Bug#631463: libpdf-api2-perl: Color data loaded from unicolor.txt is tainted since DSA-2265-1 fix applied

2011-06-23 Thread Mark van Walraven
Package: libpdf-api2-perl Version: 0.69-2 Severity: important /usr/share/perl5/PDF/API2/Util.pm loads the %colors hash with name;value data from /usr/share/perl5/PDF/API2/Resource/unicolor.txt, but fails to untaint the hash key. Before the DSA-2265-1 fix, the color names were laundered (probably

Bug#486507: libx11-6: Locking assertion failure with vmware-server-console

2009-01-21 Thread Mark van Walraven
>i had the same bug running vmware-server-console 1.0.8 (deb created by >vmware-package) on testing (x86) and i was able to solve this issue with >installing gtkhtml3.14 (3.18.3-1) with all of it dependencies. To confirm, I had the same problem today on testing/x86 and installing gtkhtml3.14 (3.18

Bug#124294: Bug#311772: Fwd: Password leaks are security holes

2008-08-28 Thread Mark van Walraven
On Thu, Aug 28, 2008 at 02:37:37PM -0700, Steve Langasek wrote: > On Thu, Aug 28, 2008 at 09:36:41AM +0200, Giacomo A. Catenazzi wrote: > > auth.log was invented for this reason, and separated to standard log: > > it should be readable only by root, > > Then there is a bug in another package if th

Bug#297576: incorrect time in egroupware-email

2005-08-21 Thread Mark van Walraven
time zone, to which mktime() is sensitive). These flaws are still in the CVS on Sourceforge and in my opinion should be reported upstream. Regards, Mark van Walraven Senior Systems Engineer Compel Computer Services. -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]