Bug#697617: jenkins: remote code execution vulnerability

2013-03-01 Thread Salvatore Bonaccorso
Hi On Tue, Jan 08, 2013 at 02:06:39AM +0900, Nobuhiro Ban wrote: > Package: jenkins > Version: 1.447.2+dfsg-2 > Severity: grave > Tags: security > > Dear Maintainer, > > The upstream vendor announced a security advisory, that is rated > critical severity. > > See: > https://wiki.jenkins-ci.org

Bug#635964: Version update and java dependency

2013-03-01 Thread Steffen Möller
Dear Jörg-Volker, > > meanwhile version 2.2.2 is available. Also, the dependency on java could > be > expanded to include openjdk-7-jre. Even pdfsam 1.1.4-2 works with > openjdk-7-jre > 7u15-2.3.7-1 from experimental. > Within limits, I can try to help if you tell me how. I found version 2.x diff

Bug#635964: Version update and java dependency

2013-03-01 Thread Jörg-Volker Peetz
Dear Steffen, dear maintainers, meanwhile version 2.2.2 is available. Also, the dependency on java could be expanded to include openjdk-7-jre. Even pdfsam 1.1.4-2 works with openjdk-7-jre 7u15-2.3.7-1 from experimental. Within limits, I can try to help if you tell me how. Best regards, Jörg-Volke

Processed: Re: Bug#701991: maven3: CVE-2013-0253

2013-03-01 Thread Debian Bug Tracking System
Processing control commands: > reassign -1 src:maven Bug #701991 [maven3] maven3: CVE-2013-0253 Warning: Unknown package 'maven3' Bug reassigned from package 'maven3' to 'src:maven'. Ignoring request to alter found versions of bug #701991 to the same values previously set Ignoring request to alte