[Mageia-dev] Freeze push: redmine 1.3.2

2012-04-08 Thread Funda Wang
Hello, Could somebody pushing redmine 1.3.2 into cauldron? Redmine before 1.3.2 does not properly restrict the use of a hash to provide values for a model's attributes, which allows remote attackers to set attributes in the (1) Comment, (2) Document, (3) IssueCategory, (4) MembersController, (5)

[Mageia-dev] Freeze push request: rekonq

2012-04-08 Thread John Balcaen
Hello, Could you please push rekonq 0.9.1 ? This version is a bug fix release for the 0.9.x branch From the git changelog there is 3 bugs fixed such as ensuring that urltabs are deleted when related webapp is ( kde #295301 ) There's 2 others fix related to tabs. Regards, -- Balcaen John

[Mageia-dev] Freeze push request : akonadi

2012-04-08 Thread John Balcaen
Hello, Could you please push akonadi 1.7.2 ? This version is a bug fix release for the 1.7.x branch currently contains two fixes : - the logic behind the akonadi item fetch when it's missing. - fix an issue with nepomuk by requesting manually the akonadi item id property Regards, --

Re: [Mageia-dev] Freeze push: compiz 0.9.7.6

2012-04-08 Thread Julien
Le Sat, 7 Apr 2012 11:37:55 +0200, Julien julien.mora...@laposte.net a écrit : Le Fri, 6 Apr 2012 21:58:09 +0200, Julien julien.mora...@laposte.net a écrit : Hi, please push compiz 0.9.7.6 which contains several bugfix and performance optimizations Thanks Regards Julien

[Mageia-dev] git 1.7.9 submodule support broken

2012-04-08 Thread Mika Laitio
Hi I encountared major bug in 1.7.9's submodule handling that caused at least for me a problems with projects having submodules. I asked from git irc list and got reply that it was a known annoying bug that was fixed in newer git versions. I rebuilded and tested the 1.7.10 and the submodules

Re: [Mageia-dev] git 1.7.9 submodule support broken

2012-04-08 Thread Thomas Backlund
Mika Laitio skrev 8.4.2012 15:38: Hi I encountared major bug in 1.7.9's submodule handling that caused at least for me a problems with projects having submodules. I asked from git irc list and got reply that it was a known annoying bug that was fixed in newer git versions. I rebuilded and

Re: [Mageia-dev] A note on autologin and startx

2012-04-08 Thread Colin Guthrie
'Twas brillig, and Wolfgang Bornath at 07/04/12 08:50 did gyre and gimble: 2012/4/7 Jose Jorge lists.jjo...@free.fr: Le 06/04/2012 22:53, Colin Guthrie a écrit : Couldn't agree more. I'd say we can happily provide a tool to configure autologin, but if that is configured, it basically just

Re: [Mageia-dev] Release_blocker bugs

2012-04-08 Thread David Walser
Anne nicolas wrote: Security updates = To be closed after RC 5046 bugsq...@mageia.org [Tracker] Security updates for Mageia 2 I could really use some help with Bug 5063 (libzip security update). It sounds serious, but I can't reproduce the make check error on the build

Re: [Mageia-dev] painful discussion n°1: debloating

2012-04-08 Thread David Walser
Wolfgang Bornath wrote: 2012/4/7 Sander Lepik sander.le...@eesti.ee: 07.04.2012 19:18, Thomas Spuhler kirjutas: On Saturday, April 07, 2012 08:38:39 AM Guillaume Rousse wrote: To summarize it: - has anyone any opposition to remove the totem-mozilla - KDE relationship in the installer ?

Re: [Mageia-dev] [changelog] [RPM] 1 core/updates_testing kdiff3-0.9.96-1.mga1

2012-04-08 Thread Sander Lepik
08.04.2012 18:41, shlomif kirjutas: Name: kdiff3 Relocations: (not relocatable) Version : 0.9.96Vendor: Mageia.Org Release : 1.mga1Build Date: Sun Apr 8 17:37:51 2012 [...] shlomifshlomif 0.9.96-1.mga1:

[Mageia-dev] Freeze Push: bluez

2012-04-08 Thread Colin Guthrie
Hi, Please push bluez 4.99. This is the same version being pushed by fedora into F17 and fixes numerous bugs including several audio related ones. I've also changed to packaging a little to ensure that the hid2hci config is optional. This caused me more than a little head scratching after

Re: [Mageia-dev] A note on autologin and startx

2012-04-08 Thread Wolfgang Bornath
2012/4/8 Colin Guthrie mag...@colin.guthr.ie: 'Twas brillig, and Wolfgang Bornath at 07/04/12 08:50 did gyre and gimble: 2012/4/7 Jose Jorge lists.jjo...@free.fr: Le 06/04/2012 22:53, Colin Guthrie a écrit : Couldn't agree more. I'd say we can happily provide a tool to configure autologin,

Re: [Mageia-dev] A note on autologin and startx

2012-04-08 Thread Zézinho
Em 08-04-2012 15:24, Colin Guthrie escreveu: If you use the autologin package, if you logout, you log back in again straight away (it's a hook inside prefdm which starts the display manager and it simply runs autologin if it's configured!) In MGA1, that was not the case : after an autologin

Re: [Mageia-dev] A note on autologin and startx

2012-04-08 Thread Colin Guthrie
'Twas brillig, and Wolfgang Bornath at 08/04/12 17:39 did gyre and gimble: Yes, I was not aware of this being a mga3 plan. Well, implied by the second mail on this thread. While it would be nice to do this for mga2, I doubt I'll personally have any time for it, so I can't really see it happening

Re: [Mageia-dev] A note on autologin and startx

2012-04-08 Thread Colin Guthrie
'Twas brillig, and Zézinho at 08/04/12 17:41 did gyre and gimble: Em 08-04-2012 15:24, Colin Guthrie escreveu: If you use the autologin package, if you logout, you log back in again straight away (it's a hook inside prefdm which starts the display manager and it simply runs autologin if it's

Re: [Mageia-dev] Release_blocker bugs

2012-04-08 Thread Pascal Terjan
On Sun, Apr 8, 2012 at 15:57, David Walser luigiwal...@yahoo.com wrote: Anne nicolas wrote: Security updates = To be closed after RC 5046 bugsq...@mageia.org [Tracker] Security updates for Mageia 2 I could really use some help with Bug 5063 (libzip security update).

Re: [Mageia-dev] painful discussion n°1: debloating

2012-04-08 Thread Anne Nicolas
Le 08/04/2012 17:06, David Walser a écrit : Wolfgang Bornath wrote: 2012/4/7 Sander Lepik sander.le...@eesti.ee: 07.04.2012 19:18, Thomas Spuhler kirjutas: On Saturday, April 07, 2012 08:38:39 AM Guillaume Rousse wrote: To summarize it: - has anyone any opposition to remove the

Re: [Mageia-dev] Freeze push request : akonadi

2012-04-08 Thread Anne Nicolas
Le 08/04/2012 13:11, John Balcaen a écrit : Hello, Could you please push akonadi 1.7.2 ? This version is a bug fix release for the 1.7.x branch currently contains two fixes : - the logic behind the akonadi item fetch when it's missing. - fix an issue with nepomuk by requesting

Re: [Mageia-dev] Freeze push request: rekonq

2012-04-08 Thread Anne Nicolas
Le 08/04/2012 12:45, John Balcaen a écrit : Hello, Could you please push rekonq 0.9.1 ? This version is a bug fix release for the 0.9.x branch From the git changelog there is 3 bugs fixed such as ensuring that urltabs are deleted when related webapp is ( kde #295301 ) There's 2 others

Re: [Mageia-dev] painful discussion n°1: debloating

2012-04-08 Thread Pierre Jarillon
Le dimanche 8 avril 2012 21:02:48, Anne Nicolas a écrit : totem was proposed in Mandriva as there was no stable enough video player in KDE. Then we had Codeina managing codecs using only gstreamer. That's all. :) Totem don't work out the the box. I have a set of videos with different formats.

Re: [Mageia-dev] Release_blocker bugs

2012-04-08 Thread David Walser
Pascal Terjan wrote: On Sun, Apr 8, 2012 at 15:57, David Walser luigiwal...@yahoo.com wrote: Anne nicolas wrote: Security updates = To be closed after RC 5046 bugsq...@mageia.org [Tracker] Security updates for Mageia 2 I could really use some help with Bug 5063

Re: [Mageia-dev] painful discussion n°1: debloating

2012-04-08 Thread David Walser
Pierre Jarillon wrote: Le dimanche 8 avril 2012 21:02:48, Anne Nicolas a écrit : totem was proposed in Mandriva as there was no stable enough video player in KDE. Then we had Codeina managing codecs using only gstreamer. That's all. :) Totem don't work out the the box. I have a set of

Re: [Mageia-dev] painful discussion n°1: debloating

2012-04-08 Thread Olav Vitters
On Mon, Apr 09, 2012 at 12:12:57AM +0200, Pierre Jarillon wrote: Totem don't work out the the box. I have a set of videos with different formats. With totem, few of them work without a lot a install (sometimes conflicting). Dragon is not better out the box. Only VLC works with all my

Re: [Mageia-dev] painful discussion n°1: debloating

2012-04-08 Thread John Balcaen
2012/4/8 Pierre Jarillon jaril...@abul.org: Le dimanche 8 avril 2012 21:02:48, Anne Nicolas a écrit : totem was proposed in Mandriva as there was no stable enough video player in KDE. Then we had Codeina managing codecs using only gstreamer. That's all. :) Totem don't work out the the box. I

[Mageia-dev] Freeze push: taglib

2012-04-08 Thread David Walser
taglib 1.7.1 is a bugfix release that fixes three CVEs: CVE-2012-1107 - https://bugzilla.redhat.com/show_bug.cgi?id=800553 CVE-2012-1108 - https://bugzilla.redhat.com/show_bug.cgi?id=800559 CVE-2012-1584 - https://bugzilla.redhat.com/show_bug.cgi?id=810009 Confirmed that it builds, installs, and

Re: [Mageia-dev] Not enough time for maintainership

2012-04-08 Thread Thomas Spuhler
My time for serious maintainership is more and more limited to the weekends and I have far too many packages. We now have a lot more packagers then a year ago. I would appreciate if someone could take over the php-packages. It will take some time to change the maintainership to nobody. --

Re: [Mageia-dev] icewm-gnome: is it still supported?

2012-04-08 Thread You-Cheng Hsieh
2012/4/5 Olav Vitters o...@vitters.nl: On Thu, Apr 05, 2012 at 10:47:33AM +0800, You-Cheng Hsieh wrote: Is icewm-gnome still usable in cauldron? I have to install many gnome2 libraries in order to build it, but I cannot get it working. On the other hand, gnome2 libraries are not maintained by

Re: [Mageia-dev] Freeze push: redmine 1.3.2

2012-04-08 Thread Funda Wang
ping? 2012/4/8 Funda Wang fundaw...@gmail.com: Hello, Could somebody pushing redmine 1.3.2 into cauldron? Redmine before 1.3.2 does not properly restrict the use of a hash to provide values for a model's attributes, which allows remote attackers to set attributes in the (1) Comment, (2)

[Mageia-dev] freeze push: ffdiaporama 1.2.1

2012-04-08 Thread Dimitrios Glentadakis
The actual stable version of ffdiaporama 1.2 of 3d March was very quickly replaced with the stable version 1.2.1 the 5 March to fix some bugs forgotten from the 1.2 version. - The announcement: http://ffdiaporama.tuxfamily.org/?cat=5 - The changes: