Processed: Merging bugs
Processing commands for cont...@bugs.debian.org: > # 552846 is the same of 554587, which I closed with an upload > reassign 554587 src:gmrun Bug #554587 {Done: David Paleino } [gmrun] gmrun_0.9.1-3(ia64/unstable): FTBFS: compiler errors Bug reassigned from package 'gmrun' to 'src:gmrun'. Bug No longer marked as found in versions gmrun/0.9.1-3. Bug No longer marked as fixed in versions gmrun/0.9.1-4. > forcemerge 554587 552846 Bug#554587: gmrun_0.9.1-3(ia64/unstable): FTBFS: compiler errors Bug#552846: gmrun: FTBFS: gtkcompletionline.cc:406: error: invalid conversion from 'int (*)(const void*, const void*)' to 'int (*)(const dirent**, const dirent**)' Forcibly Merged 552846 554587. > thanks Stopping processing here. Please contact me if you need assistance. Debian bug tracking system administrator (administrator, Debian Bugs database) -- To UNSUBSCRIBE, email to debian-qa-packages-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org
Processing of xlog_2.0.3-2_i386.changes
xlog_2.0.3-2_i386.changes uploaded successfully to localhost along with the files: xlog_2.0.3-2.dsc xlog_2.0.3-2.diff.gz xlog-data_2.0.3-2_all.deb xlog_2.0.3-2_i386.deb Greetings, Your Debian queue daemon (running on host ries.debian.org) -- To UNSUBSCRIBE, email to debian-qa-packages-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org
Bug#555610: wvdial: Doesn't connect with option modem after upgrading to 1.60.3
Package: wvdial Version: 1.60.3 Severity: important After automatic upgrade to 1.60.3. Following is an extract of /var/log/messages: pppd[2977]: pppd 2.4.4 started by root, uid 0 pppd[2977]: speed 1048576 not supported pppd[2977]: Using interface ppp0 pppd[2977]: Connect: ppp0 <--> /dev/ttyUSB0 pppd[2977]: CHAP authentication succeeded pppd[2977]: CHAP authentication succeeded pppd[2977]: Modem hangup pppd[2977]: Connection terminated. pppd[2977]: Exit. -- System Information: Debian Release: squeeze/sid APT prefers unstable APT policy: (500, 'unstable'), (500, 'stable') Architecture: amd64 (x86_64) Kernel: Linux 2.6.30-2-amd64 (SMP w/2 CPU cores) Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8) Shell: /bin/sh linked to /bin/bash Versions of packages wvdial depends on: ii debconf [debconf-2.0] 1.5.28Debian configuration management sy ii libc6 2.10.1-6 GNU C Library: Shared libraries ii libuniconf4.6 4.6.1-1 C++ network libraries for rapid ap ii libwvstreams4.6-base 4.6.1-1 C++ network libraries for rapid ap ii libwvstreams4.6-extras 4.6.1-1 C++ network libraries for rapid ap ii ppp2.4.4rel-10.1 Point-to-Point Protocol (PPP) - da wvdial recommends no packages. wvdial suggests no packages. -- debconf information excluded -- To UNSUBSCRIBE, email to debian-qa-packages-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org
Processing of otrs2_2.3.4-6_amd64.changes
otrs2_2.3.4-6_amd64.changes uploaded successfully to localhost along with the files: otrs2_2.3.4-6.dsc otrs2_2.3.4-6.diff.gz otrs2_2.3.4-6_all.deb Greetings, Your Debian queue daemon (running on host ries.debian.org) -- To UNSUBSCRIBE, email to debian-qa-packages-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org
Bug#555266: marked as done (otrs2: CVE-2007-2383 and CVE-2008-7720 prototypejs vulnerabilities)
Your message dated Tue, 10 Nov 2009 19:47:59 + with message-id and subject line Bug#555266: fixed in otrs2 2.3.4-6 has caused the Debian Bug report #555266, regarding otrs2: CVE-2007-2383 and CVE-2008-7720 prototypejs vulnerabilities to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what this message is talking about, this may indicate a serious mail system misconfiguration somewhere. Please contact ow...@bugs.debian.org immediately.) -- 555266: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=555266 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems --- Begin Message --- package: otrs2 version: 2.3.4-5 severity: serious tags: security Hi, Your package contains an embedded version of prototype.js that is vulnerable to either CVE-2007-2383 (affecting prototype.js before 1.5.1) [0], CVE-2008-7220 (affecting prototype.js before 1.6.0.2) [1], or both. Your package embeds the following prototype.js versions: sid: 1.5.1 lenny: N/A etch: N/A This is a mass-filing, and the only checking done so far is a version comparison, so please determine whether or not your package is itself affected or not. If it is not affected please close the bug with a message indicating this along with what you did to check. The version of your package specified above is the earliest version with the affected embedded code. If this version is in one or both of the stable releases and you are affected, please coordinate with the release team to prepare a proposed-update for your package to stable/oldstable. There are patches available for CVE-2007-2383 [2] and a backport for prototypejs 1.5 for CVE-2008-7720 [3]. If you correct the problem in unstable, please make sure to include the CVE number in your changelog. Thank you for your attention to this problem. Mike [0] http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2383 [1] http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-7220 [2] http://dev.rubyonrails.org/ticket/7910 [3] http://prototypejs.org/2008/1/25/prototype-1-6-0-2-bug-fixes-performance-improvements-and-security --- End Message --- --- Begin Message --- Source: otrs2 Source-Version: 2.3.4-6 We believe that the bug you reported is fixed in the latest version of otrs2, which is due to be installed in the Debian FTP archive: otrs2_2.3.4-6.diff.gz to main/o/otrs2/otrs2_2.3.4-6.diff.gz otrs2_2.3.4-6.dsc to main/o/otrs2/otrs2_2.3.4-6.dsc otrs2_2.3.4-6_all.deb to main/o/otrs2/otrs2_2.3.4-6_all.deb A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to 555...@bugs.debian.org, and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Patrick Matthäi (supplier of updated otrs2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing ftpmas...@debian.org) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.8 Date: Tue, 10 Nov 2009 20:14:00 +0100 Source: otrs2 Binary: otrs2 Architecture: source all Version: 2.3.4-6 Distribution: unstable Urgency: high Maintainer: Debian QA Group Changed-By: Patrick Matthäi Description: otrs2 - Open Ticket Request System Closes: 555266 555267 Changes: otrs2 (2.3.4-6) unstable; urgency=high . * QA upload. * Do not use the embedded copy of prototype.js anymore. Closes: #555267 - This also fixes CVE-2007-2383 and CVE-2008-7220. Closes: #555266 Checksums-Sha1: 2b14c97dc29fca0db3232922fd3f03176b666f9d 1131 otrs2_2.3.4-6.dsc 3db6e7f962130553fa273c77dfbd97f456f67128 23288 otrs2_2.3.4-6.diff.gz e0307d2962a945cebe3b85548e4c709c519b7e8f 2566880 otrs2_2.3.4-6_all.deb Checksums-Sha256: 818b951d95b3955197d4df463c59c70fde9ee60eadc79333b6f22d0937df3da1 1131 otrs2_2.3.4-6.dsc 69dd0816128a5a7b129926422337b2a0d93f9a76c5035a8184534712e111b834 23288 otrs2_2.3.4-6.diff.gz 3a0f61b4ed20dbb3768cd6b98a4bb58b7ea8360b8085b525d873df94ab64e90c 2566880 otrs2_2.3.4-6_all.deb Files: 81c88f7213e882fa3b800284fa8dfc72 1131 web optional otrs2_2.3.4-6.dsc 68ff896f9840f59d1a41ebf28a94eb2d 23288 web optional otrs2_2.3.4-6.diff.gz bc6d4eb2d6a8da5b3f2e1fd615123c99 2566880 web optional otrs2_2.3.4-6_all.deb -BEGIN PGP SIGNATURE- Version: GnuPG v1.4.10 (GNU/Linux) iEYEARECAAYFAkr5vwYACgkQ2XA5inpabMfaRACfalFRCkbW64o3mP5jZCvpD8hW AQUAoKjbJD01+2DPcYcYqWNVxa9UlH2T =7Y7O -END PGP SIGNATURE- --- End Message ---
Bug#555267: marked as done (otrs2: embeds prototype.js)
Your message dated Tue, 10 Nov 2009 19:47:59 + with message-id and subject line Bug#555267: fixed in otrs2 2.3.4-6 has caused the Debian Bug report #555267, regarding otrs2: embeds prototype.js to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what this message is talking about, this may indicate a serious mail system misconfiguration somewhere. Please contact ow...@bugs.debian.org immediately.) -- 555267: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=555267 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems --- Begin Message --- package: otrs2 version: 2.3.4-5 severity: important tags: security Hi, Your package embeds prototype.js, which makes security updates very cumbersome, difficult, and potentially error-prone. Please update your package to make use of the system prototype.js provided by the libjs-prototype binary package. This is a mass-filing, and the only checking done so far is a version comparison. If your package for some reason is not affected or already uses the system prototype.js, please close this bug with a message indicating that that is the case. Thank you very much for your attention on this matter. Mike --- End Message --- --- Begin Message --- Source: otrs2 Source-Version: 2.3.4-6 We believe that the bug you reported is fixed in the latest version of otrs2, which is due to be installed in the Debian FTP archive: otrs2_2.3.4-6.diff.gz to main/o/otrs2/otrs2_2.3.4-6.diff.gz otrs2_2.3.4-6.dsc to main/o/otrs2/otrs2_2.3.4-6.dsc otrs2_2.3.4-6_all.deb to main/o/otrs2/otrs2_2.3.4-6_all.deb A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to 555...@bugs.debian.org, and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Patrick Matthäi (supplier of updated otrs2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing ftpmas...@debian.org) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.8 Date: Tue, 10 Nov 2009 20:14:00 +0100 Source: otrs2 Binary: otrs2 Architecture: source all Version: 2.3.4-6 Distribution: unstable Urgency: high Maintainer: Debian QA Group Changed-By: Patrick Matthäi Description: otrs2 - Open Ticket Request System Closes: 555266 555267 Changes: otrs2 (2.3.4-6) unstable; urgency=high . * QA upload. * Do not use the embedded copy of prototype.js anymore. Closes: #555267 - This also fixes CVE-2007-2383 and CVE-2008-7220. Closes: #555266 Checksums-Sha1: 2b14c97dc29fca0db3232922fd3f03176b666f9d 1131 otrs2_2.3.4-6.dsc 3db6e7f962130553fa273c77dfbd97f456f67128 23288 otrs2_2.3.4-6.diff.gz e0307d2962a945cebe3b85548e4c709c519b7e8f 2566880 otrs2_2.3.4-6_all.deb Checksums-Sha256: 818b951d95b3955197d4df463c59c70fde9ee60eadc79333b6f22d0937df3da1 1131 otrs2_2.3.4-6.dsc 69dd0816128a5a7b129926422337b2a0d93f9a76c5035a8184534712e111b834 23288 otrs2_2.3.4-6.diff.gz 3a0f61b4ed20dbb3768cd6b98a4bb58b7ea8360b8085b525d873df94ab64e90c 2566880 otrs2_2.3.4-6_all.deb Files: 81c88f7213e882fa3b800284fa8dfc72 1131 web optional otrs2_2.3.4-6.dsc 68ff896f9840f59d1a41ebf28a94eb2d 23288 web optional otrs2_2.3.4-6.diff.gz bc6d4eb2d6a8da5b3f2e1fd615123c99 2566880 web optional otrs2_2.3.4-6_all.deb -BEGIN PGP SIGNATURE- Version: GnuPG v1.4.10 (GNU/Linux) iEYEARECAAYFAkr5vwYACgkQ2XA5inpabMfaRACfalFRCkbW64o3mP5jZCvpD8hW AQUAoKjbJD01+2DPcYcYqWNVxa9UlH2T =7Y7O -END PGP SIGNATURE- --- End Message ---
Bug#543465: (hamlib_1.2.9-1/avr32): FTBFS: Outdated config.{sub,guess}
Hi, Bug #543465 should be fixed by upstream version 1.2.10 of Hamlib. The version 1.2.10 was built with automake-1.11: GNU config.guess/sub (2009-04-27) Regards -- Stephane - F8CFE Tue, Aug 25, 2009 at 08:37:59AM +0100, bradsm...@debian.org wrote: > Package: hamlib > Version: 1.2.9-1 > Severity: wishlist > User: bradsm...@debian.org > Usertags: avr32 > > Hi, > > Whilst building your package on AVR32, the build failed due to outdated > config.{sub,guess} files. > > Full build logs available: > > http://buildd.debian-ports.org/build.php?pkg=hamlib&arch=avr32&ver=1.2.9-1 > > Regards, > Bradley Smith > > -- > Bradley Smith b...@brad-smith.co.uk > Debian GNU/Linux Developer bradsm...@debian.org > GPG: 0xC718D347 D201 7274 2FE1 A92A C45C EFAB 8F70 629A C718 D347 > > > -- To UNSUBSCRIBE, email to debian-qa-packages-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org
Bug#555467: Patch ready
Notice this is addressed in http://mentors.debian.net/debian/pool/main/g/gmanedit/gmanedit_0.4.2-3.dsc , but since gmanedit, though orphaned, has an Uploader (and for instance Lintian complains about that), I wrote him to ask for clarifications and/or the upload. Pietro signature.asc Description: Questa è una parte del messaggio firmata digitalmente