Processed: Re: Bug#701991: maven3: CVE-2013-0253

2013-03-01 Thread Debian Bug Tracking System
Processing control commands:

 reassign -1 src:maven
Bug #701991 [maven3] maven3: CVE-2013-0253
Warning: Unknown package 'maven3'
Bug reassigned from package 'maven3' to 'src:maven'.
Ignoring request to alter found versions of bug #701991 to the same values 
previously set
Ignoring request to alter fixed versions of bug #701991 to the same values 
previously set

-- 
701991: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=701991
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems

__
This is the maintainer address of Debian's Java team
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-java-maintainers. 
Please use
debian-j...@lists.debian.org for discussions and questions.


Bug#635964: Version update and java dependency

2013-03-01 Thread Jörg-Volker Peetz
Dear Steffen, dear maintainers,

meanwhile version 2.2.2 is available. Also, the dependency on java could be
expanded to include openjdk-7-jre. Even pdfsam 1.1.4-2 works with openjdk-7-jre
7u15-2.3.7-1 from experimental.
Within limits, I can try to help if you tell me how.

Best regards,
Jörg-Volker.

__
This is the maintainer address of Debian's Java team
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-java-maintainers. 
Please use
debian-j...@lists.debian.org for discussions and questions.


Bug#635964: Version update and java dependency

2013-03-01 Thread Steffen Möller
Dear Jörg-Volker,
 
 meanwhile version 2.2.2 is available. Also, the dependency on java could
 be
 expanded to include openjdk-7-jre. Even pdfsam 1.1.4-2 works with
 openjdk-7-jre
 7u15-2.3.7-1 from experimental.
 Within limits, I can try to help if you tell me how.

I found version 2.x difficult to build when I tried a couple of years ago. Not 
all build dependencies were with Debian at the time. A lot has improved since, 
especially the support of maven. 

My entry to Debian was the package clustalw to seen updated for far too long. 
May I welcome you as a new maintaining hand for pdfsam, possibly? I am tempted 
to come up with a new package pdfsam2, but this I would leave to you.

Best regards,

Steffen

__
This is the maintainer address of Debian's Java team
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-java-maintainers. 
Please use
debian-j...@lists.debian.org for discussions and questions.

Bug#697617: jenkins: remote code execution vulnerability

2013-03-01 Thread Salvatore Bonaccorso
Hi

On Tue, Jan 08, 2013 at 02:06:39AM +0900, Nobuhiro Ban wrote:
 Package: jenkins
 Version: 1.447.2+dfsg-2
 Severity: grave
 Tags: security
 
 Dear Maintainer,
 
 The upstream vendor announced a security advisory, that is rated
 critical severity.
 
 See: 
 https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2013-01-04

Are there any news on this issue?

Regards,
Salvatore

__
This is the maintainer address of Debian's Java team
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-java-maintainers. 
Please use
debian-j...@lists.debian.org for discussions and questions.