Re: [ptxdist] [PATCH] file: upgrade to 5.17

2014-03-12 Thread Alexander Dahl
What about this one? Greets Alex On Mon, Feb 17, 2014 at 09:09:05AM +0100, Alexander Dahl wrote: Version 5.17 fixes CVE-2014-1943. See: https://security-tracker.debian.org/tracker/CVE-2014-1943 Signed-off-by: Alexander Dahl p...@lespocky.de --- rules/file.make |4 ++-- 1 file

Re: [ptxdist] [PATCH] file: upgrade to 5.17

2014-03-12 Thread Alexander Dahl
Hei hei, On Wed, Mar 12, 2014 at 08:22:37AM +0100, Alexander Dahl wrote: What about this one? Only minutes later a new debian package appeared fixing CVE-2014-2270. I'll have a look into this, stay tuned. Alex -- »With the first link, the chain is forged. The first speech censured, the

Re: [ptxdist] ptxdist-2012.03.00 python2.6, hashlib.py, flup.py install fails ImportError: No module named _sha256

2014-03-12 Thread Juergen Beisert
Hi, On Tuesday 11 March 2014 23:39:42 jdwilson wrote: [...] I have successfully built a target image that includes python2.6 and lighttpd which is part of ptxdist-2012.03.00. The intent was to use flup.py to provide fastcgi, wsgi capability. (This works in my dev env, under Ubuntu 12.04 LTS,

[ptxdist] [PATCH 2/2] file: add security patches cherry-picked from upstream

2014-03-12 Thread Alexander Dahl
Signed-off-by: Alexander Dahl p...@lespocky.de --- .../0001-Fix-memory-leak-Anatol-Belski.patch | 34 ...-in-out-of-bounds-calculations-Jan-Kaluza.patch | 23 + patches/file-5.17/series |5 +++ 3 files changed, 62

[ptxdist] [PATCH 1/2] file: upgrade to 5.17

2014-03-12 Thread Alexander Dahl
Version 5.17 fixes CVE-2014-1943. See: https://security-tracker.debian.org/tracker/CVE-2014-1943 Signed-off-by: Alexander Dahl p...@lespocky.de --- rules/file.make |4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/rules/file.make b/rules/file.make index 172037d..000fd13