Processed: notfound 435246 in 0.59.4-2

2007-10-23 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > # Automatically generated email from bts, devscripts version 2.10.7 > notfound 435246 0.59.4-2 Bug#435246: python-software-properties: Package uploaded to lenny before Required: version of python-apt is available Bug no longer marked as found in versio

Processed: notfixed 435246 in 0.59.4-2

2007-10-23 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > # Automatically generated email from bts, devscripts version 2.10.7 > notfixed 435246 0.59.4-2 Bug#435246: python-software-properties: Package uploaded to lenny before Required: version of python-apt is available Bug no longer marked as fixed in versio

Processed: found 435246 in 0.59.4-2

2007-10-23 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > # Automatically generated email from bts, devscripts version 2.10.7 > found 435246 0.59.4-2 Bug#435246: python-software-properties: Package uploaded to lenny before Required: version of python-apt is available Bug marked as found in version 0.59.4-2 an

Bug#435246: marked as done (python-software-properties: Package uploaded to lenny before Required: version of python-apt is available)

2007-10-23 Thread Debian Bug Tracking System
Your message dated Tue, 23 Oct 2007 09:51:42 +0200 with message-id <[EMAIL PROTECTED]> and subject line fixing bts issues has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility t

Processed: reassign 441898 to cl-flexichain

2007-10-23 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > # Automatically generated email from bts, devscripts version 2.10.9 > reassign 441898 cl-flexichain Bug#441898: cl-mcclim: depends on cl-flexichain which is missing Bug reassigned from package `cl-mcclim' to `cl-flexichain'. > End of message, stopping

Bug#447700: realtimebattle: FTBFS on powerpc

2007-10-23 Thread Gerfried Fuchs
Package: realtimebattle Version: 1.0.8-3 Severity: serious Hi! I just confirmed the FTBFS of realtimebattle on powerpc in realtimebattle. You can see the logs on buildd.debian.org: So long, Rhonda -- T

Bug#444982: marked as done (CVE-2007-5193 information disclosure in default configuration)

2007-10-23 Thread Sven Dowideit
I have a few questions: Whats the difference between chmod 777 /var/lib/twiki/working/tmp and chmod 777 /tmp/twiki as that is all it seems to me you're suggesting is the difference between a CVE raised on a maybe problem that requires a very odd set of circumstances and what you have labled

Bug#444986: snmpd: argument parsing causes segfaults

2007-10-23 Thread Sebastian Dröge
Hi, is there any progress on this? The patch looks simple enough and although this is reported for the Ubuntu version of this package also affects the Debian version (the only Ubuntu changes affect the init scripts btw). Bye -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "uns

Bug#444982: marked as done (CVE-2007-5193 information disclosure in default configuration)

2007-10-23 Thread Nico Golde
Hi Sven, * Sven Dowideit <[EMAIL PROTECTED]> [2007-10-23 10:37]: > I have a few questions: > > Whats the difference between > > chmod 777 /var/lib/twiki/working/tmp > > and > > chmod 777 /tmp/twiki Can you please read the mail I wrote and Cced you in? I remember I wrote "The old solution i

Bug#444982: marked as done (CVE-2007-5193 information disclosure in default configuration)

2007-10-23 Thread Nico Golde
Hi Sven, btw about the insecure permissions, here you have the next thing: [EMAIL PROTECTED]:~$] ls -l /var/lib/twiki/data/.htpasswd -rw-rw-r-- 1 www-data www-data 25 2007-10-23 10:56 /var/lib/twiki/data/.htpasswd I guess this is also not intended. Kind regards Nico -- Nico Golde - http://www.n

Bug#447466: marked as done (charva: FTBFS: Failed to open object 'java/lang/Object')

2007-10-23 Thread Debian Bug Tracking System
Your message dated Tue, 23 Oct 2007 09:02:04 + with message-id <[EMAIL PROTECTED]> and subject line Bug#447466: fixed in charva 1.1.3-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now you

Bug#440721: marked as done (FTBFS on sparc while linking usr/klibc/libc.so)

2007-10-23 Thread Debian Bug Tracking System
Your message dated Tue, 23 Oct 2007 09:02:07 + with message-id <[EMAIL PROTECTED]> and subject line Bug#440721: fixed in klibc 1.5.7-2 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your

Bug#447367: marked as done (aclock.app: FTBFS: unmet dep libgnustep-gui0.10-dev)

2007-10-23 Thread Debian Bug Tracking System
Your message dated Tue, 23 Oct 2007 09:02:03 + with message-id <[EMAIL PROTECTED]> and subject line Bug#447367: fixed in aclock.app 0.2.3-3 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now

Bug#444986: snmpd: argument parsing causes segfaults

2007-10-23 Thread Sebastian Dröge
Am Dienstag, den 23.10.2007, 10:56 +0200 schrieb Sebastian Dröge: > Hi, > is there any progress on this? The patch looks simple enough and > although this is reported for the Ubuntu version of this package also > affects the Debian version (the only Ubuntu changes affect the init > scripts btw). A

Bug#430249: ldbl128 transition for alpha, powerpc, sparc, s390

2007-10-23 Thread Damyan Ivanov
[d-release CC-ed for oppinion] [please CC at least debian-perl] -=| Christian Hammers, Mon, Jun 25, 2007 at 08:24:50PM +0200 |=- > > > On 2007-06-23 Matthias Klose wrote: > > > > Package: libdbi-perl > > > ... > > > > This package has been indentified as one with header files in > > > > /usr/inclu

Bug#447675: xview-clients: WIll not connect to the X server

2007-10-23 Thread Martin Buck
On Mon, Oct 22, 2007 at 06:55:37PM -0600, Dean Provins wrote: > When attempting to start any of the Xview client programs (textedit, > cmdtool etc,), and the Xview example programs, the process fails > immediately with the following message: > > --start message-

Bug#444982: marked as done (CVE-2007-5193 information disclosure in default configuration)

2007-10-23 Thread Holger Levsen
Nico, On Tuesday 23 October 2007 10:51, you wrote: > NOONE SAID THERE IS ANY WEBCONTENT STORED IN THERE, CAN YOU > PLEASE JUST READ UP WHAT A SYMLINK ATTACK IS? THANKS! > > This is the last mail from my side as long as you ignore > what I wrote in previous mails. I understand your frustration (th

Bug#447455: entagged: FTBFS: source not available

2007-10-23 Thread Michael Koch
On Sun, Oct 21, 2007 at 12:20:22PM +0200, Lucas Nussbaum wrote: > Package: entagged > version: 0.31-3 > Severity: serious > User: [EMAIL PROTECTED] > Usertags: qa-ftbfs-20071021 qa-ftbfs > Justification: FTBFS on i386 > > Hi, > > During a rebuild of all packages in sid, your package failed to bui

Bug#447372: stardict: FTBFS: stardict_espeak.cpp:89: error: at this point in file

2007-10-23 Thread Andrew Lee
Lucas Nussbaum wrote: > During a rebuild of all packages in sid, your package failed to build on i386. Strange, I can build the package without problem on my i386 sid even with pbuilder. Looks like I accidently enabled espeak in last upload. I think I should actually disable it in next upload. Bu

Bug#432541: eclipse-cdt FTBFS

2007-10-23 Thread Thomas Girard
Hello, On Mon, Oct 22, 2007 at 02:42:40PM +0200, Matthias Klose wrote: > Thomas, please could check with gcj-4.3 (from experimental) / gcc-snapshot? With: * gcc-snapshot 20071020-1 * gij-4.3 4.3-20071020-1 I have the same problem; make stops with: make: *** [build-stamp] Error 13 I'm not ev

Bug#443040: scala: FTBFS: GC Warning: Out of Memory! Returning NIL!

2007-10-23 Thread Lex Spoon
The memory settings are too low for the auto-builder's configuration. The next version uploaded will include a larger setting. -Lex -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Processed: Re: hibernation hangs since the upgrade to 0.103-1

2007-10-23 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > notfound 447571 0.95-2 Bug#447571: hibernation hangs since the upgrade to 0.103-1 Bug no longer marked as found in version 0.95-2. > thanks Stopping processing here. Please contact me if you need assistance. Debian bug tracking system administrator (

Bug#447571: hibernation hangs since the upgrade to 0.103-1

2007-10-23 Thread Eddy Petrişor
notfound 447571 0.95-2 thanks On 22/10/2007, Eddy Petrișor <[EMAIL PROTECTED]> wrote: > Package: acpi-support > Version: 0.103-1 > Severity: serious > > --- Please enter the report below this line. --- > Since the upgrade to this version (0.103-1) from (0.95-2) my laptop no longer > hibernates. It

Bug#445779: good work

2007-10-23 Thread hungerburg
Package: rdesktop Followup-For: Bug #445779 thank you Felix and Laszlo! peter -- System Information: Debian Release: lenny/sid APT prefers unstable APT policy: (500, 'unstable') Architecture: i386 (i686) Kernel: Linux 2.6.23 (PREEMPT) Locale: LANG=de_AT.UTF-8, LC_CTYPE=de_AT.UTF-8 (charmap

Bug#447731: Scroll keys do not work any more

2007-10-23 Thread David
Package: kde-i18n-engb Version: 4:3.5.8-1 Severity: grave --- Please enter the report below this line. --- I encountered two problems today with the keyboard: one solvable and another not solvable AFAIK. None of them appear when Ctrl+Alt+F1 Although my KDE is in British English, my keyboard layo

Bug#444982: marked as done (CVE-2007-5193 information disclosure in default configuration)

2007-10-23 Thread Sven Dowideit
mmm, following the link makes me even less convinced that there is a problem. the working/tmp dir is used for rcs tmp files, and twiki session files, both of which use randomised unique filenames. as the Wikipedia page suggests that the problem is avoided by using randomised filenames, we seem to

Bug#447732: openoffice.org-common: file conflict with openoffice.org-gtk

2007-10-23 Thread Josselin Mouette
Package: openoffice.org-common Version: 1:2.3.0-2 Severity: serious The file /usr/lib/openoffice/share/xdg/qstart.desktop is present in both openoffice.org-common and openoffice.org-gtk, making the latter uninstallable. Cheers, -- .''`. Josselin Mouette/\./\ : :' : [

Bug#445932: marked as done (maxima: FTBFS on hppa (test failure))

2007-10-23 Thread Debian Bug Tracking System
Your message dated 23 Oct 2007 09:09:30 -0400 with message-id <[EMAIL PROTECTED]> and subject line Bug#445932: maxima: FTBFS on hppa (test failure) has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is

Bug#447734: libxul0d: vulnerable to CVE-2007-5339

2007-10-23 Thread Sam Morris
Package: libxul0d Version: 1.8.1.6-1 Severity: grave Tags: security Justification: user security hole Although states that no packages in unstable are vulnerable to this bug, I just tested Epiphany against it at

Bug#445795: [PATCH] Use libfftw3-dev instead of fftw3-dev, fixes #445795

2007-10-23 Thread Samuel Tardieu
tags 445795 + patch thanks --- debian/control |2 +- 1 files changed, 1 insertions(+), 1 deletions(-) diff --git a/debian/control b/debian/control index 388f67a..429f524 100644 --- a/debian/control +++ b/debian/control @@ -2,7 +2,7 @@ Source: swh-plugins Section: sound Priority: optional

Processed: [PATCH] Remove bogus -march=..., fixes #428371, #428435, and #440329

2007-10-23 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > merge 428371 428435 440329 Bug#428371: swh-plugins - FTBFS: error: unrecognized command line option "-march=s390" Bug#428435: swh-plugins_0.4.15-0.1(ia64/unstable): FTBFS: bad compiler options Bug#440329: swh-plugins_0.4.15-0.1(hppa/unstable): FTBFS: u

Bug#428371: [PATCH] Remove bogus -march=..., fixes #428371, #428435, and #440329

2007-10-23 Thread Samuel Tardieu
merge 428371 428435 440329 block 428371 by 445795 tags 428371 + patch thanks This patch is applied over the one in #445795 (which thus has to be applied first). --- configure.in | 12 +++- debian/control |2 +- debian/rules |1 + 3 files changed, 5 insertions(+), 10 deletio

Processed: [PATCH] Use libfftw3-dev instead of fftw3-dev, fixes #445795

2007-10-23 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > tags 445795 + patch Bug#445795: swh-plugins: FTBFS: unmet b-dep fftw3-dev There were no tags set. Tags added: patch > thanks Stopping processing here. Please contact me if you need assistance. Debian bug tracking system administrator (administrator,

Bug#433685: Updated flash package for etch

2007-10-23 Thread Sam Morris
What happened to the updated version of this package for etch? Our users are still stuck on 9.0.31 which is vulnerable to CVE-2007-3456 ('Integer overflow in Adobe Flash Player 9.0.45.0 and earlier might allow remote attackers to execute arbitrary code via a large length value for a (1) Long string

Bug#447735: openoffice.org-core: symbol lookup error

2007-10-23 Thread Josselin Mouette
Package: openoffice.org-core Version: 1:2.3.0-2 Severity: grave When starting the Impress module, I get a symbol lookup error: /usr/lib/openoffice/program/soffice.bin: symbol lookup error: /usr/lib/openoffice/program/i18npool.uno.so: undefined symbol: ublock_getCode_3_7 In case it is useful, h

Processed: Re: Bug#447731: Scroll keys do not work any more

2007-10-23 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > reassign 447731 xserver-xorg-input-evdev Bug#447731: Scroll keys do not work any more Bug reassigned from package `kde-i18n-engb' to `xserver-xorg-input-evdev'. > forcemerge 447731 442316 Bug#447731: Scroll keys do not work any more Bug#442316: xserver

Bug#447731: Scroll keys do not work any more

2007-10-23 Thread Ana Guerrero
reassign 447731 xserver-xorg-input-evdev forcemerge 447731 442316 thanks This bug is a problem on xserver-xorg-input-evdev, reassigning. David, downgrade hal and hal-info and it will solve the problem temporaly. > On Tue, Oct 23, 2007 at 02:03:00PM +0100, David wrote: > Package: kde-i18n-engb

Bug#447341: CVE-2007-5208 arbitrary command execution via unfiltered from address

2007-10-23 Thread Nico Golde
Hi, uploading now with permission of Henrique. Kind regards Nico -- Nico Golde - http://www.ngolde.de - [EMAIL PROTECTED] - GPG: 0x73647CFF For security reasons, all text in this mail is double-rot13 encrypted. pgpfexWT31t78.pgp Description: PGP signature

Bug#441494: marked as done (not installable: needs to be rebuilt against ocaml 3.10)

2007-10-23 Thread Debian Bug Tracking System
Your message dated Tue, 23 Oct 2007 14:17:09 + with message-id <[EMAIL PROTECTED]> and subject line Bug#441494: fixed in graphviz 2.12-5 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now yo

Bug#444982: marked as done (CVE-2007-5193 information disclosure in default configuration)

2007-10-23 Thread Nico Golde
Hi Sven, ok trying again in a friendly way. * Sven Dowideit <[EMAIL PROTECTED]> [2007-10-23 15:10]: > mmm, following the link makes me even less convinced that there is a > problem. > > the working/tmp dir is used for rcs tmp files, and twiki session files, > both of which use randomised unique fi

Bug#447341: marked as done (CVE-2007-5208 arbitrary command execution via unfiltered from address)

2007-10-23 Thread Debian Bug Tracking System
Your message dated Tue, 23 Oct 2007 15:03:35 + with message-id <[EMAIL PROTECTED]> and subject line Bug#447341: fixed in hplip 1.6.10-4.3 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now y

Bug#447735: libicu38

2007-10-23 Thread Nicolas STRANSKY
Salut, The problem comes from the upgrade of libicu38 from 3.8~d01-1 to 3.8-1, both in experimental. libicu38_3.8~d01-1_i386.deb can be found on snapshot.debian.net. Regards, -- Nico -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTEC

Bug#447429: Closing obsolete tickets

2007-10-23 Thread Esteban Manchado Vel�zquez
Hi, This bug is obsolete with the new dhelp version (dhelp_parse is now a Ruby program, and it doesn't use debconf at all)... -- Esteban Manchado Velázquez <[EMAIL PROTECTED]> EuropeSwPatentFree - http://EuropeSwPatentFree.hispalinux.es Help spread it through the Net in signatures, webpages,

Bug#447429: marked as done (dhelp: dhelp is preventing the installation of most packages)

2007-10-23 Thread Debian Bug Tracking System
Your message dated Tue, 23 Oct 2007 17:59:31 +0200 with message-id <[EMAIL PROTECTED]> and subject line Closing obsolete tickets has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsib

Bug#446710: marked as done (ntpd won't start up due to upgraded libssl)

2007-10-23 Thread Debian Bug Tracking System
Your message dated Tue, 23 Oct 2007 17:17:04 + with message-id <[EMAIL PROTECTED]> and subject line Bug#446711: fixed in ntp 1:4.2.4p4+dfsg-2 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is n

Bug#446711: marked as done (ntp: Please build against OpenSSL 908070)

2007-10-23 Thread Debian Bug Tracking System
Your message dated Tue, 23 Oct 2007 17:17:04 + with message-id <[EMAIL PROTECTED]> and subject line Bug#446711: fixed in ntp 1:4.2.4p4+dfsg-2 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is n

Bug#447431: marked as done (ntp: broken check for OpenSSL versions)

2007-10-23 Thread Debian Bug Tracking System
Your message dated Tue, 23 Oct 2007 17:17:04 + with message-id <[EMAIL PROTECTED]> and subject line Bug#447431: fixed in ntp 1:4.2.4p4+dfsg-2 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is n

Bug#446711: marked as done (ntp: Please build against OpenSSL 908070)

2007-10-23 Thread Debian Bug Tracking System
Your message dated Tue, 23 Oct 2007 17:17:04 + with message-id <[EMAIL PROTECTED]> and subject line Bug#446710: fixed in ntp 1:4.2.4p4+dfsg-2 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is n

Bug#446710: marked as done (ntpd won't start up due to upgraded libssl)

2007-10-23 Thread Debian Bug Tracking System
Your message dated Tue, 23 Oct 2007 17:17:04 + with message-id <[EMAIL PROTECTED]> and subject line Bug#446710: fixed in ntp 1:4.2.4p4+dfsg-2 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is n

Processed: unarchiving 435386, found 435386 in 96.43.01-2

2007-10-23 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > # Automatically generated email from bts, devscripts version 2.10.9 > unarchive 435386 Unarchived Bug 435386 > found 435386 96.43.01-2 Bug#435386: nvidia-kernel-source: bad attempt to nest fakeroot sessions Bug marked as found in version 96.43.01-2 and

Bug#442316: Xorg hotplugging problems [WAS: Re: Bug#442316: xserver-xorg-input-evdev: evdev from experimental messes up my keyboard layout]

2007-10-23 Thread Michael Biebl
Julien Cristau schrieb: > On Sat, Sep 15, 2007 at 02:15:52 +0200, Michael Biebl wrote: > >> Package: xserver-xorg-input-evdev >> Version: 1:1.2.0~git20070819-2 >> Severity: important >> >> As you can see from the xorg.conf, I set up a German keyboard layout. >> After installing evdev from experime

Bug#435386: nvidia-kernel-source: bad attempt to nest fakeroot sessions

2007-10-23 Thread Bastian Kleineidam
Hi, I just hit bug #435386, attached is a build log. As stated in my previous message, removing $(ROOT_CMD) from debian/rules fixes the nested fakeroot error. Regards, Bastian Warning: The file include/linux/version.h exists The contained UTS_VERSION string: "" does not match expectations:

Bug#447465: oolite: FTBFS: cp: cannot stat `shared_debug_obj/oolite': No such file or directory

2007-10-23 Thread Eddy Petrișor
Eddy Petrișor wrote: > Lucas Nussbaum wrote: >> Package: oolite >> version: 1.65-5 >> Severity: serious >> User: [EMAIL PROTECTED] >> Usertags: qa-ftbfs-20071021 qa-ftbfs >> Justification: FTBFS on i386 >> >> Hi, >> >> During a rebuild of all packages in sid, your package failed to build on >> i38

Bug#424469: marked as done (libgetenv-java - FTBFS: Found 1 semantic error compiling "uk/co/tigress/System.java":)

2007-10-23 Thread Debian Bug Tracking System
Your message dated Tue, 23 Oct 2007 18:47:10 + with message-id <[EMAIL PROTECTED]> and subject line Bug#424469: fixed in libgetenv-java 1.0-6.1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is

Bug#442316: Xorg hotplugging problems [WAS: Re: Bug#442316: xserver-xorg-input-evdev: evdev from experimental messes up my keyboard layout]

2007-10-23 Thread Daniel Stone
On Tue, Oct 23, 2007 at 08:02:31PM +0200, ext Michael Biebl wrote: > Whenever xorg input hotplugging kicks in, the evdev driver is used. The > kbd keyboard settings from xorg.conf are ignored and the en_US keyboard > layout is used. Yes, this should probably be fixed up, I guess. But the long-ter

Bug#435386: nvidia-kernel-source: bad attempt to nest fakeroot sessions

2007-10-23 Thread Philippe Cloutier
Le October 23, 2007 02:14:36 pm Bastian Kleineidam, vous avez écrit : > Hi, > > I just hit bug #435386, attached is a build log. As stated in my previous > message, removing $(ROOT_CMD) from debian/rules fixes the nested fakeroot > error. > > Regards, > Bastian Which command triggers this problem

Bug#433685: Updated flash package for etch

2007-10-23 Thread Bart Martens
On Tue, 2007-10-23 at 14:43 +0100, Sam Morris wrote: > What happened to the updated version of this package for etch? See: http://ftp.debian.org/debian/dists/stable-proposed-updates/flashplugin-nonfree_9.0.48.0.1etch1_i386.changes http://ftp.debian.org/debian/pool/contrib/f/flashplugin-nonfree/

Bug#447794: wammu: error at start

2007-10-23 Thread Ruben Pollan
Package: wammu Version: 0.23-1 Severity: grave Justification: renders package unusable It breaks at start: [EMAIL PROTECTED]:~$ wammu Traceback (most recent call last): File "/usr/bin/wammu", line 31, in ? import Wammu.Locales File "/usr/lib/python2.4/site-packages/Wammu/Locales.py", lin

Bug#447795: xen-utils-3.0.3-1: [CVE-2007-3919] xenmon.py / xenbaked insecure file accesss

2007-10-23 Thread Steve Kemp
Package: xen-utils-3.0.3-1 Version: 3.0.3-0-3 Severity: grave Tags: security Justification: user security hole Xen versions 3.x, and 3.1 contain a tool for processing Xen trace buffer information. This tool uses the static file /tmp/xenq-shm insecurely allowing a local user to truncate any

Processed: severity of 440549 is grave, tagging 440549

2007-10-23 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > # Automatically generated email from bts, devscripts version 2.10.9 > severity 440549 grave Bug#440549: xcb_xlib.c:50: xcb_xlib_unlock: Assertion `c->xlib.lock' failed Severity set to `grave' from `normal' > tags 440549 + lenny sid Bug#440549: xcb_xlib

Bug#447735: openoffice.org-core: symbol lookup error

2007-10-23 Thread Rene Engelhard
clone 447735 -1 reassign serious libicu38 severity -1 serious thanks Hi, Josselin Mouette wrote: > undefined symbol: u_charDirection_3_7 > (/usr/lib/openoffice/program/i18npool.uno.so) > undefined symbol: u_ispunct_3_7 (/usr/lib/openoffice/program/i18npool.uno.so) > undefined symbol: u_isWhite

Bug#447732: openoffice.org-common: file conflict with openoffice.org-gtk

2007-10-23 Thread Rene Engelhard
tag 447732 + pending thanks Hi, Josselin Mouette wrote: > The file /usr/lib/openoffice/share/xdg/qstart.desktop is present in both > openoffice.org-common and openoffice.org-gtk, making the latter > uninstallable. Hmm. Indeed. It went from -gtk to -common. [EMAIL PROTECTED]:~/Debian/Pakete/Ope

Bug#444982: marked as done (CVE-2007-5193 information disclosure in default configuration)

2007-10-23 Thread Joey Hess
Holger Levsen wrote: > Sven, please ignore Nicos tone and have a look at > http://en.wikipedia.org/wiki/Symlink_race :-) I would not recommend considering this wikipedia page an authoratitive reference for what can and cannot be used for symlink attacks. In particular, chosing a random filename

Bug#447735: openoffice.org-core: symbol lookup error

2007-10-23 Thread Jay Berkenbilt
tag 447735 wontfix thanks Thanks for the report. While I recognize the seriousness of accidental ABI changes (in fact, my start in Debian was managing a tiff transition caused by just this issue), I don't think there was ever any guarantee that this type of breakage wouldn't occur between d01 an

Processed: Re: Bug#447732: openoffice.org-common: file conflict with openoffice.org-gtk

2007-10-23 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > tag 447732 + pending Bug#447732: openoffice.org-common: file conflict with openoffice.org-gtk There were no tags set. Tags added: pending > thanks Stopping processing here. Please contact me if you need assistance. Debian bug tracking system administ

Bug#435386: nvidia-kernel-source: bad attempt to nest fakeroot sessions

2007-10-23 Thread Bastian Kleineidam
Am Dienstag, 23. Oktober 2007 21:20:27 schrieb Philippe Cloutier: > Le October 23, 2007 02:14:36 pm Bastian Kleineidam, vous avez écrit : > > Hi, > > > > I just hit bug #435386, attached is a build log. As stated in my previous > > message, removing $(ROOT_CMD) from debian/rules fixes the nested fa

Processed (with 1 errors): Re: Bug#447735: openoffice.org-core: symbol lookup error

2007-10-23 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > clone 447735 -1 Bug#447735: openoffice.org-core: symbol lookup error Bug 447735 cloned as bug 447799. > reassign serious libicu38 Unknown command or malformed arguments to command. > severity -1 serious Bug#447799: openoffice.org-core: symbol lookup e

Processed: Re: Bug#447735: openoffice.org-core: symbol lookup error

2007-10-23 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > tag 447735 wontfix Bug#447735: openoffice.org-core: symbol lookup error There were no tags set. Tags added: wontfix > thanks Stopping processing here. Please contact me if you need assistance. Debian bug tracking system administrator (administrator,

Processed: Re: Bug#447735: openoffice.org-core: symbol lookup error

2007-10-23 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > # wrong bug > tag 447735 - wontfix Bug#447735: openoffice.org-core: symbol lookup error Tags were: wontfix Tags removed: wontfix > # reassigning didn't work (typo in first message) > reassign 447799 libicu38 Bug#447799: openoffice.org-core: symbol look

Bug#447799: Bug#447735: openoffice.org-core: symbol lookup error

2007-10-23 Thread Rene Engelhard
# wrong bug tag 447735 - wontfix # reassigning didn't work (typo in first message) reassign 447799 libicu38 severity 447799 serious # right bug. tag 447799 wontfix thanks You tagged the wrong bug. Fullquoting for 447799's sake. (I care about this because 447735 is not wontfix but I need a new OOo

Processed: tagging 447735

2007-10-23 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > # Automatically generated email from bts, devscripts version 2.10.9 > tags 447735 + pending Bug#447735: openoffice.org-core: symbol lookup error There were no tags set. Tags added: pending > End of message, stopping processing here. Please contact me

Bug#402165: Sun JDK locking bug with Xinerama fixed upstream; test?

2007-10-23 Thread Josh Triplett
Hello, (For background on this issue, see http://lists.debian.org/debian-devel-announce/2006/11/msg00010.html , http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=402165 , and http://bugs.sun.com/bugdatabase/view_bug.do?bug_id=6532373 .) I spoke with Tom Marble and others from Sun at OSCON this ye

Bug#444982: marked as done (CVE-2007-5193 information disclosure in default configuration)

2007-10-23 Thread Joey Hess
Sven Dowideit wrote: > the working/tmp dir is used for rcs tmp files, and twiki session files, > both of which use randomised unique filenames. rcs opens its temp files with O_EXCL, so I don't think it will be vulnerable to symlink attacks. In twiki 4.1.2, I quickly found some temp file problems.

Processed: reassign 447795 to xen-3.0

2007-10-23 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > # Automatically generated email from bts, devscripts version 2.9.26 > reassign 447795 xen-3.0 3.0.3-0-3 Bug#447795: xen-utils-3.0.3-1: [CVE-2007-3919] xenmon.py / xenbaked insecure file accesss Bug reassigned from package `xen-utils-3.0.3-1' to `xen-3.

Processed: found 447795 in 3.0.3-0-1

2007-10-23 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > # Automatically generated email from bts, devscripts version 2.9.26 > found 447795 3.0.3-0-1 Bug#447795: xen-utils-3.0.3-1: [CVE-2007-3919] xenmon.py / xenbaked insecure file accesss Bug marked as found in version 3.0.3-0-1. > End of message, stopping

Bug#423200: quake2: should this package be orphaned?

2007-10-23 Thread Jamie Wilkinson
This one time, at band camp, Lucas Nussbaum wrote: >On 09/10/07 at 14:52 +0530, Kartik Mistry wrote: >> On 10/9/07, Lucas Nussbaum <[EMAIL PROTECTED]> wrote: >> > > > >> > > >This should probably be replaced by >> > > >http://jdolan.dyndns.org/trac/wiki/Quetoo >> > > >> > > This word, I do not thi

Bug#447811: kdm does not use kde or X keyboard layout

2007-10-23 Thread Eric Valette
Package: kdm Version: 4:3.5.8.dfsg.1-1 Severity: grave Justification: renders package unusable Happened on my PC at work after today update. Happened again on my laptop at home tonight. I did not chnage the kde configuration nor the Xorg.conf file and in both case keyboard is french. After typy

Bug#447366: zsnes: FTBFS: init.asm:895: error: expression syntax error

2007-10-23 Thread Javier Serrano Polo
tags 447366 patch thanks "CRC32" has become a keyword in nasm. crc32.diff.gz Description: GNU Zip compressed data

Bug#447813: qwertz changed to qwerty; dpkg-reconfigure xserver-xorg has no effect

2007-10-23 Thread Carsten Kosthorst
Package: xserver-xorg Version: 1:7.3+2 Severity: grave Justification: renders package unusable Hi, after todays update and a restart, Xorg lost the keymap. It was de, latin1, nodeadkeys. Trying to reinstall the old settings via dpkg-reconfigure xserver-xorg does not work. There are no erroer me

Bug#447811: marked as done (kdm does not use kde or X keyboard layout)

2007-10-23 Thread Debian Bug Tracking System
Your message dated Tue, 23 Oct 2007 23:37:00 +0200 with message-id <[EMAIL PROTECTED]> and subject line Bug#447811: kdm does not use kde or X keyboard layout has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the

Processed: Re: zsnes: FTBFS: init.asm:895: error: expression syntax error

2007-10-23 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > tags 447366 patch Bug#447366: zsnes: FTBFS: init.asm:895: error: expression syntax error There were no tags set. Tags added: patch > thanks Stopping processing here. Please contact me if you need assistance. Debian bug tracking system administrator (

Bug#447813: Acknowledgement (qwertz changed to qwerty; dpkg-reconfigure xserver-xorg has no effect)

2007-10-23 Thread Carsten Kosthorst
Hi again, after purging xserver-xorg-input-evdev the problem went away, I got my old keyboard layout back. As far as I'm concerned, the bug report can be closed. Carsten -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED

Bug#441407: CVE-2007-4650: security bugs in the WebDAV and Reupload modules

2007-10-23 Thread Thijs Kinkhorst
On Thursday 18 October 2007 16:45, Michael Schultheiss wrote: > Michael Schultheiss wrote: > > Thijs Kinkhorst wrote: > > > The attached patch seems to contain quite some auxillary changes. Do > > > you think you can prepare an upload for stable addressing only the > > > issue at hand? > > > > I ca

Bug#447815: vmware-package: Recommands remove libssl0.9.7

2007-10-23 Thread Alban Browaeys
Package: vmware-package Version: 0.14 Severity: grave Justification: renders package unusable Maybe the severity is too high. Sorry if so. libssl0.9.7 is just a recommands but is not provided by sid repository anymore. Please upgrade to libssl0.9.8 . Best regards Alban -- System Information:

Bug#447819: shlibs file incorrect: does not force dependency on libportaudiocpp0

2007-10-23 Thread Hamish Moffatt
Package: libportaudiocpp0 Version: 19+svn20070125-1 Severity: serious The shlibs file for libportaudiocpp0 only results in a dependency on libportaudio2, not libportaudiocpp0: libportaudiocpp 0 libportaudio2 (>= 19+cvs20060311-1) This results in programs that use it with automatic depends via ${

Bug#444982: marked as done (CVE-2007-5193 information disclosure in default configuration)

2007-10-23 Thread Sven Dowideit
neat summary Joey :) The reason that I made it world writeable, is that twiki cgi's can be run from the command line by anyone, and in doing so, create a session file. This is used by cronjobs, and so that users can script additions to topics etc. Basically, like much of the rest of TWiki, its

Processed: severity of 447815 is minor

2007-10-23 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > # Automatically generated email from bts, devscripts version 2.9.26 > severity 447815 minor Bug#447815: vmware-package: Recommands remove libssl0.9.7 Severity set to `minor' from `grave' > End of message, stopping processing here. Please contact me if

Bug#446729: [Pkg-uml-pkgs] Bug#446729: rootstrap: MAKEDEV: No such file or directory

2007-10-23 Thread Mattia Dongili
On Mon, Oct 22, 2007 at 04:03:11PM +0200, Marcus Better wrote: > package rootstrap > tag 446729 patch > thanks > > This patch appears to fix it. > > --- modules/uml~2006-09-26 10:57:22.0 +0200 > +++ modules/uml 2007-10-22 10:18:43.0 +0200 > @@ -5,7 +5,7 @@ > for i in 1 2

Bug#447821: xmms-singit: Depends on removed libssl0.9.7

2007-10-23 Thread Alban Browaeys
Package: xmms-singit Severity: grave Justification: renders package unusable The package depends on non available libssl0.9.7. Could it be upgraded to use libssl0.9.8 ? Best regards Alban -- System Information: Debian Release: lenny/sid APT prefers unstable APT policy: (500, 'unstable'), (1

Processed: tagging bugs that are closed by packages in NEW as pending

2007-10-23 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > # the following bugs are closed by packages in NEW > # > tags 439389 pending Bug#439389: Depends->Recommends dependency change breaking other packages Tags were: help Tags added: pending > tags 439853 pending Bug#439853: ITP: libpoe-component-sslify-pe

Bug#444982: marked as done (CVE-2007-5193 information disclosure in default configuration)

2007-10-23 Thread Joey Hess
Sven Dowideit wrote: > neat summary Joey :) > > The reason that I made it world writeable, is that twiki cgi's can be > run from the command line by anyone, and in doing so, create a session > file. > > This is used by cronjobs, and so that users can script additions to > topics etc. Makeing th

Bug#442316: Xorg hotplugging problems [WAS: Re: Bug#442316: xserver-xorg-input-evdev: evdev from experimental messes up my keyboard layout]

2007-10-23 Thread David Nusinow
On Tue, Oct 23, 2007 at 10:02:35PM +0300, Daniel Stone wrote: > On Tue, Oct 23, 2007 at 08:02:31PM +0200, ext Michael Biebl wrote: > > Whenever xorg input hotplugging kicks in, the evdev driver is used. The > > kbd keyboard settings from xorg.conf are ignored and the en_US keyboard > > layout is us

Processed: ktorrent: CVE-2007-1799 now really fixed in etch/updates

2007-10-23 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > notfixed 432007 ktorrent/2.0.3+dfsg1-2etch1 Bug#432007: CVE-2007-1799: vulnerability in torrent.cpp Bug#425948: ktorrent: Security fix for directory traversal incomplete Bug no longer marked as fixed in version ktorrent/2.0.3+dfsg1-2etch1. > fixed 4320

Bug#432007: ktorrent: CVE-2007-1799 now really fixed in etch/updates

2007-10-23 Thread Fabian Pietsch
notfixed 432007 ktorrent/2.0.3+dfsg1-2etch1 fixed 432007 ktorrent/2.0.3+dfsg1-2.2etch1 thanks With DSA 1373-2 [1] and ktorrent-2.0.3+dfsg1-2.2etch1 being released, this seems to be resolved, at last. :) Regards, Fabian (Note: IANADD, just torturing the BTS...) [1] http://lists.debian.org/debia

Bug#447833: kde-i18n-es: Version 4%3a3.5.8-1 breaks the es keyboard layout

2007-10-23 Thread Lisandro Damián Nicanor Pérez Meyer
Subject: kde-i18n-es: Version 4%3a3.5.8-1 breaks the es keyboard layout Package: kde-i18n-es Version: 4:3.5.8-1 Severity: grave Justification: renders package unusable *** Please type your report below this line *** I just installed kde-i18n-es_4%3a3.5.8-1_all.deb from unstable. It breaks the es

Bug#447794: wammu: error at start

2007-10-23 Thread Michal Čihař
reassign 447794 python-wxgtk2.6 2.6.3.2.2-1 thanks Hi On Tue, 23 Oct 2007 21:28:24 +0200 Ruben Pollan <[EMAIL PROTECTED]> wrote: > It breaks at start: > > [EMAIL PROTECTED]:~$ wammu > Traceback (most recent call last): > File "/usr/bin/wammu", line 31, in ? > import Wammu.Locales > File

Processed: Re: Bug#447794: wammu: error at start

2007-10-23 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > reassign 447794 python-wxgtk2.6 2.6.3.2.2-1 Bug#447794: wammu: error at start Bug reassigned from package `wammu' to `python-wxgtk2.6'. > thanks Stopping processing here. Please contact me if you need assistance. Debian bug tracking system administra

Bug#447833: Acknowledgement (kde-i18n-es: Version 4%3a3.5.8-1 breaks the es keyboard layout)

2007-10-23 Thread Lisandro Damián Nicanor Pérez Meyer
More info: I just installed kde-i18n-es=4:3.5.7-1 (previous version) and it doesn't solve the problem. I have to switch off keyboards layouts and then fallback to english keyboard to have a coherent behaviour, but not the correct, of course. If I can be of any further help, don't hesitate to co

Bug#447241: bouncycastle - FTBFS: gcj-4.2: Internal error: Killed (program jc1)

2007-10-23 Thread Michael Koch
On Fri, Oct 19, 2007 at 12:19:19PM +0200, Bastian Blank wrote: > Package: bouncycastle > Version: 1.37-2 > Severity: serious > > There was an error while trying to autobuild your package: > > > Automatic build of bouncycastle_1.37-2 on debian-31.osdl.marist.edu by > > sbuild/s390 98 > [...] > >

Bug#447469: javahelp2: FTBFS: class org.apache.tools.ant.taskdefs.optional.depend.Depend was not found

2007-10-23 Thread Michael Koch
Hello, On Sun, Oct 21, 2007 at 12:21:56PM +0200, Lucas Nussbaum wrote: > /build/user/javahelp2-2.0.05/build-tree/javahelp2-2.0.05/javahelp_nbproject/build.xml:119: > The following error occurred while executing this line: > /build/user/javahelp2-2.0.05/build-tree/javahelp2-2.0.05/JSearchIndexer_

  1   2   >