Re: Please accept bcfg2 from t-p-u (was Re: Some security-related issues)

2007-02-01 Thread Luk Claes
Neil McGovern wrote: > On Sat, Jan 27, 2007 at 05:55:11PM +, Neil McGovern wrote: >> On Sat, Jan 27, 2007 at 06:13:09PM +0100, Luk Claes wrote: >>> Neil McGovern wrote: On Fri, Jan 26, 2007 at 10:30:40PM +0100, Moritz Muehlenhoff wrote: > Can you check, whether the changes in bcfg2 in

Please accept bcfg2 from t-p-u (was Re: Some security-related issues)

2007-02-01 Thread Neil McGovern
On Sat, Jan 27, 2007 at 05:55:11PM +, Neil McGovern wrote: > On Sat, Jan 27, 2007 at 06:13:09PM +0100, Luk Claes wrote: > > Neil McGovern wrote: > > > On Fri, Jan 26, 2007 at 10:30:40PM +0100, Moritz Muehlenhoff wrote: > > >> Can you check, whether the changes in bcfg2 in sid can be allowed in?

Re: Some security-related issues

2007-01-30 Thread Luk Claes
Moritz Muehlenhoff wrote: Some more. Please check, whether the version in sid is acceptable: Hmmm, I don't think we will find time to review them thoroughly, see below: gosa 2.5.8-1 CVE-2007-0313 176 files changed, 18701 insertions(+), 14519 deletions(-) openser 1.1.1-1

Re: Some security-related issues

2007-01-29 Thread Moritz Muehlenhoff
Some more. Please check, whether the version in sid is acceptable: gosa 2.5.8-1 CVE-2007-0313 openser 1.1.1-1 CVE-2006-6875 CVE-2006-6876 kernel-patch-grsecurity2 CVE-2007-0257 Apprently unproblematic: gforge 4.5.14-20 CVE-2007-0176 -- To UNSUBSCRIBE, email to [EM

Re: Some security-related issues

2007-01-27 Thread Neil McGovern
On Sat, Jan 27, 2007 at 06:13:09PM +0100, Luk Claes wrote: > Neil McGovern wrote: > > On Fri, Jan 26, 2007 at 10:30:40PM +0100, Moritz Muehlenhoff wrote: > >> Can you check, whether the changes in bcfg2 in sid can be allowed in? > >> Otherwise this will need to be fixed through t-p-u. > >> > > > >

Re: Some security-related issues

2007-01-27 Thread Luk Claes
Neil McGovern wrote: > On Fri, Jan 26, 2007 at 10:30:40PM +0100, Moritz Muehlenhoff wrote: >> Can you check, whether the changes in bcfg2 in sid can be allowed in? >> Otherwise this will need to be fixed through t-p-u. >> > > FWIW, there's a packages waiting in NEW on klecker with the security fix

Re: Some security-related issues

2007-01-27 Thread Luk Claes
Neil McGovern wrote: > On Fri, Jan 26, 2007 at 10:30:40PM +0100, Moritz Muehlenhoff wrote: >> If anyone has some time available, please NMU 406628. >> > > geoip 1.3.17-1.1 uploaded, please unblock :) Unblocked. Cheers Luk -- Luk Claes - http://people.debian.org/~luk - GPG key 1024D/9B7C328D F

Re: Some security-related issues

2007-01-27 Thread Luk Claes
Moritz Muehlenhoff wrote: > Please review/unfreeze wireshark (0.99.4-4) unstable; urgency=high > |* Backported security fixes from 0.99.5pre1 > | * The TCP dissector could hang or crash while reassembling HTTP > packets. > | * The HTTP dissector could crash. > | * On some system

Re: Some security-related issues

2007-01-27 Thread Neil McGovern
On Fri, Jan 26, 2007 at 10:30:40PM +0100, Moritz Muehlenhoff wrote: > If anyone has some time available, please NMU 406628. > geoip 1.3.17-1.1 uploaded, please unblock :) Neil -- bah Germans. You just put 100 DDs in one country and then they all become friends of each other. sign

Re: Some security-related issues

2007-01-27 Thread Neil McGovern
On Fri, Jan 26, 2007 at 10:30:40PM +0100, Moritz Muehlenhoff wrote: > Can you check, whether the changes in bcfg2 in sid can be allowed in? > Otherwise this will need to be fixed through t-p-u. > FWIW, there's a packages waiting in NEW on klecker with the security fix in. This should make it's wa

Some security-related issues

2007-01-26 Thread Moritz Muehlenhoff
Please review/unfreeze wireshark (0.99.4-4) unstable; urgency=high |* Backported security fixes from 0.99.5pre1 | * The TCP dissector could hang or crash while reassembling HTTP packets. | * The HTTP dissector could crash. | * On some systems, the IEEE 802.11 dissector could cras