Bug#562234: Cache file location in violation of FHS

2010-12-08 Thread Goswin von Brederlow
Alasdair G Kergon writes: > /etc/lvm has several functions. > > Read-only config - leave it where it is. Obviously. I was only meaning the writable parts. > cache_dir - in general can be cleared on each boot so a tmpfs location > would be fine or /var/cache or something Maybe /lib/init/rw/ the

Bug#598463: Alive

2010-12-08 Thread dave b
Um, well I could see if they would accept a patch I could make up soon... The problem is / was they closed the bug saying it was a python issue, where they didnt' even attempt to ensure that a https connection would be secured, through wrapping it in ssl, iirc. -- To UNSUBSCRIBE, email to debia

Bug#503957: marked as done (stopmotion leaves behind a vgrabbj process consuming ~99% of cpu.)

2010-12-08 Thread Debian Bug Tracking System
Your message dated Thu, 09 Dec 2010 05:32:07 + with message-id and subject line Bug#496027: fixed in stopmotion 0.6.2-1.1 has caused the Debian Bug report #496027, regarding stopmotion leaves behind a vgrabbj process consuming ~99% of cpu. to be marked as done. This means that you claim that

Bug#496027: marked as done (stopmotion: wrong use of cut command to stop grabber)

2010-12-08 Thread Debian Bug Tracking System
Your message dated Thu, 09 Dec 2010 05:32:07 + with message-id and subject line Bug#496027: fixed in stopmotion 0.6.2-1.1 has caused the Debian Bug report #496027, regarding stopmotion: wrong use of cut command to stop grabber to be marked as done. This means that you claim that the problem h

Bug#606388: CVE-2010-4172: XSS issues

2010-12-08 Thread tony mancill
I'm working on this. I have a quilt patch ready; just need to minimize it some (more) and then do some testing. tony On 12/08/2010 12:44 PM, Moritz Muehlenhoff wrote: > Package: tomcat6 > Severity: grave > Tags: security > > Please see http://tomcat.apache.org/security-6.html. signature.asc

Bug#584363: marked as done (player: FTBFS: Nonexistent build-dependency: libphidgets-dev)

2010-12-08 Thread Debian Bug Tracking System
Your message dated Thu, 09 Dec 2010 05:02:29 + with message-id and subject line Bug#584363: fixed in player 3.0.2+dfsg-1 has caused the Debian Bug report #584363, regarding player: FTBFS: Nonexistent build-dependency: libphidgets-dev to be marked as done. This means that you claim that the pr

Processed: Re: mdadm: install script returns 1

2010-12-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > # > Bug number 519165 not found. (Is it archived?) > # > # Yes, yes it is. > package bash Limiting to bugs with field 'package' containing at least one of 'bash' Limit currently set to 'package':'bash' > unarchive 519165 Bug #519165 {Done: Matthi

Processed: Re: Bug#606350: sasl2-bin: "Too many open files" error with PAM - recovery with saslauthd restart

2010-12-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 606350 important Bug #606350 [sasl2-bin] sasl2-bin: "Too many open files" error with PAM - recovery with saslauthd restart Severity set to 'important' from 'critical' > reassign 606350 winbind Bug #606350 [sasl2-bin] sasl2-bin: "Too man

Bug#606350: sasl2-bin: "Too many open files" error with PAM - recovery with saslauthd restart

2010-12-08 Thread Russ Allbery
severity 606350 important reassign 606350 winbind retitle 606350 Possible file descriptor leak in pam_winbind thanks D G Teed writes: > On Wed, Dec 8, 2010 at 5:53 PM, Russ Allbery wrote: >> D G Teed writes: >>> I also count 200 connections like this: >>> unix 3 [ ] STREAM C

Bug#606350: sasl2-bin: "Too many open files" error with PAM - recovery with saslauthd restart

2010-12-08 Thread D G Teed
On Wed, Dec 8, 2010 at 5:53 PM, Russ Allbery wrote: > D G Teed writes: > > > I also count 200 connections like this: > > > unix 3 [ ] STREAM CONNECTED 39854981 > > /var/run/samba/winbindd_privileged/pipe > > > Most users are simply using port 25 and would not be authenticat

Processed: severity of 606414 is important

2010-12-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 606414 important Bug #606414 [upower] upowerd runs at high %CPU constantly Severity set to 'important' from 'grave' > thanks Stopping processing here. Please contact me if you need assistance. -- 606414: http://bugs.debian.org/cgi-bin/

Bug#606414: upowerd runs at high %CPU constantly

2010-12-08 Thread Stuart Marshall
Package: upower Version: 0.9.5-5 Severity: grave Justification: renders package unusable I'm seeing this in top: top - 14:35:10 up 19:05, 4 users, load average: 0.38, 0.52, 0.70 Tasks: 144 total, 1 running, 143 sleeping, 0 stopped, 0 zombie Cpu(s): 7.4%us, 1.6%sy, 0.0%ni, 90.4%id,

Processed: Re: Bug#606311: Acknowledgement (movabletype-opensource: Unspecified XSS and SQL injection vulnerabilities fixed in 4.35)

2010-12-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > found 606311 4.2.3-1+lenny1 Bug #606311 {Done: Dominic Hargreaves } [movabletype-opensource] movabletype-opensource: Unspecified XSS and SQL injection vulnerabilities fixed in 4.35 Bug Marked as found in versions movabletype-opensource/4.2.3-1+l

Bug#606311: Acknowledgement (movabletype-opensource: Unspecified XSS and SQL injection vulnerabilities fixed in 4.35)

2010-12-08 Thread Dominic Hargreaves
found 606311 4.2.3-1+lenny1 thanks On Wed, Dec 08, 2010 at 07:51:50PM +, Dominic Hargreaves wrote: > The changes can be summarised roughly as follows: > > lib/MT/App/Search.pm| 22 +- > > Input checking Patch does not apply to 4.2.3-1+lenny1 > lib/MT

Bug#593049: osso-gwconnect: FTBFS: configure: error: ossolog enabled but, osso-log.h not found

2010-12-08 Thread peter green
found 593049 1.0.12.debian-1 thanks I have just confirmed that this issue also impacts building squeezes version in squeeze Looking at config.log for insight it seems something screwy with CFLAGS configure:5403: checking osso-log.h usability configure:5403: gcc -c -g -O2 -Wall -g -O2 30989as_

Processed: re: osso-gwconnect: FTBFS: configure: error: ossolog enabled but, osso-log.h not found

2010-12-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > found 593049 1.0.12.debian-1 Bug #593049 [src:osso-gwconnect] osso-gwconnect: FTBFS: configure: error: ossolog enabled but osso-log.h not found Ignoring request to alter found versions of bug #593049 to the same values previously set > thanks St

Bug#404760: closed: fixed in inetutils 2:1.8-1

2010-12-08 Thread Simon McVittie
On Mon, 06 Dec 2010 at 05:05:54 +0100, Guillem Jover wrote: > I guess the inetd se_v4mapped logical inversion fix and the “ping -w” > support, both from upstream 1.8, would be important to have. My backport of making tcp/udp be v4-only already included the inversion fix as part of the conflict res

Bug#606311: marked as done (movabletype-opensource: Unspecified XSS and SQL injection vulnerabilities fixed in 4.35)

2010-12-08 Thread Debian Bug Tracking System
Your message dated Wed, 08 Dec 2010 22:49:53 + with message-id and subject line Bug#606311: fixed in movabletype-opensource 4.3.5+dfsg-1 has caused the Debian Bug report #606311, regarding movabletype-opensource: Unspecified XSS and SQL injection vulnerabilities fixed in 4.35 to be marked as

Bug#606327: vmmemctl missing in squeeze

2010-12-08 Thread Daniel Baumann
On 12/08/2010 10:14 PM, Mehdi Dogguy wrote: Could you please provide a reasonable fix for this bug? the correct fix is to upload open-vm-tools 8.4.2-261024. will you accept this "new-old" upstream release for squeeze? -- Address:Daniel Baumann, Burgunderstrasse 3, CH-4562 Biberist Em

Bug#605504: release team advice: chocolate-doom lock-up / OOD libsdl-mixer

2010-12-08 Thread Jon Dowland
On Tue, Nov 30, 2010 at 10:17:48PM +, Jon Dowland wrote: > Chocolate doom (contrib) upstream has alerted me to an RC bug > . The problem is actually in > libsdl-mixer1.2 and is fixed upstream. There are three possible > ways to resolve this for squeeze (asides

Processed: Re: drupal6: please lower #565738 severity to non-RC

2010-12-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 565738 important Bug #565738 [drupal6] drupal6: Bad apache configuration - Should not install/enable anything in /etc/apache2/conf.d/drupal Severity set to 'important' from 'grave' > thanks Stopping processing here. Please contact me i

Bug#565738: drupal6: please lower #565738 severity to non-RC

2010-12-08 Thread Moritz Muehlenhoff
severity 565738 important thanks On Sun, Nov 28, 2010 at 01:51:00PM +0100, Marc Fournier wrote: > Excerpt from /usr/share/doc/apache2.2-common/README.Debian.gz: > > If the local administrator is not comfortable with packages > activating their config files by default, it is possible >

Bug#605817: pgadmin3: When a connection is lost, pgadmin blanks

2010-12-08 Thread Moritz Muehlenhoff
On Fri, Dec 03, 2010 at 12:51:09PM -0600, Sergio Cuellar Valdes wrote: > Package: pgadmin3 > Version: 1.10.0-1+b2 > Severity: grave > Justification: causes non-serious data loss > > pgadmin3 is unusable when the connection to one or more databases is > lost. > > The window of pgadmin3 do not show

Bug#606350: sasl2-bin: "Too many open files" error with PAM - recovery with saslauthd restart

2010-12-08 Thread Russ Allbery
D G Teed writes: > I also count 200 connections like this: > unix 3 [ ] STREAM CONNECTED 39854981 > /var/run/samba/winbindd_privileged/pipe > Most users are simply using port 25 and would not be authenticating, > so I know these numbers cannot be current connections. Look

Bug#598463: Alive

2010-12-08 Thread Soren Hansen
Hi. I'm the "maintainer". I'll readily admit I've failed miserably to track this issue appropriately. Part of it is due to some rather unfortunate e-mail filtering, but that's certainly not all. (Debian bug mail ended in a folder I didn't subscribe to, but I noticed the issue when it was first rai

Bug#606377: marked as done (/etc/kernel/postrm.d/zz-update-grub: causes kernel upgrades to fail when grub-pc is removed)

2010-12-08 Thread Debian Bug Tracking System
Your message dated Wed, 08 Dec 2010 21:33:10 + with message-id and subject line Bug#606377: fixed in grub 0.97-64 has caused the Debian Bug report #606377, regarding /etc/kernel/postrm.d/zz-update-grub: causes kernel upgrades to fail when grub-pc is removed to be marked as done. This means t

Bug#606393: gnome-do: crashes on start with Unhandled Exception: System.TypeLoadException

2010-12-08 Thread Stefan Muthers
Package: gnome-do Version: 0.8.3.1+dfsg-2 Severity: grave Justification: renders package unusable I installed gnome-do and wanted to have a look at the software, but unfortunately is does not start. Only this message: ** (/usr/lib/gnome-do/Do.exe:24400): WARNING **: The class Do.Interface.Contro

Bug#598463: Alive

2010-12-08 Thread Mehdi Dogguy
On 08/12/2010 21:57, Moritz Muehlenhoff wrote: [ Adding debian-release to CC, please remove libcloud from testing for now ] Removal hint added. Cheers, -- Mehdi Dogguy مهدي الدڤي http://dogguy.org/ -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "uns

Processed: Re: Bug#606327: vmmemctl missing in squeeze

2010-12-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 606327 grave Bug #606327 [open-vm-tools] vmmemctl missing in squeeze Severity set to 'grave' from 'important' > thanks Stopping processing here. Please contact me if you need assistance. -- 606327: http://bugs.debian.org/cgi-bin/bugrep

Processed: Re: Bug#605157: calendarserver: Use of PYTHONPATH env var in an insecure way

2010-12-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tags 605157 - patch Bug #605157 [calendarserver] calendarserver: Use of PYTHONPATH env var in an insecure way Bug #605166 [calendarserver] calendarserver: Use of PYTHONPATH env var in an insecure way Removed tag(s) patch. Removed tag(s) patch. >

Bug#606145: Definitely

2010-12-08 Thread davian818
be...@latin be_BY.utf8 be_by.u...@latin C en_GB.utf8 en_US.utf8 POSIX ru_RU.utf8 ru_ru.u...@old ru_UA.utf8 Any locale including C results in described behavior.

Bug#605157: calendarserver: Use of PYTHONPATH env var in an insecure way

2010-12-08 Thread Jakub Wilk
tags 605157 - patch thanks * Dmitrijs Ledkovs , 2010-12-03, 22:37: With my patch applied the resulting /usr/bin/caldavd has: PYTHONPATH="/usr/lib/twisted-calendarserver/lib/python2.6/site-packages/:+:$PYTHONPATH" So if PYTHONPATH was originally empty or unset, this expands to: PYTHONPATH=/usr

Bug#606294: antlr3: FTBFS: maven-related errors

2010-12-08 Thread Torsten Werner
On Wed, Dec 8, 2010 at 9:26 PM, Lucas Nussbaum wrote: > What does antlr3 need from the network? If the resource it needs might > disappear during the squeeze lifetime, it is still RC, I think. It tries to download the gunit code which is part of antlr3. It won't go away as it is part of antlr3.

Bug#605484: marked as done (libapache2-mod-fcgid: stack overwrite vulnerability)

2010-12-08 Thread Debian Bug Tracking System
Your message dated Wed, 8 Dec 2010 22:00:26 +0100 with message-id <20101208210026.ga11...@galadriel.inutil.org> and subject line Re: libapache2-mod-fcgid: stack overwrite vulnerability has caused the Debian Bug report #605484, regarding libapache2-mod-fcgid: stack overwrite vulnerability to be mark

Bug#598463: Alive

2010-12-08 Thread Moritz Muehlenhoff
On Fri, Nov 12, 2010 at 05:10:11PM +0100, Pietro Battiston wrote: > Il giorno ven, 12/11/2010 alle 13.46 +0100, Moritz Muehlenhoff ha > scritto: > > On Mon, Nov 08, 2010 at 11:08:38AM +0100, Pietro Battiston wrote: > > > I didn't forget this, it's just harder than I thought, in particular > > > con

Processed: retitle 606268 to ignores wireless ainterfaces configured by d-i

2010-12-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > retitle 606268 ignores wireless ainterfaces configured by d-i Bug #606268 [network-manager] now ignores interfaces configured by d-i Changed Bug title to 'ignores wireless ainterfaces configured by d-i' from 'now ignores interfaces configured by

Bug#606388: CVE-2010-4172: XSS issues

2010-12-08 Thread Moritz Muehlenhoff
Package: tomcat6 Severity: grave Tags: security Please see http://tomcat.apache.org/security-6.html. Please upload an isolated fix with urgency=medium and ask RMs for an unblock. Cheers, Moritz -- System Information: Debian Release: squeeze/sid APT prefers unstable APT policy: (500

Bug#606350: sasl2-bin: "Too many open files" error with PAM - recovery with saslauthd restart

2010-12-08 Thread D G Teed
On Wed, Dec 8, 2010 at 4:23 PM, Dan White wrote: > On 08/12/10 15:33 -0400, D G Teed wrote: > >> Here is what one of the directories looked like: >> >> ls -l 15950/fd >> >> total 0 >> lrwx-- 1 root root 64 Dec 8 13:52 0 -> /dev/null >> lrwx-- 1 root root 64 Dec 8 13:52 1 -> /dev/null >>

Bug#605153: fixed in pybliographer 1.2.14-3

2010-12-08 Thread Moritz Muehlenhoff
On Tue, Nov 30, 2010 at 02:35:23AM +, Chris Lawrence wrote: > Source: pybliographer > Source-Version: 1.2.14-3 > > -BEGIN PGP SIGNED MESSAGE- > Hash: SHA1 > > Format: 1.8 > Date: Mon, 29 Nov 2010 20:24:24 -0600 > Source: pybliographer > Binary: pybliographer > Architecture: source all

Bug#605504: marked as done (chocolate-doom: Game freezes up during play)

2010-12-08 Thread Debian Bug Tracking System
Your message dated Wed, 08 Dec 2010 20:35:02 + with message-id and subject line Bug#605504: fixed in sdl-mixer1.2 1.2.8-6.1 has caused the Debian Bug report #605504, regarding chocolate-doom: Game freezes up during play to be marked as done. This means that you claim that the problem has been

Processed: found 606371 in 4:4.4.5-1, bug 606371 is forwarded to http://bugs.kde.org/show_bug.cgi?id=241507

2010-12-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > found 606371 4:4.4.5-1 Bug #606371 [kopete] kopete: Kopete freezes immediately when opening opening settings dialog (TV-card present in system) Bug Marked as found in versions kdenetwork/4:4.4.5-1. > forwarded 606371 http://bugs.kde.org/show_bug.

Bug#606294: antlr3: FTBFS: maven-related errors

2010-12-08 Thread Lucas Nussbaum
On 08/12/10 at 21:10 +0100, Torsten Werner wrote: > Hi Tony, > > On Wed, Dec 8, 2010 at 8:21 PM, tony mancill wrote: > > On 12/08/2010 12:07 AM, Lucas Nussbaum wrote: > >> Source: antlr3 > >> Version: 3.2-4 > >> Severity: serious > >> Tags: squeeze sid > >> User: debian...@lists.debian.org > >> U

Bug#606350: sasl2-bin: "Too many open files" error with PAM - recovery with saslauthd restart

2010-12-08 Thread Dan White
On 08/12/10 15:33 -0400, D G Teed wrote: Here is what one of the directories looked like: ls -l 15950/fd total 0 lrwx-- 1 root root 64 Dec 8 13:52 0 -> /dev/null lrwx-- 1 root root 64 Dec 8 13:52 1 -> /dev/null lrwx-- 1 root root 64 Dec 7 15:47 10 -> socket:[38109596] lrwx--

Bug#606386: CVE-2010-4335

2010-12-08 Thread Moritz Muehlenhoff
Package: cakephp Severity: grave Tags: security A security issue has been found in cakephp, please see here for a fix: https://github.com/cakephp/cakephp/commit/e431e86aa4301ced4273dc7919b59362cbb353cb Please upload an isolated fix to sid, which can migrate to testing. Cheers, Moritz --

Bug#606294: antlr3: FTBFS: maven-related errors

2010-12-08 Thread Torsten Werner
Hi Tony, On Wed, Dec 8, 2010 at 8:21 PM, tony mancill wrote: > On 12/08/2010 12:07 AM, Lucas Nussbaum wrote: >> Source: antlr3 >> Version: 3.2-4 >> Severity: serious >> Tags: squeeze sid >> User: debian...@lists.debian.org >> Usertags: qa-ftbfs-20101207 qa-ftbfs >> Justification: FTBFS on amd64 >

Bug#605157: calendarserver: Use of PYTHONPATH env var in an insecure way

2010-12-08 Thread Moritz Muehlenhoff
On Fri, Dec 03, 2010 at 09:45:04PM +, Dmitrijs Ledkovs wrote: > tags 605157 patch > thanks > > Dear maintainer, > > I've prepared an NMU for calendarserver (versioned as 2.4.dfsg-2.1). I > will seek sponsorship to upload for delayed queue. If anyone is sponsoring a fixed package, please upl

Bug#565785: xmlrpc-c debian package

2010-12-08 Thread Ralf Treinen
Hi Sean, looking through the BTS I just saw hat you had tagged bug #565785 as pending on 27 Jan 2010. However, it seems that the patched package was never uploaded. Is there a particular reason for not uploading the patch? Does this patch also fix the FTBFS on armel (#598987) ? If for some reaso

Bug#606343: libpam-mount: FTBFS on kfreebsd-*: insufficient build-deps

2010-12-08 Thread peter green
I just took a quick look (i'm just doing flyby looks at rc bugs, I don't have anything to do with this package) and it appears it isn't a simple case of missing build-depends. The build-depends is there but qualified with [linux-any], presumablly that qualification is there because libcryptsetu

Bug#510130: Error calculing volhdr partition boundaries on SGI disklabel

2010-12-08 Thread Moritz Muehlenhoff
On Tue, Nov 30, 2010 at 11:43:45PM +0100, Moritz Muehlenhoff wrote: > On Tue, Nov 30, 2010 at 03:42:11PM -0700, LaMont Jones wrote: > > On Tue, Nov 30, 2010 at 11:38:41PM +0100, Moritz Muehlenhoff wrote: > > > Lamont, are you fine with an NMU? > > > This bug has been open for a long time and needs

Processed: No fix pending for grub-legacy yet

2010-12-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tags 606377 - pending Bug #606377 [grub-legacy] /etc/kernel/postrm.d/zz-update-grub: causes kernel upgrades to fail when grub-pc is removed Removed tag(s) pending. > thanks Stopping processing here. Please contact me if you need assistance. --

Bug#606370: CVE-2010-2761 CVE-2010-4410 CVE-2010-4411

2010-12-08 Thread Moritz Muehlenhoff
On Wed, Dec 08, 2010 at 08:35:47PM +0100, Ansgar Burchardt wrote: > clone 606370 -1 > found 606370 3.38-2lenny1 > reassign -1 libcgi-simple-perl 1.105-1 > thanks > > Moritz Muehlenhoff writes: > > Three security issues have been reported in libcgi-pm-perl: > > > > http://security-tracker.debian.o

Bug#606311: Acknowledgement (movabletype-opensource: Unspecified XSS and SQL injection vulnerabilities fixed in 4.35)

2010-12-08 Thread Dominic Hargreaves
Ignoring files that have only changed SVN ID, removed files which were already ignored by debian/rules (mt-static/support/dashboard/stats) and changes which only bump the version number, we have the following changes between MTOS 4.34 and 4.35: lib/MT/App/Search.pm| 22 +

Processed: Swapping bug numbers

2010-12-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > # Sorry, I screwed up. I meant to reassign the cloned bug to > # grub-legacy, not the clonee. :-/ > reassign 606184 grub-pc 1.98+20100804-8 Bug #606184 [grub-legacy] /etc/kernel/postrm.d/zz-update-grub: causes kernel upgrades to fail when grub-p

Bug#606370: CVE-2010-2761 CVE-2010-4410 CVE-2010-4411

2010-12-08 Thread Moritz Muehlenhoff
On Wed, Dec 08, 2010 at 08:23:56PM +0100, gregor herrmann wrote: > clone 606370 -1 > reassign -1 libcgi-simple-perl > thanks > > On Wed, 08 Dec 2010 19:47:18 +0100, Moritz Muehlenhoff wrote: > > > Three security issues have been reported in libcgi-pm-perl: > > > > http://security-tracker.debian

Processed: Re: Bug#606370: CVE-2010-2761 CVE-2010-4410 CVE-2010-4411

2010-12-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > clone 606370 -1 Bug#606370: CVE-2010-2761 CVE-2010-4410 CVE-2010-4411 Bug 606370 cloned as bug 606379. > found 606370 3.38-2lenny1 Bug #606370 [libcgi-pm-perl] CVE-2010-2761 CVE-2010-4410 CVE-2010-4411 Bug Marked as found in versions libcgi-pm-pe

Bug#606370: CVE-2010-2761 CVE-2010-4410 CVE-2010-4411

2010-12-08 Thread Ansgar Burchardt
clone 606370 -1 found 606370 3.38-2lenny1 reassign -1 libcgi-simple-perl 1.105-1 thanks Moritz Muehlenhoff writes: > Three security issues have been reported in libcgi-pm-perl: > > http://security-tracker.debian.org/tracker/CVE-2010-2761 > http://security-tracker.debian.org/tracker/CVE-2010-4410

Processed: Applies to grub-legacy as well

2010-12-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > clone 606184 -1 Bug#606184: /etc/kernel/postrm.d/zz-update-grub: causes kernel upgrades to fail when grub-pc is removed Bug 606184 cloned as bug 606377. > reassign 606184 grub-legacy Bug #606184 [grub-pc] /etc/kernel/postrm.d/zz-update-grub: cau

Bug#606184: Applies to grub-legacy as well

2010-12-08 Thread Sven Joachim
clone 606184 -1 reassign 606184 grub-legacy found 606184 0.97-63 thanks Hi, the same bug exists in grub-legacy and needs to be fixed there as well. Cheers, Sven -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listma

Bug#598424: Patch for CVE-2010-3394

2010-12-08 Thread Jakub Wilk
* Etienne Millon , 2010-11-25, 20:35: $ LD_LIBRARY_PATH= $ LD_LIBRARY_PATH="/foobar${LD_LIBRARY_PATH+":$LD_LIBRARY_PATH"}" $ echo $LD_LIBRARY_PATH /foobar: LD_LIBRARY_PATH can be unset "naturally", ie without the user knowing. It is actually the default. However, if it evaluates to the empty str

Bug#606370: CVE-2010-2761 CVE-2010-4410 CVE-2010-4411

2010-12-08 Thread gregor herrmann
clone 606370 -1 reassign -1 libcgi-simple-perl thanks On Wed, 08 Dec 2010 19:47:18 +0100, Moritz Muehlenhoff wrote: > Three security issues have been reported in libcgi-pm-perl: > > http://security-tracker.debian.org/tracker/CVE-2010-2761 > http://security-tracker.debian.org/tracker/CVE-2010-4

Bug#606294: antlr3: FTBFS: maven-related errors

2010-12-08 Thread tony mancill
On 12/08/2010 12:07 AM, Lucas Nussbaum wrote: > Source: antlr3 > Version: 3.2-4 > Severity: serious > Tags: squeeze sid > User: debian...@lists.debian.org > Usertags: qa-ftbfs-20101207 qa-ftbfs > Justification: FTBFS on amd64 Hmmm... I wasn't able to reproduce the build failure in a clean squeeze

Bug#606371: kopete: Kopete freezes immediately when opening opening settings dialog (TV-card present in system)

2010-12-08 Thread Andreas Jacob
Package: kopete Version: 4:4.4.5-2 Severity: grave Justification: renders package unusable When I try to open the kopete settings dialog, and the dialog pops up, kopete freezes immediately. I've searched upstream for a similar bug and found someone: http://bugs.kde.org/show_bug.cgi?id=241507 .

Bug#603552: Update theme SpaceFun and wiki page

2010-12-08 Thread Otavio Salvador
> regarding squeeze, i'll only sync those from debian-cd, so if debian-cd uses > the correct things, so will syslinux-themes-debian. It will. I am going to handle it. -- Otavio Salvador                  O.S. Systems E-mail: ota...@ossystems.com.br  http://www.ossystems.com.br Mobile: +55 53 9981

Bug#606370: CVE-2010-2761 CVE-2010-4410 CVE-2010-4411

2010-12-08 Thread Moritz Muehlenhoff
Package: libcgi-pm-perl Version: 3.49-1 Severity: grave Tags: security Three security issues have been reported in libcgi-pm-perl: http://security-tracker.debian.org/tracker/CVE-2010-2761 http://security-tracker.debian.org/tracker/CVE-2010-4410 http://security-tracker.debian.org/tracker/CVE-2010

Bug#603429: hylafax-server: prompting due to modified conffiles which where not modified by the user

2010-12-08 Thread gregor herrmann
On Wed, 08 Dec 2010 05:51:52 +0100, Giuseppe Sacco wrote: > I like to idea you proposed: (JFTR: I was only the messenger :)) > leave it at 1 and do not touch it anymore. Ok, might be less intrusive and simpler than the ucf option. And just wrapping the last part of the postinst into a block ch

Bug#603554: Bug#603552: Update theme SpaceFun and wiki page

2010-12-08 Thread Yves-Alexis Perez
On mer., 2010-12-08 at 19:12 +0100, Daniel Baumann wrote: > On 12/08/2010 07:10 PM, Daniel Baumann wrote: > > i think we have a missunderstanding here, spacefun will not be part of > > plymouth-themes-debian, it's in desktop-base only. > > sorry, ignore that.. i was answering plymouth related mail

Processed: Re: Bug#606327: vmmemctl missing in squeeze

2010-12-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > reassign 606327 open-vm-tools Bug #606327 [open-vm-dkms] vmmemctl missing in squeeze Bug reassigned from package 'open-vm-dkms' to 'open-vm-tools'. Bug No longer marked as found in versions open-vm-tools/2010.06.16-268169-3. > severity 606327 impo

Bug#603552: Update theme SpaceFun and wiki page

2010-12-08 Thread Daniel Baumann
On 12/08/2010 07:10 PM, Daniel Baumann wrote: i think we have a missunderstanding here, spacefun will not be part of plymouth-themes-debian, it's in desktop-base only. sorry, ignore that.. i was answering plymouth related mails above. regarding squeeze, i'll only sync those from debian-cd, so

Bug#603552: Update theme SpaceFun and wiki page

2010-12-08 Thread Daniel Baumann
On 12/08/2010 04:05 PM, Yves-Alexis Perez wrote: Daniel, when integrating the {ext,iso,sys}linux theme, could you check you're using the latest version from the SpaceFun svn (http://svn.debianart.org/themes/spacefun/) ? i think we have a missunderstanding here, spacefun will not be part of ply

Bug#606295: libhibernate3-java: FTBFS: maven-related errors

2010-12-08 Thread Miguel Landaeta
Since I worked on the last uploads of this package, I could take a look at this bug during the weekend if nobody beats me to it. Cheers, -- Miguel Landaeta, miguel at miguel.cc secure email with PGP 0x7D8967E9 available at http://keyserver.pgp.com/ "Faith means not wanting to know what is true."

Bug#606350: sasl2-bin: "Too many open files" error with PAM - recovery with saslauthd restart

2010-12-08 Thread Dan White
On 08/12/10 09:20 -0400, dteed wrote: This is working fine - users can authenticate against Active Directory when sending email over secure ports 465 and 587 on Postfix. Once every two weeks or so, saslauthd requires a restart to fix a failure to authenticate. Nothing else needs to be touched t

Bug#606350: sasl2-bin: "Too many open files" error with PAM - recovery with saslauthd restart

2010-12-08 Thread dteed
Package: sasl2-bin Version: 2.1.23.dfsg1-6 Severity: critical Justification: breaks unrelated software Using saslauthd in support of secure SMTP with postfix. saslauthd is configured to use pam. /etc/pam.d/smtp looks like this: account requiredpam_permit.so authsufficientpam

Bug#606268: [Pkg-utopia-maintainers] Bug#606268: Bug#606268: now ignores interfaces configured by d-i

2010-12-08 Thread Joey Hess
Michael Biebl wrote: > Please also note that e.g. if you setup your (ethernet) connection using a > static IP configuration, we do not comment such interface configurations > either. > > So the issue about NM not managing certain devices extends to ethernet > interfaces as well and this behaviour

Bug#606296: [DRE-maint] Bug#606296: libnokogiri-ruby: FTBFS: test fails

2010-12-08 Thread Lucas Nussbaum
On 08/12/10 at 10:46 -0500, Mike Dalessio wrote: > On Wed, Dec 8, 2010 at 10:30 AM, Lucas Nussbaum > wrote: > > > On 08/12/10 at 10:27 -0500, Mike Dalessio wrote: > > > This is a bug in the Nokogiri test, where behavior that changed in libxml > > > 2.7.7 was not checked for with libxml > 2.7.7. >

Bug#606268: [Pkg-utopia-maintainers] Bug#606268: Bug#606268: now ignores interfaces configured by d-i

2010-12-08 Thread Joey Hess
Michael Biebl wrote: > Could you please post further examples of such interfaces files generated by > d-i, especially wireless configurations. Why? Here is the code that generates them: if ((fp = file_open(INTERFACES_FILE, "a"))) { fprintf(fp, "\n# The primary network interface\n");

Bug#562234: Cache file location in violation of FHS

2010-12-08 Thread Alasdair G Kergon
/etc/lvm has several functions. Read-only config - leave it where it is. cache_dir - in general can be cleared on each boot so a tmpfs location would be fine or /var/cache or something Metadata backups ideally would be stored persistently outside lvm but otherwise /var/backups sounds OK (The

Bug#606343: libpam-mount: FTBFS on kfreebsd-*: insufficient build-deps

2010-12-08 Thread Cyril Brulebois
Source: libpam-mount Version: 2.7-1 Severity: serious Justification: FTBFS Hi, your package no longer builds on kfreebsd-*: | configure: error: Package requirements (libcryptsetup >= 1.1.2) were not met: | | No package 'libcryptsetup' found | | Consider adjusting the PKG_CONFIG_PATH environment

Bug#606296: [DRE-maint] Bug#606296: libnokogiri-ruby: FTBFS: test fails

2010-12-08 Thread Lucas Nussbaum
On 08/12/10 at 10:27 -0500, Mike Dalessio wrote: > This is a bug in the Nokogiri test, where behavior that changed in libxml > 2.7.7 was not checked for with libxml > 2.7.7. > > This has been corrected in the Nokogiri repository, and you can see the > change at > https://github.com/tenderlove/noko

Bug#562234: Cache file location in violation of FHS

2010-12-08 Thread Goswin von Brederlow
Hi, the current cache file location (/etc/lvm) makes problems with a read-only / so something has to be done. On the other hand configuring it to /var/backups/ seems to work just fine all around. No problems so far even during boot (when /var isn't there yet). Since grub2 can now too boot direct

Bug#606296: [DRE-maint] Bug#606296: libnokogiri-ruby: FTBFS: test fails

2010-12-08 Thread Mike Dalessio
This is a bug in the Nokogiri test, where behavior that changed in libxml 2.7.7 was not checked for with libxml > 2.7.7. This has been corrected in the Nokogiri repository, and you can see the change at https://github.com/tenderlove/nokogiri/commit/abe249425bef0356f54408b89c9f376c62862e87

Bug#603552: Update theme SpaceFun and wiki page

2010-12-08 Thread Yves-Alexis Perez
On mer., 2010-12-08 at 11:45 -0300, Valessio Brito wrote: > Yes, this was done that way. The font is paths in svg file. > > About #605732 png file widescreen for grub, I think the use of a > black background with a dark image[1]. Other proposal is use > 'imagemagick' to cut and resize images. >

Bug#606319: irssi crashes when changing window

2010-12-08 Thread Pierre Habouzit
On Wed, Dec 08, 2010 at 12:34:32PM +0100, Pierre Habouzit wrote: > Package: irssi > Version: 0.8.15-1 > Severity: grave > Justification: renders package unusable > > Here is a backtrace. I just send irssi, hit alt-7 which does basically /win 7 > and it crashes > > /window 7 crashes in the same f

Bug#600374: [pkg-fso-maint] Bug#600374: #600374: NMU for Mokomaze ?

2010-12-08 Thread Didier 'OdyX' Raboud
Le Wednesday 8 December 2010 13:17:10 Sebastian Reichel, vous avez écrit : > On Wed, Dec 08, 2010 at 11:12:03AM +0100, Didier 'OdyX' Raboud wrote: > > As there hasn't been much of an answer from the pkg-fso team, I'd like to > > propose an NMU for mokomaze, (…) > > Sorry for the long delay, I wait

Processed: Re: [very long] Only libc6 update crash

2010-12-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > reassign 606098 libc6 Bug #606098 [upgrade-reports] upgrade-reports: libc6-xen crash ... Bug reassigned from package 'upgrade-reports' to 'libc6'. > thanks Stopping processing here. Please contact me if you need assistance. -- 606098: http://bug

Bug#606098: [very long] Only libc6 update crash

2010-12-08 Thread Aurelien Jarno
reassign 606098 libc6 thanks On Wed, Dec 08, 2010 at 12:07:11PM +0100, Thomas Clavier wrote: > Hello, Hi, > First, sory for this very long mail. I have test that : > > vi /etc/apt/source.list > :%s/lenny/squeeze/g > :wq > apt-get update > apt-get install linux-modules-2.6-xen-686 udev >

Bug#603080: marked as done (phamm: fails to install)

2010-12-08 Thread Debian Bug Tracking System
Your message dated Wed, 08 Dec 2010 13:32:04 + with message-id and subject line Bug#599282: fixed in phamm 0.5.18-2+squeeze1 has caused the Debian Bug report #599282, regarding phamm: fails to install to be marked as done. This means that you claim that the problem has been dealt with. If thi

Bug#599282: marked as done (phamm: [patch] fix for failure to install in chroot)

2010-12-08 Thread Debian Bug Tracking System
Your message dated Wed, 08 Dec 2010 13:32:04 + with message-id and subject line Bug#599282: fixed in phamm 0.5.18-2+squeeze1 has caused the Debian Bug report #599282, regarding phamm: [patch] fix for failure to install in chroot to be marked as done. This means that you claim that the problem

Processed: Re: Bug#511582: Plan of action ?

2010-12-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tag 511582 squeeze-ignore Bug #511582 [opie] packaged opie 2.4, fixing testsuite failures on arm/armel Added tag(s) squeeze-ignore. > kthxbye Stopping processing here. Please contact me if you need assistance. -- 511582: http://bugs.debian.org/c

Bug#511582: Plan of action ?

2010-12-08 Thread Julien Cristau
tag 511582 squeeze-ignore kthxbye On Sun, Dec 5, 2010 at 22:23:04 +0100, Moritz Muehlenhoff wrote: > IMO we should ignore this for Squeeze and proceed with removing opie after > the Squeeze release. > Sounds like a good plan. Cheers, Julien signature.asc Description: Digital signature

Processed: Untagging

2010-12-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > # bug only affects squeeze, build-depends are satisfied in sid > tags 606293 - sid Bug #606293 [src:hol88] hol88: FTBFS: Unsatisfiable build-dependency: gcl(inst 2.6.7-62 ! >= wanted 2.6.7-87) Removed tag(s) sid. > thanks Stopping processing here

Bug#606297: imagemagick: FTBFS: collect2: ld returned 1 exit status

2010-12-08 Thread Nelson A. de Oliveira
Hi! On Wed, Dec 8, 2010 at 10:01 AM, Lucas Nussbaum wrote: > Please post your build log so we can diff them. Available at http://people.debian.org/~naoliv/misc/imagemagick/imagemagick_6.6.0.4-3_amd64.build.txt Best regards, Nelson -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.de

Processed: Re: [Pkg-utopia-maintainers] Bug#606268: Bug#606268: now ignores interfaces configured by d-i

2010-12-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > found 606268 0.6.6-3 Bug #606268 [network-manager] now ignores interfaces configured by d-i Bug Marked as found in versions network-manager/0.6.6-3. > thanks Stopping processing here. Please contact me if you need assistance. -- 606268: http://b

Bug#606327: vmmemctl missing in squeeze

2010-12-08 Thread Martin Zobel-Helas
Package: open-vm-dkms Version: 2010.06.16-268169-3 Severity: grave Hi, open-vm-dkms misses vmmemctl in the Squeeze. According to debian/changelog it was removed with version 2010.06.16-268169-1 due to * Updating packaging for upstreams vmmemctl module removal. Looking into upstreams changelo

Bug#606268: [Pkg-utopia-maintainers] Bug#606268: Bug#606268: now ignores interfaces configured by d-i

2010-12-08 Thread Michael Biebl
found 606268 0.6.6-3 thanks Hi Joey On 08.12.2010 00:19, Joey Hess wrote: >> Are you suggesting to create a keyfile connection based on the configuration >> from /etc/network/interfaces? > > I'm suggesting that network-manager needs to deal with standard > interfaces files as generated by d-i,

Bug#606074: #606074: also applies to libdb5.0-sql-dev and libdb5.1-sql-dev

2010-12-08 Thread Ralf Treinen
Hello, bug #606074 also applies to libdb5.0-sql-dev and libdb5.1-sql-dev : dpkg: error processing /var/cache/apt/archives/libdb5.1-sql-dev_5.1.19-2_amd64.deb (--unpack): trying to overwrite '/usr/include/dbsql.h', which is also in package libdb5.0-sql-dev 5.0.26-3 configured to not write apport

Processed: affects

2010-12-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > affects 606074 libdb5.0-sql-dev Bug #606074 [libdb5.0-stl-dev,libdb5.1-stl-dev] libdb5.1-stl-dev and libdb5.0-stl-dev: error when trying to install together Added indication that 606074 affects libdb5.0-sql-dev > affects 606074 libdb5.1-sql-dev B

Bug#606323: gnome-panel: Upper panel doesnt show running aplications

2010-12-08 Thread missing kernel module for TDA18218 dvb-t tuner
Package: gnome-panel Version: 2.20.3-5 Severity: critical Justification: breaks unrelated software Before, when i started aplication (Twinkle, skype, knotes) it appeared in right end of upper panel (left to the clocks/calendar). Now it does not. But process only appears in list of processes as "

Bug#600374: [pkg-fso-maint] Bug#600374: #600374: NMU for Mokomaze ?

2010-12-08 Thread Sebastian Reichel
Hi, On Wed, Dec 08, 2010 at 11:12:03AM +0100, Didier 'OdyX' Raboud wrote: > Le Monday 29 November 2010 03:18:55 Paul Wise, vous avez écrit : > > We are just waiting on the pkg-fso team to make an upload removing the > > icons and adding the patch I sent upstream. > > Hi, > > (Removing the RM bug

Bug#606297: imagemagick: FTBFS: collect2: ld returned 1 exit status

2010-12-08 Thread Lucas Nussbaum
On 08/12/10 at 09:18 -0200, Nelson A. de Oliveira wrote: > Hi Lucas! > > On Wed, Dec 8, 2010 at 6:09 AM, Lucas Nussbaum > wrote: > > During a rebuild of all packages in sid, your package failed to build on > > amd64. > > I cannot reproduce it here in a squeeze chroot. > Could it be a temporary

Bug#603450: Is 603450 realy release critical?

2010-12-08 Thread Carsten Hey
* Bastian Blank [2010-12-08 10:37 +0100]: > On Wed, Dec 08, 2010 at 08:45:30AM +0100, Alexander Reichle-Schmehl wrote: > > #603450 is a bug (currently with severity grave, Justification: user > > security hole), as offlineimap does no ssl certificate checking. > > Could you explain why it should be

  1   2   >