Re: Security fix for jquery-jplayer 2.1.0-1

2013-04-27 Thread Thijs Kinkhorst
Hi Pau, On Sat, April 27, 2013 01:31, Pau Garcia i Quiles wrote: Wheezy contains my package jquery-jplayer 2.1.0-1, which is affected by a few security issues which have been recently fixed upstream. One of the issues is CVE-2013-1942. Two other issues, although important, did not get a CVE

Re: Security fix for jquery-jplayer 2.1.0-1

2013-04-27 Thread Vincent Bernat
❦ 27 avril 2013 09:01 CEST, Thijs Kinkhorst th...@debian.org : Wheezy contains my package jquery-jplayer 2.1.0-1, which is affected by a few security issues which have been recently fixed upstream. One of the issues is CVE-2013-1942. Two other issues, although important, did not get a CVE

Re: Security fix for jquery-jplayer 2.1.0-1

2013-04-27 Thread Niels Thykier
On 2013-04-27 09:12, Vincent Bernat wrote: ❦ 27 avril 2013 09:01 CEST, Thijs Kinkhorst th...@debian.org : [...] Not in the release team either but I disagree that switching to 3.0 (quilt) is an unacceptable change. This is far more simple than adding a patch system in debian/rules and

Bug#706253: unblock: device-tree-compiler/1.3.0-2

2013-04-27 Thread Hector Oron
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package device-tree-compiler It fixes RC bug reported at: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=706137 diff -Nru device-tree-compiler-1.3.0/debian/changelog

Processed: Re: Bug#706253: unblock: device-tree-compiler/1.3.0-2

2013-04-27 Thread Debian Bug Tracking System
Processing control commands: tags -1 + moreinfo Bug #706253 [release.debian.org] unblock: device-tree-compiler/1.3.0-2 Added tag(s) moreinfo. -- 706253: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=706253 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems -- To

Bug#706253: unblock: device-tree-compiler/1.3.0-2

2013-04-27 Thread Adam D. Barratt
Control: tags -1 + moreinfo On Sat, 2013-04-27 at 10:02 +0200, Hector Oron wrote: Please unblock package device-tree-compiler It fixes RC bug reported at: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=706137 Thanks for the fix, but... diff -Nru

Re: not co-installable Multi-Arch:same packages

2013-04-27 Thread Adam D. Barratt
On Sat, 2013-04-27 at 01:45 +0200, Andreas Beckmann wrote: a few Multi-Arch: same packages have all their dependencies satisfied, but are not co-installable because they got binNMUs. A sourceful no-change upload to rebuild them should restore co-installability. I've identified 8 source

Re: Security fix for jquery-jplayer 2.1.0-1

2013-04-27 Thread Vincent Bernat
❦ 27 avril 2013 09:18 CEST, Niels Thykier ni...@thykier.net : Not in the release team either but I disagree that switching to 3.0 (quilt) is an unacceptable change. This is far more simple than adding a patch system in debian/rules and better practice than putting those changes in diff.gz.

Re: not co-installable Multi-Arch:same packages

2013-04-27 Thread Adam D. Barratt
On Sat, 2013-04-27 at 09:21 +0100, Adam D. Barratt wrote: On Sat, 2013-04-27 at 01:45 +0200, Andreas Beckmann wrote: a few Multi-Arch: same packages have all their dependencies satisfied, but are not co-installable because they got binNMUs. A sourceful no-change upload to rebuild them

Re: Security fix for jquery-jplayer 2.1.0-1

2013-04-27 Thread Adam D. Barratt
On Sat, 2013-04-27 at 09:12 +0200, Vincent Bernat wrote: ❦ 27 avril 2013 09:01 CEST, Thijs Kinkhorst th...@debian.org : Wheezy contains my package jquery-jplayer 2.1.0-1, which is affected by a few security issues which have been recently fixed upstream. One of the issues is

Re: Bug#706110: libgnome{, vfs}2-common: fails to upgrade from squeeze: prerm failure: gconf-schemas: not found

2013-04-27 Thread Adam D. Barratt
On Sat, 2013-04-27 at 01:35 +0200, Andreas Beckmann wrote: If skipping the old gconf-schemas --unregister call is not problematic because an equivalent action will be done by trigger processing (and no stale schemas will stay registered), adding the empty dummy prerm should be a safe solution.

Bug#706253: unblock: device-tree-compiler/1.3.0-2

2013-04-27 Thread Hector Oron
Hello, 2013/4/27 Adam D. Barratt a...@adam-barratt.org.uk: diff -Nru device-tree-compiler-1.3.0/debian/source/format device-tree-compiler-1.3.0/debian/source/format --- device-tree-compiler-1.3.0/debian/source/format 2013-04-27 08:01:11.0 + +++

Bug#706253: unblock: device-tree-compiler/1.3.0-2

2013-04-27 Thread Adam D. Barratt
On Sat, 2013-04-27 at 11:55 +0200, Hector Oron wrote: 2013/4/27 Adam D. Barratt a...@adam-barratt.org.uk: +3.0 (quilt) Why is this change included? It's not documented in the changelog, has been on the list of things /not/ to do in the freeze policy for ages and the package appears to

Bug#706253: unblock: device-tree-compiler/1.3.0-2

2013-04-27 Thread Hector Oron
Hello, 2013/4/27 Adam D. Barratt a...@adam-barratt.org.uk: It slipped through, I noticed, but I thought it was not an issue. I could do new upload and revert it. That would be appreciated; thanks. Done. Fixed in device-tree-compiler 1.3.0-4, a debdiff against package in wheezy: diff -u

Bug#706253: marked as done (unblock: device-tree-compiler/1.3.0-2)

2013-04-27 Thread Debian Bug Tracking System
Your message dated Sat, 27 Apr 2013 11:21:22 +0100 with message-id 1367058082.13168.37.ca...@jacala.jungle.funky-badger.org and subject line Re: Bug#706253: unblock: device-tree-compiler/1.3.0-2 has caused the Debian Bug report #706253, regarding unblock: device-tree-compiler/1.3.0-2 to be marked

Re: Security fix for jquery-jplayer 2.1.0-1

2013-04-27 Thread Pau Garcia i Quiles
On Sat, Apr 27, 2013 at 10:31 AM, Adam D. Barratt a...@adam-barratt.org.ukwrote: On Sat, 2013-04-27 at 09:12 +0200, Vincent Bernat wrote: ❦ 27 avril 2013 09:01 CEST, Thijs Kinkhorst th...@debian.org : Wheezy contains my package jquery-jplayer 2.1.0-1, which is affected by a few

Bug#706047: unblock bacula/5.2.6+dfsg-9

2013-04-27 Thread Alexander Golovko
В Sat, 27 Apr 2013 00:13:10 +0100 Jonathan Wiltshire j...@debian.org пишет: Control: tag -1 + confirmed On Wed, Apr 24, 2013 at 02:17:12AM +0400, Alexander Golovko wrote: Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock

Bug#706148: pu: package clamav/0.97.8+dfsg-1~squeeze1

2013-04-27 Thread Adam D. Barratt
Control: tags -1 + pending On Thu, 2013-04-25 at 08:53 -0400, Scott Kitterman wrote: New clamav release with security fixes, all the usual reasons 0.97.8 -- ClamAV 0.97.8 addresses several reported potential security bugs. Thanks to Felix Groebert of the Google Security Team for

Processed: Re: Bug#706148: pu: package clamav/0.97.8+dfsg-1~squeeze1

2013-04-27 Thread Debian Bug Tracking System
Processing control commands: tags -1 + pending Bug #706148 [release.debian.org] pu: package clamav/0.97.8+dfsg-1~squeeze1 Added tag(s) pending. -- 706148: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=706148 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems -- To

Re: Security fix for jquery-jplayer 2.1.0-1

2013-04-27 Thread Adam D. Barratt
On Sat, 2013-04-27 at 12:41 +0200, Pau Garcia i Quiles wrote: On Sat, Apr 27, 2013 at 10:31 AM, Adam D. Barratt a...@adam-barratt.org.uk wrote: One middle ground that's been used in some other packages is to apply the patch directly but also add a copy of the patch to

Processed: closing 699492

2013-04-27 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: close 699492 Bug #699492 [release.debian.org] unblock bacula-doc/5.2.6-2 Marked Bug as done thanks Stopping processing here. Please contact me if you need assistance. -- 699492: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=699492 Debian Bug

NEW changes in stable-new

2013-04-27 Thread Debian FTP Masters
Processing changes file: clamav_0.97.8+dfsg-1~squeeze1_i386.changes ACCEPT -- To UNSUBSCRIBE, email to debian-release-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org Archive: http://lists.debian.org/e1uw2eo-0002wf...@franck.debian.org

Re: frozen-proposed-updates?

2013-04-27 Thread Christian Hammers
Hello Am Fri, 26 Apr 2013 09:47:27 +0200 schrieb Julien Cristau jcris...@debian.org: On Fri, Apr 26, 2013 at 02:44:05 +0200, Christian Hammers wrote: Hello I'd like to upload a package that fixes a bug in testing's quagga_0.99.21-4. I can't upload it via unstable as we have already

Fwd: Re: not co-installable Multi-Arch:same packages

2013-04-27 Thread Andreas Beckmann
Dear maintainers, you might consider doing a no-change upload for your package to get rid of a bin-NMU and restore multiarch co-installability. Ensure to build in a really clean sid chroot, otherwise another binNMU could be required to fix your package and break MA co-installability again. If

Bug#706047: marked as done (unblock bacula/5.2.6+dfsg-9)

2013-04-27 Thread Debian Bug Tracking System
Your message dated Sat, 27 Apr 2013 14:20:53 +0100 with message-id 20130427132053.gb18...@lupin.home.powdarrmonkey.net and subject line Re: Bug#706047: unblock bacula/5.2.6+dfsg-9 has caused the Debian Bug report #706047, regarding unblock bacula/5.2.6+dfsg-9 to be marked as done. This means that

Re: Fixing #698914 for wheezy (grub booting Windows 8 via UEFI)

2013-04-27 Thread Cyril Brulebois
Steve McIntyre st...@einval.com (25/04/2013): I opened #698914 a while back, concerned about the lack of support in grub and os-prober for detecting Windows 8 on UEFI systems so that working boot entries would be added automatically at installation time. At the time, I did not consider the

Bug#706271: t-p-u: libdmtx/0.7.2-2+build1

2013-04-27 Thread Andreas Beckmann
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package libdmtx Hi, I'd like to NMU libdmtx and do a no-change rebuild in t-p-u to fix two issues: * get rid of the binNMU * fix MA incompatible gzip compression

Re: Fixing #698914 for wheezy (grub booting Windows 8 via UEFI)

2013-04-27 Thread Adam D. Barratt
On Sat, 2013-04-27 at 15:37 +0200, Cyril Brulebois wrote: Steve McIntyre st...@einval.com (25/04/2013): I opened #698914 a while back, concerned about the lack of support in grub and os-prober for detecting Windows 8 on UEFI systems so [...] We'd need a d-i wheezy rc3. Not sure there's

Bug#704729: unblock: alsa-base/1.0.25+3 (pre-approval)

2013-04-27 Thread Adam D. Barratt
user release.debian@packages.debian.org usertags 704729 = pu retitle 704729 pu: alsa-base/1.0.25+3~deb7u1 thanks On Thu, 2013-04-25 at 14:35 +0200, Jordi Mallach wrote: I decided to upload the alsa-base patch in the minimal incarnation I posted here a few days ago. Just in case this dropped

Processed: Re: Bug#704729: unblock: alsa-base/1.0.25+3 (pre-approval)

2013-04-27 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: user release.debian@packages.debian.org Setting user to release.debian@packages.debian.org (was a...@adam-barratt.org.uk). usertags 704729 = pu Usertags were: unblock. Usertags are now: pu. retitle 704729 pu: alsa-base/1.0.25+3~deb7u1

Bug#702353: unblock: python2.7/2.7.3-8

2013-04-27 Thread Adam D. Barratt
On Sun, 2013-03-24 at 23:07 +0100, Matthias Klose wrote: What's the rationale for the second item? hashlib already provides those through libcrypto, AIUI, why is the duplication necessary? - to provide the same modules as in the debug interpreter. - to provide them in python2.7-minimal,

Bug#699806: unblock: dlocate/1.02+nmu3

2013-04-27 Thread Adam D. Barratt
user release.debian@packages.debian.org usertags 699806 = pu retitle 699806 pu: dlocate/1.02+deb7u1 thanks On Tue, 2013-02-05 at 13:34 +0100, John Paul Adrian Glaubitz wrote: dlocate has been neglected for quite some time now. I have collected some patches to fix several minor but annoying

Bug#699806: unblock: dlocate/1.02+nmu3

2013-04-27 Thread John Paul Adrian Glaubitz
On 04/27/2013 04:45 PM, Adam D. Barratt wrote: Apologies for not getting back to you about this again sooner. Unfortunately it's now too late to get these fixes in to r0, but I do think we should consider whether some of them are appropriate for a stable update at a later point. Sounds like a

Processed: Re: Bug#699806: unblock: dlocate/1.02+nmu3

2013-04-27 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: user release.debian@packages.debian.org Setting user to release.debian@packages.debian.org (was a...@adam-barratt.org.uk). usertags 699806 = pu Usertags were: unblock. Usertags are now: pu. retitle 699806 pu: dlocate/1.02+deb7u1 Bug

Bug#694378: marked as done (unblock: apt-cacher-ng/0.7.11-1)

2013-04-27 Thread Debian Bug Tracking System
Your message dated Sat, 27 Apr 2013 16:19:50 +0100 with message-id 1367075990.13168.72.ca...@jacala.jungle.funky-badger.org and subject line Re: Bug#694378: please allow up-to-date apt-cacher-ng in wheezy has caused the Debian Bug report #694378, regarding unblock: apt-cacher-ng/0.7.11-1 to be

Bug#706110: libgnome{, vfs}2-common: fails to upgrade from squeeze: prerm failure: gconf-schemas: not found

2013-04-27 Thread Andreas Beckmann
Followup-For: Bug #706110 Control: tag -1 patch On 2013-04-27 10:35, Adam D. Barratt wrote: If we could get it done over the weekend, that should be okay. I'd be interested in seeing a binary debdiff of the rebuilt packages against those in wheezy though. Here are patch + binary debdiffs.

NEW changes in stable-new

2013-04-27 Thread Debian FTP Masters
Processing changes file: clamav_0.97.8+dfsg-1~squeeze1_s390.changes ACCEPT -- To UNSUBSCRIBE, email to debian-release-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org Archive: http://lists.debian.org/e1uw6s4-0004qf...@franck.debian.org

NEW changes in stable-new

2013-04-27 Thread Debian FTP Masters
Processing changes file: clamav_0.97.8+dfsg-1~squeeze1_amd64.changes ACCEPT Processing changes file: clamav_0.97.8+dfsg-1~squeeze1_ia64.changes ACCEPT Processing changes file: clamav_0.97.8+dfsg-1~squeeze1_kfreebsd-amd64.changes ACCEPT Processing changes file:

Processed: reopening 704227, user release.debian....@packages.debian.org, usertagging 704227, tagging 704227 ...

2013-04-27 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: reopen 704227 Bug #704227 {Done: Jonathan Wiltshire j...@debian.org} [release.debian.org] unblock: freebsd-utils/9.0+ds1-11 Bug reopened Ignoring request to alter fixed versions of bug #704227 to the same values previously set user

NEW changes in stable-new

2013-04-27 Thread Debian FTP Masters
Processing changes file: clamav_0.97.8+dfsg-1~squeeze1_armel.changes ACCEPT -- To UNSUBSCRIBE, email to debian-release-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org Archive: http://lists.debian.org/e1uw7l6-0002hp...@franck.debian.org

NEW changes in stable-new

2013-04-27 Thread Debian FTP Masters
Processing changes file: clamav_0.97.8+dfsg-1~squeeze1_mips.changes ACCEPT -- To UNSUBSCRIBE, email to debian-release-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org Archive: http://lists.debian.org/e1uw7zd-0006bm...@franck.debian.org

Bug#706271: t-p-u: libdmtx/0.7.2-2+build1

2013-04-27 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sat, 2013-04-27 at 15:49 +0200, Andreas Beckmann wrote: I'd like to NMU libdmtx and do a no-change rebuild in t-p-u to fix two issues: * get rid of the binNMU * fix MA incompatible gzip compression http://lists.debian.org/517b2943.7020...@debian.org I

Processed: Re: Bug#706271: t-p-u: libdmtx/0.7.2-2+build1

2013-04-27 Thread Debian Bug Tracking System
Processing control commands: tags -1 + confirmed Bug #706271 [release.debian.org] t-p-u: libdmtx/0.7.2-2+build1 Added tag(s) confirmed. -- 706271: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=706271 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems -- To UNSUBSCRIBE,

Bug#706271: t-p-u: libdmtx/0.7.2-2+build1

2013-04-27 Thread Andreas Beckmann
Control: tag -1 pending On 2013-04-27 18:49, Adam D. Barratt wrote: On Sat, 2013-04-27 at 15:49 +0200, Andreas Beckmann wrote: I'd like to NMU libdmtx and do a no-change rebuild in t-p-u to fix two issues: * get rid of the binNMU * fix MA incompatible gzip compression

Processed: Re: Bug#706271: t-p-u: libdmtx/0.7.2-2+build1

2013-04-27 Thread Debian Bug Tracking System
Processing control commands: tag -1 pending Bug #706271 [release.debian.org] t-p-u: libdmtx/0.7.2-2+build1 Added tag(s) pending. -- 706271: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=706271 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems -- To UNSUBSCRIBE, email

Bug#706281: t-p-u: libusb/0.1.12-20+nmu2

2013-04-27 Thread Andreas Beckmann
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock I identified three packages that don't ship a SONAME symlink and cause spurious creation and removal of this link by ldconfig. Spurious since the packages themselves don't call ldconfig, so

Bug#706286: pre-approve: libpng/1.2.49-4

2013-04-27 Thread Andreas Beckmann
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock I identified three packages that don't ship a SONAME symlink and cause spurious creation and removal of this link by ldconfig. Spurious since the packages themselves don't call ldconfig, so

Bug#706286: pre-approve: libpng/1.2.49-4

2013-04-27 Thread Andreas Beckmann
Oops, missed the udeb built from libpng, so this is probably another r1 candidate as 1.2.49-1+deb7u1. Andreas -- To UNSUBSCRIBE, email to debian-release-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org Archive:

Re: Bug#706110: libgnome{, vfs}2-common: fails to upgrade from squeeze: prerm failure: gconf-schemas: not found

2013-04-27 Thread Adam D. Barratt
[re-added -release CC that went missing at some point] On Sat, 2013-04-27 at 21:29 +0200, Josselin Mouette wrote: Le samedi 27 avril 2013 à 16:34 +0100, Adam D. Barratt a écrit : Some versions are bumped, but everything still satisfiable in wheezy. There's also several new dependencies

Bug#706296: pu: package ldap2dns/0.3.1-3+squeeze1

2013-04-27 Thread Andreas Beckmann
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: pu Hi, ldap2dns has a nasty bug (#333448) that makes installation fail sometimes with spurious errors. The fix is simple: just drop debconf confmodule sourcing - it is not used at all. Backported

[PATCH] release-notes: Improve description of kernel upgrade

2013-04-27 Thread Ben Hutchings
Since the 686 flavour has been removed, change the example to use the amd64 flavour and for i386 include a link back to the information about replacement of the 686 flavour. --- a/release-notes/en/upgrading.dbk +++ b/release-notes/en/upgrading.dbk @@ -836,7 +836,7 @@ /para /section -section

Bug#706286: pre-approve: libpng/1.2.49-4

2013-04-27 Thread Aníbal Monsalve Salazar
On Sat, Apr 27, 2013 at 08:30:06PM +0200, Andreas Beckmann wrote: Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock I identified three packages that don't ship a SONAME symlink and cause spurious creation and removal of this link by

Bug#706148: pu: package clamav/0.97.8+dfsg-1~squeeze1

2013-04-27 Thread Scott Kitterman
On Saturday, April 27, 2013 11:43:08 AM Adam D. Barratt wrote: Control: tags -1 + pending On Thu, 2013-04-25 at 08:53 -0400, Scott Kitterman wrote: New clamav release with security fixes, all the usual reasons 0.97.8 -- ClamAV 0.97.8 addresses several reported potential