On 28.01.2012 18:31, Adam D. Barratt wrote: > On Sat, 2012-01-28 at 17:10 +0100, Julian Andres Klode wrote: >> It seems that the DSA 2319-1 security update for policykit-1 was not >> copied into squeeze-proposed-updates: >> >> policykit-1 | 0.96-4 | squeeze | source, amd64, armel, >> i386, ia64, kfreebsd-amd64, kfreebsd-i386, mips, mipsel, powerpc, s390, sparc >> policykit-1 | 0.96-4+squeeze1 | squeeze-security | source, amd64, armel, >> i386, ia64, kfreebsd-amd64, kfreebsd-i386, mips, mipsel, powerpc, s390, sparc >> >> The fix was made on October 8, 2011. > > As was mentioned on IRC, and for the record, this is because the version > on security.d.o was built against an .orig tarball that doesn't match > the version in the main archive, so it was rejected as soon as it hit > ftp-master.
Sorry again for this mess. Would the stable release team be ok with a no-changes upload of 0.96-4+squeeze1 to stable (as 0.96-4+squeeze2)? debdiff attached. Cheers, Michael -- Why is it that all of the instruments seeking intelligent life in the universe are pointed away from Earth?
diff --git a/debian/changelog b/debian/changelog index 982e895..6cb2e57 100644 --- a/debian/changelog +++ b/debian/changelog @@ -1,3 +1,13 @@ +policykit-1 (0.96-4+squeeze2) stable; urgency=low + + * Upload 0.96-4+squeeze1 to stable without further changes. The + 0.96-4+squeeze1 upload to stable-security was mistakenly made with an orig + tarball which didn't match the one from ftp-master so the security fix was + not automatically included in the next stable point release. + (Closes: #657758) + + -- Michael Biebl <bi...@debian.org> Sat, 28 Jan 2012 22:31:09 +0100 + policykit-1 (0.96-4+squeeze1) stable-security; urgency=high * debian/patches/02_proc_pid_race.patch
signature.asc
Description: OpenPGP digital signature