Bug#483487: Undelivered Mail Returned to Sender

2008-08-24 Thread Julien Cristau
fwiw. On Sun, Aug 24, 2008 at 20:59:27 +0200, Mail Delivery System wrote: [EMAIL PROTECTED]: host mail.dingman.org[64.151.155.69] said: 550 relaying to [EMAIL PROTECTED] prohibited by administrator (in reply to RCPT TO command) [EMAIL PROTECTED]: host

Bug#496446: Partition Manager hangs

2008-08-24 Thread Van Reuther
Package: installation-reports, debian-amd64 Boot method: CDROM Image version: http://cdimage.debian.org/cdimage/daily-builds/unstable/20080824-1/amd64/iso-cd/debian-testing-amd64-netinst.iso Date: 2008, Aug 23rd. Approx. 2 PM Eastern Daylight Time. Machine: Intel DX38BT Processor: Intel Q6600

Bug#332782: Release Notes: license clarification

2008-08-24 Thread Steve Langasek
On Sun, Aug 24, 2008 at 07:00:56PM +0200, W. Martin Borgert wrote: Somehow Luk managed to make me say OK, I'll collect the release notes for lenny. That's DebConf before the first coffee. At this moment I was not aware of the license issue: There is currently no license. The practical impact

Bug#496447: emacs22 ignore resources configured in ~/.Xdefault-$hostname

2008-08-24 Thread Benoit Izac
Package: emacs22 Version: 22.2+2-3 Severity: normal Hi! Not sure it is a emacs bug. I've configured X resources via a ~/.Xdefault-$my_hostname. Just after ``startx'', if I start a xterm or for example editres, X resources in ~/.Xdefault-$my_hostname work like I want. This is not true for

Bug#496345: Do not accept program options

2008-08-24 Thread Vincent Danjean
Klaus Ethgen wrote: I have to set my own makeindex options but they are not used Use: --- #! /usr/bin/make -f # MAKEINDEX=echo makeindex MAKEINDEX_OPTIONS=-c -s test.ist include LaTeX.mk Can you send me a minimal tarball with all files needed to reproduce the problem ? (probably the

Bug#452268: Bug#451791: xserver-xorg-video-intel: Fonts and many other items fail to render legibly

2008-08-24 Thread Ondrej Certik
On Sun, Aug 24, 2008 at 8:48 PM, Julien Cristau [EMAIL PROTECTED] wrote: Hi, you all reported font corruption in X using the intel driver with EXA acceleration enabled, on i965 chipsets. Are you using a framebuffer kernel driver? If /proc/fb is non-empty, please send its contents to the bug

Bug#494227: backtrace and upstream ticket

2008-08-24 Thread Thomas Viehmann
Hi, attached is a backtrace snippet of the segfault in the buildlog. Also, upstream has a ticket with a similar backtrace[1] (admittedly, I only checked two levels). Note that the patches referred to as partial fixes in the ticket to date (the latest pointing to SVN revision 276) are already

Bug#474089: closed by Michael Meskes [EMAIL PROTECTED] (Bug#474089: fixed in virtualbox-ose 1.5.6-dfsg-5)

2008-08-24 Thread Michael Biebl
The current version in unstable still doesn't use the lsb logging functions, so I'm reopening the bug report. NOLSB=yes [..] [ -f /lib/lsb/init-functions ] || NOLSB=yes == NOLSB will never be no I also think that the checks if [ -z $NOLSB ]; then and if [ -n $NOLSB ]; then Don't make a lot

Bug#496434: The possibility of attack with the help of symlinks in some Debian packages

2008-08-24 Thread Steve M. Robbins
severity 496434 normal thanks On Sun, Aug 24, 2008 at 10:05:28PM +0400, Dmitry E. Oboukhov wrote: In some packages I've discovered scripts with errors which may be used by a user for damaging important system files or user's files. Binary-package: mgt (2.31-5) file: /usr/games/mailgo

Bug#496448: libui-dialog-perl: Dialog backend allows execution of arbitrary shell commands

2008-08-24 Thread Tomaž Šolc
Package: libui-dialog-perl Version: 1.08-1.1 Severity: important Hi UI::Dialog Perl module with the dialog backend does not properly escape shell metacharacters in strings passed to it. This bug is a potential security risk if these strings come from untrusted sources since it allows execution

Bug#496391: The possibility of attack with the help of symlinks in some Debian packages

2008-08-24 Thread Steve M. Robbins
severity 496391 normal thanks On Sun, Aug 24, 2008 at 10:05:30PM +0400, Dmitry E. Oboukhov wrote: In some packages I've discovered scripts with errors which may be used by a user for damaging important system files or user's files. Binary-package: gccxml (0.9.0+cvs20080525-1) file:

Bug#496345: Do not accept program options

2008-08-24 Thread Klaus Ethgen
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi Vincent, Am So den 24. Aug 2008 um 20:28 schrieb Vincent Danjean: Use: --- #! /usr/bin/make -f # MAKEINDEX=echo makeindex MAKEINDEX_OPTIONS=-c -s test.ist include LaTeX.mk Can you send me a minimal tarball with all files

Bug#496345: Do not accept program options

2008-08-24 Thread Klaus Ethgen
Ops. I should really add the tar. Gruß Klaus -- Klaus Ethgenhttp://www.ethgen.de/ pub 2048R/D1A4EDE5 2000-02-26 Klaus Ethgen [EMAIL PROTECTED] Fingerprint: D7 67 71 C4 99 A6 D4 FE EA 40 30 57 3C 88 26 2B test.tar.gz Description: Binary data signature.asc

Bug#496449: apt-listbugs: bug status (e.g., done) sometimes misleading

2008-08-24 Thread Ross Boylan
Package: apt-listbugs Version: 0.0.89 Severity: normal Severity note: borderline between a bug and wishlist. Because of the possibilities for misinterpretation and consequent installation of broken software, I'm submitting this as a bug. The problem seems easiest to describe with a concrete

Bug#496442: phpmyadmin package should ensure mysql has a password

2008-08-24 Thread Thijs Kinkhorst
severity 496442 wishlist retitle 496442 Could prevent logging in as root without password by default tags 496442 upstream thanks Hi, On Sun, August 24, 2008 20:53, Sylvain Avril wrote: The debian mysql package configure the root user with no password by default. It is not a problem (and rather

Bug#352756: Please add the --enable-exec switch

2008-08-24 Thread Marco Chiappero
There's no reason not to enable the exec:// feature by default. It's widely used and every time there is an upgrade I need to recompile from the source package, and it's quite annoying. I also wish you accept to introduce in the upstream package the OpenWrt patch

Bug#484276: Please reproduce with new version.

2008-08-24 Thread Rob Andrews
Hi, Version 1.0.0-1 is coming into unstable very shortly (although if you want to download it early, you can go to http://choralone.org/debian/n/nspluginwrapper/). Could you try to reproduce the problem with the latest version? If it's gone away, I can close the bug and I'm closer to cleaning up

Bug#496444: please recommend usplash

2008-08-24 Thread Yves-Alexis Perez
On dim, 2008-08-24 at 21:10 +0200, Holger Levsen wrote: I think it would be great if you'd add a recommends on usplash (and probably usplash-theme-debian), so that we finally get usplash on default for desktop installs :-) I'm not sure. usplash didn't work on two of my boxes last time I

Bug#496450: ncmpc: Jumping to song dir from search (F5) not possible

2008-08-24 Thread Hagen Fuchs
Package: ncmpc Version: 0.11.1+svn-r3965-2 Severity: wishlist It would be very logical to implement a way to enter the album that corresponds to one of the resulting entries in a search list; á la: I'd really like to hear that album where 'foo' sang 'bar'! Thanks, HF -- System Information:

Bug#474089: [Pkg-virtualbox-devel] Bug#474089: closed by Michael Meskes [EMAIL PROTECTED] (Bug#474089: fixed in virtualbox-ose 1.5.6-dfsg-5)

2008-08-24 Thread Frank Mehnert
On Sunday 24 August 2008, Michael Biebl wrote: The current version in unstable still doesn't use the lsb logging functions, so I'm reopening the bug report. NOLSB=yes [..] [ -f /lib/lsb/init-functions ] || NOLSB=yes == NOLSB will never be no I also think that the checks if [ -z $NOLSB

Bug#496358: The possibility of attack with the help of symlinks in some Debian packages

2008-08-24 Thread Steve Langasek
severity 496358 important thanks The vulnerable script in this package is /usr/share/games/crossfire/maps/Info/combine.pl, which is not used by default; it's provided only as a utility for possible use. I don't think this should be considered grave. -- Steve Langasek Give me

Bug#493417: [Pkg-octave-devel] Bug#493417: octave-tsa: FTBFS: `sumskipnan' undefined

2008-08-24 Thread Thomas Weber
On Sun, Aug 03, 2008 at 10:22:02PM +0200, Thomas Weber wrote: On 03/08/08 10:40 -0700, Daniel Schepler wrote: On Sunday 03 August 2008 10:34:45 Thomas Weber wrote: On 03/08/08 10:23 -0700, Daniel Schepler wrote: OK, I've posted those files at

Bug#495684: /proc/fb is empty

2008-08-24 Thread Stefano Costa
I have checked and /proc/fb is empty even though I'm using a framebuffer kernel driver. Best, Steko -- Stefano Costa http://www.iosa.it/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#496410: The possibility of attack with the help of symlinks in some Debian packages

2008-08-24 Thread Steve Langasek
severity 496410 important thanks On Sun, Aug 24, 2008 at 10:05:29PM +0400, Dmitry E. Oboukhov wrote: Package: cman Severity: grave Binary-package: cman (2.20080629-1) file: /usr/sbin/fence_egenera The broken usage is: local *egen_log; open(egen_log,/tmp/eglog);

Bug#496451: cipux-cat-web: [INTL:sk] Slovak po-debconf translation

2008-08-24 Thread helix84
Package: cipux-cat-web Priority: wishlist Tags: l10n patch Version: .po attached ~~helix84 # Slovak translation of cipux-cat-web debconf template # Copyright (C) YEAR THE PACKAGE'S COPYRIGHT HOLDER # This file is distributed under the same license as the cipux-cat-web package. # Ivan Masár

Bug#454202: Status poke

2008-08-24 Thread James Vega
Any chance this can get enabled? -- James GPG Key: 1024D/61326D40 2003-09-02 James Vega [EMAIL PROTECTED] signature.asc Description: Digital signature

Bug#496444: please recommend usplash

2008-08-24 Thread Sven Arvidsson
On Sun, 2008-08-24 at 21:10 +0200, Holger Levsen wrote: I think it would be great if you'd add a recommends on usplash (and probably usplash-theme-debian), so that we finally get usplash on default for desktop installs :-) At the moment usplash breaks hibernation, which is a pretty basic

Bug#492414: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=492414

2008-08-24 Thread Moritz Muehlenhoff
severity 492414 grave thanks On Mon, Jul 28, 2008 at 08:03:35PM +0200, Nicolas Adenis-Lamarre wrote: i can reproduce the bug with 0.4.2 the bug dissappear with svn version. I've updated my Etch workstation to Lenny and I can also reproduce the problem, raising severity. Cheers, Moritz

Bug#496130: setting package to base-installer bootstrap-base, tagging 496130

2008-08-24 Thread J��r��my Bobbio
# Automatically generated email from bts, devscripts version 2.10.33 # via tagpending # # base-installer (1.95) UNRELEASED; urgency=low # # * Install filesystem related packages after running the post-install hooks, #as the formers might be interactive (and thus need locales to be #

Bug#485615: dpkg-reconfigure xserver-xorg doesn't define Monitor values

2008-08-24 Thread Tim Köhlmann
On Sat, 12 Jul 2008 12:50:46 +0200, Julien Cristau wrote: The monitor settings should be automatically detected on X server startup in most cases, so dpkg-reconfigure xserver-xorg doesn't ask about them anymore. What's the actual problem you're trying to fix? The actual problem is probably

Bug#454202: setting package to xterm, tagging 454202

2008-08-24 Thread Julien Cristau
# Automatically generated email from bts, devscripts version 2.10.35 # via tagpending # # xterm (236-1) UNRELEASED; urgency=low # # * Configure with --enable-dabbrev (closes: #454202). package xterm tags 454202 + pending -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of

Bug#495484: Is the rest of the data free?

2008-08-24 Thread Raphael Champeimont (Almacha)
As the upstream website says Resources are Non Free. and the original tar.gz does not contain information about copyright of graphics files (at least I didn't find any), I was wondering if these were DFSG-free? Almacha -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of

Bug#496453: This font is useless in XFt/fontconfig/pango/FreeType/whatever

2008-08-24 Thread Juhapekka Tolvanen
Package: gsfonts-wadalab-gothic Version: 0.20010409-7.1 Severity: normal Is it just me, or is this weird?: % fc-list | grep -i wadalab | grep -i gothic | sort Wadalab\-Gothic\-0\-13:style=.r24 Wadalab\-Gothic\-0\-13:style=.r25 Wadalab\-Gothic\-0\-13:style=.r30 Wadalab\-Gothic\-0\-13:style=.r31

Bug#487629: further bugfix information

2008-08-24 Thread Bernd Schubert
Neil asked me to send futher information about the bug fix, so here it is. 1) Way to reproduce: No idea what needs to be done to trigger this bug, I only know that after I installed keytouch log-out and system shutdown from KDE didn't work anymore. 2) Killing keytouchd is one possibility to

Bug#496446: Partition Manager hangs

2008-08-24 Thread Jérémy Bobbio
reassign 496446 cdebconf forcmerge 496093 496446 thanks On Sun, Aug 24, 2008 at 03:22:43PM -0400, Van Reuther wrote: If I boot a LiveCD and dump all partitions, recreate the disk labels and mdadm --zero-superblock then boot using the debian installer I can start to create my physical volumes

Bug#494549: RFP: autoscan-network -- Network monitoring and management tool

2008-08-24 Thread Jonathan Wiltshire
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 I would happily package this, but the source is not available even though it is supposedly GPLd. If you can obtain the source, I will package it for you. - -- Jonathan Wiltshire -BEGIN PGP SIGNATURE- Version: GnuPG v1.4.9 (GNU/Linux)

Bug#495484: Is the rest of the data free?

2008-08-24 Thread Guus Sliepen
On Sun, Aug 24, 2008 at 10:39:12PM +0200, Raphael Champeimont (Almacha) wrote: As the upstream website says Resources are Non Free. and the original tar.gz does not contain information about copyright of graphics files (at least I didn't find any), I was wondering if these were DFSG-free?

Bug#496454: This font is useless in XFt/fontconfig/pango/FreeType/whatever

2008-08-24 Thread Juhapekka Tolvanen
Package: gsfonts-wadalab-mincho Version: 0.20010409-7.1 Severity: normal Is it just me, or is this weird?: % fc-list | grep -i wadalab | grep -i mincho | sort Wadalab\-Mincho\-0\-8:style=.r24 Wadalab\-Mincho\-0\-8:style=.r25 Wadalab\-Mincho\-0\-8:style=.r30 Wadalab\-Mincho\-0\-8:style=.r31

Bug#496439: Same as #493594 and #493575

2008-08-24 Thread Bégault Luc
Searching a bit more, I found #493594 and #493575 that seems to be related. Sorry for reporting too fast. Luc. -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#496360: The possibility of attack with the help of symlinks in some Debian packages

2008-08-24 Thread Steve Langasek
severity 496360 normal tags 496360 moreinfo unreproducible thanks Your bug report contains *no* information about the liquidsoap package. Where is the vulnerability? -- Steve Langasek Give me a lever long enough and a Free OS Debian Developer to set it on,

Bug#496377: The possibility of attack with the help of symlinks in some Debian packages

2008-08-24 Thread Steve Langasek
severity 496377 normal thanks Another false positive. file: /usr/lib/lazarus/tools/install/create_lazarus_export_tgz.sh This script does: if [ x$Download = xyes ]; then echo downloading lazarus svn ... cd /tmp rm -rf /tmp/lazarus svn export

Bug#496455: kdesktop: user cannot unlock screen with correct password

2008-08-24 Thread Steve Lane
Package: kdesktop Version: 4:3.5.9.dfsg.1-5 Severity: critical Justification: breaks unrelated software After a recent upgrade (since 23 Aug 2008), our users, who can login fine, cannot unlock the terminal after kdesktop_lock has locked it. This appears to (possibly) be a PAM-related issue -

Bug#491642: README.Debian should say where the webcalendar is.

2008-08-24 Thread Elizabeth Bevilacqua
tags 491642 +pending thanks fixed in svn: http://svn.debian.org/wsvn/collab-maint/ext-maint/webcalendar/trunk/debian/README.Debian?op=diffrev=0sc=0 -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#496376: The possibility of attack with the help of symlinks in some Debian packages

2008-08-24 Thread Steve Langasek
severity 496376 minor thanks The vulnerable scripts are unused bits of packaging that a user should never have occasion to run by hand. Downgrading severity. -- Steve Langasek Give me a lever long enough and a Free OS Debian Developer to set it on, and I can

Bug#496456: kdebase-bin: user cannot unlock screen with correct password

2008-08-24 Thread Steve Lane
Package: kdebase-bin Version: 4:3.5.9.dfsg.1-5 Severity: critical Justification: breaks unrelated software After a recent upgrade (since 23 Aug 2008), our users, who can login fine, cannot unlock the terminal after kdesktop_lock has locked it. This appears to (possibly) be a PAM-related issue -

Bug#463053: Patch to debian-bug-build-bug-menu for new webpage format

2008-08-24 Thread Camm Maguire
tags 463053 patch thanks Thanks for this package! (defun debian-bug-build-bug-menu (package) Build a menu listing the bugs for PACKAGE. (setq debian-bug-alist nil debian-bug-open-alist nil) (let ((debian-bug-tmp-buffer (get-buffer-create *debian-bug-tmp-buffer*))

Bug#496457: libpam-modules: user cannot unlock screen with correct password

2008-08-24 Thread Steve Lane
Package: libpam-modules Version: 1.0.1-3 Severity: critical Justification: breaks unrelated software After a recent upgrade (since 23 Aug 2008), our users, who can login fine, cannot unlock the terminal after kdesktop_lock has locked it. This appears to (possibly) be a PAM-related issue - here

Bug#496458: cowdancer: document usage in README.Debian

2008-08-24 Thread Dafydd Harries
Package: cowdancer Version: 0.48 Severity: minor Cowdancer doesn't seem to cointain any information about how to start using it. Including the description found in your original announcement email[0] would be very helpful. [0]

Bug#496246: SOLVED

2008-08-24 Thread Aniruddha
The problem was that /tmp wasn't mounted in schroot. With /tmp mounted this error dissapeared. -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#491182: byacc: diff for NMU version 20070509-1.1

2008-08-24 Thread Thomas Viehmann
tags 491182 + patch pending thanks Hi, The following is the diff for my byacc 20070509-1.1 NMU on its way. Kind regards T. diff -u byacc-20070509/debian/changelog byacc-20070509/debian/changelog --- byacc-20070509/debian/changelog +++ byacc-20070509/debian/changelog @@ -1,3 +1,11 @@ +byacc

Bug#496457: libpam-modules: user cannot unlock screen with correct password

2008-08-24 Thread Steve Langasek
severity 496457 normal tags 496457 unreproducible moreinfo thanks On Sun, Aug 24, 2008 at 02:13:53PM -0700, Steve Lane wrote: Justification: breaks unrelated software False. Software that invokes PAM is not unrelated. Aug 24 13:22:23 aspen unix_chkpwd[3472]: check pass; user unknown Aug 24

Bug#496349: libfcgi-perl: download link in copyright file is broken

2008-08-24 Thread Moritz Muehlenhoff
[EMAIL PROTECTED] wrote: Package: libfcgi-perl Severity: serious Justification: Policy 12.5 Hi, the download link mentioned in the copyright file does no longer resolve. Also, although the package is on CPAN, the CPAN search does not find it. I don't think the severity is warranted;

Bug#496432: The possibility of attack with the help of symlinks in some Debian packages

2008-08-24 Thread Moritz Muehlenhoff
retitle 496432 ibackup: Several symlinks vulnerabilities thanks On Sun, Aug 24, 2008 at 10:05:28PM +0400, Dmitry E. Oboukhov wrote: Package: ibackup Severity: grave Hi, maintainer! ibackup indeed needs to be fixed, it is vulnerable to several symlink attacks. And it should be orphaned,

Bug#475036: removal doesnt seem an option atm, or?

2008-08-24 Thread Holger Levsen
Hi, today there are still two packages depending on kernel-package, cdfs-src and linux-2.6. dphys-kernel-packages has beem removed from sid and lenny. cdfs-src suffers from #482075, so it might be a removal candidate too. linux-2.6 build-depends on kernel-package (= 10.063). If the code still

Bug#468735: Bug#496444: please recommend usplash

2008-08-24 Thread Holger Levsen
severity 468735 important block 496444 by 468735 kthxbye Hi, On Sunday 24 August 2008 22:31, Sven Arvidsson wrote: At the moment usplash breaks hibernation, which is a pretty basic feature for a desktop system. This is bug 468735, it would be great if it could be fixed before it's installed

Bug#468372: confirmed

2008-08-24 Thread Ondrej Certik
This is really an annoying problem. Any ideas how to fix it? Ondrej -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#491505: [package varmon] varmon segfaults on Etch i386

2008-08-24 Thread Christoph Franzen
Am Sun, 17 Aug 2008 09:52:56 +0200 schrieb Julien Danjou [EMAIL PROTECTED]: I'm preparing a new upstream release and will push it back to Debian ASAP (expect everything tomorrow). Thank you for fixing the bug, it works for me now, no problems so far. Thanks for the box Christoph. It was very

Bug#468372: confirmed

2008-08-24 Thread Ondrej Certik
On Sun, Aug 24, 2008 at 11:47 PM, Ondrej Certik [EMAIL PROTECTED] wrote: This is really an annoying problem. Any ideas how to fix it? Ah, when using xterm, which has a black background, it works. Thanks, Ondrej -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe.

Bug#496457: libpam-modules: user cannot unlock screen with correct password

2008-08-24 Thread Steve Lane
On Sun, Aug 24, 2008 at 02:41:37PM -0700, Steve Langasek wrote: severity 496457 normal tags 496457 unreproducible moreinfo thanks On Sun, Aug 24, 2008 at 02:13:53PM -0700, Steve Lane wrote: Justification: breaks unrelated software False. Software that invokes PAM is not unrelated.

Bug#496459: doxygen: SEGV when it runs out of disk space

2008-08-24 Thread Russell Coker
Package: doxygen Version: 1.5.6-2 Severity: normal The below output from doxygen is from building the ffmpeg package on a machine with limited disk space. The doxygen program should give an error message about a lack of disk space not SEGV. Preprocessing

Bug#496444: please recommend usplash

2008-08-24 Thread Holger Levsen
Hi, On Sunday 24 August 2008 22:00, Yves-Alexis Perez wrote: I'm not sure. usplash didn't work on two of my boxes last time I tried. I didn't yet report any bugs Please do. , but I'm not sure we (as debian-desktop team) should take responsibility to have usplash installed on each and

Bug#496460: nmudiff: DEBFULLNAME and NAME

2008-08-24 Thread Thomas Viehmann
Package: nmudiff Severity: wishlist Version: 2.10.35 Tags: patch Hi, please allow me to humbly suggest to add DEBFULLNAME and NAME support similar to that documented in the dch manpage. Thanks for maintaining devscripts! Kind regards T. -- Thomas Viehmann, http://thomas.viehmann.net/ ---

Bug#482075: doesn't build with 2.6.26 kernels

2008-08-24 Thread Holger Levsen
retitle 482075 doesn't build with 2.6.26 kernels thanks Hi, disclaimer: I've just been looking at this package as it a rdepends of kernel-package (#475036)... I don't know cdfs(-src) at all. That said, I wonder if this bug should be serious, as 2.6.23 is neither in lenny nor sid. regards,

Bug#496256: imapsync: Does not sync folders which reflect an email address

2008-08-24 Thread Gilles LAMIRAL
Hello Florian, When an IMAP server contains a folder named like an email address syncing fails (e.g. folder name is [EMAIL PROTECTED]). It seems imapsync treats that name as the account name on the target IMAP server. Can create this folder [EMAIL PROTECTED] on target --host2 with another

Bug#496332: pylucene - FTBFS: error: Python.h: No such file or directory

2008-08-24 Thread Jeff Breidenbach
Help appreciated. -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#496461: azureus: does not bind to tcp/udp4

2008-08-24 Thread Achim Schaefer
Package: azureus Version: 3.1.1.0-3 Severity: normal azureus binds only to the tcp version 6 interface, but not to the tcp version 4 one. This way my port forwarding (tcp version 4) do not work. -- System Information: Debian Release: lenny/sid Architecture: i386 (i686) Kernel: Linux

Bug#494227: xmlroff: diff for NMU version 0.6.0-1.1

2008-08-24 Thread Thomas Viehmann
tags 494227 + patch pending thanks Hi, The following is the diff for my proposed xmlroff 0.6.0-1.1 NMU. Unfortunately, Martin, it makes the Debian refcard look ugly. Nonetheless, I believe moving from segfault to quirky output warrants closing the RC bug here. As such, I'll upload in the next

Bug#496462: nvi: security vulnerability in creation of shared directory in postinst

2008-08-24 Thread Raphael Geissert
Package: nvi Version: 1.79-25 Severity: grave Tags: security patch Hi everyone, Going through the list of packages listed at [1] I noticed the overrides are completely wrong and it *is* a security issue. I verified versions 1.79-25 and 1.81.6-3 (etch and lenny, respectively) of the package

Bug#496457: libpam-modules: user cannot unlock screen with correct password

2008-08-24 Thread Steve Lane
The machines that have *not* been patched look like this: -r 1 root root 14050 Aug 24 15:13 /etc/shadow -rwsr-xr-x 1 root root 19632 Jul 22 17:35 /sbin/unix_chkpwd The ones that have look like this: -r 1 root root 14050 Aug 24 15:13 /etc/shadow -rwxr-sr-x 1 root shadow 26372 Aug

Bug#491245: silc client crashes unexpectedly - More info

2008-08-24 Thread Mike Forbes
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Attached is a dump of the core file, which may help in fixing this bug. - -- /* Mike Forbes GPG: BFC7 3F32 2CCF D91F 53E1 DF88 1578 B2E4 1399 6844 */ -BEGIN PGP SIGNATURE- Version: GnuPG v1.4.9 (GNU/Linux) Comment: http://getfiregpg.org

Bug#496455: Acknowledgement (kdesktop: user cannot unlock screen with correct password)

2008-08-24 Thread Steve Lane
Problem solved - please see Bug#496457. Please close. Thank you, -- Steve Lane System, Network and Security Administrator Doudna Lab Biomolecular Structure and Mechanism Group UC Berkeley -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL

Bug#496456: Acknowledgement (kdebase-bin: user cannot unlock screen with correct password)

2008-08-24 Thread Steve Lane
Problem solved - please see Bug#496457. Please close. Thank you, -- Steve Lane System, Network and Security Administrator Doudna Lab Biomolecular Structure and Mechanism Group UC Berkeley -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL

Bug#494441: xserver-xorg-video-intel: X server crashes with lockup on G45 (X4500HD) chipset

2008-08-24 Thread Eric Sharkey
I just uploaded 2.4.1 to experimental. Let me know if you have better luck with that version; if it's still broken, we'll have to report it upstream. Thanks, I'll try it shortly. For lenny, we'll make X choose the vesa driver for the new intel chipsets, as that's more likely to work than

Bug#496424: The possibility of attack with the help of symlinks in some Debian packages

2008-08-24 Thread Moritz Muehlenhoff
severity 496424 wishlist retitle 496424 Generate temporary directory with mktemp thanks Dmitry E. Oboukhov wrote: Package: firehol Severity: grave Hi, maintainer! Even if you create files or directories with help of function 'RANDOM' or pid(), then your system is not protected. Attacker

Bug#489666: tkcvs: bashism in /bin/sh script

2008-08-24 Thread Tim Cutts
On 24 Aug 2008, at 8:49 am, Chris Lamb wrote: tags 489666 + patch thanks Many thanks - I'll add that shortly. Fortunately, the script in question is not actually part of the tkcvs program as installed; it is just an example shipped with the program. But I'll pass your patch upstream

Bug#475036: removal doesnt seem an option atm, or?

2008-08-24 Thread Bastian Blank
On Mon, Aug 25, 2008 at 12:00:23AM +0200, Holger Levsen wrote: linux-2.6 build-depends on kernel-package (= 10.063). If the code still uses kernel-package, and I have no reason to not believe the control file, removal of kernel-package is not really an option at this time. This code is

Bug#496463: cappuccino: moving the cursor in the output window makes output appear there rather than at the end

2008-08-24 Thread Will Thompson
Package: cappuccino Version: 0.5.1-2 Severity: minor Cappuccino appears to write new text to the current location of the cursor in the output text area, rather than to the end of the window. Hence, if you click on some earlier line, garbage is produced there. -- System Information: Debian

Bug#496462: nvi: security vulnerability in creation of shared directory in postinst

2008-08-24 Thread Jan Christoph Nordholz
Hi Raphael, your report is correct, but if /var/tmp/vi.recover was really a symlink to some existing directory (like /), mkdir -p won't fail at all - in fact, it won't even be executed because the [ -d ] test will already succeed. I'll fix it properly - thanks for catching it. Regards, Jan

Bug#496345: Do not accept program options

2008-08-24 Thread Klaus Ethgen
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi Vincent, Am So den 24. Aug 2008 um 22:39 schrieb Vincent Danjean: Ok. So there is indeed a bug: the ADD-variables (see the doc) were not defined in the context of indexes. The attached LaTeX.mk file fix the bug. You can install it (in

Bug#495530: [evolution] Evolution craches on startup

2008-08-24 Thread Marius Konitzer
On Sat, 2008-08-23 at 10:24 +0200, H.A.J. Koster wrote: I did an strace, but my output looks different from that of the OP. I don't want to hijack his bug report, so just ignore this message if you think it doesn't relate. Same here. Looks like a quite similar problem with the same effect:

Bug#496345: Do not accept program options

2008-08-24 Thread Klaus Ethgen
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi, please forget my mail before. I did the mistake and use a -s in the STYLE variable too. So my mistake. Everything works well now. Thanks for the fast help. Regards Klaus - -- Klaus Ethgenhttp://www.ethgen.de/ pub

Bug#496378: The possibility of attack with the help of symlinks in some Debian packages

2008-08-24 Thread Moritz Muehlenhoff
On Sun, Aug 24, 2008 at 10:05:30PM +0400, Dmitry E. Oboukhov wrote: Package: gdrae Severity: grave Hi, maintainer! gdrae is indeed vulnerable to temp file attacks through /tmp/gdrae/palabra However, I have some doubts whether this should be fixed or gdrae rather be removed altogether: It

Bug#495423: [Pkg-xfce-devel] Bug#495423: Bug#495423: xfce4-mailwatch-plugin: Please add an option so that mailwatch does not change status of mails

2008-08-24 Thread Tino Keitel
On Sun, Aug 17, 2008 at 12:37:17 +0200, Stephan Windmüller wrote: On Sun, 17. Aug 2008, Yves-Alexis Perez wrote: I don't get it. You're saying that, with an IMAP configured in mailwatch plugin, each time the plugin check the mails it only sees the new ones since the last time it checked?

Bug#332782: Release Notes: license clarification

2008-08-24 Thread W. Martin Borgert
On 2008-08-24 20:36, Luk Claes wrote: I guess bug submitters and/or patch providers would also count as contributor? Yes. There are 16 bugs with a patch tag: #404891 - patch by Steve Langasek [EMAIL PROTECTED] #339081, #363056 - Japanese translation fixes by Kobayashi Noritada [EMAIL

Bug#494227: xmlroff: diff for NMU version 0.6.0-1.1

2008-08-24 Thread W. Martin Borgert
On 2008-08-25 00:13, Thomas Viehmann wrote: Unfortunately, Martin, it makes the Debian refcard look ugly. Nonetheless, I believe moving from segfault to quirky output warrants closing the RC bug here. As such, I'll upload in the next days unless someone objects. No objection from my side. But

Bug#496432: The possibility of attack with the help of symlinks in some Debian packages

2008-08-24 Thread André Luís Lopes
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hello, Moritz Muehlenhoff escreveu: retitle 496432 ibackup: Several symlinks vulnerabilities thanks On Sun, Aug 24, 2008 at 10:05:28PM +0400, Dmitry E. Oboukhov wrote: Package: ibackup Severity: grave Hi, maintainer! ibackup indeed needs

Bug#495257: [Pkg-utopia-maintainers] Bug#495257: dbus: System bus must not be restarted during package upgrades

2008-08-24 Thread Tyson Clugg
On Fri, 2008-08-22 at 22:11 +0200, Michael Biebl wrote: Sam Morris wrote: On Tue, 19 Aug 2008 15:13:14 +1000, Tyson Clugg wrote: Given the current release situation, I think we should just not restart the bus for now. ...snip. That statement should not have been attributed to

Bug#494680: liburiparser1: New upstream package available

2008-08-24 Thread Daniel Baumann
Hi, any progress on this? Regards, Daniel -- Address:Daniel Baumann, Burgunderstrasse 3, CH-4562 Biberist Email: [EMAIL PROTECTED] Internet: http://people.panthera-systems.net/~daniel-baumann/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of

Bug#490034: ucf affecting apticron upgrade

2008-08-24 Thread Tiago Bortoletto Vaz
Hi, I'm reassigning this bug to ucf package. I'm pretty sure it's an ucf issue, although I couldn't figure out where's the problem. For some reason the diff argument here in ucf is coming empty: show_diff() { if [ -z $1 ]; then echo 2 need a diff as argument exit 1; I've

Bug#492665: Uploaded: copher -- automatically make a SourceForge release

2008-08-24 Thread Jonathan Wiltshire
Uploaded to mentors.debian.net and awaiting sponsorship. If you want it sooner, the source package is at http://mentors.debian.net/debian/pool/main/c/copher -- Jonathan Wiltshire signature.asc Description: Digital signature

Bug#491643: Silently allows the user to set a password that can't be used to log in.

2008-08-24 Thread Elizabeth Bevilacqua
package webcalendar Severity: normal tags 491643 upstream thanks Problem exists upstream in all versions, does not appear to be fixed upstream, fowarded bug: https://sourceforge.net/tracker/?func=detailatid=103870aid=2072443group_id=3870 -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a

Bug#491391: bootchart: Wrong ordering with dependency based booting

2008-08-24 Thread Luca Capello
Hi all! On Sat, 23 Aug 2008 22:16:28 +0200, Jörg Sommer wrote: Petter Reinholdtsen schrieb am Thu 21. Aug, 22:11 (+0200): [You = Luca Capello] You interpret $all differently from insserv, and it is not obvious to me which interpretation is correct. The definition I am aware of for $all is:

Bug#491643: Silently allows the user to set a password that can't be used to log in.

2008-08-24 Thread Elizabeth Bevilacqua
package webcalendar severity 491643 normal thanks -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#491391: bootchart: Wrong ordering with dependency based booting

2008-08-24 Thread Luca Capello
Hi Jörg! On Fri, 22 Aug 2008 01:36:01 +0200, Jörg Sommer wrote: Luca Capello schrieb am Wed 20. Aug, 14:10 (+0200): On Wed, 20 Aug 2008 12:45:11 +0200, Jörg Sommer wrote: Luca Capello schrieb am Tue 19. Aug, 22:53 (+0200): According to [1], I'd say that bootchart is correct, since it should

Bug#495257: [Pkg-utopia-maintainers] Bug#495257: dbus: System bus must not be restarted during package upgrades

2008-08-24 Thread Tyson Clugg
On Fri, 2008-08-22 at 22:11 +0200, Michael Biebl wrote: ... As much as I disagree with upstream, that dbus should never be restarted (I find the argument bogus, that a dbus restart is equivalent to a kernel live-restart), I agree with Sam, that given the current situation, and the many

Bug#496389: The possibility of attack with the help of symlinks in some Debian packages

2008-08-24 Thread Stephen Gran
This one time, at band camp, Dmitry E. Oboukhov said: Hi, maintainer! This message about the error concerns a few packages at once. I've tested all the packages (for Lenny) on my Debian mirror. All scripts of packages (marked as executable) were tested. So, what is the error that is

Bug#494709: libevent FTBFS because of TIMEVAL_TO_TIMESPEC

2008-08-24 Thread Aníbal Monsalve Salazar
On Mon, Aug 11, 2008 at 09:42:14PM +0200, Luca Bruno wrote: So it seems that adding AC_GNU_SOURCE to configure.in and removing explicit definitions in those files upstream could be the right solutions. I'll apply the patch submitted by Petr as it the simplest change to convince the release team

Bug#496418: The possibility of attack with the help of symlinks in some Debian packages

2008-08-24 Thread Dirk Eddelbuettel
This is the same as the one I just answered for r-base-core-ra as r-base-core-ra is an extension/specialisation of r-base-core. So again: # test functionality of the compiler javac_works='not present' if test -n $JAVAC; then javac_works='not functional' rm -rf /tmp/A.java /tmp/A.class

Bug#496363: The possibility of attack with the help of symlinks in some Debian packages

2008-08-24 Thread Dirk Eddelbuettel
I think it is a false positive: # test functionality of the compiler javac_works='not present' if test -n $JAVAC; then javac_works='not functional' rm -rf /tmp/A.java /tmp/A.class ## - note the rm -rf echo public class A { } /tmp/A.java if test -e /tmp/A.java; then

Bug#466767: php5 metapackage dependency unnecessary?

2008-08-24 Thread Raphael Geissert
retitle 466767 useless dependency on php5 severity 466767 important thanks I guess the maintainer didn't intend to Depend on both, but to use an ORed dependency. And since it is a kind of annoying bug I'm raising its severity (especially because having any of the web SAPIs won't be of any use

  1   2   3   4   5   >