Re: Security update of openssh for wheezy

2016-07-30 Thread Adrian Zaugg
Is the security breech also present in openssh of wheezy-backports (openssh-server 1:6.6p1-4~bpo70+1, I guess yes because 1.6.0 and 1.6.7 are affected)? Is wheezy-backports in generally supported or not by the LTS Team? Thank you for your quick answer! Regards, Adrian. On 26.07.16 23:24, Ola

lovely

2016-07-30 Thread Leslie S Satenstein
Hey! Have you seen something as lovely as that stuff? I swear you haven't, just take a look here Pardon my monkey thumbs, Leslie S Satenstein

[SECURITY] [DLA 578-1] openssh security update

2016-07-30 Thread Ola Lundqvist
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Package: openssh Version: 6.0p1-4+deb7u5 CVE ID : CVE-2016-6210 OpenSSH secure shell client and server had a user enumeration problem reported. CVE-2016-6210 User enumeration via covert timing channel For Debian 7

Re: Wheezy update of libreoffice?

2016-07-30 Thread Guido Günther
Hi, Just a random comment: On Sat, Jul 30, 2016 at 09:45:51PM +0200, Balint Reczey wrote: > Priority: optional > Maintainer: Debian LibreOffice Maintainers > > Uploaders: Rene Engelhard > -Build-Depends: dpkg-dev (>= 1.16.1),

Re: Wheezy update of libreoffice?

2016-07-30 Thread Balint Reczey
Hi Rene, On 07/28/2016 08:36 PM, Rene Engelhard wrote: > Hi, > > On Thu, Jul 28, 2016 at 07:12:16PM +0200, Bálint Réczey wrote: >> Thank you for preparing the patch. >> I'm building it right now and would like to test it if you have not done so >> yet. >> After it is tested feel free to upload

Re: xen_4.1.6.1-1+deb7u2.dsc

2016-07-30 Thread Guido Günther
On Fri, Jul 29, 2016 at 01:26:22PM +0200, Bastian Blank wrote: > Hi Guido > > On Fri, Jul 29, 2016 at 01:13:33PM +0200, Guido Günther wrote: > > * the complete removal of tools/ioemu-qemu-xen - guess this was unused > > anyway since quiet some time, right? > > I have no idea and found not one

Accepted icedove 1:45.2.0-2~deb7u1 (source amd64 all) into oldstable

2016-07-30 Thread Guido Günther
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Format: 1.8 Date: Fri, 29 Jul 2016 16:58:24 +0200 Source: icedove Binary: icedove icedove-dev icedove-dbg iceowl-extension calendar-google-provider icedove-l10n-all icedove-l10n-ar icedove-l10n-ast icedove-l10n-be icedove-l10n-bg

Accepted qemu-kvm 1.1.2+dfsg-6+deb7u14 (source amd64) into oldstable

2016-07-30 Thread Guido Günther
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Format: 1.8 Date: Fri, 29 Jul 2016 16:32:58 +0200 Source: qemu-kvm Binary: qemu-kvm qemu-kvm-dbg kvm Architecture: source amd64 Version: 1.1.2+dfsg-6+deb7u14 Distribution: wheezy-security Urgency: medium Maintainer: Michael Tokarev

Re: Wheezy update of twisted?

2016-07-30 Thread Free Ekanayaka
Hello, I'm going on vacation shortly, and likely won't have time to address the bug timely enough. So unless Matthias has cycles to work on it, I'd say yes go ahead please. Thanks Free On 28 July 2016 at 22:37, Thorsten Alteholz wrote: > Hello dear maintainer(s), > > the

[SECURITY] [DLA 571-1] xen security update

2016-07-30 Thread Guido Günther
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Package: xen Version: 4.1.6.lts1-1 CVE ID : CVE-2014-3672 CVE-2016-3158 CVE-2016-3159 CVE-2016-3710 CVE-2016-3712 CVE-2016-3960 CVE-2016-4480 CVE-2016-6258 Debian Bug : Multiple vulnerabilities have