Re: bits from the DPL: August 2012

2012-09-06 Thread Matthias Urlichs
Ummm … Stefano Zacchiroli: > Dear project members, August has been a month with a good deal of > vacations for many of us, including yours truly. Therefore the monthly > report of DPL activities will be briefer than usual. Which is good, as > it'll leave all my readers more time to do NMUs and fix

Be a partner of our company

2012-09-06 Thread Fam Chandigarh
We are pleased to introduce our India's fastest growing organization"FAM INFOTECH". We are into offshore data processing work and online merchandising. We are seeking serious working people for being a part of our organization. We are offering part time/full time business. From which you can earn R

Re: Files-Excluded field and security implications of uscan and debian/copyright.

2012-09-06 Thread Charles Plessy
Le Fri, Sep 07, 2012 at 08:44:36AM +0900, Charles Plessy a écrit : > > in the case of the Files-Excluded field, the contents of the field are > directly > executed. I mean: the contents are transferred to an expression that is directly executed. Sorry for the noise, -- Charles -- To UNSUBS

Bug#686903: RFP: pass -- the standard unix password manager

2012-09-06 Thread Jason A. Donenfeld
Package: wnpp Severity: wishlist X-Debbugs-CC: debian-devel@lists.debian.org pass is a small utility that allows managing a normal folder hierarchy of gpg'd text files containing passwords. It can generate new passwords using pwgen, keep a log using git, and interface with the X clipboard using xc

Re: even root cannot read my symlinks!

2012-09-06 Thread Ben Hutchings
On Fri, 2012-09-07 at 09:56 +0800, Paul Wise wrote: > On Fri, Sep 7, 2012 at 9:50 AM, The Fungi wrote: > > > http://lwn.net/Articles/502621/ > > The file and symlink have the same owner so that is unlikely to be the > cause, unless the feature is buggy. The comparison is between the owner of the

Re: even root cannot read my symlinks!

2012-09-06 Thread Ben Hutchings
On Fri, 2012-09-07 at 08:56 +0800, jida...@jidanni.org wrote: > # su - nobody > No directory, logging in with HOME=/ > nobody@jidanni2:/$ date > /tmp/cc > nobody@jidanni2:/$ ln -s /tmp/cc /tmp/dd > nobody@jidanni2:/$ ls -l /tmp/cc /tmp/dd > -rw-r--r-- 1 nobody nogroup 29 Sep 7 08:37 /tmp/cc > lrwx

Re: even root cannot read my symlinks!

2012-09-06 Thread Paul Wise
On Fri, Sep 7, 2012 at 9:50 AM, The Fungi wrote: > http://lwn.net/Articles/502621/ The file and symlink have the same owner so that is unlikely to be the cause, unless the feature is buggy. -- bye, pabs http://wiki.debian.org/PaulWise -- To UNSUBSCRIBE, email to debian-devel-requ...@lists.d

Re: even root cannot read my symlinks!

2012-09-06 Thread The Fungi
On 2012-09-07 08:56:39 +0800 (+0800), jida...@jidanni.org wrote: [...] > Sep 7 08:36:46 jidanni2 kernel: [19394.443080] type=1400 > audit(1346978206.292:11): op=follow_link action=denied pid=19327 comm="cat" > path="/tmp/bb" dev="tmpfs" ino=275448 [...] Maybe this? http://lwn.net/Articles/502

Bug#686902: ITP: python-bleach -- whitelist-based HTML-sanitizing library

2012-09-06 Thread Per Andersson
Package: wnpp Severity: wishlist Owner: Per Andersson * Package name: python-bleach Version : 1.1.5 Upstream Author : James Socol * URL : http://pypi.python.org/pypi/bleach/ * License : BSD Programming Lang: Python Description : whitelist-based HTML-sa

even root cannot read my symlinks!

2012-09-06 Thread jidanni
# su - nobody No directory, logging in with HOME=/ nobody@jidanni2:/$ date > /tmp/cc nobody@jidanni2:/$ ln -s /tmp/cc /tmp/dd nobody@jidanni2:/$ ls -l /tmp/cc /tmp/dd -rw-r--r-- 1 nobody nogroup 29 Sep 7 08:37 /tmp/cc lrwxrwxrwx 1 nobody nogroup 7 Sep 7 08:37 /tmp/dd -> /tmp/cc nobody@jidanni2:/

Work-needing packages report for Sep 7, 2012

2012-09-06 Thread wnpp
The following is a listing of packages for which help has been requested through the WNPP (Work-Needing and Prospective Packages) system in the last week. Total number of orphaned packages: 453 (new: 4) Total number of packages offered up for adoption: 142 (new: 0) Total number of packages request

Files-Excluded field and security implications of uscan and debian/copyright.

2012-09-06 Thread Charles Plessy
Hi Andreas and everybody, while drafting the IANA registration for the machine-readable Debian copyright format, I had to consider and describe security implications, and realised that in the case of the Files-Excluded field, the contents of the field are directly executed. One can imagine scenar

Re: Discussion of uscan enhancement 1 (Was: uscan enhancement take 3: script hook)

2012-09-06 Thread Andreas Tille
Hi Nicolas, On Wed, Sep 05, 2012 at 01:17:47AM +0200, Nicolas Boulenguez wrote: > > diff --git a/scripts/uscan.pl b/scripts/uscan.pl > index 649f822..34e31a9 100755 > --- a/scripts/uscan.pl > +++ b/scripts/uscan.pl > @@ -1494,17 +1494,9 @@ EOF > print STDERR "Error: $main_source_

Re: BSP in Alcester, GB

2012-09-06 Thread Jonathan Wiltshire
On Thu, Sep 06, 2012 at 06:59:29PM +0100, Jonathan Wiltshire wrote: > I will host a BSP at our home in Alcester, Warwickshire between 12th and > 14th October 2012. > > Please register on the wiki [1] as we have limited room. Oh, that is: 1: http://wiki.debian.org/BSP/2012/10/gb/Alcester -- Jo

Re: greater popularity of Debian on AMD64?

2012-09-06 Thread Mika Suomalainen
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 05.09.2012 19:36, W. Anderson wrote: > It is somewhat surprising and a little disappointing that Debian, > or any other GNU/Linux distribution would be making statements > that, in effect, give great public support to AMD in regard Linux, > when t

Re: Enabling uupdate to simply remove files from upstream source (Was: Minified javascript files)

2012-09-06 Thread Mehdi Dogguy
On 05/09/2012 22:11, Andreas Tille wrote: On Tue, Sep 04, 2012 at 08:19:29PM +0200, Stéphane Glondu wrote: Le 17/08/2012 13:08, Andreas Tille a écrit : So we finally have three independently developed solutions (we also have several instances of a debian/get-orig-source script in Debian Med tea

Re: Enabling uupdate to simply remove files from upstream source (Was: Minified javascript files)

2012-09-06 Thread Andreas Tille
On Thu, Sep 06, 2012 at 03:36:11PM +0200, Mehdi Dogguy wrote: > > I think he was mentioning another method that helps maintainers to > automatically clean the imported tarball when importing it. IIRC, > this method has been added to git-import-orig circa DebConf9. Its > use is very simple, IMHO. D

Bug#686834: ITP: chive -- Chive is a free, open source, web-based database management tool, designed to bring joy to web developers - with easy administration, super fast UI and state of the art web t

2012-09-06 Thread Kevin Gravier
Package: wnpp Severity: wishlist Owner: Kevin Gravier * Package name: chive Version : 1.1-1 Upstream Author : Kevin Gravier * URL : http://www.chive-project.com/ * License : GPLv3 Programming Lang: PHP5 Description : Chive is a free, open source, web-b

Re: Status of circular dependencies in Sid

2012-09-06 Thread Josselin Mouette
Le jeudi 06 septembre 2012 à 13:10 +0100, Ian Jackson a écrit : > There is still nothing per se wrong with circular dependencies and > there are situations where a circular dependency is the right answer. I have yet to see one such situation. -- .''`. Josselin Mouette : :' : `. `' `-

Re: Status of circular dependencies in Sid

2012-09-06 Thread Ian Jackson
Bill Allombert writes ("Status of circular dependencies in Sid"): > Today circular dependencies in unstable reached an all-time low, with > only 36 circular dependencies. There is still nothing per se wrong with circular dependencies and there are situations where a circular dependency is the righ

Re: greater popularity of Debian on AMD64?

2012-09-06 Thread Patrick Matthäi
Am 06.09.2012 10:10, schrieb Josselin Mouette: Le jeudi 06 septembre 2012 à 16:00 +0800, Thomas Goirand a écrit : Would you then advise for an AMD card over Nvidia? Is it better supported, and integrate with the standard desktop screen switcher(s), like xrandr and friends? Yes AMD is better su

Re: greater popularity of Debian on AMD64?

2012-09-06 Thread Josselin Mouette
Le jeudi 06 septembre 2012 à 16:00 +0800, Thomas Goirand a écrit : > Would you then advise for an AMD card over Nvidia? > Is it better supported, and integrate with the standard > desktop screen switcher(s), like xrandr and friends? Yes AMD is better supported, but for some models the performance

Re: greater popularity of Debian on AMD64?

2012-09-06 Thread Thomas Goirand
On 09/06/2012 05:37 AM, Patrick Matthäi wrote: > Am 05.09.2012 23:24, schrieb martin f krafft: > >> I said fglrx — because its binary-only version caused regular >> crashes and headaches for Linux users. >> >> > Which is ATM more useful as nvidia prop. ones. And AMD (not the ATI in > the pa