Bug#496821: Using the Gant for Xfce icon theme gnumeric crashes

2008-08-27 Thread J.H.M. Dassen (Ray)
reassign 496821 libxml2
forcemerge 496125 496821
thanks

The current lenny package of libxml2 (2.6.32.dfsg-2+lenny1) contains a fix
for a security issue (CVE-2008-3281). Unfortunately, the fix that is is in
the lenny package broke librsvg (which is used to load/render icons in SVG
format).

The sid package of libxml2 (2.6.32.dfsg-3) has a different fix for this
issue which should not break librsvg anymore. This package will hopefully
make it into lenny in a few days; refer to
http://bjorn.haxx.se/debian/testing.pl?package=libxml2
for details on its migration status.

HTH,
Ray
-- 
I keep pitching my epic space opera about alien robots who infest our planet
and live off celebrities dryer lint to various publishers, but nobody wants
to publish a book written by a leader of mexican food, and starring a hero
named Litmus VanCenturfuge and his sidekick Pipet Jerks.- CmdrTaco



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#496821: Using the Gant for Xfce icon theme gnumeric crashes

2008-08-27 Thread J.H.M. Dassen (Ray)
This problem is not reproducible for me using an i386 lenny pbuilder chroot
on amd64.

Test scenario:

Outside chroot:
cd /tmp
# Presumably, this is the Gant icon theme referred to in the subject
wget http://overlay.uberpenguin.net/icons-xfce-gant-3.9-6.tar.bz2
sudo cp /tmp/icons-xfce-gant-3.9-6.tar.bz2 /var/cache/pbuilder/build/.../root/
Xnest :10; &
xauth list | grep unix:10

Inside chroot:
echo "deb http://security.debian.org/ lenny/updates main" >> 
/etc/apt/sources.list
apt-get update
apt-get dselect-upgrade
apt-get install xfce4 gnumeric valgrind xauth locales
echo "es_AR.UTF-8 UTF-8" >> /etc/local.gen
locale-gen
export LANG=es_AR.UTF-8
export LC_CTYPE=es_AR.UTF-8
export XAUTHORITY=/root/.Xauthority
# Allow chroot session access to Xnest started outside chroot
xauth add ...
export DISPLAY=localhost:10
cd /usr/share/icons && tar xvf /root/icons-xfce-gant-3.9-6.tar.bz2
xfce4-session
# Xfce main menu -> Settings -> User Interface Settings -> Icon Theme ->
# select "Gant for Xfce"
#
# Start terminal
G_SLICE=always-malloc valgrind --num-callers=20 /usr/bin/gnumeric

Result: gnumeric start normally.
-- 
The road to hell is paved with telecom billing requirements.



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#496821: Using the Gant for Xfce icon theme gnumeric crashes

2008-08-27 Thread Martín Ernesto Barreyro

Package: gnumeric
Version: 1.8.3-5
Severity: minor



-- System Information:
Debian Release: lenny/sid
   APT prefers testing
   APT policy: (500, 'testing')
Architecture: i386 (i686)

Kernel: Linux 2.6.25-2-686 (SMP w/1 CPU core)
Locale: LANG=es_AR.UTF-8, LC_CTYPE=es_AR.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/bash

Versions of packages gnumeric depends on:
ii  debconf [debc 1.5.22 Debian configuration
management sy
ii  gconf22.22.0-1   GNOME configuration database
syste
ii  gnumeric-comm 1.8.3-5spreadsheet application for
GNOME
ii  gsfonts   1:8.11+urwcyr1.0.7~pre44-3 Fonts for the Ghostscript
interpre
ii  libatk1.0-0   1.22.0-1   The ATK accessibility toolkit
ii  libbonobo2-0  2.22.0-1   Bonobo CORBA interfaces
library
ii  libbonoboui2- 2.22.0-1   The Bonobo UI library
ii  libc6 2.7-13 GNU C Library: Shared
libraries
ii  libcairo2 1.6.4-6The Cairo 2D vector graphics
libra
ii  libgconf2-4   2.22.0-1   GNOME configuration database
syste
ii  libglade2-0   1:2.6.2-1  library to load .glade files
at ru
ii  libglib2.0-0  2.16.4-2   The GLib library of C routines
ii  libgnome2-0   2.20.1.1-1 The GNOME 2 library - runtime
file
ii  libgnomeui-0  2.20.1.1-1 The GNOME 2 libraries (User
Interf
ii  libgnomevfs2- 1:2.22.0-4 GNOME Virtual File System
(runtime
ii  libgoffice-0- 0.6.3-1Document centric objects
library -
ii  libgsf-1-114  1.14.8-1   Structured File Library -
runtime
ii  libgtk2.0-0   2.12.11-3  The GTK+ graphical user
interface
ii  libpango1.0-0 1.20.5-1   Layout and rendering of
internatio
ii  libxml2   2.6.32.dfsg-2+lenny1   GNOME XML library
ii  procps1:3.2.7-8  /proc file system utilities
ii  zlib1g1:1.2.3.3.dfsg-12  compression library - runtime

Versions of packages gnumeric recommends:
ii  evince2.22.2-2   Document (postscript, pdf)
viewer

Versions of packages gnumeric suggests:
pn  epiphany-browser   (no description available)
pn  gnumeric-doc   (no description available)
pn  gnumeric-plugins-extra (no description available)
pn  ttf-liberation | ttf-mscorefo  (no description available)

-- debconf information:
   gnumeric/existing-process: false

-- stacktrace using Valgrind
==11565== Memcheck, a memory error detector.
==11565== Copyright (C) 2002-2007, and GNU GPL'd, by Julian Seward et al.
==11565== Using LibVEX rev 1854, a library for dynamic binary translation.
==11565== Copyright (C) 2004-2007, and GNU GPL'd, by OpenWorks LLP.
==11565== Using valgrind-3.3.1-Debian, a dynamic binary instrumentation
framework.
==11565== Copyright (C) 2000-2007, and GNU GPL'd, by Julian Seward et al.
==11565== For more details, rerun with: -v
==11565==
==11565== Invalid write of size 4
==11565==at 0x4D78C60: xmlParseEntityDecl (parser.c:4801)
==11565==by 0x4D79455: xmlParseMarkupDecl (parser.c:5947)
==11565==by 0x4D79501: xmlParseInternalSubset (parser.c:7310)
==11565==by 0x4D7A3AB: xmlParseChunk (parser.c:10782)
==11565==by 0x78C23D5: (within /usr/lib/librsvg-2.so.2.22.2)
==11565==by 0x788BA1F: (within
/usr/lib/gtk-2.0/2.10.0/loaders/svg_loader.so)
==11565==by 0x49D1118: gdk_pixbuf_loader_write (in
/usr/lib/libgdk_pixbuf-2.0.so.0.1200.11)
==11565==by 0x46CC713: (within /usr/lib/libgtk-x11-2.0.so.0.1200.11)
==11565==by 0x46CCD50: gtk_icon_info_load_icon (in
/usr/lib/libgtk-x11-2.0.so.0.1200.11)
==11565==by 0x46CED91: gtk_icon_theme_load_icon (in
/usr/lib/libgtk-x11-2.0.so.0.1200.11)
==11565==by 0x46C9BBE: gtk_icon_set_render_icon (in
/usr/lib/libgtk-x11-2.0.so.0.1200.11)
==11565==by 0x4838C49: gtk_widget_render_icon (in
/usr/lib/libgtk-x11-2.0.so.0.1200.11)
==11565==by 0x46E0E1D: (within /usr/lib/libgtk-x11-2.0.so.0.1200.11)
==11565==by 0x46E0EF0: (within /usr/lib/libgtk-x11-2.0.so.0.1200.11)
==11565==by 0x4A936DB: g_cclosure_marshal_VOID__BOXED (in
/usr/lib/libgobject-2.0.so.0.1600.4)
==11565==by 0x4A85098: (within /usr/lib/libgobject-2.0.so.0.1600.4)
==11565==by 0x4A8684F: g_closure_invoke (in
/usr/lib/libgobject-2.0.so.0.1600.4)
==11565==by 0x4A996D5: (within /usr/lib/libgobject-2.0.so.0.1600.4)
==11565==by 0x4A9B3E3: g_signal_emit_valist (in
/usr/lib/libgobject-2.0.so.0.1600.4)
==11565==by 0x4A9B6EC: g_signal_emit_by_name (in
/usr/lib/libgobject-2.0.so.0.1600.4)
==11565==  Address 0x6c60dc4 is 0 bytes after a block of size 76 alloc'd
==11565==at 0x4023D6E: malloc (vg_replace_malloc.c:207)
==11565==by 0x78C42A1: (within /usr/lib/librsvg-2.so.2.22.2)
==11565==by 0x4D7918B: xmlParseEntityDecl (parser.c:4673)
==11565==by 0x4D79455: xmlParseMarkupDecl (parse