[bts-link] source package src:libjtype-java

2014-12-29 Thread bts-link-upstream
# # bts-link upstream status pull for source package src:libjtype-java # see http://lists.debian.org/debian-devel-announce/2006/05/msg1.html # user bts-link-upstr...@lists.alioth.debian.org # remote status report for #751526 (http://bugs.debian.org/751526) # Bug title: libjtype-java: FTBFS

Bug#758086: CVE-2012-6153: Apache HttpComponents client: Hostname verification susceptible to MITM attack

2014-12-29 Thread Moritz Mühlenhoff
On Mon, Sep 22, 2014 at 03:56:00PM +0200, Raphael Hertzog wrote: Hi, On Mon, 18 Aug 2014, Salvatore Bonaccorso wrote: On Thu, Aug 14, 2014 at 11:43:32PM +0200, Emmanuel Bourg wrote: Is there an example available somewhere of a subject improperly parsed by commons-httpclient/3.1-10.2?

Bug#764630: RFS: javatools 0.48 [RC]

2014-12-29 Thread Markus Koschany
On Sun, 21. Dec 09:57 tony mancill tmanc...@debian.org wrote: On 12/15/2014 12:06 AM, Mathieu Malaterre wrote: On Sun, Dec 14, 2014 at 6:50 PM, Markus Koschany a...@gambaru.de wrote: [...] Actually what was the reasoning behind the choice to use a custom shell script like jarwrapper

Re: tomcat6 DSA for wheezy

2014-12-29 Thread Moritz Mühlenhoff
On Mon, Dec 15, 2014 at 04:23:30PM +0100, Holger Levsen wrote: Hi, This update itself fixes no security issues but is needed for libtcnative-1 users as version 1.1.20 from Squeeze does not work with tomcat6 6.0.41 from Squeeze LTS. Do we also need to update tomcat-native in wheezy or is