[Git][java-team/jython] Pushed new tag upstream/2.7.3+repack1

2023-01-07 Thread Gilles Filippini (@pini)


Gilles Filippini pushed new tag upstream/2.7.3+repack1 at Debian Java 
Maintainers / jython

-- 
View it on GitLab: 
https://salsa.debian.org/java-team/jython/-/tree/upstream/2.7.3+repack1
You're receiving this email because of your account on salsa.debian.org.


___
pkg-java-commits mailing list
pkg-java-comm...@alioth-lists.debian.net
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/pkg-java-commits


[Git][java-team/jython] Pushed new tag debian/2.7.3+repack1-1

2023-01-07 Thread Gilles Filippini (@pini)


Gilles Filippini pushed new tag debian/2.7.3+repack1-1 at Debian Java 
Maintainers / jython

-- 
View it on GitLab: 
https://salsa.debian.org/java-team/jython/-/tree/debian/2.7.3+repack1-1
You're receiving this email because of your account on salsa.debian.org.


___
pkg-java-commits mailing list
pkg-java-comm...@alioth-lists.debian.net
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/pkg-java-commits


[Git][java-team/jython][upstream] New upstream version 2.7.3+repack1

2023-01-07 Thread Gilles Filippini (@pini)


Gilles Filippini pushed to branch upstream at Debian Java Maintainers / jython


Commits:
226464d0 by Gilles Filippini at 2022-12-29T12:34:05+01:00
New upstream version 2.7.3+repack1
- - - - -


30 changed files:

- + .github/workflows/ant-javatest.yml
- + .github/workflows/ant-regrtest.yml
- + .github/workflows/codespell.yml
- + .github/workflows/launcher-test.yml
- .gitignore
- + .hgsub
- + .hgsubstate
- − .hgtags
- .travis.yml
- ACKNOWLEDGMENTS
- LICENSE.txt
- Lib/_socket.py
- Lib/gzip.py
- Lib/ssl.py
- Lib/test/regrtest.py
- Lib/test/test_array.py
- Lib/test/test_cmd_line.py
- Lib/test/test_imaplib.py
- Lib/test/test_java_integration.py
- Lib/test/test_java_visibility.py
- Lib/test/test_socket.py
- Lib/test/test_socket_jy.py
- Lib/test/test_ssl_jy.py
- Lib/test/test_str_jy.py
- Lib/test/test_subprocess.py
- Lib/test/test_support.py
- Lib/test/test_urllib.py
- Lib/test/test_urllib2.py
- Lib/test/test_xmlrpc.py
- Lib/test/test_xpickle.py


The diff was not included because it is too large.


View it on GitLab: 
https://salsa.debian.org/java-team/jython/-/commit/226464d0a993b68c0d55e6a5a3b6b7e52c0ca4ad

-- 
View it on GitLab: 
https://salsa.debian.org/java-team/jython/-/commit/226464d0a993b68c0d55e6a5a3b6b7e52c0ca4ad
You're receiving this email because of your account on salsa.debian.org.


___
pkg-java-commits mailing list
pkg-java-comm...@alioth-lists.debian.net
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/pkg-java-commits


[Git][java-team/jython][pristine-tar] pristine-tar data for jython_2.7.3+repack1.orig.tar.gz

2023-01-07 Thread Gilles Filippini (@pini)


Gilles Filippini pushed to branch pristine-tar at Debian Java Maintainers / 
jython


Commits:
8bee1df5 by Gilles Filippini at 2022-12-29T12:34:34+01:00
pristine-tar data for jython_2.7.3+repack1.orig.tar.gz

- - - - -


2 changed files:

- + jython_2.7.3+repack1.orig.tar.gz.delta
- + jython_2.7.3+repack1.orig.tar.gz.id


Changes:

=
jython_2.7.3+repack1.orig.tar.gz.delta
=
Binary files /dev/null and b/jython_2.7.3+repack1.orig.tar.gz.delta differ


=
jython_2.7.3+repack1.orig.tar.gz.id
=
@@ -0,0 +1 @@
+d8b1ed86071d33df3a83b71fc8d454415022c6e4



View it on GitLab: 
https://salsa.debian.org/java-team/jython/-/commit/8bee1df5b9f8c0319bd399fa6277de529fb9e7d9

-- 
View it on GitLab: 
https://salsa.debian.org/java-team/jython/-/commit/8bee1df5b9f8c0319bd399fa6277de529fb9e7d9
You're receiving this email because of your account on salsa.debian.org.


___
pkg-java-commits mailing list
pkg-java-comm...@alioth-lists.debian.net
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/pkg-java-commits


[Git][java-team/jython][master] 5 commits: d/watch - Fix repo path

2023-01-07 Thread Gilles Filippini (@pini)


Gilles Filippini pushed to branch master at Debian Java Maintainers / jython


Commits:
bf303291 by Gilles Filippini at 2022-12-29T12:33:23+01:00
d/watch - Fix repo path

- - - - -
226464d0 by Gilles Filippini at 2022-12-29T12:34:05+01:00
New upstream version 2.7.3+repack1
- - - - -
c91864c6 by Gilles Filippini at 2022-12-29T12:34:35+01:00
Update upstream source from tag 'upstream/2.7.3+repack1'

Update to upstream version '2.7.3+repack1'
with Debian dir 42ff13872a52211add06b76db5d1c4e4ad494ea1
- - - - -
b2a8250b by Gilles Filippini at 2023-01-07T17:12:29+01:00
Update patches for 2.7.3

- - - - -
d4165317 by Gilles Filippini at 2023-01-07T17:13:27+01:00
Bump Standards-Version to 4.6.2

- - - - -


30 changed files:

- + .github/workflows/ant-javatest.yml
- + .github/workflows/ant-regrtest.yml
- + .github/workflows/codespell.yml
- + .github/workflows/launcher-test.yml
- .gitignore
- + .hgsub
- + .hgsubstate
- − .hgtags
- .travis.yml
- ACKNOWLEDGMENTS
- LICENSE.txt
- Lib/_socket.py
- Lib/gzip.py
- Lib/ssl.py
- Lib/test/regrtest.py
- Lib/test/test_array.py
- Lib/test/test_cmd_line.py
- Lib/test/test_imaplib.py
- Lib/test/test_java_integration.py
- Lib/test/test_java_visibility.py
- Lib/test/test_socket.py
- Lib/test/test_socket_jy.py
- Lib/test/test_ssl_jy.py
- Lib/test/test_str_jy.py
- Lib/test/test_subprocess.py
- Lib/test/test_support.py
- Lib/test/test_urllib.py
- Lib/test/test_urllib2.py
- Lib/test/test_xmlrpc.py
- Lib/test/test_xpickle.py


The diff was not included because it is too large.


View it on GitLab: 
https://salsa.debian.org/java-team/jython/-/compare/eaf508cac9fc5fcea06316d35932d24ae15ab158...d4165317d36540242e8e656c9f0bd29a72911c54

-- 
View it on GitLab: 
https://salsa.debian.org/java-team/jython/-/compare/eaf508cac9fc5fcea06316d35932d24ae15ab158...d4165317d36540242e8e656c9f0bd29a72911c54
You're receiving this email because of your account on salsa.debian.org.


___
pkg-java-commits mailing list
pkg-java-comm...@alioth-lists.debian.net
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/pkg-java-commits


[Git][java-team/jython][master] CVE-2019-16935

2022-12-29 Thread Gilles Filippini (@pini)


Gilles Filippini pushed to branch master at Debian Java Maintainers / jython


Commits:
eaf508ca by Gilles Filippini at 2022-12-29T12:20:14+01:00
CVE-2019-16935

- - - - -


3 changed files:

- debian/changelog
- + debian/patches/CVE-2019-16935.patch
- debian/patches/series


Changes:

=
debian/changelog
=
@@ -1,3 +1,9 @@
+jython (2.7.2+repack1-5) unstable; urgency=medium
+
+  * CVE-2019-16935 (closes: #1027149)
+
+ -- Gilles Filippini   Thu, 29 Dec 2022 12:00:40 +0100
+
 jython (2.7.2+repack1-4) unstable; urgency=medium
 
   * Build-Depends: antlr3 (instead of antlr3.2; Closes: #995188)


=
debian/patches/CVE-2019-16935.patch
=
@@ -0,0 +1,75 @@
+Description: fix CVE-2019-16935
+ Escape the server title of DocXMLRPCServer when rendering the
+ document page as HTML.
+ .
+ Patch backported from cython commit 8eb6415
+Origin: 
https://github.com/python/cpython/commit/8eb64155ff26823542ccf0225b3d57b6ae36ea89
+Bug-Debian: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1027149
+Index: jython/lib-python/2.7/DocXMLRPCServer.py
+===
+--- jython.orig/lib-python/2.7/DocXMLRPCServer.py
 jython/lib-python/2.7/DocXMLRPCServer.py
+@@ -20,6 +20,16 @@ from SimpleXMLRPCServer import (SimpleXM
+ CGIXMLRPCRequestHandler,
+ resolve_dotted_attribute)
+ 
++
++def _html_escape_quote(s):
++s = s.replace("&", "&") # Must be done first!
++s = s.replace("<", "<")
++s = s.replace(">", ">")
++s = s.replace('"', """)
++s = s.replace('\'', "'")
++return s
++
++
+ class ServerHTMLDoc(pydoc.HTMLDoc):
+ """Class used to generate pydoc HTML document for a server"""
+ 
+@@ -210,7 +220,8 @@ class XMLRPCDocGenerator:
+ methods
+ )
+ 
+-return documenter.page(self.server_title, documentation)
++title = _html_escape_quote(self.server_title)
++return documenter.page(title, documentation)
+ 
+ class DocXMLRPCRequestHandler(SimpleXMLRPCRequestHandler):
+ """XML-RPC and documentation request handler class.
+Index: jython/lib-python/2.7/test/test_docxmlrpc.py
+===
+--- jython.orig/lib-python/2.7/test/test_docxmlrpc.py
 jython/lib-python/2.7/test/test_docxmlrpc.py
+@@ -1,5 +1,6 @@
+ from DocXMLRPCServer import DocXMLRPCServer
+ import httplib
++import re
+ import sys
+ from test import test_support
+ threading = test_support.import_module('threading')
+@@ -194,6 +195,25 @@ class DocXMLRPCHTTPGETServer(unittest.Te
+ self.assertIn("""Try self.add, too.""",
+   response.read())
+ 
++def test_server_title_escape(self):
++"""Test that the server title and documentation
++are escaped for HTML.
++"""
++self.serv.set_server_title('test_title

[Git][java-team/jython] Pushed new tag debian/2.7.2+repack1-5

2022-12-29 Thread Gilles Filippini (@pini)


Gilles Filippini pushed new tag debian/2.7.2+repack1-5 at Debian Java 
Maintainers / jython

-- 
View it on GitLab: 
https://salsa.debian.org/java-team/jython/-/tree/debian/2.7.2+repack1-5
You're receiving this email because of your account on salsa.debian.org.


___
pkg-java-commits mailing list
pkg-java-comm...@alioth-lists.debian.net
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/pkg-java-commits


Bug#779482: severity of 779482 is grave

2015-10-29 Thread pini
Control: tag -1 pending

Hi,

On Sat, 17 Oct 2015 14:12:26 +0200 Gilles Filippini  wrote:
> The release 2.3.2-1 in experimental was finally tested on a baremetal
> ppc64el machine, and it works [1]. Many thanks to Frédéric Bonnard.
> 
> [1] 

Release 2.3.2-3~exp4 in experimental was successfully tested on powerpc,
ppc64el, and s390x porter boxes.

Tony, can I upload to unstable? I'll then upload libjogl2-java and scilab.

Thanks,

_g.

__
This is the maintainer address of Debian's Java team
. 
Please use
debian-j...@lists.debian.org for discussions and questions.

Bug#638001: [maven-debian-helper] mh_resolve_dependencies could avoid to search POMs provided by this package

2014-05-13 Thread pini
severity 638001 normal
thanks

Hi,

Giovanni Mascellani a écrit , Le 16/08/2011 15:23:
> Package: maven-debian-helper
> Version: 1.4.3
> Severity: minor
> 
> Hi.
> 
> A package of mine (msv) provide more than one POM file, some of which
> depend on each other. When compiling, mh_resolve_dependencies tries to
> locate to which package belong the dependencies listed in POM files and
> does so even for artifacts that are already provided by the package that
> is currently compiling.
> 
> This behavior shown in the attached build log for msv:
> mh_resolve_dependencies executes dpkg --search to find artifacts that
> are provided by the package. This does not lead to build failures are
> bad packages, but makes the compilation longer than required, so it
> would be nice to fix it.

Raising severity because this broken behavior leads to incomplete
Depends fields: for each pom.xml file mh_resolve_dependencies will
abort at the first unresolved dependency.

Cheers,

_g.

__
This is the maintainer address of Debian's Java team
. 
Please use
debian-j...@lists.debian.org for discussions and questions.