SSL_CTX_set_options(context, SSL_OP_NO_SSLv2); /* Only use SSLv3 or TLS */
if (SSLOptions & CUPSD_SSL_NOEMPTY)
SSL_CTX_set_options(context, SSL_OP_DONT_INSERT_EMPTY_FRAGMENTS);
+ if (!(SSLOptions & CUPSD_SSL_ALLOW_SSL3))
+SSL_CTX_set_options(context, SSL_OP_NO_SSLv3); /* Don't use SSLv3 */
+ if (!(SSLOptions
and is not
+available in non-english translations (Closes: #763517, #768163)
+ * Drop the upstream patch to limit Get-Jobs replies to 500, as this triggers
+a FTBS on mips
+
+ -- Didier Raboud o...@debian.org Thu, 27 Nov 2014 20:44:45 +0100
+
cups (1.7.5-8) unstable; urgency=medium
* Add
Package: release.debian.org
Severity: normal
User: release.debian@packages.debian.org
Usertags: unblock
Please unblock package epson-inkjet-printer-escpr, it has the following
changelog:
* Backport the 1.4.4 change:
- Fixed a problem when using Rear Feed Slot as InputSlot
) unstable; urgency=medium
+
+ * Add a USB quirk fix for Brother HL-1250 (Closes: #712512)
+ * Backport upstream patch to fix random crash in TLS handling. The patch also
+enables coredumps.(Closes: #760475, #760476)
+
+ -- Didier Raboud o...@debian.org Sun, 23 Nov 2014 13:26:24 +0100
+
cups
/debian/changelog 2014-11-23 14:57:19.0 +0100
@@ -1,3 +1,17 @@
+cups-filters (1.0.61-4) unstable; urgency=medium
+
+ * Brown-paper bag upload: revert unwanted change from previous upload in
+installed files.
+
+ -- Didier Raboud o...@debian.org Sun, 23 Nov 2014 14:56:37 +0100
+
+cups
those at some point. Let's see whether
letting the kernel do its job just works. (See: #395040)
* Fetch hurd dailies from d-i.debian.org
* Replace deprcated wiki.d.o errata url with the one from www.d.o
* Use http.d.n instead of cdn.d.n
-- Didier Raboud o...@debian.org
..d679a97 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -1,3 +1,10 @@
+cups (1.4.4-7+squeeze5) oldstable-security; urgency=high
+
+ * Import upstream patch to fix XSS in the CUPS webinterface (STR #4356),
+fixes CVE-2014-2856
+
+ -- Didier Raboud o...@debian.org Mon, 28 Apr 2014 22:26
Package: release.debian.org
Severity: normal
User: release.debian@packages.debian.org
Usertags: binnmu
Hi dear Release Team,
the new version of src:jimtcl just went out of NEW, building a new
libjim0.74, replacing libjim0debian2 with a new (upstream, yay) SONAME.
The only
2013-09-27 19:54:43.0 +0200
@@ -1,3 +1,11 @@
+cups (1.5.3-5+deb7u1) stable; urgency=low
+
+ [ Tim Waugh ]
+ * dnssd backend: don't crash if avahi gives a callback with no TXT
+record (Closes: #722886)
+
+ -- Didier Raboud o...@debian.org Fri, 27 Sep 2013 19:53:20 +0200
+
cups (1.5.3-5
Wheezy on. (Closes: #711174)
* Add jessie to the release codenames lookup table
-- Didier Raboud o...@debian.org Wed, 05 Jun 2013 12:38:11 +0200
The full debdiff is attached. I'm sorry for it being a little noisy
because of the changes needed in the test-suite.
Cheers,
OdyX
Package: ftp.debian.org
Severity: important
Hi dear FTP-Masters, dear Release Team,
it seems that the debian/tools/win32-loader/{testing,stable}/ copy has
been forgotten during the Wheezy release week-end. See:
wget
'http://ftp.ch.debian.org/debian/tools/win32-loader/stable/win32-loader.txt'
Package: release.debian.org
Severity: normal
User: release.debian@packages.debian.org
Usertags: tpu
Hi dear Release Team,
I just got reminded that win32-loader embeds various other packages and
that it would be great to have its subparts updated for the Wheezy
release; namely, from it's
Package: release.debian.org
Severity: normal
User: release.debian@packages.debian.org
Usertags: rm
Hi dear Release Team, hi dear midgard2-core and php5-midgard2 maintainers,
as explained in http://bugs.debian.org/677795#67 , I think midgard2-core
(and it's only build-rdep, php5-midgard2)
)
+
+ -- Didier Raboud o...@debian.org Mon, 25 Mar 2013 10:12:46 +0100
+
busybox (1:1.20.0-7) unstable; urgency=low
* set CONFIG_FEATURE_COPYBUF_KB from 4 to 64 for all flavours. This
diff -Nru busybox-1.20.0/debian/patches/mdev-fix-mode-of-dir1-in-=dir1-dir2-file-rule.patch busybox-1.20.0/debian
=low
+
+ * Non-maintainer upload.
+
+ [ Michael Tokarev ]
+ * xz-support-concatenated-xz-streams.patch (Closes: #686502)
+
+ -- Didier Raboud o...@debian.org Mon, 25 Mar 2013 10:47:08 +0100
+
busybox (1:1.20.0-7) unstable; urgency=low
* set CONFIG_FEATURE_COPYBUF_KB from 4 to 64 for all
+
+ * Backport upstream documentation fix for STR#4223 lpadmin to root
+privilege escalation
+ * Correct usb-backend quirk for Epson Stylus Photo 750, thanks to
+Denis Prost (Closes: #697970)
+
+ -- Didier Raboud o...@debian.org Mon, 11 Mar 2013 10:18:37 +0100
+
cups (1.5.3-2.15) unstable; urgency
-support.patch to make AirPrint support also work for
iOS 6. (Closes: #700961, LP: #1054495) - thanks to Jan Wagner.
.
[ Didier Raboud ]
* Add usb-backend quirk for Epson Stylus Photo 750 (Closes: #697970)
And the full debdiff is attached.
Cheers,
OdyX
unblock cups/1.5.3-2.15
diff -Nru
-1.5.3/debian/changelog 2012-12-30 14:45:02.0 +0100
+++ cups-1.5.3/debian/changelog 2013-01-11 10:34:37.0 +0100
@@ -1,3 +1,13 @@
+cups (1.5.3-2.13) unstable; urgency=low
+
+ [ Helge Kreutzmann ]
+ * Update German manpage translation (Closes: #697860).
+
+ [ Didier Raboud ]
+ * Also
Package: release.debian.org
Severity: normal
User: release.debian@packages.debian.org
Usertags: unblock
Please unblock package usb-modeswitch-data 20120815-2. I backported only
the device additions and updates from 20121109 as released in
experimental.
The changelog is as follows and the
upstream bug #693208 to improve error feedback (when
+we can). (Closes: #682407)
+
+ -- Didier Raboud o...@debian.org Sun, 25 Nov 2012 14:39:30 +0100
+
ghostscript (9.05~dfsg-6.2) unstable; urgency=medium
* Check for the existence of /etc/cups/ppd in ghostscript-cups.postinst
diff -Nru
-etc-default.patch 2012-05-30 19:40:26.0 +0200
+++ lsb-4.1+Debian8/0001-Revert-Allow-FANCYTTY-to-be-sourced-from-etc-default.patch 1970-01-01 01:00:00.0 +0100
@@ -1,62 +0,0 @@
-From 7fc087dfd985e7e6e12659637b268129f60605de Mon Sep 17 00:00:00 2001
-From: Didier Raboud o...@debian.org
). Changelog is:
kdesudo (3.4.2.4-2) unstable; urgency=low
[ David Prévot ]
* debian/po/es.po: Fix charset (Closes: #691952)
[ Mahyuddin Susanto ]
* Add Indonesian debconf templates translation. (Closes: #658788)
[ Didier Raboud ]
* Run debconf-updatepo.
diffstat:
changelog | 13
Injection in calendar.
+- CVE-2012-2367 - MSA-12-0038: Calendar New Entry still shows and works
+ for roles preventing calendar entry. (Closes: #674163)
+
+ -- Didier Raboud o...@debian.org Sun, 21 Oct 2012 14:16:11 +0200
+
moodle (1.9.9.dfsg2-2.1+squeeze3) stable-security; urgency=low
filters) to reflect
+ recent reports.
+
+ * Minor update to the gen_dch helper script to be stricter when
+parsing git diff.
+
+ -- Didier Raboud o...@debian.org Tue, 28 Aug 2012 11:21:02 +0200
+
usb-modeswitch-data (20120531-1) unstable; urgency=low
* New upstream release.
diff -Nru usb
Fixes CVE-2012-4402
-- Didier Raboud o...@debian.org Fri, 28 Sep 2012 12:52:21 +0200
And (as the only diff are new patches in debian/patches) the patches are
attached.
Cheers,
OdyX
unblock moodle/2.2.3.dfsg-2.3
-- System Information:
Debian Release: wheezy/sid
APT prefers testing
CVE-2012-3389
- MDL-33916 Ensure that capabilities are checked for cached user
enrolments
Fixes CVE-2012-3388
-- Didier Raboud o...@debian.org Mon, 23 Jul 2012 19:13:56 +0200
moodle (2.2.3.dfsg-2.1) unstable; urgency=low
* Non-maintainer upload.
* Backport multiple security
in multiarch directories.
+(Closes: #681495, LP: #990638)
+
+ -- Didier Raboud o...@debian.org Sat, 14 Jul 2012 02:33:13 +0200
+
ptouch-driver (1.3-3) unstable; urgency=low
* Update the PPD-updater regexp to cope with latest changes in dh_pyppd;
diff -Nru ptouch-driver-1.3/debian/rules
Le lundi, 9 juillet 2012 02.51:12, Cyril Brulebois a écrit :
Didier Raboud o...@debian.org (08/07/2012):
[Long explanation]
Thanks, appreciated.
Uploaded, thanks.
OdyX
signature.asc
Description: This is a digitally signed message part.
FTBFS. (Closes: #680838)
+
+ -- Didier Raboud o...@debian.org Mon, 09 Jul 2012 00:46:05 +0200
+
libfprint (1:0.4.0-4-gdfff16f-3) unstable; urgency=low
* Patch the udev rules creator to:
diff -Nru libfprint-0.4.0-4-gdfff16f/debian/patches/Fix-libusb-global-variables-FTBFS.patch libfprint-0.4.0-4
Le dimanche, 8 juillet 2012 17.03:40, Cyril Brulebois a écrit :
doesn't look insane to me, but I'd appreciate a tiny briefing on the
uPr=WCDMA bit: Care to explain why that fixes a bug? (I suspect it makes
sure some extra properties are checked, instead of just relying on
vendorid+productid.)
Package: release.debian.org
Severity: normal
User: release.debian@packages.debian.org
Usertags: rm
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA256
Hi,
xemacs21 has two RC bugs is NMU-maintained since before Squeeze. Its
reverse-dependencies tree has two leaves: aplus-fsf (no RC bugs,
+ for ZTE Blade phone.
+
+ -- Didier Raboud o...@debian.org Fri, 06 Jul 2012 17:26:27 -0600
+
usb-modeswitch-data (20120529-1) unstable; urgency=low
* New upstream release
diff -Nru usb-modeswitch-data-20120529/Makefile usb-modeswitch-data-20120531/Makefile
--- usb-modeswitch-data-20120529
Le jeudi, 5 juillet 2012 03.27:36, vous avez écrit :
On Wed, Jul 4, 2012 at 18:46:54 -0600, Didier Raboud wrote:
b) Then, discussing this over the lunch with Philipp Kern, we agreed that
instead of downloading netboot.tar.gz's from mirrors (without checking
them) to create those debian
Le mercredi, 4 juillet 2012 18.46:54, Didier Raboud a écrit :
The approach I have been taking is to keep
producing arch:all packages (as was done in
src:debian-installer-netboot-images ), but one at a time: when amd64's d-i
is built, then the debian-installer-7.0
Le jeudi, 5 juillet 2012 09.13:57, Mehdi Dogguy a écrit :
tags 680107 + pending
thanks
On 03/07/12 18:34, Didier Raboud wrote:
So, what would you accept ? Just the patches for a 4.0.16-2 or the new
upstream release 4.0.17-1 ?
Given most of the noise is in the ChangeLog file (the rest
Le jeudi, 5 juillet 2012 09.04:48, Didier Raboud a écrit :
Le jeudi, 5 juillet 2012 03.27:36, vous avez écrit :
On Wed, Jul 4, 2012 at 18:46:54 -0600, Didier Raboud wrote:
b) Then, discussing this over the lunch with Philipp Kern, we agreed
that instead of downloading netboot.tar.gz's
Hi all,
(Dropping -cd, -kernel and -live)
As allocating time got easier with DebCamp, I have now successively tackled
two issues regarding the debian-netboot packages which should probably land in
for Wheezy (but could be delayed to a later beta):
a) src:debian-installer-netboot-images [0,1]
Le lundi, 28 mai 2012 22.08:36, Helmut Grohne a écrit :
My upload of sgml-base 1.26+nmu2 introduced #674933 which causes
packages using sgml to emit broken builds. The build does not fail. The
issue was immediately fixed in 1.26+nmu3.
So. After discussion over IRC, I selectively grepped the
Le lundi, 28 mai 2012 23.16:49, vous avez écrit :
bzgrep -q 'sgml-base_1.26+nmu2' $file || echo $line | sed -e 's|^\(.*\)
Sigh…^^ ; that's of course.
It's bad to do that kind of stuff when tired. *sigh*. New list with the
corrected script is attached.
Off
Hi Otavio,
dear Release Team,
Otavio Salvador wrote:
I'd like to propose following timeline for alpha1 of installer:
* until 03/14 get all translation-only changed udebs uploaded
* until 03/14 get pending fixes commited uploaded
* on 03/17 try to get the packages migrated to
Hi dear release team and FTP masters,
It's the time of the year when I want to get win32-loader migrated to
testing. So please let win32-loader 0.7.4.3 migrate to testing (it has
lived in unstable since June without much problems).
FTP-Masters: in sync with the release team, please copy the
Package: release.debian.org
Severity: normal
User: release.debian@packages.debian.org
Usertags: binnmu
Hi dear release team,
as mentionned previously on IRC, the new 0.73-1 jimtcl creates a
mini-transition. It's only build reverse dependency, win32-loader only needs a
binNMU. Please
the culprit
code out. (Closes: #635549)
-- Didier Raboud o...@debian.org Fri, 25 Nov 2011 14:53:50 +0100
Debdiff and dpatch are attached; please comment.
Cheers,
--
OdyX
diff -u hplip-3.10.6/debian/changelog hplip-3.10.6/debian/changelog
--- hplip-3.10.6/debian/changelog
Le mercredi, 28 septembre 2011 13.12:07, Adam D. Barratt a écrit :
Please go ahead, and sorry for the delays.
This got uploaded to ftp-master right now.
Thanks for your consideration and time!
Cheers,
--
OdyX
signature.asc
Description: This is a digitally signed message part.
Le vendredi, 5 août 2011 20.34:24, Philipp Kern a écrit :
On Fri, Aug 05, 2011 at 07:44:53PM +0200, Didier Raboud wrote:
Dear release team,
One week ago, Didier Raboud wrote:
So in order to fix this, my plan is to upload a win32-loader
0.6.21+squeeze0 to stable(-proposed-update
Dear release team,
One week ago, Didier Raboud wrote:
So in order to fix this, my plan is to upload a win32-loader
0.6.21+squeeze0 to stable(-proposed-update) that would include the
following changes:
- add a Built-Using field in the binary package (to track GPL-compliance)
- add
Package: release.debian.org
Severity: important
User: release.debian@packages.debian.org
Usertags: pu
Dear Stable Release Managers,
As I discussed today with Adam Barratt and Mark Hymers at DC11, I discovered
that the current version of win32-loader as shipped in stable might actually
) stable-proposed-updates; urgency=low
+
+ * Non-maintainer upload.
+ * Update debian/patches/60-getweb.in.patch:
+Fix CVE-2011-2684 Insecure Temporary File (CWE-277) in /usr/bin/getweb
+by creating a safe temporary directory with mktemp (Closes: #633870).
+
+ -- Didier Raboud o
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Hi dear Release Team,
(CC'ing -boot to get their input)
I would like to get win32-loader 0.7.0 migrated to testing. Its changelog
from Squeeze's version (0.6.21) is fairly long, but can be shortened to
finally downloads d-i in a trustworthy manner,
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Didier Raboud wrote:
I would like to get win32-loader 0.7.0 migrated to testing.
By the way, note that the migration has to be coordinated with FTP-Masters
for the standalone flavours that are mirrored to
/tools/win32-loader/${suite}/win32
Hi,
binutils-mingw-w64 is lagging on i386. A binNMU would solve this.
This package applies a set of patches to the binutils source, and hence
needs a binary rebuild at each new binutils upload. AFAIK there are no
automatic tools to handle this.
nmu binutils-mingw-w64_0.1 . i386 . -m Rebuild
Package: release.debian.org
Severity: normal
User: release.debian@packages.debian.org
Usertags: rm
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Hi dear Release Team,
(mi...@packages.debian.org cc'ed for information),
Please remove mindi 1.2.0.4-1 from testing. This package as an MIA
=low
[ Updated translations ]
- Slovenian (Vanja Cvelbar)
- Dzongkha (dawa pemo)
(Still not activated, no NSIS translation)
- Dutch (Eric Spreen)
- Greek (Emmanuel Galatoulas, Closes: #604454)
-- Didier Raboud did...@raboud.com Sun, 28 Nov 2010 16:52:09 +0100
TIA, OdyX
Package: release.debian.org
Severity: normal
User: release.debian@packages.debian.org
Usertags: rm
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Hi dear Release Team,
Please remove mokomaze 0.5.5+git8-1 from testing. As Enrico explained on
http://bugs.debian.org/600374#20 , there is no
Package: release.debian.org
Severity: normal
User: release.debian@packages.debian.org
Usertags: rm
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Hi dear Release Team,
Please remove witty 3.1.2-2 from testing. This package as one RC bug (#591209,
swf file not built from source), which has
Package: release.debian.org
Severity: normal
User: release.debian@packages.debian.org
Usertags: freeze-exception
Hi,
I would be inclined to add two patches to Squeeze's foomatic-filters.
Those two patches come from the upstream developer and will be included in
future versions of
) unstable; urgency=low
[ Translation updates ]
* Spanish (Francisco Javier Cuadrado, Closes: #600506)
* Vietnamese (Clytie Siddall, Closes: #601547)
* Run debconf-updatepo once, thanks to Clytie Siddall.
-- Didier Raboud did...@raboud.com Fri, 29 Oct 2010 17:13:07 +0200
TIA, cheers
Package: release.debian.org
Severity: normal
User: release.debian@packages.debian.org
Usertags: unblock
Please unblock package win32-loader version 0.6.20
It only includes 4 translation updates, here's its changelog:
win32-loader (0.6.20) unstable; urgency=low
.
[ Updated translations
and specify the device name in
the bootmgr (Closes: #595140)
-- Didier Raboud did...@raboud.com Thu, 02 Sep 2010 20:04:38 +0200
The following debdiff is attached:
debdiff win32-loader_0.6.1{8,9}.dsc | filterdiff -x '*.po' \
win32-loader_0.6.18-19.debdiff
Thanks in advance, cheers
[ Translation updates ]
* Portuguese (Rui Branco, Closes: #596160)
* German (Martin Eberhard Schauer, Closes: #596783)
-- Didier Raboud did...@raboud.com Thu, 16 Sep 2010 17:01:01 +0200
Thanks in advance,
OdyX
unblock foomatic-filters/4.0.5-3
- -- System Information:
Debian Release
* Add an epoch to foomatic-filters-ppds binary package to allow Lenny-
Squeeze upgrades (Closes: #595523)
-- Didier Raboud did...@raboud.com Thu, 16 Sep 2010 11:06:09 +0200
(Small) debdiff is attached.
Thanks in advance, cheers,
OdyX
unblock foomatic-db-engine/4.0.4-3
- -- System
Hi dear release team,
(Piotr CC'ed, as he is my usual sponsor for those)
I would like to upload new upstream versions of PySide, which implies a
transition of the following source packages (SONAME bumps as indicated) :
- apiextractor 0.7 (from 0.6)
- generatorrunner 0.6 (from 0.5;
martin f krafft wrote:
I found a bit of time to package up mdadm 2.6.7.2-1, which fixes two
RC bugs, but I cannot test it. I've built unofficial packages for
i386 and amd64 and put them at
http://debian.madduck.net/repo/pool/main/m/mdadm/
so please try them out if you can, otherwise I
63 matches
Mail list logo