-1 Severity: serious Justification: Policy 3.3 the rsakeyfind packages lists this as Maintainer: Debian Forensics forensic-de...@lists.alioth.debian.org however, emailing that address results in: SMTP error from remote mail server after RCPT

Bug#617688: b43-fwcutter: debian/copyright lists incorrect license, missing copyright holders

2011-03-10 Thread Mike O'Connor
Source: b43-fwcutter Version: 1:013-3 Severity: serious Justification: Policy 12.5 debian/copyright states that this package is GPL, however, it appears to have a 2 clause BSD license, and some code in the public domain. The BSD license requires that copyright holders be listed, and they are

Bug#610257: Bug#610300: dropbox 1.0.17 distribution now complies to copyright complaints

2011-02-18 Thread Mike O'Connor
On Tue, 15 Feb 2011 20:37:34 -0800, Vincent Cheng vincentc1...@gmail.com wrote: As promised earlier, I've re-packaged Dropbox (based off of Ivan's work) and have tried to address the licensing issues in the packaging. I would be grateful if any Debian developers/maintainers could look through

Bug#613656: ITP: libapp-repl-perl -- Perl interactive shell

2011-02-16 Thread Mike O'Connor
Do we really need libshell-perl-perl and libapp-repl-perl and perl-console (which is already in the repos)? Do either of these new ITPs provide any functionality that we don't already have in debian? bye, stew On Wed, 16 Feb 2011 22:16:59 +0900 (JST), TANIGUCHI Takaki tak...@debian.org wrote:

Bug#613656: ITP: libapp-repl-perl -- Perl interactive shell

2011-02-16 Thread Mike O'Connor
' = {}, 'escape' = 1 }, 'CGI' ) ); Regards, On Wed, 16 Feb 2011 08:46:06 -0500 s...@debian.org(Mike O'Connor) said: [1 text/plain (quoted-printable)] Do we really need libshell-perl-perl and libapp-repl-perl and perl-console (which is already in the repos)? Do

Bug#610257: Bug#610300: dropbox 1.0.17 distribution now complies to copyright complaints

2011-01-25 Thread Mike O'Connor
On Mon, 24 Jan 2011 15:41:47 -0800 (PST), Rian Hunter r...@dropbox.com wrote: hi all we recently released a distribution of dropbox that corrects all the complains listed in these debian bug reports. thanks for the feedback, please let me know if there is anything i can do to make dropbox

Bug#610776: notmuch-show-view-raw-message stopped working

2011-01-22 Thread Mike O'Connor
Package: notmuch Version: 0.5+nmu2 Severity: normal since upgrading to 0.5+nmu2, notmuch-show-view-raw-message has stopped working. When running it in notmuch-show mode, I just get the message: notmuch-show-message-top: Beginning of buffer -- System Information: Debian Release: 6.0 APT

Bug#610776: only in emacs-snapshot

2011-01-22 Thread Mike O'Connor
severity 610776 minor thanks I realized today that this only happens with emacs-snapshot, not with emacs23, so downgrading to minor. FWIW: emacs-snapshot: Installed: 1:20110112-1 Candidate: 1:20110112-1 Version table: *** 1:20110112-1 0 500 http://emacs.naquadah.org/ unstable/

Bug#610338: psi-plus: contains non-free icons; inadequate copyright file

2011-01-17 Thread Mike O'Connor
Source: psi-plus Severity: serious Justification: Policy 2.2.1, Policy 12.5 There are many files which are LGPL-2.1+ and many files which are GPL2+, your debian/copyight is not accurate about this saying only that the software is LGPL-2+ and pointing to GPL instead of the LGPL -- I noticed

Bug#610338: only checked testing/unstable

2011-01-17 Thread Mike O'Connor
found 610338 0.15~svn3447 thanks Have you seen updated packages? No, I only looked at the version in testint/unstable. Marking the bug accordingly. -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact

Bug#581232: not a bug

2011-01-14 Thread Mike O'Connor
dpkg in lenny depends on lzma, so lzma must be Priority: required. dpkg in squeeze and later does not have this dependency, so the Priority: required is not warranted, and the override for this package was changed. This is intentional, and in no way a bug. so I'm closing this report. thanks,

Bug#609691: libtextcat: invalid maintainer address

2011-01-11 Thread Mike O'Connor
Source: libtextcat Severity: serious Justification: Policy 3.3 The maintainer of this package is listed as: Daniele Favara no...@dsslive.org, however the dsslive.org domain doesn't accept email. A working email address is required by policy 3.3 -- System Information: Debian Release:

Bug#609612: bgoffice-computer-terms: invalid maintainer address

2011-01-10 Thread Mike O'Connor
Package: bgoffice-computer-terms Severity: serious Justification: Policy 3.3 debian-addons-bg-maintain...@openfmi.net is not a valid email address, since its only listed MX server does not allow SMTP connections. This was discovered when dinstall tried to send email to the maintainers, which

Bug#609613: bgoffice-dict-downloader: invalid maintainer address

2011-01-10 Thread Mike O'Connor
Package: bgoffice-dict-downloader Severity: serious Justification: Policy 3.3 the domain name of the Maintainer address does not accept email. -- System Information: Debian Release: squeeze/sid APT prefers unstable APT policy: (500, 'unstable'), (500, 'testing'), (1, 'experimental')

Bug#608969: docbookwiki: modified /etc/sudoers in the maintainer scripts

2011-01-04 Thread Mike O'Connor
Package: docbookwiki Version: 0.9.1cvs-11 Severity: serious Justification: Policy 10.7.4 the maintainer scripts directly modify /etc/sudoers which is a conffile of the sudo package. -- System Information: Debian Release: 6.0 APT prefers unstable APT policy: (600, 'unstable'), (500,

Bug#608970: docbookwiki: copyright file is incomplete

2011-01-04 Thread Mike O'Connor
Package: docbookwiki Version: 0.9.1cvs-15 Severity: serious Justification: Policy 12.5 There are many files in the tarball which are GFDL licensed some with and some without invariant sections, this license is not, however, mentioned in the copyright file -- System Information: Debian

Bug#602932: tilecache: Invalid maintainer address

2010-11-09 Thread Mike O'Connor
Package: tilecache Severity: serious Justification: Policy 3.3 Trying to send email to the maintainer address of this package caused the following DSN: This message was created automatically by mail delivery software. A message that you sent could not be delivered to one or more of its

Bug#602869: gadmin-openvpn-server: puts logfile in /etc instead of /var/log

2010-11-08 Thread Mike O'Connor
Package: gadmin-openvpn-server Version: 0.1.5-1 Severity: serious Justification: Policy 9.1.1 The configuration created by gadmin-openvpn-server contains these two lines: log/etc/gadmin-openvpn/server/openvpn-server.log status /etc/gadmin-openvpn/server/openvpn-server-status.log I don't see

Bug#602870: gadmin-openvpn-server: generates unusable config depending on openvpn-pam-auth.so

2010-11-08 Thread Mike O'Connor
Package: gadmin-openvpn-server Version: 0.1.5-1 Severity: minor *** Please type your report below this line *** If you enable the Require Authentication option (which is by default enabled), The following line is added to the configuration: plugin /usr/lib/openvpn/openvpn-pam-auth.so login I

Bug#600304: monkeysphere-authentication keys-for-user fails when userid contains apostrophe

2010-10-15 Thread Mike O'Connor
Package: monkeysphere Version: 0.31-1 Severity: important Tags: upstream monkeysphere-authentication fails when a userid contains an apostrophe, and Unfortunately all of my userids contain apostrophes. reported upstream: https://labs.riseup.net/code/issues/2544 -- System Information: Debian

Bug#594519: More info

2010-09-27 Thread Mike O'Connor
retitle 594519 multiple copyright problems make software non-redistributable as currently packaged thanks I encouraged the submitter to submit this bug after he raised concerns on IRC about some of software in this package. I thought that I'd better take a closer look at this source myself, and

Bug#584383: Not pending, disappeared from NEW ?

2010-09-23 Thread Mike O'Connor
I rejected titantools with a message saying that because of a bug in dak, we are unable to easily handle non-sourceful uploads that move a package from main to non-free. As we are bogged down with other stuff, the quickest way to get titantools through new is going to be making a sourceful

Bug#588019: uploaded to DELAYED/3

2010-08-25 Thread Mike O'Connor
forcemerge 588019 592077 tags 588019 +pending thanks I've uploaded the patch from Jakub Wilk from 592077 to DELAYED/3. It fixes both bugs. Thanks Jakub. interdiff attached stew pgpJlLXUSz2wd.pgp Description: PGP signature message/external-body;

Bug#542476: downgrade, only a documentation bug

2010-08-10 Thread Mike O'Connor
tags 542476 +pending minor 542476 minor thanks Downgrading this bug as it is only a documentation bug. The software works fine when invoked correctly. (require gnuserv-compate) instead of (require gnuserv) signature.asc Description: Digital signature

  1   2   3   4   >