Re: linux-4.9 in jessie, broken dependency on linux-base

2018-07-19 Thread Ben Hutchings
On Fri, 2018-07-20 at 01:09 +0200, Baptiste Jonglez wrote: > On 19-07-18, Ben Hutchings wrote: > > On Thu, 2018-07-19 at 17:26 +0200, Baptiste Jonglez wrote: > > > I saw the recent announcement about linux-4.9 [1,2] in jessie. > > > > > > However, these new packages are not installable without

Accepted linux-base 4.5~deb8u1 (source all) into oldstable

2018-07-19 Thread Ben Hutchings
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Format: 1.8 Date: Fri, 20 Jul 2018 02:42:43 +0100 Source: linux-base Binary: linux-base Architecture: source all Version: 4.5~deb8u1 Distribution: jessie-security Urgency: medium Maintainer: Debian Kernel Team Changed-By: Ben Hutchings

Re: Advice for building tomcat8 on jessie?

2018-07-19 Thread tony mancill
On Wed, Jul 18, 2018 at 02:48:56PM -0400, Roberto C. Sánchez wrote: > On Mon, Jul 09, 2018 at 09:07:00AM -0400, Roberto C. Sánchez wrote: > > On Sun, Jul 08, 2018 at 09:15:26PM -0700, tony mancill wrote: > > > Hello Roberto, > > > > > > If you're still running into build failures, I would be

Re: Advice for building tomcat8 on jessie?

2018-07-19 Thread Roberto C . Sánchez
On Thu, Jul 19, 2018 at 10:35:50PM -0700, tony mancill wrote: > > Hi Roberto, > > I was able to build your jessie branch in clean jessie chroot without > any problems. I use sbuild on amd64. It took about 50 minutes: > > > Build Architecture: amd64 > > Build Type: full > > Build-Space: n/a >

Re: linux-4.9 in jessie, broken dependency on linux-base

2018-07-19 Thread Baptiste Jonglez
On 19-07-18, Ben Hutchings wrote: > On Thu, 2018-07-19 at 17:26 +0200, Baptiste Jonglez wrote: > > I saw the recent announcement about linux-4.9 [1,2] in jessie. > > > > However, these new packages are not installable without jessie-backports, > > because they depend on linux-base >= 4.3~, while

Accepted gpac 0.5.0+svn5324~dfsg1-1+deb8u1 (source) into oldstable

2018-07-19 Thread Brian May
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Format: 1.8 Date: Tue, 17 Jul 2018 17:21:06 +1000 Source: gpac Binary: gpac gpac-dbg gpac-modules-base libgpac3 libgpac-dbg libgpac-dev Architecture: source Version: 0.5.0+svn5324~dfsg1-1+deb8u1 Distribution: jessie-security Urgency: high

[SECURITY] [DLA 1432-1] gpac security update

2018-07-19 Thread Brian May
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Package: gpac Version: 0.5.0+svn5324~dfsg1-1+deb8u1 CVE ID : CVE-2018-13005 CVE-2018-13006 Debian Bug : 902782 Two heap buffer over read conditions were found in gpac. CVE-2018-13005 Due to an error in a while loop

Re: #860064 dnsmasq will not start after dns-root-data upgrade

2018-07-19 Thread Adam D. Barratt
On Thu, 2018-07-19 at 18:42 +0200, Christoph Martin wrote: > tags 860064 +stretch > tags 860064 +jessie > thanks > > Am 01.07.2018 um 15:38 schrieb Adam D. Barratt: > > On Sun, 2018-07-01 at 11:38 +, Martin, Christoph wrote: > > > dns-root-data had an update a week before. the file with the

Re: #860064 dnsmasq will not start after dns-root-data upgrade

2018-07-19 Thread Adam D. Barratt
On Thu, 2018-07-19 at 18:23 +0100, Adam D. Barratt wrote: > On Thu, 2018-07-19 at 18:42 +0200, Christoph Martin wrote: > > tags 860064 +stretch > > tags 860064 +jessie > > thanks > > > > Am 01.07.2018 um 15:38 schrieb Adam D. Barratt: > > > On Sun, 2018-07-01 at 11:38 +, Martin, Christoph

Jessie update of vim-syntastic?

2018-07-19 Thread Mike Gabriel
Dear maintainer(s), The Debian LTS team would like to fix the security issues which are currently open in the Jessie version of vim-syntastic: https://security-tracker.debian.org/tracker/CVE-2018-11319 Would you like to take care of this yourself? If yes, please follow the workflow we have

Jessie update of clamav?

2018-07-19 Thread Mike Gabriel
Dear maintainer(s), The Debian LTS team would like to fix the security issues which are currently open in the Jessie version of clamav: https://security-tracker.debian.org/tracker/CVE-2018-0360 https://security-tracker.debian.org/tracker/CVE-2018-0361 Would you like to take care of this

linux-4.9 in jessie, broken dependency on linux-base

2018-07-19 Thread Baptiste Jonglez
Hi, I saw the recent announcement about linux-4.9 [1,2] in jessie. However, these new packages are not installable without jessie-backports, because they depend on linux-base >= 4.3~, while only linux-base 3.5 is available on plain jessie: # apt install linux-image-4.9.0-0.bpo.7-amd64

Jessie update of phpldapadmin?

2018-07-19 Thread Mike Gabriel
Dear maintainer(s), The Debian LTS team would like to fix the security issues which are currently open in the Jessie version of phpldapadmin: https://security-tracker.debian.org/tracker/CVE-2018-12689 Would you like to take care of this yourself? If yes, please follow the workflow we have

Jessie update of resiprocate?

2018-07-19 Thread Mike Gabriel
Dear maintainer(s), The Debian LTS team would like to fix the security issues which are currently open in the Jessie version of resiprocate: https://security-tracker.debian.org/tracker/CVE-2018-12584 Would you like to take care of this yourself? If yes, please follow the workflow we have

Jessie update of twig?

2018-07-19 Thread Mike Gabriel
Dear maintainer(s), The Debian LTS team has started fixing the security issues which are currently open in the Jessie version of twig: https://security-tracker.debian.org/tracker/CVE-2018-13818 Would you like to take care of this yourself? If yes, please follow the workflow we have defined

Jessie update of mutt?

2018-07-19 Thread Mike Gabriel
Dear maintainer(s), The Debian LTS team would like to fix the security issues which are currently open in the Jessie version of mutt: https://security-tracker.debian.org/tracker/source-package/mutt Would you like to take care of this yourself? If yes, please follow the workflow we have defined

Jessie update of sam2p?

2018-07-19 Thread Mike Gabriel
Dear maintainer(s), The Debian LTS team would like to fix the security issues which are currently open in the Jessie version of sam2p: https://security-tracker.debian.org/tracker/CVE-2018-12578 https://security-tracker.debian.org/tracker/CVE-2018-12601 Would you like to take care of this

Jessie update of ruby-zip?

2018-07-19 Thread Mike Gabriel
Dear maintainer(s), The Debian LTS team would like to fix the security issues which are currently open in the Jessie version of ruby-zip: https://security-tracker.debian.org/tracker/CVE-2018-1000544 Would you like to take care of this yourself? If yes, please follow the workflow we have defined

Re: Jessie update of phpldapadmin?

2018-07-19 Thread Fabio Tranchitella
Dear Mike, I'm really sorry to inform you I don't have enough time to prepare the upload of phpldapadmin for the CVE. Best regards, Fabio On 19/07/2018 16:25, Mike Gabriel wrote: Dear maintainer(s), The Debian LTS team would like to fix the security issues which are currently open in the

Re: Jessie update of clamav?

2018-07-19 Thread Sebastian Andrzej Siewior
On 2018-07-19 17:06:30 [+0200], Mike Gabriel wrote: > The Debian LTS team would like to fix the security issues which are > currently open in the Jessie version of clamav: > https://security-tracker.debian.org/tracker/CVE-2018-0360 > https://security-tracker.debian.org/tracker/CVE-2018-0361 > >

Accepted openjpeg2 2.1.0-2+deb8u4 (source amd64 all) into oldstable

2018-07-19 Thread Thorsten Alteholz
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Format: 1.8 Date: Thu, 19 Jul 2018 19:03:02 +0200 Source: openjpeg2 Binary: libopenjp2-7-dev libopenjp2-7 libopenjpip7 libopenjp3d7 libopenjp2-7-dbg libopenjpip-dec-server libopenjpip-viewer libopenjpip-server libopenjp3d-tools libopenjp2-tools

Re: linux-4.9 in jessie, broken dependency on linux-base

2018-07-19 Thread Ben Hutchings
On Thu, 2018-07-19 at 17:26 +0200, Baptiste Jonglez wrote: > Hi, > > I saw the recent announcement about linux-4.9 [1,2] in jessie. > > However, these new packages are not installable without jessie-backports, > because they depend on linux-base >= 4.3~, while only linux-base 3.5 is > available

Re: #860064 dnsmasq will not start after dns-root-data upgrade

2018-07-19 Thread Christoph Martin
tags 860064 +stretch tags 860064 +jessie thanks Am 01.07.2018 um 15:38 schrieb Adam D. Barratt: > On Sun, 2018-07-01 at 11:38 +, Martin, Christoph wrote: >> dns-root-data had an update a week before. the file with the dns root >> keys was updated. at least the format has changed. > > To

Re: #860064 dnsmasq will not start after dns-root-data upgrade

2018-07-19 Thread Christoph Martin
tags 860064 -stretch thanks Am 19.07.2018 um 19:34 schrieb Adam D. Barratt: >> >> Please explain how the file was changed in stretch on that date. >> Specifically, which version of dns-root-data was updated, from which >> version. >> >> Sorry to keep going on about this, but there wasn't a

Re: Jessie update of phpldapadmin?

2018-07-19 Thread Mike Gabriel
Hi Fabio, On Do 19 Jul 2018 16:34:36 CEST, Fabio Tranchitella wrote: Dear Mike, On 19/07/2018 16:25, Mike Gabriel wrote: Dear maintainer(s), The Debian LTS team would like to fix the security issues which are currently open in the Jessie version of phpldapadmin:

[SECURITY] [DLA 1433-1] openjpeg2 security update

2018-07-19 Thread Thorsten Alteholz
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Package: openjpeg2 Version: 2.1.0-2+deb8u4 CVE ID : CVE-2015-1239 CVE-2016-5139 CVE-2015-1239 Fix for denial of service (process crash) via a crafted PDF. CVE-2016-5139 Fix for integer overflows, allowing a

Re: Jessie update of clamav?

2018-07-19 Thread Mike Gabriel
Hi all, On Do 19 Jul 2018 21:18:13 CEST, Sebastian Andrzej Siewior wrote: On 2018-07-19 17:06:30 [+0200], Mike Gabriel wrote: The Debian LTS team would like to fix the security issues which are currently open in the Jessie version of clamav: