Re: twitter-bootstrap / CVE-2018-14040 / CVE-2018-14041 / CVE-2018-14042

2018-08-08 Thread Paul Wise
On Wed, Aug 8, 2018 at 3:35 PM, Brian May wrote: > Sidenote: Curiously I cannot connect to > https://security-tracker.debian.org/ today from this machine on this > network... Connections always time out. Probably something weird with my > network, however other webpages appear to be fine. If I

LTS report for July 2018 - Abhijith PA

2018-08-08 Thread Abhijith PA
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 July 2018 was my sixth month as a Debian LTS paid contributor. I was assigned 12 hours (10 plus 2 hours carried from last month). I have spent these hours on; * ant: Backported CVE-2018-10886, TEMP-0904191-9063D5 tested and released

Re: Checking for regressions after the release of a DLA

2018-08-08 Thread Moritz Muehlenhoff
On Wed, Aug 08, 2018 at 04:26:04PM +0100, Chris Lamb wrote: > Dear Moritz, > > > > I have prepared a regression update of my package slurm-llnl in jessie, > > > because of: > > > > To everyone working on LTS, there's also a process gap here; anyone who > > releases a DLA should keep an eye on

Re: Checking for regressions after the release of a DLA

2018-08-08 Thread Chris Lamb
Dear Moritz, > > I have prepared a regression update of my package slurm-llnl in jessie, > > because of: > > To everyone working on LTS, there's also a process gap here; anyone who > releases a DLA should keep an eye on the BTS for about a week > after the release of a DLA to check for eventual

Accepted slurm-llnl 14.03.9-5+deb8u4 (source all) into oldstable

2018-08-08 Thread Gennaro Oliva
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Format: 1.8 Date: Thu, 02 Aug 2018 18:19:28 +0200 Source: slurm-llnl Binary: slurm-wlm slurm-client slurmd slurmctld libslurmdb27 libslurm27 libpmi0 libslurm-dev libslurmdb-dev libpmi0-dev slurm-wlm-doc slurm-wlm-basic-plugins

Re: Regression update for slurm-llnl in jessie

2018-08-08 Thread Holger Levsen
On Wed, Aug 08, 2018 at 10:27:08AM +, Holger Levsen wrote: > thanks for preparing this update, I'll upload it shortly. & uploaded. -- cheers, Holger ---

Checking for regressions after the release of a DLA

2018-08-08 Thread Moritz Muehlenhoff
On Wed, Aug 08, 2018 at 11:14:52AM +0200, Gennaro Oliva wrote: > Hi, > I have prepared a regression update of my package slurm-llnl in jessie, > because of: To everyone working on LTS, there's also a process gap here; anyone who releases a DLA should keep an eye on the BTS for about a week after

[SECURITY] [DLA 1437-2] slurm-llnl regression update

2018-08-08 Thread Holger Levsen
Package: slurm-llnl Version: 14.03.9-5+deb8u4 CVE ID : CVE-2018-10995 Debian Bug : 893044 The security update for slurm-llnl introduced a regression in the fix for CVE-2018-10995 which broke accounting. For Debian 8 "Jessie", this problem has been fixed in version

Regression update for slurm-llnl in jessie

2018-08-08 Thread Gennaro Oliva
Hi, I have prepared a regression update of my package slurm-llnl in jessie, because of: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=893044#21 I'm the maintainer of the package, but last upload was a NMU. The updated package can be found here: