Seems to be fixed in 1.13.5-1 and before.
Regards
Joey
--
In the beginning was the word, and the word was content-type: text/plain
Please always Cc to me when replying to me on the lists.
--
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of
This problem seems to be fixed in 1.13.5-1 and the version before as well.
Regards
Joey
--
In the beginning was the word, and the word was content-type: text/plain
Please always Cc to me when replying to me on the lists.
--
To UNSUBSCRIBE, email to
Hi Ola!
Ola Lundqvist wrote:
Hi
Please try drupal mode or any other of the variants.
How?
I think the command is enable-(mode name)
In interactive mode M-x shows:
Possible completions are:
enable-command
enable-flow-control
enable-theme
Regards
Joey
--
In the beginning was
Roger Leigh wrote:
On Thu, Jul 07, 2011 at 11:36:57PM +0100, Roger Leigh wrote:
Source: sysklogd
Version: 1.5-6.1
Severity: important
Your package is currently using/lib/init/rw/sendsigs.omit.d
which is now deprecated and pending removal. Please update your
package to use
Hi!
Tobias Frost wrote:
Am Montag, den 18.07.2011, 12:14 +0200 schrieb Martin Schulze:
Well, I only use the return-to-webbrowser feature
Looking back, I can only quote the one who wrote the patch:
See http://pear.php.net/bugs/bug.php?id=10594.
However, looking at the code I have
Hi!
Tobias Frost wrote:
--- alt/Barcode.php 2011-03-17 18:54:24.0 +0100
+++ barcode/Barcode.php 2011-03-17 17:23:02.0 +0100
@@ -77,7 +77,10 @@
return PEAR::raiseError(Unable to find draw method in
'$classname' class);
}
-@$obj = new
Bdale,
what's your stance on this?
Regards,
Joey
Alexandra N. Kossovsky wrote:
Package: sudo-ldap
Version: 1.6.9p17-2+lenny1
Severity: grave
Tags: security patch
Justification: user security hole
Hello.
Following patch fixes memory access after free():
--- parse.c
Craig Andrews wrote:
Package: libapache2-mod-auth-mysql
Version: 4.3.9-11
Severity: wishlist
Version 2.9.0 of mod_auth_mysql from http://modauthmysql.sourceforge.net/
added support for formatting parameters to the condition clause
parameters. These parameters are:
%h DNS name of the
Package: munin
Version: 1.4.1-1
[resent as bug report as requested]
Hi,
after installing a new version of munin (I assume it was 1.4.1-1 or -2)
I noticed a link in /etc/apache2/conf.d: munin - ../../munin/apache.conf
that suddenly (a) adds /munin/ to all virtual hosts and (b) uses a new
Package: kdetv
Version: 0.8.9-1
The description says:
Homepage http://www.kdetv.org
However, this address points to a domain reseller. Please remove
the reference from the package.
Regards,
Joey
--
No question is too silly to ask, but, of course, some are too silly
to answer.
Martin Schulze wrote:
Martin Schulze wrote:
Package: glibc-doc
Version: 2.7-16
Please remove the following manpages from the glibc-doc distribution:
Here are some more that cause conflicts:
. pthread_attr_getschedpolicy(3)
. pthread_attr_getschedparam(3
Package: glibc-doc
Version: 2.7-16
Please remove the following manpages from the glibc-doc distribution:
. pthread_attr_destroy(3)
. pthread_attr_getdetachstate(3)
. pthread_attr_getscope(3)
. pthread_attr_init(3)
. pthread_attr_setdetachstate(3)
.
Martin Schulze wrote:
Package: glibc-doc
Version: 2.7-16
Please remove the following manpages from the glibc-doc distribution:
Here are some more that cause conflicts:
. pthread_attr_getschedpolicy(3)
. pthread_attr_getschedparam(3)
. pthread_attr_setschedpolicy(3
Michael Kerrisk wrote:
Just for debian's info: you definitely want the man-pages page. The
pthreads pages that I have been recently adding to man-pages are far
better than the ancient glibc pages.
Ack. I've opened Bug#506515 requesting this.
Regards,
Joey
--
No question is too
tags 492148 pending
tags 492149 pending
thanks
Marcin Owsiany wrote:
Package: sysklogd
Version: 1.5-4
/lib/init/rw/sendsigs.omit.d/sysklogd is created in the init script, but
never removed.
One could argue that also /lib/init/rw/sendsigs.omit.d/ should be
removed if non-empty.
One bug
Hi Colin,
do you have an idea for this behaviour?
(and do you know if it is caused by fs(5)/filesystems(5) or apropos?)
Regards,
Joey
- Forwarded message from [EMAIL PROTECTED] -
Subject: Bug#490582: apropos link more up to date
To: [EMAIL PROTECTED]
From: [EMAIL PROTECTED]
Lucas Nussbaum wrote:
Last time I contacted them about the bugs that are filed in Debian on the
emacs mode, I got no answer.
Then I don't think I'd be the one. Feel free to contact me for
testing the mode wrt. particular fixes or problems, though.
Regards,
Joey
--
No question is
Lucas Nussbaum wrote:
On 05/07/08 at 10:44 +0200, Joey Schulze wrote:
Package: ruby1.8-elisp
Version: 1.8.7.22-2
Severity: wishlist
Hi Joey,
Several bugs have been reported against the ruby1.*-elisp packages.
Unfortunately, none of the ruby maintainers are using emacs, and this
emacs
Lucas Nussbaum wrote:
On 07/07/08 at 09:33 +0200, Martin Schulze wrote:
Lucas Nussbaum wrote:
On 05/07/08 at 10:44 +0200, Joey Schulze wrote:
Package: ruby1.8-elisp
Version: 1.8.7.22-2
Severity: wishlist
Hi Joey,
Several bugs have been reported against the ruby1
Dario Minnucci (midget) wrote:
Package: manpages
Version: 3.00-1
Severity: normal
Cannot upgrade version 3.00-1 with 3.01-1.
Here is the log
[...]
Preparing to replace manpages 3.00-1 (using .../manpages_3.01-1_all.deb) ...
Unpacking replacement manpages ...
dpkg: error processing
Michael,
this is a Debian-specific problem, nothing you could solve (except
by removing hostname.7 again).
Michael Kerrisk wrote:
On Mon, Jun 30, 2008 at 3:42 AM, Dario Minnucci (midget)
[EMAIL PROTECTED] wrote:
Package: manpages
Version: 3.00-1
Severity: normal
Cannot upgrade
Jörg Sommer wrote:
Package: manpages
Version: 2.80-1
Severity: normal
Hi,
% LC_ALL=C man ascii G 047 | awk '{print $4;}' | hexdump
000 270a
^^
% LC_ALL=de_DE.UTF-8 man ascii G 047 | awk '{print $4;}' | hexdump
000 c2b4 0a00
I think you must tell roff
[EMAIL PROTECTED] wrote:
Package: sysklogd
Version: 1.5-4
Severity: wishlist
File: /usr/share/man/man8/syslogd.8.gz
On at least syslogd(8) mention SEE ALSO syslogd-listfiles(8),
else it seems it is an orphan man page.
There is no real connection from syslogd(8) to syslogd-listfiles(8).
The fix should be implemented in the function imap_sync_mailbox() in
imap.c. Instead of deleting all mail at once the list of UIDs should
be limited to a certain size. Cyrus 2.1 doesn't like it to be larger
than 8k for example, for Cyrus 2.2 the limit seems to be at 16k I've
heard.
Implementing
Arnaud Guiton wrote:
There is a typo in the package description: the name of the program is
misspelled ! :-)
It contains The nemail program usually... when it should obviously be
The newmail program usually
Well spotted, fixed with a new upload.
Regards,
Joey
--
MIME -
Package: dokuwiki
Version: 0.0.20080505-1
Hi,
it would be nice if the pre-installation script would check whether
$conf['savedir'] . '/../tmp' exists and create that directory with
proper permissions prior to the upgrade to this new upstream version.
That would actually help existing wikis to
Petter Reinholdtsen wrote:
[Martin Schulze]
Where is $syslog defined?
$syslog is a virtual facility defined in the LSB, and for the purpose
of dependency based boot sequencing in Debian, it is defined in
/etc/insserv.conf. See URL:http://wiki.debian.org/LSBInitScripts
for the list
Petter Reinholdtsen wrote:
[Martin Schulze]
Petter, you can probably tell why insserv has trouble shutting down
syslogd.
Yes. It does not really have problems shutting down syslogd. The
issue here is that I should have made it depend on $remote_fs instead
of $local_fs, because
Martin Schulze wrote:
I stand corrected, I cannot fix this. The version of ld.so.8 comes from
the libc6 package and not from the manpages package as one might assume.
As the package has been reassigned already nothing needs to be done on
my end I guess.
For the record: On rPath Linux, OWL
Andrei Popescu wrote:
Package: sysklogd
Version: 1.5-2
Severity: normal
Hello,
On shutdown I get:
Stopping system log daemon ... failed
and later
umount: /var: device is busy
umount2: Device or resource busy
umount: /var: device is busy
failed
(these are from what I could
Michael Kerrisk wrote:
I found some typos in ftm.7 (POSIX_C_SOURCE instead of _POSIX_C_SOURCE,
1999506 instead of 199506).
As ftm.7 is a debian specific manpage, and another manpage
feature_test_macros.7 was added to also document features.h, I think
ftm.7 could be removed or
Martin Schulze wrote:
On Sun, Mar 30, 2008 at 09:48:46PM +0300, ygrek wrote:
man dlopen says :
Otherwise, the
dynamic linker searches for the library as follows (see ld.so(8) for
further details):
[...]
o The directories /lib and /usr/lib are searched
Aurelien Jarno wrote:
# Automatically generated email from bts, devscripts version 2.9.26
tags 473458 + pending
Aurelien, care to explain the pending solution?
Regards,
Joey
--
Never trust an operating system you don't have source for!
Please always Cc to me when replying to me on
Michael Kerrisk wrote:
Justin Pryzby wrote:
reassign 473458 libc6
found 473458 2.7-9
thanks
On Sun, Mar 30, 2008 at 09:48:46PM +0300, ygrek wrote:
man dlopen says :
Otherwise, the
dynamic linker searches for the library as follows (see ld.so(8) for
further
[EMAIL PROTECTED] wrote:
Quoting Joey Schulze [EMAIL PROTECTED]:
Timothy Baldwin wrote:
Package: manpages-dev
Version: 2.79-2
Severity: normal
The manpage for raise, incorrectly describes it as sending a signal to the
current process;
infact it sends the signal to the
Philipp Kern wrote:
On Tue, Apr 15, 2008 at 08:39:03AM +0200, Pierre Habouzit wrote:
Dear security team, you broke lighttpd badly with your last upload,
because you use a broken patch to fix the last CVE on it. Please update
the patch, using e.g. the one in the unstable version instead.
Lucas Nussbaum wrote:
# Automatically generated email from bts, devscripts version 2.10.18.1
# can be reproduced on 1.1-3
found 379712 1.1-3
Could you please explain this?
Regards,
Joey
--
If you come from outside of Finland, you live in wrong country.
-- motd of
reassign 470277 manpages-de-dev
thanks
Steffen Wendzel wrote:
ups, sorry, I use manpages-de-dev, not manpages-dev. Should I re-send
the bug report for manpages-de-dev?
Thanks for spotting this bug.
Reassigning the bug.
Regards,
Joey
--
If you come from outside of Finland, you live
Lucas Nussbaum wrote:
On 03/04/08 at 12:27 +0200, Martin Schulze wrote:
Lucas Nussbaum wrote:
# Automatically generated email from bts, devscripts version 2.10.18.1
# can be reproduced on 1.1-3
found 379712 1.1-3
Could you please explain this?
I could reproduce the build
Lucas Nussbaum wrote:
Yes,
http://people.debian.org/~lucas/logs/2008/03/19/uucpsend_1.1-3_sid32-dash.buildlog
Actually, the problem is not in debian/rules, but in Makefile, as the
NMU I sponsored showed.
I see. That makes sense. Will really be fixed in the next upload.
Thank you.
Moritz Muehlenhoff wrote:
Since security support for Lenny has matured the list should be
moved to debian.org just like the regular debian-security-announce
list for stable and oldstable.
Ack.
Regards,
Joey
--
We all know Linux is great... it does infinite loops in 5 seconds.
Package: netbase
Version: 4.31
Severity: important
The port number for suucp includes a typo in /etc/service. It should
read 4031 (and not 4013) according to IANA.
Regards,
Joey
--
Testing? What's that? If it compiles, it is good, if it boots up, it is perfect.
Please always Cc to
Package: hylafax-server
Version: 4.3.1-7
Severity: wishlist
It would be nice if hylafax would store its process id (in /var/run
preferably) so that one can monitor this service with arbitrary
monitor software. At the moment no hylafax server stores its process
id somewhere.
With current
Package: procps
Version: 3.2.7-6
Severity: minor
Tags: patch
The most recently uploaded version contains the following change to the
conffile /etc/sysctl.conf:
-# Uncomment the next line to enable TCP/IP SYN cookies
+# Uncomment the next line to enable TCP.IP SYN cookies
Justin Pryzby wrote:
On Wed, Jan 30, 2008 at 07:27:17PM +0100, Martin Schulze wrote:
--- man5/resolv.conf.5 30 Jan 2008 17:44:56 - 1.22
+++ man5/resolv.conf.5 30 Jan 2008 18:25:32 -
@@ -189,6 +189,8 @@ This has the effect of trying a que
.BR gethostbyname (3
tags upstream
tags pending
tags patch
thanks
Michael Schurter wrote:
From proc(5) /proc/meminfo section:
It is in the same format as free(1), except in bytes rather than
KB.
From cat /proc/meminfo:
MemTotal: 1027480 kB
I propose simply removing the clause ', except in
tags 462636 patch
tags 462636 pending
tags 462636 upstream
thanks
Michael,
I've applied the attached patch. I'd be glad if you would accept
it for the next release as well.
Regards,
Joey
--
Life is too short to run proprietary software. -- Bdale Garbee
Please always Cc to me when
Falk Hueffner wrote:
Here's a patch for the remaining issue.
diff -Nurp manpages-2.39/man3/bsearch.3 manpages-2.39.hacked/man3/bsearch.3
--- manpages-2.39/man3/bsearch.3 2006-08-03 15:57:30.0 +0200
+++ manpages-2.39.hacked/man3/bsearch.3 2006-10-01 13:54:59.0
Falk Hueffner wrote:
Michael Kerrisk [EMAIL PROTECTED] writes:
I have fixed this in the upstream 2.21 release by including a small
example that demonstrates how strcmp() should be used (like in the
page you refer to).
Thanks for your quick reply. Just another minor suggestion, the
Oh, btw. thanks anyway!
Regards,
Joey
--
Life is too short to run proprietary software. -- Bdale Garbee
Please always Cc to me when replying to me on the lists.
--
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]
Falk Hueffner wrote:
Martin Schulze [EMAIL PROTECTED] writes:
Falk Hueffner wrote:
Just another minor suggestion, the example code uses:
qsort(months, nr_of_months, sizeof(struct mi), compmi);
[...]
res = bsearch(key, months, nr_of_months
Vincent McIntyre wrote:
*** Please type your report below this line ***
Hi
The nsswitch.conf(5) manpage does not explain how to override some fields in
/etc/passwd, with the compat option. In fact I could not easily find any
reference to the full +/- semantics mentioned in the page.
The
Andrew Ferrier wrote:
Package: manpages
Version: 1.39-1.1
Severity: minor
The manpage for resolv.conf contains the following phrase:
On a normally configured system this file should not be
necessary. The only name server to be queried will be on the
local machine.
Surely this is not
Francesco Potorti` wrote:
A note at the beginning of ioctl_list(2) says to write to
[EMAIL PROTECTED] to signal missing values, but I got this from my
mailer:
[EMAIL PROTECTED]
Connection refused:
retry timeout exceeded
Hmm, hasn't changed in the meantime, will apply the
Aurelien Jarno wrote:
Adding 'options inet6' in /etc/resolv.conf will cause many programs to
crash or misbehave. The documentation currently contains (reformated):
inet6 sets RES_USE_INET6 in _res.options. This has the effect
of trying a query before an A query inside
Julien Cristau wrote:
Package: manpages-dev
Version: 2.61-1
Severity: minor
Hi, there is a typo in the chdir description:
.BR chdir ()
changes the current working directory pf the calling process to the
directory specified in
.IR path .
pf should be of.
Seems to be fixed in 2.22
Thomas Huriaux wrote:
[Line numbers are based on upstream 2.76]
In stdarg.3,
* line 195:
...
In bootparam.7,
* line 89:
'nfsroot=', 'nfsaddrs=', 'ro', 'rw', 'debug' or 'init'.
* line 140:
'/tftpboot/'.
* lines 183-186:
'a'-'d'; 'sd' for SCSI compatible disk, with Y in 'a'-'e';
'ad'
Bug confirmed
Recompile sufficient not confirmed
Regards,
Joey
--
The MS-DOS filesystem is nice for removable media. -- H. Peter Anvin
Please always Cc to me when replying to me on the lists.
--
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of unsubscribe. Trouble?
Package: util-linux
Version: 2.13.1-1
Severity: wishlist
Tags: patch
Hi LaMont,
a friend of mine is looking into the possibility of cloning Debian
(and other) systems automatically and stomped over swap partitions
getting assigned new UUIDs every time the new harddisk is partitioned
and swap is
Package: mutt
Version: 1.5.17-2
It seems that Mutt is not too cute with regards server-side size
limits.
Scenario: mutt -f imap://mail.domain.de
Mailbox : ~50k mails
tag via pattern: ~20k mails
tag-delete ;d
sync $
The server responds with string too long or something and the
mailbox is closed.
Thomas Viehmann wrote:
tag 457295 + patch
Hi,
the problem is that cron/people_scritps/people.pl makes incorrect assumptions
about the ordering of fields in a record returned by ldapsearch.
Attached patch fixes the problem.
Thanks a lot!
Applied.
Regards,
Joey
--
Ten years
Josip Rodin wrote:
On Mon, Dec 17, 2007 at 01:15:10PM -0500, Noah Meyerhans wrote:
If it were possible, (temporarily) adding a securty.d.o mirror in the
0.0.0.0 - 127.255.255.255 range would be helpful [...]
Obviously finding a host that can deal with 13.53 MB/s of sustained
Josip Rodin wrote:
On Tue, Dec 18, 2007 at 03:31:13PM +0100, Martin Schulze wrote:
If it were possible, (temporarily) adding a securty.d.o mirror in
the
0.0.0.0 - 127.255.255.255 range would be helpful [...]
Obviously finding a host that can deal with 13.53 MB/s
Josip Rodin wrote:
(Please Cc: any responses.)
On Mon, Dec 17, 2007 at 03:10:24PM +1000, Anthony Towns wrote:
Interesting that it got somewhat more balanced.
It looks like an effect of the weekend ending - more machines in the
respective netblocks waking up? I checked again a few
[EMAIL PROTECTED] wrote:
Package: security.debian.org
From time to time 128.31.0.36 is out of sync. (eg. time between
DSA-1420 and DSA-1421)
But also protocol problems exist using a caching algorithm.
Neither the Last-modified:, nor the ETag used for caching
information in HTTP/1.1
Package: munin-node
Version: 1.2.5-1
found: 1.2.5-2
It seems that munin does not properly handle tmpf in the df* plugins.
For example:
/usr/share/munin/plugins/df_abs returns:
cciss_c0d0p1.value 2851236
tmpfs.value 0
tmpfs.value 4
cciss_c0d1.value 66265688
/usr/share/munin/plugins/df_abs
Package: manpages-dev
Version: 2.67-1
Hi Michael,
it seems that strndup(3) requires the feature test macro __USE_GNU
instead of _GNU_SOURCE. At least that's what /usr/include/string.h
suggests and what makes gcc happy.
Regards,
Joey
--
Those who don't understand Unix are condemned
Michael Kerrisk wrote:
On Nov 29, 2007 2:37 PM, Martin Schulze [EMAIL PROTECTED] wrote:
Michael Kerrisk wrote:
Hi Michael,
it seems that strndup(3) requires the feature test macro __USE_GNU
instead of _GNU_SOURCE.
At least that's what /usr/include/string.h
suggests
Josip Rodin wrote:
On Wed, Nov 07, 2007 at 05:09:09PM +0100, Simon Paillard wrote:
On Tue, Nov 06, 2007 at 10:15:41PM +0100, Joey Schulze wrote:
This mailing list targets both users and developers who are interested
in status changes of public (and private) .debian.org infrastructure.
Simon Paillard wrote:
On Tue, Nov 06, 2007 at 10:15:41PM +0100, Joey Schulze wrote:
This mailing list targets both users and developers who are interested
in status changes of public (and private) .debian.org infrastructure.
[..]
. downtime for important mirrors
[..]
Mirror
A. Costa wrote:
Package: manpages
Version: 2.64-1
Severity: minor
Tags: patch
Found a typo in '/usr/share/man/man7/iso_8859-2.7.gz', see attached '.diff'.
Thanks, will fix in 2.65-1.
Regards,
Joey
--
Whenever you meet yourself you're in a time loop or in front of a mirror.
Michael Kerrisk wrote:
Hi,
Found a typo in '/usr/share/man/man7/iso_8859-2.7.gz', see attached
'.diff'.
Hope this helps...
Yes it does. Thanks for all these patches. I'm not sure what
Debian prefers, but for me, working upstream, inlined patches,
rather than attachments, are
A. Costa wrote:
On Wed, 03 Oct 2007 15:13:19 +0200
Michael Kerrisk [EMAIL PROTECTED] wrote:
Hope this helps...
Yes it does. Thanks for all these patches. I'm not sure what
Debian prefers, but for me, working upstream, inlined patches,
That's interesting; as you deduced, the
Michael Kerrisk wrote:
Under the current setup, I suppose I could just reply saying I fixed the
bug and not bother with the Debian control messages, but then it leaves a
detective job for the downstream maintainer trying to work out whether to
tag a bug as fixed-upstream or not.
If it saves
Michael Kerrisk wrote:
Gosh X11 really is big, isn't it ;-). I don't have Debian handy -- it
would be interested to know what's in manpages-dev and manpages.
Basically it is:
manpages: man[45678]
manpages-dev: man[23]
with several deletions.
Installation is controlled via this script:
A. Costa wrote:
Package: manpages
Version: 2.64-1
Severity: minor
Tags: patch
Found a typo in '/usr/share/man/man7/missing.7.gz', see attached '.diff'.
Thanks, fixed in 2.65-1
Regards,
Joey
--
Whenever you meet yourself you're in a time loop or in front of a mirror.
Please
Kartik Mistry wrote:
Package: freetalk
Followup-For: Bug #367272
Hi Martin,
As Max Kirillov suggested,
there is 'ft-login-hook' hook. You can add a handler for it
instead of creating another file:
severity 444904 wishlist
thanks
Please explain why gui-apt-key should be in a different section than
Synaptic - except you wish to confuse users. Please also show me
the menu policy that contains the new menu structure.
Regards,
Joey
Bill Allombert wrote:
Package: gui-apt-key
Package: queuegraph
Version: 1.1.1-3
Severity: wishlist
Tags: patch
Without this patch the queuepath CGI only understands arguments
directly added to the request path and expects the web server to
work accordingly. This may not be the case all the time.
This patch adds support for QUERY_PATH
tags upstream
forwarded Martin Schulze [EMAIL PROTECTED]
tags fixed-upstream
tags pending
thanks
Alexander Schmehl wrote:
Wouldn't it be a good feature when adding a new key to show the user the
fingerprint of the key to be added and asking him to verify it before
really adding the key?
Feel
Alexander Schmehl wrote:
* Martin Schulze [EMAIL PROTECTED] [061020 15:07]:
Wouldn't it be a good feature when adding a new key to show the user the
fingerprint of the key to be added and asking him to verify it before
really adding the key?
Is the fingerprint provided anywhere so
Luis Rodrigo Gallardo Cruz wrote:
On Mon, Sep 03, 2007 at 05:13:08PM +0200, Joey Schulze wrote:
Package: stunnel4
Version: 4.20-4
At several places the manpage suggests:
See stunnel -V output for default.
However, doing so, I get:
Unknown option: V
2007.09.03
[EMAIL PROTECTED] wrote:
Package: sysklogd
Version: 1.5-1
Severity: critical
Justification: breaks unrelated software
I don't really know if it is new sendmail config, proftpd config or new
sylogd config, but many of my log files have been deactivated and replaced by
others in others
Nikolaus Schulz wrote:
Package: libid3-3.8.3c2a
Version: 3.8.3-6
Severity: grave
Tags: security
Justification: user security hole
Hi,
when tagging file $foo, a temporary copy of the file is created, and for some
reason, libid3 doesn't use mkstemp but just creates $foo.XX
Faidon Liambotis wrote:
Granted, we have a very very bad record as maintainers of supporting
this security-wise but I think we can try to change that. I certainly
will try my best to provide you with patched versions to upload.
I haven't discuss this with the rest of the team yet but I think
Moritz Muehlenhoff wrote:
Roland Mas wrote:
[Cc:ing bug discoverer and Alioth admins]
Bernhard R. Link [EMAIL PROTECTED] found a remote shell code
injection vulnerability bug in the CVS browsing interface of Gforge,
as used on Alioth and packaged in gforge-plugin-scmcvs. A specially
Matthew Darwin wrote:
Package: klogd
Version: 1.5-1
Severity: normal
When upgrading from 1.4.1-20 to 1.5-1 inside a vserver, klogd fails to
start it just hangs.
Could you run strace on it, and/or provide me proper (i.e.root) access
to such a vserver?
Regards,
Joey
--
Julien Cristau wrote:
tags 427596 + patch
Thanks, fixed in source.
Regards,
Joey
--
The good thing about standards is that there are so many to choose from.
-- Andrew S. Tanenbaum
Please always Cc to me when replying to me on the lists.
--
To UNSUBSCRIBE, email to
Mike Hommey wrote:
On my OOo build on etch:
/home/rene/Debian/Pakete/openoffice.org/openoffice.org-2.3.0/ooo-build/build/current/extensions/source/plugin/base
dmake: Executing shell macro: $(PKGCONFIG) $(PKGCONFIG_PREFIX) --cflags
$(PKGCONFIG_MODULES)
Package 'Mozilla Plug-In API'
Antonin Kral wrote:
Hi Joey,
thanks for the patch. I am going to upload new version in couple of
seconds. I have just changed
Cool!
LOG(0, failure, (Could not CWD to '..', aborting));
to
LOG(0, failure, (Could not CWD to %s, aborting, gotodir));
I guess I know where...
Thanks
) unstable; urgency=low
+
+ * Added a special treatment for mirroring the / directory so that
+fmirror (a) is able to guess the time difference and (b) does not try
+to overwrite the local / directory instead of the specified local
+mirror directory. [fmirror.c]
+
+ -- Martin Schulze [EMAIL
Package: fmirror
Version: 0.8.4-13
Tags: patch
The regular version of fmirror is unable to mirror the / (root)
directory of a remote host via FTP. This is the common situation for
chroot+FTP environments that should be mirrored.
fmirror will fail with the following error message:
20:16:24
Steve Kemp wrote:
Hiki 0.8.0 - 0.8.6 is affected, it means that stable, testing and unstable
pacakges in Debian are affected. Please update hiki package.
For more detail, see http://hikiwiki.org/en/advisory20070624.html
Joey if you could allocate an ID I'll upload a fixed package.
Christophe Mutricy wrote:
Le dim 03 jun 07 à 16:46 +0200, Martin Schulze a écrit :
retitle 427367 vlc should support colons in filenames
http://www.meebey.net/temp/Tech%20Talk:%20Linus%20Torvalds%20on%20git.avi
Correction, it seems that the colon was the offender. Thus, please
fix
Bdale Garbee wrote:
Also just talked to James Troup who is in the same room here at Debconf,
and he's running this version of gzip on various buildd systems... so
I'm confused about what might be wrong.
Err, since when are source packages *built* on buildd systems? They
are unpacked - which
Bdale Garbee wrote:
On Mon, 2007-06-18 at 17:47 +0200, Martin Schulze wrote:
Bdale Garbee wrote:
Any idea at where to look?
Not really. I freshened my machine to latest unstable this morning...
maybe an strace would point to something? [shrug]
Does this help?
Look
Steve Kemp wrote:
Joey if you could allocate a CVE ID I'll handle an upload
for Etch.
Please use CVE-2007-2833.
Regards,
Joey
--
Still can't talk about what I can't talk about. Sorry. -- Bruce Schneier
--
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of
Bdale Garbee wrote:
tags 429462 +unreproducible +moreinfo
thanks
On Mon, 2007-06-18 at 11:24 +0200, Joey Schulze wrote:
Package: gzip
Version: 1.3.12-2
Severity: grave
I'm sorry to report but the new version of gzip breaks dpkg-source in
sid and thus cannot be used for package
Bdale Garbee wrote:
Any idea at where to look?
Not really. I freshened my machine to latest unstable this morning...
maybe an strace would point to something? [shrug]
Does this help?
finlandia!joey(tty6):/tmp/work dpkg -l gzip
Desired=Unknown/Install/Remove/Purge/Hold
|
Tobias Vogel wrote:
Package: klogd
Version: 1.4.1
Severity: grave
klogd randomly starts using 99 cpu.if work
on the certain vserver is still possible, then
killing the klogd (-9) is the only thing to stop the
process.
I assume that you don't have an idea on what's going on there, right?
1 - 100 of 524 matches
Mail list logo