Bug#742990: News?

2014-05-06 Thread Frank Habermann
Hi, > Frank, are you still active or should someone take over ? I'm asking > because "gitpkg" is much less used than "git-buildpackage" and > it might be easier to use Bastien's solution if we switch to > git-buildpackage. >From my side any help is welcome and somebody could take over. I am very b

Bug#733966: On ckeditor package

2014-01-29 Thread Frank Habermann
Hi, sorry for late reply. Lot of private stuff Feel free to upload an NMU package. I will try to fix the other bugs as soon as possible. regards, Frank -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.

Bug#696483: Fix for CVE-2012-5657

2013-01-07 Thread Frank Habermann
Hi, i have prepared a package for squeeze: http://debian.lordlamer.de/zendframework/1.10.6squeeze1/zendframework_1.10.6-1squeeze2.dsc I also tested it and fixes the problem. I will contact security team now. regards, Frank signature.asc Description: This is a digitally signed message part.

Bug#696483: Uploaded to DELAYED/7

2012-12-29 Thread Frank Habermann
Hi, > I've uploaded a NMU with the patch above to DELAYED/7. Thanks for your patch and the work and sorry for delayed answer. Christmas holidays and family ;) Now, i am sitting on a patch for stable/squeeze. regards, Frank -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org wit

Bug#688946: zendframework: CVE-2012-4451

2012-10-18 Thread Frank Habermann
close #688946 Hi, > Remember Debian is in freeze, so please only apply the isolated securitx > fix and request an unblock by filing a bug against release.debian.org I contacted upstream to clarify this. Zendframework Version 1 is not affected by this. So no fix is needed here! regards, Frank

Bug#591206: License updated (flvplayer)

2010-12-02 Thread Frank Habermann
Hi, sorry for late replay. Lot of private work ;) >From my side it was all ok. Thanks for the work! regards, Frank Am 30.11.2010 16:25, schrieb Didier 'OdyX' Raboud: > Le Tuesday 23 November 2010 13:15:50 Frank Habermann, vous avez écrit : >> I have contacted moxieco

Bug#591206: License updated (flvplayer)

2010-11-23 Thread Frank Habermann
Hi, >> $ find . -name "*swf*" >> ./jscripts/tiny_mce/plugins/media/img/flv_player.swf >> ./examples/media/sample.swf >> >> How important are those files? Could those be replaced or removed without >> affecting application functionality? > I found nothing about using the flv_player.swf in sources.

Bug#591206: License updated (flvplayer)

2010-11-22 Thread Frank Habermann
Hi, > $ find . -name "*swf*" > ./jscripts/tiny_mce/plugins/media/img/flv_player.swf > ./examples/media/sample.swf > > How important are those files? Could those be replaced or removed without > affecting application functionality? I found nothing about using the flv_player.swf in sources. Seems t

Bug#538722: CVE-2009-2265: fckeditor is embedded in etch version

2010-03-25 Thread Frank Habermann
close #538722 thanks fixed in lenny, and testing/unstable; etch is unsupported, closing. Frank -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Bug#555229: knowledgeroot: CVE-2007-2383 and CVE-2008-7720 prototypejs vulnerabilities

2009-11-28 Thread Frank Habermann
reopen 555229 thanks The previous close is wrong. The version is still affected. regards, Frank -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Bug#538722: knowledgeroot: embeds prototype.js

2009-11-28 Thread Frank Habermann
reopen 538722 thanks The previous close is wrong. The version is still affected. regards, Frank -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Bug#536051: CVE-2009-2265, CVE-2009-2324: input sanitization errors

2009-07-07 Thread Frank Habermann
Hi, i contacted the security team ~6 hours ago with that. Frank -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Bug#471641: Needs to use fckeditor

2008-03-19 Thread Frank Habermann
Package: egroupware-core Severity: serious Your package includes a copy of FCKEditor, which also is packaged as fckeditor in the archive. You need to fix your package to use the system-wide editor. Otherwise it requires too much overhead whenever a vulnerability in FCKEditor is found. Frank

Bug#467363: Needs to use fckeditor

2008-02-24 Thread Frank Habermann
Package: moinmoin-common Severity: serious Your package includes a copy of FCKEditor, which also is packaged as fckeditor in the archive. You need to fix your package to use the system-wide editor. Otherwise it requires too much overhead whenever a vulnerability in FCKEditor is found. Frank

Bug#467362: Needs to use fckeditor

2008-02-24 Thread Frank Habermann
Package: karrigell-doc Severity: serious Your package includes a copy of FCKEditor, which also is packaged as fckeditor in the archive. You need to fix your package to use the system-wide editor. Otherwise it requires too much overhead whenever a vulnerability in FCKEditor is found. Frank

Bug#431025: Bug#431026: Bug#433141: Bug#431025: Bug#431026: [PEAR-DEV] Quality assurancepropositionfor HTMLSax3

2007-11-13 Thread Frank Habermann
Hi, > A debian package php-xml-htmlsafe3 has just entered debian Where can i find the package? I did not found it. Frank -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Bug#431026: Bug#433141: Bug#431025: Bug#431026: [PEAR-DEV] Quality assurancepropositionfor HTMLSax3

2007-11-02 Thread Frank Habermann
Hi, FYI: Harry is adding LGPL to HTMLSax and HTMLSax3. So it will be ok for debian or not? regards, Frank -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Bug#431025: Bug#431026: [PEAR-DEV] Quality assurance proposition for HTMLSax3

2007-10-30 Thread Frank Habermann
Hi all, good news from Harry, he has fixed the licence problem with HtmlSax and HTMLSax3 in CVS of pear. You can see it here: http://cvs.php.net/viewvc.cgi/pear/XML_HTMLSax/ regards, Frank -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL

Bug#444928: CVE-2007-5156 remote php file inclusion vulnerability in fckeditor

2007-10-08 Thread Frank Habermann
Hi, thanks for the link! Sorry for my mistake. I have tested it again and it works now. I dont know why my first test does not work. But that does not matter now. I hope to fix this tomorrow for stable and for unstable. Thanks. Frank pgpw9jFx6PdU1.pgp Description: PGP signature

Bug#444928: CVE-2007-5156 remote php file inclusion vulnerability in fckeditor

2007-10-07 Thread Frank Habermann
apache configuration problem. So also here is not a problem in Knowledgeroot. Thanks for the report. Frank Habermann pgpEVEYc2e7IA.pgp Description: PGP signature

Bug#431026: Quality assurance proposition for HTMLSax3

2007-10-03 Thread Frank Habermann
Hi, i have talked with Lukas on the pear-dev list about that problem and he want to talk with Harry next week as you see here [0]. I hope he can clear this problem that we have a solution as fast as possible. Frank Habermann [0]: http://news.php.net/php.pear.dev/48218 -- To UNSUBSCRIBE

Bug#431026: Bug#433141: Clarifications on issues for this bug

2007-09-01 Thread Frank Habermann
Hi, Am Mittwoch, 18. Juli 2007 15:22 schrieb Michael Schultheiss: > I spoke with the upstream Gallery developers and they're working on > getting this module relicensed under BSD or some other GPL compatible > license. Have you any feedback from the developers for this problem?

Bug#381912: knowledgeroot: embedded FCKeditor and TinyMCE may have unfixed security

2006-08-09 Thread Frank Habermann
Hello, we have checked that bugs. All bugs are fixed in our fckeditor and in tinymce! Thanks for inform us! regards, Frank Habermann -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]