Bug#591974: use of swfuploader in Mojo

2010-11-03 Thread Marcus Ramberg
swfupload is likely to be licensed under the MIT license: http://code.google.com/p/swfupload/source/browse/swfupload/tags/swfupload_v2.2.0_beta1/core/swfupload+license.txt?r=786

Bug#602257: gnumeric crashes constantly

2010-11-03 Thread Bob Mesibov
Installed system: Debian GNU/Linux testing _Squeeze_ - Official Snapshot i386 xfce+lxde-CD Binary-1 20101025-04:02 Running: gnumeric 1.10.8-1squeeze3 No crashes, all operations tested so far work fine. -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of

Bug#602193: AW: Bug#602193: [unetbootin] must depend on mtools

2010-11-03 Thread VOR (Micha vor dem Berge)
On 2010-11-02 13:27, Micha vor dem Berge wrote: Package: unetbootin Version: 471-1 Severity: grave [...] I installed the unetbootin on my debian machine but when starting it said something like 'Please install mtools...' and exited. So please add mtools to the dependencies. This is a

Bug#601859: wesnoth-1.9: Bad error handling in postinst script

2010-11-03 Thread PJ Weisberg
Package: wesnoth-1.9 Version: 1:1.9.1-1 Severity: normal Yes, I was very suspicious when I opened up the postinst script to try to figure out why it failed. It says if [ $? != 0 ]; then in a couple of places, but $? can NEVER be != to 0, because the 'set -e' at the top would cause the script to

Bug#595728: Global alliances

2010-11-03 Thread Prince Al Waleed Bin Talal Al Saud
Kingdom Holding Company Kingdom Tower, Floor 15 P.O.Box 1 Riyadh 11321 Saudi Arabia, Salaam, In line with the recent international foray for profitable investment having across the globe, I seek this medium to increase my global and domestic alliances via various services Including Green

Bug#602052: powernowd: Drop obsolete package

2010-11-03 Thread Philipp Kern
severity 602052 normal Ludovic, On Tue, Nov 02, 2010 at 10:53:37AM +0100, Ludovic Brenta wrote: After reading this bug report, I removed powernowd from my system. The CPU frequency immediately jumped from 800 MHz to the maximum 2000 MHz and stayed there, even if the machine was idle. I

Processed (with 5 errors): Re: powernowd: Drop obsolete package

2010-11-03 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: severity 602052 normal Bug #602052 [powernowd] Drop obsolete package Severity set to 'normal' from 'serious' Ludovic, Unknown command or malformed arguments to command. On Tue, Nov 02, 2010 at 10:53:37AM +0100, Ludovic Brenta wrote: Unknown

Bug#602279: Buffer overflow in netio

2010-11-03 Thread Francesco Paolo Lovergine
Package: proftpd-dfsg Version: 1.3.3a-4 Severity: serious Tags: security See http://bugs.proftpd.org/show_bug.cgi?id=3521 This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of ProFTPD. Authentication is not required to exploit this vulnerability.

Bug#591974: use of swfuploader in Mojo

2010-11-03 Thread David Bremner
On Wed, 3 Nov 2010 08:20:08 +0100, Marcus Ramberg mar...@nordaaker.com wrote: swfupload is likely to be licensed under the MIT license: http://code.google.com/p/swfupload/source/browse/swfupload/tags/swfupload_v2.2.0_beta1/core/swfupload+license.txt?r=786

Bug#602134: closed by Christian Perrier bubu...@debian.org (Bug#602134: fixed in udpkg 1.10)

2010-11-03 Thread Christian PERRIER
Quoting Cyril Brulebois (k...@debian.org): reopen 602134 notfixed 602134 1.10 thanks Debian Bug Tracking System ow...@bugs.debian.org (02/11/2010): * Rebuild after running autogen.sh. Closes: #602134 Still present in 1.10, sorry. :) Reopening accordingly. Eh. :-) But I *did* run

Bug#602281: libpam-smbpass: postinst is empty

2010-11-03 Thread Sam Morris
Package: libpam-smbpass Version: 2:3.5.6~dfsg-1+bpo50+1 Severity: grave Justification: prevents package configuration When upgrading this morning: Setting up libpam-smbpass (2:3.5.6~dfsg-1+bpo50+1) ... dpkg (subprocess): unable to execute installed post-installation script

Processed (with 2 errors): libsoap-lite-perl bug confirmed

2010-11-03 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: owner 602056 ! Bug #602056 [libsoap-lite-perl] libsoap-lite-perl: Client dies with Not a HASH reference at /usr/share/perl5/SOAP/Lite.pm line 3755. Owner recorded as Nicholas Bamber nicho...@periapt.co.uk. tags 602056 confirmed +upstream

Bug#602134: closed by Christian Perrier bubu...@debian.org (Bug#602134: fixed in udpkg 1.10)

2010-11-03 Thread Cyril Brulebois
Hi, Christian PERRIER bubu...@debian.org (03/11/2010): In the case of udpkg, this seems to come from the fact the configure is not kept in SVN because of the common mantra that says Thou Shalt Not Keep Thy Generated Files In Thy VCS. I hate this mantra, by the way. what about adding the

Bug#600177: marked as done (virtualbox-ose: out of disk while merging a snapshot destroys the disk image)

2010-11-03 Thread Debian Bug Tracking System
Your message dated Wed, 3 Nov 2010 11:43:21 +0100 with message-id 20101103104321.ga19...@hyperion.credativ.de and subject line Closing has caused the Debian Bug report #600177, regarding virtualbox-ose: out of disk while merging a snapshot destroys the disk image to be marked as done. This means

Bug#602288: proftpd-basic: Remote Code Execution Vulnerability in TELNET_IAC processing

2010-11-03 Thread Jan Niehusmann
Package: proftpd-basic Version: 1.3.3a-4 Severity: grave Tags: security patch Justification: security hole According to http://bugs.proftpd.org/show_bug.cgi?id=3521 and http://www.proftpd.org/docs/RELEASE_NOTES-1.3.3c, there is a remote code execution vulnerability in proftpd since version

Bug#602056: Bug in libsoap-lite-perl fixed in revision 64499

2010-11-03 Thread pkg-perl-maintainers
tag 602056 + pending thanks Some bugs are closed in revision 64499 by Nicholas Bamber (periapt-guest) Commit message: * Applying patch to fix hash reference crash (Closes: #602056) * Upped standards version to 3.9.1 * Added myself to Uploaders -- To UNSUBSCRIBE, email to

Processed: Bug in libsoap-lite-perl fixed in revision 64499

2010-11-03 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: tag 602056 + pending Bug #602056 [libsoap-lite-perl] libsoap-lite-perl: Client dies with Not a HASH reference at /usr/share/perl5/SOAP/Lite.pm line 3755. Added tag(s) pending. thanks Stopping processing here. Please contact me if you need

Bug#602250: typo3-src-4.3: jsmin.php is non-DFSG

2010-11-03 Thread Holger Levsen
retitle 602250 typo3-src-4.3: jsmin.php has non-DFSG licence thanks On Mittwoch, 3. November 2010, Simon McVittie wrote: On closer inspection, typo3/contrib/flashmedia/qtobject is non-free by omission (no explicit permission to distribute modified versions), but probably intended to be free

Processed: Re: Bug#602250: typo3-src-4.3: jsmin.php is non-DFSG

2010-11-03 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: retitle 602250 typo3-src-4.3: jsmin.php has non-DFSG licence Bug #602250 [typo3-src-4.3] typo3-src-4.3: jsmin.php, qtobject.js are non-DFSG Changed Bug title to 'typo3-src-4.3: jsmin.php has non-DFSG licence' from 'typo3-src-4.3: jsmin.php,

Bug#602250: typo3-src-4.3: jsmin.php is non-DFSG

2010-11-03 Thread Joerg Jaspert
Hi There are no usage restrictions on this file, feel free to distribute this code and associated files. No. non-free by omission doesnt exist, no usage restrictions is what counts and obviously includes the right to modify+distribute it, else it would be a usage restriction, d'oh.

Bug#594119: Upgrade path from Lenny to Squeeze is broken

2010-11-03 Thread Stefan Hornburg (Racke)
On 11/02/2010 09:20 PM, Adam D. Barratt wrote: On Tue, 2010-11-02 at 12:27 +0100, Stefan Hornburg (Racke) wrote: On 11/02/2010 12:25 PM, Julien Cristau wrote: On Sun, Oct 10, 2010 at 03:15:22 +0200, Jonas Smedegaard wrote: On Sat, Oct 09, 2010 at 05:36:08PM +0200, Julien Cristau wrote: Err.

Processed (with 1 errors): merging 602279, 602288

2010-11-03 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: # sorry, didn't see 602279 before submitting 602288 reassign 602288 proftpd-dfsg 1.3.3a-4 Bug #602288 [proftpd-basic] proftpd-basic: Remote Code Execution Vulnerability in TELNET_IAC processing Bug reassigned from package 'proftpd-basic' to

Bug#594615: Testing a patch to fix the 525

2010-11-03 Thread Mathieu Trudel-Lapierre
Can you guys test the following patch? (it's from the concordance mailing list) -- diff -u -p -r1.12 remote_info.h --- libconcord/remote_info.h1 Aug 2010 14:35:52 - 1.12 +++ libconcord/remote_info.h3 Nov 2010 01:18:26 - @@ -313,7 +313,7 @@ static const TArchInfo

Bug#602257: gnumeric crashes constantly

2010-11-03 Thread J.H.M. Dassen (Ray)
On Tue, Nov 02, 2010 at 19:42:35 -0400, Andres Cimmarusti wrote: Gnumeric constantly crashes on me, especially when doing copying and pasting. This is the first such report. I get the following messages in .xsession-errors The program 'gnumeric' received an X Window System error. This

Bug#602257: gnumeric crashes constantly

2010-11-03 Thread Andres Cimmarusti
Are you using Compiz? Are you using a custom Gtk theme? Can you reproduce the crashes with a freshly created user account? I am using a freshly created account. I don't use compiz nor any custom gtk theme. I have a stock squeeze installation, except that I custom-compiled squeeze's kernel to

Bug#587110: Mixxx 1.7.2

2010-11-03 Thread Simon McVittie
tags 587110 + patch thanks On Wed, 20 Oct 2010 at 14:55:12 +0200, Sean M. Pappalardo - D.J. Pegasus wrote: I just tested building the following revisions of Mixxx's 1.7 code branch using the default settings (just running scons with no flags): 2539 (the one used for the Debian package I

Bug#602257: gnumeric crashes constantly

2010-11-03 Thread Mehdi Dogguy
On 03/11/2010 14:24, Andres Cimmarusti wrote: Are you using Compiz? Are you using a custom Gtk theme? Can you reproduce the crashes with a freshly created user account? I am using a freshly created account. I don't use compiz nor any custom gtk theme. I have a stock squeeze installation,

Processed: Re: Bug#587110: Mixxx 1.7.2

2010-11-03 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: tags 587110 + patch Bug #587110 {Done: Alessio Treglia ales...@debian.org} [src:mixxx] mixxx: FTBFS: dlgprefmidibindings.cpp:75: undefined reference to `MidiOptionDelegate::MidiOptionDelegate(QObject*)' Added tag(s) patch. thanks Stopping

Processed: Re: Processed: Re: Bug#602250: typo3-src-4.3: jsmin.php is non-DFSG

2010-11-03 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: retitle 602250 typo3-src-4.3: typo3-src-4.3: jsmin.php, qtobject.js have non-DFSG licence Bug #602250 [typo3-src-4.3] typo3-src-4.3: jsmin.php has non-DFSG licence Changed Bug title to 'typo3-src-4.3: typo3-src-4.3: jsmin.php, qtobject.js have

Processed: your mail

2010-11-03 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: tags 587110 pending Bug #587110 {Done: Alessio Treglia ales...@debian.org} [src:mixxx] mixxx: FTBFS: dlgprefmidibindings.cpp:75: undefined reference to `MidiOptionDelegate::MidiOptionDelegate(QObject*)' Added tag(s) pending. thanks Stopping

Bug#587110: Mixxx 1.7.2

2010-11-03 Thread Alessio Treglia
Hi Simon! On Wed, Nov 3, 2010 at 2:30 PM, Simon McVittie s...@debian.org wrote: Here's a branch of the Debian packaging that avoids running qmake: http://git.debian.org/?p=users/smcv/qa/mixxx.git;a=shortlog;h=refs/heads/debian-squeeze Oh, thank you so much for the patch! I'm pushing it into

Processed: merging 602279, 602288

2010-11-03 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: # sorry, didn't see 602279 before submitting 602288 # next try... :-) severity 602279 grave Bug #602279 [proftpd-dfsg] Buffer overflow in netio Severity set to 'grave' from 'serious' merge 602279 602288 Bug#602279: Buffer overflow in netio

Bug#602279: marked as done (Buffer overflow in netio)

2010-11-03 Thread Debian Bug Tracking System
Your message dated Wed, 03 Nov 2010 14:48:47 + with message-id e1pdedr-000719...@franck.debian.org and subject line Bug#602279: fixed in proftpd-dfsg 1.3.3a-5 has caused the Debian Bug report #602279, regarding Buffer overflow in netio to be marked as done. This means that you claim that the

Bug#602288: marked as done (proftpd-basic: Remote Code Execution Vulnerability in TELNET_IAC processing)

2010-11-03 Thread Debian Bug Tracking System
Your message dated Wed, 03 Nov 2010 14:48:47 + with message-id e1pdedr-000719...@franck.debian.org and subject line Bug#602279: fixed in proftpd-dfsg 1.3.3a-5 has caused the Debian Bug report #602279, regarding proftpd-basic: Remote Code Execution Vulnerability in TELNET_IAC processing to be

Bug#602279: marked as done (Buffer overflow in netio)

2010-11-03 Thread Debian Bug Tracking System
Your message dated Wed, 03 Nov 2010 14:48:47 + with message-id e1pdedr-00071c...@franck.debian.org and subject line Bug#602288: fixed in proftpd-dfsg 1.3.3a-5 has caused the Debian Bug report #602288, regarding Buffer overflow in netio to be marked as done. This means that you claim that the

Bug#602288: marked as done (proftpd-basic: Remote Code Execution Vulnerability in TELNET_IAC processing)

2010-11-03 Thread Debian Bug Tracking System
Your message dated Wed, 03 Nov 2010 14:48:47 + with message-id e1pdedr-00071c...@franck.debian.org and subject line Bug#602288: fixed in proftpd-dfsg 1.3.3a-5 has caused the Debian Bug report #602288, regarding proftpd-basic: Remote Code Execution Vulnerability in TELNET_IAC processing to be

Processed: Re: iceweasel: Critical security update 3.0.7

2010-11-03 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: # Fixed in Firefox 3.0.7: # MFSA 2009-11 URL spoofing with invisible control characters # http://security-tracker.debian.org/tracker/CVE-2009-0777 block 518458 by 576466 Bug #518458 {Done: Mike Hommey m...@glandium.org} [iceweasel] iceweasel:

Bug#600797: marked as done (pcmanfm: Pcmanfm not launching anymore)

2010-11-03 Thread Debian Bug Tracking System
Your message dated Wed, 03 Nov 2010 16:17:23 + with message-id e1pdg1b-0008ib...@franck.debian.org and subject line Bug#600387: fixed in libfm 0.1.14-2 has caused the Debian Bug report #600387, regarding pcmanfm: Pcmanfm not launching anymore to be marked as done. This means that you claim

Bug#600387: marked as done (pcmanfm: symbol lookup error: pcmanfm: undefined symbol: fm_path_new)

2010-11-03 Thread Debian Bug Tracking System
Your message dated Wed, 03 Nov 2010 16:17:23 + with message-id e1pdg1b-0008ib...@franck.debian.org and subject line Bug#600387: fixed in libfm 0.1.14-2 has caused the Debian Bug report #600387, regarding pcmanfm: symbol lookup error: pcmanfm: undefined symbol: fm_path_new to be marked as done.

Bug#600826: emacs23: diff for NMU version 23.2+1-5.1

2010-11-03 Thread Mehdi Dogguy
tags 600826 + pending thanks Dear maintainer, I've prepared an NMU for emacs23 (versioned as 23.2+1-5.1) and uploaded it to DELAYED/1. Please feel free to tell me if I should delay it longer. Regards. -- Mehdi Dogguy diff -Nru emacs23-23.2+1/debian/changelog emacs23-23.2+1/debian/changelog

Processed: emacs23: diff for NMU version 23.2+1-5.1

2010-11-03 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: tags 600826 + pending Bug #600826 [src:emacs23] emacs23: FTBFS: E: Package 'mailx' has no installation candidate Added tag(s) pending. thanks Stopping processing here. Please contact me if you need assistance. -- 600826:

Bug#602313: ZDI-CAN-925: proftpd TELNET_IAC processing stack overflow vulnerability

2010-11-03 Thread Kevin Price
Package: proftpd Version: 1.3.1-17lenny4 Severity: critical Tags: security fixed-upstream Hi! Upstream released 1.3.3c on 29-Oct-2010, fixing upsteam bug 3521, which is said to allow remote arbitrary code execution without the need of authentication. For more information, please see

Processed: forcibly merging 602193 602287

2010-11-03 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: forcemerge 602193 602287 Bug#602193: [unetbootin] must depend on mtools Bug#602287: [unetbootin] must depend on mtools Forcibly Merged 602193 602287. thanks Stopping processing here. Please contact me if you need assistance. -- 602287:

Bug#602313: marked as done (ZDI-CAN-925: proftpd TELNET_IAC processing stack overflow vulnerability)

2010-11-03 Thread Debian Bug Tracking System
Your message dated Wed, 3 Nov 2010 18:19:26 +0100 with message-id 20101103171926.ga28...@blegrez.ba.issia.cnr.it and subject line Re: Bug#602313: ZDI-CAN-925: proftpd TELNET_IAC processing stack overflow vulnerability has caused the Debian Bug report #602313, regarding ZDI-CAN-925: proftpd

Processed: closing 596408

2010-11-03 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: # luk forgot to close it when doing reassign/found bts magic close 596408 Bug#596408: Only segmentation faults when called... 'close' is deprecated; see http://www.debian.org/Bugs/Developer#closing. Bug closed, send any further explanations to

Bug#600826: emacs23: diff for NMU version 23.2+1-5.1

2010-11-03 Thread Sven Joachim
On 2010-11-03 17:32 +0100, Mehdi Dogguy wrote: I've prepared an NMU for emacs23 (versioned as 23.2+1-5.1) and uploaded it to DELAYED/1. Please feel free to tell me if I should delay it longer. diff -Nru emacs23-23.2+1/debian/changelog emacs23-23.2+1/debian/changelog ---

Bug#602287: marked as done ([unetbootin] must depend on mtools)

2010-11-03 Thread Debian Bug Tracking System
Your message dated Wed, 03 Nov 2010 18:05:22 + with message-id e1pdhi6-0005gl...@franck.debian.org and subject line Bug#602193: fixed in unetbootin 471-2 has caused the Debian Bug report #602193, regarding [unetbootin] must depend on mtools to be marked as done. This means that you claim that

Bug#602193: marked as done ([unetbootin] must depend on mtools)

2010-11-03 Thread Debian Bug Tracking System
Your message dated Wed, 03 Nov 2010 18:05:22 + with message-id e1pdhi6-0005gl...@franck.debian.org and subject line Bug#602193: fixed in unetbootin 471-2 has caused the Debian Bug report #602193, regarding [unetbootin] must depend on mtools to be marked as done. This means that you claim that

Bug#600826: emacs23: diff for NMU version 23.2+1-5.1

2010-11-03 Thread Mehdi Dogguy
On 11/03/2010 06:42 PM, Sven Joachim wrote: I think this is not correct, because quilt is still used in debian/rules to assemble emacs23-common.README.Debian. The target for it may be up to date in your build, but when somebody hacks around the package and introduces a new patch the

Bug#598474: marked as done (unusable on GNU/kFreeBSD)

2010-11-03 Thread Simon McVittie
On Sun, 10 Oct 2010 at 10:40:46 +0200, Giovanni Mascellani wrote: reopen 598474 found 598474 0.7.dfsg-9.2 retitle 598474 Multicast not working on kFreeBSD thanks Is multicast not working really release-critical, or can the remaining part of this bug be downgraded? I'd call this normal, or

Bug#598582: [pkg-horde] Bug#598582: horde3: Four security issues in Horde

2010-11-03 Thread Mehdi Dogguy
On 0, Gregory Colpart r...@evolix.fr wrote: For horde3, I prepare the patches for Lenny and Squeeze/Sid. They are on http://git.debian.org/?p=pkg-horde/horde3.git;a=summary I'm waiting comments from upstream before uploading. Any news? Regards, -- Mehdi Dogguy -- To UNSUBSCRIBE,

Processed: This bug is grave at least

2010-11-03 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: severity 602184 grave Bug #602184 [tar] tar: fails to create device nodes Severity set to 'grave' from 'important' thanks Stopping processing here. Please contact me if you need assistance. -- 602184:

Bug#600826: emacs23: diff for NMU version 23.2+1-5.1

2010-11-03 Thread Sven Joachim
On 2010-11-03 19:12 +0100, Mehdi Dogguy wrote: On 11/03/2010 06:42 PM, Sven Joachim wrote: I think this is not correct, because quilt is still used in debian/rules to assemble emacs23-common.README.Debian. The target for it may be up to date in your build, but when somebody hacks

Bug#602333: /usr/bin/fusermount: fusermount allows unmount any filesystem

2010-11-03 Thread Paul Szabo
Package: fuse-utils Version: 2.7.4-1.1+lenny1 Severity: grave File: /usr/bin/fusermount Tags: security Justification: user security hole As reported on a public mailing list, fusermount in Ubuntu allows unprivileged users to unmount anything. I wonder if Debian is affected. Relevant files

Processed: ldap-account-manager

2010-11-03 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: found 601706 ldap-account-manager/3.1.0-1 Bug #601706 {Done: Roland Gruber p...@rolandgruber.de} [ldap-account-manager] ldap-account-manager: Package unremovable Bug Marked as found in versions ldap-account-manager/3.1.0-1. thanks Stopping

Bug#587110: marked as done (mixxx: FTBFS: dlgprefmidibindings.cpp:75: undefined reference to `MidiOptionDelegate::MidiOptionDelegate(QObject*)')

2010-11-03 Thread Debian Bug Tracking System
Your message dated Wed, 03 Nov 2010 20:49:28 + with message-id e1pdkgu-0007av...@franck.debian.org and subject line Bug#587110: fixed in mixxx 1.7.2-2 has caused the Debian Bug report #587110, regarding mixxx: FTBFS: dlgprefmidibindings.cpp:75: undefined reference to

Bug#602333: /usr/bin/fusermount: fusermount allows unmount any filesystem

2010-11-03 Thread Adam D. Barratt
On Thu, 2010-11-04 at 07:24 +1100, Paul Szabo wrote: As reported on a public mailing list, fusermount in Ubuntu allows unprivileged users to unmount anything. I wonder if Debian is affected. It would be more helpful if you checked, before filing grave bugs on packages. This sounds very much

Bug#528914: marked as done (Should leave enough space for two kernel flavours in the root partition)

2010-11-03 Thread Debian Bug Tracking System
Your message dated Wed, 03 Nov 2010 21:22:41 + with message-id e1pdkn3-0006pr...@franck.debian.org and subject line Bug#528914: fixed in partman-auto 94 has caused the Debian Bug report #528914, regarding Should leave enough space for two kernel flavours in the root partition to be marked as

Bug#602333: /usr/bin/fusermount: fusermount allows unmount any filesystem

2010-11-03 Thread paul . szabo
Dear Adam, It would be more helpful if you checked, before filing grave bugs on packages. I apologize for my laziness. I do not normally use fuse. Maybe I could set up a test machine, but (unless succeeded in the exploit) would not properly know whether Debian was safe. I thought it was better

Bug#602340: CVE-2010-3380

2010-11-03 Thread Moritz Muehlenhoff
Package: slurm-llnl Severity: grave Tags: security Please see http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3380 I'm attaching the extracted upstream fix. Please note that while upstream has fixed this issue in 2.1.4, Debian is still affected since we ship our own init scripts in

Bug#511582: #511582: updated patch, also fixes lintian error (and a few lintian warnings)

2010-11-03 Thread Moritz Muehlenhoff
On Fri, Sep 03, 2010 at 08:39:05PM +0200, Guillem Jover wrote: On Fri, 2010-09-03 at 18:56:04 +0200, Julien Cristau wrote: On Mon, Feb 1, 2010 at 00:51:43 -0500, Daniel Kahn Gillmor wrote: I'm wondering if we should remove the package from the archive entirely as a result of this review.

Bug#598582: [pkg-horde] Bug#598582: horde3: Four security issues in Horde

2010-11-03 Thread Gregory Colpart
Hello, On Wed, Nov 03, 2010 at 07:58:25PM +0100, Mehdi Dogguy wrote: On 0, Gregory Colpart r...@evolix.fr wrote: For horde3, I prepare the patches for Lenny and Squeeze/Sid. They are on http://git.debian.org/?p=pkg-horde/horde3.git;a=summary I'm waiting comments from upstream before

Processed: tar: Fails using '-C' option extracting archive with empty directories

2010-11-03 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: retitle 602209 tar: Fails using '-C' option extracting archive with empty directories Bug #602209 [tar] tar: New version breaks lintian Changed Bug title to 'tar: Fails using '-C' option extracting archive with empty directories' from 'tar: New

Bug#602209: tar: Fails using '-C' option extracting archive with empty directories

2010-11-03 Thread Andres Mejia
retitle 602209 tar: Fails using '-C' option extracting archive with empty directories thanks Here's clarification of what the issue is. The new tar in unstable fails to extract the empty directories inside an archive when using the '-C' option to change directories. Here are the steps to

Bug#602209: tar: [PATCH] Fails using '-C' option extracting archive with empty directories

2010-11-03 Thread Andres Mejia
The other link provided earlier is down. Here's the fix in upstream's git repo. http://git.savannah.gnu.org/cgit/tar.git/commit/?id=acb77ac5bd4bf9248070c9c512525eee8258aebd -- Regards, Andres Mejia -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of

Bug#515555: ok to remove db 4.5?

2010-11-03 Thread brian m. carlson
Python 2.5 has been built against db 4.8. Is it okay to reassign this to ftp.debian.org for removal? -- brian m. carlson / brian with sandals: Houston, Texas, US +1 832 623 2791 | http://www.crustytoothpaste.net/~bmc | My opinion only OpenPGP: RSA v4 4096b: 88AC E9B2 9196 305B A994 7552 F1BA

Bug#602257: gnumeric crashes constantly

2010-11-03 Thread Julien Cristau
On Tue, Nov 2, 2010 at 19:42:35 -0400, Andres Cimmarusti wrote: The error was 'BadAlloc (insufficient resources for operation)'. (Details: serial 1887243 error_code 11 request_code 53 minor_code 0) request 53 is CreatePixmap, so that probably means the program is trying to create a pixmap

Bug#554506: (ugly) patch which should fix dm-crypt-on-lvm setups

2010-11-03 Thread Jonas Meurer
Hello, Again I tried to work on this bugreport. I'm absolutely sure that different bugs are spotted. Most people are hitting the following bug: the debian-installer was changed to configure devices in fstab and crypttab in the 'UUID=...' style some time ago. this works for most systems, with the

Processed: limit source to cryptsetup, tagging 595331

2010-11-03 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: #cryptsetup (2:1.1.3-4) UNRELEASED; urgency=low # # * fix depreciated ext2 wrapper checkscript to succeed for ext2, ext3, ext4 #and ext4dev filesystems. (closes: #595331) # limit source cryptsetup Limiting to bugs with field 'source'

Bug#601859: wesnoth-1.9: Bad error handling in postinst script

2010-11-03 Thread PJ Weisberg
As a temporary workaround, until the postinst script gets fixed, you can: 1. Install wesnoth-1.8-core 2. Install wesnoth-1.9-core 3. Uninstall wesnoth-1.8-core The Wesnoth1.9 postinst configuration script is set up to abort if Wesnoth isn't already configured, so installing a version that does

Bug#602362: libjsr166y-java: FTBFS in sid with type parameters ... cannot be determined error

2010-11-03 Thread Fabrice Coutadeur
Package: libjsr166y-java Version: 0.1.20080107-1 Severity: serious Justification: fails to build from source Hi, Your package FTBFS in a sid chroot with the following messages: ... src/main/java/jsr166y/forkjoin/ParallelArray.java:1657: type parameters of Tjsr166y.forkjoin.Ops.PredicateT cannot