Bug#293418: CAN-2005-0198: Authentication bypass

2005-02-02 Thread Martin Schulze
Package: uw-imap Version: 2002edebian1-5 Severity: grave Tags: security sarge sid patch A vulnerability was discovered in the CRAM-MD5 authentication in UW-IMAP where, on the fourth failed authentication attempt, a user would be able to access the IMAP server regardless. This problem exists only

Bug#292938: speedy-cgi-perl: Running /usr/bin/speedy as non root result in Segmentation fault

2005-02-02 Thread sven.van.den.steene
Jose, While running the strace I noticed the non-root user could not create the file in /tmp. Indeed the file permissions on /tmp were 755 in stead of 1777. I changed the permissions and it works like a charm. Sven -Original Message- From: Jose Carlos Garcia Sogo [mailto:[EMAIL PROTECTED

Bug#271427: another Debian font bug

2005-02-02 Thread Steve Langasek
Danilo, On Thu, Feb 03, 2005 at 01:22:08AM +0100, Danilo Åegan wrote: > Yesterday at 1:46, Dafydd Harries wrote: > > http://muse.19inch.net/~daf/dump/271427/ > I see many problems with these fonts. > In particular, many Cyrillic glyphs are incorrectly scaled (perhaps > due to different em-s

Bug#293403: abort

2005-02-02 Thread Justin Pryzby
Right; potion abort every time for me on two different machines. I can't make it segfault. Sometimes it shows a couple packets immediately before aborting; sometimes it waits a second, shows no packets, and then aborts. Justin -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "u

Processed: tagging 293403

2005-02-02 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > # Automatically generated email from bts, devscripts version 2.8.10 > tags 293403 upstream Bug#293403: Segfaults or aborts with assertion. There were no tags set. Tags added: upstream > End of message, stopping processing here. Please contact me if yo

Bug#291784: zopeinterface_3.0.0-2(hppa/unstable): FTBFS: missing build-depends?

2005-02-02 Thread Steve Langasek
On Thu, Feb 03, 2005 at 01:58:31AM +0100, Steinar H. Gunderson wrote: > On Thu, Feb 03, 2005 at 02:50:17AM +0200, Tommi Virtanen wrote: > > Well fuck you very much too. You notify me on 2005-02-01 15:05, > > and your upload is processed at 15:06. Talk about poor manners. > I'm very sorry, but we a

Bug#293413: ftbfs [sparc] cannot stat `/build/buildd/rox-2.2.0/ROX-Filer/Linux-ix86/ROX-Filer'

2005-02-02 Thread Blars Blarson
Package: rox Version: 2.2.0-1 Severity: serious Justification: fails to build from source rox fails to build from source on sparc and other buildds, duplicated on sparc pbuilder: dh_installdirs cp -r /build/buildd/rox-2.2.0/Choices /build/buildd/rox-2.2.0/debian/rox-filer/usr/share/rox rm -rf /b

Processed: forwarded python report

2005-02-02 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > forwarded 293338 http://python.org/sf/1114776 Bug#293338: python2.3: raises an AttributeError during a deep copy Noted your statement that Bug has been forwarded to http://python.org/sf/1114776. > tags 293338 + upstream Bug#293338: python2.3: raises a

Bug#275307: marked as done (gstreamer-player: post-installation problem)

2005-02-02 Thread Debian Bug Tracking System
Your message dated Wed, 2 Feb 2005 23:20:03 -0500 with message-id <[EMAIL PROTECTED]> and subject line Bug#275307: gstreamer-player: post-installation problem has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the

Bug#287651: [GRASS5] [bug #2877] (grass) Insecure tempfile creation

2005-02-02 Thread Hamish
> I'll try to get a CVS package squared away tomorrow. I have just reverted that init.sh $TMPDIR change now, so it should be all set for a fresh checkout, AFAICT. > Best to do it as quickly as possible I think. Yes, I hadn't been keeping up with the Debian Weekly News & the sarge release appear

Bug#241112: distributed-net-pproxy

2005-02-02 Thread Jeroen van Wolffelaar
retitle 290890 RM: distributed-net-pproxy -- RoQA; Orphaned, non-free, uselessly-buggy, outdated tags 290890 confirmed thanks On Mon, Nov 29, 2004 at 04:23:00PM +0100, Jeroen van Wolffelaar wrote: > I'm reassigning this bug as RC on -pproxy to at least keep it out of > sarge. If Loic doesn't repl

Bug#293318: libquantlib0-dev: depends on libboost-test1.31.0 which is not available

2005-02-02 Thread Dirk Eddelbuettel
On 2 February 2005 at 14:59, Domenico Andreoli wrote: | Package: libquantlib0-dev | Version: 0.3.8-1 | Severity: serious | | this package depends on libboost-test1.31.0 (?), which is not available | in sid any more. please upgrade to Boost 1.32.0. Thanks for the heads-up, will do in the next few

Bug#293345: marked as done (mysql: File owned by mysql is run by root)

2005-02-02 Thread Debian Bug Tracking System
Your message dated Wed, 02 Feb 2005 20:32:29 -0500 with message-id <[EMAIL PROTECTED]> and subject line Bug#293345: fixed in mysql-dfsg-4.1 4.1.9-2 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is

Bug#292728: marked as done (gaim-dev: missing dependencies)

2005-02-02 Thread Debian Bug Tracking System
Your message dated Wed, 02 Feb 2005 20:32:13 -0500 with message-id <[EMAIL PROTECTED]> and subject line Bug#292728: fixed in gaim 1:1.1.2-3 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now you

Bug#287651: [GRASS5] [bug #2877] (grass) Insecure tempfile creation

2005-02-02 Thread Steve Halasz
On Thu, 2005-02-03 at 12:55 +1300, Hamish wrote: > Hi, for those playing along at home, time for a status update: > > > r.terraflow is the only module in GRASS 6.0 CVS which hasn't been fixed > for this bug yet (end user set-able but uses "/var/tmp" as default). > > You can make a GRASS package

Bug#248853: 3270: 5250 emulation code, all rights reserved

2005-02-02 Thread Jeroen van Wolffelaar
retitle 287083 RM: 3270 -- RoQA; undistributable code in non-free tags 287083 confirmed thanks On Fri, Dec 24, 2004 at 01:58:22AM -0500, Branden Robinson wrote: > Given that the package maintainer has taken no visible action on this in > over 4 months, I recommend removing this package from Debian

Processed: Re: Bug#248853: 3270: 5250 emulation code, all rights reserved

2005-02-02 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > retitle 287083 RM: 3270 -- RoQA; undistributable code in non-free Bug#287083: ftp.debian.org: please remove un-redistributable 3270 package from the archive Changed Bug title. > tags 287083 confirmed Bug#287083: RM: 3270 -- RoQA; undistributable code

Processed: Re: Bug#276212: RM: supercollider [alpha sparc amd64]

2005-02-02 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > retitle 276212 RM: supercollider [alpha sparc ia64] -- RoM; code has 64bit > issues Bug#276212: RM: [ia64 alpha sparc] please remove supercollider Changed Bug title. > tags 276212 moreinfo Bug#276212: RM: supercollider [alpha sparc ia64] -- RoM; code

Processed: Re: Bug#286700: ftp.debian.org: RM - Removal of gnuradio packages

2005-02-02 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > reassign 286700 gnuradio Bug#286700: Remove gnuradio version 0.9 from unstable and testing Bug reassigned from package `ftp.debian.org' to `gnuradio'. > retitle 286700 Gnuradio 0.9 unsuitable for release Bug#286700: Remove gnuradio version 0.9 from uns

Bug#293406: mdadm-1.8.1 is a development release

2005-02-02 Thread Chris Stromsoe
Package: mdadm Version: 1.8.1-1 Severity: grave mdadm 1.8.1 is not stable. The announcement (ANNOUNCE-1.8.1) states: This is a "development" release of mdadm. It should *not* be considered stable and should be used primarily for testing. The current "stable" version is 1.8.0. Please down

Bug#276212: RM: supercollider [alpha sparc amd64]

2005-02-02 Thread Jeroen van Wolffelaar
retitle 274240 RM: supercollider [alpha sparc ia64] -- RoM; code has 64bit issues tags 274240 moreinfo thanks On Tue, Oct 12, 2004 at 06:49:36PM +0200, [EMAIL PROTECTED] wrote: > supercollider has no support for 64-bit, see #274240. The selftest added in -3 also fails on m68k, for example, see [

Bug#291784: zopeinterface_3.0.0-2(hppa/unstable): FTBFS: missing build-depends?

2005-02-02 Thread Tommi Virtanen
Steinar H. Gunderson wrote: I'm NMUing zopeinterface for this bug now, simply by adding a "-" in front of the rule in debian/clean. I guess Tommi will want to add Python 2.4 support to the package at a later stage (as mentioned in the changelog), but this will fix the bug for now. Well fuck you ver

Bug#291784: zopeinterface_3.0.0-2(hppa/unstable): FTBFS: missing build-depends?

2005-02-02 Thread Steinar H. Gunderson
On Thu, Feb 03, 2005 at 02:50:17AM +0200, Tommi Virtanen wrote: > Well fuck you very much too. You notify me on 2005-02-01 15:05, > and your upload is processed at 15:06. Talk about poor manners. I'm very sorry, but we are currently in 0-day NMU, your bug contained absolutely zero response and was

Bug#293207: bogofilter: last two versions caused db errors

2005-02-02 Thread David Relson
On Wed, 02 Feb 2005 10:40:39 -0600 Karl Schmidt wrote: > Matthias Andree wrote: ...[snip]... > Installing bogofilter on a Debian testing box gives us: > > ii bogofilter 0.93.5-1 a fast Bayesian spam filter > > $ bogofilter -V > bogofilter version 0.93.5 > Database: Sleepycat So

Bug#271262: Processed: severity of 271262 is grave

2005-02-02 Thread Ben Burton
severity 271262 important thanks mate > Bug#271262: kteatime: fails to start > Severity set to `grave'. Why? Most of the problems in this report appear to be with non-KDE users. KTeaTime is a KDE system tray applet (as it says in the package description); what I will do shortly is do a new uplo

Bug#271262: kicker is an applet

2005-02-02 Thread Marco Krohn
Hi, klipper is an small applet that does not show up as a window. Instead it "lives" in the panel, as described in http://docs.kde.org/en/3.3/kdetoys/kteatime/how-to-use.html. (BTW note that it seems that nobody took care of sending the bug report to upstream -- that is bugs.kde.org.) In pr

Bug#271262: The same on ppc with fvwm2

2005-02-02 Thread Ben Burton
Hi, > I run fvwm2 on ppc and also no window is presented. I run kteatime > under strace, and whenever I changed windows with the mouse, a few, > very similar lines were repeated. If you are interested, I can present > those lines. Yes please -- that would be helpful. Also: can you please instal

Processed: Re: Processed: severity of 271262 is grave

2005-02-02 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > severity 271262 important Bug#271262: kteatime: fails to start Severity set to `important'. > thanks mate Stopping processing here. Please contact me if you need assistance. Debian bug tracking system administrator (administrator, Debian Bugs databas

Bug#293403: Segfaults or aborts with assertion.

2005-02-02 Thread Philipp Weis
Package: potion Version: 0.0.3 Severity: grave I wanted to try potion and it either segfaults or aborts with an assertion right away. | $ potion eth1 | potion: event_queue_remove: 0x804c3ec(fd -1) not on queue 1 | potion: event.c:614: event_del: | Assertion `!(ev->ev_flags & ~(0xf000 | 0x9f))' fa

Bug#271427: another Debian font bug

2005-02-02 Thread Danilo Åegan
Yesterday at 1:46, Dafydd Harries wrote: > http://muse.19inch.net/~daf/dump/271427/ I see many problems with these fonts. In particular, many Cyrillic glyphs are incorrectly scaled (perhaps due to different em-sizes? I don't know). Metrics are also wrong (and they seem to be wrong in the

Bug#287651: [GRASS5] [bug #2877] (grass) Insecure tempfile creation

2005-02-02 Thread Hamish
Hi, for those playing along at home, time for a status update: r.terraflow is the only module in GRASS 6.0 CVS which hasn't been fixed for this bug yet (end user set-able but uses "/var/tmp" as default). You can make a GRASS package without the r.terraflow module by doing: ./configure --without-

Bug#282434: marked as done (multiple unsafe uses of files in /tmp)

2005-02-02 Thread Debian Bug Tracking System
Your message dated Thu, 03 Feb 2005 00:34:08 +0100 with message-id <[EMAIL PROTECTED]> and subject line wmfrog: multiple unsafe uses of files in /tmp fixed by package removal has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. I

Bug#292836: marked as done (ttcn3parser: FTBFS: Missing Build-Depends on 'python-dev')

2005-02-02 Thread Debian Bug Tracking System
Your message dated Wed, 02 Feb 2005 17:32:26 -0500 with message-id <[EMAIL PROTECTED]> and subject line Bug#292836: fixed in ttcn3parser 20050130-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is

Bug#293207: bogofilter: last two versions caused db errors

2005-02-02 Thread Clint Adams
> ii bogofilter 0.93.5-1 a fast Bayesian spam filter > > $ bogofilter -V > bogofilter version 0.93.5 > Database: Sleepycat Software: Berkeley DB 4.3.27: (December 22, 2004 Are you using libc6-i686? > Only other thing I can suspect is that exim is threaded - could there be > a loc

Bug#292938: speedy-cgi-perl: Running /usr/bin/speedy as non root result in Segmentation fault

2005-02-02 Thread Jose Carlos Garcia Sogo
El miÃ, 02-02-2005 a las 08:45 +0100, [EMAIL PROTECTED] escribiÃ: > Jose, > > What kind of information do you need ? > > In the mean time I resolved the problem by adding a root sticky-bit on the > executable. > (Perhaps it's something the program can't read when run as a non-root user Plea

Bug#293388: sqlite: FTBFS: Missing build dependency

2005-02-02 Thread Kurt Roeckx
Package: sqlite Version: 2.8.15-4 Severity: serious Hi, Your package is failing to build with the following error: if test -n "" ; then \ if test -d ./m4 ; then m4="-I m4" ; fi ; \ if test -e ./aclocal.m4 ; then cd . && aclocal- $m4 ; fi ; \ elif test -n "1.8 " ; then \ if

Bug#291559: capi4hylafax: segfault on receive in 1:01.02.03-8 but not 1:01.02.03-7

2005-02-02 Thread Bodo Meissner
Package: capi4hylafax Version: 1:01.02.03-7 Followup-For: Bug #291559 Segfault on receiving a fax on my system, too. (Sending not checked.) Everything works after downgrading to 1:01.02.03-7. c2faxrecv always creates a fax00*.tif containing 8 bytes. # od -tx1 fax5.tif 000 49 49 2a 00 00

Bug#293303: marked as done (lsbdev: RoM; buggy, orphaned upstream)

2005-02-02 Thread Debian Bug Tracking System
Your message dated Wed, 02 Feb 2005 16:13:43 -0500 with message-id <[EMAIL PROTECTED]> and subject line Bug#293303: fixed has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility t

Bug#288274: marked as done (RM: astats -- Security issues, obsolete)

2005-02-02 Thread Debian Bug Tracking System
Your message dated Wed, 02 Feb 2005 16:14:15 -0500 with message-id <[EMAIL PROTECTED]> and subject line Bug#288274: fixed has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility t

Bug#288297: marked as done (RM: astats -- Security issues, obsolete)

2005-02-02 Thread Debian Bug Tracking System
Your message dated Wed, 02 Feb 2005 16:14:15 -0500 with message-id <[EMAIL PROTECTED]> and subject line Bug#288274: fixed has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility t

Bug#291252: marked as done (specimen: Uninstallable on sid - library dependency does not exist.)

2005-02-02 Thread Debian Bug Tracking System
Your message dated Wed, 2 Feb 2005 16:02:30 -0500 with message-id <[EMAIL PROTECTED]> and subject line specimen: Uninstallable on sid - library dependency does not exist. has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If th

Processed: and this is RC

2005-02-02 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > severity 284520 grave Bug#284520: libdbd-sqlite-perl must conflict with older popfile versions Severity set to `grave'. > thanks Stopping processing here. Please contact me if you need assistance. Debian bug tracking system administrator (administrat

Bug#293379: FWD: [SECURITY] [DSA 664-1] New cpio packages fix insecure file permissions

2005-02-02 Thread Joey Hess
Package: cpio Version: 2.5-1.1 Severity: grave Tags: security I'm filing this bug report so we can track the progress of getting cpio fixed in unstable. Since the DSA says "soon", you've probably already been contacted by the security team, so if you have an upload already built just close this bu

Bug#293381: vulnerable to another XSS hole (CAN-2005-0104)

2005-02-02 Thread Joey Hess
Package: squirrelmail Version: 2:1.4.4-1 Tags: security Severity: grave Seems that squirrelmail in unstable is still vulnerable to the cross-site scripting hole CAN-2005-0104. The mail below has some details and a patch against the woody version follows. The CAN-2005-0152 part of the patch is not

Bug#293378: hdparm not turning off write caching

2005-02-02 Thread john
Package: hdparm Version: 5.8-1 Severity: critical The command hdparm -W 0 /dev/hda does not disable write caching on my hard disk. There is no error message, but a subsequent hdparm -I /dev/hda reports that write caching is still enabled. This was working correctly in version 4.5-1.2 (stable)

Processed: still present in sarge

2005-02-02 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > reopen 291251 Bug#291251: CAN-2005-0064: Arbitrary code execution in kpdf Bug#291270: kpdf: vulnerable to CAN-2005-0064, buffer overflow in xpdf Bug reopened, originator not changed. > tags 291251 -sid Bug#291251: CAN-2005-0064: Arbitrary code executio

Processed: still present in sarge

2005-02-02 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > reopen 291209 Bug#291209: csmash window black ! Bug reopened, originator not changed. > tags 291209 +sarge Bug#291209: csmash window black ! Tags were: confirmed Tags added: sarge > thanks Stopping processing here. Please contact me if you need assis

Bug#293367: [MAILER-DAEMON@ms-smtp-04.nyroc.rr.com: Returned mail: see transcript for details]

2005-02-02 Thread Justin Pryzby
acct maintainer: I responded to the submitter of this RC bug on acct, and his address bounced, as shown below. It seems probable that there is no trouble with the acct package, so I recommend that this bug be closed. Justin - Forwarded message from Mail Delivery Subsystem <[EMAIL PROTECTED

Processed: still present in sarge

2005-02-02 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > reopen 291433 Bug#291433: FWD: [SECURITY] [DSA 650-1] New sword packages fix arbitrary command execution Bug reopened, originator not changed. > tags 291433 +sarge Bug#291433: FWD: [SECURITY] [DSA 650-1] New sword packages fix arbitrary command execu

Processed: still present in sarge

2005-02-02 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > tags 283134 -fixed Bug#283134: a2ps: Buggy shell quoting Tags were: fixed security woody Tags removed: fixed > tags 283134 -woody Bug#283134: a2ps: Buggy shell quoting Tags were: security woody Tags removed: woody > tags 283134 +sarge Bug#283134: a2ps

Bug#293367: cron.daily acct script execs /etc/init.d/acct -> permission denied

2005-02-02 Thread Justin Pryzby
On Wed, Feb 02, 2005 at 11:20:43AM -0800, Mark Garcia wrote: > Package: acct > Version: 6.3.5-39 > Severity: critical > Tags: patch > Justification: causes serious data loss Did you mean that it prevents the creation of new data, because the script doesn't run? ii acct 6.3.5-39 Th

Bug#292618: wvdial: doesn't initialize serial port correctly since last update

2005-02-02 Thread Jérôme Schell
Patrick Patterson a écrit : Can you double check what the permissions are for your /dev/ttyS0? Forgot to tell that my install is a fresh Sarge with default 2.6 kernel. Permissions of /dev/ttyS0 are allright: crw-rw 1 root dialout 4, 64 2002-03-14 22:51 /dev/ttyS0 kppp is working fine and pon/p

Bug#293370: cron.daily acct script execs /etc/init.d/acct -> permission denied

2005-02-02 Thread Mark A. Garcia
Package: acct Version: 6.3.5-39 Severity: critical Tags: patch Justification: causes serious data loss -- System Information: Debian Release: 3.1 APT prefers testing APT policy: (500, 'testing') Architecture: i386 (i686) Kernel: Linux 2.6.8-1-686-smp Locale: LANG=en_US, LC_CTYPE=en_US Versions of

Bug#293367: cron.daily acct script execs /etc/init.d/acct -> permission denied

2005-02-02 Thread Mark Garcia
Package: acct Version: 6.3.5-39 Severity: critical Tags: patch Justification: causes serious data loss -- System Information: Debian Release: 3.1 APT prefers testing APT policy: (500, 'testing') Architecture: i386 (i686) Kernel: Linux 2.6.8-1-686-smp Locale: LANG=en_US, LC_CTYPE=en_US Versi

Bug#293345: mysql: File owned by mysql is run by root

2005-02-02 Thread Christian Hammers
Hello Matt On 2005-02-02 Matt Brubeck wrote: > The following file is run as root by /etc/init.d/mysql (it is sourced by > /etc/mysql/debian-start): /usr/share/mysql/debian-start.inc.sh You're right, the directory is really owned by the mysql user. I check if this is neccessary as the server shoul

Bug#293338: python2.3: raises an AttributeError during a deep copy

2005-02-02 Thread Matthias Klose
Roman Joost writes: > Package: python2.3 > Version: 2.3.4-19 > Severity: grave > Justification: renders package unusable > > > I'm using the python2.3 to run my Zope 2.7.3 with CMF/Plone. After an update > in > debian unstable, it doesn't work anymore, because it raises an AttributeError > durin

Bug#291031: additional Info regarding #291031

2005-02-02 Thread Sebastian Feltel
LaMont Jones schrieb am 02.02.2005 18:24: From the documentation: # The alias_maps parameter specifies the list of alias databases used # by the local delivery agent. The default list is system dependent. # The alias_database parameter specifies the alias database(s) that # are built with "newalias

Bug#293209: marked as done (xine-ui: video visualization doesn't work)

2005-02-02 Thread Debian Bug Tracking System
Your message dated Wed, 2 Feb 2005 18:52:26 +0100 (CET) with message-id <[EMAIL PROTECTED]> and subject line Bug#293209: xine-ui: video visualization doesn't work (fwd) has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this

Processed: Fixed in NMU of strace 4.5.8-1.1

2005-02-02 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > tag 278449 + fixed Bug#278449: strace: ftbfs [sparc] initializer element is not constant errors Tags were: patch sid Tags added: fixed > quit Stopping processing here. Please contact me if you need assistance. Debian bug tracking system administrator

Bug#291031: marked as done (postfix: Upgrade from Postfix 2.1.4-5 to 2.1.5-4 fails #3)

2005-02-02 Thread Debian Bug Tracking System
Your message dated Wed, 2 Feb 2005 10:25:56 -0700 with message-id <[EMAIL PROTECTED]> and subject line Bug#291031: postfix: Upgrade from Postfix 2.1.4-5 to 2.1.5-4 fails #3 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If

Bug#293281: squirrelmail: Config file in /var

2005-02-02 Thread Jeroen van Wolffelaar
On Wed, Feb 02, 2005 at 07:49:48PM +0300, Cyril Bouthors wrote: > On 2 Feb 2005, Thijs Kinkhorst wrote: > > > > Thank you for your report, I think you are right. > > My advice would be to pay attention to the lintian and linda outputs, > I'm almost sure they both report this kind of suggestion. E

Bug#291031: additional Info regarding #291031

2005-02-02 Thread LaMont Jones
On Tue, Jan 18, 2005 at 05:12:31PM +0100, Sebastian Feltel wrote: > I was running into the same problems which Martin described while > upgrading postfix. I "solved" the problem by uncommenting the > newaliases-Section (line 438 - 450) in the postix postinst-Script. > For reference I've saved my

Bug#293287: marked as done (Atempt to restart X or reboot system with /usr/X11R6/lib/modules-dri-trunk active in XF86Config-4 hang system with blank screen.)

2005-02-02 Thread Debian Bug Tracking System
Your message dated Wed, 02 Feb 2005 11:16:20 -0600 with message-id <[EMAIL PROTECTED]> and subject line Bug#293287: Attempt to restart X or reboot system with /usr/X11R6/lib/modules-dri-trunk active in XF86Config-4 hang system with blank screen. has caused the attached Bug report to be marked as

Bug#293281: squirrelmail: Config file in /var

2005-02-02 Thread Cyril Bouthors
On 2 Feb 2005, Thijs Kinkhorst wrote: > > Thank you for your report, I think you are right. My advice would be to pay attention to the lintian and linda outputs, I'm almost sure they both report this kind of suggestion. Is squirrelmail lintian error/warning free? -- Cyril Bouthors pgpGebYgcV3H

Bug#293345: mysql: File owned by mysql is run by root

2005-02-02 Thread Matt Brubeck
Package: mysql-server Version: 4.0.23-3 Severity: critical Tags: security, sarge, sid A privilege escalation vulnerability was introduced in mysql-sever 4.0.23-1. The following file is run as root by /etc/init.d/mysql (it is sourced by /etc/mysql/debian-start): /usr/share/mysql/debian-start.in

Bug#293209: xine-ui: video visualization doesn't work

2005-02-02 Thread Renan
What I tried to say with "embarassed" is that the video area of xine is displaying a incompreensive content, like random colors moving in the screen in differents rotations. "Off" I used to say that the area of video display was impossible to use, that only displayed the random colors... I thinke

Bug#293207: bogofilter: last two versions caused db errors

2005-02-02 Thread Karl Schmidt
Matthias Andree wrote: I have: libdb4.3 4.3.27-1 Please run "bogofilter -V" to check the bogofilter and Berkeley DB versions, the first two lines are sufficient. Do this with either bogofilter version. Remember that if you're inadvertently going forth and back between Berkeley DB versions, y

Bug#293338: python2.3: raises an AttributeError during a deep copy

2005-02-02 Thread Roman Joost
Package: python2.3 Version: 2.3.4-19 Severity: grave Justification: renders package unusable I'm using the python2.3 to run my Zope 2.7.3 with CMF/Plone. After an update in debian unstable, it doesn't work anymore, because it raises an AttributeError during a deep copy. I haven't investigated the

Processed: your mail

2005-02-02 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > close 288785 Bug#288785: dummy bug to prevent transition into sarge 'close' is deprecated; see http://www.debian.org/Bugs/Developer#closing. Bug closed, send any further explanations to Martin Godisch <[EMAIL PROTECTED]> > End of message, stopping proc

Bug#293315: marked as done (liblockfile-simple-perl: Conflicts with perl-base)

2005-02-02 Thread Debian Bug Tracking System
Your message dated Wed, 02 Feb 2005 10:32:02 -0500 with message-id <[EMAIL PROTECTED]> and subject line Bug#293315: fixed in liblockfile-simple-perl 0.2.5-5 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the c

Bug#285435: marked as done (perl: silent write error can lead to data loss, with patch)

2005-02-02 Thread Debian Bug Tracking System
Your message dated Wed, 02 Feb 2005 10:17:16 -0500 with message-id <[EMAIL PROTECTED]> and subject line Bug#285435: fixed in perl 5.8.4-6 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your

Processed: change severity

2005-02-02 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > severity 292984 important Bug#292984: lvm2: lvremove causes inconsistent VG metadata Severity set to `important'. > -- Stopping processing here. Please contact me if you need assistance. Debian bug tracking system administrator (administrator, Debian

Bug#293315: liblockfile-simple-perl: Conflicts with perl-base

2005-02-02 Thread John Goerzen
On Wed, Feb 02, 2005 at 02:50:04PM +0100, Martin Pitt wrote: > This package conflicts wiht perl-base. It ships an (empty) directory > /usr/lib/perl/5.8, which violates the Perl Policy. /usr/lib/perl/5.8 > is already installed by perl-base as a symlink to /usr/lib/perl/5.8.4. > > A quickfix is at >

Bug#293317: marked as done (perl: Vulnerable to CAN-2005-015[56])

2005-02-02 Thread Debian Bug Tracking System
Your message dated Thu, 3 Feb 2005 01:24:10 +1100 with message-id <[EMAIL PROTECTED]> and subject line Bug#293317: perl: Vulnerable to CAN-2005-015[56] has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case i

Bug#293319: gconf2: gconf fail to store information into /apps/nautilus/preferences_version/

2005-02-02 Thread Patrick Zanon - Isolcell Italia S.p.A.
Package: gconf2 Version: 2.8.1-4 Severity: grave Justification: renders package unusable Dear Bug Team, just after startx command, the gconf fails givinng " Errore GConf: Nessun database disponibile per salvare la propria configurazione: Impossibile inserire un valore alla chiave '/apps/nautilus/

Bug#271262: The same on ppc with fvwm2

2005-02-02 Thread Helge Kreutzmann
Hello, I run fvwm2 on ppc and also no window is presented. I run kteatime under strace, and whenever I changed windows with the mouse, a few, very similar lines were repeated. If you are interested, I can present those lines. Greetings Helge -- Helge Kreutzmann, Dipl.-Phys.

Bug#104394: lowest prices on your medications Rosendo

2005-02-02 Thread Kris Pagan
Refill Notification Ref: WQK-85354620 Dear [EMAIL PROTECTED], Our automated system has identified that you most likely are ready to refill your recent online pharmaceutical order. To help you get your needed supply, we have sent this reminder notice. Please use the refill system http://chorus

Bug#293318: libquantlib0-dev: depends on libboost-test1.31.0 which is not available

2005-02-02 Thread Domenico Andreoli
Package: libquantlib0-dev Version: 0.3.8-1 Severity: serious this package depends on libboost-test1.31.0 (?), which is not available in sid any more. please upgrade to Boost 1.32.0. thanks domenico -[ Domenico Andreoli, aka cavok --[ http://people.debian.org/~cavok/gpgkey.asc ---[ 3A0F 2

Bug#293317: perl: Vulnerable to CAN-2005-015[56]

2005-02-02 Thread Martin Pitt
Package: perl Version: 5.8.4-5 Severity: critical Tags: security patch Justification: root security hole Hi Brendan! suid-perl scripts in conjunction with the PERLIO_DEBUG environment variable have two vulnerabilities (exploitable buffer overflow and arbitrary file overwrite). Please see the Ubu

Bug#293315: liblockfile-simple-perl: Conflicts with perl-base

2005-02-02 Thread Martin Pitt
Package: liblockfile-simple-perl Severity: critical Tags: patch Justification: breaks unrelated software Hi! This package conflicts wiht perl-base. It ships an (empty) directory /usr/lib/perl/5.8, which violates the Perl Policy. /usr/lib/perl/5.8 is already installed by perl-base as a symlink to

Bug#290685: New upstream available, fixes this

2005-02-02 Thread Marcelo E. Magallon
Package: vcdimager Followup-For: Bug #290685 Hi, a new upstream release 0.7.21 is available since early december. I've just tried and it builds against current libraries in sid. Marcelo -- System Information: Debian Release: 3.1 APT prefers unstable APT policy: (500, 'unstable'), (1, 'e

Bug#293287: Attempt to restart X or reboot system with /usr/X11R6/lib/modules-dri-trunk active in XF86Config-4 hang system with blank screen.

2005-02-02 Thread Martin Michlmayr
* David Baron <[EMAIL PROTECTED]> [2005-02-02 15:11]: > > > Package: dri-trunk > > > Version: 2005.01.26-2 > > > > I cannot find such a package in the Debian archive. Do you know where > > you obtained in? If not, what does > > dpkg -p dri-trunk | grep Maintainer > > say? > > There are actuall

Bug#293287: Attempt to restart X or reboot system with /usr/X11R6/lib/modules-dri-trunk active in XF86Config-4 hang system with blank screen.

2005-02-02 Thread David Baron
On Wednesday 02 February 2005 15:00, you wrote: > * David Baron <[EMAIL PROTECTED]> [2005-02-02 10:14]: > > Package: dri-trunk > > Version: 2005.01.26-2 > > I cannot find such a package in the Debian archive. Do you know where > you obtained in? If not, what does > dpkg -p dri-trunk | grep Main

Bug#293287: Atempt to restart X or reboot system with /usr/X11R6/lib/modules-dri-trunk active in XF86Config-4 hang system with blank screen.

2005-02-02 Thread David Baron
On Wednesday 02 February 2005 15:00, you wrote: > * David Baron <[EMAIL PROTECTED]> [2005-02-02 10:14]: > > Package: dri-trunk > > Version: 2005.01.26-2 > > I cannot find such a package in the Debian archive. Do you know where > you obtained in? If not, what does > dpkg -p dri-trunk | grep Main

Bug#292618: wvdial: doesn't initialize serial port correctly since last update

2005-02-02 Thread Patrick Patterson
Can you double check what the permissions are for your /dev/ttyS0? Also - are you using udev or any such thing? Does this work when you run wvdial as root? On Wednesday 02 February 2005 05:00, Jérôme Schell wrote: > I confirm this bug. > > Here is an interesting part of a strace of the executio

Bug#293287: Atempt to restart X or reboot system with /usr/X11R6/lib/modules-dri-trunk active in XF86Config-4 hang system with blank screen.

2005-02-02 Thread Martin Michlmayr
* David Baron <[EMAIL PROTECTED]> [2005-02-02 10:14]: > Package: dri-trunk > Version: 2005.01.26-2 I cannot find such a package in the Debian archive. Do you know where you obtained in? If not, what does dpkg -p dri-trunk | grep Maintainer say? -- Martin Michlmayr http://www.cyrius.com/ --

Bug#271427: another Debian font bug

2005-02-02 Thread Florian Weimer
* Dafydd Harries: > Ok, I now have a list of glyphs to copy based on your list and the ones > which I've identified as broken. I've uploaded a new .deb, plus the > latest versions of my scripts and their various outputs to the same > location as before: > > http://muse.19inch.net/~daf/dump/

Processed: reopening 293125, tagging 293125

2005-02-02 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > # Automatically generated email from bts, devscripts version 2.8.6 > reopen 293125 Bug#293125: postgresql: LOAD security issue Bug reopened, originator not changed. > tags 293125 - sarge sid Bug#293125: postgresql: LOAD security issue Tags were: sid sa

Bug#271427: another Debian font bug

2005-02-02 Thread Danilo Åegan
Today at 1:46, Dafydd Harries wrote: > Ok, I now have a list of glyphs to copy based on your list and the ones > which I've identified as broken. I've uploaded a new .deb, plus the > latest versions of my scripts and their various outputs to the same > location as before: > > http://muse.19i

Bug#288047: Woody affected (?), reopening to avoid loss

2005-02-02 Thread Helge Kreutzmann
reopen 288047 tags 288047 = woody,security thanks Since there was no further reply on this bug report, I assume that it is not clear weather woody is affected or not. To ensure that this stays marked, I reopen. Once this is clarified (i.e., a DSA prepared or woody found not vulnerable) this bug t

Processed: Woody affected (?), reopening to avoid loss

2005-02-02 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > reopen 288047 Bug#288047: mozilla-mailnews: NNTP Security Flaw in Mozilla 1.7.3 and below Bug reopened, originator not changed. > tags 288047 = woody,security Bug#288047: mozilla-mailnews: NNTP Security Flaw in Mozilla 1.7.3 and below Tags were: sarge

Processed: severity of 271262 is grave

2005-02-02 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > # Automatically generated email from bts, devscripts version 2.8.10 > severity 271262 grave Bug#271262: kteatime: fails to start Severity set to `grave'. > End of message, stopping processing here. Please contact me if you need assistance. Debian bug

Bug#293303: lsbdev: RoM; buggy, orphaned upstream

2005-02-02 Thread Matt Taggart
Package: ftp.debian.org Severity: critical lsbdev provides an LSB development environment via a chroot with bind mounts. This system is complicated and buggy(4 RC bugs, 4 non-RC), it affects other packages on the system (interferes with upgrades) and has caused data loss due to misunderstandings a

Bug#293281: squirrelmail: Config file in /var

2005-02-02 Thread Thijs Kinkhorst
On Wed, February 2, 2005 08:25, Cyril Bouthors said: > Squirrelmail contains a configuration file in /var; which is a serious > violation of the policy. Thank you for your report, I think you are right. I will take a look at what it takes to move this file to /etc, also upstream since it's a more

Bug#277518: marked as done (libgamin-dev: gamin.pc contains @MAJOR_VERSION@ as literal)

2005-02-02 Thread Debian Bug Tracking System
Your message dated Wed, 02 Feb 2005 05:47:07 -0500 with message-id <[EMAIL PROTECTED]> and subject line Bug#277518: fixed in gamin 0.0.21-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now you

Bug#292316: marked as done (spew: package overlap with snarf)

2005-02-02 Thread Debian Bug Tracking System
Your message dated Wed, 02 Feb 2005 05:47:37 -0500 with message-id <[EMAIL PROTECTED]> and subject line Bug#279679: fixed in spew 1.0.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your

Bug#279679: marked as done (snarf: overwrites file in spew package. both cannot be installed at a time.)

2005-02-02 Thread Debian Bug Tracking System
Your message dated Wed, 02 Feb 2005 05:47:37 -0500 with message-id <[EMAIL PROTECTED]> and subject line Bug#279679: fixed in spew 1.0.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your

Bug#293125: Is woody impacted?

2005-02-02 Thread Helge Kreutzmann
Hello, the tags indicate that woodys postgresql is impacted as well. The latest entry in the changelog is, however, from 26 Oct 2004, and reading the bug report I did not find a indication to the contrary. Please reopen if a DSA is forthcoming. Thanks. Greetings Helge -- Helge Kreutzm

Bug#267799: fails to auto-load kernel module

2005-02-02 Thread Janeene Webb
I've found some more info on this issue from http://www.reactivated.net/udevrules.php#nvidia, and while I'm not entirely sure how to implement it, it does appear to solve the problem of the nvidia module autoloading for kernel2.6 and udev, and should be extendible to devfs as well. Basically, what

Bug#292618: wvdial: doesn't initialize serial port correctly since last update

2005-02-02 Thread Jérôme Schell
I confirm this bug. Here is an interesting part of a strace of the execution of wvdial: ... open("/dev/ttyS0", O_RDWR|O_NONBLOCK|O_NOCTTY|O_LARGEFILE) = 4 fcntl64(4, F_SETFD, FD_CLOEXEC) = 0 ioctl(4, SNDCTL_TMR_TIMEBASE or TCGETS, {B38400 -opost -isig -icanon -echo ...}) = 0 ioctl(4, SNDCT

  1   2   >