Bug#655074: transition: audiofile

2012-01-12 Thread Alessio Treglia
Hi, just to let you know I've uploaded the new upstream release (with a proper SONAME set) to experimental and it's now sitting in NEW. Thanks for your time and work, regards. -- Alessio Treglia          | www.alessiotreglia.com Debian Developer         | ales...@debian.org Ubuntu Core

Bug#654442: pu: package erlang/14.a-dfsg-3squeeze1

2012-01-12 Thread Sergei Golovan
Ping? Also, I've prepared a patch for oldstable. -- Sergei Golovan erlang_12.b.3-dfsg-4_12.b.3-dfsg-4lenny1.diff Description: Binary data

Bug#654442: pu: package erlang/14.a-dfsg-3squeeze1

2012-01-12 Thread Julien Cristau
On Tue, Jan 3, 2012 at 22:49:33 +0400, Sergei Golovan wrote: [...] ++static ERL_NIF_TERM strong_rand_mpint_nif(ErlNifEnv* env, int argc, const ERL_NIF_TERM argv[]) ++{/* (Bytes, TopMask, BottomMask) */ ++unsigned bits; ++BIGNUM *bn_rand; ++int top, bottom; ++unsigned

Bug#649773: marked as done (nmu: omniorb-dfsg_4.1.5-2)

2012-01-12 Thread Debian Bug Tracking System
Your message dated Thu, 12 Jan 2012 21:48:01 +0100 with message-id 20120112204801.gj9...@radis.cristau.org and subject line Re: Bug#649773: nmu: omniorb-dfsg_4.1.5-2 has caused the Debian Bug report #649773, regarding nmu: omniorb-dfsg_4.1.5-2 to be marked as done. This means that you claim that

Bug#651372: marked as done (RM: josm-plugins/0.0.svn26626+ds1-2)

2012-01-12 Thread Debian Bug Tracking System
Your message dated Thu, 12 Jan 2012 21:52:18 +0100 with message-id 20120112205218.gk9...@radis.cristau.org and subject line Re: RM: josm-plugins/0.0.svn26626+ds1-2 has caused the Debian Bug report #651372, regarding RM: josm-plugins/0.0.svn26626+ds1-2 to be marked as done. This means that you

Re: Fwd: Bug#647563: laptop-mode-tools: incompatible with linux 3.0 and later

2012-01-12 Thread Adam D. Barratt
On Mon, 2012-01-09 at 12:25 +0530, Ritesh Raj Sarraf wrote: I'd like the release team's view on this request. I think this is a fair request. If there is agreement, I will work on this for Squeeze. [...] laptop-mode-tools in squeeze has various tests for a kernel version that begins with 2.6,

Re: slbackup - config-file typo which prevents slbackup from running

2012-01-12 Thread Adam D. Barratt
On Mon, 2012-01-09 at 06:32 +0100, Morten Werner Forsbring wrote: I have recently fixed a bug [1] in slbackup which prevents it from running due to a typo in a config-file. The diff is minimal (attached), and I have prepared a package for squeeze-proposed-updates [2]. [...] +slbackup

Bug#649173: pu: package nss-pam-ldapd/0.7.16

2012-01-12 Thread Julien Cristau
Hi Arthur, On Fri, Nov 18, 2011 at 15:08:16 +0100, Arthur de Jong wrote: [...] diff -Nru nss-pam-ldapd-0.7.15/debian/libnss-ldapd.config nss-pam-ldapd-0.7.16/debian/libnss-ldapd.config --- nss-pam-ldapd-0.7.15/debian/libnss-ldapd.config 2010-09-24 09:07:12.0 +0200 +++

Re: Proposed stable update: nginx

2012-01-12 Thread Julien Cristau
On Wed, Nov 23, 2011 at 14:04:54 +0530, Kartik Mistry wrote: Dear Release team, Security team has recently identify possible security issue [0] in Stable release for nginx which only affects Stable release for Debian [1]. It is suggested by Security team member that issue can be better

Re: Proposed update to python-debian

2012-01-12 Thread Adam D. Barratt
On Tue, 2012-01-03 at 19:08 +, Adam D. Barratt wrote: On Mon, 2012-01-02 at 16:07 -0700, John Wright wrote: I use git format-patch, and forgot to move the patch out of the way before building the source package. Should I just upload a re-generated source package without the patch

Re: [SRM] pure-ftpd upload for CVE-2011-1575

2012-01-12 Thread Julien Cristau
On Sun, Dec 25, 2011 at 17:45:42 +0100, Moritz Mühlenhoff wrote: Hi, fix for CVE-2011-1575 in stable. There's some config.log leftovers from the buildsystem in the debdiff, dunno where that comes from. The security fix has been isolated from the 1.0.30 release. Hi Moritz, a package without

Bug#653757: pu: package nfs-utils/1:1.2.2-4squeeze2

2012-01-12 Thread Adam D. Barratt
tag 653757 + squeeze confirmed thanks On Fri, 2011-12-30 at 19:10 +0100, Luk Claes wrote: This version fixes a security issue which the Security Team evaluated as not warranting a DSA. Attached the diff of the proposed upload. +nfs-utils (1:1.2.2-4squeeze2) stable; urgency=high + + * Fix

Processed: Re: Bug#653757: pu: package nfs-utils/1:1.2.2-4squeeze2

2012-01-12 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: tag 653757 + squeeze confirmed Bug #653757 [release.debian.org] pu: package nfs-utils/1:1.2.2-4squeeze2 Added tag(s) squeeze and confirmed. thanks Stopping processing here. Please contact me if you need assistance. -- 653757:

Re: Bug#652653: python-virtualenv: insecure /tmp file handling

2012-01-12 Thread Adam D. Barratt
On Tue, 2011-12-20 at 20:18 +, Adam D. Barratt wrote: On Tue, 2011-12-20 at 09:44 +0100, Piotr Ożarowski wrote: [Adam D. Barratt, 2011-12-19] Looking at the diff, and the equivalent code in the unstable package, there seems to be a missing component - namely, that the directory

Bug#653757: pu: package nfs-utils/1:1.2.2-4squeeze2

2012-01-12 Thread Luk Claes
On 01/12/2012 10:13 PM, Adam D. Barratt wrote: tag 653757 + squeeze confirmed thanks On Fri, 2011-12-30 at 19:10 +0100, Luk Claes wrote: This version fixes a security issue which the Security Team evaluated as not warranting a DSA. Attached the diff of the proposed upload. +nfs-utils

Bug#654384: pu: package libmtp/1.0.3-1+squeeze1

2012-01-12 Thread Adam D. Barratt
tag 654384 + squeeze confirmed thanks On Tue, 2012-01-03 at 11:26 +0100, Alessio Treglia wrote: I'd like to update libmtp 1.0.3 in Squeeze to add support for Motorola Xoom devices, please see bug#650152. Assuming a sensibly finalised changelog, please go ahead; thanks. Regards, Adam --

Processed: Re: Bug#654384: pu: package libmtp/1.0.3-1+squeeze1

2012-01-12 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: tag 654384 + squeeze confirmed Bug #654384 [release.debian.org] pu: package libmtp/1.0.3-1+squeeze1 Added tag(s) squeeze and confirmed. thanks Stopping processing here. Please contact me if you need assistance. -- 654384:

Bug#654972: pu: package bugzilla/3.6.2.0-4.5

2012-01-12 Thread Adam D. Barratt
tag 654972 + squeeze confirmed thanks On Sat, 2012-01-07 at 14:40 +, Jonathan Wiltshire wrote: bugzilla had another two security updates that we should consider for stable, they are no-dsa. Debdiff attached, the unconventional version is a historical relic. Please go ahead; thanks.

Processed: Re: Bug#654972: pu: package bugzilla/3.6.2.0-4.5

2012-01-12 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: tag 654972 + squeeze confirmed Bug #654972 [release.debian.org] pu: package bugzilla/3.6.2.0-4.5 Added tag(s) squeeze and confirmed. thanks Stopping processing here. Please contact me if you need assistance. -- 654972:

Re: Proposed upload of tinyproxy to stable

2012-01-12 Thread Adam D. Barratt
On Mon, 2012-01-02 at 16:47 +0100, Jordi Mallach wrote: In response to #627503, I had prepared a stable-security upload of tinyproxy to address this issue. After discussing with jmm, we're discarding doing a DSA for this issue as an exploit can't happen if an attacker doesn't control the

Re: perl update for squeeze

2012-01-12 Thread Adam D. Barratt
On Tue, 2011-12-20 at 11:04 +, Dominic Hargreaves wrote: On Mon, Dec 19, 2011 at 11:19:03PM +, Adam D. Barratt wrote: + * [SECURITY] CVE-2011-2939: Fix decode_xs n-byte heap-overflow security +bug in Unicode.xs (Closes: #637376) + * [SECURITY] CVE-2011-3597: Fix unsafe use of

Re: Bugfix for #646434 in Squeeze?

2012-01-12 Thread Adam D. Barratt
On Wed, 2011-11-09 at 21:08 +, Adam D. Barratt wrote: On Sat, 2011-11-05 at 08:51 +0100, Bernd Zeimetz wrote: On 11/04/2011 08:08 PM, Adam D. Barratt wrote: On Fri, 2011-11-04 at 18:57 +0100, Bernd Zeimetz wrote: Unfortunately there is a bug (#646434) in the Python bindings which

Re: Bug#631912: pidfile in /tmp, opened insecurely [CVE-2011-2765]

2012-01-12 Thread Adam D. Barratt
On Sat, 2011-09-03 at 00:07 +0100, Jonathan Wiltshire wrote: On Wed, Aug 24, 2011 at 08:03:16PM +0100, Adam D. Barratt wrote: On Wed, 2011-08-24 at 14:32 -0400, Obey Arthur Liu wrote: On Wed, Aug 24, 2011 at 5:27 AM, Jonathan Wiltshire j...@debian.org wrote: Thanks for working on this.

Bug#630251: patch for proposed updates / rdesktop sometimes fails to transfer files from win2k8

2012-01-12 Thread Adam D. Barratt
On Fri, 2011-08-26 at 18:11 -0500, Jonathan Nieder wrote: Laszlo Boszormenyi wrote: On Mon, 2011-06-13 at 20:48 +0100, Adam D. Barratt wrote: This is nearly, but not quite, the same as the corresponding code in the current rdesktop package in unstable. Other than the printf(), the

Re: Inadequate source of entropy in recursive queries: maradns

2012-01-12 Thread Julien Cristau
On Sun, Jan 1, 2012 at 17:52:21 +, Nicholas Bamber wrote: Julien, The attached file is a debdiff for 1.4.03-1.1 - 1.4.03-1.2. I have not run an FTBS test on it but I wanted to know if I was on the right lines. Looks basically ok, there's a couple oddities but I guess they're that

Re: Proposed stable update for procps

2012-01-12 Thread Adam D. Barratt
On Wed, 2011-08-03 at 19:44 +0100, Adam D. Barratt wrote: On Wed, 2011-08-03 at 20:21 +0200, Christian Hofstaedtler wrote: * Adam D. Barratt a...@adam-barratt.org.uk [110803 19:50]: I'd be happy with the fix for #632749, certainly. What's the practical impact of #635553? Particularly

Re: Updating libcgicc in stable to fix #600943

2012-01-12 Thread Adam D. Barratt
On Sat, 2011-11-05 at 14:43 +, Adam D. Barratt wrote: On Tue, 2011-10-18 at 00:23 +0100, Chris Butler wrote: I've had a request in #645616, asking if I can update the libcgicc package to fix bug #600943 in squeeze. The bug is fairly trivial; the .pc file for pkg-config is installed in

Bug#639676: pu: package pbuilder/0.199+nmu1

2012-01-12 Thread Julien Cristau
On Tue, Sep 20, 2011 at 19:50:20 +0100, Adam D. Barratt wrote: In which case, please go ahead. Uploaded. Sorry for the delay. Cheers, Julien signature.asc Description: Digital signature

Re: Bug#653838: Inadequate source of entropy in recursive queries: maradns

2012-01-12 Thread Nicholas Bamber
Julien, Comments below. What is the next step? On 12/01/12 21:40, Julien Cristau wrote: On Sun, Jan 1, 2012 at 17:52:21 +, Nicholas Bamber wrote: Julien, The attached file is a debdiff for 1.4.03-1.1 - 1.4.03-1.2. I have not run an FTBS test on it but I wanted to know if I

Re: Another haskell hint

2012-01-12 Thread Joachim Breitner
Hi, Am Dienstag, den 10.01.2012, 21:30 +0100 schrieb Philipp Kern: On Sun, Jan 08, 2012 at 10:40:03PM +0100, Joachim Breitner wrote: here is another hint that britney2 seemingly did not detect by itself: added to my hint file. Thanks. thanks, here is another one: easy

Processed: block 655074 with 655657

2012-01-12 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: block 655074 with 655657 Bug #655074 [release.debian.org] transition: audiofile Was not blocked by any bugs. Added blocking bug(s) of 655074: 655657 thanks Stopping processing here. Please contact me if you need assistance. -- 655074:

Bug#655074: transition: audiofile

2012-01-12 Thread Alessio Treglia
On Wed, Jan 11, 2012 at 11:51 AM, Niels Thykier ni...@thykier.net wrote:  kwave                  (failed, not due to the transition) There are no reported FTBFS bugs against this, so please file a bug and mark it as a blocker of this bug. Done. -- Alessio Treglia          |

Bug#654442: pu: package erlang/14.a-dfsg-3squeeze1

2012-01-12 Thread Sergei Golovan
On Fri, Jan 13, 2012 at 12:15 AM, Julien Cristau jcris...@debian.org wrote: On Tue, Jan  3, 2012 at 22:49:33 +0400, Sergei Golovan wrote: ++    bn_rand = BN_new(); ++    if (! bn_rand ) { ++        return enif_make_badarg(env); badarg seems a bit weird here, it's got nothing to do with its

Re: Proposed stable update: nginx

2012-01-12 Thread Kartik Mistry
On Fri, Jan 13, 2012 at 2:44 AM, Julien Cristau jcris...@debian.org wrote: Security team has recently identify possible security issue [0] in Stable release for nginx which only affects Stable release for Debian [1]. It is suggested by Security team member that issue can be better fixed by