Processed: ruby1.9.1: diff for NMU version 1.9.3.194-8.1

2013-03-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tags 702525 + pending Bug #702525 [src:ruby1.9.1] ruby1.9.1: CVE-2013-1821: entity expansion DoS vulnerability in REXML Added tag(s) pending. > thanks Stopping processing here. Please contact me if you need assistance. -- 702525: http://bugs.de

Bug#702525: ruby1.9.1: diff for NMU version 1.9.3.194-8.1

2013-03-08 Thread Salvatore Bonaccorso
tags 702525 + pending thanks Dear maintainer, I've prepared an NMU for ruby1.9.1 (versioned as 1.9.3.194-8.1) and uploaded it to DELAYED/2. Please feel free to tell me if I should delay it longer. Regards, Salvatore diff -Nru ruby1.9.1-1.9.3.194/debian/changelog ruby1.9.1-1.9.3.194/debian/change

Bug#702475: apache2: the itk MPM is underlinked: sys/capability.h symbols are not resolved

2013-03-08 Thread Steinar H. Gunderson
On Sat, Mar 09, 2013 at 03:58:15AM +0100, Arno Töll wrote: > Alternatively we could wait until 2.4.5 is released which might contain > all patches you require for your most recent itk patch. That would allow > us to build itk with apxs without patching the Apache source, possibly > even in a separa

Bug#700738: marked as done (tty-clock: use-after-free and other unsafeties)

2013-03-08 Thread Debian Bug Tracking System
Your message dated Sat, 09 Mar 2013 04:17:47 + with message-id and subject line Bug#700738: fixed in tty-clock 2.0-1 has caused the Debian Bug report #700738, regarding tty-clock: use-after-free and other unsafeties to be marked as done. This means that you claim that the problem has been dea

Bug#700738: valgrind summary

2013-03-08 Thread Antoine Beaupré
On 2013-03-08, Sebastian Ramacher wrote: > On 2013-03-06 20:02:16, Antoine Beaupré wrote: >> So I ran the patched version under valgrind, which I am not familiar >> with at all so YMMV. >> >> I attach the output. >> >> Basically, what I see is one of those: >> >> ==3852== Conditional jump or mov

Processed: bug 700738 is forwarded to https://github.com/carla-v/tty-clock/issues/1

2013-03-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > forwarded 700738 https://github.com/carla-v/tty-clock/issues/1 Bug #700738 [src:tty-clock] tty-clock: use-after-free and other unsafeties Set Bug forwarded-to-address to 'https://github.com/carla-v/tty-clock/issues/1'. > thanks Stopping processing

Processed: Re: Bug#702475: apache2: the itk MPM is underlinked: sys/capability.h symbols are not resolved

2013-03-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tags 702475 experimental Bug #702475 [apache2] apache2: the itk MPM is underlinked: sys/capability.h symbols are not resolved Added tag(s) experimental. > notfound 702475 2.2.22-12 Bug #702475 [apache2] apache2: the itk MPM is underlinked: sys/ca

Bug#702475: apache2: the itk MPM is underlinked: sys/capability.h symbols are not resolved

2013-03-08 Thread Arno Töll
tags 702475 experimental notfound 702475 2.2.22-12 thanks On 08.03.2013 18:46, Andrey Rahmatullin wrote: > On Thu, Mar 07, 2013 at 12:55:39AM +0100, Arno Töll wrote: >> While testing the 2.4.4 upload I noticed the ITK MPM does not load anymore, >> because it is underlinked despite of -lcap being t

Bug#700738: valgrind summary

2013-03-08 Thread Sebastian Ramacher
On 2013-03-06 20:02:16, Antoine Beaupré wrote: > So I ran the patched version under valgrind, which I am not familiar > with at all so YMMV. > > I attach the output. > > Basically, what I see is one of those: > > ==3852== Conditional jump or move depends on uninitialised value(s) > ==3852== Use

Bug#701185: marked as done (CVE-2013-0200: Insecure temporary files)

2013-03-08 Thread Debian Bug Tracking System
Your message dated Sat, 09 Mar 2013 01:03:25 + with message-id and subject line Bug#701185: fixed in hplip 3.13.3-1 has caused the Debian Bug report #701185, regarding CVE-2013-0200: Insecure temporary files to be marked as done. This means that you claim that the problem has been dealt with.

Processed: Re: Bug#701916: Kill local user processes on logout

2013-03-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tags 701916 +moreinfo Bug #701916 [ltsp-client-core] Kill local user processes on logout Added tag(s) moreinfo. > thanks Stopping processing here. Please contact me if you need assistance. -- 701916: http://bugs.debian.org/cgi-bin/bugreport.cgi?

Bug#701916: Kill local user processes on logout

2013-03-08 Thread Vagrant Cascadian
Control: tags 701916 -pending +unreproducible I'm having trouble reproducing the problem on a fatclient... I've tried with icewm, LXDE, XFCE and GNOME, with a variety of applications open. None seem to linger after logout as a fatclient, and the homedir gets unmounted appropriately... Also trie

Processed: Re: Bug#701916: Kill local user processes on logout

2013-03-08 Thread Debian Bug Tracking System
Processing control commands: > tags 701916 -pending +unreproducible Bug #701916 [ltsp-client-core] Kill local user processes on logout Removed tag(s) pending. Bug #701916 [ltsp-client-core] Kill local user processes on logout Added tag(s) unreproducible. -- 701916: http://bugs.debian.org/cgi-bin

Processed: your mail

2013-03-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > found 702574 4.3.8-1 Bug #702574 {Done: Christian Welzel } [typo3-src] TYPO3-CORE-SA-2013-001: SQL Injection and Open Redirection in TYPO3 Core There is no source info for the package 'typo3-src' at version '4.3.8-1' with architecture '' Unable

Bug#702609: pidgin-audacious: Not able to activate

2013-03-08 Thread Christian Britz
Package: pidgin-audacious Version: 2.0.0-2 Severity: grave Justification: renders package unusable Dear Maintainer, when I try to activate the Pidgin-Audacious plugin in pidgin nothing happens. When I click on Plugin Details the following error message shows up: Error: undefined symbol: audacio

Bug#698832: Solving the issue by recreating icons

2013-03-08 Thread Vincent Lhote
Would creating similar icons and include it in the package solve this issue? I’m not sure I’m really qualified for that but I don’t see what else can be done. If creating icons would solve the issue, what licence would be best? Regards, -- Vincent Lhote signature.asc Description: This is a di

Bug#702606: openms: FTBFS due to truncated object files

2013-03-08 Thread Aaron M. Ucko
Source: openms Version: 1.9.0-3 Severity: serious Justification: fails to build from source Builds of openms on several architectures (including i386 now that it's gotten past #702512 -- thanks for the quick fix there!) are failing with errors about truncated object files at various points. Could

Bug#702525: ruby1.9.1: CVE-2013-1821: entity expansion DoS vulnerability in REXML

2013-03-08 Thread Salvatore Bonaccorso
Control: tags -1 + patch Hi I propose the attached patch applied from upstream's svn. I can do a NMU in case needed, but want first to have a second check on the resulting package. Regards, Salvatore diff -Nru ruby1.9.1-1.9.3.194/debian/changelog ruby1.9.1-1.9.3.194/debian/changelog --- ruby1.9

Processed: Re: Bug#702525: ruby1.9.1: CVE-2013-1821: entity expansion DoS vulnerability in REXML

2013-03-08 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + patch Bug #702525 [src:ruby1.9.1] ruby1.9.1: CVE-2013-1821: entity expansion DoS vulnerability in REXML Ignoring request to alter tags of bug #702525 to the same tags previously set -- 702525: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=702525 Debia

Processed: severity of 702509 is normal

2013-03-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 702509 normal Bug #702509 [unattended-upgrades] unattended-upgrades: does not run autonomously, even after it was enabled Severity set to 'normal' from 'grave' > thanks Stopping processing here. Please contact me if you need assistance.

Processed: limit package to apache2, notfound 702475 in apache2/2.2.22-4, found 702475 in apache2/2.4.2-2

2013-03-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > limit package apache2 Limiting to bugs with field 'package' containing at least one of 'apache2' Limit currently set to 'package':'apache2' > notfound 702475 apache2/2.2.22-4 Bug #702475 [apache2] apache2: the itk MPM is underlinked: sys/capabili

Bug#702475: apache2: the itk MPM is underlinked: sys/capability.h symbols are not resolved

2013-03-08 Thread Andrey Rahmatullin
On Thu, Mar 07, 2013 at 12:55:39AM +0100, Arno Töll wrote: > While testing the 2.4.4 upload I noticed the ITK MPM does not load anymore, > because it is underlinked despite of -lcap being there and used. In 2.4.4-1 i386 build logs -lcap is not used for mod_mpm_itk.la. -- WBR, wRAR signature.asc

Bug#702509: unattended-upgrades: does not run autonomously, even after it was enabled

2013-03-08 Thread Arturo Moral
Hey, Teodor, On Fri, Mar 8, 2013 at 6:09 PM, Teodor MICU wrote: > control: -1 severity normal > > 2013/3/8 Arturo Moral : > >> This config was removed in version 0.79.5 and might not work at all: > > > > I'm currently using 0.79.4, therefore the config change does not affect > me, > > right? > >

Bug#702574: marked as done (TYPO3-CORE-SA-2013-001: SQL Injection and Open Redirection in TYPO3 Core)

2013-03-08 Thread Debian Bug Tracking System
Your message dated Fri, 08 Mar 2013 17:32:45 + with message-id and subject line Bug#702574: fixed in typo3-src 4.5.19+dfsg1-5 has caused the Debian Bug report #702574, regarding TYPO3-CORE-SA-2013-001: SQL Injection and Open Redirection in TYPO3 Core to be marked as done. This means that you

Bug#698068: MySQL 5.5.30 does not fix CVE-2012-4414, what to do next?

2013-03-08 Thread Clint Byrum
Please refer to [1] as the rest of this message assumes the reader has read the log thus far. I have just now comitted MariaDB's test for CVE-2012-4414 to the SVN repo where we maintain mysql-5.5 unstable packaging. The package fails to build right now because this test fails. Lifting the test ou

Bug#702509: unattended-upgrades: does not run autonomously, even after it was enabled

2013-03-08 Thread Teodor MICU
control: -1 severity normal 2013/3/8 Arturo Moral : >> This config was removed in version 0.79.5 and might not work at all: > > I'm currently using 0.79.4, therefore the config change does not affect me, > right? You should not use it, 0.79.5 will migrate to testing on the following days. > Anyw

Bug#655969: lirc: prompting due to modified conffiles which where not modified by the user

2013-03-08 Thread Thomas Preud'homme
[Note to RT: this is about adding a wheezy-ignore tag for #655969] Le vendredi 8 mars 2013 17:27:33, Stefan Lippers-Hollmann a écrit : > Hi > > On Friday 08 March 2013, Thomas Preud'homme wrote: > > Le vendredi 8 mars 2013 03:32:29, Stefan Lippers-Hollmann a écrit : > […] > > > > On Thursday 07

Bug#680635: marked as done (pyside-tools: fails to install: SyntaxError: ('invalid syntax', ('/usr/lib/python2.7/dist-packages/pysideuic/port_v3/proxy_base.py', 26, 26, 'class ProxyBase(metaclass=Prox

2013-03-08 Thread Debian Bug Tracking System
Your message dated Fri, 08 Mar 2013 16:33:28 + with message-id and subject line Bug#680635: fixed in pyside-tools 0.2.14-2 has caused the Debian Bug report #680635, regarding pyside-tools: fails to install: SyntaxError: ('invalid syntax', ('/usr/lib/python2.7/dist-packages/pysideuic/port_v3/p

Bug#655969: lirc: prompting due to modified conffiles which where not modified by the user

2013-03-08 Thread Stefan Lippers-Hollmann
Hi On Friday 08 March 2013, Thomas Preud'homme wrote: > Le vendredi 8 mars 2013 03:32:29, Stefan Lippers-Hollmann a écrit : […] > > On Thursday 07 March 2013, Thomas Preud'homme wrote: […] > > Thanks for looking into this bug, the patch itself is correct and will > > avoid the reported piuparts up

Processed: your mail

2013-03-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tag 680635 + pending Bug #680635 [pyside-tools] pyside-tools: fails to install: SyntaxError: ('invalid syntax', ('/usr/lib/python2.7/dist-packages/pysideuic/port_v3/proxy_base.py', 26, 26, 'class ProxyBase(metaclass=ProxyType):\n')) Added tag(s

Bug#702509: unattended-upgrades: does not run autonomously, even after it was enabled

2013-03-08 Thread Arturo Moral
On Fri, Mar 8, 2013 at 4:49 PM, Steven Chamberlain wrote: > On 16:27, Arturo Moral wrote: > > # grep -i daily /var/log/syslog > > Mar 8 11:27:51 raspi anacron[1920]: Job `cron.daily' terminated > > The log was probably rotated at that point. Is there anythikng more of > interest in the preceding

Bug#702509: unattended-upgrades: does not run autonomously, even after it was enabled

2013-03-08 Thread Steven Chamberlain
On 16:27, Arturo Moral wrote: > # grep -i daily /var/log/syslog > Mar 8 11:27:51 raspi anacron[1920]: Job `cron.daily' terminated The log was probably rotated at that point. Is there anythikng more of interest in the preceding log, e.g. syslog.1 or syslog.1.gz? Thanks, Regards, -- Steven Chamb

Bug#702509: unattended-upgrades: does not run autonomously, even after it was enabled

2013-03-08 Thread Arturo Moral
On Fri, Mar 8, 2013 at 4:15 PM, Steven Chamberlain wrote: > On 08/03/13 15:08, Arturo Moral wrote: > > # cat /var/spool/anacron/cron.daily > > 20130308 > > This means 'cron' was working properly, and it updated the timestamp in > that file. > > What abo

Bug#702509: unattended-upgrades: does not run autonomously, even after it was enabled

2013-03-08 Thread Steven Chamberlain
On 08/03/13 15:08, Arturo Moral wrote: > # cat /var/spool/anacron/cron.daily > 20130308 This means 'cron' was working properly, and it updated the timestamp in that file. What about the file /etc/cron.d/anacron ? Is it there, what are its contents? Also: $ ls -al /usr/s

Bug#688577: marked as done (libapache2-mod-auth-cas: Cannot load module (undefined symbol: CRYPTO_THREADID_get_id_callback))

2013-03-08 Thread Debian Bug Tracking System
Your message dated Fri, 08 Mar 2013 15:10:09 + with message-id and subject line Bug#688577: fixed in libapache2-mod-auth-cas 1.0.9.1-2 has caused the Debian Bug report #688577, regarding libapache2-mod-auth-cas: Cannot load module (undefined symbol: CRYPTO_THREADID_get_id_callback) to be mark

Bug#702509: unattended-upgrades: does not run autonomously, even after it was enabled

2013-03-08 Thread Arturo Moral
On Fri, Mar 8, 2013 at 3:20 PM, Steven Chamberlain wrote: > Hi g0to, > Hello, Steven! > > This looks to be an anacron issue, and /etc/cron.daily/apt not running > automatically. Please could you take a look at: > > # cat /var/spool/anacron/cron.daily > 20130308

Bug#702574: TYPO3-CORE-SA-2013-001: SQL Injection and Open Redirection in TYPO3 Core

2013-03-08 Thread Christian Welzel
Package: typo3-src Severity: critical Tags: security It has been discovered that TYPO3 Core is susceptible to SQL Injection and Open Redirection Component Type: TYPO3 Core Affected Versions: 4.5.0 up to 4.5.23, 4.6.0 up to 4.6.16, 4.7.0 up to 4.7.8 and 6.0.0 up to 6.0.2 Vulnerability Types: SQL

Bug#694908: Contains non-free data

2013-03-08 Thread Andreas Tille
Hi, latest status update: Tag "pending" was set. All known license issues are now solved in debian/copyright of packaging Git. However, the version of EMBOSS in the Git repository is already higher than in wheezy, so we decided to wait with an upload until after the release. The fact that RC te

Bug#702573: libopenms1 - No stable ABI

2013-03-08 Thread Bastian Blank
Package: libopenms1 Version: 1.9.0-2 Severity: serious OpenMS upstream does not provide a stable ABI of libOpenMS. So neither the patch to add one nor this package name are appropriate. Bastian -- System Information: Debian Release: 7.0 APT prefers testing APT policy: (990, 'testing'), (500,

Bug#702509: unattended-upgrades: does not run autonomously, even after it was enabled

2013-03-08 Thread Steven Chamberlain
Hi g0to, This looks to be an anacron issue, and /etc/cron.daily/apt not running automatically. Please could you take a look at: # cat /var/spool/anacron/cron.daily # grep daily /var/log/cron.log.1 # ps aux | grep cron | grep -v grep Thanks! Regards, -- Steven Chamberlain ste...@pyro.eu.org -

Bug#688577: [Pkg-cas-maintainers] (no subject)

2013-03-08 Thread Thijs Kinkhorst
On Thu, March 7, 2013 21:44, Thijs Kinkhorst wrote: > On Thu, March 7, 2013 19:31, Mathieu Parent wrote: >> severity 688577 grave >> tag 688577 + patch upstream fixed-upstream >> thanks >> Hi, >> >> Raising severity as this renders the package unusable. Confirmed, fixed, will upload. Thijs --

Processed: your mail

2013-03-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 702560 normal Bug #702560 [extremetuxracer] extremetuxracer: Starting a race tux turns left Severity set to 'normal' from 'grave' > thanks Stopping processing here. Please contact me if you need assistance. -- 702560: http://bugs.debian

Processed: All license issues clarified, pending upload after Wheezy release

2013-03-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tags 694908 pending Bug #694908 [emboss] Contains non-free data Added tag(s) pending. > thanks Stopping processing here. Please contact me if you need assistance. -- 694908: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=694908 Debian Bug Trac

Bug#702261: libv8: CVE-2012-5153 CVE-2013-0836

2013-03-08 Thread Giuseppe Iuculano
On 04/03/2013 16:39, Moritz Muehlenhoff wrote: > http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-5153 Fix: https://code.google.com/p/v8/source/detail?r=13161 > http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-0836 Fix: https://code.google.com/p/v8/source/detail?r=12543 Cheers, Gi

Bug#702560: extremetuxracer: Starting a race tux turns left

2013-03-08 Thread Pavel Vavra
Package: extremetuxracer Version: 0.5beta-2 Severity: grave Justification: renders package unusable Hallo, when I want to play extremetuxracer game in wheezy, tux turns left just immediate after starting a race (without touching keyboard). Player is not able to turn right, when he press right ar

Bug#702509: unattended-upgrades: does not run autonomously, even after it was enabled

2013-03-08 Thread Arturo Moral
Hi, Teodor, On Fri, Mar 8, 2013 at 7:50 AM, Teodor MICU wrote: > 2013/3/7 g0to : > > -- Configuration Files: > > /etc/apt/apt.conf.d/50unattended-upgrades changed: > > // Automatically upgrade packages from these origin patterns > > Unattended-Upgrade::Origins-Pattern { > > // Codename b

Bug#702509: unattended-upgrades: does not run autonomously, even after it was enabled

2013-03-08 Thread Arturo Moral
On Fri, Mar 8, 2013 at 6:50 AM, Michael Vogt wrote: > On Thu, Mar 07, 2013 at 04:43:03PM +0100, g0to wrote: > > Package: unattended-upgrades > > Version: 0.79.4 > > Severity: grave > > Tags: security > > Justification: renders package unusable > > Thanks for your bugreport. > > > after trying to

Bug#655969: lirc: prompting due to modified conffiles which where not modified by the user

2013-03-08 Thread Thomas Preud'homme
Le vendredi 8 mars 2013 03:32:29, Stefan Lippers-Hollmann a écrit : > Hi > > On Thursday 07 March 2013, Thomas Preud'homme wrote: > > tags 655969 + patch > > thanks > > > > Le samedi 26 janvier 2013 19:22:23, Jonathan Wiltshire a écrit : > > > On Wed, Jan 18, 2012 at 01:34:08AM +0100, Stefan Lipp

Bug#697230: asterisk: Two security issues: AST-2012-014 / AST-2012-015

2013-03-08 Thread Christian Staake
Hello, why has this bug been marked as not found in the version in sid again? I can't see a new version of the package in the repository and it's still listed as vulnerable on security-tracker.debian.org. As I'm currently using the version from squeeze-backports, I'd really like to see this fi

Bug#702512: marked as done (openms: FTBFS when DEB_HOST_MULTIARCH != DEB_BUILD_GNU_TYPE (e.g., on i386))

2013-03-08 Thread Debian Bug Tracking System
Your message dated Fri, 08 Mar 2013 09:48:31 + with message-id and subject line Bug#702512: fixed in openms 1.9.0-3 has caused the Debian Bug report #702512, regarding openms: FTBFS when DEB_HOST_MULTIARCH != DEB_BUILD_GNU_TYPE (e.g., on i386) to be marked as done. This means that you claim

Bug#701864: marked as done ('Frontier Artistic License' text missing in debian/copyright)

2013-03-08 Thread Debian Bug Tracking System
Your message dated Fri, 08 Mar 2013 09:32:40 + with message-id and subject line Bug#701864: fixed in cfengine3 3.2.4-2+nmu1 has caused the Debian Bug report #701864, regarding 'Frontier Artistic License' text missing in debian/copyright to be marked as done. This means that you claim that the

Processed: found 702475 in 2.4.2-1, notfound 702475 in 2.2.22-12

2013-03-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > found 702475 2.4.2-1 Bug #702475 [apache2] apache2: the itk MPM is underlinked: sys/capability.h symbols are not resolved Ignoring request to alter found versions of bug #702475 to the same values previously set > notfound 702475 2.2.22-12 Bug #