Bug#385115: A little more poking around.

2007-02-18 Thread Brandon Barnes
I've been doing a little more poking around. I noticed that the file, "boom.wav" is used in abuse, as "zap3.wav". They have the same md5sum. I thought, "Oh no! Not abuse too!" But, it turns out, that the maintainer for abuse got permission from the sound composer, Bobby Price (bpmusic.com), for use

Bug#385115: I wrote to Mark Allan, the author of chromium.

2007-02-18 Thread Brandon Barnes
I wrote to Mark Allan, the author of chromium. He says, that to the best of his knowledge, all of the sound files are either public domain, or under a "royalty free" license. He says the music loops are definitely covered under a royalty-free license. The royalty-free license is restrictive, though

Bug#411192: marked as done (CVE-2007-0981: serious cookie-stealing vulnerability)

2007-02-18 Thread Debian Bug Tracking System
Your message dated Mon, 19 Feb 2007 03:47:18 + with message-id <[EMAIL PROTECTED]> and subject line Bug#411192: fixed in iceweasel 2.0.0.1+dfsg-3 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it

Bug#410610: marked as done (ttf-mph-2b-damase: contains glyphs from a non-free font)

2007-02-18 Thread Debian Bug Tracking System
Your message dated Mon, 19 Feb 2007 03:32:22 + with message-id <[EMAIL PROTECTED]> and subject line Bug#410610: fixed in ttf-mph-2b-damase 001.000.dfsg.2-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not th

Bug#411049: marked as done (python-numpy-dev: file conflict with python-numpy)

2007-02-18 Thread Debian Bug Tracking System
Your message dated Mon, 19 Feb 2007 02:17:02 + with message-id <[EMAIL PROTECTED]> and subject line Bug#410944: fixed in python-numpy 1:1.0.1-3 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is

Bug#410944: marked as done (python-numpy: trying to overwrite `/usr/lib/python2.4/site-packages/numpy/f2py/src/fortranobject.h')

2007-02-18 Thread Debian Bug Tracking System
Your message dated Mon, 19 Feb 2007 02:17:02 + with message-id <[EMAIL PROTECTED]> and subject line Bug#410944: fixed in python-numpy 1:1.0.1-3 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is

Bug#411005: marked as done (File clash in python-numpy and python-numpy-dev)

2007-02-18 Thread Debian Bug Tracking System
Your message dated Mon, 19 Feb 2007 02:17:02 + with message-id <[EMAIL PROTECTED]> and subject line Bug#410944: fixed in python-numpy 1:1.0.1-3 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is

Bug#411438: vlc: FTBFS (powerpc): x264's ppc/quant.h does not #include altivec.h

2007-02-18 Thread Paul TBBle Hampson
Package: vlc Version: 0.8.6.a.debian-1 Severity: serious Tags: patch Justification: no longer builds from source Changeset 621 [1] in the upstream x264 subversion tree appears to fix this, dated three weeks after 0.8.6a was released. [1] http://trac.videolan.org/x264/changeset/621 -- System Info

Bug#393870: marked as done (atlas3-base: Crashes with "Illegal instruction" on x86_64)

2007-02-18 Thread Debian Bug Tracking System
Your message dated Mon, 19 Feb 2007 01:32:22 + with message-id <[EMAIL PROTECTED]> and subject line Bug#393870: fixed in atlas3 3.6.0-20.6 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now

Bug#409691: marked as done (FTBFS on amd64: admin/run_forge: line 58: 1020 Illegal instruction)

2007-02-18 Thread Debian Bug Tracking System
Your message dated Mon, 19 Feb 2007 01:32:22 + with message-id <[EMAIL PROTECTED]> and subject line Bug#393870: fixed in atlas3 3.6.0-20.6 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now

Processed: found 408730 in 0.2002083100+1.0Beta6-2.2, closing 408730

2007-02-18 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > # Automatically generated email from bts, devscripts version 2.9.27 > found 408730 0.2002083100+1.0Beta6-2.2 Bug#408730: crashes on startup Bug marked as found in version 0.2002083100+1.0Beta6-2.2. > close 408730 0.2002083100+1.0Beta6-2.3 Bug#408730: c

Bug#411433: python-mutagen: allows writing invalid APEv2 tags

2007-02-18 Thread Tristan Seligmann
* Steve Langasek <[EMAIL PROTECTED]> [2007-02-18 16:52:28 -0800]: > On Mon, Feb 19, 2007 at 02:09:26AM +0200, Tristan Seligmann wrote: > > Package: python-mutagen > > Version: 1.8-1 > > Severity: grave > > Justification: causes non-serious data loss > > > APEv2 tag keys are meant to be restricted

Bug#411433: python-mutagen: allows writing invalid APEv2 tags

2007-02-18 Thread Steve Langasek
On Mon, Feb 19, 2007 at 02:09:26AM +0200, Tristan Seligmann wrote: > Package: python-mutagen > Version: 1.8-1 > Severity: grave > Justification: causes non-serious data loss > APEv2 tag keys are meant to be restricted to ASCII, and tags with keys > that differ only in case are forbidden. Also, the

Bug#393870: atlas3-base: Crashes with "Illegal instruction" on x86_64

2007-02-18 Thread Steve Langasek
Hi Camm, Since Aaron reports that Steinar's patch solves the problem for him, I've prepared an NMU based on that patch. The final NMU diff is attached, and the package will be uploaded to incoming shortly. Thanks, -- Steve Langasek Give me a lever long enough and a Free OS Deb

Processed: ttf-mph-2b-damase: 410610: [Fwd: MPH 2B Damase]

2007-02-18 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > reopen 410610 Bug#410610: ttf-mph-2b-damase: contains glyphs from a non-free font 'reopen' is deprecated when a bug has been closed with a version; use 'found' or 'submitter' as appropriate instead. Bug reopened, originator not changed. > thanks Stoppi

Bug#393870: atlas3-base: Crashes with "Illegal instruction" on x86_64

2007-02-18 Thread Sebastian Ferrara
"Steinar H. Gunderson" <[EMAIL PROTECTED]> writes: > Please try the attached patch; I don't have an EM64T, but it looks > like everything but the hand-created SSE2 assembly should be OK. > (IOW, the ATL_3DNow_* flags aren't set for amd64 in -base.) I don't > really have an idea of what would be th

Bug#411433: python-mutagen: allows writing invalid APEv2 tags

2007-02-18 Thread Tristan Seligmann
Package: python-mutagen Version: 1.8-1 Severity: grave Justification: causes non-serious data loss APEv2 tag keys are meant to be restricted to ASCII, and tags with keys that differ only in case are forbidden. Also, the actual meaning of the flag mutagen calls HAS_FOOTER is the inverse of what the

Bug#376812: -fno-strict-aliasing didn't work

2007-02-18 Thread Wouter Verhelst
Hi, I rebuilt the package using -fno-strict-aliasing and -g (which took quite some time), and ran it inside an etch chroot on a sarge box; the kernel was a stock sarge kernel with the sarge 3dfx module. That didn't fix the problem. An strace of /usr/lib/glide2/test00 is available at http://grep.b

Bug#410561: update on latest batch of CVE's for php

2007-02-18 Thread sean finney
hey folks, just fyi, i put a nice big chunk of time into analyzing the latest batch of CVE's (2007-0905 - 0911), but there is still significant work to be done before we're ready for an update. here's a quick summary, followed by a CVE-by-CVE status. * executive summary most of the vulnerabili

Processed: Missing portion of fix

2007-02-18 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > package python-mutagen Ignoring bugs not assigned to: python-mutagen > found 403542 1.8-1.1 Bug#403542: python-mutagen: Does not write syncsafe datalen flags Bug marked as found in version 1.8-1.1. > thanks Stopping processing here. Please contact me

Processed: No regression

2007-02-18 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > package ctrlproxy Ignoring bugs not assigned to: ctrlproxy > found 333835 2.6.1-1 Bug#333835: ctrlproxy: Eats up memory making the system unusable Bug marked as found in version 2.6.1-1. > thanks Stopping processing here. Please contact me if you nee

Bug#403542: Missing portion of fix

2007-02-18 Thread Tristan Seligmann
package mutagen found 403542 1.8-1.1 thanks To properly fix this issue, upstream r3965 should also be included. -- mithrandi, i Ainil en-Balandor, a faer Ambar signature.asc Description: Digital signature

Processed: tagging 403136

2007-02-18 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > # Automatically generated email from bts, devscripts version 2.9.27 > tags 403136 unreproducible moreinfo help Bug#403136: scsi subsystem udev events are broken, leaves system with lvm/raid unbootable and breaks d-i. Tags were: d-i Tags added: unreprod

Bug#401916:

2007-02-18 Thread Michael Prokop
* David Härdeman <[EMAIL PROTECTED]> [20070214 15:15]: > Images is fine, thanks. Unfortunately the ps ax output is the same each > time so it is no surprise that my approach doesn't work. I do however have > another theory, it seems that it can take a sec or two between the loading > of usb-storag

Processed: severity of 411411 is important

2007-02-18 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > # Automatically generated email from bts, devscripts version 2.9.27 > severity 411411 important Bug#411411: flashplugin-nonfree: Temporary unpack directory shoudn't be in /usr/lib Severity set to `important' from `grave' > End of message, stopping pro

Bug#411411: flashplugin-nonfree: Temporary unpack directory shoudn't be in /usr/lib

2007-02-18 Thread Mário Meyer
Package: flashplugin-nonfree Severity: grave Tags: patch This package creates a directory (flashplugin-nonfree-unpackdir) for downloading, storing and unpacking the tarball from upstream during postinst. This directory shoudn't be located in /usr/lib as it isn't the final destination of the pl

Processed: patch available for this one as well....

2007-02-18 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > tags 393870 + patch Bug#393870: atlas3-base: Crashes with "Illegal instruction" on x86_64 There were no tags set. Bug#409691: FTBFS on amd64: admin/run_forge: line 58: 1020 Illegal instruction Tags added: patch > thanks Stopping processing here. Plea

Processed: patch apparently available already.

2007-02-18 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > tags 411063 + patch Bug#411063: FTBFS: 'PAGE_SIZE' was not declared in this scope There were no tags set. Tags added: patch > thanks Stopping processing here. Please contact me if you need assistance. Debian bug tracking system administrator (adminis

Bug#406465: more details needed please (zone data)

2007-02-18 Thread Jeroen van Wolffelaar
On Fri, Feb 16, 2007 at 09:10:31PM +0100, bert hubert wrote: > Jeroen (and Bas I assume), > > Can you provide me with a copy of your problematic a-eskwadraat zone? See attachment. --Jeroen -- Jeroen van Wolffelaar [EMAIL PROTECTED] (also for Jabber & MSN; ICQ: 33944357) http://Jeroen.A-Eskwadr

Bug#406122: marked as done (tuxguitar: Tuxguitar refuse to start with a normal user)

2007-02-18 Thread Debian Bug Tracking System
Your message dated Sun, 18 Feb 2007 19:02:02 + with message-id <[EMAIL PROTECTED]> and subject line Bug#406122: fixed in tuxguitar 0.9.1-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now

Processed: severity of 411360 is serious

2007-02-18 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > severity 411360 serious Bug#411360: xine-ui: Quits due to missing depends on libgnomevfs2-0 and libsmbclient. Severity set to `serious' from `grave' > End of message, stopping processing here. Please contact me if you need assistance. Debian bug tra

Bug#403980: Not fixed yet

2007-02-18 Thread Aurelien Jarno
Frank Lichtenheld a écrit : > reopen 403980 > thanks > > Still not fixed: I confirm the problem, a mistake as been introduced while fixing the previous problem. Sorry about that. This time I will build and upload the experimental glibc on sparc to make sure the problem is fixed. -- .''`. Au

Bug#411382: marked as done (Breaks builds of unrelated code)

2007-02-18 Thread Debian Bug Tracking System
Your message dated Sun, 18 Feb 2007 17:17:02 + with message-id <[EMAIL PROTECTED]> and subject line Bug#411382: fixed in pilot-link 0.12.2-4 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is no

Processed: Not fixed yet

2007-02-18 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > reopen 403980 Bug#403980: gcc-snapshot_20061217-1(sparc/experimental): FTBFS due to missing stubs-64.h 'reopen' is deprecated when a bug has been closed with a version; use 'found' or 'submitter' as appropriate instead. Bug reopened, originator not cha

Bug#403980: Not fixed yet

2007-02-18 Thread Frank Lichtenheld
reopen 403980 thanks Still not fixed: Running debhelper for libc6-dev-sparc64 dh_testroot dh_installdirs -plibc6-dev-sparc64 dh_install -plibc6-dev-sparc64 dh_installman -plibc6-dev-sparc64 dh_installinfo -plibc6-dev-sparc64 dh_installdebconf -plibc6-dev-sparc64 dh_installchangelogs -plibc6-dev-s

Processed: closing 410850

2007-02-18 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > # Automatically generated email from bts, devscripts version 2.9.26 > close 410850 1.4.4-4 Bug#410850: CVE-2006-6980: magnatune shell escapes 'close' is deprecated; see http://www.debian.org/Bugs/Developer#closing. Bug marked as fixed in version 1.4.4-4

Bug#410946: marked as done (debsecan: Overwrites local configuration)

2007-02-18 Thread Debian Bug Tracking System
Your message dated Sun, 18 Feb 2007 16:17:04 + with message-id <[EMAIL PROTECTED]> and subject line Bug#410946: fixed in debsecan 0.4.4 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now you

Bug#411382: Breaks builds of unrelated code

2007-02-18 Thread J.H.M. Dassen (Ray)
Package: libpisock-dev Version: 0.12.2-3 Severity: grave Tags: patch The /usr/share/aclocal/pilot-link.m4 shipped in libpisock-dev defines IT_PROG_INTLTOOL and defines it incorrectly. This breaks building unrelated code which relies on a correct definition of IT_PROG_INTLTOOL (the one from the int

Bug#410248: tk-gnutella-0.96.1svn12109-1: Will not start as user

2007-02-18 Thread Dererk
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi Paul! As the mail you sent says: - - Sorry, this program is too ancient to run without an explicit user action: If it's not possible to upgrade you may edit the file /home/debian64/.gtk-gnutella/config_gnet and set the variable "ancient_

Processed: tagging 398199, tagging 410946

2007-02-18 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > # Automatically generated email from bts, devscripts version 2.9.27 > tags 398199 pending Bug#398199: debsecan: should be able to configure who is notifed Tags were: confirmed Tags added: pending > tags 410946 pending Bug#410946: debsecan: Overwrites l

Bug#411301: gaim DNS children die when gaim-otr is installed

2007-02-18 Thread Ian Goldberg
On Sun, Feb 18, 2007 at 10:49:45AM +0100, Thibaut VARENE wrote: > >This can't be a widespread problem, though, since we'd definitely have > >heard about it by now. Is anyone else running Debian amd64 (x86_64) > >that can test this? > > Unfortunately, if gaim doesn't start at all because of the pl

Bug#411301: gaim DNS children die when gaim-otr is installed

2007-02-18 Thread Thibaut VARENE
On 2/18/07, Ian Goldberg <[EMAIL PROTECTED]> wrote: On Sun, Feb 18, 2007 at 10:49:45AM +0100, Thibaut VARENE wrote: > >This can't be a widespread problem, though, since we'd definitely have > >heard about it by now. Is anyone else running Debian amd64 (x86_64) > >that can test this? > > Unfortun

Bug#411293: asterisk-chan-capi: Need a mutex for calls to capi_{cmsg,message}2str

2007-02-18 Thread Ben Hutchings
Patch for asterisk-chan-capi in sarge (again, untested): diff -u asterisk-chan-capi-0.3.5/debian/patches/00list asterisk-chan-capi-0.3.5/debian/patches/00list --- asterisk-chan-capi-0.3.5/debian/patches/00list +++ asterisk-chan-capi-0.3.5/debian/patches/00list @@ -1,0 +2 @@ +02_capi-cmsg2str-mute

Bug#408530: libcapi20-3: buffer overflow in "printbuf" called from capi_cmsg2str

2007-02-18 Thread Ben Hutchings
The same patch is applicable to sarge with trivial adjustment. Ben. -- Ben Hutchings If God had intended Man to program, we'd have been born with serial I/O ports. signature.asc Description: This is a digitally signed message part

Bug#410946: another idea

2007-02-18 Thread martin f krafft
Fair enough, guys. Sorry for being a bother, but thanks for taking the time to explain ths situation. I shall not touch this bug during my talk. -- .''`. martin f. krafft <[EMAIL PROTECTED]> : :' : proud Debian developer, author, administrator, and user `. `'` http://people.debian.org/~mad

Bug#411360: xine-ui: Quits due to missing depends on libgnomevfs2-0 and libsmbclient.

2007-02-18 Thread Tim Phipps
Package: xine-ui Version: 0.99.4+dfsg+cvs2006-1 Severity: grave Justification: renders package unusable Without these packages xine from xine-ui just quits. Turning on --verbose lists two failures in linking in libraries from these packages. Installing these packages makes xine work again. --

Bug#411171: marked as done (gnome-user-share: Missing mime module in dav_user_2.2.conf)

2007-02-18 Thread Debian Bug Tracking System
Your message dated Sun, 18 Feb 2007 11:47:03 + with message-id <[EMAIL PROTECTED]> and subject line Bug#411171: fixed in gnome-user-share 0.10-4 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it i

Bug#408741: espeak 1.19-2

2007-02-18 Thread Julien Cristau
On Sun, Feb 18, 2007 at 10:27:46 +0100, Julien Cristau wrote: > I think the attached patch would work. I'll NMU in a few days if there > are no objections (earlier if I get an ACK). > Uploaded to DELAYED/3-day. Cheers, Julien signature.asc Description: Digital signature

Bug#384454: ftpd (was Bug#384454)

2007-02-18 Thread Alberto Gonzalez Iniesta
On Sun, Feb 18, 2007 at 09:34:49PM +1100, Paul Szabo wrote: > Dear Security team, > > A stupid little bug crept into (was left in) #384454 and DSA-1217. > My fault originally: I humbly apologize. Please correct it for sarge. > Hi all, I already asked this, but it wasn't consired important by th

Bug#407799: desktop-base: /etc/defaults/kdm.d/10_desktop_base overrides configured login desktop without warning on upgrade

2007-02-18 Thread Steve Langasek
>> Can someone please explain why this bug is only marked as fixed in >> experimental? Please upload a fix to unstable so that it will get real >> user testing and can be considered for etch. > It must be uploded to unstable. Ok, so who is going to do this and when? >> I see there has also bee

Bug#384454: ftpd (was Bug#384454)

2007-02-18 Thread Paul Szabo
Dear Security team, A stupid little bug crept into (was left in) #384454 and DSA-1217. My fault originally: I humbly apologize. Please correct it for sarge. Thanks, Paul Szabo [EMAIL PROTECTED] http://www.maths.usyd.edu.au/u/psz/ School of Mathematics and Statistics University of Sydney

Bug#411257: gambas: sizeof(CLASS) = 256 !

2007-02-18 Thread Steve Langasek
On Sat, Feb 17, 2007 at 11:17:20AM -0500, Gary Dale wrote: > Package: gambas > Version: 1.0.15-1 > Severity: grave > Justification: renders package unusable > I get the following error when trying to start Gambas: > sizeof(CLASS) = 256 ! > ERROR: #51: Bad archive: Invalid argument > Gambas fails

Processed: forwarded

2007-02-18 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > forwarded 411301 [EMAIL PROTECTED] Bug#411301: gaim DNS children die when gaim-otr is installed Forwarded-to-address changed from Thibaut VARENE <[EMAIL PROTECTED]> to [EMAIL PROTECTED] > thanks Stopping processing here. Please contact me if you need

Processed: Re: Bug#411322: atftpd: /tftpboot/ is not FHS compliant

2007-02-18 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > tags 411322 etch-ignore Bug#411322: atftpd: /tftpboot/ is not FHS compliant There were no tags set. Tags added: etch-ignore > thanks Stopping processing here. Please contact me if you need assistance. Debian bug tracking system administrator (adminis

Bug#411322: atftpd: /tftpboot/ is not FHS compliant

2007-02-18 Thread Steve Langasek
tags 411322 etch-ignore thanks On Sun, Feb 18, 2007 at 09:52:14AM +0100, Javier Fernández-Sanguino Peña wrote: > This TFTP server uses /tftpboot/ which is historically the location for files > served by TFTP servers but is not, however, FHS compliant. FHS-compliance is > requiered by Debian Polic

Bug#411301: gaim DNS children die when gaim-otr is installed

2007-02-18 Thread Thibaut VARENE
On 2/18/07, Ian Goldberg <[EMAIL PROTECTED]> wrote: I don't think this looks like #404590 at all. That bug has to do with multiple conversations being assigned to the same window (something new in gaim 2 beta, and somewhat of a security problem in and of itself). Here, Michael is reporting tha

Bug#408741: espeak 1.19-2

2007-02-18 Thread Julien Cristau
[dropped -release] On Sat, Feb 17, 2007 at 22:16:22 -0800, Steve Langasek wrote: > Hi, > > > On Mon, Feb 05, 2007 at 07:46:34PM +0100, Samuel Thibault wrote: > > > I don't understand this: IIUC the package never worked for these archs. > > > So wouldn't it be OK to upload a 1.16 with big-endian

Bug#411322: atftpd: /tftpboot/ is not FHS compliant

2007-02-18 Thread Javier Fernández-Sanguino Peña
Package: atftpd Version: 0.7.dfsg-1.2 Severity: serious Patch: tag This TFTP server uses /tftpboot/ which is historically the location for files served by TFTP servers but is not, however, FHS compliant. FHS-compliance is requiered by Debian Policy (section 9.1) The attached patch fixes this by