Bug#690924: nmu

2012-11-02 Thread Michael Gilbert
Hi, I've just uploaded an nmu fixing this issue. See attached patch. Best wishes, Mike mcrypt.patch Description: Binary data

Bug#692117: nmu

2012-11-02 Thread Michael Gilbert
control: tag -1 patch Hi, I've uploaded an nmu fixing this issue to delayed/5. Please see attached patch. Best wishes, Mike customerrormessage.patch Description: Binary data

Bug#692147: nmu

2012-11-02 Thread Michael Gilbert
control: tag -1 patch Hi, I've uploaded an nmu fixing this issue to delayed/5. Please see attached patch. Best wishes, Mike javamorph.patch Description: Binary data

Bug#665199: fix for rc bug #665199

2012-11-02 Thread Michael Gilbert
On Fri, Nov 2, 2012 at 10:11 AM, gustavo panizzo wrote: hello, i've prepared an updated version of slapd package which fix the bug #665199 Hi, I've just reviewed this, and it looks reasonable. However, the changelog note is not really descriptive enough: * Fix a bug while upgrading from

Bug#639405: nmu

2012-11-02 Thread Michael Gilbert
Hi, I've uploaded an nmu fixing this issue. Please see attached patch, which might not be that meaningful since its just removing files from the upstream tarball. Best wishes, Mike python.patch Description: Binary data

Bug#692184: pyepl: creates empty packages when built with gcc 4.7

2012-11-02 Thread Michael Gilbert
package: pyepl version: 1.1.0-3 severity: serious The pyepl packages are empty when built with gcc 4.7, code/hardware/eeg/pulse/parallel.h needs #include unistd.h Best wishes, Mike -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble?

Bug#692101: nmu

2012-11-02 Thread Michael Gilbert
control: tag -1 patch Hi, I've uploaded an nmu fixing these issues to delayed/5. Please see attached patch. Best wishes, Mike pyepl.patch Description: Binary data

Bug#692101: nmu

2012-11-02 Thread Michael Gilbert
On Sat, Nov 3, 2012 at 1:19 AM, Yaroslav Halchenko wrote: although patch should also take care about Hurd to be complete if would build there nicely... or better just remove that conditioning Hurd isn't a release architecture, so it isn't urgent and probably wouldn't be appreciated by the

Bug#691901: software-center: missing synaptic dependency

2012-10-31 Thread Michael Gilbert
package: software-center version: 5.1.2debian3 severity: grave Here is the output from software-center when the synaptic package is not installed: $ software-center [...] Traceback (most recent call last): File /usr/bin/software-center, line 133, in module app =

Bug#691708: Patch for NMU

2012-10-31 Thread Michael Gilbert
control: tag -1 patch Hi, I've uploaded an nmu fixing these issues to delayed/5. Please see attached patch. Best wishes, Mike software-center.patch Description: Binary data

Bug#691863: api4hylafax: recommends isdnactivecards from contrib

2012-10-30 Thread Michael Gilbert
What is needed to comply with policy is moving isdnactivecards from Recommends to Suggests. Please consider. You can still upload and then request unblock bug report filed to Package: release.debian.org. I already know them because of #682135 and I had tried to update the package since

Bug#691860: flexbackup: Recommends non-free package as the first choice

2012-10-30 Thread Michael Gilbert
Hi, I've uploaded an nmu fixing this issue to delayed/2. Please see attached patch. Best wishes, Mike flexbackup.patch Description: Binary data

Bug#536736: ncurses-hexedit: Seg faults when you search for text that is not in the file.

2012-10-30 Thread Michael Gilbert
Hi, I've uploaded an nmu fixing this issue to delayed/2. Please see attached patch. Best wishes, Mike ncurses.patch Description: Binary data

Bug#691853: libapp-cmd-plugin-prompt-perl: FTBFS in Debian Sid

2012-10-30 Thread Michael Gilbert
Hi, I've uploaded an nmu fixing this issue to delayed/5. Please see attached patch. Best wishes, Mike libapp.patch Description: Binary data

Bug#691850: libcatalyst-view-excel-template-plus-perl: FTBFS

2012-10-30 Thread Michael Gilbert
Hi, I've uploaded an nmu fixing this issue to delayed/5. Please see attached patch. Best wishes, Mike excel.patch Description: Binary data

Bug#691855: libcatalyst-view-pdf-reuse-perl: Package FTBFS

2012-10-30 Thread Michael Gilbert
Hi, I've uploaded an nmu fixing this issue to delayed/5. Please see attached patch. Best wishes, Mike pdf.patch Description: Binary data

Bug#691863: api4hylafax: recommends isdnactivecards from contrib

2012-10-30 Thread Michael Gilbert
On Tue, Oct 30, 2012 at 6:18 PM, Joachim Wiedorn wrote: And now I have the same question as weeks before: is it important enough to ask again the release team about permission for an updated package? I think only this item is not worth enough for an updated package. But on the other side it is

Bug#683671: dash doesn't ignore SIGINT when running a command that traps SIGINT

2012-10-30 Thread Michael Gilbert
I think that the current status may badly affect the usual use of some applications like Emacs. The fact that there are, AFAIK, no workarounds (except by not using dash, e.g. by changing the /bin/sh symlink) makes me think that it should still be a RC bug. Would you mind if this were

Bug#691659: qutecom crashes on inititating a video call

2012-10-28 Thread Michael Gilbert
control: severity -1 important ii libavcodec537:0.10.3-dmo1 ii libavutil51 7:1.0-dmo2 Hi, You have very strange libav packages installed, which do not exist in the debian archive. Please try installing libav 6:0.8.4-1 and retesting. Thanks, Mike

Bug#690594: tasksel: execution aborted due to compilation errors

2012-10-28 Thread Michael Gilbert
On Sun, Oct 28, 2012 at 6:28 PM, Cyril Brulebois wrote: Michael Gilbert mgilb...@debian.org (25/10/2012): I've uploaded an nmu fixing this issue to delayed/7. The extra time is in case you want to do a maintainer upload instead. See attached patch. The changelog entry really should be more

Bug#690376: cve-2012-4505

2012-10-27 Thread Michael Gilbert
control: tag -1 patch Hi, I've uploaded an nmu fixing this issue. Please see attached patch. Best wishes, Mike libproxy.patch Description: Binary data

Bug#682426: converting a PDF file to PostScript takes several minutes

2012-10-27 Thread Michael Gilbert
control: severity -1 normal From an up-to-date Wheezy, /usr/bin/pdf2ps takes a long time of 100% CPU, but succeeds in creating a 3.6 M PS file out of this small PDF. One particular file that happens to take a while to convert is not a severe enough issue to justify rc status. Best wishes,

Bug#691514: packagekit: Invalid package id

2012-10-26 Thread Michael Gilbert
control: severity -1 normal Setting severity to normal until we get an idea on what this is actually about. Best wishes, Mike -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#691223: atanks: source tarball includes Win32 binaries without source

2012-10-25 Thread Michael Gilbert
Hi, I've uploaded an nmu fixing this issue to delayed/2. See attached patch, which is kind of unclear since the primary change was removing the binary files from the upstream tarball and that doesn't show well in the diff. Best wishes, Mike atanks.patch Description: Binary data

Bug#690594: tasksel: execution aborted due to compilation errors

2012-10-25 Thread Michael Gilbert
control: tag -1 patch Hi, I've uploaded an nmu fixing this issue to delayed/7. The extra time is in case you want to do a maintainer upload instead. See attached patch. Best wishes, Mike tasksel.patch Description: Binary data

Bug#680084: os-prober: postinst script gets stuck

2012-10-25 Thread Michael Gilbert
Maybe some information about the disk layout helps, too: /dev/sda is the only disk installed. /dev/sda1 /boot ext4 /dev/sda2 encrypted physical volume for lvm2: /dev/mapper/pv00physical volume /dev/mapper/vg00-root / filesystem

Bug#691223: Patches

2012-10-25 Thread Michael Gilbert
On Thu, Oct 25, 2012 at 6:21 PM, Jesse Smith wrote: Before applying patches for bug 691107 please keep in mind a new version of Atanks will probably be out this weekend which will address the Options menu issue. Even with the patch some testers are still reporting problems and we want to get

Bug#576511: drbd8-utils: Ships with violent default actions

2012-10-23 Thread Michael Gilbert
control: severity -1 important These defaults are really bad. I had this happen to a machine running DRBD yesterday: block drbd0: PingAck did not arrive in time. block drbd0: peer( Secondary - Unknown ) conn( Connected - NetworkFailure ) pdsk( UpToDate - DUnknown ) block drbd0: asender

Bug#691282: Please upload to experimental forcing build against hdf5 lib in experimental (1.8.9)

2012-10-23 Thread Michael Gilbert
control: severity -1 wishlist Please upload to experimental forcing build against hdf5 lib in experimental (1.8.9) otherwise h5py is not usable with libhdf5 from experimental: Making other packages work in conjunction with experimental versions is a wishlist item. If you need packages to

Bug#691273: netcdf-bin: nccopy produces bogus output

2012-10-23 Thread Michael Gilbert
control: severity -1 wishlist It appears that this bug is triggered by attempting to overwrite an existing NetCDF file. We had previously created an output file of the same name with `ncks`, and nccopy appeared to overwrite it correctly, but instead left us with a mangled file, which should

Bug#690378: python_distutils.pm is broken

2012-10-22 Thread Michael Gilbert
control: notfound -1 9.20120909 control: severity -1 important Commit closing 683557 http://anonscm.debian.org/gitweb/?p=debhelper/debhelper.git;a=commitdiff;h=00250d8cd20a37be362850d3ed8a652b0768455f introduces one more bug: default python is not called because /usr/lib/python/distutils/

Bug#581113: infiniband-diags: bashism in /bin/sh script

2012-10-22 Thread Michael Gilbert
Hi, I've uploaded an nmu fixing this issue to delayed/2. Please see attached patch. Best wishes, Mike infiniband.patch Description: Binary data

Bug#690775: closing as invalid

2012-10-18 Thread Michael Gilbert
control: reopen -1 the references point to Oracle products, not OpenJDK. Oracle java is effectively openjdk, so there is every reason to believe these issues affect it. It may take some research to track it all down, but that's how it goes with security problems. It's never easy. Sorry.

Bug#690142: remote named DoS on recursor (CVE-2012-5166)

2012-10-16 Thread Michael Gilbert
On Mon, Oct 15, 2012 at 11:52 PM, Matthew Grant wrote: Thanks for that: Bit of a situation brewing for bind9 re #690569 (failure to resolve dnssec-validated wildcards - major non-compliance to RFC etc) and #690142 (this CVE) Would appreciate your advice on how to proceed please. Note: Will

Bug#689332: bind9 uses shipped file as statefile

2012-10-16 Thread Michael Gilbert
control: tag -1 patch Hi, I've attached a proposed patch that moves the state file to /var/lib. Best wishes, Mike bind.patch Description: Binary data

Bug#690532: [pkg-dhcp-devel] Bug#690532: CVE-2012-2248: backdoor for user zero79 due to dhclient’s hook $PATH

2012-10-15 Thread Michael Gilbert
control: retitle -1 CVE-2012-2248: build system paths used in -DCLIENT_PATH On Mon, Oct 15, 2012 at 5:31 AM, Michael Stapelberg wrote: All hooks in /etc/dhcp/dhclient-enter-hooks.d, such as samba when the samba package is installed, are called with a PATH environment variable containing this:

Bug#690532: [pkg-dhcp-devel] Bug#690532: Bug#690532: CVE-2012-2248: backdoor for user zero79 due to dhclient’s hook $PATH

2012-10-15 Thread Michael Gilbert
On Mon, Oct 15, 2012 at 3:01 PM, Michael Gilbert wrote: control: retitle -1 CVE-2012-2248: build system paths used in -DCLIENT_PATH On Mon, Oct 15, 2012 at 5:31 AM, Michael Stapelberg wrote: All hooks in /etc/dhcp/dhclient-enter-hooks.d, such as samba when the samba package is installed

Bug#685970: openjpeg: CVE-2012-3535

2012-10-15 Thread Michael Gilbert
I've uploaded an nmu to delayed/2 fixing this issue. See attached patch diffed against testing and includes the multiarch conversion as well. Best wishes, Mike openjpeg.patch Description: Binary data

Bug#690142: remote named DoS on recursor (CVE-2012-5166)

2012-10-15 Thread Michael Gilbert
Hi, I've canceled this nmu. There were a lot of Makefile and other files unrelated to the security fix that got included vs -4.2. Also, an nmu requirement is to attach the full diff to the bug report to help the maintainer out later. Best wishes, Mike -- To UNSUBSCRIBE, email to

Bug#680084: os-prober: postinst script gets stuck

2012-10-14 Thread Michael Gilbert
I see processes such as: grub-mount /dev/mapper/vg1-SomeLogicalVolume /var/lib/os-prober/mount Can you all see if you have anything in common with these vg partitions? Also, can you analyze the output from manually running the seemingly hanging process? # grub-mount /dev/mapper/vgwhatever

Bug#665476: libsasl2-2 - ABI change without changing ABI name

2012-10-14 Thread Michael Gilbert
control: tag -1 patch Hi, I've uploaded an nmu fixing this issue to delayed/5. Please let me know if I should delay longer. See attached patch. Best wishes, Mike sasl.patch Description: Binary data

Bug#687320: grub-efi-amd64: Stuck at grub recovery prompt when USB media reader attached

2012-10-14 Thread Michael Gilbert
control: tag -1 patch Hi, I've uploaded an nmu fixing this issue to delayed/10. I pulled the patch unchanged directly from Ubuntu, so it should be ok, but I want to give you sufficient time for review or to do a maintainer upload. See attached. Best wishes, Mike grub2.patch Description:

Bug#677280: grub-efi: cannot find normal; wrong prefix to grub2 (EFI)?

2012-10-14 Thread Michael Gilbert
control: reassign -1 grub-common control: forcemerge 684574 -1 So, there seems to be a problem with video when I load EFI and grub all from the harddisk, but it works when I load grub from the supergrub CD. This seems like the EFI video modules issue. Best wishes, Mike -- To UNSUBSCRIBE,

Bug#665476: libsasl2-2 - ABI change without changing ABI name

2012-10-14 Thread Michael Gilbert
On Sun, Oct 14, 2012 at 5:29 AM, Ondřej Surý wrote: Please revert, this will only break everything around and we don't really want transition sasl right now. The only thing which broke was openldap due some really deep internal library symbols, which are not used anywhere else, and it's

Bug#685812: ABI change in 1.6.1 version

2012-10-13 Thread Michael Gilbert
control: severity -1 important The 2.8-3+b3 binnmu solved the breakage problem originally reported. An abi bump is still useful, but since there is no longer breakage, this is no longer release-critical. Best wishes, Mike -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org

Bug#690179: Fglrx kernel module causes system to lock up, requires reboot

2012-10-10 Thread Michael Gilbert
control: severity -1 important Section Device Identifier Card0 Driver fglrx BusID PCI:1:0:0 EndSection Section Device Identifier Card1 Driver intel BusID PCI:0:2:0 EndSection Would you mind trying an xorg conf with this

Bug#612918: Uses /etc/wicd/wireless-settings.conf as state file

2012-10-09 Thread Michael Gilbert
On Tue, Oct 9, 2012 at 1:55 AM, David Paleino wrote: What would you like me to do about the deferred nmu? Please cancel it. I'll discuss the issue again with $someone (still don't know who, but there is no bug to me). Canceled. You can probably just close this bug with whatever version

Bug#612918: Uses /etc/wicd/wireless-settings.conf as state file

2012-10-08 Thread Michael Gilbert
On Mon, Oct 8, 2012 at 11:16 AM, David Paleino wrote: On Sun, 7 Oct 2012 17:37:02 -0400, Michael Gilbert wrote: control: tag -1 patch Hi, I've just uploaded an nmu to delayed/5 fixing this. Please review the attached patch and let me know if it is an appropriate solution. I can cancel

Bug#689049:

2012-10-08 Thread Michael Gilbert
control: severity -1 normal I also have this with my normal music. This affects everyone who uses pulseaudio (and yes, this will be the default in wheezy) and therefore makes this package unsuitable for release. There is also a fix available - so i don't have problems to make this an RC bug.

Bug#688904: dkms: diff for NMU version 2.2.0.3-1.2

2012-10-07 Thread Michael Gilbert
control: severity -1 important On Fri, Oct 5, 2012 at 11:57 PM, Christoph Egger wrote: tags 688904 + pending thanks Dear maintainer, I've prepared an NMU for dkms (versioned as 2.2.0.3-1.2) and uploaded it to DELAYED/3. Please feel free to tell me if I should delay it longer. This is not

Bug#658264: xpdf totally unusable due to memory corruption in globalParams class (namespace conflict with libpoppler)

2012-10-07 Thread Michael Gilbert
control: severity -1 important On Thu, Oct 4, 2012 at 8:37 PM, Jens Stimpfle wrote: To reiterate again, the current wheezy xpdf package is in a terribly defunct state, possibly imposing severe security problems and should under no circumstances be included into the stable release. No it

Bug#612918: Uses /etc/wicd/wireless-settings.conf as state file

2012-10-07 Thread Michael Gilbert
control: tag -1 patch Hi, I've just uploaded an nmu to delayed/5 fixing this. Please review the attached patch and let me know if it is an appropriate solution. I can cancel or delay the nmu as needed. Best wishes, Mike wicd.patch Description: Binary data

Bug#646981: xfce4-panel -- still looses all items on logoff.

2012-09-29 Thread Michael Gilbert
control: severity -1 normal Downgrading severity since this is a very uncommon use case, and doesn't should not be viewed as critical for the wheezy release. Best wishes, Mike -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact

Bug#689118: xfce4-volumed: depends on gstreamer0.10-audiosink

2012-09-29 Thread Michael Gilbert
control: severity -1 important Sadly, some packages that provide the gstreamer0.10-audiosink virtual package do not satisfy the need for a mixer control. Which gstreamer0.10-audiosink providers cause this problem? The bug should be reassigned to those specific package(s). Downgrading

Bug#643628: pidgin: Pidgin crash on sending first message

2012-09-29 Thread Michael Gilbert
control: severity -1 important This does not need to be release critical since everything works fine in a pure testing environment. Best wishes, Mike -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#688229: brasero: Burning data DVD looks successful but mounting fails

2012-09-29 Thread Michael Gilbert
control:severity -1 important This doesn't qualify as grave. It seems like the wrong fs type was used. best wishes, Mike -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#683695: libdrm-nouveau1a: when using Nvidia Gtx 550 Ti card boot stops at populating /dev

2012-09-27 Thread Michael Gilbert
control: retitle -1 nouveau needs patches backported from 3.4 to support GTX 550 Ti cards control: severity -1 important On Sun, Sep 23, 2012 at 8:59 PM, Dick Thomas wrote: hiya, Michael sorry for taking so long to get back to you I tried the 3.5 kernel and it works perfectly with the gfx

Bug#683695: libdrm-nouveau1a: when using Nvidia Gtx 550 Ti card boot stops at populating /dev

2012-09-22 Thread Michael Gilbert
On Sat, Sep 22, 2012 at 1:04 AM, Dick Thomas wrote: still a noob to debian so daren't do that yet as I don't want to get flamed but thank you for the suggestions :) Flaming is somewhat less prevalent in debian nowadays, so please try to not worry about that. Would you mind at least trying the

Bug#612918: Bug#688084: Please consider tagging #612918 wheezy-ignore

2012-09-22 Thread Michael Gilbert
On Sat, Sep 22, 2012 at 2:31 PM, Jonathan Nieder wrote: Hi Michael, Michael Gilbert wrote: Bug #612918 involves a violation of the FHS (using a file in /etc as a state file), thus violating debian policy. Apparently there was going to be some involved upstream work to correct the problem

Bug#683695: libdrm-nouveau1a: when using Nvidia Gtx 550 Ti card boot stops at populating /dev

2012-09-19 Thread Michael Gilbert
Can you try adding nouveau.tv_disable=1 to your kernel command line? As suggested by: https://bugzilla.kernel.org/show_bug.cgi?id=42869 Best wishes, Mike -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact

Bug#681927: XFCE4-netload-plugin produce a kernel panic randomly and leave system unusable

2012-09-19 Thread Michael Gilbert
control: severity -1 important This bug seems fairly nebulous, and only affects one person, so there is no reason for it to be release critical. I use xfce with the netload plugin all the time, and don't get kernel panics. Best wishes, Mike -- To UNSUBSCRIBE, email to

Bug#678439: wicd-daemon: does not connect to network

2012-09-19 Thread Michael Gilbert
control: severity -1 important No moreinfo recieved from the submitter in three months, and he was the only one running in to the problem. With no more info to go on, nothing can be done at this point. Best wishes, Mike -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with

Bug#683695: libdrm-nouveau1a: when using Nvidia Gtx 550 Ti card boot stops at populating /dev

2012-09-19 Thread Michael Gilbert
On Wed, Sep 19, 2012 at 9:42 AM, Dick Thomas wrote: Hello, Mike Sadly that didn't work still stopped displaying stuff at populating /dev/ but I can hear it loading in the background (sound card popping etc) adding nomodeset does work but then I don't know if it still using nouveau or not as

Bug#686174: Bug#685268: Your isc-dhcp 4.2.2.dfsg.1-5+wheezy1 upload

2012-09-15 Thread Michael Gilbert
On Fri, Sep 14, 2012 at 7:46 PM, Raphael Geissert wrote: * Incorrect version numbering. For Wheezy the +debNuX schema will be used. I wasn't aware that this was the new rule. I was using the following, which seemed like it had already been updated for wheezy

Bug#686174: [pkg-dhcp-devel] Bug#686174: isc-dhcp: diff for NMU version 4.2.4-1.1

2012-09-09 Thread Michael Gilbert
On Sun, Sep 9, 2012 at 6:52 PM, David Prévot wrote: tags 686174 + patch tags 686174 + pending thanks Dear maintainer, I've prepared an NMU for isc-dhcp (versioned as 4.2.4-1.1) and uploaded it to DELAYED/2. Please feel free to tell me if I should delay it longer. It is not good practice

Bug#681595: [pkg-wine-party] Bug#681595: wine: DB Fahrplaninformation does not display date and time fields correctly

2012-07-15 Thread Michael Gilbert
control: severity -1 important On Sat, Jul 14, 2012 at 11:31 AM, Hilko Bengen wrote: DB Fahrplaninformation[1], the offline timetable information tool for Deutsche Bahn, does not correctly display times and dates in the main search dialog, which makes using the program almost impossible. This

Bug#680234: sane-backends: FTBFS[kfreebsd]

2012-07-15 Thread Michael Gilbert
Hi, I've uploaded an nmu fixing this issue, based on the above patch. See attached for nmu debdiff. Best wishes, Mike sane-backends.patch Description: Binary data

Bug#679827: chromium always hangs on https://github.com

2012-07-14 Thread Michael Gilbert
severity 679827 important thanks Only affects chromium on linux 3.5 or greater. Wheezy will ship with linux 3.2, so downgrading to non-rc severity. Best wishes, Mike -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact

Bug#679536: wine-bin: fails to install, trying to overwrite other packages files

2012-07-13 Thread Michael Gilbert
severity 679536 important thanks Hi, I'm setting this to important since it only affects experimental, which doesn't actually get released. Best wishes, Mike -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact

Bug#679280: [xml/sgml-pkgs] Bug#679280: CVE-2012-2807

2012-07-02 Thread Michael Gilbert
On Sun, Jul 1, 2012 at 3:55 AM, Aron Xu wrote: On Jul 1, 2012 5:24 AM, Michael Gilbert mgilb...@debian.org wrote: I'm still investigating the problem and more details about it are welcomed, please don't NMU for either unstable or stable. Why? This kind of statement requires some kind

Bug#679280: CVE-2012-2807

2012-06-30 Thread Michael Gilbert
I'm still investigating the problem and more details about it are welcomed, please don't NMU for either unstable or stable. Why? This kind of statement requires some kind of justification (such as the proposed commit is incomplete or wrong or something like that). Otherwise, why slow down

Bug#677714: [pkg-wine-party] Bug#677714: wine-unstable: Incomplete upload of 1.5 for amd64

2012-06-28 Thread Michael Gilbert
On Thu, Jun 28, 2012 at 3:48 AM, Jakub Moc rote: Dear maintainer, is this some sort of poor joke, or what is going on here? No. After the latest update to 1.5.6-1, installing wine-unstable results in installing two dummy, empty and absolutely useless packages on amd64. $ dpkg -L

Bug#676686: [xml/sgml-pkgs] Bug#676686: libxslt1.1: libxslt1.1 binNMU broke multi-arch installability

2012-06-14 Thread Michael Gilbert
On Fri, Jun 8, 2012 at 6:17 PM, Philipp Kern wrote: On Sat, Jun 09, 2012 at 04:36:40AM +0800, Aron Xu wrote: Does this mean M-A:same packages should be prevented from being binNMUed, but only source upload can be accepted? You cannot deprive the Release Team of this tool. Also multiarch bugs

Bug#676686: [xml/sgml-pkgs] Bug#676686: libxslt1.1: libxslt1.1 binNMU broke multi-arch installability

2012-06-14 Thread Michael Gilbert
On Thu, Jun 14, 2012 at 12:40 PM, Cyril Brulebois wrote: Michael Gilbert mgilb...@debian.org (14/06/2012): package (version) sid; urgency=low   * Binary-only non-maintainer upload; no source changes.  -- Debian Release Team debian-rele...@lists.debian.org  Tue, 05 Jun 2012 16:33:05 +

Bug#677543: guake: missing python-xdg dependency

2012-06-14 Thread Michael Gilbert
package: guake version: 0.4.3-1 severity: serious Hi, guake fails to run when the python-xdg is not installed: $ guake Traceback (most recent call last): File /usr/bin/guake, line 35, in module from xdg.DesktopEntry import DesktopEntry ImportError: No module named xdg.DesktopEntry --

Bug#676686: [xml/sgml-pkgs] Bug#676686: libxslt1.1: libxslt1.1 binNMU broke multi-arch installability

2012-06-14 Thread Michael Gilbert
On Thu, Jun 14, 2012 at 1:07 PM, Julien Cristau jcris...@debian.org wrote: On Thu, Jun 14, 2012 at 12:25:42 -0400, Michael Gilbert wrote: Wouldn't the ideal solution be non-architecture-specific changelogs? No, that would be very much non-ideal.  One should be able to schedule binNMUs

Bug#676686: [xml/sgml-pkgs] Bug#676686: libxslt1.1: libxslt1.1 binNMU broke multi-arch installability

2012-06-14 Thread Michael Gilbert
On Thu, Jun 14, 2012 at 3:43 PM, Philipp Kern wrote: On Thu, Jun 14, 2012 at 01:59:25PM -0400, Michael Gilbert wrote: I did not suggest that.  Anyway, maybe this will be a bit clearer. Let's say an existing package is at version +b1 on amd64, and it needs to get a binnmu, then a +b2 package

Bug#677297: kfreebsd-8: cve-2012-0217

2012-06-12 Thread Michael Gilbert
package: kfreebsd-8 version: 8.1+dfsg-8+squeeze2 severity: grave tag: security A security advisory for freebsd has been issued, cve-2012-0217. All of the debian kfreebsd packages are affected. Please see: http://security.freebsd.org/advisories/FreeBSD-SA-12:04.sysret.asc -- To UNSUBSCRIBE,

Bug#677298: kfreebsd-9: cve-2012-0217

2012-06-12 Thread Michael Gilbert
package: kfreebsd-9 version: 9.0-3 severity: grave tag: security A security advisory for freebsd has been issued, cve-2012-0217. All of the debian kfreebsd packages are affected. Please see: http://security.freebsd.org/advisories/FreeBSD-SA-12:04.sysret.asc -- To UNSUBSCRIBE, email to

Bug#677299: kfreebsd-10: cve-2012-0217

2012-06-12 Thread Michael Gilbert
package: kfreebsd-10 version: 10.0~svn234760-1 severity: grave tag: security A security advisory for freebsd has been issued, cve-2012-0217. All of the debian kfreebsd packages are affected. Please see: http://security.freebsd.org/advisories/FreeBSD-SA-12:04.sysret.asc -- To UNSUBSCRIBE,

Bug#643967: prelink -u fails on some binaries; this breaks debsums

2012-06-10 Thread Michael Gilbert
severity 643967 important tag 643967 -security thanks This problem should not be considered a security issue. Anyone utilizing prelink should be aware of the fact that it changes binaries, and there is the possibility that those changes aren't reversible; leading to differing checksums in tools

Bug#676457: amd64 packages in pool

2012-06-10 Thread Michael Gilbert
On Sun, Jun 10, 2012 at 4:33 PM, Milan Kocian wrote: hi, That is because the package has been multiarched.  In other words, the i386 packages now satisfy the amd64 dependencies. 'dpkg --add-architecture i386' is the right trick :-). Many thanks for hint. btw. Is it possible to run 64bit

Bug#676635: [pkg-wine-party] Bug#676635: closed by Michael Gilbert mgilb...@debian.org (Multiarch syncing issue)

2012-06-09 Thread Michael Gilbert
2012/6/9 Michael Hatzold Hi, thanks for your attention. To me it seems the problem isn't solved although all relevant packages are available, though not installable: apt-get update apt-get dist-upgrade fails [1] apt-get -f install fails [2] apt-get install libwine libwine-alsa libwine-bin

Bug#676457: migration path from non multiarch to multiarch wine

2012-06-09 Thread Michael Gilbert
On Sat, Jun 9, 2012 at 10:08 AM, Stephen Kitt wrote: Hi, On Sat, Jun 09, 2012 at 10:52:43AM +0200, Stefano Zacchiroli wrote: On Sat, Jun 09, 2012 at 03:37:10AM -0400, Michael Gilbert wrote: I don't see amd64 packages in pool. The latest package version I see in pool is wine-bin_1.4

Bug#674604: src:wine: Does not build on hurd-i386

2012-05-25 Thread Michael Gilbert
severity 674604 important thanks hurd is an unofficial port, and doesn't have an official release, so this issue should not be treated as release critical. Mike -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact

Bug#674191: [Secure-testing-team] Bug#674191: CVE-2011-3102

2012-05-23 Thread Michael Gilbert
On Wed, May 23, 2012 at 1:30 PM, Moritz Muehlenhoff wrote: Package: libxml2 Version: 2.7.8.dfsg-9 Severity: grave Tags: security A DSA is in preparation. Fix: http://git.gnome.org/browse/libxml2/commit/?id=d8e1faeaa99c7a7c07af01c1c72de352eb590a3e I've just uploaded the attached patch as a

Bug#669558: [pkg-wine-party] Bug#669558: wine-gecko-unstable: fix for the FTBFS

2012-04-21 Thread Michael Gilbert
Hi, I've just uploaded an NMU fixing this issue to DELAYED/5. See attached debdiff. Best wishes, Mike wine-gecko.debdiff Description: Binary data

Bug#664197: libvorbis0a: DSA 2412-1 fix is missing

2012-04-17 Thread Michael Gilbert
I've just uploaded a fix for this to DELAYED/2, see attached debdiff. Best wishes, Mike libvorbis.patch Description: Binary data

Bug#669196: libvorbisidec: multiple longstanding unfixed security issues in libvorbis

2012-04-17 Thread Michael Gilbert
package: libvorbisidec severity: grave version: 1.0.2+svn16259-2 tag: security libvorbisidec shares a large majority of its code with libvorbis. There have been quite a few security issues fixed in libvorbis over the past few years that have subsequently gone unfixed here. These include:

Bug#641873: Bug 641873 makes xpdf completely useless

2012-02-18 Thread Michael Gilbert
Hi Michael, I think you know very well that xpdf is in very bad shape now. I actually disagree with that. The package is in mostly fine shape with one (albeit annoying) significant bug. I am not much technical help to resolve this very bad state of xpdf package now.  But just tagging this

Bug#659579: [Pkg-fglrx-devel] Bug#659579: Bug#659579: fglrx-source: Building kernel module conficts with binutils-gold package

2012-02-12 Thread Michael Gilbert
I had binutils-gold packages installed and this was the reason that kernel module failed to build on my machine. Could you please send us the build log? We can just add a build-conflict to prevent people shooting themselves in the foot with this. MIke -- To UNSUBSCRIBE, email to

Bug#658264: closed by Michael Gilbert michael.s.gilb...@gmail.com (Re: Bug#658264: xpdf totally unusable due to memory corruption in globalParams class (namespace conflict with libpoppler))

2012-02-03 Thread Michael Gilbert
reopen 658264 severity 658264 important tag 658264 help retitle 658264 possible memory corruption in GlobalParams thanks and xpdf.xx:159 is exactly the forementioned problematic:  globalParams = new GlobalParams(cfgFileName); I have now invested \approx 6h in this report and am 100% sure it

Bug#650654: wine: FTBFS on amd64: asm/errno.h: No such file or directory

2012-01-27 Thread Michael Gilbert
. + * Build-depend on gcc-multilib (closes: bug #650654). + * Fix statically-linked-binary wine-preloader lintian override. + + -- Michael Gilbert michael.s.gilb...@gmail.com Sun, 01 Jan 2012 13:01:50 -0500 + wine (1.0.1-3.4) unstable; urgency=low * Non-maintainer upload. diff -u wine-1.0.1

Bug#656377: CVE-2011-3919

2012-01-22 Thread Michael Gilbert
--- libxml2-2.7.8.dfsg/debian/changelog +++ libxml2-2.7.8.dfsg/debian/changelog @@ -1,3 +1,10 @@ +libxml2 (2.7.8.dfsg-6.1) unstable; urgency=high + + * Non-maintainer upload by the Security Team. + * Fix CVE-2011-3919: buffer overflow in parser.c (closes: #656377). + + -- Michael Gilbert michael.s.gilb

Bug#656410:

2012-01-18 Thread Michael Gilbert
package: xorg-server version: 2:1.11.3.901-1 severity: critical tag: security A commit introduced in the xorg 1.11 seems to have introduced a key combination capable of killing all screen locker programs; thus allowing unauthorized local access to a system. See:

Bug#656410:

2012-01-18 Thread Michael Gilbert
Temporary solution: http://openwall.com/lists/oss-security/2012/01/19/7 -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#656150: bind9: provide support for isc-dhcp

2012-01-16 Thread Michael Gilbert
.dfsg/debian/changelog --- bind9-9.8.1.dfsg/debian/changelog +++ bind9-9.8.1.dfsg/debian/changelog @@ -1,3 +1,10 @@ +bind9 (1:9.8.1.dfsg-1.1gilbert1) unstable; urgency=low + + * Build and Install files needed by isc-dhcp. + * Clean up all automatically generated files. + + -- Michael Gilbert

Bug#643569: Dynamically linking to bind (bugs #643569 and #645760)

2012-01-16 Thread Michael Gilbert
: #645760). + + -- Michael Gilbert michael.s.gilb...@gmail.com Mon, 16 Jan 2012 11:47:37 -0500 + isc-dhcp (4.2.2-2) unstable; urgency=low * debian/rules: use dpkg-buildflags to set CFLAGS, and export CFLAGS (closes: only in patch2: unchanged: --- isc-dhcp-4.2.2.orig/Makefile.in +++ isc-dhcp-4.2.2

Bug#579136: CSS visited elements allow for disclosure of users browser history

2012-01-16 Thread Michael Gilbert
severity 579136 serious thanks Hi, I've just tested this, and that site now causes a segfault. So, it may be a fix was attempted at this, but not done quite right? Anyway, a remotely triggerable segfault is rather not good, so I'm raising the severity. -- To UNSUBSCRIBE, email to

Bug#654534: libav: multiple security issues

2012-01-03 Thread Michael Gilbert
Package: libav Version: 4:0.7.3-2 Severity: serious Tags: security Hi, the following CVE (Common Vulnerabilities Exposures) ids were published for libav. CVE-2011-3892[0]: | Double free vulnerability in the Theora decoder in Google Chrome | before 15.0.874.120 allows remote attackers to cause a

<    1   2   3   4   5   6   7   8   9   10   >