Bug#368835: drupal: Execution of arbitrary files in certain Apache configurations

2006-06-01 Thread Kevin Dalley
Here is updated information on the bug. The problem takes more work to fix than first reported. REVISION TO DRUPAL-SA-2006-006 * Advisory ID: DRUPAL-SA-2006-007 * Project: Drupal core and potentially any web application that accepts uploads. * Date: 2006-Jun-01 * S

Bug#357301: eclipse randomly crashes, usually at startup

2006-05-30 Thread Kevin Dalley
Suggestions on how to make eclipse work under Debian should be included under /usr/share/doc/eclipse. This should include suggested vm, and how to start eclipse with that vm. Please be very specific. If eclipse crashes, then the bug should stay open, even if the eclipse developer can't do anythi

Bug#368835: drupal: Execution of arbitrary files in certain Apache configurations

2006-05-25 Thread Kevin Dalley
Package: drupal Version: 4.5.8-1 Severity: grave Tags: security Justification: user security hole http://drupal.org/node/65409 EXECUTION OF ARBITRARY FILES IN CERTAIN APACHE CONFIGURATIONS * Advisory ID: DRUPAL-SA-2006-006 * Project: Drupal core * Date: 2006-May-24

Bug#355457: fetchmail uses /var/lib/fetchmail rather than /var/run for pid file

2006-03-05 Thread Kevin Dalley
Package: fetchmail Version: 6.3.2-2 Severity: serious Justification: Policy 9.1.1 fetchmail uses the file /var/lib/fetchmail/.fetchmail.pid, which is not cleaned up on startup. A system crash causes fetchmail to believe that it is still running, and the server is not restarted. /var/run should b

Bug#347600: konqueror will not run, hangs

2006-01-11 Thread Kevin Dalley
Package: konqueror Version: 4:3.4.3-3 Severity: grave Justification: renders package unusable After a recent upgrade, konqueror is no longer usable for Internet browsing. If I open the menu item Location->Open Location and enter "http://bugs.debian.org";, The "Open Location - Konqueror" menu stays

Bug#346121: xemacs21: xemacs fails in X

2006-01-05 Thread Kevin Dalley
After a bit of looking around, it appears that my /etc/X11/rgb.txt was wiped out. After reinstalling x11-common, xemacs works again. The error is thus not as serious as I originally reported it. However, the error reporting is quite mysterious. A better error message would be very nice. The col

Bug#337756: dependency problem

2005-11-16 Thread Kevin Dalley
No, having a broken kig is not the least bad solution. Linking with a testing approved library will allow a consistent version of kig to be in testing. -- Kevin Dalley [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Cont

Bug#315348: ftp.debian.org: intltool-debian size mismatch

2005-06-21 Thread Kevin Dalley
Package: ftp.debian.org Severity: grave Justification: renders package unusable intltool-debian has a size mismatch on ftp.debian.org. Here's the error message. Failed to fetch http://ftp.debian.org/debian/pool/main/i/intltool-debian/intltool-debian_0.30+20040213_all.deb Size mismatch --

Bug#297771: files missing in directory listing from smbclient 'dir' command with windows xp server

2005-03-02 Thread Kevin Dalley
Package: smbclient Version: 3.0.10-1 Severity: grave Justification: causes non-serious data loss smbclient often loses files when getting a directory listing. Using amanda for backup with samba results in loss of data, causing incomplete backups. The problem is most likely to be occur when deali