Bug#884816: RFS: frontaccounting/2.4.3-1 [ITA]

2018-02-17 Thread Antoine Beaupré
Control: tags -1 -moreinfo -unreproducible Could you please followup on the security issue in the actual bug report (#890604)? This is the RFS, and I doubt you meant to mark the sponsorship request as "unreproducible". :) That said, I'm just a messenger: I wanted to make sure you were aware of

Bug#884816: RFS: frontaccounting/2.4.3-1 [ITA]

2018-02-17 Thread Janusz Dobrowolski
control: tags -1 +moreinfo +unreproducible Hi, As far a I know all the old vulnerabilities reported on debian bugtracker has been fixed in the package made available on mentors.debian.org page. Anyway, to be sure I have tried to reproduce the bug mentioned on new installation version to no

Bug#884816: RFS: frontaccounting/2.4.3-1 [ITA]

2018-02-16 Thread Antoine Beaupre
Hi, I haven't reveiewed the package in details, but before this is accepted into Debian, care should be taken to review the existing security vulnerabilities that affect this package. For example, CVE-2018-7176 (bug #890604) currently affects the package you are proposing to upload (2.4.3). It

Bug#884816: RFS: frontaccounting/2.4.3-1 [ITA]

2017-12-27 Thread Tobias Frost
Hi Janusz, On Tue, Dec 26, 2017 at 06:53:39PM +0100, Janusz Dobrowolski wrote: > Hi Tobi, > > Thanks for the review. I have fixed most of the issues you have pointed out. > One thing I could not address yet is declared debhelper compatibility > level. My current development box runs Ubuntu

Bug#884816: RFS: frontaccounting/2.4.3-1 [ITA]

2017-12-26 Thread Janusz Dobrowolski
Hi Tobi, Thanks for the review. I have fixed most of the issues you have pointed out. One thing I could not address yet is declared debhelper compatibility level. My current development box runs Ubuntu 14.04, and for some reason I could not successfully compile the package using gbp buildpackage

Bug#884816: RFS: frontaccounting/2.4.3-1 [ITA]

2017-12-25 Thread Tobias Frost
Control: tags -1 moreinfo Hi Janusz, I've seen that you've uploaded a new pacakge to mentors... (would be great if you could that announce that on the bug too, so people now that its time to take a look)... (I've some time to spend to review packages, but I won't be able to do a complete

Bug#884816: RFS: frontaccounting/2.4.3-1 [ITA]

2017-12-21 Thread Paul Wise
On Thu, 2017-12-21 at 23:51 +0100, Janusz Dobrowolski wrote: > Taking into account the package is not part of any debian repo, can I > just update the version published on my mentors.debian.net account > without version change, or should I update package version to 2.4.3-2 > before upload? You

Bug#884816: RFS: frontaccounting/2.4.3-1 [ITA]

2017-12-21 Thread Janusz Dobrowolski
Hi, Thank you for pointing this documentation fragment, I have overlooked it indeed. Now I have prepared slightly changed package version, including additional fixes to bugs found in old BTS reports, but first package version (2.4.3-1) is already uploaded to my mentors account. Taking into

Bug#884816: RFS: frontaccounting/2.4.3-1 [ITA]

2017-12-20 Thread Paul Wise
On Wed, Dec 20, 2017 at 6:57 AM, Janusz Dobrowolski wrote: > This package was recently included in wheezy, but seems later was > orphaned sometime back in 2013, and currently is absent from debian > repositories. Now it is refreshed, and as one of upstream developers I'm > ready to maintain it

Bug#884816: RFS: frontaccounting/2.4.3-1 [ITA]

2017-12-19 Thread Janusz Dobrowolski
Package: sponsorship-requests Severity: normal Dear mentors, I am looking for a sponsor for my package "frontaccounting" * Package name: frontaccounting Version : 2.4.3-1 Upstream Author : FrontAccounting team. * URL : http://frontaccounting.com * License