Le 08/06/2018 à 22:24, Adam D. Barratt a écrit :
Control: tags -1 + moreinfo
On Thu, 2017-12-28 at 17:32 +0100, Bertrand Marc wrote:
Would you allow an update of libextractor 1.3-2 in Jessie to fix
several minor security issues?
7 issues skipped by the security teams:
[...]
* CVE-2017
Le 10/02/2018 à 11:13, Julien Cristau a écrit :
> Control: tag -1 moreinfo
>
> On Thu, Dec 28, 2017 at 17:11:02 +0100, Bertrand Marc wrote:
>
>> diff -Nru libextractor-1.3/debian/patches/CVE-2017-15600.patch
>> libextractor-1.3/debian/patches/CVE-2017-15600.patch
>&g
abilities, NULL Pointer Dereferences, heap-based
+buffer overflows, integer signedness errors and out-of-bounds read that
+may lead to a denial-of-service (application crash) or have other
+ unspecified impact.
+
+ -- Bertrand Marc Wed, 27 Dec 2017 19:01:53 +0100
+
libextractor (1:1.
heap-based
+buffer overflows, integer signedness errors and out-of-bounds read that
+may lead to a denial-of-service (application crash) or have other
+ unspecified impact.
+
+ -- Bertrand Marc Thu, 28 Dec 2017 11:39:33 +0100
+
libextractor (1:1.3-4) unstable; urgency=medium
* Update
,
Bertrand Marc
diff -Nru gnunet-gtk-0.10.1/debian/changelog gnunet-gtk-0.10.1/debian/changelog
--- gnunet-gtk-0.10.1/debian/changelog 2016-08-20 13:04:30.0 +0200
+++ gnunet-gtk-0.10.1/debian/changelog 2017-02-28 20:01:19.0 +0100
@@ -1,3 +1,10 @@
+gnunet-gtk (0.10.1-5) unstable; urgency
Hi,
Le 23/07/2016 à 11:56, Emilio Pozuelo Monfort a écrit :
> On 23/07/16 11:35, Bertrand Marc wrote:
>> Do you think we could allow the libmicrohttpd transition ?
>
> Yes. Go ahead.
Thanks ! I uploaded a new revision targeting unstable to
mentors [1] and I asked Holger Levsen (
Hi,
Le 21/07/2016 à 18:58, Emilio Pozuelo Monfort a écrit :
> On 21/07/16 15:53, Jonathan Wiltshire wrote:
>> On 2016-07-19 20:19, Emilio Pozuelo Monfort wrote:
>> As a DM, Bertrand can request a guest account on a porterbox through
>> https://nm.debian.org
>> (log in and request a new status)
>
Hi,
Le 19/07/2016 à 21:19, Emilio Pozuelo Monfort a écrit :
> In lack of that, do you know how much the ABI changed?
Sorry I missed that bit in my first message. To my mind (but I am not
sure), the soname bump comes from a new member in the middle of a union
struct exposed in /usr/include/microht
August, 7.
Best regards,
Bertrand Marc
[1] https://release.debian.org/transitions/html/auto-libmicrohttpd.html
[2] https://nm.debian.org/public/process/bmarc
Ben file:
title = "libmicrohttpd";
is_affected = .depends ~
/(libmicrohttpd\-dbg|libmicrohttpd10|libmicrospdy\-dbg|libmicr
Hello Andreas,
Le 10/04/2016 13:52, Andreas Beckmann a écrit :
> On Sun, 21 Feb 2016 11:00:14 +0100 Bertrand Marc
> wrote:
>> Do you think we could find a solution to restore the dependency and let
>> playonlinux migrate to testing ?
>
> What about
>
> * split a
Hi Adam,
Le 09/04/2016 17:54, Adam D. Barratt a écrit :
> It's customary to provide an explanation when re-opening bugs,
> particularly ones old enough to have been archived.
>
> Regards,
>
> Adam
>
Sorry, I didn't know that.
In fact I thought I reopened this bug with my message the 21/02/201
Le 20/02/2016 22:53, Julien Cristau a écrit :
> Seems to be in testing now, closing.
>
> Cheers,
> Julien
Hello Julien,
Indeed playonlinux migrated to testing, thanks to Markus Koschany who
"removed dependency on wine32|wine32-development again to ensure the
package can migrate to testing." in 4
Package: release.debian.org
Severity: normal
User: release.debian@packages.debian.org
Usertags: britney
Dear release developpers,
Playonlinux is a arch:all package (it is written in python and bash)
which depends on the 32 bits version of wine. Therefore I
added a dependency on wine32|wine32-
Dear developpers,
I am trying to fix Debian bug #783875 [1]: playonlinux (which is arch
independant) should depend on the 32 bits version of wine. Therefore I
added a dependency on wine32|wine32-development, but it seems the
package will not migrate to testing [2], because wine32 is not available
-7038.
++ stack overflow in MHD_digest_auth_check(), patch picked upstream,
+CVE-2013-7039.
++ handle case that original allocation request was zero and fix theoretical
+overflow issue reported by Florian Weimer, patch picked upstream.
+
+ -- Bertrand Marc Thu, 26 Dec 2013 15:41:39
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA256
Le 30/01/2013 20:54, Julien Cristau a écrit :
> On Mon, Jan 28, 2013 at 10:43:11 +0100, Bertrand Marc wrote:
>
>> * Fix build on kfreebsd, thanks to Christoph Egger (Closes:
>> #688486).
>
> Is the package tested to a
TCH_UID.
++ drop patch about libgcrypt version check.
+
+ -- Bertrand Marc Sun, 13 Jan 2013 18:00:29 +0100
+
+gnunet (0.9.3-4) unstable; urgency=low
+
+ [ Bertrand Marc ]
+ * Drop dependency on gettext for gnunet-client and gnunet-server as it is not
+necessary, thanks to Ivan Shmakov (Clo
+ gnunet-0.9.3/debian/changelog 2012-12-09 11:10:40.0 +0100
@@ -1,3 +1,15 @@
+gnunet (0.9.3-3wheezy1) wheezy; urgency=low
+
+ [ Bertrand Marc ]
+ * Revert the use dh_installdocs --link-doc (Closes: #687875, #687881,
+#687883).
+ * Install libnss to /lib, really fix #688590, thanks to
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA256
Hello Julien,
Thank you for your answer. Does it mean I should prepare a new version
with the following changes :
Le 25/11/2012 20:17, Julien Cristau a écrit :
>> + * Revert the use dh_installdocs --link-doc (Closes: #687875,
>> #687881, +#687
-0.9.3/debian/changelog 2012-11-12 19:55:00.0 +0100
@@ -1,3 +1,27 @@
+gnunet (0.9.3-4) unstable; urgency=low
+
+ [ Bertrand Marc ]
+ * Drop dependency on gettext for gnunet-client and gnunet-server as it is not
+necessary, thanks to Ivan Shmakov (Closes: #690860).
+ * Revert the use
91154).
+
+ -- Bertrand Marc Mon, 22 Oct 2012 22:52:43 +0200
+
gnunet (0.9.3-3) unstable; urgency=low
* debian/control: update Vcs-* to the new repository in collab-maint.
diff -Nru gnunet-0.9.3/debian/control gnunet-0.9.3/debian/control
--- gnunet-0.9.3/debian/control 2012-08-05
before changing its
+permissions (Closes: #688484).
+
+ -- Bertrand Marc Thu, 18 Oct 2012 21:59:44 +0200
+
gnunet (0.9.3-3) unstable; urgency=low
* debian/control: update Vcs-* to the new repository in collab-maint.
diff -Nru gnunet-0.9.3/debian/control gnunet-0.9.3/debian/control
--- gnunet-
tream, following Werner Koch's advice (Closes: #684997).
+ * gnunet-server.postinst: check the existence of a binary before changing its
+permissions (Closes: #688484).
+
+ -- Bertrand Marc Sat, 29 Sep 2012 15:45:53 +0200
+
gnunet (0.9.3-3) unstable; urgency=low
* debian/control: updat
n from upstream:
+https://lists.gnu.org/archive/html/gnunet-svn/2012-07/msg00548.html
+Thanks to Jurij Smakov for the analysis.
+(Closes: #670578)
+ * Fix the logfile name in gnunet-server.logrotate (Closes: #685856).
+
+ -- Bertrand Marc Sun, 05 Aug 2012 20:13:49 +0200
+
gnunet (0.9.3-2) un
gnment.patch, taken from upstream:
+https://lists.gnu.org/archive/html/gnunet-svn/2012-07/msg00548.html
+Thanks to Jurij Smakov for the analysis.
+(Closes: #670578)
+
+ -- Bertrand Marc Sun, 05 Aug 2012 20:13:49 +0200
+
gnunet (0.9.3-2) unstable; urgency=low
* Clean properly dpkg-s
nt32-values to 32-bit boundary":
+new patch sparc_alignment.patch, taken from upstream:
+https://lists.gnu.org/archive/html/gnunet-svn/2012-07/msg00548.html
+Thanks to Jurij Smakov for the analysis.
+ (Closes: #670578)
+
+ -- Bertrand Marc Wed, 01 Aug 2012 22:09:49 +0200
+
gnu
taken from upstream:
+https://lists.gnu.org/archive/html/gnunet-svn/2012-07/msg00548.html
+Thanks to Jurij Smakov for the analysis.
+(Closes: #670578)
+
+ -- Bertrand Marc Wed, 01 Aug 2012 22:09:49 +0200
+
gnunet (0.9.3-2) unstable; urgency=low
* Clean properly dpkg-st
Dear release team,
I prepared a new revision of gnunet, fixing a grave bug (#670578),
thanks to Gregor Herrmann. Here is the new changelog:
* debian/control: update Vcs-* to the new repository in collab-maint.
* Install only the generated binaries on Hurd, thanks to Cyril Roelandt
(Clos
etc/init.d/skeleton and make
+gnunet-server depend on lsb-base to use LSB logging.
+
+ -- Bertrand Marc Fri, 13 Jul 2012 22:13:55 +0200
+
gnunet (0.9.3-2) unstable; urgency=low
* Clean properly dpkg-statoverride in gnunet-server.postrm
diff -Nru gnunet-0.9.3/debian/control gnunet-0.9.3/debi
upgrade properly depending on the previous version (Closes: #673301).
+ * Rewrite gnunet-server.init based on /etc/init.d/skeleton and make
+gnunet-server depend on lsb-base to use LSB logging.
+
+ -- Bertrand Marc Fri, 13 Jul 2012 22:13:55 +0200
+
gnunet (0.9.3-2) unstable; urgency=low
Hello,
Thank you Holger for cc:ing me.
Le 02/06/2012 23:21, Holger Levsen a écrit :
cc:ing the gnunet maintainer as he told me he was thinking of adoptiong these
packages... (he's also aware of the upstream situation..)
I can confirm I am also interested in adopting gnunet-*.
On Samstag, 2.
Hello,
Despite the wontfix tag on the RFS, libextractor got uploaded to
unstable with gnunet...
Bertrand
--
To UNSUBSCRIBE, email to debian-release-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org
Archive: http://lists.debian.org/4fb569d
Le 11/05/2012 12:17, Cyril Brulebois a écrit :
Cyril Brulebois (11/05/2012):
Unless I hear objections, I'll probably schedule those âtomorrowâ.
BinNMUs for libmicrohttpd scheduled.
Mraw,
KiBi.
It's fine with me. GNUnet 0.8 is not very useful anyway since it is not
compatible with 0.9
Hi Cyril,
2012/5/8 Cyril Brulebois :
> Did you a rebuild test for the reverse dependencies?
Thobias Grimm confirmed a few weeks ago that vdr-plugin-xineliboutput
builds fine with libextractor3. And at this time it seemed to me the
other reverse deps were from the GNUnet stack, so they are written
Package: release.debian.org
Severity: normal
User: release.debian@packages.debian.org
Usertags: transition
Dear Release Team,
I am filing this bug for the transition of the "libextractor" package.
Upstream released a new version, bumping the ABI version (SONAME) from
1c2a to 3.
Among the
Package: release.debian.org
Severity: normal
User: release.debian@packages.debian.org
Usertags: transition
Dear Release Team,
I am filing this bug for the transition of the "libmicrohttpd" package.
Upstream released a new version, bumping the ABI version (SONAME) from 5
to 10.
Among the
Hello,
A new version of gnome-bluetooth is in unstable since 2009-10-11, and since
then gnome-phone-manager is not installable (see [1]).
Could you binNMU gnome-phone-manager to make it depend on the new version of
gnome-bluetooth ?
nmu gnome-phone-manager_0.65-1 . -m 'Rebuild against new gnom
Hi,
I just noticed that Easytag has an "Unblock request by freeze-exception
ignored due to version mismatch". It seems that there was an unblock request
for version 2.1.4-1, but since the last NMU, there is a version mismatch and
easytag can't make it to Lenny.
Since there has been only an NMU cl
38 matches
Mail list logo