Wheezy update of ioquake3?

2017-03-15 Thread Chris Lamb
Hello dear maintainer(s), the Debian LTS team would like to fix the security issues which are currently open in the Wheezy version of ioquake3: https://security-tracker.debian.org/tracker/source-package/ioquake3 Would you like to take care of this yourself? If yes, please follow the workflow we

Re: Wheezy update of r-base?

2017-03-15 Thread Salvatore Bonaccorso
Hi, On Mon, Mar 13, 2017 at 10:12:56PM +0100, Ola Lundqvist wrote: > Hi Dirk > > I had a quick look at this but I stumbled on the version of the package. > Why 3.1.1-1+deb3.3.3u1 ? > And not 3.1.1u1 or even better 3.1.1+deb8u1 ? For the versioning: jessie currently has 3.1.1-1. By only applying

Re: Wheezy update of ioquake3?

2017-03-15 Thread Simon McVittie
On Wed, 15 Mar 2017 at 07:34:36 +, Chris Lamb wrote: > If you don't want to take care of this update, it's not a problem, we > will do our best with your package. Just let us know whether you would > like to review and/or test the updated package before it gets released. Please go ahead, if yo

Re: Wheezy update of ioquake3?

2017-03-15 Thread Chris Lamb
Hi Simon et. al., > Please go ahead, if you consider a game engine to be something that > is worth covering in LTS releases Upon reconsidering I'm going to mark this package as unsupported in Debian LTS. Apologies for the noise/distraction and thank you for your helpful remarks. Regards, --

Re: Wordpress security update

2017-03-15 Thread Craig Small
On Tue, Mar 14, 2017 at 8:44 PM Markus Koschany wrote: > By the way I think your patch cs40155_media_metadata, CVE-2017-6814, > requires a backport of two more functions: wp_kses_post_deep and map_deep. > Damn, you're right. I missed that. Upstream missed it too! I'll need to add those to the sec

Re: Wordpress security update

2017-03-15 Thread Sébastien Delafond
On Mar/15, Craig Small wrote: > Damn, you're right. I missed that. Upstream missed it too! I'll need > to add those to the security package too. I'll take care of removing the current package on security-master, so you don't have to bump the version again. I'll let you know once it's OK to re-upl

Re: Wheezy update of r-base?

2017-03-15 Thread Dirk Eddelbuettel
On 15 March 2017 at 08:37, Salvatore Bonaccorso wrote: | Hi, | | On Mon, Mar 13, 2017 at 10:12:56PM +0100, Ola Lundqvist wrote: | > Hi Dirk | > | > I had a quick look at this but I stumbled on the version of the package. | > Why 3.1.1-1+deb3.3.3u1 ? | > And not 3.1.1u1 or even better 3.1.1+deb8u

Re: Wheezy update of r-base?

2017-03-15 Thread Ola Lundqvist
Hi I just realize that the wheezy version I mentioned was based on stable version. Simply add +deb7u1 to the wheezy version number. / Ola Sent from a phone Den 15 mar 2017 08:37 skrev "Salvatore Bonaccorso" : > Hi, > > On Mon, Mar 13, 2017 at 10:12:56PM +0100, Ola Lundqvist wrote: > > Hi Dirk

Re: Wheezy update of r-base?

2017-03-15 Thread Salvatore Bonaccorso
Hello Dirk! On Wed, Mar 15, 2017 at 06:24:31AM -0500, Dirk Eddelbuettel wrote: > > On 15 March 2017 at 08:37, Salvatore Bonaccorso wrote: > | Hi, > | > | On Mon, Mar 13, 2017 at 10:12:56PM +0100, Ola Lundqvist wrote: > | > Hi Dirk > | > > | > I had a quick look at this but I stumbled on the ver

Re: Wheezy update of calibre?

2017-03-15 Thread Antoine Beaupré
On 2017-03-15 17:56:52, Brian May wrote: > Antoine Beaupré writes: > >> In particular, it seems likely that there are more undocumented but >> public security issues in Calibre. See for example bug #853004: >> >> https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=853004 >> >> But there may be more.

Re: Wordpress security update

2017-03-15 Thread Craig Small
Great stuff, I have rebuilt them with the two missing functions, just need the ok to upload. - Craig On Wed, Mar 15, 2017 at 10:01 PM Sébastien Delafond wrote: > On Mar/15, Craig Small wrote: > > Damn, you're right. I missed that. Upstream missed it too! I'll need > > to add those to the s

Re: Wheezy update of audiofile?

2017-03-15 Thread Alessio Treglia
Hi, On Tue, Mar 14, 2017 at 6:46 AM, Chris Lamb wrote: > Would you like to take care of this yourself? I don't spare much time these days, so unless any Debian Multimedia maintainer steps up, I'd advise you LTS guys to go head please. Thanks. -- Alessio Treglia | www.alessiotreglia.

Re: Wordpress security update

2017-03-15 Thread Craig Small
I saw the rejection of the old package so uploaded it and the new second package got rejected so something is unhappy about all of this. - Craig On Thu, Mar 16, 2017 at 6:23 AM Craig Small wrote: > Great stuff, > I have rebuilt them with the two missing functions, just need the ok to > uplo

Re: Wheezy update of audiofile?

2017-03-15 Thread Ola Lundqvist
Hi Alessio Thank you. I have started with this. Best regards // Ola On 15 March 2017 at 21:36, Alessio Treglia wrote: > Hi, > > On Tue, Mar 14, 2017 at 6:46 AM, Chris Lamb wrote: > > Would you like to take care of this yourself? > > > I don't spare much time these days, so unless any Debian