Bug#697617: jenkins: remote code execution vulnerability

2013-01-30 Thread Guido Günther
Hi James, On Thu, Jan 10, 2013 at 05:03:44PM +, James Page wrote: > -BEGIN PGP SIGNED MESSAGE- > Hash: SHA256 > > On 10/01/13 15:46, Miguel Landaeta wrote: > >>> We might want to consider whether updating unstable/testing to > >>> 1.480.2 is actually the best way forward at this point

Bug#699402: nvidia-kernel-legacy-96xx-source: display a gradual fuzzy white after boot, display unusable

2013-01-30 Thread The Eclectic One
Package: nvidia-kernel-legacy-96xx-source Version: 96.43.23-3 Severity: grave Justification: renders package unusable Dear Maintainer, Having noticed that the legaxy-96xx packages have been upgraded in the last few days, I tried the old nvidia binary driver that used to work fine in lenny on thi

Processed: retitle 699263 to pspp: FTBFS: 293. expressions - datediff (evaluate.at:1560): FAILED (evaluate.at:1560)

2013-01-30 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > retitle 699263 pspp: FTBFS: 293. expressions - datediff (evaluate.at:1560): > FAILED (evaluate.at:1560) Bug #699263 [src:pspp] pspp: FTBFS: | /«BUILDDIR»/pspp-0.7.9+git20120620/conftest.c:64: undefined reference to `shl_load' Changed Bug title

Processed: Patch for 1.6.x branch in RedHat Bugzilla

2013-01-30 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + patch Bug #699316 [libupnp] libupnp: Multiple stack buffer overflow vulnerabilities Bug #699342 [libupnp] libupnp6: Security problem in SSDP code widely publicized today Added tag(s) patch. Added tag(s) patch. -- 699316: http://bugs.debian.org/cgi-bin/bu

Bug#699316: Patch for 1.6.x branch in RedHat Bugzilla

2013-01-30 Thread Salvatore Bonaccorso
Control: tags -1 + patch Hi Attached is the debdiff created with the patch found in the RedHat Bugtracker[1]. [1]: https://bugzilla.redhat.com/show_bug.cgi?id=883790 But I have not tested the resulting package. Regards, Salvatore diff -Nru libupnp-1.6.17/debian/changelog libupnp-1.6.17/debian

Bug#699396: CVE-2013-0241 - qxl: synchronous io guest DoS

2013-01-30 Thread Luciano Bello
Package: xserver-xorg-video-qxl Severity: grave Tags: security patch Justification: user security hole Hi there, Take a look to http://seclists.org/oss-sec/2013/q1/204 Please, use CVE-2013-0241 to refer this issue. The Debian package in unstable looks affected. Can you check if the stable

Bug#681654: Retitling this bug....and pushing for the solution

2013-01-30 Thread Julien Cristau
On Sat, Dec 29, 2012 at 19:28:20 +0100, Christian PERRIER wrote: > retitle 681654 kstars-data-extra-tycho2: should be moved to non-free > thanks > > After reading this bug log, I'm convinced that the only remaining > issue is the failure to comply with DFSG #6. > After reading the bug log I don'

Bug#698527: elmer: executable ElmerGUI.real links with both GPL-licensed and GPL-incompatible libraries

2013-01-30 Thread Francesco Poli
On Wed, 30 Jan 2013 23:06:16 +0100 Julien Cristau wrote: > On Wed, Jan 30, 2013 at 22:49:24 +0100, Francesco Poli wrote: > > > If nobody even *tries*, that's basically certain. > > > > I think that a serious persuasion attempt should be done. > > I am doing what I can, but I need the help of oth

Processed: tagging 690128

2013-01-30 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > # not going to block the release on this bug > tags 690128 + wheezy-ignore Bug #690128 [inn2] inn2: conffile disappearing during squeeze->wheezy upgrade: /etc/news/motd.news Added tag(s) wheezy-ignore. > thanks Stopping processing here. Please c

Processed: Re: [experimental] boot fails as xen domU: xc_dom_find_loader: no loader found

2013-01-30 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > reassign 699381 src:xen 4.0.1-5.5 Bug #699381 {Done: Julien Cristau } [src:linux] linux-image-3.7-trunk-amd64: boot fails as xen domU: xc_dom_find_loader: no loader found Bug reassigned from package 'src:linux' to 'src:xen'. No longer marked as

Bug#698527: elmer: executable ElmerGUI.real links with both GPL-licensed and GPL-incompatible libraries

2013-01-30 Thread Julien Cristau
On Wed, Jan 30, 2013 at 22:49:24 +0100, Francesco Poli wrote: > If nobody even *tries*, that's basically certain. > > I think that a serious persuasion attempt should be done. > I am doing what I can, but I need the help of other people. > "Trying" != "making noise". You're certainly the one ma

Bug#699195: marked as done (stevedore: FTBFS due to missing Build-Deps on python-{mock,nose,setuptools})

2013-01-30 Thread Debian Bug Tracking System
Your message dated Wed, 30 Jan 2013 22:03:41 + with message-id and subject line Bug#699195: fixed in stevedore 0.8-2 has caused the Debian Bug report #699195, regarding stevedore: FTBFS due to missing Build-Deps on python-{mock,nose,setuptools} to be marked as done. This means that you claim

Processed: Re: Bug#663388: gnustep-back-common: unowned files after purge (policy 6.8, 10.8) violating FHS (policy 9.1) too

2013-01-30 Thread Debian Bug Tracking System
Processing control commands: > tag -1 wheezy-ignore Bug #663388 [gnustep-back-common] gnustep-back-common: unowned files after purge (policy 6.8, 10.8) violating FHS (policy 9.1) too Added tag(s) wheezy-ignore. -- 663388: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=663388 Debian Bug Tracki

Bug#663388: gnustep-back-common: unowned files after purge (policy 6.8, 10.8) violating FHS (policy 9.1) too

2013-01-30 Thread Julien Cristau
Control: tag -1 wheezy-ignore On Fri, Jun 1, 2012 at 17:04:11 +0200, Andreas Beckmann wrote: > Package: gnustep-back-common > Version: 0.22.0-1 > Followup-For: Bug #663388 > > Hi, > > there are now fewer directories, but there is still something in $HOME: > > 0m47.6s ERROR: FAIL: Package purg

Bug#698527: elmer: executable ElmerGUI.real links with both GPL-licensed and GPL-incompatible libraries

2013-01-30 Thread Francesco Poli
On Sun, 27 Jan 2013 16:58:16 + Julien Cristau wrote: > On Sun, Jan 27, 2013 at 17:05:38 +0100, Francesco Poli wrote: [...] > > *if* there were a > > significant step forward (such as a decision by Open CASCADE S.A.S., > > with a public promise that next version of Open CASCADE Technology will

Bug#685469: ekg2: missing copyright file - after upgrading from squeeze-backports to wheezy

2013-01-30 Thread Julien Cristau
On Wed, Jan 30, 2013 at 12:10:46 +0100, Andreas Beckmann wrote: > Followup-For: Bug #685469 > Control: found -1 1:0.3.1-2 > > Hi, > > the missing copyright file persists after upgrading from > squeeze+squeeze-backports with ekg2 from backports installed to wheezy. > > That probably means the pa

Processed: tagging 698102, severity of 698102 is important

2013-01-30 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tags 698102 + moreinfo Bug #698102 [eglibc] eglibc: initgroups changes egid on kfreebsd Added tag(s) moreinfo. > severity 698102 important Bug #698102 [eglibc] eglibc: initgroups changes egid on kfreebsd Severity set to 'important' from 'critical'

Bug#696625: EXDEV not catched properly

2013-01-30 Thread Julien Cristau
On Mon, Jan 21, 2013 at 20:27:59 +0100, Christoph Berg wrote: > tags 696625 patch > severity 696625 grave > thanks > > I think this should be fixed in wheezy. It makes the package unusable > on all systems where I tried it, including a cowbuilder chroot. > I'm sure you're aware that bumping the

Bug#699351: linux-gd obsolete and lubupnp4

2013-01-30 Thread Scott Howard
Hello Eric, You wrote: "Linux-igd is dead code, use very old libpunp version that contains numerous security holes. Besides this version is not compatible with IPV6 as required by UPnP IGD V2 specification." I believe you mean libupnp4 contains numerous security holes - have they been reported in

Bug#699226: marked as done (rails: CVE-2013-0333: Vulnerability in JSON Parser in Ruby on Rails 3.0 and 2.3)

2013-01-30 Thread Debian Bug Tracking System
Your message dated Wed, 30 Jan 2013 21:02:06 + with message-id and subject line Bug#699226: fixed in rails 2.3.5-1.2+squeeze6 has caused the Debian Bug report #699226, regarding rails: CVE-2013-0333: Vulnerability in JSON Parser in Ruby on Rails 3.0 and 2.3 to be marked as done. This means t

Bug#695614: marked as done (CVE-2012-6303: buffer overflows)

2013-01-30 Thread Debian Bug Tracking System
Your message dated Wed, 30 Jan 2013 21:02:07 + with message-id and subject line Bug#695614: fixed in snack 2.2.10-dfsg1-9+squeeze1 has caused the Debian Bug report #695614, regarding CVE-2012-6303: buffer overflows to be marked as done. This means that you claim that the problem has been deal

Bug#698631: typo3-src: diff for NMU version 4.5.19+dfsg1-4.1

2013-01-30 Thread gregor herrmann
On Wed, 30 Jan 2013 21:45:14 +0100, Christian Welzel wrote: > > I've prepared an NMU for typo3-src (versioned as 4.5.19+dfsg1-4.1) > > and uploaded it to DELAYED/5. Please feel free to tell me if I > > should delay it longer. > i'm fine with that. I do not have enough time currently to fix the is

Bug#685251: Bug#699385: Acknowledgement (pu: package quantum/2012.1-5)

2013-01-30 Thread Ola Lundqvist
Just to inform that a request to the release team has been filed and available at http://bugs.debian.org/699385. // Ola -- - Ola Lundqvist --- / o...@debian.org Annebergsslingan 37 \ | o...@inguza.com 65

Bug#687829: psmisc: pstree hangs on kfreebsd-amd64

2013-01-30 Thread Adam D. Barratt
On Wed, 2013-01-30 at 15:37 +1100, Craig Small wrote: > On Tue, Jan 29, 2013 at 02:32:13PM +, Steven Chamberlain wrote: > > Please let me know what you think to a t-p-u upload fixing this in > > wheezy. I haven't asked the release team about this yet, but I'm > > assuming psmisc/22.20-1 introd

Bug#698631: typo3-src: diff for NMU version 4.5.19+dfsg1-4.1

2013-01-30 Thread Christian Welzel
Hi Gregor, > I've prepared an NMU for typo3-src (versioned as 4.5.19+dfsg1-4.1) > and uploaded it to DELAYED/5. Please feel free to tell me if I > should delay it longer. i'm fine with that. I do not have enough time currently to fix the issue myself, so your work is welcome! Thanks a lot. --

Processed: Re: Bug#699218: procps: FTBFS with test suite error: testsuite/lib.test/fileutils_badfd.sh missing

2013-01-30 Thread Debian Bug Tracking System
Processing control commands: > reopen -1 Bug #699218 [procps] procps: FTBFS with test suite error: testsuite/lib.test/fileutils_badfd.sh missing Bug 699218 is not marked as done; doing nothing. -- 699218: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=699218 Debian Bug Tracking System Contact

Processed: Re: Bug#699218: procps: FTBFS with test suite error: testsuite/lib.test/fileutils_badfd.sh missing

2013-01-30 Thread Debian Bug Tracking System
Processing control commands: > reopen -1 Bug #699218 {Done: Craig Small } [procps] procps: FTBFS with test suite error: testsuite/lib.test/fileutils_badfd.sh missing 'reopen' may be inappropriate when a bug has been closed with a version; all fixed versions will be cleared, and you may need to re

Bug#699218: procps: FTBFS with test suite error: testsuite/lib.test/fileutils_badfd.sh missing

2013-01-30 Thread Steven Chamberlain
Control: reopen -1 Aha! See here in my build log: > Making check in testsuite > make[2]: Entering directory `/tmp/tmp.qZtvS03tZP/procps-3.3.3/testsuite' > make check-DEJAGNU > make[3]: Entering directory `/tmp/tmp.qZtvS03tZP/procps-3.3.3/testsuite' > Making a new site.exp file... > srcdir='.';

Bug#699380: virtuoso-opensource: remove armhf from mono archs

2013-01-30 Thread Julien Cristau
Source: virtuoso-opensource Version: 6.1.4+dfsg1-1 Severity: serious mono packages are being removed on armhf, please update virtuoso-opensource to match. Cheers, Julien signature.asc Description: Digital signature

Processed: Re: Bug#698102: eglibc: initgroups changes egid on kfreebsd

2013-01-30 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > # Mark as present in stable, and hence not a regression > # Actually affects any glibc versions ever built for GNU/k*BSD > found 698102 2.11.3-4 Bug #698102 [eglibc] eglibc: initgroups changes egid on kfreebsd There is no source info for the packa

Bug#699379: gdcm: remove armhf from mono archs

2013-01-30 Thread Julien Cristau
Source: gdcm Version: 2.2.0-13 Severity: serious mono packages are being removed on armhf in wheezy, please update gdcm to match. Cheers, Julien signature.asc Description: Digital signature

Bug#687829: psmisc: pstree hangs on kfreebsd-amd64

2013-01-30 Thread Steven Chamberlain
On 30/01/13 04:37, Craig Small wrote: > I've built the package but it got rejected as there is newer stuff in > NEW. I'm trying to find out what has to happen. It's (partly) documented here: http://www.debian.org/doc/manuals/developers-reference/pkgs.html#t-p-u The target suite must be "testing-

Processed: tagging 699263

2013-01-30 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tags 699263 + confirmed Bug #699263 [src:pspp] pspp: FTBFS: | /«BUILDDIR»/pspp-0.7.9+git20120620/conftest.c:64: undefined reference to `shl_load' Added tag(s) confirmed. > thanks Stopping processing here. Please contact me if you need assistanc

Bug#699253: libcitygml: FTBFS: dh_install: openscenegraph-plugin-citygml-shared missing files (usr/lib/osgPlugins-*/*.so), aborting

2013-01-30 Thread Sebastian Ramacher
On 2013-01-30 22:07:48, YunQiang Su wrote: > Many thanks for your patch. > I will check and upload it myself this weekend. Great, thanks for taking care of this bug. Regards -- Sebastian Ramacher signature.asc Description: Digital signature

Bug#699261: dhelp: FTBFS: build-dependency not installable: libgettext-ruby-util

2013-01-30 Thread gregor herrmann
Control: tag -1 + confirmed Control: tag -1 + patch Control: tag -1 - sid Control: fixed -1 0.6.21 On Tue, 29 Jan 2013 16:18:23 +0100, Lucas Nussbaum wrote: > > The following packages have unmet dependencies: > > sbuild-build-depends-dhelp-dummy : Depends: libgettext-ruby-util but it is > > not

Processed: Re: Bug#699261: dhelp: FTBFS: build-dependency not installable: libgettext-ruby-util

2013-01-30 Thread Debian Bug Tracking System
Processing control commands: > tag -1 + confirmed Bug #699261 [src:dhelp] dhelp: FTBFS: build-dependency not installable: libgettext-ruby-util Added tag(s) confirmed. > tag -1 + patch Bug #699261 [src:dhelp] dhelp: FTBFS: build-dependency not installable: libgettext-ruby-util Added tag(s) patch.

Bug#695701: marked as done (kdesdk: includes non-free documentation (GFDL with invariant sections))

2013-01-30 Thread Debian Bug Tracking System
Your message dated Wed, 30 Jan 2013 17:48:07 + with message-id and subject line Bug#695701: fixed in kdesdk 4:4.8.4+dfsg-1 has caused the Debian Bug report #695701, regarding kdesdk: includes non-free documentation (GFDL with invariant sections) to be marked as done. This means that you claim

Processed: Re: Bug#699259: gnuradio: FTBFS: XML parsing error

2013-01-30 Thread Debian Bug Tracking System
Processing control commands: > tag -1 unreproducible Bug #699259 [src:gnuradio] gnuradio: FTBFS: XML parsing error Added tag(s) unreproducible. -- 699259: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=699259 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems -- To UNSUBS

Bug#582953: kmail deleted all non-local incoming mail settings on upgrade

2013-01-30 Thread Lisandro Damián Nicanor Pérez Meyer
On Mon 17 Dec 2012 12:52:32 Juha Jäykkä escribió: > > Juha, I think this bug is never going to be fixed unless someone can give > > us a clear path to reproducing it. I think you're the person in a best > > This happened at an upgrade, which does not happen all that often, > especially now that w

Bug#582953: marked as done (kmail deleted all non-local incoming mail settings on upgrade)

2013-01-30 Thread Debian Bug Tracking System
Your message dated Wed, 30 Jan 2013 14:18:46 -0300 with message-id <201301301418.54161.lisan...@debian.org> and subject line Re: Bug#582953: kmail deleted all non-local incoming mail settings on upgrade has caused the Debian Bug report #582953, regarding kmail deleted all non-local incoming mail s

Bug#694286: Bug#699349: tpu: fstrcmp 0.4.D001-1+deb7u1

2013-01-30 Thread Andreas Beckmann
On 2013-01-30 17:47, Niels Thykier wrote: > On 2013-01-30 15:29, Andreas Beckmann wrote: >> I'd like to fix fstrcmp via t-p-u: >> * fstrcmp: Add Breaks/Replaces: libfstrcmp-dev (<< 0.4). (Closes: #694286) > Thanks for looking at this and please go ahead with the upload. Uploaded to DELAYED/2

Bug#699193: marked as done (libahven3-dev: fails to upgrade from 'squeeze' - trying to overwrite /usr/lib/libahven.a)

2013-01-30 Thread Debian Bug Tracking System
Your message dated Wed, 30 Jan 2013 17:02:30 + with message-id and subject line Bug#699193: fixed in ahven 2.1-4 has caused the Debian Bug report #699193, regarding libahven3-dev: fails to upgrade from 'squeeze' - trying to overwrite /usr/lib/libahven.a to be marked as done. This means that

Bug#699194: marked as done (libpcscada2-dev: fails to upgrade from 'squeeze' - trying to overwrite /usr/lib/ada/adalib/pcscada/pcsc-scard-conversion.ali)

2013-01-30 Thread Debian Bug Tracking System
Your message dated Wed, 30 Jan 2013 17:02:51 + with message-id and subject line Bug#699194: fixed in pcscada 0.7.1-4 has caused the Debian Bug report #699194, regarding libpcscada2-dev: fails to upgrade from 'squeeze' - trying to overwrite /usr/lib/ada/adalib/pcscada/pcsc-scard-conversion.ali

Processed: tagging 699255

2013-01-30 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tags 699255 + confirmed Bug #699255 [src:ruby-activeresource-2.3] ruby-activeresource-2.3: FTBFS: test_load_yaml_array(BaseTest) fails Added tag(s) confirmed. > thanks Stopping processing here. Please contact me if you need assistance. -- 69925

Bug#699252: ldiskfsprogs: FTBFS: build-dependency not installable: lustre-dev

2013-01-30 Thread gregor herrmann
Control: tag -1 - sid On Tue, 29 Jan 2013 16:18:29 +0100, Lucas Nussbaum wrote: > > The following packages have unmet dependencies: > > sbuild-build-depends-ldiskfsprogs-dummy : Depends: lustre-dev but it is > > not installable > > E: Unable to correct problems, you have held broken packages. >

Processed: Re: Bug#699252: ldiskfsprogs: FTBFS: build-dependency not installable: lustre-dev

2013-01-30 Thread Debian Bug Tracking System
Processing control commands: > tag -1 - sid Bug #699252 [src:ldiskfsprogs] ldiskfsprogs: FTBFS: build-dependency not installable: lustre-dev Removed tag(s) sid. -- 699252: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=699252 Debian Bug Tracking System Contact ow...@bugs.debian.org with probl

Processed: Re: Bug#699256: cglib: FTBFS: [javadoc] /«BUILDDIR»/cglib-2.2.2+dfsg/src/proxy/net/sf/cglib/core/Constants.java:62: cannot find symbol

2013-01-30 Thread Debian Bug Tracking System
Processing control commands: > retitle -1 cglib: FTBFS: 1) > testFailOnMemoryLeak(net.sf.cglib.proxy.TestEnhancer)junit.framework.AssertionFailedError: > Memory leak caused by Enhancer Bug #699256 [src:cglib] cglib: FTBFS: [javadoc] /«BUILDDIR»/cglib-2.2.2+dfsg/src/proxy/net/sf/cglib/core/Con

Bug#699328: libavutil51: relocation error after upgrade

2013-01-30 Thread Reinhard Tartler
On Wed, Jan 30, 2013 at 2:15 PM, Fabian Greffrath wrote: > Am 30.01.2013 13:18, schrieb Reinhard Tartler: > >> This has already happened, dimitry is using an mirror that lags behind. > > > Then ftp2.de.d.o lags behind, too, because I was just able to reproduce this > issue by installing "apt-get i

Bug#695710: marked as done (adplug: includes non-free documentation (GFDL with unmodifiable sections))

2013-01-30 Thread Debian Bug Tracking System
Your message dated Wed, 30 Jan 2013 16:02:32 + with message-id and subject line Bug#695710: fixed in adplug 2.2.1+dfsg3-0.1 has caused the Debian Bug report #695710, regarding adplug: includes non-free documentation (GFDL with unmodifiable sections) to be marked as done. This means that you

Bug#696360: nvidia-glx: Sporadic X freezes

2013-01-30 Thread Andreas Beckmann
Control: severity -1 important On 2013-01-19 17:27, Andreas Beckmann wrote: > On 2012-12-22 18:32, Mar Mel wrote: >> * I have tested the 304.64-2 driver from unstable and experienced the exact >> same > Please test 313.18-1 from experimental. Downgrading the severity as this only seems to affect

Processed: Re: Bug#696360: nvidia-glx: Sporadic X freezes

2013-01-30 Thread Debian Bug Tracking System
Processing control commands: > severity -1 important Bug #696360 [nvidia-glx] nvidia-glx: Sporadic X freezes Severity set to 'important' from 'serious' -- 696360: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=696360 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems -- T

Processed: severity of 699345 is important

2013-01-30 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 699345 important Bug #699345 [xserver-xorg-video-ati] xserver-xorg-video-ati: Xorg crashes with black/white screen since wheezy update to 6.14.4-6 Severity set to 'important' from 'grave' > thanks Stopping processing here. Please contac

Bug#699345: xserver-xorg-video-ati: Xorg crashes with, black/white screen since wheezy update to 6.14.4-6

2013-01-30 Thread Patrick Matthäi
Hi Michel, > 6.14.4-5 doesn't support your Radeon GPU, so you're using the generic > driver from xserver-xorg-video-fbdev in that case. > I suspect your kernel is missing upstream fixes for your GPU. True. But that also means, that users with such a GPU will have got a "broken" installation of

Bug#699275: marked as done (sextractor: Documentation lacks source code, and contains non-free images)

2013-01-30 Thread Debian Bug Tracking System
Your message dated Wed, 30 Jan 2013 15:02:42 + with message-id and subject line Bug#699275: fixed in sextractor 2.8.6+dfsg-1 has caused the Debian Bug report #699275, regarding sextractor: Documentation lacks source code, and contains non-free images to be marked as done. This means that you

Bug#699351: linux-igd is obsolete, use a very old libpunnp version subject to numerous security bug

2013-01-30 Thread Eric Valette
Package: linux-igd Severity: grave Tags: security Justification: user security hole Linux-igd is dead code, use very old libpunp version that contains numerous security holes. Besides this version is not compatible with IPV6 as required by UPnP IGD V2 specification. So pklease obsolete this packa

Processed: reassign 699342 to libupnp, forcibly merging 699316 699342

2013-01-30 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > reassign 699342 libupnp Bug #699342 [libupnp6] libupnp6: Security problem in SSDP code widely publicized today Bug reassigned from package 'libupnp6' to 'libupnp'. No longer marked as found in versions libupnp/1:1.6.17-1.1. Ignoring request to al

Bug#699345: xserver-xorg-video-ati: Xorg crashes with black/white screen since wheezy update to 6.14.4-6

2013-01-30 Thread Michel Dänzer
On Mit, 2013-01-30 at 14:48 +0100, Christian Stoller wrote: > > since the update of the free radeon driver from version 6.14.4-5 to > 6.14.4-6 Xorg refuses to start. [...] > Just downgrading the –ati and –radeon package again to -5, everything > is working fine. From the log file: > [ 994.7

Processed (with 1 errors): forcibly merging 699316 699342

2013-01-30 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > forcemerge 699316 699342 Bug #699316 [libupnp] libupnp: Multiple stack buffer overflow vulnerabilities Unable to merge bugs because: package of #699342 is 'libupnp6' not 'libupnp' Failed to forcibly merge 699316: Did not alter merged bugs

Bug#699253: libcitygml: FTBFS: dh_install: openscenegraph-plugin-citygml-shared missing files (usr/lib/osgPlugins-*/*.so), aborting

2013-01-30 Thread YunQiang Su
Many thanks for your patch. I will check and upload it myself this weekend. On Wed, Jan 30, 2013 at 7:27 PM, Sebastian Ramacher wrote: > Control: tags -1 patch > > On 2013-01-29 16:13:20, Lucas Nussbaum wrote: >> Source: libcitygml >> Version: 0.14+svn128-1+3p0p1 >> Severity: serious >> Tags: whe

Bug#699342: [Secure-testing-team] Bug#699342: libupnp6: Security problem in SSDP code widely publicized today

2013-01-30 Thread Salvatore Bonaccorso
Control: forcemerge 699316 699342 Hi On Wed, Jan 30, 2013 at 02:04:53PM +0100, Eric Valette wrote: > Package: libupnp6 > Version: 1:1.6.17-1.1 > Severity: grave > Tags: security > Justification: user security hole > > Dear Maintainer, > > http://www.zdnet.com/millions-of-pcs-exposed-through-net

Processed (with 1 errors): Re: [Secure-testing-team] Bug#699342: libupnp6: Security problem in SSDP code widely publicized today

2013-01-30 Thread Debian Bug Tracking System
Processing control commands: > forcemerge 699316 699342 Bug #699316 [libupnp] libupnp: Multiple stack buffer overflow vulnerabilities Unable to merge bugs because: package of #699342 is 'libupnp6' not 'libupnp' Failed to forcibly merge 699316: Did not alter merged bugs Debbugs::Control::se

Bug#699275: Bug#399759: sextractor: Documentation lacks source code, and contains non-free images

2013-01-30 Thread Ben Webb
n 30 January 2013 09:18, Ole Streicher wrote: > it can better be built as > a separate package from the source code in > . Sadly, it seems that this documentation is not suitably licensed for inc

Bug#699328: libavutil51: relocation error after upgrade

2013-01-30 Thread Fabian Greffrath
Am 30.01.2013 13:18, schrieb Reinhard Tartler: This has already happened, dimitry is using an mirror that lags behind. Then ftp2.de.d.o lags behind, too, because I was just able to reproduce this issue by installing "apt-get install libavutil51=6:9~beta1-1". Maybe we should add a Breaks relat

Bug#699342: libupnp6: Security problem in SSDP code widely publicized today

2013-01-30 Thread Eric Valette
Package: libupnp6 Version: 1:1.6.17-1.1 Severity: grave Tags: security Justification: user security hole Dear Maintainer, http://www.zdnet.com/millions-of-pcs-exposed-through-network-bugs-security-researchers-find-710478/ Fixed in 1.6.18. -- System Information: Debian Release: 7.0 APT pr

Bug#699260: marked as done (r-cran-genabel: FTBFS: error: subscript out of bounds)

2013-01-30 Thread Debian Bug Tracking System
Your message dated Wed, 30 Jan 2013 12:47:49 + with message-id and subject line Bug#699260: fixed in r-cran-genabel 1.7-0-2 has caused the Debian Bug report #699260, regarding r-cran-genabel: FTBFS: error: subscript out of bounds to be marked as done. This means that you claim that the proble

Bug#699328: libavutil51: relocation error after upgrade

2013-01-30 Thread Reinhard Tartler
On Wed, Jan 30, 2013 at 1:05 PM, Fabian Greffrath wrote: > Am 30.01.2013 12:19, schrieb Reinhard Tartler: > >> I'm merging the bug appropriately with this email. > > > But #691088 has already been closed by uploading libavutil52, i.e. with a > SONAME bump. Maybe we should ask ftp-masters to remove

Processed (with 1 errors): forcibly merging 699328 691088

2013-01-30 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > forcemerge 699328 691088 Bug #699328 {Done: Reinhard Tartler } [libavutil51] libavutil51: relocation error after upgrade Bug #699328 {Done: Reinhard Tartler } [libavutil51] libavutil51: relocation error after upgrade Marked as fixed in versions

Bug#699253: libcitygml: FTBFS: dh_install: openscenegraph-plugin-citygml-shared missing files (usr/lib/osgPlugins-*/*.so), aborting

2013-01-30 Thread Sebastian Ramacher
Control: tags -1 patch On 2013-01-29 16:13:20, Lucas Nussbaum wrote: > Source: libcitygml > Version: 0.14+svn128-1+3p0p1 > Severity: serious > Tags: wheezy sid > User: debian...@lists.debian.org > Usertags: qa-ftbfs-20130129 qa-ftbfs > Justification: FTBFS in wheezy on amd64 > > Hi, > > During a

Processed: Re: Bug#699253: libcitygml: FTBFS: dh_install: openscenegraph-plugin-citygml-shared missing files (usr/lib/osgPlugins-*/*.so), aborting

2013-01-30 Thread Debian Bug Tracking System
Processing control commands: > tags -1 patch Bug #699253 [src:libcitygml] libcitygml: FTBFS: dh_install: openscenegraph-plugin-citygml-shared missing files (usr/lib/osgPlugins-*/*.so), aborting Added tag(s) patch. -- 699253: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=699253 Debian Bug Tr

Bug#699328: marked as done (libavutil51: relocation error after upgrade)

2013-01-30 Thread Debian Bug Tracking System
Your message dated Wed, 30 Jan 2013 12:19:04 +0100 with message-id and subject line Re: Bug#699328: libavutil51: relocation error after upgrade has caused the Debian Bug report #699328, regarding libavutil51: relocation error after upgrade to be marked as done. This means that you claim that the

Processed (with 1 errors): Re: Bug#699328: libavutil51: relocation error after upgrade

2013-01-30 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 699328 serious Bug #699328 [libavutil51] libavutil51: relocation error after upgrade Severity set to 'serious' from 'normal' > merge 699328 691088 Bug #699328 [libavutil51] libavutil51: relocation error after upgrade Unable to merge bugs

Bug#685469: ekg2: missing copyright file - after upgrading from squeeze-backports to wheezy

2013-01-30 Thread Andreas Beckmann
Followup-For: Bug #685469 Control: found -1 1:0.3.1-2 Hi, the missing copyright file persists after upgrading from squeeze+squeeze-backports with ekg2 from backports installed to wheezy. That probably means the package also does not properly cleanup when upgrading from an older snapshot of testi

Processed: Re: ekg2: missing copyright file - after upgrading from squeeze-backports to wheezy

2013-01-30 Thread Debian Bug Tracking System
Processing control commands: > found -1 1:0.3.1-2 Bug #685469 {Done: Andreas Beckmann } [ekg2] ekg2: missing copyright file Marked as found in versions ekg2/1:0.3.1-2; no longer marked as fixed in versions ekg2/1:0.3.1-2 and reopened. -- 685469: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug

Processed: fixed 521860 in db4.7/4.7.25-20, closing 521860

2013-01-30 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > fixed 521860 db4.7/4.7.25-20 Bug #521860 [db4.7-util] libpam-modules: libdb upgrade silently breaks pam_userdb.so Marked as fixed in versions db4.7/4.7.25-20. > close 521860 Bug #521860 [db4.7-util] libpam-modules: libdb upgrade silently breaks

Bug#691441: marked as done (libqglviewer-qt4-2: copyright file missing after upgrade (policy 12.5))

2013-01-30 Thread Debian Bug Tracking System
Your message dated Wed, 30 Jan 2013 10:00:12 + with message-id and subject line Bug#691441: fixed in libqglviewer 2.3.17-1 has caused the Debian Bug report #691441, regarding libqglviewer-qt4-2: copyright file missing after upgrade (policy 12.5) to be marked as done. This means that you claim

Processed: sextractor: Documentation lacks source code, and contains non-free images

2013-01-30 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tags 699275 + pending Bug #699275 [sextractor] sextractor: Documentation lacks source code, and contains non-free images Added tag(s) pending. > thanks Stopping processing here. Please contact me if you need assistance. -- 699275: http://bugs.d

Bug#699275: sextractor: Documentation lacks source code, and contains non-free images

2013-01-30 Thread Ole Streicher
tags 699275 + pending thanks I will remove the PDF documentation from the source. For Guide2source_extractor.pdf, this is obvious. If sextractor.pdf (and/or a HTML documentation, as by #399759) is needed, it can better be built as a separate package from the source code in