[Bug 517233] [NEW] bzr merge-package doesn't work for iptables

2010-02-04 Thread Jamie Strandboge
Public bug reported: Binary package hint: bzr-builddeb $ bzr branch lp:ubuntu/lucid/iptables Branched 23 revision(s). $ cd iptables/ $ bzr merge-package lp:debian/squeeze/iptables bzr: ERROR: No such tag: upstream-1.4.6 It isn't clear to me where bzr-builddeb is getting the 'upstream-1.4.6' stri

[Bug 517233] Re: bzr merge-package doesn't work for iptables

2010-02-04 Thread Jamie Strandboge
** Attachment added: "Dependencies.txt" http://launchpadlibrarian.net/38764577/Dependencies.txt -- bzr merge-package doesn't work for iptables https://bugs.launchpad.net/bugs/517233 You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. --

[Bug 502987] Re: PowerDNS Recursor Critical Security Issue - PDNS-2010-01

2010-02-08 Thread Jamie Strandboge
Lucid now has 3.1.7.2-1. ** Changed in: pdns-recursor (Ubuntu Lucid) Status: Confirmed => Fix Released -- PowerDNS Recursor Critical Security Issue - PDNS-2010-01 https://bugs.launchpad.net/bugs/502987 You received this bug notification because you are a member of Ubuntu Bugs, which is a

[Bug 496923] Re: Security/bug fix release: 8.4.2, 8.3.9, 8.1.19

2010-02-08 Thread Jamie Strandboge
** Changed in: postgresql-8.4 (Ubuntu Lucid) Assignee: Jamie Strandboge (jdstrand) => (unassigned) ** Changed in: postgresql-8.3 (Ubuntu Lucid) Assignee: Jamie Strandboge (jdstrand) => (unassigned) -- Security/bug fix release: 8.4.2, 8.3.9, 8.1.19 https://bugs.launchpad.ne

[Bug 202750] Re: Directory traversal, XSS, arbitrary code execution vulnerabilities

2010-02-08 Thread Jamie Strandboge
Please do not assign the Ubuntu Security Team to bugs. The team is already subscribed, which is enough. Additionally, this is a community supported package and not officially supported. -- Directory traversal, XSS, arbitrary code execution vulnerabilities https://bugs.launchpad.net/bugs/202750 Y

[Bug 202750] Re: Directory traversal, XSS, arbitrary code execution vulnerabilities

2010-02-08 Thread Jamie Strandboge
This was fixed in 2.8.0-3. ** Changed in: jspwiki (Ubuntu) Status: Confirmed => Fix Released -- Directory traversal, XSS, arbitrary code execution vulnerabilities https://bugs.launchpad.net/bugs/202750 You received this bug notification because you are a member of Ubuntu Bugs, which is su

[Bug 216301] Re: [CVE-2008-0444, CVE-2008-0445] XSS and DoS

2010-02-08 Thread Jamie Strandboge
Please do not assign the Ubuntu Security Team to bugs. The team is already subscribed, which is enough. Additionally, this package is in universe and is community supported. If you are able, perhaps you could prepare debdiffs to fix this by following https://wiki.ubuntu.com/SecurityTeam/UpdateProce

[Bug 446838] Re: Multiple cross-site request forgery (CSRF) vulnerabilities in SquirrelMail 1.4.19 and earlier

2010-02-08 Thread Jamie Strandboge
Hardy and Karmic copied. Leaving the verification-needed tag for Intrepid and Jaunty. Can someone please test Jaunty and Intrepid? -- Multiple cross-site request forgery (CSRF) vulnerabilities in SquirrelMail 1.4.19 and earlier https://bugs.launchpad.net/bugs/446838 You received this bug notific

[Bug 485973] Re: php5-cgi: IMAP toolkit crash

2010-02-08 Thread Jamie Strandboge
** Patch removed: "php-imap_5.2.3-0ubuntu3.1.debdiff" http://launchpadlibrarian.net/37509646/php-imap_5.2.3-0ubuntu3.1.debdiff -- php5-cgi: IMAP toolkit crash https://bugs.launchpad.net/bugs/485973 You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed

[Bug 485973] Re: php5-cgi: IMAP toolkit crash

2010-02-08 Thread Jamie Strandboge
Based on my research the patch is incorrect. Lucid has the incorrect patch in it and needs to be updated. You should be using http://svn.php.net/viewvc?view=revision&revision=267399. If this is in error, please resubmit the patches with the correct references for the origin of the patch. Unsubscrib

[Bug 518226] Re: DSA-1980-1 fix not in lucid, or karmic

2010-02-08 Thread Jamie Strandboge
** Changed in: ircd-hybrid (Ubuntu Jaunty) Status: New => Fix Committed ** Changed in: ircd-hybrid (Ubuntu Jaunty) Importance: Undecided => Medium -- DSA-1980-1 fix not in lucid, or karmic https://bugs.launchpad.net/bugs/518226 You received this bug notification because you are a membe

[Bug 485973] Re: php5-cgi: IMAP toolkit crash

2010-02-08 Thread Jamie Strandboge
Luca, you are correct about the USN. The patch in the USN came from Debian but the code in Ubuntu is not built since php-imap is broken out (and therefore, unfortunately, not tested). Looking at the patch, a lot of the differences can be attributed to changing the memory allocation for 'string' fro

[Bug 485973] Re: php5-cgi: IMAP toolkit crash

2010-02-08 Thread Jamie Strandboge
ACK for hardy - karmic ** Changed in: php-imap (Ubuntu Lucid) Status: Incomplete => Fix Released ** Changed in: php-imap (Ubuntu Hardy) Status: Incomplete => Fix Committed ** Changed in: php-imap (Ubuntu Intrepid) Status: Incomplete => Fix Committed ** Changed in: php-imap

[Bug 515087] Re: /etc/aiccu.conf world readable by default

2010-02-08 Thread Jamie Strandboge
** Also affects: aiccu (Ubuntu Hardy) Importance: Undecided Status: New ** Also affects: aiccu (Ubuntu Intrepid) Importance: Undecided Status: New ** Also affects: aiccu (Ubuntu Jaunty) Importance: Undecided Status: New ** Also affects: aiccu (Ubuntu Karmic) Impo

[Bug 515087] Re: /etc/aiccu.conf world readable by default

2010-02-08 Thread Jamie Strandboge
The problem seems to be this bit in postinst: if [ "$USERNAME" = "" ]; then # Not configured yet, thus skip exit 0; fi The end of postinst has this: chmod 600 $CONFIGFILE So what is happening is that in the default Ubuntu install the user is not prompted with debconf questions, so

[Bug 485973] Re: php5-cgi: IMAP toolkit crash

2010-02-09 Thread Jamie Strandboge
Per Marc's comment on 2010-01-12, the Dapper debdiff needs to be fixed still. Adding 'patch-needswork' tag and leaving Dapper task as Incomplete. ** Tags added: patch-needswork -- php5-cgi: IMAP toolkit crash https://bugs.launchpad.net/bugs/485973 You received this bug notification because you a

[Bug 516854] Re: [lucid] can't configure VPN

2010-02-12 Thread Jamie Strandboge
It works if I install network-manager-openvpn-gnome. -- [lucid] can't configure VPN https://bugs.launchpad.net/bugs/516854 You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. -- ubuntu-bugs mailing list ubuntu-b...@lists.ubuntu.com https://

[Bug 518919] Sync chrony 1.23-7 (universe) from Debian unstable (main)

2010-02-12 Thread Jamie Strandboge
[Updating] chrony (1.23-6 [Ubuntu] < 1.23-7 [Debian]) * Trying to add chrony... - http://ftp.debian.org/debian/> - - http://ftp.debian.org/debian/> I: chrony [universe] -> chrony_1.23-6 [universe]. ** Changed in: chrony (Ubuntu) Status: Confirmed => Fix Released -- Sync chrony 1.

[Bug 643691] FFe: Please sync ubuntu-dev-tools 0.103 (universe) from Debian experimental (main)

2010-09-24 Thread Jamie Strandboge
[Updating] ubuntu-dev-tools (0.101 [Ubuntu] < 0.103 [Debian]) * Trying to add ubuntu-dev-tools... 2010-09-24 16:01:03 INFO - http://ftp.debian.org/debian/> 2010-09-24 16:01:03 INFO - http://ftp.debian.org/debian/> I: ubuntu-dev-tools [universe] -> ubuntu-dev-tools_0.101 [universe]. **

[Bug 717145] Re: [update-maintainer] Error: No Maintainer field found in ./debian/control.

2011-02-11 Thread Jamie Strandboge
*** This bug is a duplicate of bug 701487 *** https://bugs.launchpad.net/bugs/701487 This seems to be related to the fact that gnome-screensaver has a control.in file, and it is what is updated: $ diff ./old/gnome-screensaver-2.30.0/debian/control gnome-screensaver-2.30.0/debian/control $ di

[Bug 1863119] [NEW] submittodebian: TypeError: write() argument must be str, not bytes

2020-02-13 Thread Jamie Strandboge
Public bug reported: On focal, I tried to use submittodebian and encountered this: $ submittodebian Traceback (most recent call last): File "/usr/bin/submittodebian", line 264, in main() File "/usr/bin/submittodebian", line 243, in main f.write(bug_body.encode('utf-8')) TypeError: w

[Bug 363904] Re: SLURM Security Flaw

2009-04-24 Thread Jamie Strandboge
Marked In Progress according to https://wiki.ubuntu.com/SecurityTeam/UpdatePreparation#Submission ** Also affects: slurm-llnl (Ubuntu Hardy) Importance: Undecided Status: New ** Also affects: slurm-llnl (Ubuntu Intrepid) Importance: Undecided Status: New ** Also affects: slur

[Bug 365078] Re: Its cool.

2009-04-24 Thread Jamie Strandboge
Thank you for using Ubuntu and taking the time to report a bug. Your report should contain, at a minimum, the following information so we can better find the source of the bug and work to resolve it. Submitting the bug about the proper source package is essential. For help see https://wiki.ubuntu.

[Bug 365780] Re: package noip2 2.1.9-1 failed to install/upgrade:

2009-04-24 Thread Jamie Strandboge
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 345217] Re: Fix vulnerabilities in channels/chan_ia2x.c

2009-04-27 Thread Jamie Strandboge
** Also affects: asterisk (Ubuntu Hardy) Importance: Undecided Status: New ** Also affects: asterisk (Ubuntu Intrepid) Importance: Undecided Status: New ** Also affects: asterisk (Ubuntu Jaunty) Importance: Undecided Status: New ** Also affects: asterisk (Ubuntu Kar

[Bug 365823] Re: clamav-milter chowns root directory

2009-04-28 Thread Jamie Strandboge
Yes, this should go through -security. Are other releases besides Jaunty affected? -- clamav-milter chowns root directory https://bugs.launchpad.net/bugs/365823 You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. -- ubuntu-bugs mailing list

[Bug 345217] Re: Fix vulnerabilities in channels/chan_ia2x.c

2009-04-28 Thread Jamie Strandboge
Thanks for your debdiff Brian! :) Here are some comments: 1. You have supplied two patches for CVE-2008-1897 (debian/patches/CVE-2008-1897 and debian/patches/asterisk-CVE-2008-1897). Please remove asterisk-CVE-2008-1897 2. CVE-2008-1897 seems to be missing parts of upstream's http://downloads.

[Bug 368785] Re: Please copy 0.94.dfsg.2-1ubuntu0.3~dapper1 and rdepends from dapper-backports to dapper-security

2009-04-29 Thread Jamie Strandboge
These need to be rebuilt in the security PPA, so rather than doing a pocket copy, I will do a no change rebuild for each. Also 'sylpheed- claws-gtk-clamav' should be simply 'sylpheed-claws-clamav'. -- Please copy 0.94.dfsg.2-1ubuntu0.3~dapper1 and rdepends from dapper-backports to dapper-securit

[Bug 368785] Re: Please copy 0.94.dfsg.2-1ubuntu0.3~dapper1 and rdepends from dapper-backports to dapper-security

2009-04-30 Thread Jamie Strandboge
Yeah, I wasn't commenting on sylpheed-claws-* worth, just that sylpheed- claws-gtk-clamav should be 'sylpheed-claws' (I know I said sylpheed- claws-clamav, but I meant sylpheed-claws ;). I am working on these now. -- Please copy 0.94.dfsg.2-1ubuntu0.3~dapper1 and rdepends from dapper-backports t

[Bug 368785] Re: Please copy 0.94.dfsg.2-1ubuntu0.3~dapper1 and rdepends from dapper-backports to dapper-security

2009-04-30 Thread Jamie Strandboge
** Changed in: clamav (Ubuntu) Status: In Progress => Fix Committed -- Please copy 0.94.dfsg.2-1ubuntu0.3~dapper1 and rdepends from dapper-backports to dapper-security https://bugs.launchpad.net/bugs/368785 You received this bug notification because you are a member of Ubuntu Bugs, which

[Bug 368613] Re: Please copy 0.94.dfsg.2-1ubuntu0.3~hardy3 and rdepends from hardy-backports to hardy-security

2009-04-30 Thread Jamie Strandboge
Processing these now. -- Please copy 0.94.dfsg.2-1ubuntu0.3~hardy3 and rdepends from hardy-backports to hardy-security https://bugs.launchpad.net/bugs/368613 You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. -- ubuntu-bugs mailing list u

[Bug 370031] Re: Integer signedness error in the store_id3_text function in the ID3v2 code in mpg123 before 1.7.2 allows remote attackers to cause a denial of service (out-of-bounds memory access) and

2009-04-30 Thread Jamie Strandboge
** Also affects: mpg123 (Ubuntu Dapper) Importance: Undecided Status: New ** Also affects: mpg123 (Ubuntu Hardy) Importance: Undecided Status: New ** Also affects: mpg123 (Ubuntu Intrepid) Importance: Undecided Status: New ** Also affects: mpg123 (Ubuntu Jaunty)

[Bug 370502] [NEW] lintian error: md5sum-mismatch usr/share/kde4/services/plasma-applet-windowlist.desktop

2009-05-01 Thread Jamie Strandboge
Public bug reported: plasma-widget-windowlist had the following lintian error. It would be good if it got fixed up: $ lintian plasma-widget-windowlist_3.0-0ubuntu1_armel.deb E: plasma-widget-windowlist: md5sum-mismatch usr/share/kde4/services/plasma-applet-windowlist.desktop ** Affects: plasma-

[Bug 370031] Re: Integer signedness error in the store_id3_text function in the ID3v2 code in mpg123 before 1.7.2 allows remote attackers to cause a denial of service (out-of-bounds memory access) and

2009-05-01 Thread Jamie Strandboge
Marking 'In Progress' as per https://wiki.ubuntu.com/SecurityTeam/UpdatePreparation#Submission Thanks for the debdiffs Stefan! :) Can you indicate the testing performed? ** Changed in: mpg123 (Ubuntu Hardy) Status: Confirmed => In Progress ** Changed in: mpg123 (Ubuntu Intrepid) St

[Bug 370031] Re: Integer signedness error in the store_id3_text function in the ID3v2 code in mpg123 before 1.7.2 allows remote attackers to cause a denial of service (out-of-bounds memory access) and

2009-05-01 Thread Jamie Strandboge
The patches themselves look good. I've uploaded hardy-jaunty to the security PPA. I can publish these and karmic once I get feedback on testing. BTW-- the Dapper task was mark 'Invalid', does this issue not affect Dapper? ** Changed in: mpg123 (Ubuntu Hardy) Status: In Progress => Fix Comm

[Bug 370031] Re: Integer signedness error in the store_id3_text function in the ID3v2 code in mpg123 before 1.7.2 allows remote attackers to cause a denial of service (out-of-bounds memory access) and

2009-05-04 Thread Jamie Strandboge
This was fixed in 1.7.2-1, and Karmic now has 1.7.2-3ubuntu1. ** Changed in: mpg123 (Ubuntu Karmic) Status: In Progress => Fix Released -- Integer signedness error in the store_id3_text function in the ID3v2 code in mpg123 before 1.7.2 allows remote attackers to cause a denial of service

[Bug 368613] Re: Please copy 0.94.dfsg.2-1ubuntu0.3~hardy3 and rdepends from hardy-backports to hardy-security

2009-05-04 Thread Jamie Strandboge
clamav (0.94.dfsg.2-1ubuntu0.3~hardy4) hardy-security; urgency=low * No change rebuild from backports for use with ClamAV 0.94 ** Changed in: clamav (Ubuntu) Status: In Progress => Fix Released -- Please copy 0.94.dfsg.2-1ubuntu0.3~hardy3 and rdepends from hardy-backports to hardy-se

[Bug 365823] Re: clamav-milter chowns root/arbitrary directory

2009-05-04 Thread Jamie Strandboge
** Changed in: clamav (Ubuntu Jaunty) Status: In Progress => Fix Committed -- clamav-milter chowns root/arbitrary directory https://bugs.launchpad.net/bugs/365823 You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. -- ubuntu-bugs mai

[Bug 368785] Re: Please copy 0.94.dfsg.2-1ubuntu0.3~dapper1 and rdepends from dapper-backports to dapper-security

2009-05-04 Thread Jamie Strandboge
clamav (0.94.dfsg.2-1ubuntu0.3~dapper2) dapper-security; urgency=low * No change rebuild from backports ** Changed in: clamav (Ubuntu) Status: Fix Committed => Fix Released -- Please copy 0.94.dfsg.2-1ubuntu0.3~dapper1 and rdepends from dapper-backports to dapper-security https://bug

[Bug 341205] Re: jaunty: Apparmor doesn't parse logs and doesnt generally work.

2009-11-03 Thread Jamie Strandboge
** Also affects: apparmor (Ubuntu Jaunty) Importance: Undecided Status: New ** Also affects: apparmor (Ubuntu Karmic) Importance: Undecided Status: New ** Also affects: apparmor (Ubuntu Lucid) Importance: High Assignee: Jamie Strandboge (jdstrand) Status

[Bug 341205] Re: jaunty: Apparmor doesn't parse logs and doesnt generally work.

2009-11-03 Thread Jamie Strandboge
I meant to say, the remaining Jaunty part is bug #400349. -- jaunty: Apparmor doesn't parse logs and doesnt generally work. https://bugs.launchpad.net/bugs/341205 You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. -- ubuntu-bugs mailing li

[Bug 341205] Re: jaunty: Apparmor doesn't parse logs and doesnt generally work.

2009-11-03 Thread Jamie Strandboge
Actually, in looking at the profile more carefully, I think this is bug #400349. See https://bugs.launchpad.net/ubuntu/+source/dhcp3/+bug/400349/comments/7 for details. If this is in error, please adjust. -- jaunty: Apparmor doesn't parse logs and doesnt generally work. https://bugs.launchpad.net

[Bug 341205] Re: jaunty: Apparmor doesn't parse logs and doesnt generally work.

2009-11-03 Thread Jamie Strandboge
Marking Jaunty task as 'Invalid' as it is a dupe of #400349. ** Changed in: apparmor (Ubuntu Jaunty) Importance: High => Undecided ** Changed in: apparmor (Ubuntu Jaunty) Status: New => Invalid -- jaunty: Apparmor doesn't parse logs and doesnt generally work. https://bugs.launchpad.ne

[Bug 472952] Re: html file does not open from within evince (pdf-file)

2009-11-03 Thread Jamie Strandboge
** Changed in: apparmor (Ubuntu) Status: New => In Progress ** Changed in: apparmor (Ubuntu) Assignee: (unassigned) => Jamie Strandboge (jdstrand) ** Changed in: apparmor (Ubuntu) Milestone: None => karmic-updates -- html file does not open from within evince (pdf-fi

[Bug 460125] Re: AppArmor not allowing evince to read files needed for theming

2009-11-03 Thread Jamie Strandboge
mitted ** Changed in: apparmor (Ubuntu Karmic) Assignee: (unassigned) => Jamie Strandboge (jdstrand) -- AppArmor not allowing evince to read files needed for theming https://bugs.launchpad.net/bugs/460125 You received this bug notification because you are a member of Ubuntu Bugs,

[Bug 460125] Re: AppArmor not allowing evince to read files needed for theming

2009-11-03 Thread Jamie Strandboge
SRU REQUEST 1. gnome abstraction does not allow access to themes. Fix is trivial. 2. The fix is not in Lucid yet 3. The fix is to adjust profiles/apparmor.d/abstractions/gnome: @{HOME}/.themes/r, @{HOME}/.themes/** r, 4. I don't have a test case. The problem was

[Bug 472952] Re: html file does not open from within evince (pdf-file)

2009-11-03 Thread Jamie Strandboge
SRU REQUEST 1. Users of evince are unable to launch their preferred browser, epiphany. The bug arrived when epiphany packaging changed (ie epiphany- gecko was dropped). Fix is trivial. 2. The fix is not in Lucid yet 3. The fix is to add the following to profiles/apparmor.d/abstractions/ubuntu-

[Bug 468565] Re: Regression: Using evince in mozplugger fails with "Error opening file: Permission denied"

2009-11-03 Thread Jamie Strandboge
=> Incomplete ** Changed in: mozplugger (Ubuntu) Assignee: (unassigned) => Jamie Strandboge (jdstrand) -- Regression: Using evince in mozplugger fails with "Error opening file: Permission denied" https://bugs.launchpad.net/bugs/468565 You received this bug notification b

[Bug 472952] Re: html file does not open from within evince (pdf-file)

2009-11-03 Thread Jamie Strandboge
t; Fix Committed ** Changed in: apparmor (Ubuntu Karmic) Assignee: (unassigned) => Jamie Strandboge (jdstrand) -- html file does not open from within evince (pdf-file) https://bugs.launchpad.net/bugs/472952 You received this bug notification because you are a member of Ubuntu Bugs, which is s

[Bug 461773] Re: outdated hardy-backports package being used instead of hardy-updates

2009-11-04 Thread Jamie Strandboge
Micah, thanks for the debdiff! In the future, please be sure to wrap lines to 80 characters in the changelog and generally follow https://wiki.ubuntu.com/SecurityTeam/UpdatePreparation#Packaging. I have made these changes and I am going to upload through -security. ** Changed in: flashplugin-nonfr

[Bug 463082] Re: privilege escalation for institution admins CVE-2009-3298

2009-11-04 Thread Jamie Strandboge
This is now public: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-3298 ** Visibility changed to: Public ** CVE added: http://www.cve.mitre.org/cgi- bin/cvename.cgi?name=2009-3298 -- privilege escalation for institution admins CVE-2009-3298 https://bugs.launchpad.net/bugs/463082 You r

[Bug 463082] Re: privilege escalation for institution admins CVE-2009-3298

2009-11-04 Thread Jamie Strandboge
Thanks for the debdiffs! The jaunty debdiff did not apply cleanly due to the previous version's pocket. Both debdiffs need to use '-security' as part of the distribution name. See https://wiki.ubuntu.com/SecurityTeam/UpdatePreparation#Packaging for details. I have fixed these and will upload them

[Bug 460125] Re: AppArmor not allowing evince to read files needed for theming

2009-11-04 Thread Jamie Strandboge
Installed 2.3.1+1403-0ubuntu27.1 from -proposed, and there were no regressions. -- AppArmor not allowing evince to read files needed for theming https://bugs.launchpad.net/bugs/460125 You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. -- u

[Bug 463082] Re: privilege escalation for institution admins CVE-2009-3298

2009-11-05 Thread Jamie Strandboge
** Changed in: mahara (Ubuntu Jaunty) Status: Fix Committed => Fix Released ** Changed in: mahara (Ubuntu Karmic) Status: Fix Committed => Fix Released -- privilege escalation for institution admins CVE-2009-3298 https://bugs.launchpad.net/bugs/463082 You received this bug notifica

[Bug 463083] Re: cross-site scripting vulnerability in resume blocktype CVE-2009-3299

2009-11-05 Thread Jamie Strandboge
** Visibility changed to: Public -- cross-site scripting vulnerability in resume blocktype CVE-2009-3299 https://bugs.launchpad.net/bugs/463083 You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. -- ubuntu-bugs mailing list ubuntu-b...@list

[Bug 477252] Re: Evince can't open Epiphany

2009-11-09 Thread Jamie Strandboge
*** This bug is a duplicate of bug 472952 *** https://bugs.launchpad.net/bugs/472952 Thank you for taking the time to report this bug and helping to make Ubuntu better. This particular bug has already been reported and is a duplicate of bug 472952, so it is being marked as such. Please look at

[Bug 477252] Re: Evince can't open Epiphany

2009-11-09 Thread Jamie Strandboge
*** This bug is a duplicate of bug 472952 *** https://bugs.launchpad.net/bugs/472952 Chromium is included in the profile, but at a different location. This will be fixed in the next upload for the development release. In the meantime, feel free to add to /etc/apparmor.d/abstractions/ubuntu-b

[Bug 448812] Re: apparmor disallows launching chromium from evince

2009-11-09 Thread Jamie Strandboge
Ernst, the daily builds seem to use a different path. This will be fixed in the next apparmor upload for the development release. In the meantime, please add to /etc/apparmor.d/abstractions/ubuntu-browsers: /usr/bin/chromium-browser Ux, Then perform: $ sudo apparmor_parser -T -W -r /etc/appa

[Bug 481661] Re: Add Google Chrome to ubuntu-browsers

2009-11-13 Thread Jamie Strandboge
** Changed in: apparmor (Ubuntu) Importance: Undecided => Wishlist ** Changed in: apparmor (Ubuntu) Status: New => Confirmed -- Add Google Chrome to ubuntu-browsers https://bugs.launchpad.net/bugs/481661 You received this bug notification because you are a member of Ubuntu Bugs, which

[Bug 389215] Sync avahi-sharp 0.6.19-4 (universe) from Debian unstable (main).

2009-06-22 Thread Jamie Strandboge
[Updating] avahi-sharp (0.6.19-3ubuntu1 [Ubuntu] < 0.6.19-4 [Debian]) * Trying to add avahi-sharp... - http://ftp.debian.org/debian/> - http://ftp.debian.org/debian/> - I: avahi-sharp [universe] -> monodoc-avahi-manual_0.6.19-3ubuntu1 [universe]. I: avahi-sharp [universe] -> libavahi1.0-cil

[Bug 388826] Re: Please sync sepolgen 1.0.16-1 (universe) from Debian unstable (main).

2009-06-22 Thread Jamie Strandboge
This is now at 1.0.17-1 in Debian. Is this still ok to sync? ** Changed in: sepolgen (Ubuntu) Status: Confirmed => Incomplete -- Please sync sepolgen 1.0.16-1 (universe) from Debian unstable (main). https://bugs.launchpad.net/bugs/388826 You received this bug notification because you are

[Bug 390494] Sync kio-ftps 0.2+dfsg-1 (universe) from Debian unstable (main).

2009-06-22 Thread Jamie Strandboge
[Updating] kio-ftps (0.2-1ubuntu1 [Ubuntu] < 0.2+dfsg-1 [Debian]) * Trying to add kio-ftps... - http://ftp.debian.org/debian/> - http://ftp.debian.org/debian/> - http://ftp.debian.org/debian/> I: kio-ftps [universe] -> kio-ftps_0.2-1ubuntu1 [universe]. ** Changed in: kio-ftps (Ubuntu)

[Bug 389640] Sync libdebug 0.4.3-1 (universe) from Debian unstable (main).

2009-06-22 Thread Jamie Strandboge
[Updating] libdebug (0.4.2ubuntu2 [Ubuntu] < 0.4.3-1 [Debian]) * Trying to add libdebug... - http://ftp.debian.org/debian/> - http://ftp.debian.org/debian/> - http://ftp.debian.org/debian/> I: libdebug [universe] -> libdebug0_0.4.2ubuntu2 [universe]. I: libdebug [universe] -> libdebug0-dev_0

[Bug 389319] Please sync beaker 1.3.1-1 (universe) from Debian unstable (main).

2009-06-22 Thread Jamie Strandboge
[Updating] beaker (1.3-1ubuntu1 [Ubuntu] < 1.3.1-1 [Debian]) * Trying to add beaker... - http://ftp.debian.org/debian/> - http://ftp.debian.org/debian/> - http://ftp.debian.org/debian/> I: beaker [universe] -> python-beaker_1.3-1ubuntu1 [universe]. ** Changed in: beaker (Ubuntu) Sta

[Bug 388950] Sync garmin-forerunner-tools 0.10-1 (universe) from Debian unstable (main).

2009-06-22 Thread Jamie Strandboge
[Updating] garmin-forerunner-tools (0.09-2ubuntu1 [Ubuntu] < 0.10-1 [Debian]) * Trying to add garmin-forerunner-tools... - http://ftp.debian.org/debian/> - http://ftp.debian.org/debian/> - http://ftp.debian.org/debian/> I: garmin-forerunner-tools [universe] -> garmin-forerunner-tools_0.09-2u

[Bug 389303] Sync bulletml 0.0.6-4 (universe) from Debian unstable (main).

2009-06-22 Thread Jamie Strandboge
[Updating] bulletml (0.0.6-3ubuntu1 [Ubuntu] < 0.0.6-4 [Debian]) * Trying to add bulletml... - http://ftp.debian.org/debian/> - - http://ftp.debian.org/debian/> I: bulletml [universe] -> libbulletml-dev_0.0.6-3ubuntu1 [universe]. ** Changed in: bulletml (Ubuntu) Status: Confirmed =

[Bug 388548] Sync git-cola 1.3.8-1 (universe) with Debian unstable.

2009-06-22 Thread Jamie Strandboge
[Updating] git-cola (1.3.7.45-2ubuntu1 [Ubuntu] < 1.3.8-1 [Debian]) * Trying to add git-cola... - http://ftp.debian.org/debian/> - http://ftp.debian.org/debian/> - http://ftp.debian.org/debian/> I: git-cola [universe] -> git-cola_1.3.7.45-2ubuntu1 [universe]. ** Changed in: git-cola (Ubunt

[Bug 388265] Please sync davfs2 (1.4.1-1)(universe) from debian unstable

2009-06-22 Thread Jamie Strandboge
[Updating] davfs2 (1.3.3-3ubuntu1 [Ubuntu] < 1.4.1-1 [Debian]) * Trying to add davfs2... - http://ftp.debian.org/debian/> - http://ftp.debian.org/debian/> - http://ftp.debian.org/debian/> I: davfs2 [universe] -> davfs2_1.3.3-3ubuntu1 [universe]. ** Changed in: davfs2 (Ubuntu) Status

[Bug 383538] Sync gpsd 2.39-2 (universe) from Debian unstable (main)

2009-06-22 Thread Jamie Strandboge
[Updating] gpsd (2.39-1ubuntu1 [Ubuntu] < 2.39-2 [Debian]) * Trying to add gpsd... - http://ftp.debian.org/debian/> - - http://ftp.debian.org/debian/> I: gpsd [universe] -> gpsd_2.39-1ubuntu1 [universe]. I: gpsd [universe] -> gpsd-clients_2.39-1ubuntu1 [universe]. I: gpsd [universe] -> pyth

[Bug 374133] Please sync avant-window-navigator (0.3.2.1-4) from Debian unstable

2009-06-22 Thread Jamie Strandboge
[Updating] avant-window-navigator (0.3.2-0ubuntu2 [Ubuntu] < 0.3.2.1-4 [Debian]) * Trying to add avant-window-navigator... - http://ftp.debian.org/debian/> - http://ftp.debian.org/debian/> - http://ftp.debian.org/debian/> I: avant-window-navigator [universe] -> avant-window-navigator_0.3.2-0

[Bug 323853] Please sync libemail-send-perl 2.196-1 (universe) from Debian unstable (main).

2009-06-22 Thread Jamie Strandboge
[Updating] libemail-send-perl (2.194-0ubuntu1 [Ubuntu] < 2.196-1 [Debian]) * Trying to add libemail-send-perl... - http://ftp.debian.org/debian/> - http://ftp.debian.org/debian/> - http://ftp.debian.org/debian/> I: libemail-send-perl [universe] -> libemail-send-perl_2.194-0ubuntu1 [universe

[Bug 389346] Sync logilab-astng 0.19.0-2 (universe) from Debian unstable (main).

2009-06-22 Thread Jamie Strandboge
[Updating] logilab-astng (0.19.0-1ubuntu1 [Ubuntu] < 0.19.0-2 [Debian]) * Trying to add logilab-astng... - - http://ftp.debian.org/debian/> - http://ftp.debian.org/debian/> I: logilab-astng [universe] -> python-logilab-astng_0.19.0-1ubuntu1 [universe]. ** Changed in: logilab-astng (Ubuntu

[Bug 389070] Sync libmcrypt 2.5.8-3 (universe) from Debian unstable (main).

2009-06-22 Thread Jamie Strandboge
[Updating] libmcrypt (2.5.7-5ubuntu1 [Ubuntu] < 2.5.8-3 [Debian]) * Trying to add libmcrypt... - http://ftp.debian.org/debian/> - http://ftp.debian.org/debian/> - http://ftp.debian.org/debian/> I: libmcrypt [universe] -> libmcrypt4_2.5.7-5ubuntu1 [universe]. I: libmcrypt [universe] -> libmcr

[Bug 388838] Please sync yappy 1.9-1 (universe) from Debian unstable (main).

2009-06-22 Thread Jamie Strandboge
[Updating] yappy (1.8-3ubuntu1 [Ubuntu] < 1.9-1 [Debian]) * Trying to add yappy... - http://ftp.debian.org/debian/> - http://ftp.debian.org/debian/> - http://ftp.debian.org/debian/> I: yappy [universe] -> python-yappy_1.8-3ubuntu1 [universe]. I: yappy [universe] -> python-yappy-doc_1.8-3ubun

[Bug 388067] Sync pythonmagick 0.9.1-1 (universe) from Debian unstable (main).

2009-06-22 Thread Jamie Strandboge
[Updating] pythonmagick (0.8-0ubuntu2 [Ubuntu] < 0.9.1-1 [Debian]) * Trying to add pythonmagick... - http://ftp.debian.org/debian/> - http://ftp.debian.org/debian/> - http://ftp.debian.org/debian/> I: pythonmagick [universe] -> python-pythonmagick_0.8-0ubuntu2 [universe]. ** Changed in: py

[Bug 374132] Please sync screenlets (0.1.2-6) from Debian unstable

2009-06-22 Thread Jamie Strandboge
[Updating] screenlets (0.1.2-3ubuntu2 [Ubuntu] < 0.1.2-6 [Debian]) * Trying to add screenlets... - http://ftp.debian.org/debian/> - - http://ftp.debian.org/debian/> I: screenlets [universe] -> screenlets_0.1.2-3ubuntu2 [universe]. I: screenlets [universe] -> screenlets-doc_0.1.2-3ubuntu2 [u

[Bug 389580] Re: Sync texmaker 1.9.1-1 (universe) from Debian unstable (main).

2009-06-22 Thread Jamie Strandboge
This can't be sync'd because the orig.tar.gz are different: $ syncbugbot < /tmp/jdstrand/syncs.txt processing bug 389580, package texmaker, reporter al-maisan Getting binaries for karmic... [Updating] texmaker (1.9.1-0ubuntu1 [Ubuntu] < 1.9.1-1 [Debian]) * Trying to add texmaker... - http://ftp

[Bug 390714] [NEW] linitian error for 0.7.3-1ubuntu1

2009-06-22 Thread Jamie Strandboge
Public bug reported: Please fix this in your next upload: E: shogun-doc: debian-changelog-file-contains-invalid-email-address r...@utumno E: shogun-dbg: debian-changelog-file-contains-invalid-email-address r...@utumno E: libshogunui-dev: debian-changelog-file-contains-invalid-email-address r...@

[Bug 392324] Re: CVE-2009-1285: Insufficient output sanitizing when generating configuration file

2009-06-26 Thread Jamie Strandboge
Only Jaunty is affected. From upstream: For 2.11.x: versions are not affected. For 3.x: versions before 3.1.3.2. ** Also affects: phpmyadmin (Ubuntu Jaunty) Importance: Undecided Status: New ** Changed in: phpmyadmin (Ubuntu Jaunty) Status: New => Confirmed ** Changed in: phpmya

[Bug 392324] Re: CVE-2009-1285: Insufficient output sanitizing when generating configuration file

2009-06-26 Thread Jamie Strandboge
Marking as Medium per https://wiki.ubuntu.com/SecurityTeam/BugTriage. -- CVE-2009-1285: Insufficient output sanitizing when generating configuration file https://bugs.launchpad.net/bugs/392324 You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubunt

[Bug 390471] Re: Cross-site scripting vulnerabilities

2009-06-26 Thread Jamie Strandboge
Karmic now has 1.1.5-1 and is not affected. ** Also affects: mahara (Ubuntu Intrepid) Importance: Undecided Status: New ** Also affects: mahara (Ubuntu Jaunty) Importance: Undecided Status: New ** Also affects: mahara (Ubuntu Karmic) Importance: Undecided Status: Ne

[Bug 390471] Re: Cross-site scripting vulnerabilities

2009-06-26 Thread Jamie Strandboge
Marking 'In Progress' as per https://wiki.ubuntu.com/SecurityTeam/UpdateProcedures. François, would it be possible to update the debdiff to include http://mahara.org/interaction/forum/topic.php?id=753 (CVE-2009-2171)? Are you planning on supplying a debdiff for Intrepid? ** CVE added: http://www.

[Bug 390885]

2009-06-26 Thread Jamie Strandboge
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 390954] Re: package bacula-director-pgsql 2.4.2-1ubuntu6 failed to install/upgrade: subprocess post-installation script returned error exit status 1

2009-06-26 Thread Jamie Strandboge
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 390885] Re: package sun-java6-doc 6-13-1 failed to install/upgrade:

2009-06-26 Thread Jamie Strandboge
** Visibility changed to: Public ** This bug is no longer flagged as a security vulnerability -- package sun-java6-doc 6-13-1 failed to install/upgrade: https://bugs.launchpad.net/bugs/390885 You received this bug notification because you are a member of Ubuntu Bugs, which is a direct subscribe

[Bug 391467] Re: package nouveau-kernel-source 0.0.11+git20090404-0ubuntu1 failed to install/upgrade: subprocess post-installation script returned error exit status 3

2009-06-26 Thread Jamie Strandboge
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 392158] Re: grub2 doesn't support security features, such as password

2009-06-26 Thread Jamie Strandboge
A (rather long) list of missing feature is at http://grub.enbug.org/CommandList. ** Changed in: grub2 (Ubuntu) Status: New => Confirmed -- grub2 doesn't support security features, such as password https://bugs.launchpad.net/bugs/392158 You received this bug notification because you are a

[Bug 392514] Re: Does not really disconnect from IRC even when closing it.

2009-06-26 Thread Jamie Strandboge
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 392269] Re: package libghc6-gstreamer-dev 0.9.13-5ubuntu1 failed to install/upgrade: subprocess pre-removal script returned error exit status 1

2009-06-26 Thread Jamie Strandboge
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 392535] Re: Security Vulnerability in acroread (CVE-2009-0198)

2009-06-26 Thread Jamie Strandboge
** Visibility changed to: Public -- Security Vulnerability in acroread (CVE-2009-0198) https://bugs.launchpad.net/bugs/392535 You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. -- ubuntu-bugs mailing list ubuntu-b...@lists.ubuntu.com https

[Bug 392143] Re: package postgis None failed to install/upgrade: subprocess post-removal script returned error exit status 1

2009-06-26 Thread Jamie Strandboge
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 392070] Re: package phpmyadmin 4:3.1.2-1 failed to install/upgrade: il sottoprocesso post-installation script ha restituito un codice di errore 1

2009-06-26 Thread Jamie Strandboge
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 392535] Re: Security Vulnerability in acroread (CVE-2009-0198)

2009-06-26 Thread Jamie Strandboge
** Changed in: acroread (Ubuntu) Status: New => Confirmed -- Security Vulnerability in acroread (CVE-2009-0198) https://bugs.launchpad.net/bugs/392535 You received this bug notification because you are a member of Ubuntu Bugs, which is a direct subscriber. -- ubuntu-bugs mailing list ubu

[Bug 390471] Re: Cross-site scripting vulnerabilities

2009-07-03 Thread Jamie Strandboge
Marking Intrepid back to Confirmed, since there is no debdiff. François, thanks for your response and debdiff. Regarding Intrepid's usability, if you are up to it, feel free to fix it following https://wiki.ubuntu.com/StableReleaseUpdates with any security patches added in. ** Changed in: mahara

[Bug 390471] Re: Cross-site scripting vulnerabilities

2009-07-03 Thread Jamie Strandboge
François, I reviewed the debdiff and it didn't quite follow https://wiki.ubuntu.com/SecurityTeam/UpdatePreparation#Packaging. Most notably there was no CVE reference and the distribution name was simply 'jaunty' (it should have been 'jaunty-security'. We also encourage using https://wiki.ubuntu.com

[Bug 390471] Re: Cross-site scripting vulnerabilities

2009-07-03 Thread Jamie Strandboge
** Changed in: mahara (Ubuntu Jaunty) Status: In Progress => Fix Committed -- Cross-site scripting vulnerabilities https://bugs.launchpad.net/bugs/390471 You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. -- ubuntu-bugs mailing list

[Bug 352678] Re: gourmet does not start on jaunty

2009-07-03 Thread Jamie Strandboge
** Also affects: gourmet (Ubuntu Jaunty) Importance: Undecided Status: New ** Also affects: gourmet (Ubuntu Karmic) Importance: High Status: Confirmed ** Changed in: gourmet (Ubuntu Jaunty) Status: New => Confirmed -- gourmet does not start on jaunty https://bugs.laun

[Bug 352678] Re: gourmet does not start on jaunty

2009-07-06 Thread Jamie Strandboge
** Changed in: gourmet (Ubuntu Jaunty) Importance: Undecided => High -- gourmet does not start on jaunty https://bugs.launchpad.net/bugs/352678 You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. -- ubuntu-bugs mailing list ubuntu-b...@l

[Bug 352678] Re: gourmet does not start on jaunty

2009-07-06 Thread Jamie Strandboge
Uploaded to -proposed ** Changed in: gourmet (Ubuntu Jaunty) Status: Confirmed => Fix Committed ** Changed in: gourmet (Ubuntu Jaunty) Assignee: (unassigned) => Jamie Strandboge (jdstrand) ** Changed in: gourmet (Ubuntu Karmic) Assignee: (unassigned) => Jamie S

[Bug 352678] Re: gourmet does not start on jaunty

2009-07-06 Thread Jamie Strandboge
** Attachment added: "gourmet_0.14.5-2ubuntu1.1.debdiff" http://launchpadlibrarian.net/28741700/gourmet_0.14.5-2ubuntu1.1.debdiff -- gourmet does not start on jaunty https://bugs.launchpad.net/bugs/352678 You received this bug notification because you are a member of Ubuntu Bugs, which is sub

  1   2   3   4   5   6   7   8   9   10   >