Bug#731735: pu: package glance/2012.1.1-5+deb7u1
On 2014-08-24 19:58, Adam D. Barratt wrote: On 2014-01-22 21:37, Adam D. Barratt wrote: On Mon, 2013-12-09 at 18:12 +0100, Moritz Mühlenhoff wrote: > I have prepared an update for Glance over here: > http://archive.gplhost.com/pub/security/glance/ The security tracker lists this issue as potentially open in Wheezy: https://security-tracker.debian.org/tracker/CVE-2013-4354 Does this affect stable and is there a fix which can be included along? Ping? (On both the original upload and Moritz's question.) Re-ping. Re-re-ping. If nothing happens with this soon then I'm tempted to close the request, rather than leaving it open indefinitely. Regards, Adam -- To UNSUBSCRIBE, email to debian-release-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org Archive: https://lists.debian.org/cddeeb637597707803c1cb5fb80b3...@mail.adsl.funky-badger.org
Bug#731735: pu: package glance/2012.1.1-5+deb7u1
On 2014-01-22 21:37, Adam D. Barratt wrote: On Mon, 2013-12-09 at 18:12 +0100, Moritz Mühlenhoff wrote: > I have prepared an update for Glance over here: > http://archive.gplhost.com/pub/security/glance/ The security tracker lists this issue as potentially open in Wheezy: https://security-tracker.debian.org/tracker/CVE-2013-4354 Does this affect stable and is there a fix which can be included along? Ping? (On both the original upload and Moritz's question.) Re-ping. Regards, Adam -- To UNSUBSCRIBE, email to debian-release-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org Archive: https://lists.debian.org/54f709b27441842d14e46f23db3a3...@mail.adsl.funky-badger.org
Bug#731735: pu: package glance/2012.1.1-5+deb7u1
On Mon, 2013-12-09 at 18:12 +0100, Moritz Mühlenhoff wrote: > > I have prepared an update for Glance over here: > > http://archive.gplhost.com/pub/security/glance/ > > The security tracker lists this issue as potentially open in > Wheezy: https://security-tracker.debian.org/tracker/CVE-2013-4354 > > Does this affect stable and is there a fix which can be included > along? Ping? (On both the original upload and Moritz's question.) Regards, Adam -- To UNSUBSCRIBE, email to debian-release-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org Archive: http://lists.debian.org/1390426653.28217.43.ca...@jacala.jungle.funky-badger.org
Bug#731735: pu: package glance/2012.1.1-5+deb7u1
> I have prepared an update for Glance over here: > http://archive.gplhost.com/pub/security/glance/ The security tracker lists this issue as potentially open in Wheezy: https://security-tracker.debian.org/tracker/CVE-2013-4354 Does this affect stable and is there a fix which can be included along? Cheers, Moritz -- To UNSUBSCRIBE, email to debian-release-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org Archive: http://lists.debian.org/20131209171242.GA4385@pisco.westfalen.local
Bug#731735: pu: package glance/2012.1.1-5+deb7u1
Control: tag -1 confirmed Hi, On 2013-12-09 08:06, Thomas Goirand wrote: Attached to this mail is the relevant debdiff for Glance. What the update does is only fixing the logrotate path, which is currently wrong in the current Wheezy version. Here's the changelog: [ Thomas Goirand ] * debian/gbp.conf now tracking the debian/wheezy branch. [ Julien Cristau ] * Fix logrotate config to reference the right file names. The queue is frozen for 7.3, so please go ahead *next week* (you can use the delayed queue for this if you like). It would be nice to mention the bug number in the changelog, then the BTS will find out about your upload. Thanks, -- Jonathan Wiltshire j...@debian.org Debian Developer http://people.debian.org/~jmw 4096R: 0xD3524C51 / 0A55 B7C5 1223 3942 86EC 74C3 5394 479D D352 4C51 i have six years of solaris sysadmin experience, from 8->10. i am well qualified to say it is made from bonghits layered on top of bonghits -- To UNSUBSCRIBE, email to debian-release-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org Archive: http://lists.debian.org/5b05fd19850bbf0c7364eecaf3f56...@hogwarts.powdarrmonkey.net
Processed: Re: Bug#731735: pu: package glance/2012.1.1-5+deb7u1
Processing control commands: > tag -1 confirmed Bug #731735 [release.debian.org] pu: package glance/2012.1.1-5+deb7u1 Added tag(s) confirmed. -- 731735: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=731735 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems -- To UNSUBSCRIBE, email to debian-release-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org Archive: http://lists.debian.org/handler.s.b731735.138659830310579.transcr...@bugs.debian.org
Bug#731735: pu: package glance/2012.1.1-5+deb7u1
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: pu Hi, I have prepared an update for Glance over here: http://archive.gplhost.com/pub/security/glance/ Attached to this mail is the relevant debdiff for Glance. What the update does is only fixing the logrotate path, which is currently wrong in the current Wheezy version. Here's the changelog: [ Thomas Goirand ] * debian/gbp.conf now tracking the debian/wheezy branch. [ Julien Cristau ] * Fix logrotate config to reference the right file names. Thanks considering this and letting me know, Thomas Goirand (zigo) diff -Nru glance-2012.1.1/debian/changelog glance-2012.1.1/debian/changelog --- glance-2012.1.1/debian/changelog 2013-03-14 20:53:41.0 + +++ glance-2012.1.1/debian/changelog 2013-12-09 07:48:43.0 + @@ -1,3 +1,13 @@ +glance (2012.1.1-5+deb7u1) wheezy-proposed-updates; urgency=low + + [ Thomas Goirand ] + * debian/gbp.conf now tracking the debian/wheezy branch. + + [ Julien Cristau ] + * Fix logrotate config to reference the right file names. + + -- Thomas Goirand Mon, 09 Dec 2013 15:44:43 +0800 + glance (2012.1.1-5) unstable; urgency=high * CVE-2013-1840: fixes "Backend credentials leak in Glance v1 API" diff -Nru glance-2012.1.1/debian/gbp.conf glance-2012.1.1/debian/gbp.conf --- glance-2012.1.1/debian/gbp.conf 2013-03-14 20:53:41.0 + +++ glance-2012.1.1/debian/gbp.conf 2013-12-09 07:48:43.0 + @@ -1,6 +1,6 @@ [DEFAULT] upstream-branch = master -debian-branch = debian/unstable +debian-branch = debian/wheezy upstream-tag = %(version)s compression = xz diff -Nru glance-2012.1.1/debian/glance-api.logrotate glance-2012.1.1/debian/glance-api.logrotate --- glance-2012.1.1/debian/glance-api.logrotate 2013-03-14 20:53:41.0 + +++ glance-2012.1.1/debian/glance-api.logrotate 2013-12-09 07:48:43.0 + @@ -1,4 +1,4 @@ -/var/log/glance/glance-api.log { +/var/log/glance/api.log { daily missingok compress diff -Nru glance-2012.1.1/debian/glance-registry.logrotate glance-2012.1.1/debian/glance-registry.logrotate --- glance-2012.1.1/debian/glance-registry.logrotate 2013-03-14 20:53:41.0 + +++ glance-2012.1.1/debian/glance-registry.logrotate 2013-12-09 07:48:43.0 + @@ -1,4 +1,4 @@ -/var/log/glance/glance-registry.log { +/var/log/glance/registry.log { daily missingok compress