Bug#696816: jenkins: Security issues were found in Jenkins core

2013-01-29 Thread James Page
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi Steve On 25/01/13 15:18, Steven McDonald wrote: The issue was raised on debian-devel[0] that this bug still affects unstable and is causing jenkins to be a candidate for removal from wheezy. I have backported the fixes for these issues from

Processed: Reopen jenkins remote execution vulnerability for unstable

2013-01-29 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: reopen 697617 Bug #697617 {Done: James Page james.p...@ubuntu.com} [jenkins] jenkins: CVE-2013-0158: remote code execution vulnerability 'reopen' may be inappropriate when a bug has been closed with a version; all fixed versions will be cleared,

Processed: Mark as fixed in experimental

2013-01-29 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: fixed 697617 jenkins/1.480.2+dfsg-1~exp1 Bug #697617 [jenkins] jenkins: CVE-2013-0158: remote code execution vulnerability Marked as fixed in versions jenkins/1.480.2+dfsg-1~exp1. thanks Stopping processing here. Please contact me if you need

Bug#697617: Reopen jenkins remote execution vulnerability for unstable

2013-01-29 Thread Julien Cristau
On Tue, Jan 29, 2013 at 12:09:29 +, James Page wrote: reopen 697617 thanks There's no need to do that, fwiw. The bts knows if it's fixed in a certain version then earlier ones are affected... Cheers, Julien __ This is the maintainer address of Debian's Java team

Processing of jenkins_1.447.2+dfsg-3_amd64.changes

2013-01-29 Thread Debian FTP Masters
jenkins_1.447.2+dfsg-3_amd64.changes uploaded successfully to localhost along with the files: jenkins_1.447.2+dfsg-3.dsc jenkins_1.447.2+dfsg-3.debian.tar.gz libjenkins-java_1.447.2+dfsg-3_all.deb libjenkins-plugin-parent-java_1.447.2+dfsg-3_all.deb jenkins-common_1.447.2+dfsg-3_all.deb

jenkins_1.447.2+dfsg-3_amd64.changes ACCEPTED into unstable

2013-01-29 Thread Debian FTP Masters
Accepted: -BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Format: 1.8 Date: Tue, 29 Jan 2013 12:24:30 + Source: jenkins Binary: libjenkins-java libjenkins-plugin-parent-java jenkins-common jenkins jenkins-slave jenkins-external-job-monitor jenkins-cli jenkins-tomcat Architecture: source

Bug#696816: marked as done (jenkins: Security issues were found in Jenkins core)

2013-01-29 Thread Debian Bug Tracking System
Your message dated Tue, 29 Jan 2013 13:32:46 + with message-id e1u0bis-0004mb...@franck.debian.org and subject line Bug#696816: fixed in jenkins 1.447.2+dfsg-3 has caused the Debian Bug report #696816, regarding jenkins: Security issues were found in Jenkins core to be marked as done. This

ca-certificates-java_20121112+nmu2_amd64.changes ACCEPTED into unstable

2013-01-29 Thread Debian FTP Masters
Accepted: -BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Format: 1.8 Date: Sun, 27 Jan 2013 14:19:41 +0100 Source: ca-certificates-java Binary: ca-certificates-java Architecture: source all Version: 20121112+nmu2 Distribution: unstable Urgency: medium Maintainer: Debian Java Maintainers

Bug#694889: marked as done (ca-certificates-java: early triggered jks-keystore may fail and leave the temporary /etc/java-7-openjdk/jvm-$arch.cfg)

2013-01-29 Thread Debian Bug Tracking System
Your message dated Tue, 29 Jan 2013 13:47:28 + with message-id e1u0bx6-0007dv...@franck.debian.org and subject line Bug#694888: fixed in ca-certificates-java 20121112+nmu2 has caused the Debian Bug report #694888, regarding ca-certificates-java: early triggered jks-keystore may fail and leave

Bug#694888: marked as done (ca-certificates-java: early triggered jks-keystore may fail and leave the temporary /etc/java-7-openjdk/jvm-$arch.cfg)

2013-01-29 Thread Debian Bug Tracking System
Your message dated Tue, 29 Jan 2013 13:47:28 + with message-id e1u0bx6-0007dv...@franck.debian.org and subject line Bug#694888: fixed in ca-certificates-java 20121112+nmu2 has caused the Debian Bug report #694888, regarding ca-certificates-java: early triggered jks-keystore may fail and leave

Bug#699254: libpdfbox-java: FTBFS: cp: missing file operand

2013-01-29 Thread Lucas Nussbaum
Source: libpdfbox-java Version: 1:1.7.0+dfsg-3 Severity: serious Tags: wheezy sid User: debian...@lists.debian.org Usertags: qa-ftbfs-20130129 qa-ftbfs Justification: FTBFS in wheezy on amd64 Hi, During a rebuild of all packages in *wheezy*, your package failed to build on amd64. Relevant part

Processing of libpdfbox-java_1.7.0+dfsg-4_amd64.changes

2013-01-29 Thread Debian FTP Masters
libpdfbox-java_1.7.0+dfsg-4_amd64.changes uploaded successfully to localhost along with the files: libpdfbox-java_1.7.0+dfsg-4.dsc libpdfbox-java_1.7.0+dfsg-4.debian.tar.gz libpdfbox-java_1.7.0+dfsg-4_all.deb libpdfbox-java-doc_1.7.0+dfsg-4_all.deb libjempbox-java_1.7.0+dfsg-4_all.deb

Processed: tagging 699254

2013-01-29 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: tags 699254 + confirmed Bug #699254 [src:libpdfbox-java] libpdfbox-java: FTBFS: cp: missing file operand Added tag(s) confirmed. thanks Stopping processing here. Please contact me if you need assistance. -- 699254:

libpdfbox-java_1.7.0+dfsg-4_amd64.changes ACCEPTED into unstable

2013-01-29 Thread Debian FTP Masters
Accepted: -BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Format: 1.8 Date: Tue, 29 Jan 2013 17:07:45 +0100 Source: libpdfbox-java Binary: libpdfbox-java libpdfbox-java-doc libjempbox-java libjempbox-java-doc libfontbox-java libfontbox-java-doc Architecture: source all Version: 1:1.7.0+dfsg-4

Bug#699254: marked as done (libpdfbox-java: FTBFS: cp: missing file operand)

2013-01-29 Thread Debian Bug Tracking System
+dfsg-3 Severity: serious Tags: wheezy sid User: debian...@lists.debian.org Usertags: qa-ftbfs-20130129 qa-ftbfs Justification: FTBFS in wheezy on amd64 Hi, During a rebuild of all packages in *wheezy*, your package failed to build on amd64. Relevant part: debian/rules build dh build

Bug#698974: umlet dependency on libjsyntaxpane-java

2013-01-29 Thread Benjamin Mesing
Hi, from my Point of view, there is nothing speaking against a new version of jsyntaxpane. As far as I understand it, umlet does not need to be recompiled and will work better with the new version, so please go ahead. Best regards Benjamin On Fri, 2013-01-25 at 23:00 +0100, Felix Natter wrote:

Bug#657281: src/java/org/apache/fop/pdf/ sRGB Color Space Profile.icm is non-free

2013-01-29 Thread Stuart Prescott
Hi! This file seems to have been copied into quite a few different source trees. See #699301, #699304, #699305 and #699306. A relicensing solution from HP would be fantastic about now in the wheezy release cycle. Looking through source packages, with an sRGB*icm file in them, the following