RE: Debian PHP upgrade

2015-03-25 Thread Gareth Webb
Passive-aggressive? I was merely asking from a security perspective, I will provide you the information you seek shortly. Have a lovely day, and great week -Original Message- From: Ondřej Surý [mailto:ond...@sury.org] Sent: Tuesday, March 24, 2015 5:45 PM To: Salvatore Bonaccorso;

RE: Debian PHP upgrade

2015-03-25 Thread Adam D. Barratt
On 2015-03-25 7:12, Gareth Webb wrote: Passive-aggressive? I was merely asking from a security perspective I assume Ondřej was referring to "if we need to move over to a new distribution that has this updated version of PHP". That's a fairly strong opening gambit for "merely asking", particu

RE: Debian PHP upgrade

2015-03-25 Thread Gareth Webb
No worries I understand :) Andile (copied in) is our security except he will confirm the information for you. Thanks for your assistance. -Original Message- From: Adam D. Barratt [mailto:a...@adam-barratt.org.uk] Sent: Wednesday, March 25, 2015 10:10 AM To: Gareth Webb Cc: Ondřej S

Bug#781149: ITP: python-mistralclient -- OpenStack Workflow as a Service client

2015-03-25 Thread Thomas Goirand
Package: wnpp Severity: wishlist Owner: Thomas Goirand * Package name: python-mistralclient Version : 2015.1~b3 Upstream Author : OpenStack Foundation * URL : https://github.com/stackforge/python-mistralclient * License : Apache-2.0 Programming Lang: Python

Bug#781154: ITP: libphpcpp -- a C++ library for developing PHP extensions

2015-03-25 Thread Rafal Goslawski
Package: wnpp Severity: wishlist Owner: Rafal Goslawski * Package name: libphpcpp Version : 1.3.1 Upstream Author : Emiel Bruijntjes * URL : http://www.php-cpp.com/ * License : Apache Programming Lang: C++ Description : a C++ library for developing PHP

Re: Debian PHP upgrade

2015-03-25 Thread Andile Ntebe
Hi Adam How are you? We have Apache/2.2.22 on our Debian boxes. Ive tried using apt-get update and apt-get upgrade to try and get us onto the latest version but with no success. Is there any other way that we could get Apache updated? Please let me know. Regards On 2015/03/25, 10:10 AM, "A

Re: Debian PHP upgrade

2015-03-25 Thread Adam D. Barratt
On 2015-03-25 11:22, Andile Ntebe wrote: We have Apache/2.2.22 on our Debian boxes. Ive tried using apt-get update and apt-get upgrade to try and get us onto the latest version but with no success. Is there any other way that we could get Apache updated? I have to admit I'm confused at this po

Re: Debian PHP upgrade

2015-03-25 Thread Paul Wise
On Wed, Mar 25, 2015 at 7:22 PM, Andile Ntebe wrote: > We have Apache/2.2.22 on our Debian boxes. Which Debian version number? > Ive tried using apt-get update and apt-get upgrade to try and get us onto the > latest version but with no success. Is there any other way that we could get > Apache

Moving a conffile between packages

2015-03-25 Thread Christian Kastner
Hi, (this pertains to RC bug #781050 [1]) Assume a package A with a conffile /etc/foo.conf. A while ago, package A was split into package A and B, and B took over the conffile. B declares the necessary Breaks/Replaces. However, an upgrade to from a pre-split A to a post-split A did not automatic

Re: Debian PHP upgrade

2015-03-25 Thread Andile Ntebe
Hi Im not sure why Gareth said PHP, I’m referring to Apache 2.2.22. The below vulnerabilities seem to affect this version: CVE-2014-0231 CVE-2013-5704 CVE-2014-0118

Re: Debian PHP upgrade

2015-03-25 Thread Paul Wise
On Wed, Mar 25, 2015 at 9:37 PM, Andile Ntebe wrote: > Im not sure why Gareth said PHP, I’m referring to Apache 2.2.22. > > The below vulnerabilities seem to affect this version: > Is there a way for us to update to the latest version? All of the CVEs you referenced either do not apply to or are

Re: Debian PHP upgrade

2015-03-25 Thread Andrew Shadura
Andile, On 25 March 2015 at 14:37, Andile Ntebe wrote: > Hi > > Im not sure why Gareth said PHP, I’m referring to Apache 2.2.22. > > The below vulnerabilities seem to affect this version: If you read the changelog to the latest version available in stable, you'll find answers to all of your ques

Re: Debian PHP upgrade

2015-03-25 Thread Frederic Peters
Hi Andile, > Im not sure why Gareth said PHP, I’m referring to Apache 2.2.22. > > The below vulnerabilities seem to affect this version: > > CVE-2014-0231 > ... As Paul noted earlier, you can use https://security-tracker.debian.org/

Re: Debian PHP upgrade

2015-03-25 Thread Paul Wise
On Wed, Mar 25, 2015 at 9:37 PM, Andile Ntebe wrote: > The below vulnerabilities seem to affect this version: BTW: Please install debsecan to determine which packages have unfixed security issues or available security issues: https://wiki.debian.org/DebianSecurity/debsecan Please install debia

Re: Debian PHP upgrade

2015-03-25 Thread Andile Ntebe
Debian 7.6 All the CVEs for Apache 2.2.22 On 2015/03/25, 1:53 PM, "Paul Wise" wrote: >On Wed, Mar 25, 2015 at 7:22 PM, Andile Ntebe wrote: > >> We have Apache/2.2.22 on our Debian boxes. > >Which Debian version number? > >> Ive tried using apt-get update and apt-get upgrade to try and get us

Re: Debian PHP upgrade

2015-03-25 Thread Philip Hands
Andile Ntebe writes: > Hi > > Im not sure why Gareth said PHP, I’m referring to Apache 2.2.22. > > The below vulnerabilities seem to affect this version: You seem not to have noticed that Debian fixes security issues in stable versions of our packages, so you're comparing the version that Apache

Bug#781173: ITP: crmsh -- Command-line interface for High-Availability cluster management on GNU/Linux systems

2015-03-25 Thread Richard B Winters
Package: wnpp Severity: wishlist Owner: Richard B Winters * Package name: crmsh Version : 2.2.0~rc2+git.115.g0e24f25 Upstream Author : Dejan Muhamedagic , Kristoffer Gronlund * URL : https://github.com/ClusterLabs/crmsh * License : GPL-2+ Programming Lang:

Bug#781183: ITP: libsemver-perl -- Perl implementation of the Semantic Versioning 1.0.0 Specification

2015-03-25 Thread Axel Beckert
Package: wnpp Owner: Axel Beckert Severity: wishlist * Package name: libsemver-perl Version : 0.6.0 Upstream Author : David E. Wheeler * URL : https://metacpan.org/release/SemVer * License : Artistic or GPL-1+ Programming Lang: Perl Description : Perl

Bug#781189: ITP: lift -- Integration and functional testing framework

2015-03-25 Thread Nicolas Delvaux
Package: wnpp Severity: wishlist Owner: Nicolas Delvaux * Package name: lift Version : 2.0.0 Upstream Author : Nicolas Delvaux * URL : https://github.com/Malizor/lift * License : GPL-2+ Programming Lang: Python3 Description : Integration and functional