Processed: Re: Bug#290826: postfix: Upgrade from Postfix 2.1.4-5 to 2.1.5-4 fails

2005-01-17 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: severity 290826 important Bug#290826: postfix: Upgrade from Postfix 2.1.4-5 to 2.1.5-4 fails Severity set to `important'. thanks Stopping processing here. Please contact me if you need assistance. Debian bug tracking system administrator

Bug#290826: postfix: Upgrade from Postfix 2.1.4-5 to 2.1.5-4 fails

2005-01-17 Thread Steve Langasek
severity 290826 important thanks Jean-Philippe, On Mon, Jan 17, 2005 at 07:21:42AM +0100, Jean-Philippe wrote: At 19:39 16/01/2005 -0800, you wrote: Can you confirm the value of postconf alias_database on your system? I confirm the value of postconf alias_database was indeed

Bug#290833: dbmail-pgsql: Inconsistent escaping of user supplied data in dbauthpgsql.c

2005-01-17 Thread Paul J Stevens
Bug acknowledged. This should be fixed by the pending 2.0.3 upload. Primoz Bratanic wrote: Package: dbmail-pgsql Version: 1.2.11 Severity: grave Tags: security Justification: user security hole In pgsql/dbauthpgsql.c escaping is not consistent. Sometimes username and other user supplied values are

Bug#290495: marked as done (circular build dependency)

2005-01-17 Thread Debian Bug Tracking System
Your message dated Mon, 17 Jan 2005 09:59:19 +0100 with message-id [EMAIL PROTECTED] and subject line closing dup has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to

Bug#289762: [Pkg-nagios-devel] Bug#289762: nagios-mysql bugs

2005-01-17 Thread Christian Hammers
Hello Sean On 2005-01-16 sean finney wrote: i haven't heard back from christian yet whether or not he'd accept the patch changeset that fixes the bug or wants to wait until the next version of mysql-server comes out, but our response will largely depend on that. The patch was accepted and

Bug#290855: Upgrade from Postfix 2.1.4-5 to 2.1.5-4 fails #2

2005-01-17 Thread Stephane Leclerc
Package: postfix Version: 2.1.4-5 Severity: grave Justification: renders package unusable On a uptodate Sarge box, the upgrade failed like this. Seems NOT to be the same problem as described in bug #290826 tex-mail:/etc# apt-get upgrade Reading Package Lists... Done Building Dependency Tree...

Bug#278191: marked as done (xtrlock unlocks upon very long input)

2005-01-17 Thread Debian Bug Tracking System
Your message dated Mon, 17 Jan 2005 06:02:02 -0500 with message-id [EMAIL PROTECTED] and subject line Bug#278190: fixed in xtrlock 2.0-9 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your

Bug#290841: nautilus opens connections for each file on a samba share

2005-01-17 Thread Hilmar Preusse
On 17.01.05 Charles Henderson ([EMAIL PROTECTED]) wrote: Package: nautilus Version: 2.9.2-0ubuntu1 Severity: serious That version does not exist neither in unstable nor in testing. Strangely, nautilus appears to open a different connection for every file in a samba directory when browsing

Processed: Re: Bug#290841: nautilus opens connections for each file on a samba share

2005-01-17 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: severity 290841 important Bug#290841: nautilus opens connections for each file on a samba share Severity set to `important'. thanks Stopping processing here. Please contact me if you need assistance. Debian bug tracking system administrator

Processed: cloning 241112, reassign -1 to ftp.debian.org

2005-01-17 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: # Automatically generated email from bts, devscripts version 2.8.5 clone 241112 -1 Bug#241112: Please remove distributed-net-pproxy. Bug 241112 cloned as bug 290890. reassign -1 ftp.debian.org Bug#290890: Please remove distributed-net-pproxy. Bug

Processed: The ftpmasters have approved libnfsidmap1, prick.

2005-01-17 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: close 290302 Bug#290302: nfs-common: depends on libnfsidmap1 which isn't installable 'close' is deprecated; see http://www.debian.org/Bugs/Developer#closing. Bug closed, send any further explanations to Igmar Palsenberg [EMAIL PROTECTED] thanks

Bug#289762: [Pkg-nagios-devel] Bug#289762: nagios-mysql bugs

2005-01-17 Thread sean finney
hi christian, On Mon, Jan 17, 2005 at 09:36:32AM +0100, Christian Hammers wrote: On 2005-01-16 sean finney wrote: i haven't heard back from christian yet whether or not he'd accept the patch changeset that fixes the bug or wants to wait until the next version of mysql-server comes out, but

Bug#285775: marked as done (mantis: Mantis gives MySQL error upon install)

2005-01-17 Thread Debian Bug Tracking System
Your message dated Mon, 17 Jan 2005 17:09:09 +0100 with message-id [EMAIL PROTECTED] and subject line Fixed in 0.19.2-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to

Bug#290905: rsync fails with error when rsyncing to a remote host (file server) running rsyncd

2005-01-17 Thread Clive Menzies CMA Associates
Package: rsync Version: 2.6.3-2 Severity: grave Justification: causes non-serious data loss A cron job currently runs an automatic backup each night from the remote file server (running rsyncd under inetd) to the backup server which runs the following script without error: #!/bin/bash # This

Bug#278191: CAN-2005-0079: authentication bypass via integer overflow

2005-01-17 Thread Martin Schulze
Just for references, this issue has been assigned CAN-2005-0079. A Debian advisory will follow. Regards, Joey -- MIME - broken solution for a broken design. -- Ralf Baechle Please always Cc to me when replying to me on the lists. -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with

Processed: Oops, forgot to CC: control

2005-01-17 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: reopen 287043 Bug#287043: CAN-2004-1284 Buffer overflow in the find_next_file function Bug reopened, originator not changed. tags = security,woody Unknown command or malformed arguments to command. thanks Stopping processing here. Please contact me

Bug#278190: Bug#278191: CAN-2005-0079: authentication bypass via integer overflow

2005-01-17 Thread Martin Schulze
Justin Pryzby wrote: reopen 278191 tag 278191 woody thanks Correct? In generall yes and only if the security team is contacted in parallel, but please close them as I surely forget this. Regards, Joey -- MIME - broken solution for a broken design. -- Ralf Baechle Please always

Bug#278191: CAN-2005-0079: authentication bypass via integer overflow

2005-01-17 Thread Martin Schulze
Justin Pryzby wrote: Bug#278191: CAN-2005-0079: authentication bypass via integer overflow Its not an integer overflow, btw, though its not really a buffer overflow either; its an set-an-arbitrary-byte-of-memory-to-zero

Bug#260808: avifile-player: Aviplay works fine in my system

2005-01-17 Thread Alban browaeys
I haven't isolated the bug or anything more beyond knowing that it crashed my X. If this bug report is not particularly useful, please feel free to trash it. I apologise if I'm wasting your time. Thanks much, X crash are due to X drivers bugs. Could you try with the current release of

Bug#290876: marked as done (alsa-base cannot be installed after an apt-get update. Requires alsa-utils 1.0.7-2 but 1.0.7-2 is the latest version available)

2005-01-17 Thread Debian Bug Tracking System
Your message dated Mon, 17 Jan 2005 21:57:00 +0100 with message-id [EMAIL PROTECTED] and subject line Done today has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen

Bug#290905: rsync fails with error when rsyncing to a remote host (file server) running rsyncd

2005-01-17 Thread Clive Menzies
On (17/01/05 21:45), Thomas Wana wrote: Hi, ERROR: module is read only quick question, are the permissions correct on the other end? Hi Tom I believe so: $ ls -l /root/venus drwxr-xr-x 3 root root 4096 2005-01-03 09:46 backup Regards Clive -- www.clivemenzies.co.uk ...

Processed: menu: patch for non-executable update-menus

2005-01-17 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: tags 289702 patch Bug#289702: menu: Non-executable update-menus breaks woody ghostview postrm There were no tags set. Tags added: patch thanks Stopping processing here. Please contact me if you need assistance. Debian bug tracking system

Bug#289702: menu: patch for non-executable update-menus

2005-01-17 Thread Lars Wirzenius
tags 289702 patch thanks Attached is a patch that adds a wrapper around update-menus so that it is always executable. The wrapper checks for the existence for /etc/menu/unconfigured, preinst creates it, postinst removes it and runs update-menus. This should fix the bug, I think. Also, eventually

Bug#290943: cfengine2: cfagent won't run without the cfagent.conf already there.

2005-01-17 Thread Kelly Brown
Package: cfengine2 Version: 2.1.10-2 Severity: grave Justification: renders package unusable When I run cfagent on the client or the server it won't run unless I copy the cfagent.conf over by hand. It should work with just the update.conf in place. I emailed the [EMAIL PROTECTED] email list and

Bug#290337: abort on start

2005-01-17 Thread Gustavo Noronha Silva
Em Qui, 2005-01-13 s 16:57 +, ROBERTOJIMENOCA escreveu: I'm using latest unstable 2005-01-13 with gtk+ and glib 2.6.1-1 and python_2.3.4-5 and python-gtk2_2.4.1-2 Hey, GTK+/Glib 2.6.x are not yet on unstable, and maybe the problem is related to them, as I can't reproduce the problem with

Bug#290950: libgcj6-dev: missing conflict

2005-01-17 Thread Rene Engelhard
Package: libgcj6-dev Severity: serious Tags: experimental [ sorry, LANG=de_DE ] Entpacke libgcj6-dev (aus .../libgcj6-dev_4.0-0pre4_i386.deb) ... dpkg: Fehler beim Bearbeiten von /var/cache/apt/archives/libgcj6-dev_4.0-0pre4_i386.deb (--unpack): versuche »/usr/lib/libgcj.a« zu überschreiben,

Processed: retitle 246443 to boot-floppies: Fails to advise admin of kernel vulnerabilities

2005-01-17 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: # Automatically generated email from bts, devscripts version 2.8.5 retitle 246443 boot-floppies: Fails to advise admin of kernel vulnerabilities Bug#246443: boot-floppies: There is no indice *bf kernel has security issues Changed Bug title. End of

Processed: retitle 237422 to Various security related bugs are unfixed in Debian stable

2005-01-17 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: # Automatically generated email from bts, devscripts version 2.8.5 retitle 237422 Various security related bugs are unfixed in Debian stable Bug#237422: Various security realated Bugs are unfixed in debian stable Changed Bug title. End of message,

Processed: tagging 290047

2005-01-17 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: # Automatically generated email from bts, devscripts version 2.8.5 tags 290047 confirmed Bug#290047: linux-wlan-ng: insecure /tmp usage Tags were: security Tags added: confirmed End of message, stopping processing here. Please contact me if you need

Processed: retitle 273826 to Horgand freeze the system when run

2005-01-17 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: # Automatically generated email from bts, devscripts version 2.8.5 retitle 273826 Horgand freeze the system when run Bug#273826: Horgand freeze the system when runned Changed Bug title. End of message, stopping processing here. Please contact me if

Bug#289702: menu: patch for non-executable update-menus

2005-01-17 Thread Bill Allombert
On Mon, Jan 17, 2005 at 11:18:06PM +0200, Lars Wirzenius wrote: tags 289702 patch thanks Attached is a patch that adds a wrapper around update-menus so that it is always executable. The wrapper checks for the existence for /etc/menu/unconfigured, preinst creates it, postinst removes it and

Bug#290966: sffview: FTBFS: Missing build dependency?

2005-01-17 Thread Kurt Roeckx
Package: sffview Version: 0.3-2 Severity: serious Hi, Your package is failing to build with the following error: g++ -O2 -g -c `wx-config --cflags` -o sffview.o sffview.cpp In file included from sffview.cpp:36: common.h:36:37: boost/filesystem/path.hpp: No such file or directory sffview.cpp: In

Bug#290970: proxycheck: segfaults when run

2005-01-17 Thread Jeff Bonham
Package: proxycheck Version: 0.49a-1 Severity: grave Justification: renders package unusable I can't find any way to run this utility without causing it to segfault. Example: [EMAIL PROTECTED]:~$ /usr/bin/proxycheck -d 127.0.0.1:80 -c chat 127.0.0.1 Segmentation fault gdb produces a 1451-line

Bug#290974: apache: Temporary usage bugs that can be used in symlink attacks

2005-01-17 Thread Javier Fernández-Sanguino Peña
Package: apache Version: 1.3.33-2 Priority: grave Tags: security sid sarge Hi, I've found unsafe uses of /tmp in some of Apache's scripts in the source, one of this (check_forensic) is installed in Debian's apache-utils package and IMHO should be fixed. They are rather low risk, but I have to

Bug#290943: Re-classify bug

2005-01-17 Thread Andrew Stribblehill
severity 290943 important The package is still usable provided you're already using it. -- Andrew Stribblehill [EMAIL PROTECTED] Systems programmer, IT Service, University of Durham, England -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL

Bug#290809: xscreensaver-gl: I'm also having this problem

2005-01-17 Thread Andrew Burton
Package: xscreensaver-gl Version: 4.16-1 Followup-For: Bug #290809 I also get this error.In the screensaver preferences for XScreensaver, if I choose GLKnots as the screensaver, I am returned to the GDM login prompt.I'm using the nVidia drivers, with the lines in /etc/X11/XF86Config-4 being:

Bug#284952: The USB block device should be disabled

2005-01-17 Thread Horms
On Mon, Jan 17, 2005 at 12:03:51PM +0100, Frank Lichtenheld wrote: On Sun, Jan 16, 2005 at 12:33:48PM +0100, Paul van Tilburg wrote: The USB block device is known to be experimental and buggy. CONFIG_BLK_DEV_UB=m should be set to 'n'. Since the ub modules takes preference of the old,

Bug#284952: The USB block device should be disabled

2005-01-17 Thread Sven Luther
On Tue, Jan 18, 2005 at 12:56:51PM +0900, Horms wrote: On Mon, Jan 17, 2005 at 12:03:51PM +0100, Frank Lichtenheld wrote: On Sun, Jan 16, 2005 at 12:33:48PM +0100, Paul van Tilburg wrote: The USB block device is known to be experimental and buggy. CONFIG_BLK_DEV_UB=m should be set to 'n'.

Bug#284952: The USB block device should be disabled

2005-01-17 Thread Horms
On Tue, Jan 18, 2005 at 04:59:04AM +0100, Sven Luther wrote: On Tue, Jan 18, 2005 at 12:56:51PM +0900, Horms wrote: On Mon, Jan 17, 2005 at 12:03:51PM +0100, Frank Lichtenheld wrote: On Sun, Jan 16, 2005 at 12:33:48PM +0100, Paul van Tilburg wrote: The USB block device is known to be

Bug#284952: The USB block device should be disabled

2005-01-17 Thread Sven Luther
On Tue, Jan 18, 2005 at 01:13:57PM +0900, Horms wrote: On Tue, Jan 18, 2005 at 04:59:04AM +0100, Sven Luther wrote: On Tue, Jan 18, 2005 at 12:56:51PM +0900, Horms wrote: On Mon, Jan 17, 2005 at 12:03:51PM +0100, Frank Lichtenheld wrote: On Sun, Jan 16, 2005 at 12:33:48PM +0100, Paul van

Bug#284952: The USB block device should be disabled

2005-01-17 Thread dann frazier
On Tue, 2005-01-18 at 12:56 +0900, Horms wrote: Also, sould I go through and fix the config in svn, even though I can't build for any of these architectures? Horms - in general you are welcome to modify the ia64 configs; though you can also just dup a bug I can handle it before my next

Bug#290999: depends on wvstreams3, not wvstreams4

2005-01-17 Thread Joe Mason
Package: retchmail Severity: grave libwvstreams3 seems to have disappeared from Debian unstable, but retchmail still depends on it instead of libwvstreams4: [EMAIL PROTECTED]:~$ sudo apt-get install retchmail Reading Package Lists... Done Building Dependency Tree... Done Some packages could not

Bug#287651: [GRASS5] [bug #2877] (grass) Insecure tempfile creation

2005-01-17 Thread Hamish
[thanks for the 5.0.3 patch Marga] Just an update re. less-insecure tempfiles .. In the upstream GRASS 5.7 CVS[*] pretty much everything in the scripts/ directory now uses g.tempfile. C modules are next. I am not sure what to do with the init scripts libs where the GRASS tempfile fn's may not