Processed: reassign 682631 to python-distutils-extra

2012-08-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > reassign 682631 python-distutils-extra Bug #682631 [src:linaro-image-tools] linaro-image-tools: FTBFS: AttributeError: 'tuple' object has no attribute 'major' Bug reassigned from package 'src:linaro-image-tools' to 'python-distutils-extra'. No l

Bug#681687: Call for votes on evince MIME entry

2012-08-10 Thread Steve Langasek
On Tue, Aug 07, 2012 at 06:03:17PM +0100, Ian Jackson wrote: > I'm calling for votes on the following proposal. There are > three options - two positive versions, and FD. In summary > A. Do not overrule release team. It is too late for automation. > B. Do not overrule release team. Defer to

Bug#684552: clementine: does not start: error while loading shared libraries: libGLEW.so.1.5

2012-08-10 Thread James Utter
Package: clementine Version: 1.0.1+dfsg-2+b1 Severity: grave Justification: renders package unusable Dear Maintainer, Clementine is no longer starting. running "clementine" at the command line returns the following error clementine: error while loading shared libraries: libGLEW.so.1.5: cannot o

Bug#681687: Call for votes on evince MIME entry

2012-08-10 Thread Bdale Garbee
Ian Jackson writes: > I'm calling for votes on the following proposal. There are > three options - two positive versions, and FD. In summary > A. Do not overrule release team. It is too late for automation. > B. Do not overrule release team. Defer to them on automation. > F. Further Dis

Processed (with 1 errors): Re: Bug#684531: FTBFS: unknown type name bool

2012-08-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 684531 important Bug #684531 [cde] FTBFS: unknown type name bool Severity set to 'important' from 'serious' > tags 684531 +more-info Unknown tag/s: more-info. Recognized are: patch wontfix moreinfo unreproducible fixed potato woody sid h

Bug#684531: FTBFS: unknown type name bool

2012-08-10 Thread Yaroslav Halchenko
severity 684531 important tags 684531 +more-info thanks I just built it fine using cowbuilder in up-to-date amd64 wheezy and sid environments... so I guess this failure is somehow specific to your setup... full build log and build-depends versioning information would be of help. meanwhile, since f

Processed: [bts-link] source package gnome-keyring

2012-08-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > # > # bts-link upstream status pull for source package gnome-keyring > # see http://lists.debian.org/debian-devel-announce/2006/05/msg1.html > # > user bts-link-upstr...@lists.alioth.debian.org Setting user to bts-link-upstr...@lists.alioth.de

Bug#684315: Fwd: A thinkfan 0.8 bug and a patch

2012-08-10 Thread Victor Mataré
OK, I recently received a sysfs-fix.diff, which looks correct to me. I've fixed the problem in a different way though, on git.sf.net. My patches are larger, but they should waste less CPU time. The second one fixes a potential bug in the parser. I'll also make this the 0.8.1 release. Hope that work

Bug#684535: hyperestraier: FTBFS on s390x

2012-08-10 Thread Nobuhiro Iwamatsu
Source: hyperestraier Version: 1.4.13-7 Severity: serious Justification: fails to build from source Hi, hyperestraier FTBFS on s390. https://buildd.debian.org/status/fetch.php?pkg=hyperestraier&arch=s390x&ver=1.4.13-7&stamp=1343612759 - ./estcmd: INFO: [325:220]: search: 0 hits ./estcmd: I

Bug#684533: Fwd: RDF::TrineShortcuts - deprecation

2012-08-10 Thread Kjetil Kjernsmo
Package: librdf-trineshortcuts-perl Version: 0.104-1 Severity: serious Please see the below email from the upstream developer. Given this, I suppose this package shouldn't make it to Wheezy when it is stable. If I'm wrong, please feel free to close. Cheers, Kjetil -- Forwarded Messa

Bug#684456: marked as done (qpid-cpp: CVE-2012-3467)

2012-08-10 Thread Debian Bug Tracking System
Your message dated Fri, 10 Aug 2012 21:03:03 + with message-id and subject line Bug#684456: fixed in qpid-cpp 0.16-7 has caused the Debian Bug report #684456, regarding qpid-cpp: CVE-2012-3467 to be marked as done. This means that you claim that the problem has been dealt with. If this is not

Bug#684423: marked as done (live-tools: Broken link ( /usr/sbin/update-initramfs -> ../bin/live-update-initramfs ))

2012-08-10 Thread Debian Bug Tracking System
Your message dated Fri, 10 Aug 2012 21:02:46 + with message-id and subject line Bug#684423: fixed in live-tools 3.0.8-1 has caused the Debian Bug report #684423, regarding live-tools: Broken link ( /usr/sbin/update-initramfs -> ../bin/live-update-initramfs ) to be marked as done. This means

Bug#684531: FTBFS: unknown type name bool

2012-08-10 Thread Michael Tautschnig
Package: cde Version: 0.1-1 Severity: serious In a recent local rebuild, your package failed to build in a wheezy build environment: Making all in tests make[4]: Entering directory `/root/build/cde/cde-0.1/strace-4.6/tests' make[4]: Nothing to be done for `all'. make[4]: Leaving directory `/root/

Bug#683288: rt-authen-externalauth: privilege escalation

2012-08-10 Thread Tom Jampen
tag 683288 pending thanks On 30.07.2012 16:55, Yves-Alexis Perez wrote: > For Wheezy, please fix this with an isolated fix instead of updating to a > new upstream release (since the freeze is in effect) Fixed in git. Tom -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with

Bug#684527: [Pkg-openssl-devel] Bug#684527: openssl: CVE-2011-5095 - The remote SSL/TLS server accepts a weak Diffie-Hellman public value

2012-08-10 Thread Kurt Roeckx
On Fri, Aug 10, 2012 at 09:12:14PM +0200, Arne Wichmann wrote: > Package: openssl > Version: 0.9.8o-4squeeze13 > Severity: grave > Tags: security > Justification: user security hole > > openssl in squeeze (at least up to 0.9.8o-4squeeze13) is vulnerable to > CVE-2011-5095 [1]. For reference you mi

Bug#684528: elfutils: FTBFS with new dpkg-buildpackage due to build-arch split

2012-08-10 Thread Kurt Roeckx
On Fri, Aug 10, 2012 at 01:34:39PM -0600, Adam Conrad wrote: > Package: elfutils > Version: 0.153-1 > Severity: serious > Tags: patch > User: ubuntu-de...@lists.ubuntu.com > Usertags: origin-ubuntu quantal ubuntu-patch > > > Due to a slight thinko (I assume), your build-arch/build-indep split > l

Processed: severity of 658702 is normal

2012-08-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > # no, ignore me, the new prerm script does not have this problem > severity 658702 normal Bug #658702 [libxml-sax-perl] libxml-sax-perl: update-perl-sax-parsers sometimes fails when called from old-prerm during squeeze->wheezy update Severity set

Processed: severity of 658702 is serious

2012-08-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > # breaks upgrades from squeeze > severity 658702 serious Bug #658702 [libxml-sax-perl] libxml-sax-perl: update-perl-sax-parsers sometimes fails when called from old-prerm during squeeze->wheezy update Severity set to 'serious' from 'normal' > tha

Bug#684528: elfutils: FTBFS with new dpkg-buildpackage due to build-arch split

2012-08-10 Thread Adam Conrad
Package: elfutils Version: 0.153-1 Severity: serious Tags: patch User: ubuntu-de...@lists.ubuntu.com Usertags: origin-ubuntu quantal ubuntu-patch Due to a slight thinko (I assume), your build-arch/build-indep split leads elfutils to FTBFS with the new dpkg-buildpackage, which calls build-arch for

Bug#684527: openssl: CVE-2011-5095 - The remote SSL/TLS server accepts a weak Diffie-Hellman public value

2012-08-10 Thread Arne Wichmann
Package: openssl Version: 0.9.8o-4squeeze13 Severity: grave Tags: security Justification: user security hole openssl in squeeze (at least up to 0.9.8o-4squeeze13) is vulnerable to CVE-2011-5095 [1]. For reference you might have a look at [2] - the problem seems to be that fips/dh/fips_dh_key.c doe

Bug#677054: nut-client: prompting due to modified conffiles which were not modified by the user

2012-08-10 Thread Laurent Bigonville
Hi, I'm tempted to close that bug as WONTFIX. The original issue is IMHO that the post-install script is modifying nut.conf in the version present in squeeze (see #684392). I see no easy way (not involving a dirty hack[0]) to fix this. Moreover it's very unlikely that the user has NOT modified

Bug#684463: condor fails to install if condor user already exists

2012-08-10 Thread Evgeni Golov
Hi, On Fri, Aug 10, 2012 at 08:07:28PM +0200, Tiziano Zito wrote: > > > > Package: condor > > > > Version: 7.8.1~dfsg.1-1~nd12.04+1 > > > > > > Where does this version come from? > > > Debian has 7.8.1~dfsg.1-2 in Wheezy and Sid. > > > > It seems to come from http://neuro.debian.net and to be a

Bug#681680: mediathekview: finds only 1376 out of 57537 movies

2012-08-10 Thread Markus Koschany
Here is a short summary what has happened so far. - I built mediathekview-3.0.0 successfully on Sid - Now i am trying to improve the package and i am doing some tests - I am in contact with the upstream developer of mediathekview who is responsive and helpful. -

Bug#684463: condor fails to install if condor user already exists

2012-08-10 Thread Tiziano Zito
> > > Package: condor > > > Version: 7.8.1~dfsg.1-1~nd12.04+1 > > > > Where does this version come from? > > Debian has 7.8.1~dfsg.1-2 in Wheezy and Sid. > > It seems to come from http://neuro.debian.net and to be a backport of > 7.8.1~dfsg.1-1. Sorry for not mentioning it, I quickly checked on

Bug#684517: marked as done (ruby-activesupport-3.2: CVE-2012-3464)

2012-08-10 Thread Debian Bug Tracking System
Your message dated Fri, 10 Aug 2012 17:47:10 + with message-id and subject line Bug#684517: fixed in ruby-activesupport-3.2 3.2.6-4 has caused the Debian Bug report #684517, regarding ruby-activesupport-3.2: CVE-2012-3464 to be marked as done. This means that you claim that the problem has be

Bug#684454: marked as done (ruby-actionpack-3.2: CVE-2012-3463 / CVE-2012-3464 / CVE-2012-3465)

2012-08-10 Thread Debian Bug Tracking System
Your message dated Fri, 10 Aug 2012 17:32:14 + with message-id and subject line Bug#684454: fixed in ruby-actionpack-3.2 3.2.6-4 has caused the Debian Bug report #684454, regarding ruby-actionpack-3.2: CVE-2012-3463 / CVE-2012-3464 / CVE-2012-3465 to be marked as done. This means that you cla

Bug#682034: Bug#681599: vim/python2.7: symbol lookup error: vim: undefined symbol: init_hashlib

2012-08-10 Thread Scott Kitterman
On Tuesday, July 24, 2012 06:52:13 AM James McCoy wrote: > On Wed, Jul 18, 2012 at 09:35:28AM +0200, Jakub Wilk wrote: > > Plan B > > == > > In any order: > > - Fix vim build not to link config.c into the binary. (I attached a > > proposed patch.) > > I've uploaded Vim 2:7.3.547-4. > > > - Fi

Processed: severity of 682034 is grave

2012-08-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 682034 grave Bug #682034 [src:python2.7] Add Breaks << 2:7.3.547-4 for vim-{nox,gtk,gnome,athena} Severity set to 'grave' from 'important' > thanks Stopping processing here. Please contact me if you need assistance. -- 682034: http://b

Processed: Bug#684454: ruby-actionpack-3.2: CVE-2012-3463 / CVE-2012-3464 / CVE-2012-3465

2012-08-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > clone 684454 -1 Bug #684454 [ruby-actionpack-3.2] ruby-actionpack-3.2: CVE-2012-3463 / CVE-2012-3464 / CVE-2012-3465 Bug 684454 cloned as bug 684517 > reassign -1 ruby-activesupport-3.2 Bug #684517 [ruby-actionpack-3.2] ruby-actionpack-3.2: CVE-2

Bug#684454: ruby-actionpack-3.2: CVE-2012-3463 / CVE-2012-3464 / CVE-2012-3465

2012-08-10 Thread Antonio Terceiro
clone 684454 -1 reassign -1 ruby-activesupport-3.2 retitle -1 ruby-activesupport-3.2: CVE-2012-3464 thanks Moritz Muehlenhoff escreveu isso aí: > Package: ruby-actionpack-3.2 > Severity: grave > Tags: security > Justification: user security hole > > Please see > > CVE-2012-3465 > http://www.open

Bug#684463: condor fails to install if condor user already exists

2012-08-10 Thread Evgeni Golov
On Fri, Aug 10, 2012 at 05:41:21PM +0200, Evgeni Golov wrote: > Hi, > > On Fri, Aug 10, 2012 at 10:30:36AM +0200, Tiziano Zito wrote: > > Package: condor > > Version: 7.8.1~dfsg.1-1~nd12.04+1 > > Where does this version come from? > Debian has 7.8.1~dfsg.1-2 in Wheezy and Sid. It seems to come f

Bug#680790: Update for libio-async-loop-*-perl bugs

2012-08-10 Thread gregor herrmann
1) I've forwarded both bug reports upstream now. 2) Both packages have no reverse (build) dependencies and a low popcon, so removing them from wheezy would be no desaster. Cheers, gregor -- .''`. Homepage: http://info.comodo.priv.at/ - OpenPGP key 0xBB3A68018649AA06 : :' : Debian GNU/Linux

Processed: bug 680790 is forwarded to http://rt.cpan.org/Public/Bug/Display.html?id=78892

2012-08-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > forwarded 680790 http://rt.cpan.org/Public/Bug/Display.html?id=78892 Bug #680790 [src:libio-async-loop-epoll-perl] libio-async-loop-epoll-perl: FTBFS: tests failed Set Bug forwarded-to-address to 'http://rt.cpan.org/Public/Bug/Display.html?id=78

Bug#684463: condor fails to install if condor user already exists

2012-08-10 Thread Evgeni Golov
Hi, On Fri, Aug 10, 2012 at 10:30:36AM +0200, Tiziano Zito wrote: > Package: condor > Version: 7.8.1~dfsg.1-1~nd12.04+1 Where does this version come from? Debian has 7.8.1~dfsg.1-2 in Wheezy and Sid. > when I try to install condor on a machine where the condor user already > exists (either > be

Processed: bug 680806 is forwarded to http://rt.cpan.org/Public/Bug/Display.html?id=78891

2012-08-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > forwarded 680806 http://rt.cpan.org/Public/Bug/Display.html?id=78891 Bug #680806 [src:libio-async-loop-glib-perl] libio-async-loop-glib-perl: FTBFS: tests failed Set Bug forwarded-to-address to 'http://rt.cpan.org/Public/Bug/Display.html?id=7889

Bug#684506: FTBFS: quilt patches don't apply after unpack

2012-08-10 Thread Michael Tautschnig
Package: accountsservice Version: 0.6.21-6 Severity: serious In an attempt to rebuild your package, a simple dget -x fails: dget -qx http://cdn.debian.net/debian/pool/main/a/accountsservice/accountsservice_0.6.21-6.dsc 2012-08-10 16:18:07 URL:http://cdn.debian.net/debian/pool/main/a/accountsser

Bug#682631: Bug#682634: Bug#682631: linaro-image-tools: FTBFS: AttributeError: 'tuple' object has no attribute 'major'

2012-08-10 Thread gregor herrmann
On Fri, 10 Aug 2012 15:52:43 +0200, Salvatore Bonaccorso wrote: > What I do not yet understand, is why it still uses python2.6 for both > packages: at least nautilus-image-manipulator depends on python, which > now defaults to 2.7, so some other dependencies brings in python2.6? In the chroot whe

Processed: closing 683151

2012-08-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > close 683151 Bug #683151 [telepathy-mission-control-5] telepathy-mission-control-5: Random crashes due to access to freed memory Marked Bug as done > thanks Stopping processing here. Please contact me if you need assistance. -- 683151: http://b

Bug#682631: Bug#682634: Bug#682631: linaro-image-tools: FTBFS: AttributeError: 'tuple' object has no attribute 'major'

2012-08-10 Thread Salvatore Bonaccorso
Hi Gregor (Adding python-distutils-ex...@packages.debian.org to recipients) On Fri, Aug 10, 2012 at 03:35:31PM +0200, gregor herrmann wrote: > But: > > The error > > | WARNING: the following files are not recognized by DistUtilsExtra.auto: > | Traceback (most recent call last): > | File "setu

Bug#681756: cannot reproduce

2012-08-10 Thread gregor herrmann
On Mon, 30 Jul 2012 09:24:39 -0300, gustavo panizzo wrote: > i cannot reproduce this bug using piuparts Me neither, with piuparts 0.45. Log attached, the piuparts call should be sufficiently similar to what Andreas used. Cheers, gregor -- .''`. Homepage: http://info.comodo.priv.at/ - Ope

Bug#684421: [DRE-maint] Bug#684421: FTBFS: tests require internet connectivity

2012-08-10 Thread Felix Geyer
Hi, On 10.08.2012 02:04, Gunnar Wolf wrote: > Hi Felix, > > Thanks for the report - I also am not sure of the action to take, so I'm > asking the rest of > the team for input here. Looking at the source, I see quite often the mention > of: > > c = @http.connection_for @uri > > where @uri is o

Bug#682634: Bug#682631: linaro-image-tools: FTBFS: AttributeError: 'tuple' object has no attribute 'major'

2012-08-10 Thread gregor herrmann
On Thu, 09 Aug 2012 17:37:01 +0200, gregor herrmann wrote: > > I'm no python expert and only did the NMU upload for > > nautilus-image-manipulator recently, but I have found that e.g. > > google-apps-manager does [1,2] for python2.6 'compatibility': > > > > [1]: http://code.google.com/p/google-a

Processed: affects 681960, affects 681218

2012-08-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > affects 681960 - wheezy unstable Bug #681960 {Done: Scott Kitterman } [clamav-freshclam] clamav-freshclam: removes directories that were installed by another package: /var/{lib, log}/clamav/ Removed indication that 681960 affects wheezy and unst

Bug#684423: live-tools: Broken link ( /usr/sbin/update-initramfs -> ../bin/live-update-initramfs )

2012-08-10 Thread Daniel Baumann
On 08/10/2012 01:58 PM, Evgeni Golov wrote: Thank you *so* much for breaking stuff, again. you should work on your attitude. of course i don't break things on purpose. besides, it's sid. you should know that. -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject

Bug#682574: tagging 672870, tagging 664261, tagging 682382, tagging 682499, found 682574 in live-utils/3.0.3-1 ...

2012-08-10 Thread Evgeni Golov
On Mon, Jul 23, 2012 at 10:45:30PM +0200, Andreas Beckmann wrote: > found 682574 live-utils/3.0.3-1 You surely meant live-tools/3.0.3-1 here, right? Which makes live-tools/3.0.3-1 in Wheezy RC-buggy? -- Bruce Schneier can read and understand Perl programs. -- To UNSUBSCRIBE, email to debian-b

Bug#684489: gksu-polkit: CVE-2011-0703

2012-08-10 Thread Moritz Muehlenhoff
Package: gksu-polkit Severity: grave Tags: security Justification: user security hole I just noticed that this never made it to the BTS: http://www.openwall.com/lists/oss-security/2011/03/15/8 It was assiged CVE-2011-0703 Cheers, Moritz -- To UNSUBSCRIBE, email to debian-bugs-rc-requ

Bug#684488: puppet-lint not working with ruby1.9.1

2012-08-10 Thread Laurent Bigonville
Package: puppet-lint Version: 0.1.13-1 Severity: serious Tags: sid wheezy Hi, it seems that puppet-lint is not working with ruby1.9.1 which is the default version in wheezy. /usr/lib/ruby/1.9.1/rubygems/custom_require.rb:36:in `require': iconv will be deprecated in the future, use String#encode

Bug#682905: can't import signatures

2012-08-10 Thread Daniel Pocock
>>> You could also try with another local user account on that machine, to >>> rule out that it is due to specific settings in your home directory. >> >> I created a new UNIX user, new email address and new PGP key ... snip ... >> Therefore, it appears to be good for a completely clean user accoun

Bug#684423: update-initramfs workaround

2012-08-10 Thread Sam Morris
The following hook can be used to work around this bug. $ cat config/hooks/fix-update-initramfs.chroot #!/bin/sh set -eu ln -sf ../../bin/live-update-initramfs /usr/sbin/update-initramfs -- Sam Morris -- To UNSUBSCRIBE, email to debian-bugs-rc

Processed: Re: Bug#684423: live-tools: Broken link ( /usr/sbin/update-initramfs -> ../bin/live-update-initramfs )

2012-08-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 684423 grave Bug #684423 [live-tools] live-tools: Broken link ( /usr/sbin/update-initramfs -> ../bin/live-update-initramfs ) Severity set to 'grave' from 'important' > thanks Stopping processing here. Please contact me if you need assis

Bug#608981: Crash with long GGI_DISPLAY environment variable

2012-08-10 Thread Jonathan Wiltshire
Package: libggi Dear maintainer, Recently you fixed one or more security problems and as a result you closed this bug. These problems were not serious enough for a Debian Security Advisory, so they are now on my radar for fixing in the following suites through point releases: squeeze (6.0.6) - u

Bug#684480: libjs-wax: Missing html4-defs.js

2012-08-10 Thread Andrew Harvey
Package: libjs-wax Version: 5.0.1+ds1-1 Justification: renders package unusable Severity: grave Dear Maintainer, Upon trying to use wax.leaf.js the browser reports "html4 is not defined" from wax.leaf.js:842. The html4 object which it mentions is provided by the html4 package within google-caja.

Bug#684479: wheezy: Network File Services are major issue in Wheezy.

2012-08-10 Thread Hughe Chung
Package: wheezy Version: Wheezy Severity: serious Justification: required Dear Maintainer, *** Please consider answering these questions, where appropriate *** * What led up to the situation? Network File services hung up the fresh Wheezy startup. * What exactly did you do (or not do) t

Processed: [bts-link] source package gnome-keyring

2012-08-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > # > # bts-link upstream status pull for source package gnome-keyring > # see http://lists.debian.org/debian-devel-announce/2006/05/msg1.html > # > user bts-link-upstr...@lists.alioth.debian.org Setting user to bts-link-upstr...@lists.alioth.de

Bug#668721: Any reason to not upload the patched package to close #668721

2012-08-10 Thread Andreas Tille
Hi Joey, lacking any answer from you I NMUed to DELAYED/10. Hope you like this Andreas. On Mon, Aug 06, 2012 at 12:08:34PM +0200, Andreas Tille wrote: > Hi Joey, > > following the advise to look into RC bugs before reading Bits from DPL > I stumbled over this one. Could you give any reaso

Bug#684463: condor fails to install if condor user already exists

2012-08-10 Thread Tiziano Zito
Package: condor Version: 7.8.1~dfsg.1-1~nd12.04+1 Severity: grave Justification: renders package unusable Hi! when I try to install condor on a machine where the condor user already exists (either because the machine uses LDAP authentication and condor user is in LDAP or because I am just re-ins

Bug#680845: derivations: FTBFS: Can't create output index file /«PKGBUILDDIR»/tex/main.ind.

2012-08-10 Thread Sebastian Ramacher
Hi, On 09/08/12 18:09, Hilmar Preusse wrote: > Benjamin Mako Hill provided a patch, which probably solves the > problem. I've uploaded new packages here, do you have a chance to > test if they do? > > http://wagner.debian.org/~hilmar-guest/rubber/ derivations built for me with the patched packag

Bug#684456: qpid-cpp: CVE-2012-3467

2012-08-10 Thread Moritz Muehlenhoff
Package: qpid-cpp Severity: grave Tags: security Justification: user security hole Please see http://www.openwall.com/lists/oss-security/2012/08/09/6 Since we're in freeze, please fix this with an isolated patch. Cheers, Moritz -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.

Bug#684454: ruby-actionpack-3.2: CVE-2012-3463 / CVE-2012-3464 / CVE-2012-3465

2012-08-10 Thread Moritz Muehlenhoff
Package: ruby-actionpack-3.2 Severity: grave Tags: security Justification: user security hole Please see CVE-2012-3465 http://www.openwall.com/lists/oss-security/2012/08/09/9 CVE-2012-3464 http://www.openwall.com/lists/oss-security/2012/08/09/10 CVE-2012-3463 http://www.openwall.com/lists/oss