"/init exports MODPROBE_OPTIONS=-qb"
[[BR]](Note: real bug report is near bottom.)
-[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=476525 476525]
-in [http://packages.debian.org/lenny/python-hid python-hid]
-"python-hid: hid module will not import since python policy transition"
-[[BR]](Note: have patch, looks messy, looks like not-too-hard bug to fix well.)
-
[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=481072 481072]
in [http://packages.debian.org/lenny/dk-filter dk-filter]
"dk-filter reliably crashes upon connection from postfix"
"crash rtorrent by scgi-interface (function: 'fi.get_filename_last')"
[[BR]]This is fixed in experimental, but in a newer, less-stable version; Someone might be able to backport the fix.
-These ones are only about 2 weeks old:
-
-[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507071 507071]
-in [http://packages.debian.org/lenny/racoon racoon]
-"racoon - Fails after upgrade: symbol lookup error: /usr/sbin/racoon: undefined symbol: libipsec_opt"
-
-[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507072 507072]
-in [http://packages.debian.org/lenny/ipsec-tools ipsec-tools]
-"libipsec0 packaged in ipsec-tools without development headers"
-
= Specific hardware =
If you have the relevant hardware you could help a lot.
"ITA: mol-drivers-linux -- The Mac-on-Linux emulator - drivers for Linux"
[[BR]](Note: The bug is for someone to take over maintainership. They did. Then when the bug gets automatically archived, they reply saying to keep it? I (price) don't understand.)
-= Vaguely tedious =
-
-[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=502140 502140]
-in [http://packages.debian.org/lenny/pam pam]
-"cannot unlock screen during etch -> lenny transition"
-
= Unclassified =
Please read these reports and figure out what category they belong in. Or make a new category.
-[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=436140 436140]
-in [http://packages.debian.org/lenny/installation-reports installation-reports]
-"cdrom: Most of the system's files have a future timestamp causing at least update/config problems."
-
-[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=490999 490999]
-in [http://packages.debian.org/lenny/libqt3-mt libqt3-mt]
-"kicker: crashes on startup"
-
[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=494293 494293]
in [http://packages.debian.org/lenny/installation-reports installation-reports]
"installation-reports: Grub error: not a regular file..."
-[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=495232 495232]
-in [http://packages.debian.org/lenny/quagga quagga]
-"quagga: zebra ignores routes added via command line"
-
[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=500460 500460]
in [http://packages.debian.org/lenny/oss-compat oss-compat]
"oss-compat: modules are not loaded"
-[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=502751 502751]
-in [http://packages.debian.org/lenny/clamav-getfiles clamav-getfiles]
-"clamav-getfiles: piuparts test fails: eicar.com md5sum mismatch, file needs downloading"
-
-[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=503303 503303]
-in [http://packages.debian.org/lenny/upgrade-reports upgrade-reports]
-"etch -> lenny minimal chrrot upgrade fails due to Conflicts/Pre-Depends loop"
-
-[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=503532 503532]
-in [http://packages.debian.org/lenny/dbus dbus]
-"send_requested_reply="true" allows all non-reply messages"
-
[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=503712 503712]
in [http://packages.debian.org/lenny/ghostscript ghostscript]
"etch->lenny upgrade left the system in broken state"
-[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504524 504524]
-in [http://packages.debian.org/lenny/sun-java6 sun-java6]
-"AWT_TOOLKIT=MToolkit causes java to segfault on amd64"
-
[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504661 504661]
in [http://packages.debian.org/lenny/nvidia-glx-legacy-96xx-dev nvidia-glx-legacy-96xx-dev]
"nvidia-glx-legacy-96xx-dev: /usr/lib/libGL.so symlink broken"
in [http://packages.debian.org/lenny/network-manager network-manager]
"Updating to lenny failed when NetworkManager got updated"
-[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=506853 506853]
-in [http://packages.debian.org/lenny/libgnutls26 libgnutls26]
-"libgnutls26: 2.4.2-3 breaks OpenLDAP access"
-
-[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507003 507003]
-in [http://packages.debian.org/lenny/open-iscsi open-iscsi]
-"initiatorname.iscsi should maybe not be in /etc"
-
= Unclassified Security =
[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=505563 505563]
in [http://packages.debian.org/lenny/icedove icedove]
"Mozilla Thunderbird Multiple Vulnerabilities"
-[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=506353 506353]
-in [http://packages.debian.org/lenny/mailscanner mailscanner]
-"CVE-2008-5312/3: mailscanner might allow local users to overwrite arbitrary files via a symlink attack"
-
[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507165 507165]
in [http://packages.debian.org/lenny/xine-lib xine-lib]
"xine-lib: CVE-2008-5242 heap-based buffer overflow"
in [http://packages.debian.org/lenny/xine-lib xine-lib]
"xine-lib: CVE-2008-5246 heap overflow"
-[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=506741 506741]
-in [http://packages.debian.org/lenny/wireshark wireshark]
-"wireshark: DoS caused by sending a SMTP request with large content"
-
[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504977 504977]
in [http://packages.debian.org/lenny/ffmpeg-debian ffmpeg-debian]
"ffmpeg-debian: Several security issues"
-[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504771 504771]
-in [http://packages.debian.org/lenny/wordpress wordpress]
-"wordpress can be subject of delayed attacks via cookies"
-
-[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504283 504283]
-in [http://packages.debian.org/lenny/egroupware-core egroupware-core]
-"CVE-2007-3215: phpmailer issue (embedded code-copy)"
-
= Fresh bugs =
These are very recent and presumably will get dealt with by the package maintainers without help.
in [http://packages.debian.org/lenny/mdadm mdadm]
"mdadm: initramfs-tools script is broken, system with root on RAID won't boot"
-[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507947 507947]
-in [http://packages.debian.org/lenny/moodle moodle]
-"moodle: html2text.php is not DFSG-free"
-
[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507996 507996]
in [http://packages.debian.org/lenny/uim-tcode uim-tcode]
"mazegaki conversion cannot be used"
-[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=508091 508091]
-in [http://packages.debian.org/lenny/tuxguitar tuxguitar]
-"maintainer address bounces"
-
[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=508124 508124]
in [http://packages.debian.org/lenny/python-m2crypto python-m2crypto]
"Yum crashes when setting-up a CentOS chroot OS"
These look like good progress is being made and they'll get fixed
soon. Do we need a DD to do an NMU on any of these?
+[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504283 504283]
+in [http://packages.debian.org/lenny/egroupware-core egroupware-core]
+"CVE-2007-3215: phpmailer issue (embedded code-copy)"
+
[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507316 507316]
in [http://packages.debian.org/lenny/smarty smarty]
"smarty: Non-free logo included in package"
in [http://packages.debian.org/lenny/bind9 bind9]
"bind9: bind crashes with a list for allow-update"
+[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=503532 503532]
+in [http://packages.debian.org/lenny/dbus dbus]
+"send_requested_reply="true" allows all non-reply messages"
+
+[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=506741 506741]
+in [http://packages.debian.org/lenny/wireshark wireshark]
+"wireshark: DoS caused by sending a SMTP request with large content"
+
+[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=503303 503303]
+in [http://packages.debian.org/lenny/upgrade-reports upgrade-reports]
+"etch -> lenny minimal chrrot upgrade fails due to Conflicts/Pre-Depends loop"
+
+[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504524 504524]
+in [http://packages.debian.org/lenny/sun-java6 sun-java6]
+"AWT_TOOLKIT=MToolkit causes java to segfault on amd64"
= Not much of use one can do =
in [http://packages.debian.org/lenny/xml2rfc xml2rfc]
"Yet another boilerplate change"
+[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=490999 490999]
+in [http://packages.debian.org/lenny/libqt3-mt libqt3-mt]
+"kicker: crashes on startup"
+
+[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507947 507947]
+in [http://packages.debian.org/lenny/moodle moodle]
+"moodle: html2text.php is not DFSG-free"
+
+[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=495232 495232]
+in [http://packages.debian.org/lenny/quagga quagga]
+"quagga: zebra ignores routes added via command line"
+
+(misc)
+
+[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=508091 508091]
+in [http://packages.debian.org/lenny/tuxguitar tuxguitar]
+"maintainer address bounces"
+
+(trivial fix may cause regression, may punt)
+
+[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507003 507003]
+in [http://packages.debian.org/lenny/open-iscsi open-iscsi]
+"initiatorname.iscsi should maybe not be in /etc"
+
+(legal issue involving non-free file)
+
+[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=502751 502751]
+in [http://packages.debian.org/lenny/clamav-getfiles clamav-getfiles]
+"clamav-getfiles: piuparts test fails: eicar.com md5sum mismatch, file needs downloading"
+
+[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=506353 506353]
+in [http://packages.debian.org/lenny/mailscanner mailscanner]
+"CVE-2008-5312/3: mailscanner might allow local users to overwrite arbitrary files via a symlink attack"
+
= Flamewars =
You might enjoy reading these, but they may not be good targets to fix.
in [http://packages.debian.org/lenny/otrs2 otrs2]
"otrs2 - makes files in /usr writable by non-root"
+[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504771 504771]
+in [http://packages.debian.org/lenny/wordpress wordpress]
+"wordpress can be subject of delayed attacks via cookies"
+
For this one, the actual flameware is off the bug report log.
[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=497823 497823]
[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=503907 503907]
in [http://packages.debian.org/lenny/libwebkit-1.0-1 libwebkit-1.0-1]
"epiphany-webkit: Crashes at startup whenever I go to a site."
+
+
+= Waiting on feedback =
+
+[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=502140 502140]
+in [http://packages.debian.org/lenny/pam pam]
+"cannot unlock screen during etch -> lenny transition"
+(hartmans added comment)
+
+= Fixed by SIPB! =
+[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=436140 436140]
+in [http://packages.debian.org/lenny/installation-reports installation-reports]
+"cdrom: Most of the system's files have a future timestamp causing at least update/config problems."
+(closed by wdaher)
+
+[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=476525 476525]
+in [http://packages.debian.org/lenny/python-hid python-hid]
+"python-hid: hid module will not import since python policy transition"
+(tabbott)
+
+[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507071 507071]
+[http://packages.debian.org/lenny/racoon racoon]
+"racoon - Fails after upgrade: symbol lookup error: /usr/sbin/racoon: undefined symbol: libipsec_opt"
+(fixed by broder)
+
+[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507072 507072]
+in [http://packages.debian.org/lenny/ipsec-tools ipsec-tools]
+"libipsec0 packaged in ipsec-tools without development headers"
+(downgraded by hartmans)
+
+[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504626 504626]
+in [http://packages.debian.org/lenny/nvidia-glx nvidia-glx]
+"[nvidia-glx] Quietly drops support for several chipsets"
+(downgraded by nelhage)