Bug#446840: marked as done (argouml: exception when loading previously saved project)

2009-01-17 Thread Debian Bug Tracking System
Your message dated Sat, 17 Jan 2009 09:42:00 +0100 with message-id 8b2d7b4d0901170042j46a5ce77j61d05e422d715...@mail.gmail.com and subject line Argouml removed from debian has caused the Debian Bug report #446840, regarding argouml: exception when loading previously saved project to be marked as

Bug#511797: Similar Query Refusal Behavior

2009-01-17 Thread Florian Weimer
* Domain Admin: I am experiencing something similar since upgrading to this package version. Which version? 1:9.3.4-2etch3? On which architecture? -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact

Processed: [librcc] Severity

2009-01-17 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: severity 512044 wishlist Bug#512044: [librcc] select GTK in other binary package Severity set to `wishlist' from `serious' End of message, stopping processing here. Please contact me if you need assistance. Debian bug tracking system

Bug#512104: libghc6-pcre-light-dev: Fails to install

2009-01-17 Thread Kurt Roeckx
Package: libghc6-pcre-light-dev Version: 0.3.1-5+b1 Severity: serious Hi, Your package is failing to install with the following error: Setting up libghc6-pcre-light-dev (0.3.1-5+b1) ... /var/lib/dpkg/info/libghc6-pcre-light-dev.postinst: line 15: /usr/lib/ghc-6.8.2dfsg1/bin/ghc-pkg: No such

Bug#432120: CVE-2007-3360: remote IRC servers can execute arbitrary commands on client

2009-01-17 Thread Kurt Roeckx
On Sun, Sep 23, 2007 at 01:56:15PM +0200, Nico Golde wrote: Hi, I wrote a patch which should fix the issue. It is attached. Kind regards Nico --- ircii-pana-1.1/source/hook.c 2003-04-11 03:09:07.0 +0200 +++ check/ircii-pana-1.1/source/hook.c2007-09-23

Bug#512063: A smallish transition needed for haskell libraries

2009-01-17 Thread Joachim Breitner
Hi, for those that didn’t stumble over it: Am Donnerstag, den 15.01.2009, 01:10 +0200 schrieb Kari Pahula: haskell-devscripts needs to be updated, since it will still put in -999 instead of + in some cases. See #511857. After that, the following will need to be binNMUd (did I miss any?):

Bug#447007: marked as done (wavsplit: Doesn't support files larger than 2 GB.)

2009-01-17 Thread Debian Bug Tracking System
Your message dated Sat, 17 Jan 2009 11:51:35 GMT with message-id 200901171151.n0hbpzqp009...@kmos.homeip.net and subject line wavsplit has been removed from Debian, closing #447007 has caused the Debian Bug report #447007, regarding wavsplit: Doesn't support files larger than 2 GB. to be marked

Processed: Patch for haskell-devscripts vs. new ghc6 brokeness

2009-01-17 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: tags 512063 + patch Bug#512063: dh_haskell_prep generates postinsts that fail with ghc6 6.8.2dfsg1-1 There were no tags set. Tags added: patch thanks Stopping processing here. Please contact me if you need assistance. Debian bug tracking

Bug#512063: Patch for haskell-devscripts vs. new ghc6 brokeness

2009-01-17 Thread Joachim Breitner
tags 512063 + patch thanks Hi, I created a patch for this, it is attached. With this, I can build (for example) a haskell-string-utf8 that is installable. dpkg also handles upgrading from a broken version of haskell-string-utf8, by trying the prerm from the new package. Arjian, are you handling

Bug#432120: CVE-2007-3360: remote IRC servers can execute arbitrary commands on client

2009-01-17 Thread Nico Golde
Hi, * Kurt Roeckx k...@roeckx.be [2009-01-17 13:17]: On Sun, Sep 23, 2007 at 01:56:15PM +0200, Nico Golde wrote: I wrote a patch which should fix the issue. It is attached. Kind regards Nico --- ircii-pana-1.1/source/hook.c2003-04-11 03:09:07.0 +0200 +++

Bug#511641: [Ondrej Kolacek] Debian bug #511641 [xrdp] xrdp: Multiple security issues fix

2009-01-17 Thread Vincent Bernat
tags 511641 + patch thanks Hi! Here are patches proposed by Ondrej Kolacek. ---BeginMessage--- Hello, I have looked at and hopefully fixed the aforementioned bug; the diffs are against latest testing source (0.4.0~dfsg8) and thus potentially worthless but I am afraid I do not know the

Processed: [Ondrej Kolacek] Debian bug #511641 [xrdp] xrdp: Multiple security issues fix

2009-01-17 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: tags 511641 + patch Bug#511641: xrdp: Multiple security issues Tags were: security Tags added: patch thanks Stopping processing here. Please contact me if you need assistance. Debian bug tracking system administrator (administrator, Debian

Bug#512063: Patch for haskell-devscripts vs. new ghc6 brokeness

2009-01-17 Thread Arjan Oosting
Hi, I will look at this today and upload a fix. Greetings Arjan signature.asc Description: Dit berichtdeel is digitaal ondertekend

Bug#512111: iceweasel: Iceweasel disable Firefox upgrade checks

2009-01-17 Thread Sylvain Beucler
Package: iceweasel Version: 3.0.5-1 Severity: grave Tags: security Justification: user security hole Since Debian stable is a frozen distro, it's not uncommon to install the official Firefox binaries when the next version of Firefox is released, and isn't packaged in stable or backported yet.

Processed: severity of 512111 is normal

2009-01-17 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: severity 512111 normal Bug#512111: iceweasel: Iceweasel disable Firefox upgrade checks Severity set to `normal' from `grave' End of message, stopping processing here. Please contact me if you need assistance. Debian bug tracking system

Bug#512121: gdb_6.8.50.20090116.python-1(sparc/experimental): FTBFS: error: cast to pointer from integer of different size

2009-01-17 Thread Frank Lichtenheld
Package: gdb Version: 6.8.50.20090116.python-1 Severity: serious Hi, your package failed to build from source. | Automatic build of gdb_6.8.50.20090116.python-1 on njoerd by sbuild/sparc 98-farm | Build started at 20090117-0729

Bug#512120: gammu_1.22.91-1(hppa/experimental): FTBFS: test failure

2009-01-17 Thread Frank Lichtenheld
Package: gammu Version: 1.22.91-1 Severity: serious Hi, your package failed to build from source. | Automatic build of gammu_1.22.91-1 on meitner by sbuild/hppa 98-farm | Build started at 20090117-0236 | ** | Checking

Bug#512122: [devil] fix for #511844 results in an off-by-one

2009-01-17 Thread Nico Golde
Package: devil Version: 1.7.5-3 Severity: grave Tags: security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Hi, you fix #511844 by: while (a != '\n') { + if (count = 80) { // Line shouldn't be this long at all. +

Bug#512063: Patch for haskell-devscripts vs. new ghc6 brokeness

2009-01-17 Thread Arjan Oosting
Hi, Op zaterdag 17-01-2009 om 14:13 uur [tijdzone +0100], schreef Arjan Oosting: Hi, I will look at this today and upload a fix. I will upload a new version to unstable with the following changes: +haskell-devscripts (0.6.15~pre1) unstable; urgency=high + + * Set urgengy to high as it

Bug#512063: Please unblock haskell-devscripts 0.6.15

2009-01-17 Thread Arjan Oosting
Hi, A lot of Haskell libraries FTBFS after the last upload of GHC6. The upstream version of GHC changed from 6.8.2 to 6.8.2dfsg which broke haskell-devscripts and as such a lot of Haskell libraries. (See #512063) I have uploaded a new version of haskell-devscripts (0.6.15) to unstable to fix

Bug#504068: marked as done (cantlr depends on antlr-gcj that doesn't exists. It should depends on libantlr-java-gcj)

2009-01-17 Thread Debian Bug Tracking System
Your message dated Sat, 17 Jan 2009 14:50:31 + with message-id e1locvl-0003k1...@ries.debian.org and subject line Bug#504050: fixed in antlr 2.7.7-10 has caused the Debian Bug report #504050, regarding cantlr depends on antlr-gcj that doesn't exists. It should depends on libantlr-java-gcj to

Bug#512075: [Pkg-octave-devel] Bug#512075: #512075 octave-symbolic: Undefined symbol

2009-01-17 Thread Thomas Weber
package: octave-symbolic tag 512075 confirmed fixed 512075 1.0.7-1 thanks On Sat, Jan 17, 2009 at 02:20:47AM +, Steve Cotton wrote: 1. octave-symbolic is missing a dependency on libginac1.4 2. Even with libginac1.4 installed, Octave doesn't find the library without the help of export

Bug#504050: marked as done (cantlr: depends on nonexistent antlr-gcj (vs. libantlr-java-gcj))

2009-01-17 Thread Debian Bug Tracking System
Your message dated Sat, 17 Jan 2009 14:50:31 + with message-id e1locvl-0003k1...@ries.debian.org and subject line Bug#504050: fixed in antlr 2.7.7-10 has caused the Debian Bug report #504050, regarding cantlr: depends on nonexistent antlr-gcj (vs. libantlr-java-gcj) to be marked as done.

Bug#510857: Cups problem

2009-01-17 Thread Armin Faltl
Hello Adrian, I now tried to reproduce the behaviour with LogLevel debug set. I'm sorry to disappoint you - after having set the option to debug (with no verification this is the cause), I can't reproduce the problem any longer - it vanished, i.e. the PDF-files now print with command lp(1). To

Processed: Re: [Pkg-octave-devel] Bug#512075: #512075 octave-symbolic: Undefined symbol

2009-01-17 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: package: octave-symbolic Ignoring bugs not assigned to: octave-symbolic tag 512075 confirmed Bug#512075: octave-symbolic: Undefined symbol There were no tags set. Tags added: confirmed fixed 512075 1.0.7-1 Bug#512075: octave-symbolic:

Bug#512063: marked as done (dh_haskell_prep generates postinsts that fail with ghc6 6.8.2dfsg1-1)

2009-01-17 Thread Debian Bug Tracking System
Your message dated Sat, 17 Jan 2009 14:47:07 + with message-id e1locs3-0003lw...@ries.debian.org and subject line Bug#512063: fixed in haskell-devscripts 0.6.15 has caused the Debian Bug report #512063, regarding dh_haskell_prep generates postinsts that fail with ghc6 6.8.2dfsg1-1 to be

Bug#511849: marked as done (antlr: missing build-dependency java-gcj-compat-dev)

2009-01-17 Thread Debian Bug Tracking System
Your message dated Sat, 17 Jan 2009 14:50:31 + with message-id e1locvl-0003kc...@ries.debian.org and subject line Bug#511849: fixed in antlr 2.7.7-10 has caused the Debian Bug report #511849, regarding antlr: missing build-dependency java-gcj-compat-dev to be marked as done. This means that

Bug#512075: [Pkg-octave-devel] Bug#512075: #512075 octave-symbolic: Undefined symbol

2009-01-17 Thread Thomas Weber
Attached the diff between upstream's 1.0.6 and 1.0.7. I'll ask the release-team about the preferred solution (either patching or uploading the new upstream version). Thomas 1.0.6-1.0.7.diff.bz2 Description: Binary data

Bug#512122: marked as done ([devil] fix for #511844 results in an off-by-one)

2009-01-17 Thread Debian Bug Tracking System
Your message dated Sat, 17 Jan 2009 15:17:04 + with message-id e1locv2-0005y6...@ries.debian.org and subject line Bug#512122: fixed in devil 1.7.5-4 has caused the Debian Bug report #512122, regarding [devil] fix for #511844 results in an off-by-one to be marked as done. This means that you

Bug#432120: CVE-2007-3360: remote IRC servers can execute arbitrary commands on client

2009-01-17 Thread Kees Cook
Hi, On Sat, Jan 17, 2009 at 12:05:02PM +0100, Kurt Roeckx wrote: On Sun, Sep 23, 2007 at 01:56:15PM +0200, Nico Golde wrote: I wrote a patch which should fix the issue. It is attached. Kind regards + if(which sizeof(hook_functions) - 1) + return NO_ACTION_TAKEN; +

Processed: another CVE id

2009-01-17 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: retitle 511641 xrdp: CVE-2008-590[2-4] arbitrary code execution Bug#511641: xrdp: CVE-2008-590{2,3} arbitrary code execution Changed Bug title to `xrdp: CVE-2008-590[2-4] arbitrary code execution' from `xrdp: CVE-2008-590{2,3} arbitrary code

Bug#511641: another CVE id

2009-01-17 Thread Nico Golde
retitle 511641 xrdp: CVE-2008-590[2-4] arbitrary code execution thanks CVE-2008-5904 was also assigned. So we can sum this up as: CVE-2008-5904[0]: | The rdp_rdp_process_color_pointer_pdu function in rdp/rdp_rdp.c in | xrdp 0.4.1 and earlier allows remote RDP servers to have an unknown | impact

Bug#511641: CVE ids

2009-01-17 Thread Nico Golde
retitle 511641 xrdp: CVE-2008-590{2,3} arbitrary code execution thanks Hi, CVE-2008-5903 and CVE-2008-5902 have been assigned to these vulnerabilities, please reference them in the changelog if you fix this bug. Cheers Nico -- Nico Golde - http://www.ngolde.de - n...@jabber.ccc.de - GPG:

Processed: CVE ids

2009-01-17 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: retitle 511641 xrdp: CVE-2008-590{2,3} arbitrary code execution Bug#511641: xrdp: Multiple security issues Changed Bug title to `xrdp: CVE-2008-590{2,3} arbitrary code execution' from `xrdp: Multiple security issues'. thanks Stopping processing

Bug#511719: Build got disabled on powerpc

2009-01-17 Thread Sebastian Andrzej Siewior
The build of this package got disabled according to #432666. However, I don't understand why PowerPC did not get excluded from the Architectures field in the control file but via a rule in the rules file. Gentoo has only x86 and amd64 in arch list, ubuntu ships the same thing that debian does. I

Bug#511261: marked as done (CVE-2008-0049: Inproper certificate validation)

2009-01-17 Thread Debian Bug Tracking System
Your message dated Sat, 17 Jan 2009 17:46:58 +0100 with message-id 20090117164658.ga24...@country.nixsys.be and subject line Forgot the Closes: stanza has caused the Debian Bug report #511261, regarding CVE-2008-0049: Inproper certificate validation to be marked as done. This means that you

Processed: severity of 510965 is important

2009-01-17 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: # most people do not seem to be affected severity 510965 important Bug#510965: ganeti: Ganeti does not work with python-twisted 8.1 Severity set to `important' from `grave' End of message, stopping processing here. Please contact me if you

Bug#512132: xspecs: no upstream pointer in copyright

2009-01-17 Thread Ian Zimmerman
Package: xspecs Version: 1:1.4-3 Severity: serious Justification: Policy 12.5 In addition, the copyright file must say where the upstream sources (if any) were obtained. It doesn't. This is a problem because there's no way to work around bug 383642 by rebuilding the docs myself. -- System

Bug#466947: marked as done (xine-lib-1.2_1.1.90hg+20080214+db71e67bee03-1(hppa/experimental): FTBFS: unknown opcode)

2009-01-17 Thread Debian Bug Tracking System
Your message dated Sat, 17 Jan 2009 17:10:52 + with message-id 5024965360%li...@youmustbejoking.demon.co.uk and subject line Bug 466947: fixed, according to build logs. has caused the Debian Bug report #466947, regarding xine-lib-1.2_1.1.90hg+20080214+db71e67bee03-1(hppa/experimental):

Bug#511719: Build got disabled on powerpc

2009-01-17 Thread Evgeni Golov
On Sat, 17 Jan 2009 17:47:39 +0100 Sebastian Andrzej Siewior wrote: The build of this package got disabled according to #432666. However, I don't understand why PowerPC did not get excluded from the Architectures field in the control file but via a rule in the rules file. Gentoo has only

Processed: found 496395 in 3.0.7+1-1

2009-01-17 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: found 496395 3.0.7+1-1 Bug#496395: The possibility of attack with the help of symlinks in some Debian packages Bug marked as found in version 3.0.7+1-1. End of message, stopping processing here. Please contact me if you need assistance.

Bug#512063: Please unblock haskell-devscripts 0.6.15

2009-01-17 Thread Arjan Oosting
Hi, Op zaterdag 17-01-2009 om 15:44 uur [tijdzone +0100], schreef Arjan Oosting: Hi, A lot of Haskell libraries FTBFS after the last upload of GHC6. The upstream version of GHC changed from 6.8.2 to 6.8.2dfsg which broke haskell-devscripts and as such a lot of Haskell libraries. (See

Bug#508476: xserver-xorg-core: same issue on sid with 1.4.2-10

2009-01-17 Thread Frank Zimmermann
Package: xserver-xorg-core Version: 2:1.4.2-10 Followup-For: Bug #508476 Hi there, after an update to 1.4.2-10 my xserver is no longer starting with the same issue, however deleting xserver-xorg-video-fbdev did not solve the issue. -- Package-specific info: Contents of /var/lib/x11/X.roster:

Bug#511719: Build got disabled on powerpc

2009-01-17 Thread Sebastian Andrzej Siewior
* Evgeni Golov | 2009-01-17 18:19:43 [+0100]: Well, the really correct sollution would be fixing the issues on PowerPC. And as far I have heard those are actually fixed in the latest version, so we maybe just can reenable ppc builds and close that bug... But that needs further testing, and I dont

Bug#511844: marked as done (CVE-2008-5262: DevIL iGetHdrHeader() Buffer Overflow Vulnerabilities)

2009-01-17 Thread Debian Bug Tracking System
Your message dated Sat, 17 Jan 2009 17:17:05 + with message-id e1loenb-0006dp...@ries.debian.org and subject line Bug#511844: fixed in devil 1.6.8-rc2-3+lenny1 has caused the Debian Bug report #511844, regarding CVE-2008-5262: DevIL iGetHdrHeader() Buffer Overflow Vulnerabilities to be marked

Processed: found 511261 in 2.5.9-7

2009-01-17 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: found 511261 2.5.9-7 Bug#511261: CVE-2008-0049: Inproper certificate validation Bug marked as found in version 2.5.9-7. End of message, stopping processing here. Please contact me if you need assistance. Debian bug tracking system

Bug#508476: xserver-xorg-core: same issue on sid with 1.4.2-10

2009-01-17 Thread Julien Cristau
On Sat, 2009-01-17 at 18:27 +0100, Frank Zimmermann wrote: Hi there, after an update to 1.4.2-10 my xserver is no longer starting with the same issue, however deleting xserver-xorg-video-fbdev did not solve the issue. no. your problem is a completely different one: (II) ATI Proprietary

Bug#511509: marked as done (tqsllib: Improper checking of the return value of EVP_VerifyFinal())

2009-01-17 Thread Debian Bug Tracking System
Your message dated Sat, 17 Jan 2009 18:02:09 + with message-id e1lofun-0003fj...@ries.debian.org and subject line Bug#511509: fixed in tqsllib 2.0-8 has caused the Debian Bug report #511509, regarding tqsllib: Improper checking of the return value of EVP_VerifyFinal() to be marked as done.

Bug#510857: about Job #16

2009-01-17 Thread Armin Faltl
When I opened the HTML-interface http://localhost:631/, before setting 'LogLevel debug', I checked the job queue for printer lj2200 and job #16 was still hanging there, iirc as stopped since several days. I'm not 100% sure, that the printer has been turned on at the same time the Laptop was on

Bug#511708: aptitude: [etch upgrade] TUI consistently blocks after doing one set of operations

2009-01-17 Thread Daniel Burrows
I just had a realization. We don't need to mess around with bisect and recompiling; you can just grab old versions from snapshot.debian.net and see whether the bug shows up in them. Once we have a tighter range of versions, it might be worth trying bisect out, but it'll be easier too.

Bug#510782: python-antlr available

2009-01-17 Thread Jan Dittberner
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hello, a new binary package python-antlr is available since antlr-2.7.7-10 (uploaded yesterday). python-xlwt will use this package to avoid pulling the giant java dependency tree of antlr. I suggest that we do the same for pyexcelerator. I hope that

Bug#512151: [etoken-pro-support] Outdated required drivers information makes package unusable

2009-01-17 Thread Ariel Garcia
Package: etoken-pro-support Version: 0.0.5 Severity: grave --- Please enter the report below this line. --- The README.Debian file /usr/share/doc/etoken-pro-support/README.Debian points the user to download the required (proprietary) drivers from

Processed: severity of 511846 is important

2009-01-17 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: # Automatically generated email from bts, devscripts version 2.9.26 severity 511846 important Bug#511846: netatalk: kernel panic after package update to 2.0.3-11+lenny1 amd64 Severity set to `important' from `grave' End of message, stopping

Processed: severity of 511165 is important

2009-01-17 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: # Automatically generated email from bts, devscripts version 2.9.26 severity 511165 important Bug#511165: linux-image-2.6.26-1-openvz-amd64: Kernel panic with nf_conntrack and FTP Severity set to `important' from `grave' End of message,

Bug#512155: /usr/share/doc/mercurial is empty after upgrade (ok after fresh install)

2009-01-17 Thread Steve Cotton
Package: mercurial Version: 1.1.2-1 Severity: serious Justification: Policy 12.5, 12.7 st...@tsunami:~$ ls -l /usr/share/doc/mercurial total 0 Upgrading from 1.0.1-5.1 to 1.1.2-1 leaves an empty documentation directory. Purging then installing 1.1.2-1 symlinks it to mercurial-common.

Bug#512157: missing libcurl3-gnutls dependency. crashes iceweasel if the package is not installed

2009-01-17 Thread Modestas Vainius
Package: flashplugin-nonfree Version: 1:2.4 Severity: serious Hello, if libcurl3-gnutls is not installed, iceweasel always crashes on the first attempt to display flash content. Please add this dependency. -- Package-specific info: Debian version: 5.0 Architecture: i386 Package version: 1:2.4

Processed: your mail

2009-01-17 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: tag 512155 + pending Bug#512155: /usr/share/doc/mercurial is empty after upgrade (ok after fresh install) There were no tags set. Tags added: pending thanks Stopping processing here. Please contact me if you need assistance. Debian bug

Bug#512167: gnome-volume-manager: Runs wrong command when importing photos

2009-01-17 Thread Mika Hanhijärvi
Package: gnome-volume-manager Version: 2.22.1-1 Severity: grave Justification: renders package unusable I have a digital camera which I have used for some time now. Importing photos from the camera used to work just fine On Lenny earlier, but now gnome-volume-manager seems to run wrong command