Bug#802702: CVE-2011-5325: busybox: Directory traversal via crafted tar file which contains a symlink pointing outside of the current directory

2016-09-29 Thread Petter Reinholdtsen
For the record, this issue is still flagged as unsolved upstream. :( No activity in the bug tracker there since 2015 when Chris added the last comment. -- Happy hacking Petter Reinholdtsen

Re: netcfg: supposed to use use_autoconfig, or disable_autoconfig? [Was: Bug#838948: [patch] preseed appendix of d-i manual: use_autoconfig]

2016-09-29 Thread Samuel Thibault
Hello, Hopefully a netcfg hacker will read this? Vincent McIntyre, on Tue 27 Sep 2016 10:38:03 +1000, wrote: > For some years the disable_autoconfig preseed has been shown > in the appendix on preseeding. However setting that just sets > use_autoconfig appropriately. Yet use_autoconfig is not eve

Bug#838919: Proposed documentation, please comment! [was Re: Bug#838919: debian-installer: please calculate swap parition according to max RAM...]

2016-09-29 Thread Nicholas D Steeves
On Thu, Sep 29, 2016 at 02:51:24PM +0300, Martin-Éric Racine wrote: > 2016-09-29 14:15 GMT+03:00 Ben Hutchings : > > On Wed, 2016-09-28 at 16:20 +0300, Martin-Éric Racine wrote: > > [...] > >> The thing is, right now, the user has two choices: > >> > >> 1) Trust d-i to make the right choices once,

Bug#839162: Enabled merged-/usr by default

2016-09-29 Thread Marco d'Itri
Package: debootstrap Version: 1.0.83 Severity: normal Since the latest debian-devel@ thread[1] about enabling merged-/usr by default has received no (unaddressed) objections, I am attaching a patch to switch it on. [1] https://lists.debian.org/msgid-search/871t0nv8np@deep-thought.43-1.org

Bug#838031: task-laptop: Add 'ntp' to list of recommended packages.

2016-09-29 Thread Nathaniel Beaver
By default, machines running Debian Jessie will still be susceptible to drifting clocks because Jessie's version of systemd is 215-17+deb8u5, which is behind 219-1. I have confirmed the clock drift (1 second slow) and also the fix on a vanilla Jessie VM. $ timedatectl status | grep NTP N

Bug#838919: closed by Ben Hutchings (Re: Bug#838919: debian-installer: please calculate swap parition according to max RAM supported by the motherboard)

2016-09-29 Thread Martin-Éric Racine
2016-09-29 14:15 GMT+03:00 Ben Hutchings : > On Wed, 2016-09-28 at 16:20 +0300, Martin-Éric Racine wrote: > [...] >> The thing is, right now, the user has two choices: >> >> 1) Trust d-i to make the right choices once, even though more RAM is >> likely to be added later on, at which point there won

Bug#838919: closed by Ben Hutchings (Re: Bug#838919: debian-installer: please calculate swap parition according to max RAM supported by the motherboard)

2016-09-29 Thread Ben Hutchings
On Wed, 2016-09-28 at 16:20 +0300, Martin-Éric Racine wrote: [...] > The thing is, right now, the user has two choices: > > 1) Trust d-i to make the right choices once, even though more RAM is > likely to be added later on, at which point there won't be enough swap > to save the suspend image; Wh