X-Git-Url: https://sipb.mit.edu/gitweb.cgi/wiki.git/blobdiff_plain/112f5f52c4fc05e088732c397d5cc54ccb45efba..6158165662e78809494e5aeff1b30f2ba2aaa675:/doc/LennyBugsAll diff --git a/doc/LennyBugsAll b/doc/LennyBugsAll index 76ece82..5ff7f2a 100644 --- a/doc/LennyBugsAll +++ b/doc/LennyBugsAll @@ -16,11 +16,6 @@ in [http://packages.debian.org/lenny/initramfs-tools initramfs-tools] "/init exports MODPROBE_OPTIONS=-qb" [[BR]](Note: real bug report is near bottom.) -[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=476525 476525] -in [http://packages.debian.org/lenny/python-hid python-hid] -"python-hid: hid module will not import since python policy transition" -[[BR]](Note: have patch, looks messy, looks like not-too-hard bug to fix well.) - [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=481072 481072] in [http://packages.debian.org/lenny/dk-filter dk-filter] "dk-filter reliably crashes upon connection from postfix" @@ -35,16 +30,6 @@ in [http://packages.debian.org/lenny/rtorrent rtorrent] "crash rtorrent by scgi-interface (function: 'fi.get_filename_last')" [[BR]]This is fixed in experimental, but in a newer, less-stable version; Someone might be able to backport the fix. -These ones are only about 2 weeks old: - -[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507071 507071] -in [http://packages.debian.org/lenny/racoon racoon] -"racoon - Fails after upgrade: symbol lookup error: /usr/sbin/racoon: undefined symbol: libipsec_opt" - -[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507072 507072] -in [http://packages.debian.org/lenny/ipsec-tools ipsec-tools] -"libipsec0 packaged in ipsec-tools without development headers" - = Specific hardware = If you have the relevant hardware you could help a lot. @@ -112,14 +97,6 @@ in [http://packages.debian.org/lenny/pam pam] Please read these reports and figure out what category they belong in. Or make a new category. -[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=436140 436140] -in [http://packages.debian.org/lenny/installation-reports installation-reports] -"cdrom: Most of the system's files have a future timestamp causing at least update/config problems." - -[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=490999 490999] -in [http://packages.debian.org/lenny/libqt3-mt libqt3-mt] -"kicker: crashes on startup" - [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=494293 494293] in [http://packages.debian.org/lenny/installation-reports installation-reports] "installation-reports: Grub error: not a regular file..." @@ -132,26 +109,10 @@ in [http://packages.debian.org/lenny/quagga quagga] in [http://packages.debian.org/lenny/oss-compat oss-compat] "oss-compat: modules are not loaded" -[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=502751 502751] -in [http://packages.debian.org/lenny/clamav-getfiles clamav-getfiles] -"clamav-getfiles: piuparts test fails: eicar.com md5sum mismatch, file needs downloading" - -[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=503303 503303] -in [http://packages.debian.org/lenny/upgrade-reports upgrade-reports] -"etch -> lenny minimal chrrot upgrade fails due to Conflicts/Pre-Depends loop" - -[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=503532 503532] -in [http://packages.debian.org/lenny/dbus dbus] -"send_requested_reply="true" allows all non-reply messages" - [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=503712 503712] in [http://packages.debian.org/lenny/ghostscript ghostscript] "etch->lenny upgrade left the system in broken state" -[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504524 504524] -in [http://packages.debian.org/lenny/sun-java6 sun-java6] -"AWT_TOOLKIT=MToolkit causes java to segfault on amd64" - [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504661 504661] in [http://packages.debian.org/lenny/nvidia-glx-legacy-96xx-dev nvidia-glx-legacy-96xx-dev] "nvidia-glx-legacy-96xx-dev: /usr/lib/libGL.so symlink broken" @@ -160,14 +121,6 @@ in [http://packages.debian.org/lenny/nvidia-glx-legacy-96xx-dev nvidia-glx-legac in [http://packages.debian.org/lenny/network-manager network-manager] "Updating to lenny failed when NetworkManager got updated" -[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=506853 506853] -in [http://packages.debian.org/lenny/libgnutls26 libgnutls26] -"libgnutls26: 2.4.2-3 breaks OpenLDAP access" - -[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507003 507003] -in [http://packages.debian.org/lenny/open-iscsi open-iscsi] -"initiatorname.iscsi should maybe not be in /etc" - = Unclassified Security = [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=505563 505563] @@ -186,22 +139,10 @@ in [http://packages.debian.org/lenny/xine-lib xine-lib] in [http://packages.debian.org/lenny/xine-lib xine-lib] "xine-lib: CVE-2008-5246 heap overflow" -[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=506741 506741] -in [http://packages.debian.org/lenny/wireshark wireshark] -"wireshark: DoS caused by sending a SMTP request with large content" - [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504977 504977] in [http://packages.debian.org/lenny/ffmpeg-debian ffmpeg-debian] "ffmpeg-debian: Several security issues" -[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504771 504771] -in [http://packages.debian.org/lenny/wordpress wordpress] -"wordpress can be subject of delayed attacks via cookies" - -[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504283 504283] -in [http://packages.debian.org/lenny/egroupware-core egroupware-core] -"CVE-2007-3215: phpmailer issue (embedded code-copy)" - = Fresh bugs = These are very recent and presumably will get dealt with by the package maintainers without help. @@ -246,18 +187,10 @@ in [http://packages.debian.org/lenny/asterisk asterisk] in [http://packages.debian.org/lenny/mdadm mdadm] "mdadm: initramfs-tools script is broken, system with root on RAID won't boot" -[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507947 507947] -in [http://packages.debian.org/lenny/moodle moodle] -"moodle: html2text.php is not DFSG-free" - [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507996 507996] in [http://packages.debian.org/lenny/uim-tcode uim-tcode] "mazegaki conversion cannot be used" -[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=508091 508091] -in [http://packages.debian.org/lenny/tuxguitar tuxguitar] -"maintainer address bounces" - [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=508124 508124] in [http://packages.debian.org/lenny/python-m2crypto python-m2crypto] "Yum crashes when setting-up a CentOS chroot OS" @@ -331,6 +264,10 @@ in [http://packages.debian.org/lenny/libexif-gtk-dev libexif-gtk-dev] These look like good progress is being made and they'll get fixed soon. Do we need a DD to do an NMU on any of these? +[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504283 504283] +in [http://packages.debian.org/lenny/egroupware-core egroupware-core] +"CVE-2007-3215: phpmailer issue (embedded code-copy)" + [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507316 507316] in [http://packages.debian.org/lenny/smarty smarty] "smarty: Non-free logo included in package" @@ -383,6 +320,21 @@ in [http://packages.debian.org/lenny/phppgadmin phppgadmin] in [http://packages.debian.org/lenny/bind9 bind9] "bind9: bind crashes with a list for allow-update" +[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=503532 503532] +in [http://packages.debian.org/lenny/dbus dbus] +"send_requested_reply="true" allows all non-reply messages" + +[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=506741 506741] +in [http://packages.debian.org/lenny/wireshark wireshark] +"wireshark: DoS caused by sending a SMTP request with large content" + +[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=503303 503303] +in [http://packages.debian.org/lenny/upgrade-reports upgrade-reports] +"etch -> lenny minimal chrrot upgrade fails due to Conflicts/Pre-Depends loop" + +[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504524 504524] +in [http://packages.debian.org/lenny/sun-java6 sun-java6] +"AWT_TOOLKIT=MToolkit causes java to segfault on amd64" = Not much of use one can do = @@ -404,6 +356,32 @@ in [http://packages.debian.org/lenny/amule-daemon amule-daemon] in [http://packages.debian.org/lenny/xml2rfc xml2rfc] "Yet another boilerplate change" +[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=490999 490999] +in [http://packages.debian.org/lenny/libqt3-mt libqt3-mt] +"kicker: crashes on startup" + +[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507947 507947] +in [http://packages.debian.org/lenny/moodle moodle] +"moodle: html2text.php is not DFSG-free" + +(misc) + +[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=508091 508091] +in [http://packages.debian.org/lenny/tuxguitar tuxguitar] +"maintainer address bounces" + +(trivial fix may cause regression, may punt) + +[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507003 507003] +in [http://packages.debian.org/lenny/open-iscsi open-iscsi] +"initiatorname.iscsi should maybe not be in /etc" + +(legal issue involving non-free file) + +[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=502751 502751] +in [http://packages.debian.org/lenny/clamav-getfiles clamav-getfiles] +"clamav-getfiles: piuparts test fails: eicar.com md5sum mismatch, file needs downloading" + = Flamewars = You might enjoy reading these, but they may not be good targets to fix. @@ -412,6 +390,10 @@ You might enjoy reading these, but they may not be good targets to fix. in [http://packages.debian.org/lenny/otrs2 otrs2] "otrs2 - makes files in /usr writable by non-root" +[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504771 504771] +in [http://packages.debian.org/lenny/wordpress wordpress] +"wordpress can be subject of delayed attacks via cookies" + For this one, the actual flameware is off the bug report log. [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=497823 497823] @@ -516,3 +498,30 @@ This one is fixed in experimental: [http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=503907 503907] in [http://packages.debian.org/lenny/libwebkit-1.0-1 libwebkit-1.0-1] "epiphany-webkit: Crashes at startup whenever I go to a site." + + +== Fixed by SIPB! == +[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=436140 436140] +in [http://packages.debian.org/lenny/installation-reports installation-reports] +"cdrom: Most of the system's files have a future timestamp causing at least update/config problems." +(closed by wdaher) + +[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=476525 476525] +in [http://packages.debian.org/lenny/python-hid python-hid] +"python-hid: hid module will not import since python policy transition" +(tabbott) + +[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507071 507071] +[http://packages.debian.org/lenny/racoon racoon] +"racoon - Fails after upgrade: symbol lookup error: /usr/sbin/racoon: undefined symbol: libipsec_opt" +(fixed by broder) + +[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507072 507072] +in [http://packages.debian.org/lenny/ipsec-tools ipsec-tools] +"libipsec0 packaged in ipsec-tools without development headers" +(downgraded by hartmans) + +[http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=504626 504626] +in [http://packages.debian.org/lenny/nvidia-glx nvidia-glx] +"[nvidia-glx] Quietly drops support for several chipsets" +(downgraded by nelhage)