Bug#590030: smarty: should this package be orphaned?

2010-07-22 Thread Raphael Geissert
this report by making an upload addressing the outstanding issues. Even then, please consider looking for co-maintainers. I'm going to orphan the package if there's no response within two-three weeks. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net signature.asc

Bug#546528: [PATCH] make dash's preinst a C binary

2010-07-17 Thread Raphael Geissert
to experimental, after addressing Julien's comments.) The preinst script needs more changes for a successful move of /bin/sh from bash and dash to only dash. That's already on my debcamp/debconf schedule. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net

Bug#546528: [PATCH] make dash's preinst a C binary

2010-07-17 Thread Raphael Geissert
) are not in that repository, yet. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#588082: docbookwiki: race condition in postrm

2010-07-04 Thread Raphael Geissert
/sudoers /etc/sudoers.new mv -f /etc/sudoers.new /etc/sudoers chmod 0440 /etc/sudoers Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas

Bug#587670: libpng: CVE-2010-1205 and CVE-2010-2249

2010-06-30 Thread Raphael Geissert
Could you also please investigate the following and tell us what your plans are regarding it? https://bugzilla.redhat.com/show_bug.cgi?id=608644#c10 Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net signature.asc Description: This is a digitally signed message part.

Bug#587700: python-cjson: CVE-2010-1666: buffer overflow

2010-06-30 Thread Raphael Geissert
the security archive.) For further information see: [1]https://bugs.launchpad.net/ubuntu/+source/python-cjson/+bug/585274 Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject

Bug#587711: libqt4-network: infinite loop in QSslSocketBackendPrivate::transmit()

2010-06-30 Thread Raphael Geissert
by then. There's no known patch at the moment and an exploit is linked by the advisory. [1]http://aluigi.altervista.org/adv/qtsslame-adv.txt Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org

Bug#587713: mumble-server: DoS via malformed client queries

2010-06-30 Thread Raphael Geissert
-adv.txt Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#582952: dash / LINENO-support lets many package FTBFS

2010-05-27 Thread Raphael Geissert
On Thursday 27 May 2010 03:08:58 Andreas Barth wrote: * Raphael Geissert (geiss...@debian.org) [100527 06:47]: Those bugs are policy violations and make those packages FTBFS when using dash from testing or experimental, or posh. Tag them squeeze-ignore if you want, but their severity

Bug#582952: Are FTBFS really caused by LINENO-support?

2010-05-27 Thread Raphael Geissert
it; usually bash. And as you can read on the bug report you mention, the fact that dash expands backslashes in its echo built-in is not a bug and won't be fixed. The difficult part of the switch is not fixing the bashisms, but educating people about them. Cheers, -- Raphael Geissert - Debian Developer

Bug#582952: Are FTBFS really caused by LINENO-support?

2010-05-27 Thread Raphael Geissert
On 27 May 2010 11:53, Andreas Barth a...@not.so.argh.org wrote: * Raphael Geissert (geiss...@debian.org) [100527 18:47]: The difficult part of the switch is not fixing the bashisms, but educating people about them. It might actually be nice to write up an summary of what happened, why, what

Bug#582952: dash / LINENO-support lets many package FTBFS

2010-05-26 Thread Raphael Geissert
packages FTBFS when using dash from testing or experimental, or posh. Tag them squeeze-ignore if you want, but their severity is 'serious.' Regards, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org

Bug#582952: dash / LINENO-support lets many package FTBFS

2010-05-25 Thread Raphael Geissert
-process it. I.e. only review results if there's no goal-dash br already filed against the package.) Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact

Bug#582098: mapserver: FTBFS: ./configure: 12177: Bad substitution

2010-05-25 Thread Raphael Geissert
the following bashism: possible bashism in ./configure line 9189 (should be 'b = a'): if test $FT_BIN == no ; then Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe

Bug#582098: mapserver: FTBFS: ./configure: 12177: Bad substitution

2010-05-25 Thread Raphael Geissert
On 25 May 2010 10:38, Raphael Geissert geiss...@debian.org wrote: On 18 May 2010 07:33, Gerrit Pape p...@smarden.org wrote:  if test $FRIBIDI_PKG_CONFIG = yes -o ${FRIBIDI_CONFIG: -3} = .pc ; then                                                           ^ I don't think dash 0.5.5.1-3

Bug#582952: dash / LINENO-support lets many package FTBFS

2010-05-24 Thread Raphael Geissert
in the next two-three weeks. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#580680: enchant: should this package be orphaned?

2010-05-23 Thread Raphael Geissert
a dedicated team it shouldn't be worse than its current state. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#581123: minbif-common: bashism in /bin/sh script

2010-05-11 Thread Raphael Geissert
, Raphael Geissert -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#581130: nuauth: bashism in /bin/sh script

2010-05-11 Thread Raphael Geissert
. Please be aware that dash is now the default /bin/sh. Hints about how to fix bashisms can be found at: https://wiki.ubuntu.com/DashAsBinSh If you still don't know how to fix the bashisms don't hesitate to reply to this email, or tag the bug as 'help'. Thank you, Raphael Geissert -- To UNSUBSCRIBE

Bug#581141: tokyotyrant: bashism in /bin/sh script

2010-05-11 Thread Raphael Geissert
'. Thank you, Raphael Geissert -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#580680: enchant: should this package be orphaned?

2010-05-07 Thread Raphael Geissert
the package. Thanks in advance. P.S. failure to respond in a reasonable amount of time (two weeks) would mean you are no longer interested and that I should go ahead and orphan it. Regards, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian

Bug#580540: softgun: FTBFS in non-linux architectures: config.mk:24: *** Unknown architecture. Stop.

2010-05-06 Thread Raphael Geissert
critical. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#580015: ncpfs: FTBFS on ia64: sutil/ncpumount.c:353: undefined reference to `clone'

2010-05-02 Thread Raphael Geissert
exit status 2 You can find the logs of the two attempts to build it at: https://buildd.debian.org/build.php?pkg=ncpfsarch=ia64ver=2.2.6-7 Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org

Bug#575361: false positive: E: dash: package-uses-local-diversion

2010-04-28 Thread Raphael Geissert
and that we should ask the ftp-masters to move it to the non- fatal list of tags? Gerrit, I'm going to publish my repository with changes addressing the dpkg- divert issues somewhere. Will follow up on that on the other thread. Cheers, -- Raphael Geissert - Debian Developer www.debian.org

Bug#575361: Fwd: Re: Bug#575361: false positive: E: dash: package-uses-local-diversion

2010-04-28 Thread Raphael Geissert
On 28 April 2010 21:13, Russ Allbery r...@debian.org wrote: Raphael Geissert atom...@gmail.com writes: I think it is fair to say that it is ok to remove a local diversion if the user is saying that she/he wants dash to be /bin/sh. Not doing so would even leave the diversion and debconf db

Bug#577734: [php-maint] Bug#577734: Bug#577734: php5: squeeze must not ship 5.3.1

2010-04-14 Thread Raphael Geissert
close 577734 thanks On 14 April 2010 10:36, Thijs Kinkhorst th...@debian.org wrote: On woansdei 14 April 2010, Raphael Geissert wrote: Since there's apparently not much progress by others to fix their packages  so  that php 5.3.2 can finally migrate, I'm filing a dummy RC bug that I'm  going

Bug#577734: php5: squeeze must not ship 5.3.1

2010-04-13 Thread Raphael Geissert
Source: php5 Version: 5.3.1-5 Severity: serious Since there's apparently not much progress by others to fix their packages so that php 5.3.2 can finally migrate, I'm filing a dummy RC bug that I'm going to mark as fixed by 5.3.2. Nobody wants to release squeeze with 5.3.1. Cheers, -- Raphael

Bug#577009: [php-maint] Bug#577009: php5-cgi: php-cgi uses 500+ mb memory

2010-04-08 Thread Raphael Geissert
has 8 gb real and 4 gb swap and the OOM killer has been invoked several times already. I'm sure that you yourself can see that your report is vague and useless without any further information. What about talking a bit about the setup, the extensions, the scripts, etc? Cheers, -- Raphael

Bug#569377: Bug#569119: php-ssh2: FTBFS with php 5.3

2010-02-24 Thread Raphael Geissert
Hi, I've prepared and uploaded a 0-day NMU to fix this bug. Attached is the diff of the changes. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net diff -urpN php-ssh2-0.11.0-2.orig/debian/changelog php-ssh2-0.11.0-2/debian/changelog --- php-ssh2-0.11.0-2.orig/debian

Bug#513796: php5-xapian: PHP license incompatible with Xapian

2010-02-23 Thread Raphael Geissert
Hi, Have you considered contacting the copyright owners to get their agreement to add an exception? maybe it is going to be easier to add an exception than re- licensing all the xapian code. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE

Bug#513796: php5-xapian: PHP license incompatible with Xapian

2010-02-23 Thread Raphael Geissert
On 23 February 2010 19:53, Olly Betts o...@survex.com wrote: On Tue, Feb 23, 2010 at 02:26:24PM -0600, Raphael Geissert wrote: Have you considered contacting the copyright owners to get their agreement to add an exception? maybe it is going to be easier to add an exception than re- licensing

Bug#523073: [debian/debian-lenny] Add missing sybase aliases (Closes: #523073)

2010-02-22 Thread Raphael Geissert
tag 523073 pending thanks Date: Fri Feb 5 14:15:08 2010 -0600 Author: Raphael Geissert geiss...@debian.org Commit ID: 5d5b63e91c2f930c860c32e57ca1e543f9bbd34f Commit URL: http://git.debian.org/?p=pkg-php/php.git;a=commitdiff;h=5d5b63e91c2f930c860c32e57ca1e543f9bbd34f Patch URL: http

Bug#570111: [debian/debian-sid] Fix a race condition on shtool's mkdir -p (Closes: #570111)

2010-02-18 Thread Raphael Geissert
tag 570111 pending thanks Date: Thu Feb 18 19:28:56 2010 -0600 Author: Raphael Geissert geiss...@debian.org Commit ID: 289af4a9b50a75c2ac027bad7d26bfbc4471dc8a Commit URL: http://git.debian.org/?p=pkg-php/php.git;a=commitdiff;h=289af4a9b50a75c2ac027bad7d26bfbc4471dc8a Patch URL: http

Bug#569201: Uninstallable package

2010-02-15 Thread Raphael Geissert
to be broken. There's people (me) actively working on the transition. Regards, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#569117: php-apc: FTBFS with php 5.3: APC-3.0.19/php_apc.c:959: error: duplicate 'static'

2010-02-09 Thread Raphael Geissert
:45:28.0 -0500 +++ APC-3.0.19/php_apc.c2010-02-10 00:13:02.0 -0600 @@ -955,7 +955,6 @@ #ifdef ZEND_ENGINE_2 /* {{{ arginfo */ -static ZEND_BEGIN_ARG_INFO(php_apc_fetch_arginfo, 0) ZEND_ARG_INFO(0, key) ZEND_ARG_INFO(1, success) Cheers, -- Raphael Geissert

Bug#569119: php-ssh2: FTBFS with php 5.3

2010-02-09 Thread Raphael Geissert
*' but argument is of type 'const unsigned char *' make[1]: *** [ssh2.lo] Error 1 make[1]: Leaving directory `/tmp/buildd/php-ssh2-0.11.0/build-php5' make: *** [build-stamp] Error 2 Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc

Bug#569118: php-imlib: FTBFS with php 5.3

2010-02-09 Thread Raphael Geissert
/imlib.c:114: error: 'third_arg_force_ref' undeclared here (not in a function) There are some other warnings about deprecated functions. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org

Bug#567961: [Evolution] Bug#567961: Evo crashes when composing a mail!

2010-02-07 Thread Raphael Geissert
. If that works then it means it is ispell-specific, otherwise it might be a gnome/gtk-specific issue. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact

Bug#567961: [Evolution] Bug#567961: Evo crashes when composing a mail!

2010-02-07 Thread Raphael Geissert
On 7 February 2010 13:02, Svante Signell s...@kth.se wrote: On Sun, 2010-02-07 at 19:49 +0100, Raphael Geissert wrote: On 7 February 2010 03:30, Svante Signell s...@kth.se wrote: Strange, since the 1.4.2-3.4 works and 1.4.2-3.5 don't. ... Looks like you only have ispell dictionaries, could

Bug#523073: [debian/debian-sid] Add aliases to the mssql functions on the sybase extension (Closes: #523073)

2010-02-07 Thread Raphael Geissert
tag 523073 pending thanks Date: Tue Aug 11 13:08:10 2009 -0500 Author: Raphael Geissert geiss...@debian.org Commit ID: baa0d12b3cd539b40d33398acd2b8886eef97040 Commit URL: http://git.debian.org/?p=pkg-php/php.git;a=commitdiff;h=baa0d12b3cd539b40d33398acd2b8886eef97040 Patch URL: http

Bug#567961: Debdiff for enchant -3.6 NMU

2010-02-07 Thread Raphael Geissert
Hi, Attached is the patch of my NMU. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net diff -u enchant-1.4.2/debian/changelog enchant-1.4.2/debian/changelog --- enchant-1.4.2/debian/changelog +++ enchant-1.4.2/debian/changelog @@ -1,3 +1,11 @@ +enchant (1.4.2-3.6

Bug#567961: [Evolution] Bug#567961: Evo crashes when composing a mail!

2010-02-06 Thread Raphael Geissert
to the -dev package. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#528938: CVE-2009-1629: generates session IDs with predictable random numbers

2010-02-05 Thread Raphael Geissert
Hi, I plan to release a DSA fixing this issue with the attached patch. Please upload a new version to sid containing the fix. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net Fix CVE-2009-1629: weak session id generation Use a cookie with a strong random name

Bug#528938: CVE-2009-1629: generates session IDs with predictable random numbers

2010-02-05 Thread Raphael Geissert
Hi Julien, On 6 February 2010 01:19, Julien Valroff jul...@kirya.net wrote: Hi Raphael, Le samedi 06 février 2010 à 01:04 -0600, Raphael Geissert a écrit : Hi, I plan to release a DSA fixing this issue with the attached patch. Please upload a new version to sid containing the fix. I'll

Bug#565932: libenchant-dev: missing dependencies

2010-01-29 Thread Raphael Geissert
Hi, I've uploaded a NMU. Attached is the diff. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net diff -urpN enchant-1.4.2-3.4.orig/debian/changelog enchant-1.4.2-3.4/debian/changelog --- enchant-1.4.2-3.4.orig/debian/changelog 2010-01-29 17:20:19.0 -0600

Bug#566292: php5-librdf: missing dependency on phpapi-*

2010-01-29 Thread Raphael Geissert
tag 566292 patch thanks Hi, I've uploaded a NMU making the attached changes. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net diff -urpN redland-bindings-1.0.10.1-1.orig/debian/changelog redland-bindings-1.0.10.1-1/debian/changelog --- redland-bindings-1.0.10.1-1

Bug#566285: php-zeroc-ice: missing dependency on phpapi-*

2010-01-29 Thread Raphael Geissert
tag 566285 patch thanks Hi, Attached patch should do it. Please fix this bug ASAP. Thanks in advance. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net diff -urpN zeroc-ice-3.3.1-10.orig/debian/control zeroc-ice-3.3.1-10/debian/control --- zeroc-ice-3.3.1-10.orig

Bug#566292: php5-librdf: missing dependency on phpapi-*

2010-01-26 Thread Raphael Geissert
Depends: libc6 (= 2.3.6-6~), [...], phpapi-20060613+lfs, ucf and so on. The change is exactly what I said on my original email, just make debian/rules generate a substvar that will lead to the binary package depend on phpapi-$(php-config5 --phpapi .) Regards, -- Raphael Geissert - Debian Developer

Bug#566285: php-zeroc-ice: missing dependency on phpapi-*

2010-01-22 Thread Raphael Geissert
three days, say it NOW. Thanks in advance. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#566292: php5-librdf: missing dependency on phpapi-*

2010-01-22 Thread Raphael Geissert
three days, say it NOW. Thanks in advance. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#566287: libgv-php5: missing dependency on phpapi-*

2010-01-22 Thread Raphael Geissert
days, say it NOW. Thanks in advance. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#566289: libpuzzle-php: missing dependency on phpapi-*

2010-01-22 Thread Raphael Geissert
days, say it NOW. Thanks in advance. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#566290: php-wikidiff2: missing dependency on phpapi-*

2010-01-22 Thread Raphael Geissert
than three days, say it NOW. Thanks in advance. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#566288: php5-lasso: missing dependency on phpapi-*

2010-01-22 Thread Raphael Geissert
than three days, say it NOW. Thanks in advance. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#566289: [Pkg-phototools-devel] Bug#566289: libpuzzle-php: missing dependency on phpapi-*

2010-01-22 Thread Raphael Geissert
2010/1/22 Cyril Brulebois k...@debian.org: tag 566289 pending thanks Raphael Geissert geiss...@debian.org (22/01/2010): P.S. if this bug isn't fixed by one of the current BSPs I plan to fix it in the following days via a 1-day delay NMU.  If you intend to fix it, in less than three days

Bug#565932: libenchant-dev: missing dependencies

2010-01-22 Thread Raphael Geissert
2010/1/22 Rene Engelhard r...@debian.org: [ disclaimer: I am not the maintainer of enchant ] Hi, On Tue, Jan 19, 2010 at 02:18:57PM -0600, Raphael Geissert wrote: While trying to build a package that uses enchant but does not directly use glib I noticed that libenchant-dev is only depending

Bug#565932: libenchant-dev: missing dependencies

2010-01-19 Thread Raphael Geissert
Package: libenchant-dev Version: 1.4.2-3.4 Severity: serious Hi, While trying to build a package that uses enchant but does not directly use glib I noticed that libenchant-dev is only depending on libenchant1c2a and not on for example libglib2.0-dev (and possibly others). Cheers, -- Raphael

Bug#560895: gnome-screensaver inhibitors not being removed issue

2010-01-06 Thread Raphael Geissert
Hi Josselin, 2010/1/6 Josselin Mouette j...@debian.org: Version: 2.28.0-2 notfound 560895 2.14.3-3 thanks Le mardi 05 janvier 2010 à 18:13 -0600, Raphael Geissert a écrit : The issue seems to affect etch, lenny and squeeze/sid. A patch is available at: http://git.gnome.org/browse/gnome

Bug#560895: gnome-screensaver inhibitors not being removed issue

2010-01-05 Thread Raphael Geissert
and prepare a fix for stable via SPU. The bug is explained on gnome's bugzilla bug report linked by the commit. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble

Bug#563739: spring: missing copyright data

2010-01-04 Thread Raphael Geissert
Source: spring Severity: serious Version: 0.80.5.2-1 Hi, Spring embeds a zillion of libraries and other code but only documents a few of them. Regards, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net signature.asc Description: This is a digitally signed message part.

Bug#563354: poppler: FTBFS: undefined reference to `qvsnprintf(char*, unsigned int, char const*, std::__va_list)'

2010-01-02 Thread Raphael Geissert
status The complete log of the failed build can be found at: https://buildd.debian.org/fetch.cgi?pkg=popplerarch=armelver=0.12.2-2.1stamp=1261688694file=logas=raw Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ

Bug#563357: postgresql-8.4: FTBFS on mips: Not all files are installed

2010-01-02 Thread Raphael Geissert
'/nonexistent/.dpkg.cfg' for reading: Permission denied dpkg: warning: failed to open configuration file '/nonexistent/.dpkg.cfg' for reading: Permission denied make: *** [common-binary-predeb-arch] Error 1 8---8 Cheers, -- Raphael Geissert - Debian

Bug#563356: linux-2.6: FTBFS in ia64: source_ia64_vserver/mm/memory.c:2995: error: implicit declaration of function 'vx_page_fault'

2010-01-02 Thread Raphael Geissert
of function 'vx_page_fault' make[6]: *** [mm/memory.o] Error 1 -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#563355: linux-2.6: FTBFS in s390: source_s390_vserver/kernel/vserver/proc.c:70: error: '__NR_vserver' undeclared

2010-01-02 Thread Raphael Geissert
/proc.c:70: error: (Each undeclared identifier is reported only once /build/buildd-linux-2.6_2.6.32-3-s390-7O5pHW/linux-2.6-2.6.32/debian/build/ source_s390_vserver/kernel/vserver/proc.c:70: error: for each function it appears in.) make[7]: *** [kernel/vserver/proc.o] Error 1 Cheers, -- Raphael

Bug#563206: pidgin: local file disclosure vulnerability

2009-12-31 Thread Raphael Geissert
that at least one custom smiley is defined. The vulnerability is confirmed in version 2.6.4. Other versions may also be affected. If you fix this vulnerability please include the CVE id when one is assigned. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net

Bug#559531: moodle: Security fixes released

2009-12-17 Thread Raphael Geissert
Hi Francois et al, Do you have any plans to fix these issues? what about an old/stable security upload? Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net signature.asc Description: This is a digitally signed message part.

Bug#559029: [php-maint] Bug#559029: php-pear: Default pear.php.net channels definition has insufficiend information

2009-12-15 Thread Raphael Geissert
post about the issue). Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#561059: kcheckgmail: gmail broke the login interface

2009-12-13 Thread Raphael Geissert
Package: kcheckgmail Version: 0.5.7.7-1 Severity: serious Tags: pending Placeholder bug. Fixed package will be uploaded soon. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject

Bug#560771: acpid: CVE-2009-4235: weak permissions on /var/log/acpid

2009-12-11 Thread Raphael Geissert
Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#560779: polipo: DoS via overly large Content-Length header

2009-12-11 Thread Raphael Geissert
this vulnerability in the stable and oldstable releases. For further information see: http://www.exploit-db.com/exploits/10338 http://secunia.com/advisories/37607/ Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ

Bug#559787: [php-maint] Bug#559787: php4: CVE-2008-5624

2009-12-06 Thread Raphael Geissert
to prepare an updated package, do you still plan to work on one? Maybe another upload could be prepared addressing the most severe issues and declaring the EOL of security support. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian

Bug#554501: neon26: FTBFS: Test hangs

2009-11-22 Thread Raphael Geissert
Hi Laszlo, It's been more than two weeks and there doesn't seem to be any, at least public, reaction to this issue which is preventing the migration of the security bug fixes. What's the status? Regards, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net

Bug#555945: [debian/debian-sid] Add libdb4.8-dev as an alternative dependency (Closes: #555945)

2009-11-21 Thread Raphael Geissert
tag 555945 pending thanks Date: Sat Nov 21 11:54:27 2009 -0600 Author: Raphael Geissert geiss...@debian.org Commit ID: 1707ade0606372744606418a59feb41c6f64fc75 Commit URL: http://git.debian.org/?p=pkg-php/php.git;a=commitdiff;h=1707ade0606372744606418a59feb41c6f64fc75 Patch URL: http

Bug#557137: libexif: CVE-2009-3895: heap buffer overflow when processing certain images

2009-11-19 Thread Raphael Geissert
/CVE-2009-3895 Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#556750: gimp: CVE-2009-3909: heap overflow due to integer overflow when parsing psd files

2009-11-17 Thread Raphael Geissert
/commit/?id=0e440cb6d4d6ee029667363d244aff61b154c33c For further information see: [0] http://secunia.com/secunia_research/2009-43/ http://security-tracker.debian.org/tracker/CVE-2009-3909 Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE

Bug#556799: readahead-fedora: Unversioned conflict with readahead

2009-11-17 Thread Raphael Geissert
is to install the *real* package, not the transitional one. That is, install readahead-fedora or upgrade from readahead, but don't install readahead. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org

Bug#545372: subversion: FTBFS on powerpc: tests failed

2009-11-07 Thread Raphael Geissert
, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#553644: jetty: multiple vulnerabilities

2009-11-01 Thread Raphael Geissert
, if they are assigned before the issues are fixed. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#552756: AST-2009-007: SIP INVITE ACL bypass

2009-10-29 Thread Raphael Geissert
2009/10/29 Faidon Liambotis parav...@debian.org: Raphael Geissert wrote: A vulnerability has been reported in asterisk that allows a device to make calls on networks intended to be prohibited as defined by the deny and permit lines in sip.conf. The original advisory can be found at: http

Bug#552756: AST-2009-007: SIP INVITE ACL bypass

2009-10-29 Thread Raphael Geissert
Hi, 2009/10/29 Faidon Liambotis parav...@debian.org: Raphael Geissert wrote: Yes, the versions in testing and unstable (at least those that were there before I reported it) were both affected. May I suggest you to reply to the email in the future whenever you don't think it affects a version

Bug#552756: AST-2009-007: SIP INVITE ACL bypass

2009-10-28 Thread Raphael Geissert
, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#552531: libhtml-parser-perl: decode_entities confused by trailing incomplete entity can lead to DoS attacks

2009-10-27 Thread Raphael Geissert
/CVE-2009-3627 [1]http://github.com/gisle/html-parser/commit/b9aae1e43eb2c8e989510187cff0ba3e996f9a4c Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact

Bug#552534: libgd2: CVE-2009-3546: possible buffer overflow or buffer over-read attacks via crafted files

2009-10-27 Thread Raphael Geissert
the vulnerability please also make sure to include the CVE id in your changelog entry. For further information see: [0] http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3546 http://security-tracker.debian.org/tracker/CVE-2009-3546 Cheers, -- Raphael Geissert - Debian Developer

Bug#550217: wget: Uninstallable, contains dir.gz

2009-10-21 Thread Raphael Geissert
Hi Noèl, Has there been any progress on this issue? or should I consider preparing an NMU? This RC bug is blocking the migration of the fix for CVE-2009-3490 to testing. Thanks, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc

Bug#545372: subversion: FTBFS on powerpc: tests failed

2009-10-21 Thread Raphael Geissert
, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#527449: swftools: multiple vulnerabilities in embedded copy of xpdf

2009-10-21 Thread Raphael Geissert
step. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#528938: CVE-2009-1629: generates session IDs with predictable random numbers

2009-10-10 Thread Raphael Geissert
2009/10/10 Florian Weimer f...@deneb.enyo.de: * Raphael Geissert: Cc'ing the stable security team as I would some input from them.  As mentioned by Florian on IRC there's a bug on some browsers that could let other websites predict the sequence of Math.random(). On unstable the cryptojs

Bug#550322: fails to install

2009-10-09 Thread Raphael Geissert
/init.d/, /etc/rc*.d, or /lib/init I don't see any obvious command that could fail under normal circumstances, at first glance. Once this bug is fixed I'd recommend you to upgrade to the version in sid. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net

Bug#550322: fails to install

2009-10-09 Thread Raphael Geissert
Hi, On Friday 09 October 2009 08:35:36 Soeren Sonnenburg wrote: On Fri, 2009-10-09 at 08:18 -0500, Raphael Geissert wrote: Could you please modify the 'set -e' line and make it a 'set -xe' and dpkg --configure --pending? Attached. Thanks I guess it has something to do with the code

Bug#550322: fails to install

2009-10-09 Thread Raphael Geissert
. Seems like the migration of initserv (backup files) cause files to be not found... Do you mean insserv? Could you also please provide the output of ls -lR /etc/rcS.d? I will fix it in readahead-fedora by limiting the directory recursion, but this case is strange. Cheers, -- Raphael Geissert

Bug#528938: CVE-2009-1629: generates session IDs with predictable random numbers

2009-10-09 Thread Raphael Geissert
() attacks), but that can't be done on neither stable nor oldstable. And FWIW, I think that a larger and more random sid is better than the week and poor currently being generated. The patch needs some testing (mostly on the per-user sessions limit part), though. Cheers, -- Raphael Geissert

Bug#548348: apt-cacher-ng: expiration script requires perl, which is not Essential

2009-10-09 Thread Raphael Geissert
as the package does have a soft dependency on the package needed by the extra script. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas

Bug#543525: [php-maint] Bug#543525: php-cgi segfaults -- me too

2009-10-03 Thread Raphael Geissert
provide backtraces. Regards, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#543525: Bug#542514: libapache2-mod-php5 with segmentation fault and efree heap

2009-10-03 Thread Raphael Geissert
Hi everyone, Could you please test the 5.2.11 packages and check whether it keeps segfaulting or not? Thanks in advance. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject

Bug#546164: [php-maint] Bug#546164: Already fixed

2009-10-03 Thread Raphael Geissert
the exact test conditions I used to test the symlink attack, though, as I did it in a rush. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact

Bug#546164: Patch?

2009-09-16 Thread Raphael Geissert
Hi, [Please keep the bug CCed] On Wednesday 16 September 2009 01:56:02 Federico Giménez Nieto wrote: Hi Raphael, 2009/9/15 Raphael Geissert geiss...@debian.org tag 546164 - patch severity 546164 grave retitle 546164 pear download directory is inherited from the build thanks Hi

Bug#540144: strongswan: diff for NMU version 4.3.2-1.1

2009-09-08 Thread Raphael Geissert
++ Fixes bug where the arch: all package is not included in .changes + + -- Raphael Geissert geiss...@debian.org Tue, 08 Sep 2009 18:37:35 -0500 + strongswan (4.3.2-1) unstable; urgency=HIGH Urgency high because of security issue and FTBFS. diff -u strongswan-4.3.2/debian/rules strongswan-4.3.2

Bug#545372: subversion: FTBFS on powerpc: tests failed

2009-09-06 Thread Raphael Geissert
/subversion/bindings/swig/ruby/test/test_info.rb:29:in `test_info' 219 tests, 1489 assertions, 1 failures, 1 errors The full build log can be found at https://buildd.debian.org/fetch.cgi?pkg=subversionver=1.6.5dfsg-1arch=powerpcstamp=1250968748file=log Cheers, -- Raphael Geissert - Debian

Bug#544931: another problem in the patch

2009-09-05 Thread Raphael Geissert
of the reasons why I preferred to implement my fix the way I did it. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#544931: another problem in the patch

2009-09-05 Thread Raphael Geissert
it. Well, I'm obviously biased, but I really prefer the pos() version as it mimics exactly what the regex engine does. And its bugs, as demonstrated above :) Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ

<    1   2   3   4   5   >