]> sipb.mit.edu Git - wiki.git/blob - doc/LennyBugsAll
(no commit message)
[wiki.git] / doc / LennyBugsAll
1 = Open RC Bugs in Lenny =
2
3 These are bugs to consider at SIPB's [LennyBugs RC-bug-squashing hackathon] for Lenny.
4
5 Bug list dumped early 2008-12-12.  The pipeline was
6  `$ cd /mit/debathena/debian-bts && ./get_bugs | sort | ./bugs-format-trac`
7
8 Please sort into useful/not useful, add notes, etc.
9
10 = Juicy? =
11
12 Try these!
13
14 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=374644 374644] in [http://packages.debian.org/lenny/xine-ui xine-ui]
15 "xine-ui: ctrl/shift key press emulation implementation broken"
16 [[BR]](Note: have patch but it's broken.  Test?  Find a fix?)
17
18 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=426465 426465]
19 in [http://packages.debian.org/lenny/initramfs-tools initramfs-tools]
20 "/init exports MODPROBE_OPTIONS=-qb"
21 [[BR]](Note: real bug report is near bottom.)
22
23 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=476525 476525]
24 in [http://packages.debian.org/lenny/python-hid python-hid]
25 "python-hid: hid module will not import since python policy transition"
26 [[BR]](Note: have patch, looks messy, looks like not-too-hard bug to fix well.)
27
28 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=481072 481072]
29 in [http://packages.debian.org/lenny/dk-filter dk-filter]
30 "dk-filter reliably crashes upon connection from postfix"
31 [[BR]](Note: bug report, little followup.  Test, reproduce, debug, fix.)
32
33 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=506057 506057]
34 in [http://packages.debian.org/lenny/splashy splashy]
35 "splashy: Splashy fails to install due to missing default theme"
36
37 These ones are only about 2 weeks old:
38
39 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507071 507071]
40 in [http://packages.debian.org/lenny/racoon racoon]
41 "racoon - Fails after upgrade: symbol lookup error: /usr/sbin/racoon: undefined symbol: libipsec_opt"
42
43 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507072 507072]
44 in [http://packages.debian.org/lenny/ipsec-tools ipsec-tools]
45 "libipsec0 packaged in ipsec-tools without development headers"
46
47 = Specific hardware =
48
49 If you have the relevant hardware you could help a lot.
50
51 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=394963 394963]
52 in [http://packages.debian.org/lenny/installation-reports installation-reports]
53 "installation: Problems with dual booting Dell D600 with winXP pro in the first partition (hd0, 0). After installing the Dell Etch Beta 3, Windows fails to boot and I get the blue screen of death."
54
55 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=418972 418972]
56 in [http://packages.debian.org/lenny/installation-reports installation-reports]
57 "cdrom: Etch does not detect CD-ROM on Acer Aspire 7100"
58
59 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=478717 478717]
60 in [http://packages.debian.org/lenny/ruby1.9 ruby1.9]
61 "ruby1.9: FTBFS on hppa: make[1]: *** [all] Segmentation fault"
62
63 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=499078 499078]
64 in [http://packages.debian.org/lenny/jfsutils jfsutils]
65 "jfsutils: Bus Error when running fsck.jfs on sparc"
66
67 = Examples =
68
69 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=496954 496954]
70 in [http://packages.debian.org/lenny/bind9 bind9]
71 "bind9: Fails to start due to SIGSEGV"
72 [[BR]]This bug sat unfixed for months.  Then someone attacked it in a bug-squashing party,
73 got the first reproducible testcase, and sent that upstream, which swiftly produced a fix.
74
75
76 = May be a lot of work =
77
78 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=456037 456037]
79 in [http://packages.debian.org/lenny/fenix fenix]
80 "fenix: not 64 bit clean"
81
82 = Puzzling =
83
84 Someone please explain what's going on (Debian Project-wise) in these bugs.
85
86 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=323473 323473]
87 in [http://packages.debian.org/lenny/wnpp wnpp]
88 "ITA: mol-drivers-linux -- The Mac-on-Linux emulator - drivers for Linux"
89 [[BR]](Note: The bug is for someone to take over maintainership.  They did.  Then when the bug gets automatically archived, they reply saying to keep it?  I (price) don't understand.)
90
91
92 = Unclassified =
93
94 Please read these reports and figure out what category they belong in.  Or make a new category.
95
96 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=436140 436140]
97 in [http://packages.debian.org/lenny/installation-reports installation-reports]
98 "cdrom: Most of the system's files have a future timestamp causing at least update/config problems."
99
100 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=490171 490171]
101 in [http://packages.debian.org/lenny/rtorrent rtorrent]
102 "rtorrent: random crash"
103
104 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=490999 490999]
105 in [http://packages.debian.org/lenny/libqt3-mt libqt3-mt]
106 "kicker: crashes on startup"
107
108 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=494293 494293]
109 in [http://packages.debian.org/lenny/installation-reports installation-reports]
110 "installation-reports: Grub error: not a regular file..."
111
112 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=495232 495232]
113 in [http://packages.debian.org/lenny/quagga quagga]
114 "quagga: zebra ignores routes added via command line"
115
116 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=495603 495603]
117 in [http://packages.debian.org/lenny/installation-reports installation-reports]
118 "grub-installer fails on a FSC Primergy RX300 with a level 5 RAID"
119
120 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=496334 496334]
121 in [http://packages.debian.org/lenny/mdadm mdadm]
122 "mdadm segfault on --assemble --force with raid10"
123
124 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=500460 500460]
125 in [http://packages.debian.org/lenny/oss-compat oss-compat]
126 "oss-compat: modules are not loaded"
127
128 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=501800 501800]
129 in [http://packages.debian.org/lenny/bind9 bind9]
130 "bind9: bind crashes with a list for allow-update"
131
132 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=501804 501804]
133 in [http://packages.debian.org/lenny/installation-reports installation-reports]
134 "installation-reports: Lenny b2 install on ThinkPad X61 - fails to detect hard disk"
135
136 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=502140 502140]
137 in [http://packages.debian.org/lenny/pam pam]
138 "cannot unlock screen during etch -> lenny transition"
139
140 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=502751 502751]
141 in [http://packages.debian.org/lenny/clamav-getfiles clamav-getfiles]
142 "clamav-getfiles: piuparts test fails: eicar.com md5sum mismatch, file needs downloading"
143
144 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=503303 503303]
145 in [http://packages.debian.org/lenny/upgrade-reports upgrade-reports]
146 "etch -> lenny minimal chrrot upgrade fails due to Conflicts/Pre-Depends loop"
147
148 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=503532 503532]
149 in [http://packages.debian.org/lenny/dbus dbus]
150 "send_requested_reply="true" allows all non-reply messages"
151
152 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=503712 503712]
153 in [http://packages.debian.org/lenny/ghostscript ghostscript]
154 "etch->lenny upgrade left the system in broken state"
155
156 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=503907 503907]
157 in [http://packages.debian.org/lenny/libwebkit-1.0-1 libwebkit-1.0-1]
158 "epiphany-webkit: Crashes at startup whenever I go to a site."
159
160 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504373 504373]
161 in [http://packages.debian.org/lenny/libtemplate-perl libtemplate-perl]
162 "libtemplate-perl: Upgrade from etch breaks code using DBI plugins"
163
164 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504524 504524]
165 in [http://packages.debian.org/lenny/sun-java6 sun-java6]
166 "AWT_TOOLKIT=MToolkit causes java to segfault on amd64"
167
168 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504626 504626]
169 in [http://packages.debian.org/lenny/nvidia-glx nvidia-glx]
170 "[nvidia-glx] Quietly drops support for several chipsets"
171
172 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504661 504661]
173 in [http://packages.debian.org/lenny/nvidia-glx-legacy-96xx-dev nvidia-glx-legacy-96xx-dev]
174 "nvidia-glx-legacy-96xx-dev: /usr/lib/libGL.so symlink broken"
175
176 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504747 504747]
177 in [http://packages.debian.org/lenny/gnu-fdisk gnu-fdisk]
178 "gnu-fdisk: wipes out MBR when used on GPT partitions"
179
180 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504918 504918]
181 in [http://packages.debian.org/lenny/network-manager network-manager]
182 "Updating to lenny failed when NetworkManager got updated"
183
184 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=505237 505237]
185 in [http://packages.debian.org/lenny/snmpd snmpd]
186 "/etc/init.d/snmpd start reports error if already running"
187
188 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=506748 506748]
189 in [http://packages.debian.org/lenny/rtorrent rtorrent]
190 "crash rtorrent by scgi-interface (function: 'fi.get_filename_last')"
191
192 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=506853 506853]
193 in [http://packages.debian.org/lenny/libgnutls26 libgnutls26]
194 "libgnutls26: 2.4.2-3 breaks OpenLDAP access"
195
196 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507003 507003]
197 in [http://packages.debian.org/lenny/open-iscsi open-iscsi]
198 "initiatorname.iscsi should maybe not be in /etc"
199
200 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507059 507059]
201 in [http://packages.debian.org/lenny/initramfs-tools initramfs-tools]
202 "initramfs-tools: Wrong check for udevadm in functions"
203
204 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507239 507239]
205 in [http://packages.debian.org/lenny/release.debian.org release.debian.org]
206 "RM: astrolog/stable -- RoQA; orphaned long time, non-free, contains potentially undistributable code"
207
208 = Unclassified Security =
209
210 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=505563 505563]
211 in [http://packages.debian.org/lenny/icedove icedove]
212 "Mozilla Thunderbird Multiple Vulnerabilities"
213
214 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=506353 506353]
215 in [http://packages.debian.org/lenny/mailscanner mailscanner]
216 "CVE-2008-5312/3: mailscanner might allow local users to overwrite arbitrary files via a symlink attack"
217
218 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507165 507165]
219 in [http://packages.debian.org/lenny/xine-lib xine-lib]
220 "xine-lib: CVE-2008-5242 heap-based buffer overflow"
221
222 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507184 507184]
223 in [http://packages.debian.org/lenny/xine-lib xine-lib]
224 "xine-lib: CVE-2008-5246 heap overflow"
225
226 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=506741 506741]
227 in [http://packages.debian.org/lenny/wireshark wireshark]
228 "wireshark: DoS caused by sending a SMTP request with large content"
229
230 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504977 504977]
231 in [http://packages.debian.org/lenny/ffmpeg-debian ffmpeg-debian]
232 "ffmpeg-debian: Several security issues"
233
234 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504771 504771]
235 in [http://packages.debian.org/lenny/wordpress wordpress]
236 "wordpress can be subject of delayed attacks via cookies"
237
238 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504283 504283]
239 in [http://packages.debian.org/lenny/egroupware-core egroupware-core]
240 "CVE-2007-3215: phpmailer issue (embedded code-copy)"
241
242 = Fresh bugs =
243
244 These are very recent and presumably will get dealt with by the package maintainers without help.
245
246 If you're bored you might look through and see if some are interesting anyway.  Also feel free to draw the line at some other time; I (price) picked December 1, arbitrarily.
247
248
249 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=239111 239111]
250 in [http://packages.debian.org/lenny/grub grub]
251 "Freeze when installing GRUB on XFS boot partition"
252 [[BR]](Note: just re-opened 2008-12-12)
253
254 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507558 507558]
255 in [http://packages.debian.org/lenny/hibernate hibernate]
256 "ignores "LockXLock yes" setting in /etc/hibernate/common.conf (e.g. does not lock the screen)"
257
258 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507576 507576]
259 in [http://packages.debian.org/lenny/xbattbar-acpi xbattbar-acpi]
260 "missing dependency: libconfig"
261
262 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507579 507579]
263 in [http://packages.debian.org/lenny/yocto-reader yocto-reader]
264 "Package installation results in license violation"
265
266
267 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507706 507706]
268 in [http://packages.debian.org/lenny/cdimage.debian.org cdimage.debian.org]
269 "Missing sources for d-i components/kernel of etch-n-half images"
270
271 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507721 507721]
272 in [http://packages.debian.org/lenny/cryptsetup cryptsetup]
273 "cryptsetup: Sometimes initrd ends up missing conf/conf.d/cryptroot file in it"
274
275 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507818 507818]
276 in [http://packages.debian.org/lenny/mldonkey-server mldonkey-server]
277 "mldonkey-server: mlnet does not start, logs syntax error in downloads.ini"
278
279 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507865 507865]
280 in [http://packages.debian.org/lenny/openoffice.org-writer openoffice.org-writer]
281 "openoffice.org-writer: OOo 2.4.x openinig OOo 3 files doesn't show text (2.x implements standard wrong)"
282
283 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507883 507883]
284 in [http://packages.debian.org/lenny/asterisk asterisk]
285 "asterisk: Very frequent segfaults on startup"
286
287 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507889 507889]
288 in [http://packages.debian.org/lenny/mdadm mdadm]
289 "mdadm: initramfs-tools script is broken, system with root on RAID won't boot"
290
291 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507915 507915]
292 in [http://packages.debian.org/lenny/povray povray]
293 "Povray unusable with non-ascii filenames"
294
295 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507927 507927]
296 in [http://packages.debian.org/lenny/acpi-support acpi-support]
297 "Fix suspend-resume in Thinkpad R50e (intel 855gm card)"
298
299 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507944 507944]
300 in [http://packages.debian.org/lenny/xwhois xwhois]
301 "xwhois: segfaults on start in get_servers()"
302
303 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507947 507947]
304 in [http://packages.debian.org/lenny/moodle moodle]
305 "moodle: html2text.php is not DFSG-free"
306
307 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507996 507996]
308 in [http://packages.debian.org/lenny/uim-tcode uim-tcode]
309 "mazegaki conversion cannot be used"
310
311 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=508026 508026]
312 in [http://packages.debian.org/lenny/phppgadmin phppgadmin]
313 "phpPgAdmin: Local File Inclusion Vulnerability"
314
315 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=508091 508091]
316 in [http://packages.debian.org/lenny/tuxguitar tuxguitar]
317 "maintainer address bounces"
318
319 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=508124 508124]
320 in [http://packages.debian.org/lenny/python-m2crypto python-m2crypto]
321 "Yum crashes when setting-up a CentOS chroot OS"
322
323 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=508133 508133]
324 in [http://packages.debian.org/lenny/libmad0 libmad0]
325 "audacity: munmap_chunk(): invalid pointer: 0x00000000026f4eb0"
326
327 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=508194 508194]
328 in [http://packages.debian.org/lenny/sun-java5 sun-java5]
329 "sun-java5: New upstream release fixes several security issues"
330
331 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=508257 508257]
332 in [http://packages.debian.org/lenny/twiki twiki]
333 "CVE-2008-5305: TWiki SEARCH variable allows arbitrary shell command execution"
334
335 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=508265 508265]
336 in [http://packages.debian.org/lenny/sysprof-module-source sysprof-module-source]
337 "sysprof-module-source: doesn't compile on AMD64 arch (wrong register names)"
338
339 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=508272 508272]
340 in [http://packages.debian.org/lenny/gnome-splashscreen-manager gnome-splashscreen-manager]
341 "gnome-splashscreen-manager: Refuses to start, undefined symbol: gtk_file_system_error_quark"
342
343 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=508313 508313]
344 in [http://packages.debian.org/lenny/xine-lib xine-lib]
345 "xine-lib: CVE-2008-5234 heap overflow in atom parsing"
346
347 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=508322 508322]
348 in [http://packages.debian.org/lenny/wodim wodim]
349 "wodim: Cannot load media.  Cannot init drive."
350
351 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=508324 508324]
352 in [http://packages.debian.org/lenny/ftp.debian.org ftp.debian.org]
353 "ftp.debian.org: gcc-4.2-base is not really required"
354
355 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=508351 508351]
356 in [http://packages.debian.org/lenny/open-iscsi open-iscsi]
357 "open-iscsi: will not install, looking for missing /sys/module/scsi_transport_iscsi/version file"
358
359 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=508434 508434]
360 in [http://packages.debian.org/lenny/ipmitool ipmitool]
361 "ipmitool: Several init script problems due to wrong pidfile name"
362
363 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=508443 508443]
364 in [http://packages.debian.org/lenny/imagemagick imagemagick]
365 "convert crash on sparc during compilation of djvulibre (work on x86-64)"
366
367 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=508480 508480]
368 in [http://packages.debian.org/lenny/iodbc iodbc]
369 "iodbc: Segfaults when asking for the available DSNs"
370
371 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=508510 508510]
372 in [http://packages.debian.org/lenny/debget debget]
373 "Can't parse packages.debian.org output anymore"
374
375
376 = Mostly solved? =
377
378 These look like good progress is being made and they'll get fixed soon.
379
380 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507316 507316]
381 in [http://packages.debian.org/lenny/smarty smarty]
382 "smarty: Non-free logo included in package"
383
384 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=332782 332782]
385 in [http://packages.debian.org/lenny/release-notes release-notes]
386 "release-notes: Where's the license?"
387
388 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=475958 475958]
389 in [http://packages.debian.org/lenny/release-notes release-notes]
390 "document procedure to recover from "/dev/hda became /dev/sda" boot failure"
391 [[BR]](Note: looks done, just not closed.)
392
393 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=476210 476210]
394 in [http://packages.debian.org/lenny/xbat xbat]
395 "xbat: game elements do not display properly"
396
397 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=506883 506883]
398 in [http://packages.debian.org/lenny/tuxguitar tuxguitar]
399 "tuxguitar: hard-codes dependencies on libraries"
400
401 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=495178 495178]
402 in [http://packages.debian.org/lenny/libjs-jquery libjs-jquery]
403 "libjs-jquery: Should compile jquery.min.js and jquery.pack.js from jquery.js"
404
405 = Not much of use one can do =
406
407 (this one looks like it'll be removed from Lenny or have amd64 disabled)
408
409 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507021 507021]
410 in [http://packages.debian.org/lenny/helpdeco helpdeco]
411 "Fails to work on amd64"
412
413 (this one looks the maintainer has labeled unreproducible)
414
415 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507242 507242]
416 in [http://packages.debian.org/lenny/amule-daemon amule-daemon]
417 "amule-daemon: causes OOM's by leaking lots of memory"
418
419 (waiting on upstream)
420
421 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=506652 506652]
422 in [http://packages.debian.org/lenny/xml2rfc xml2rfc]
423 "Yet another boilerplate change"
424
425 = Flamewars =
426
427 You might enjoy reading these, but they may not be good targets to fix.
428
429 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=475737 475737]
430 in [http://packages.debian.org/lenny/otrs2 otrs2]
431 "otrs2 - makes files in /usr writable by non-root"
432
433 For this one, the actual flameware is off the bug report log.
434
435 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=497823 497823]
436 in [http://packages.debian.org/lenny/ftp.debian.org ftp.debian.org]
437 "longstanding DFSG violations in linux-2.6 package"
438
439 = Would have been fun =
440
441 Entertaining to read but sadly already fixed.
442
443 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=506961 506961]
444 in auctex
445 "auctex: reuses old logfile on emacsen upgrades, enabling symlink attack"
446
447
448 = Special team bugs =
449
450 These bugs are probably not good targets because the work involved with them is to be done by someone on a special Debian team.
451
452 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=451628 451628]
453 in [http://packages.debian.org/lenny/ftp.debian.org ftp.debian.org]
454 "Packages might enter the archive from security without source"
455
456 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=506152 506152]
457 in [http://packages.debian.org/lenny/ftp.debian.org ftp.debian.org]
458 "libept0 should have priority important"
459
460 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507675 507675]
461 in [http://packages.debian.org/lenny/ftp.debian.org ftp.debian.org]
462 "python2.5 should have priority standard"
463
464 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507678 507678]
465 in [http://packages.debian.org/lenny/ftp.debian.org ftp.debian.org]
466 "libsqlite3-0 should have priority standard"
467
468 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507775 507775]
469 in [http://packages.debian.org/lenny/ftp.debian.org ftp.debian.org]
470 "libkeyutils1 should have priority standard"
471
472 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507778 507778]
473 in [http://packages.debian.org/lenny/ftp.debian.org ftp.debian.org]
474 "libldap-2.4-2 should have priority standard"
475
476 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507779 507779]
477 in [http://packages.debian.org/lenny/ftp.debian.org ftp.debian.org]
478 "[Priorities] libustr-1.0-1 -> standard"
479
480 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507780 507780]
481 in [http://packages.debian.org/lenny/ftp.debian.org ftp.debian.org]
482 "python-sepolgen should have priority standard"
483
484 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507783 507783]
485 in [http://packages.debian.org/lenny/ftp.debian.org ftp.debian.org]
486 "libxml2 should have priority standard"
487
488 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507784 507784]
489 in [http://packages.debian.org/lenny/ftp.debian.org ftp.debian.org]
490 "python2.5-minimal should have priority standard"
491
492 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507796 507796]
493 in [http://packages.debian.org/lenny/ftp.debian.org ftp.debian.org]
494 "libisccfg40 should have priority standard"
495
496 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507797 507797]
497 in [http://packages.debian.org/lenny/ftp.debian.org ftp.debian.org]
498 "libisccc40 should have priority standard"
499
500 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507798 507798]
501 in [http://packages.debian.org/lenny/ftp.debian.org ftp.debian.org]
502 "libedit2 should have priority standard"
503
504 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507799 507799]
505 in [http://packages.debian.org/lenny/ftp.debian.org ftp.debian.org]
506 "libgssglue1 must have priority standard"
507
508 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507800 507800]
509 in [http://packages.debian.org/lenny/ftp.debian.org ftp.debian.org]
510 "ucf must have priority standard"
511
512 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507801 507801]
513 in [http://packages.debian.org/lenny/ftp.debian.org ftp.debian.org]
514 "libpci3 must have priority standard"
515
516 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=497471 497471]
517 in [http://packages.debian.org/lenny/cdimage.debian.org cdimage.debian.org]
518 "sarge images have syslinux binaries without source"
519
520 [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=506977 506977]
521 in [http://packages.debian.org/lenny/release.debian.org release.debian.org]
522 "FPC: copyright infringement in pre 2.2.2 sources"