[E-devel] Windows API & Theme changes

2016-11-22 Thread Jean-Philippe André
Hello everyone, First of all, sorry to send this mail after pushing my changes, rather than before. But I prefer spotting issues and fixing them rather than having to worry about everything during the design & implementation phase. I have been working on a new interface for the Window API, and

Re: [E-devel] Fwd: [oss-security] Re: CVE request: Escape Sequence Command Execution vulnerability in Terminology 0.7

2016-11-22 Thread The Rasterman
On Tue, 22 Nov 2016 19:22:54 -0500 Ross Vandegrift said: > On Wed, Nov 23, 2016 at 07:42:39AM +0900, Carsten Haitzler wrote: > > if you don't upgrade efl, i guarantee you have security exploit > > possibilities in various image loaders in efl. so if you care about > > security

Re: [E-devel] EGIT emails down?

2016-11-22 Thread Michael Blumenkrantz
On Wed, 23 Nov 2016 00:03:27 -0200 Gustavo Sverzut Barbieri wrote: > Hi all, > > I'm not receiving any commit emails from EGIT, what's happening? > Also nothing from phab since Friday... --

[E-devel] EGIT emails down?

2016-11-22 Thread Gustavo Sverzut Barbieri
Hi all, I'm not receiving any commit emails from EGIT, what's happening? -- Gustavo Sverzut Barbieri -- Mobile: +55 (16) 99354-9890 -- ___

Re: [E-devel] Fwd: [oss-security] Re: CVE request: Escape Sequence Command Execution vulnerability in Terminology 0.7

2016-11-22 Thread Ross Vandegrift
On Wed, Nov 23, 2016 at 07:42:39AM +0900, Carsten Haitzler wrote: > if you don't upgrade efl, i guarantee you have security exploit possibilities > in various image loaders in efl. so if you care about security you won't do > this "let's backport just to fix this cve" and actually upgrade. :)

Re: [E-devel] Fwd: [oss-security] Re: CVE request: Escape Sequence Command Execution vulnerability in Terminology 0.7

2016-11-22 Thread Ross Vandegrift
On Tue, Nov 22, 2016 at 06:41:43PM +0100, Boris Faure wrote: > EFL 1.8 is pretty old. I stopped caring about so old versions. I figured - that's why I didn't report a bug. > Do you have a plan to update EFL? Yes, but it'll take some time before it's available in unstable. Details:

Re: [E-devel] [RFC] Ecore_Getopt STORE_DEF_* is strange

2016-11-22 Thread Gustavo Sverzut Barbieri
On Tue, Nov 22, 2016 at 7:33 PM, Jean Guyomarc'h wrote: >>> Maybe I didn't understand correctly what you meant, but adding a new >>> field in Ecore_Getopt_Desc_Arg_Requirement (which btw, I don't see how >>> it would be ORed, as nothing in this enum can be meaningfully

Re: [E-devel] Fwd: [oss-security] Re: CVE request: Escape Sequence Command Execution vulnerability in Terminology 0.7

2016-11-22 Thread The Rasterman
On Tue, 22 Nov 2016 09:00:56 -0500 Ross Vandegrift said: > On Wed, Nov 09, 2016 at 11:17:55PM +0100, Boris Faure wrote: > > > > https://git.enlightenment.org/apps/terminology.git/commit/?id=b80bedc7c21ecffe99d8d142930db696eebdd6a5 > > > >> src/bin/termptyesc.c > > > > > > Use

Re: [E-devel] [RFC] Ecore_Getopt STORE_DEF_* is strange

2016-11-22 Thread Jean Guyomarc'h
>> Maybe I didn't understand correctly what you meant, but adding a new >> field in Ecore_Getopt_Desc_Arg_Requirement (which btw, I don't see how >> it would be ORed, as nothing in this enum can be meaningfully OR'ed, >> because the existing values are 0, 1 and 3) > > that mean you have many spare

Re: [E-devel] Fwd: [oss-security] Re: CVE request: Escape Sequence Command Execution vulnerability in Terminology 0.7

2016-11-22 Thread Boris Faure
On 16-11-22 09:00, Ross Vandegrift wrote: > On Wed, Nov 09, 2016 at 11:17:55PM +0100, Boris Faure wrote: > > > > https://git.enlightenment.org/apps/terminology.git/commit/?id=b80bedc7c21ecffe99d8d142930db696eebdd6a5 > > > >> src/bin/termptyesc.c > > > > > > Use CVE-2015-8971. > > > > For those

[E-devel] Open Coveritty isues in efl

2016-11-22 Thread Stefan Schmidt
Hello. Here is a break down of the open Coverity issues we have in efl. In total we have 86 issues open. I tried to categorize them a bit and list the bigger groups here: Evas: (Raster, Jpeg, Cedric could you have a look?) 1365656 Resource leak 1361430 Argument cannot be negative 1362734

Re: [E-devel] Fwd: [oss-security] Re: CVE request: Escape Sequence Command Execution vulnerability in Terminology 0.7

2016-11-22 Thread Ross Vandegrift
On Wed, Nov 09, 2016 at 11:17:55PM +0100, Boris Faure wrote: > > > https://git.enlightenment.org/apps/terminology.git/commit/?id=b80bedc7c21ecffe99d8d142930db696eebdd6a5 > > >> src/bin/termptyesc.c > > > > Use CVE-2015-8971. > > For those who wonder, this issue has been fixed in Terminology

[E-devel] Upcoming efl 1.18.3 release

2016-11-22 Thread Stefan Schmidt
Hello. Some patches pilled up in the efl-1.18 branch and people asked for a new release so I plan to do one end of the week. If you have anything else pending for a backport please do so until Wednesday evening in your timezone. I will prepare pre-release tarballs on Thursday and if nothing