Preparation of Debian GNU/Linux 3.0r3

Posted by dave on Mar 26, 2004 5:35 PM EDT
Mailing list
Mail this story
Print this story

I am preparing the third revision of the current stable Debian distribution (woody) and will infrequently send reports so people can actually comment on it and intervene whenever this is required.



--cjNiBkmi8s9yAE0W Content-Type: text/plain; charset=iso-8859-1 Content-Disposition: inline Content-Transfer-Encoding: quoted-printable

An up-to-date version is at .

I am preparing the third revision of the current stable Debian distribution (woody) and will infrequently send reports so people can actually comment on it and intervene whenever this is required.

If you disagree with one bit or another, please reply to this mail and explain why these things should be handled differently. There is still time to reconsider.

The plan is to release this revision at some time in the future. An ftpmaster still has to give the final approval for each package since they are responsible for the archive. However, I will try to make their work as easy as possible in the hope to get the next revision out properly.

The regulations for stable are quite conservative. The requirements for packages to get into stable are:

1. The package fixes a security problem. An advisory by our own Security Team is required. Updates need to be approved by the security team.

2. The package fixes a critical bug which can lead into data loss, data corruption, or an overly broken system, or the package is broken or not usable (anymore).

3. The stable version of the package is not installable at all due to broken or unmet dependencies or broken installation scripts.

4. All released architectures have to be in sync.

5. If it is a kernel package, I can detect a similar amount of packages to remove, preferably older versions of the new packages.

It is (or (and (or 1 2 3) 4) 5)

Regular bugs and upgrade problems don't get fixed in new revisions for the stable distribution. They should instead be documented in the Release Notes which are maintained by Rob Bradford and are found at .

Packages, which will most probably be rejected:

. Packages that fix non-critical bugs.

. Misplaced uploads, i.e. packages that were uploaded to 'stable unstable' or 'frozen unstable' or similar.

. Packages for which its binary packages are out of sync with regard to all supported architectures in the stable distribution.

. Binary packages for which the source got lost somehow.

Due to the number of recent kernel vulnerabilities this update will contain several updated kernel packages. This poses a threat to our users since the correction for do_brk() (CAN-2003-0961) changes the binary compatibility of the kernel, hence local or vendor-provided modules won't work anymore. As a result i386 kernels cannot be exchanged, but for most other architectures this is possible.

Accepted Packages -----------------

These packages will be installed into the stable Debian distribution and will be part of the next revision.

bind stable 1:8.3.3-2.0woody1 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc source bind updates 1:8.3.3-2.0woody2 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc source

DSA 409 bind - denial of service

bind9-doc stable 1:9.2.1-2.woody.1 all bind9-doc updates 1:9.2.1-2.woody.2 all bind9-host stable 1:9.2.1-2.woody.1 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc bind9-host updates 1:9.2.1-2.woody.2 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc bind9 stable 1:9.2.1-2.woody.1 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc source bind9 updates 1:9.2.1-2.woody.2 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc source dnsutils stable 1:9.2.1-2.woody.1 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc dnsutils updates 1:9.2.1-2.woody.2 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc libbind-dev stable 1:9.2.1-2.woody.1 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc libbind-dev updates 1:9.2.1-2.woody.2 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc libdns5 stable 1:9.2.1-2.woody.1 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc libdns5 updates 1:9.2.1-2.woody.2 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc libisc4 stable 1:9.2.1-2.woody.1 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc libisc4 updates 1:9.2.1-2.woody.2 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc libisccc0 stable 1:9.2.1-2.woody.1 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc libisccc0 updates 1:9.2.1-2.woody.2 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc libisccfg0 stable 1:9.2.1-2.woody.1 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc libisccfg0 updates 1:9.2.1-2.woody.2 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc liblwres1 stable 1:9.2.1-2.woody.1 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc liblwres1 updates 1:9.2.1-2.woody.2 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc lwresd stable 1:9.2.1-2.woody.1 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc lwresd updates 1:9.2.1-2.woody.2 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc

No change upload to clean up parser errors.... Closes: #179311

The old version can't parse properly on S/390, hence needs a rebuilt, no source change.

calife stable 2.8.4c-1 alpha arm hppa i386 ia64 m68k mips mi= psel powerpc s390 sparc source calife updates 2.8.4c-1woody1 alpha arm hppa i386 ia64 m68k mips mi= psel powerpc s390 sparc source

DSA 461 calife - buffer overflow

cfs stable 1.4.1-7 alpha arm hppa i386 ia64 m68k mips mipsel= powerpc s390 sparc source cfs updates 1.4.1-7.1 alpha arm hppa i386 ia64 m68k mips mipsel= powerpc s390 sparc source

upload to woody; cfs is not usable on s390 due to an internal compiler error (most probably), see bug #151564; needs to be rebuilt with gcc-2.95 from woody 3.0r1; no more changes than this changelog entry. (Bug#151564)

cgiemail stable 1.6-14 alpha arm hppa i386 ia64 m68k mips mips= el powerpc s390 sparc source cgiemail updates 1.6-14woody1 alpha arm hppa i386 ia64 m68k mips mips= el powerpc s390 sparc source

DSA 437 cgiemail - open mail relay

conquest stable 7.1.1-6 alpha arm hppa i386 ia64 m68k mips mip= sel powerpc s390 sparc source conquest updates 7.1.1-6woody2 alpha arm hppa i386 ia64 m68k mips mip= sel powerpc s390 sparc source

DSA 398 conquest - buffer overflow

Fix group-checking in postinst and postrm, which makes updates impossible. closes: Bug#220650

courier-authpostgresql stable 0.37.3-3 alpha arm hppa i386 ia64 m68k= mips mipsel powerpc s390 sparc courier-authpostgresql updates 0.37.3-3.3 alpha arm hppa i386 ia64 m68k= mips mipsel powerpc s390 sparc courier-imap-ssl stable 1.4.3-3 alpha arm hppa i386 ia64 m68k= mips mipsel powerpc s390 sparc courier-imap-ssl updates 1.4.3-3.3 alpha arm hppa i386 ia64 m68k= mips mipsel powerpc s390 sparc courier-mta-ssl stable 0.37.3-3 alpha arm hppa i386 ia64 m68k= mips mipsel powerpc s390 sparc courier-mta-ssl updates 0.37.3-3.3 alpha arm hppa i386 ia64 m68k= mips mipsel powerpc s390 sparc courier-pop-ssl stable 0.37.3-3 alpha arm hppa i386 ia64 m68k= mips mipsel powerpc s390 sparc courier-pop-ssl updates 0.37.3-3.3 alpha arm hppa i386 ia64 m68k= mips mipsel powerpc s390 sparc courier-ssl stable 0.37.3-3 alpha arm hppa i386 ia64 m68k= mips mipsel powerpc s390 sparc source courier-ssl updates 0.37.3-3.3 alpha arm hppa i386 ia64 m68k= mips mipsel powerpc s390 sparc source

DSA-247 courier-ssl - missing input sanitizing

crawl stable 1:4.0.0beta23-2 alpha arm hppa i386 ia64 m68k = mips mipsel powerpc s390 sparc source crawl updates 1:4.0.0beta23-2woody1 alpha arm hppa i386 ia64 m68k = mips mipsel powerpc s390 sparc source

DSA 432 crawl - buffer overflow

cvs stable 1.11.1p1debian-8.1 alpha arm hppa i386 ia64 m68k = mips mipsel powerpc s390 sparc source cvs updates 1.11.1p1debian-9 alpha arm hppa i386 ia64 m68k = mips mipsel powerpc s390 sparc source

DSA 422 cvs - remote vulnerability

debootstrap-udeb updates 0.1.17.7woody1 alpha arm hppa i386 ia64 m68k m= ips mipsel powerpc s390 sparc debootstrap stable 0.1.17 alpha arm hppa i386 ia64 m68k m= ips mipsel powerpc s390 sparc source debootstrap updates 0.1.17.7woody1 alpha arm hppa i386 ia64 m68k m= ips mipsel powerpc s390 sparc source

* NMU

* Rebuild of 0.1.17.8 for woody to pull in race condition fix and missing package dependency fixes, among others.

* NMU versioned the way it is so that dpkg doesn't think 0.1.17.[1-7] is newer than this release, but "upgrades" (actually sidegrades) to 0.1.17.8 are still straightforward.

TODO: Why?

James once said that -udeb packages won't appear in stable, so this should not be a problem.

Aha, Ray Dassen and Lucas Albers explained that a dependency to binutils is missing so that debootstrap cannot use ar to unpack the .deb files and hence cannot work at all if binutils isn't installed "by accident", which is fixed in 0.1.17.7woody1. (Bug#223835)

Documenting such changes would be too much, dear Branden? Wasn't you one of those requesting properly written changelog entries?

ecartis stable 0.129a+1.0.0-snap20020514-1.1 alpha arm hppa i386 ia= 64 m68k mips mipsel powerpc s390 sparc source ecartis updates 0.129a+1.0.0-snap20020514-1.2 alpha arm hppa i386 ia= 64 m68k mips mipsel powerpc s390 sparc source

DSA 467 ecartis - several vulnerabilities

emil stable 2.1.0-beta9-11 alpha arm hppa i386 ia64 m68k m= ips mipsel powerpc s390 sparc source emil updates 2.1.0-beta9-11woody1 alpha arm hppa i386 ia64 m68k m= ips mipsel powerpc s390 sparc source

DSA 467 emil - multiple vulnerabilities

ethereal stable 0.9.4-1woody5 alpha arm hppa i386 ia64 m68k mips mip= sel powerpc s390 sparc source ethereal updates 0.9.4-1woody6 alpha arm hppa i386 ia64 m68k mips mip= sel powerpc s390 sparc source

DSA 407 ethereal - buffer overflows

fsp stable 2.81.b3-3.1 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc source fsp updates 2.81.b3-3.1woody1 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc source

DSA 416 fsp - buffer overflow, directory traversal

gaim stable 1:0.58-2.3 alpha arm hppa i386 ia64 m68k mips mipsel= powerpc s390 sparc source gaim updates 1:0.58-2.4 alpha arm hppa i386 ia64 m68k mips mipsel= powerpc s390 sparc source

DSA 434 gaim - several vulnerabilities

gdk-pixbuf stable 0.17.0-2 source gdk-pixbuf updates 0.17.0-2woody1 source libgdk-pixbuf-dev stable 0.17.0-2 alpha arm hppa i386 ia64= m68k mips mipsel powerpc s390 sparc libgdk-pixbuf-dev updates 0.17.0-2woody1 alpha arm hppa i386 ia64= m68k mips mipsel powerpc s390 sparc libgdk-pixbuf-gnome-dev stable 0.17.0-2 alpha arm hppa i386 ia64= m68k mips mipsel powerpc s390 sparc libgdk-pixbuf-gnome-dev updates 0.17.0-2woody1 alpha arm hppa i386 ia64= m68k mips mipsel powerpc s390 sparc libgdk-pixbuf-gnome2 stable 0.17.0-2 alpha arm hppa i386 ia64= m68k mips mipsel powerpc s390 sparc libgdk-pixbuf-gnome2 updates 0.17.0-2woody1 alpha arm hppa i386 ia64= m68k mips mipsel powerpc s390 sparc libgdk-pixbuf2 stable 0.17.0-2 alpha arm hppa i386 ia64= m68k mips mipsel powerpc s390 sparc libgdk-pixbuf2 updates 0.17.0-2woody1 alpha arm hppa i386 ia64= m68k mips mipsel powerpc s390 sparc

DSA 464 gdk-pixbuf - broken image handling

gnupg stable 1.0.6-4 alpha arm hppa i386 ia64 m68k mips mip= sel powerpc s390 sparc source gnupg updates 1.0.6-4woody3 alpha arm hppa i386 ia64 m68k mips mip= sel powerpc s390 sparc source

DSA 429 gnupg - cryptographic weakness

heimdal-clients-x stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc heimdal-clients-x updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc heimdal-clients stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc heimdal-clients updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc heimdal-dev stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc heimdal-dev updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc heimdal-docs stable 0.4e-7.woody.1 all heimdal-docs updates 0.4e-7.woody.8 all heimdal-kdc stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc heimdal-kdc updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc heimdal-lib stable 0.4e-7.woody.1 all heimdal-lib updates 0.4e-7.woody.8 all heimdal-servers-x stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc heimdal-servers-x updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc heimdal-servers stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc heimdal-servers updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc heimdal stable 0.4e-7.woody.1 source heimdal updates 0.4e-7.woody.8 source libasn1-5-heimdal stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libasn1-5-heimdal updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libcomerr1-heimdal stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libcomerr1-heimdal updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libgssapi1-heimdal stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libgssapi1-heimdal updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libhdb7-heimdal stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libhdb7-heimdal updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libkadm5clnt4-heimdal stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libkadm5clnt4-heimdal updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libkadm5srv7-heimdal stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libkadm5srv7-heimdal updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libkafs0-heimdal stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libkafs0-heimdal updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libkrb5-17-heimdal stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libkrb5-17-heimdal updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libotp0-heimdal stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libotp0-heimdal updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libroken9-heimdal stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libroken9-heimdal updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libsl0-heimdal stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libsl0-heimdal updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libss0-heimdal stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libss0-heimdal updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc

DSA-269 heimdal - Cryptographic weakness

iptables-dev stable 1.2.6a-5 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc iptables-dev updates 1.2.6a-5.0woody1 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc iptables stable 1.2.6a-5 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc source iptables updates 1.2.6a-5.0woody1 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc source

Removed extra space character from the init script. The bug causes ruleset save failures and can silently truncate exisiting rulesets to zero bytes. Reported by Jan Minar. Thanks. (closes: Bug#225805)

This bug can help the attacker to bring the firewalling down.

ircii stable 20020322-1 alpha arm hppa i386 ia64 m68k mips mips= el powerpc s390 sparc source ircii updates 20020322-1.1 alpha arm hppa i386 ia64 m68k mips mips= el powerpc s390 sparc source

DSA-291 ircii - buffer overflows

jitterbug stable 1.6.2-4.2 alpha arm hppa i386 ia64 m68k mips m= ipsel powerpc s390 sparc source jitterbug updates 1.6.2-4.2woody2 alpha arm hppa i386 ia64 m68k mips m= ipsel powerpc s390 sparc source

DSA 420 jitterbug - improperly sanitised input

kannel stable 1.1.5-2 alpha arm hppa i386 ia64 m68k mips powerp= c s390 sparc source kannel updates 1.1.5-2 mipsel

Sync architectures

kdelibs-dev stable 4:2.2.2-13.woody.8 alpha arm hppa i386 ia64 m68k = mips mipsel powerpc s390 sparc kdelibs-dev updates 4:2.2.2-13.woody.9 alpha arm hppa i386 ia64 m68k = mips mipsel powerpc s390 sparc kdelibs3-bin stable 4:2.2.2-13.woody.8 alpha arm hppa i386 ia64 m68k = mips mipsel powerpc s390 sparc kdelibs3-bin updates 4:2.2.2-13.woody.9 alpha arm hppa i386 ia64 m68k = mips mipsel powerpc s390 sparc kdelibs3-cups stable 4:2.2.2-13.woody.8 alpha arm hppa i386 ia64 m68k = mips mipsel powerpc s390 sparc kdelibs3-cups updates 4:2.2.2-13.woody.9 alpha arm hppa i386 ia64 m68k = mips mipsel powerpc s390 sparc kdelibs3-doc stable 4:2.2.2-13.woody.8 all kdelibs3-doc updates 4:2.2.2-13.woody.9 all kdelibs3 stable 4:2.2.2-13.woody.8 alpha arm hppa i386 ia64 m68k = mips mipsel powerpc s390 sparc kdelibs3 updates 4:2.2.2-13.woody.9 alpha arm hppa i386 ia64 m68k = mips mipsel powerpc s390 sparc kdelibs stable 4:2.2.2-13.woody.8 source kdelibs updates 4:2.2.2-13.woody.9 source libarts-alsa stable 4:2.2.2-13.woody.8 alpha arm hppa i386 ia64 m68k = mips mipsel powerpc s390 sparc libarts-alsa updates 4:2.2.2-13.woody.9 alpha arm hppa i386 ia64 m68k = mips mipsel powerpc s390 sparc libarts-dev stable 4:2.2.2-13.woody.8 alpha arm hppa i386 ia64 m68k = mips mipsel powerpc s390 sparc libarts-dev updates 4:2.2.2-13.woody.9 alpha arm hppa i386 ia64 m68k = mips mipsel powerpc s390 sparc libarts stable 4:2.2.2-13.woody.8 alpha arm hppa i386 ia64 m68k = mips mipsel powerpc s390 sparc libarts updates 4:2.2.2-13.woody.9 alpha arm hppa i386 ia64 m68k = mips mipsel powerpc s390 sparc libkmid-alsa stable 4:2.2.2-13.woody.8 alpha arm hppa i386 ia64 m68k = mips mipsel powerpc s390 sparc libkmid-alsa updates 4:2.2.2-13.woody.9 alpha arm hppa i386 ia64 m68k = mips mipsel powerpc s390 sparc libkmid-dev stable 4:2.2.2-13.woody.8 alpha arm hppa i386 ia64 m68k = mips mipsel powerpc s390 sparc libkmid-dev updates 4:2.2.2-13.woody.9 alpha arm hppa i386 ia64 m68k = mips mipsel powerpc s390 sparc libkmid stable 4:2.2.2-13.woody.8 alpha arm hppa i386 ia64 m68k = mips mipsel powerpc s390 sparc libkmid updates 4:2.2.2-13.woody.9 alpha arm hppa i386 ia64 m68k = mips mipsel powerpc s390 sparc

DSA 459 kdelibs - cookie path traversal

kernel-image-2.2.20-amiga stable 2.2.20-2 m68k source kernel-image-2.2.20-amiga updates 2.2.20-4 m68k source

DSA 453 linux-kernel-2.2.20 - failing function and TLB flush

kernel-image-2.2.20-atari stable 2.2.20-1 m68k source kernel-image-2.2.20-atari updates 2.2.20-3 m68k source

DSA 453 linux-kernel-2.2.20 - failing function and TLB flush

kernel-image-2.2.20-bvme6000 stable 2.2.20-1 m68k source kernel-image-2.2.20-bvme6000 updates 2.2.20-3 m68k source

DSA 453 linux-kernel-2.2.20 - failing function and TLB flush

kernel-headers-2.2.20-compact stable 2.2.20-5woody3 i386 kernel-headers-2.2.20-compact updates 2.2.20-5woody5 i386 kernel-headers-2.2.20-idepci stable 2.2.20-5woody3 i386 kernel-headers-2.2.20-idepci updates 2.2.20-5woody5 i386 kernel-headers-2.2.20 stable 2.2.20-5woody3 i386 kernel-headers-2.2.20 updates 2.2.20-5woody5 i386 kernel-image-2.2.20-compact stable 2.2.20-5woody3 i386 kernel-image-2.2.20-compact updates 2.2.20-5woody5 i386 kernel-image-2.2.20-i386 stable 2.2.20-5woody3 source kernel-image-2.2.20-i386 updates 2.2.20-5woody5 source kernel-image-2.2.20-idepci stable 2.2.20-5woody3 i386 kernel-image-2.2.20-idepci updates 2.2.20-5woody5 i386 kernel-image-2.2.20 stable 2.2.20-5woody3 i386 kernel-image-2.2.20 updates 2.2.20-5woody5 i386

DSA 453 linux-kernel-2.2.20 - failing function and TLB flush

kernel-image-2.2.20-mac stable 2.2.20-1 m68k source kernel-image-2.2.20-mac updates 2.2.20-3 m68k source

DSA 453 linux-kernel-2.2.20 - failing function and TLB flush

kernel-image-2.2.20-mvme147 stable 2.2.20-1 m68k source kernel-image-2.2.20-mvme147 updates 2.2.20-3 m68k source

DSA 453 linux-kernel-2.2.20 - failing function and TLB flush

kernel-image-2.2.20-mvme16x stable 2.2.20-1 m68k source kernel-image-2.2.20-mvme16x updates 2.2.20-3 m68k source

DSA 453 linux-kernel-2.2.20 - failing function and TLB flush

kernel-headers-2.2.22 stable 2.2.22-1 alpha kernel-headers-2.2.22 updates 2.2.22-2 alpha kernel-image-2.2.22-alpha stable 2.2.22-1 source kernel-image-2.2.22-alpha updates 2.2.22-2 source kernel-image-2.2.22-generic stable 2.2.22-1 alpha kernel-image-2.2.22-generic updates 2.2.22-2 alpha kernel-image-2.2.22-jensen stable 2.2.22-1 alpha kernel-image-2.2.22-jensen updates 2.2.22-2 alpha kernel-image-2.2.22-nautilus stable 2.2.22-1 alpha kernel-image-2.2.22-nautilus updates 2.2.22-2 alpha kernel-image-2.2.22-smp stable 2.2.22-1 alpha kernel-image-2.2.22-smp updates 2.2.22-2 alpha

DSA 454 linux-kernel-2.2.20 - failing function and TLB flush

kernel-headers-2.4.17-ia64 stable 011226.13 ia64 kernel-headers-2.4.17-ia64 updates 011226.16 ia64 kernel-image-2.4.17-ia64 stable 011226.13 source kernel-image-2.4.17-ia64 updates 011226.16 source kernel-image-2.4.17-itanium-smp stable 011226.13 ia64 kernel-image-2.4.17-itanium-smp updates 011226.16 ia64 kernel-image-2.4.17-itanium stable 011226.13 ia64 kernel-image-2.4.17-itanium updates 011226.16 ia64 kernel-image-2.4.17-mckinley-smp stable 011226.13 ia64 kernel-image-2.4.17-mckinley-smp updates 011226.16 ia64 kernel-image-2.4.17-mckinley stable 011226.13 ia64 kernel-image-2.4.17-mckinley updates 011226.16 ia64 kernel-source-2.4.17-ia64 stable 011226.13 all kernel-source-2.4.17-ia64 updates 011226.16 all

DSA-444 linux-kernel-2.4.17-ia64 - missing function return value check

DSA-423 linux-kernel-2.4.17-ia64 - several vulnerabilities

kernel-headers-2.2.20 stable 2.2.20-3 powerpc kernel-headers-2.2.20 updates 2.2.20-3woody1 powerpc kernel-image-2.2.20-chrp stable 2.2.20-3 powerpc kernel-image-2.2.20-chrp updates 2.2.20-3woody1 powerpc kernel-image-2.2.20-pmac stable 2.2.20-3 powerpc kernel-image-2.2.20-pmac updates 2.2.20-3woody1 powerpc kernel-image-2.2.20-prep stable 2.2.20-3 powerpc kernel-image-2.2.20-prep updates 2.2.20-3woody1 powerpc kernel-patch-2.2.20-powerpc stable 2.2.20-3 all source kernel-patch-2.2.20-powerpc updates 2.2.20-3woody1 all source

DSA 453 linux-kernel-2.2.20 - failing function and TLB flush

kernel-patch-2.4.16-arm stable 20011222 all source kernel-patch-2.4.16-arm updates 20040204 all source

DSA 439 linux-kernel-2.4.16 - several vulnerabilities

kernel-headers-2.4.17-apus stable 2.4.17-3 powerpc kernel-headers-2.4.17-apus updates 2.4.17-4 powerpc kernel-image-2.4.17-apus stable 2.4.17-3 powerpc kernel-image-2.4.17-apus updates 2.4.17-4 powerpc kernel-image-apus stable 2.4.17-3 powerpc kernel-image-apus updates 2.4.17-4 powerpc kernel-patch-2.4.17-apus stable 2.4.17-3 powerpc source kernel-patch-2.4.17-apus updates 2.4.17-4 powerpc source

DSA 440 linux-kernel-2.4.17 - several vulnerabilities

kernel-headers-2.4.17 stable 2.4.17-0.020226.2.woody2 mips mips= el kernel-headers-2.4.17 updates 2.4.17-0.020226.2.woody5 mips mips= el kernel-image-2.4.17-r3k-kn02 stable 2.4.17-0.020226.2.woody2 mipsel kernel-image-2.4.17-r3k-kn02 updates 2.4.17-0.020226.2.woody5 mipsel kernel-image-2.4.17-r4k-ip22 stable 2.4.17-0.020226.2.woody2 mips kernel-image-2.4.17-r4k-ip22 updates 2.4.17-0.020226.2.woody5 mips kernel-image-2.4.17-r4k-kn04 stable 2.4.17-0.020226.2.woody2 mipsel kernel-image-2.4.17-r4k-kn04 updates 2.4.17-0.020226.2.woody5 mipsel kernel-image-2.4.17-r5k-ip22 stable 2.4.17-0.020226.2.woody2 mips kernel-image-2.4.17-r5k-ip22 updates 2.4.17-0.020226.2.woody5 mips kernel-patch-2.4.17-mips stable 2.4.17-0.020226.2.woody2 all source kernel-patch-2.4.17-mips updates 2.4.17-0.020226.2.woody5 all source mips-tools stable 2.4.17-0.020226.2.woody2 mipsel mips-tools updates 2.4.17-0.020226.2.woody5 mipsel

DSA 441 linux-kernel-2.4.17 - missing function return value check

kernel-patch-2.4.17-s390 stable 0.0.20020816-0.woody.1.1 all source kernel-patch-2.4.17-s390 updates 0.0.20020816-0.woody.2 all source

DSA 442 linux-kernel-2.4.17 - several vulnerabilities

kernel-headers-2.4.18 stable 2.4.18-1woody1 powerpc kernel-headers-2.4.18 updates 2.4.18-1woody4 powerpc kernel-image-2.4.18-newpmac stable 2.4.18-1woody1 powerpc kernel-image-2.4.18-newpmac updates 2.4.18-1woody4 powerpc kernel-image-2.4.18-powerpc-smp stable 2.4.18-1woody1 powerpc kernel-image-2.4.18-powerpc-smp updates 2.4.18-1woody4 powerpc kernel-image-2.4.18-powerpc stable 2.4.18-1woody1 powerpc kernel-image-2.4.18-powerpc updates 2.4.18-1woody4 powerpc kernel-patch-2.4.18-powerpc stable 2.4.18-1woody1 all source kernel-patch-2.4.18-powerpc updates 2.4.18-1woody4 all source

DSA 438 linux-kernel-2.4.18 - missing function return value check

kernel-headers-2.4.19 stable 2.4.19-0.020911.1.woody1 mips kernel-headers-2.4.19 updates 2.4.19-0.020911.1.woody3 mips kernel-image-2.4.19-r4k-ip22 stable 2.4.19-0.020911.1.woody1 mips kernel-image-2.4.19-r4k-ip22 updates 2.4.19-0.020911.1.woody3 mips kernel-image-2.4.19-r5k-ip22 stable 2.4.19-0.020911.1.woody1 mips kernel-image-2.4.19-r5k-ip22 updates 2.4.19-0.020911.1.woody3 mips kernel-patch-2.4.19-mips stable 2.4.19-0.020911.1.woody1 all source kernel-patch-2.4.19-mips updates 2.4.19-0.020911.1.woody3 all source mips-tools stable 2.4.19-0.020911.1.woody1 mips mips-tools updates 2.4.19-0.020911.1.woody3 mips

DSA 450 linux-kernel-2.4.19 - several vulnerabilities

kernel-doc-2.2.10 updates 2.2.10-2 all kernel-source-2.2.10 updates 2.2.10-2 all source

DSA 466 linux-kernel-2.2.10 - failing function and TLB flush

New package, but required to build existing packages in stable.

kernel-doc-2.2.19 updates 2.2.19.1-4woody1 all kernel-source-2.2.19 updates 2.2.19.1-4woody1 all source

DSA 453 linux-kernel-2.2.19 - several vulnerabilities

New package, but required to build existing packages in stable.

kernel-doc-2.2.20 updates 2.2.20-5woody3 all kernel-source-2.2.20 updates 2.2.20-5woody3 all source

DSA 336 - several vulnerabilities

DSA 453 linux-kernel-2.2.20 - failing function and TLB flush

New package, but required to build existing packages in stable.

kernel-doc-2.2.22 stable 2.2.22-1 all kernel-doc-2.2.22 updates 2.2.22-1woody1 all kernel-source-2.2.22 stable 2.2.22-1 all source kernel-source-2.2.22 updates 2.2.22-1woody1 all source

DSA 454 linux-kernel-2.2.22 - failing function and TLB flush

kernel-doc-2.4.17 stable 2.4.17-1woody1 all kernel-doc-2.4.17 updates 2.4.17-1woody2 all kernel-source-2.4.17 stable 2.4.17-1woody1 all source kernel-source-2.4.17 updates 2.4.17-1woody2 all source mkcramfs stable 2.4.17-1woody1 alpha arm hppa i386 ia64 m6= 8k mips mipsel powerpc s390 sparc mkcramfs updates 2.4.17-1woody2 alpha arm hppa i386 ia64 m6= 8k mips mipsel powerpc s390 sparc

DSA 444 linux-kernel-2.4.17-ia64 - missing function return value check

DSA 442 linux-kernel-2.4.17-s390 - several vulnerabilities

DSA 441 linux-kernel-2.4.17-mips+mipsel - missing function return value ch= eck

DSA 440 linux-kernel-2.4.17-powerpc-apus - several vulnerabilities

DSA 427 linux-kernel-2.4.17-mips+mipsel - missing boundary check

DSA 423 linux-kernel-2.4.17-ia64 - several vulnerabilities

kernel-doc-2.4.18 stable 2.4.18-13 all kernel-doc-2.4.18 updates 2.4.18-14.2 all kernel-source-2.4.18 stable 2.4.18-13 all source kernel-source-2.4.18 updates 2.4.18-14.2 all source

DSA 438 linux-kernel-2.4.18 - missing function return value check

kernel-doc-2.4.19 updates 2.4.19-4.woody1 all kernel-source-2.4.19 updates 2.4.19-4.woody1 all source

DSA 450 linux-kernel-2.4.19 - several vulnerabilities

New package, but required to build existing packages in stable.

heimdal-clients-x stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc heimdal-clients-x updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc heimdal-clients stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc heimdal-clients updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc heimdal-dev stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc heimdal-dev updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc heimdal-docs stable 0.4e-7.woody.1 all heimdal-docs updates 0.4e-7.woody.8 all heimdal-kdc stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc heimdal-kdc updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc heimdal-lib stable 0.4e-7.woody.1 all heimdal-lib updates 0.4e-7.woody.8 all heimdal-servers-x stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc heimdal-servers-x updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc heimdal-servers stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc heimdal-servers updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc heimdal stable 0.4e-7.woody.1 source heimdal updates 0.4e-7.woody.8 source libasn1-5-heimdal stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libasn1-5-heimdal updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libcomerr1-heimdal stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libcomerr1-heimdal updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libgssapi1-heimdal stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libgssapi1-heimdal updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libhdb7-heimdal stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libhdb7-heimdal updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libkadm5clnt4-heimdal stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libkadm5clnt4-heimdal updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libkadm5srv7-heimdal stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libkadm5srv7-heimdal updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libkafs0-heimdal stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libkafs0-heimdal updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libkrb5-17-heimdal stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libkrb5-17-heimdal updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libotp0-heimdal stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libotp0-heimdal updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libroken9-heimdal stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libroken9-heimdal updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libsl0-heimdal stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libsl0-heimdal updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libss0-heimdal stable 0.4e-7.woody.1 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc libss0-heimdal updates 0.4e-7.woody.8 alpha arm hppa i386 ia64 m= 68k mips mipsel powerpc s390 sparc

DSA-273 krb4 - Cryptographic weakness

lbreakout2 stable 2.2.2-1 alpha arm hppa i386 ia64 m68k mips mip= sel powerpc s390 sparc source lbreakout2 updates 2.2.2-1woody1 alpha arm hppa i386 ia64 m68k mips mip= sel powerpc s390 sparc source

DSA 445 lbreakout2 - buffer overflow

lftp stable 2.4.9-1 alpha arm hppa i386 ia64 m68k mips mip= sel powerpc s390 sparc source lftp updates 2.4.9-1woody2 alpha arm hppa i386 ia64 m68k mips mip= sel powerpc s390 sparc source

DSA 406 lftp - buffer overflow

libapache-mod-python stable 2:2.7.8-0.0woody1 alpha arm hppa i386 ia64= m68k mips mipsel powerpc s390 sparc source libapache-mod-python updates 2:2.7.8-0.0woody2 alpha arm hppa i386 ia64= m68k mips mipsel powerpc s390 sparc source

DSA 452 libapache-mod-python - denial of service

libmcrypt-dev stable 2.5.0-1 alpha arm hppa i386 ia64 m68k mips = mipsel powerpc s390 sparc libmcrypt-dev updates 2.5.0-1woody1 alpha arm hppa i386 ia64 m68k mips = mipsel powerpc s390 sparc libmcrypt4 stable 2.5.0-1 alpha arm hppa i386 ia64 m68k mips = mipsel powerpc s390 sparc libmcrypt4 updates 2.5.0-1woody1 alpha arm hppa i386 ia64 m68k mips = mipsel powerpc s390 sparc libmcrypt stable 2.5.0-1 source libmcrypt updates 2.5.0-1woody1 source

DSA-228 libmcrypt - buffer overflows and memory leak

libnids-dev stable 1.16-3 alpha arm hppa i386 ia64 m68k mips mip= sel powerpc s390 sparc libnids-dev updates 1.16-3woody1 alpha arm hppa i386 ia64 m68k mips mip= sel powerpc s390 sparc libnids1 stable 1.16-3 alpha arm hppa i386 ia64 m68k mips mip= sel powerpc s390 sparc libnids1 updates 1.16-3woody1 alpha arm hppa i386 ia64 m68k mips mip= sel powerpc s390 sparc libnids stable 1.16-3 source libnids updates 1.16-3woody1 source

DSA 410 libnids - buffer overflow

libxml-dev stable 1:1.8.17-2 alpha arm hppa i386 ia64 m68k mips = mipsel powerpc s390 sparc libxml-dev updates 1:1.8.17-2woody1 alpha arm hppa i386 ia64 m68k mips = mipsel powerpc s390 sparc libxml1 stable 1:1.8.17-2 alpha arm hppa i386 ia64 m68k mips = mipsel powerpc s390 sparc libxml1 updates 1:1.8.17-2woody1 alpha arm hppa i386 ia64 m68k mips = mipsel powerpc s390 sparc libxml stable 1:1.8.17-2 source libxml updates 1:1.8.17-2woody1 source

DSA 455 libxml - buffer overflows

libxml2-dev stable 2.4.19-4 alpha arm hppa i386 ia64 m68k mips m= ipsel powerpc s390 sparc libxml2-dev updates 2.4.19-4woody1 alpha arm hppa i386 ia64 m68k mips m= ipsel powerpc s390 sparc libxml2 stable 2.4.19-4 alpha arm hppa i386 ia64 m68k mips m= ipsel powerpc s390 sparc source libxml2 updates 2.4.19-4woody1 alpha arm hppa i386 ia64 m68k mips m= ipsel powerpc s390 sparc source

DSA 455 libxml - buffer overflows

libxslt1-dev stable 1.0.16-0.1 alpha arm hppa i386 ia64 m68k mips mips= el powerpc s390 sparc libxslt1-dev updates 1.0.16-0.2 alpha arm hppa i386 ia64 m68k mips mips= el powerpc s390 sparc libxslt1 stable 1.0.16-0.1 alpha arm hppa i386 ia64 m68k mips mips= el powerpc s390 sparc libxslt1 updates 1.0.16-0.2 alpha arm hppa i386 ia64 m68k mips mips= el powerpc s390 sparc libxslt stable 1.0.16-0.1 source libxslt updates 1.0.16-0.2 source xsltproc stable 1.0.16-0.1 alpha arm hppa i386 ia64 m68k mips mips= el powerpc s390 sparc xsltproc updates 1.0.16-0.2 alpha arm hppa i386 ia64 m68k mips mips= el powerpc s390 sparc

Include xsltInternals.h in transform.h, or else compilation might fail. Thanks to Marcel Meckel for reporting this. Renders the -dev package useless otherwise.

mailman stable 2.0.11-1woody5 alpha arm hppa i386 ia64 m68k mips mi= psel powerpc s390 sparc source mailman updates 2.0.11-1woody8 alpha arm hppa i386 ia64 m68k mips mi= psel powerpc s390 sparc source

DSA-436 mailman - several vulnerabilities

mc stable 4.5.55-1.2 alpha arm hppa i386 ia64 m68k mips = mipsel powerpc s390 sparc source mc updates 4.5.55-1.2woody2 alpha arm hppa i386 ia64 m68k mips = mipsel powerpc s390 sparc source

DSA 424 mc - buffer overflow

libmm11-dev stable 1.1.3-6.1 alpha arm hppa i386 ia64 m68k mips mipse= l powerpc s390 sparc libmm11-dev updates 1.1.3-6.2 alpha arm hppa i386 ia64 m68k mips mipse= l powerpc s390 sparc libmm11 stable 1.1.3-6.1 alpha arm hppa i386 ia64 m68k mips mipse= l powerpc s390 sparc libmm11 updates 1.1.3-6.2 alpha arm hppa i386 ia64 m68k mips mipse= l powerpc s390 sparc mm stable 1.1.3-6.1 source mm updates 1.1.3-6.2 source

Force the use of MMFILE shared memory. This should fix segfault problems with PHP4 on some architectures (closes: #136261). This bug relates to random crashes in PHP4 on some architectures which start and stop with seemingly innocuous changes in MM.

libapache-mod-auth-shadow stable 1.3-3 alpha arm hppa i386 ia= 64 m68k mips mipsel powerpc s390 sparc libapache-mod-auth-shadow updates 1.3-3.1woody.1 alpha arm hppa i386 ia= 64 m68k mips mipsel powerpc s390 sparc mod-auth-shadow stable 1.3-3 source mod-auth-shadow updates 1.3-3.1woody.1 source

DSA 421 mod-auth-shadow - password expiration

mpg123-esd stable 0.59r-13 alpha i386 powerpc mpg123-esd updates 0.59r-13woody2 alpha i386 powerpc mpg123-nas stable 0.59r-13 i386 mpg123-nas updates 0.59r-13woody2 i386 mpg123-oss-3dnow stable 0.59r-13 i386 mpg123-oss-3dnow updates 0.59r-13woody2 i386 mpg123-oss-i486 stable 0.59r-13 i386 mpg123-oss-i486 updates 0.59r-13woody2 i386 mpg123 stable 0.59r-13 alpha arm i386 m68k powerpc spa= rc source mpg123 updates 0.59r-13woody2 alpha arm hppa i386 m68k powerp= c sparc source

httpget.c: Fix heap overflow in http subsystem (CAN-2003-0865, BugTraq ID 8680). Closes: #212584

ncompress stable 4.2.4-9.1 alpha arm hppa i386 ia64 m68k powerpc s39= 0 sparc source ncompress updates 4.2.4-9.2 alpha arm hppa i386 ia64 m68k powerpc s39= 0 sparc source

Disallow maxbits less than 10, to avoid data corruption (closes: #220820).

Package is in non-free.

noffle stable 1.0.1-1 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc source noffle updates 1.0.1-1.1.woody.2 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc source

DSA 244 noffle - buffer overflows

pcmcia-modules-2.2.22-compact stable 3.1.33-6k1 i386 pcmcia-modules-2.2.22-idepci stable 3.1.33-6k1 i386 pcmcia-modules-2.2.22 stable 3.1.33-6k1 i386

Unsatisfiable Depends: kernel-image-2.2.22 (=3D 2.2.22-1)

libcgi-fast-perl stable 5.6.1-8.3 all libcgi-fast-perl updates 5.6.1-8.6 all libperl-dev stable 5.6.1-8.3 alpha arm hppa i386 ia64 m68k mips = mipsel powerpc s390 sparc libperl-dev updates 5.6.1-8.6 alpha arm hppa i386 ia64 m68k mips = mipsel powerpc s390 sparc libperl5.6 stable 5.6.1-8.3 alpha arm hppa i386 ia64 m68k mips = mipsel powerpc s390 sparc libperl5.6 updates 5.6.1-8.6 alpha arm hppa i386 ia64 m68k mips = mipsel powerpc s390 sparc perl-base stable 5.6.1-8.3 alpha arm hppa i386 ia64 m68k mips = mipsel powerpc s390 sparc perl-base updates 5.6.1-8.6 alpha arm hppa i386 ia64 m68k mips = mipsel powerpc s390 sparc perl-debug stable 5.6.1-8.3 alpha arm hppa i386 ia64 m68k mips = mipsel powerpc s390 sparc perl-debug updates 5.6.1-8.6 alpha arm hppa i386 ia64 m68k mips = mipsel powerpc s390 sparc perl-doc stable 5.6.1-8.3 all perl-doc updates 5.6.1-8.6 all perl-modules stable 5.6.1-8.3 all perl-modules updates 5.6.1-8.6 all perl-suid stable 5.6.1-8.3 alpha arm hppa i386 ia64 m68k mips = mipsel powerpc s390 sparc perl-suid updates 5.6.1-8.6 alpha arm hppa i386 ia64 m68k mips = mipsel powerpc s390 sparc perl stable 5.6.1-8.3 alpha arm hppa i386 ia64 m68k mips = mipsel powerpc s390 sparc source perl updates 5.6.1-8.6 alpha arm hppa i386 ia64 m68k mips = mipsel powerpc s390 sparc source

DSA 431 perl - information leak

proftpd-common stable 1.2.4+1.2.5rc1-5 alpha arm hppa i386 ia64 = m68k mips mipsel powerpc s390 sparc proftpd-common updates 1.2.4+1.2.5rc1-5woody2 alpha arm hppa i386 ia64 = m68k mips mipsel powerpc s390 sparc proftpd-doc stable 1.2.4+1.2.5rc1-5 all proftpd-doc updates 1.2.4+1.2.5rc1-5woody2 all proftpd-ldap stable 1.2.4+1.2.5rc1-5 alpha arm hppa i386 ia64 = m68k mips mipsel powerpc s390 sparc proftpd-ldap updates 1.2.4+1.2.5rc1-5woody2 alpha arm hppa i386 ia64 = m68k mips mipsel powerpc s390 sparc proftpd-mysql stable 1.2.4+1.2.5rc1-5 alpha arm hppa i386 ia64 = m68k mips mipsel powerpc s390 sparc proftpd-mysql updates 1.2.4+1.2.5rc1-5woody2 alpha arm hppa i386 ia64 = m68k mips mipsel powerpc s390 sparc proftpd-pgsql stable 1.2.4+1.2.5rc1-5 alpha arm hppa i386 ia64 = m68k mips mipsel powerpc s390 sparc proftpd-pgsql updates 1.2.4+1.2.5rc1-5woody2 alpha arm hppa i386 ia64 = m68k mips mipsel powerpc s390 sparc proftpd stable 1.2.4+1.2.5rc1-5 alpha arm hppa i386 ia64 = m68k mips mipsel powerpc s390 sparc source proftpd updates 1.2.4+1.2.5rc1-5woody2 alpha arm hppa i386 ia64 = m68k mips mipsel powerpc s390 sparc source

DSA-338 proftpd - SQL injection

idle-python2.2 stable 2.2.1-4 all idle-python2.2 updates 2.2.1-4.3 all python2.2-dev stable 2.2.1-4 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc python2.2-dev updates 2.2.1-4.3 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc python2.2-doc stable 2.2.1-4 all python2.2-doc updates 2.2.1-4.3 all python2.2-elisp stable 2.2.1-4 all python2.2-elisp updates 2.2.1-4.3 all python2.2-examples stable 2.2.1-4 all python2.2-examples updates 2.2.1-4.3 all python2.2-gdbm stable 2.2.1-4 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc python2.2-gdbm updates 2.2.1-4.3 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc python2.2-mpz stable 2.2.1-4 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc python2.2-mpz updates 2.2.1-4.3 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc python2.2-tk stable 2.2.1-4 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc python2.2-tk updates 2.2.1-4.3 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc python2.2-xmlbase stable 2.2.1-4 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc python2.2-xmlbase updates 2.2.1-4.3 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc python2.2 stable 2.2.1-4 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc source python2.2 updates 2.2.1-4.3 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc source

DSA 458 python2.2 - buffer overflow

libpam-smbpass stable 2.2.3a-12.3 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc libpam-smbpass updates 2.2.3a-13 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc libsmbclient-dev stable 2.2.3a-12.3 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc libsmbclient-dev updates 2.2.3a-13 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc libsmbclient stable 2.2.3a-12.3 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc libsmbclient updates 2.2.3a-13 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc samba-common stable 2.2.3a-12.3 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc samba-common updates 2.2.3a-13 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc samba-doc stable 2.2.3a-12.3 all samba-doc updates 2.2.3a-13 all samba stable 2.2.3a-12.3 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc source samba updates 2.2.3a-13 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc source smbclient stable 2.2.3a-12.3 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc smbclient updates 2.2.3a-13 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc smbfs stable 2.2.3a-12.3 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc smbfs updates 2.2.3a-13 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc swat stable 2.2.3a-12.3 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc swat updates 2.2.3a-13 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc winbind stable 2.2.3a-12.3 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc winbind updates 2.2.3a-13 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc

DSA 463 samba - privilege escalation

screen stable 3.9.11-5 alpha arm hppa i386 ia64 m68k mips mi= psel powerpc s390 sparc source screen updates 3.9.11-5woody1 alpha arm hppa i386 ia64 m68k mips mi= psel powerpc s390 sparc source

DSA 408 screen - integer overflow

synaesthesia stable 2.1-2.1 alpha arm hppa i386 ia64 m68k mips m= ipsel powerpc s390 sparc source synaesthesia updates 2.1-2.1woody1 alpha arm hppa i386 ia64 m68k mips m= ipsel powerpc s390 sparc source

DSA 446 synaesthesia - insecure file creation

sysstat stable 4.0.4-1 alpha arm hppa i386 ia64 m68k mips mip= sel powerpc s390 sparc source sysstat updates 4.0.4-1woody1 alpha arm hppa i386 ia64 m68k mips mip= sel powerpc s390 sparc source

DSA 460 sysstat - insecure temporary file

trr19 stable 1.0beta5-15 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc source trr19 updates 1.0beta5-15woody1 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc source

DSA 430 trr19 - missing privilege release

ttf-kochi-gothic stable 0.2.20020326-1 all source ttf-kochi-gothic updates 1.0.20030809-0woody.2 all ttf-kochi-mincho stable 0.2.20020326-1 all source ttf-kochi-mincho updates 1.0.20030809-0woody.2 all ttf-kochi updates 1.0.20030809-0woody.2 source

License problems

http://lists.debian.org/debian-devel/2003/debian-devel-200310/msg00223.html

ttf-kochi-gothic-naga10 stable 0.2.20020326-1 all source ttf-kochi-gothic-naga10 updates 1.0.20030809-0woody.2 all ttf-kochi-mincho-naga10 stable 0.2.20020326-1 all source ttf-kochi-mincho-naga10 updates 1.0.20030809-0woody.2 all ttf-kochi-naga10 updates 1.0.20030809-0woody.2 source

License problems

http://lists.debian.org/debian-devel/2003/debian-devel-200310/msg00223.html

ttf-xtt-wadalab-gothic stable 0.20010818-5 all ttf-xtt-watanabe-mincho stable 0.20010818-5 all ttf-xtt stable 0.20010818-5 source

License problems, Bug#214395, Bug#214400

http://lists.debian.org/debian-devel/2003/debian-devel-200310/msg00223.html

ttf-xwatanabe-mincho stable 0.2001.1201-1 all source

License problems, Bug#214587

http://lists.debian.org/debian-devel/2003/debian-devel-200310/msg00223.html

vbox3 stable 0.1.7 alpha arm hppa i386 ia64 m68k mips mipsel= powerpc s390 sparc source vbox3 updates 0.1.7.1 alpha arm hppa i386 ia64 m68k mips mipsel= powerpc s390 sparc source

DSA 418 vbox3 - privilege leak

watanabe-vfont stable 1-9 all source

License problems, Bug#214399

http://lists.debian.org/debian-devel/2003/debian-devel-200310/msg00223.html

wu-ftpd-academ stable 2.6.2-3woody2 all wu-ftpd-academ updates 2.6.2-3woody4 all wu-ftpd stable 2.6.2-3woody2 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc source wu-ftpd updates 2.6.2-3woody4 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc source

DSA 457 wu-ftpd - several vulnerabilities

lbxproxy stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc lbxproxy updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc libdps-dev stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc libdps-dev updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc libdps1-dbg stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc libdps1-dbg updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc libdps1 stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc libdps1 updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc libxaw6-dbg stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc libxaw6-dbg updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc libxaw6-dev stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc libxaw6-dev updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc libxaw6 stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc libxaw6 updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc libxaw7-dbg stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc libxaw7-dbg updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc libxaw7-dev stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc libxaw7-dev updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc libxaw7 stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc libxaw7 updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc proxymngr stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc proxymngr updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc twm stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc twm updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc x-window-system-core stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc x-window-system-core updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc x-window-system stable 4.1.0-16woody1 all x-window-system updates 4.1.0-16woody3 all xbase-clients stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xbase-clients updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xdm stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xdm updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xfonts-100dpi-transcoded stable 4.1.0-16woody1 all xfonts-100dpi-transcoded updates 4.1.0-16woody3 all xfonts-100dpi stable 4.1.0-16woody1 all xfonts-100dpi updates 4.1.0-16woody3 all xfonts-75dpi-transcoded stable 4.1.0-16woody1 all xfonts-75dpi-transcoded updates 4.1.0-16woody3 all xfonts-75dpi stable 4.1.0-16woody1 all xfonts-75dpi updates 4.1.0-16woody3 all xfonts-base-transcoded stable 4.1.0-16woody1 all xfonts-base-transcoded updates 4.1.0-16woody3 all xfonts-base stable 4.1.0-16woody1 all xfonts-base updates 4.1.0-16woody3 all xfonts-cyrillic stable 4.1.0-16woody1 all xfonts-cyrillic updates 4.1.0-16woody3 all xfonts-pex stable 4.1.0-16woody1 all xfonts-pex updates 4.1.0-16woody3 all xfonts-scalable stable 4.1.0-16woody1 all xfonts-scalable updates 4.1.0-16woody3 all xfree86-common stable 4.1.0-16woody1 all xfree86-common updates 4.1.0-16woody3 all xfs stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xfs updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xfwp stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xfwp updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xlib6g-dev stable 4.1.0-16woody1 all xlib6g-dev updates 4.1.0-16woody3 all xlib6g stable 4.1.0-16woody1 all xlib6g updates 4.1.0-16woody3 all xlibmesa-dev stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xlibmesa-dev updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xlibmesa3-dbg stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xlibmesa3-dbg updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xlibmesa3 stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xlibmesa3 updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xlibosmesa-dev stable 4.1.0-16woody1 alpha i386 ia64 powerpc= sparc xlibosmesa-dev updates 4.1.0-16woody3 alpha i386 ia64 powerpc= sparc xlibosmesa3-dbg stable 4.1.0-16woody1 alpha i386 ia64 powerpc= sparc xlibosmesa3-dbg updates 4.1.0-16woody3 alpha i386 ia64 powerpc= sparc xlibosmesa3 stable 4.1.0-16woody1 alpha i386 ia64 powerpc= sparc xlibosmesa3 updates 4.1.0-16woody3 alpha i386 ia64 powerpc= sparc xlibs-dbg stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xlibs-dbg updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xlibs-dev stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xlibs-dev updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xlibs-pic stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xlibs-pic updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xlibs stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xlibs updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xmh stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xmh updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xnest stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xnest updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xprt stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xprt updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xserver-common stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xserver-common updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xserver-xfree86 stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc sparc xserver-xfree86 updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc sparc xspecs stable 4.1.0-16woody1 all xspecs updates 4.1.0-16woody3 all xterm stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xterm updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xutils stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xutils updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xvfb stable 4.1.0-16woody1 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc xvfb updates 4.1.0-16woody3 alpha arm hppa i386 ia6= 4 m68k mips mipsel powerpc s390 sparc

DSA 443 xfree86 - several vulnerabilities

xitalk stable 1.1.11-9.1 alpha arm hppa i386 ia64 m68k mips = mipsel powerpc s390 sparc source xitalk updates 1.1.11-9.1woody1 alpha arm hppa i386 ia64 m68k mips = mipsel powerpc s390 sparc source

DSA-462 xitalk - missing privilege release

xsok stable 1.02-9 alpha arm hppa i386 ia64 m68k mips mips= el powerpc s390 sparc source xsok updates 1.02-9woody2 alpha arm hppa i386 ia64 m68k mips mips= el powerpc s390 sparc source

DSA 405 xsok - missing privilege release

zebra-doc stable 0.92a-5 all zebra-doc updates 0.92a-5woody2 all zebra stable 0.92a-5 alpha arm hppa i386 ia64 m68k mips mip= sel powerpc s390 sparc source zebra updates 0.92a-5woody2 alpha arm hppa i386 ia64 m68k mips mip= sel powerpc s390 sparc source

DSA 415 zebra - denial of service

Requires further Investigation ------------------------------

These packages need further investigation. One reason the package is listed here could be that I'm not yet convinced this package should go into stable, but don't want to reject it entirely at the moment.

Another reason could be that released and updated architectures are not yet in sync.

acorn-fdisk stable 3.0.6-4 alpha arm hppa i386 ia64 m68k mips mi= psel powerpc s390 sparc source acorn-fdisk updates 3.0.6-4woody1 alpha arm hppa i386 ia64 m68k mips mi= psel powerpc s390 sparc source

Rebuild for stable since required for working boot-floppies; otherwise identical to 3.0.6-5.

aspell-doc updates 0.33.7.1.1-9 all aspell-en stable! 0.33.7.1-8 alpha arm hppa i386 ia64 m68k powerp= c s390 sparc aspell-en updates 0.33.7.1.1-9 i386 aspell stable! 0.33.7.1-8 alpha arm hppa i386 ia64 m68k powerp= c s390 sparc source aspell updates 0.33.7.1.1-9 i386 source libaspell-dev stable! 0.33.7.1-8 alpha arm hppa i386 ia64 m68k powerp= c s390 sparc libaspell-dev updates 0.33.7.1.1-9 i386 libaspell10 stable! 0.33.7.1-8 alpha arm hppa i386 ia64 m68k powerp= c s390 sparc libaspell10 updates 0.33.7.1.1-9 i386

* Repackaged upstream source tarball with a newer version of SCOWL, the wordlists making up aspell-en, that has the questionably licensed wordlists removed. The aspell source package is now unquestionably 100% DFSG-compliant.

* Gave aspell-en its own copyright file. It's not LGPL but rather the SCOWL conglomerate license.

Corrects breakage caused by the last stable update and overzealous removal

MISSING alpha MISSING arm MISSING hppa MISSING ia64 MISSING m68k MISSING powerpc MISSING s390 MISSING sparc

atari800 stable 1.2.2-1 alpha arm hppa i386 ia64 m68k mips mip= sel powerpc s390 sparc source atari800 updates 1.2.2-1woody2 alpha arm hppa i386 ia64 m68k mips pow= erpc s390 sparc source

DSA 359 - buffer overflows

contrib

MISSING mipsel

catdoc stable 0.91.5-1 alpha arm hppa i386 ia64 m68k mip= s mipsel powerpc s390 sparc source catdoc updates 0.91.5-1.99woody.1 alpha hppa i386 ia64 m68k mips mi= psel powerpc s390 sparc source

* Fixed insecure /tmp use (closes: #183525)

* Fix backported from 0.91.5-2 because it fixes a security problem.

MISSING arm

console-common stable 0.7.14 all source console-common updates 0.7.14woody1 all source dh-consoledata stable 0.7.14 all dh-consoledata updates 0.7.14woody1 all

Support the Acorn RiscStation architecture.

Alastair McKinstry: The console-common change for Acorn RiscStation is included in the current boot-floppies since 2002/08/12; it is in kbdconfig.c 1.68; boot-floppies 3.0.23 shipped with kbdconfig.c 1.66. As I understand it, this is not the current shipping woody, but these machines only boot with this updated, modified boot-floppies and console-common.

Hence, only needed for updated boot-floppies, probably for r3 then.

chill-2.95 stable 1:2.95.4-11woody1 alpha arm i386 m68k= powerpc s390 chill-2.95 stable 1:2.95.4-7 mips mipsel sparc chill-2.95 updates 1:2.95.4-11woody1 mips mipsel cpp-2.95-doc stable 1:2.95.4-11woody1 all cpp-2.95 stable 1:2.95.4-11woody1 alpha arm i386 m68k= powerpc s390 cpp-2.95 stable 1:2.95.4-7 mips mipsel sparc cpp-2.95 updates 1:2.95.4-11woody1 mips mipsel g++-2.95 stable 1:2.95.4-11woody1 alpha arm i386 m68k= powerpc s390 g++-2.95 stable 1:2.95.4-7 mips mipsel sparc g++-2.95 updates 1:2.95.4-11woody1 mips mipsel g77-2.95-doc stable 1:2.95.4-11woody1 all g77-2.95 stable 1:2.95.4-11woody1 alpha arm i386 m68k= powerpc s390 g77-2.95 stable 1:2.95.4-7 mips mipsel sparc g77-2.95 updates 1:2.95.4-11woody1 mips mipsel gcc-2.95-doc stable 1:2.95.4-11woody1 all gcc-2.95 stable 1:2.95.4-11woody1 alpha arm i386 m68k= powerpc s390 gcc-2.95 stable 1:2.95.4-7 mips mipsel sparc gcc-2.95 stable 2.95.4.ds13-11woody1 source gcc-2.95 updates 1:2.95.4-11woody1 mips mipsel gobjc-2.95 stable 1:2.95.4-11woody1 alpha arm i386 m68k= powerpc s390 gobjc-2.95 stable 1:2.95.4-7 mips mipsel sparc gobjc-2.95 updates 1:2.95.4-11woody1 mips mipsel gpc-2.95-doc stable 1:2.95.4-11woody1 all gpc-2.95 stable 1:2.95.4-11woody1 alpha arm i386 m68k= powerpc s390 gpc-2.95 stable 1:2.95.4-7 mips mipsel sparc gpc-2.95 updates 1:2.95.4-11woody1 mips mipsel libg++2.8.1.3-dbg stable 1:2.95.4-11woody1 alpha arm i386 m68k= powerpc s390 libg++2.8.1.3-dbg stable 1:2.95.4-7 mips mipsel sparc libg++2.8.1.3-dbg updates 1:2.95.4-11woody1 mips mipsel libg++2.8.1.3-dev stable 1:2.95.4-11woody1 alpha arm i386 m68k= powerpc s390 libg++2.8.1.3-dev stable 1:2.95.4-7 mips mipsel sparc libg++2.8.1.3-dev updates 1:2.95.4-11woody1 mips mipsel libg++2.8.1.3-glibc2.2 stable 1:2.95.4-11woody1 alpha arm i386 m68k= powerpc s390 libg++2.8.1.3-glibc2.2 stable 1:2.95.4-7 mips mipsel sparc libg++2.8.1.3-glibc2.2 updates 1:2.95.4-11woody1 mips mipsel libstdc++2.10-dbg stable 1:2.95.4-11woody1 alpha arm i386 m68k= powerpc s390 libstdc++2.10-dbg stable 1:2.95.4-7 mips mipsel sparc libstdc++2.10-dbg stable 1:2.96-8 ia64 libstdc++2.10-dbg updates 1:2.95.4-11woody1 mips mipsel libstdc++2.10-dev stable 1:2.95.4-11woody1 alpha arm i386 m68k= powerpc s390 libstdc++2.10-dev stable 1:2.95.4-7 mips mipsel sparc libstdc++2.10-dev stable 1:2.96-8 ia64 libstdc++2.10-dev updates 1:2.95.4-11woody1 mips mipsel libstdc++2.10-glibc2.2 stable 1:2.95.4-11woody1 alpha arm i386 m68k= powerpc s390 libstdc++2.10-glibc2.2 stable 1:2.95.4-7 mips mipsel sparc libstdc++2.10-glibc2.2 stable 1:2.96-8 ia64 libstdc++2.10-glibc2.2 updates 1:2.95.4-11woody1 mips mipsel protoize-2.95 stable 1:2.95.4-11woody1 alpha arm i386 m68k= powerpc s390 protoize-2.95 stable 1:2.95.4-7 mips mipsel sparc protoize-2.95 updates 1:2.95.4-11woody1 mips mipsel

Bring architectures back in sync

MISSING sparc

gps stable 0.9.4-1 alpha arm i386 m68k mips mipsel powerp= c s390 sparc source gps stable 0.9.4-1.0.1 hppa ia64 gps updates 0.9.4-1woody1 alpha arm i386 m68k mips mipsel powerp= c s390 sparc source rgpsp stable 0.9.4-1 alpha arm i386 m68k mips mipsel powerp= c s390 sparc rgpsp stable 0.9.4-1.0.1 hppa ia64 rgpsp updates 0.9.4-1woody1 alpha arm i386 m68k mips mipsel powerp= c s390 sparc

DSA 307 - multiple vulnerabilities

MISSING hppa MISSING ia64

initrd-tools stable 0.1.32woody.3 all source initrd-tools updates 0.1.32woody.5 all source

* Fixed merge errors in IDE change.

* Load IDE PCI drivers if present.

* Handle ide module names from ac tree.

kaffe stable 1:1.0.5e-0.4 arm kaffe stable 1:1.0.5e-0.5 alpha i386 m68k sparc source kaffe updates 1:1.0.5e-1 i386 source

* Fixed a problem detecting time.h during build, source wouldn't compile.

* Changed temporary file name allocation to use mktemp in the kaffe wrapper for security reasons, closes: #191866

TODO: Review the changes

MISSING alpha MISSING arm MISSING m68k MISSING sparc

kernel-headers-2.2.20-reiserfs stable 2.2.20-4 i386 kernel-headers-2.2.20-reiserfs updates 2.2.20-4woody1 i386 kernel-image-2.2.20-reiserfs-i386 stable 2.2.20-4 source kernel-image-2.2.20-reiserfs-i386 updates 2.2.20-4woody1 source kernel-image-2.2.20-reiserfs stable 2.2.20-4 i386 kernel-image-2.2.20-reiserfs updates 2.2.20-4woody1 i386

DSA 453 linux-kernel-2.2.20 - failing function and TLB flush

pcmcia-modules-2.2.20-reiserfs: Depends: kernel-image-2.2.20-reiserfs (=3D= 2.2.20-4)

*Bummer*

kernel-headers-2.4.18-1-generic updates 2.4.18-14 alpha kernel-headers-2.4.18-1-smp updates 2.4.18-14 alpha kernel-headers-2.4.18-1 updates 2.4.18-14 alpha kernel-image-2.4.18-1-alpha updates 2.4.18-14 source kernel-image-2.4.18-1-generic updates 2.4.18-14 alpha kernel-image-2.4.18-1-smp updates 2.4.18-14 alpha

DSA 438 linux-kernel-2.4.18 - missing function return value check

New package + incompatible ABI =3D *Bummer*

kernel-headers-2.4.18-1-386 updates 2.4.18-12.2 i386 kernel-headers-2.4.18-1-586tsc updates 2.4.18-12.2 i386 kernel-headers-2.4.18-1-686-smp updates 2.4.18-12.2 i386 kernel-headers-2.4.18-1-686 updates 2.4.18-12.2 i386 kernel-headers-2.4.18-1-k6 updates 2.4.18-12.2 i386 kernel-headers-2.4.18-1-k7 updates 2.4.18-12.2 i386 kernel-headers-2.4.18-1 updates 2.4.18-12.2 i386 kernel-image-2.4.18-1-386 updates 2.4.18-12.2 i386 kernel-image-2.4.18-1-586tsc updates 2.4.18-12.2 i386 kernel-image-2.4.18-1-686-smp updates 2.4.18-12.2 i386 kernel-image-2.4.18-1-686 updates 2.4.18-12.2 i386 kernel-image-2.4.18-1-i386 updates 2.4.18-12.2 source kernel-image-2.4.18-1-k6 updates 2.4.18-12.2 i386 kernel-image-2.4.18-1-k7 updates 2.4.18-12.2 i386 kernel-pcmcia-modules-2.4.18-1-386 updates 2.4.18-12.2 i386 kernel-pcmcia-modules-2.4.18-1-586tsc updates 2.4.18-12.2 i386 kernel-pcmcia-modules-2.4.18-1-686-smp updates 2.4.18-12.2 i386 kernel-pcmcia-modules-2.4.18-1-686 updates 2.4.18-12.2 i386 kernel-pcmcia-modules-2.4.18-1-k6 updates 2.4.18-12.2 i386 kernel-pcmcia-modules-2.4.18-1-k7 updates 2.4.18-12.2 i386

DSA 438 linux-kernel-2.4.18 - missing function return value check

New package + incompatible ABI =3D *Bummer*

kernel-headers-2.4.18-bf2.4 stable 2.4.18-5 i386 kernel-headers-2.4.18-bf2.4 updates 2.4.18-5woody5 i386 kernel-image-2.4.18-bf2.4 stable 2.4.18-5 i386 kernel-image-2.4.18-bf2.4 updates 2.4.18-5woody5 i386

Security update

* Build against kernel-source-2.4.18 2.4.18-14:

- Added TASK_SIZE check to do_brk in mm/mmap.c (DSA-403-1)

DSA 403 - kernel-image-2.4.18-1 - local root exploit

But: pcmcia-modules-2.4.18-bf2.4

Depends: kernel-image-2.4.18-bf2.4 (=3D 2.4.18-5)

*Bummer*

kernel-headers-2.4.17-ia64 stable 011226.13 ia64 kernel-image-2.4.17-ia64 stable 011226.13 source kernel-image-2.4.17-itanium-smp stable 011226.13 ia64 kernel-image-2.4.17-itanium stable 011226.13 ia64 kernel-image-2.4.17-mckinley-smp stable 011226.13 ia64 kernel-image-2.4.17-mckinley stable 011226.13 ia64 kernel-source-2.4.17-ia64 stable 011226.13 all kernel-headers-2.4.19-ia64 updates 020821.1 ia64 kernel-image-2.4.19-ia64 updates 020821.1 source kernel-image-2.4.19-itanium-smp updates 020821.1 ia64 kernel-image-2.4.19-itanium updates 020821.1 ia64 kernel-image-2.4.19-mckinley-smp updates 020821.1 ia64 kernel-image-2.4.19-mckinley updates 020821.1 ia64 kernel-source-2.4.19-ia64 updates 020821.1 all

* initial release of kernel image packages for ia64 based on 2.4.19

* turn off broadcom gigE driver, change tg3 from module to built-in

* lose several patches from previous kernel builds now merged upstream

* update config files for 2.4.19

New packages, rationale still:

The 2.4.17 bits which were used to generate the original woody boot floppi= es have some ugly bugs, are not being updated, and generally are not useful any more. Every problem reported on debian-ia64 starts with a request that the user move to at least 2.4.19.

HP has shipped products using the 2.4.19 and 2.4.20 kernel images currently in Debian's mirror network, which means they've been through serious testi= ng and meet HP product quality standards. The same is not true of the 2.4.17 images, as woody was released before HP shipped our first Itanium 2 produc= ts.

Some newer systems cannot even be installed with 2.4.17 based boot floppie= s, we work around that by making alternate installation media available from = HP based on fresher kernels. Even on the systems where 2.4.17 is ok for install, I don't recommend anyone run a 2.4.17 kernel on any real system.

When new boot-floppies are uploaded, they'll use this kernel, then the kernel will be updated as well.

TODO: New boot-floppies, contact Bdale

TODO: Apply security fixes

TODO: remove actual kernel source and use a kernel-patch instead

kernel-patch-2.4-grsecurity stable 1.9.4-1 all source kernel-patch-2.4-grsecurity updates 1.9.4-3 all source

-3:

* Removed patch bit that sets EXTRAVERSION. (closes: Bug#182183)

* Fix to work with ptrace fixed 2.4.18 (otherwise the patch fails to apply rendering it useless, hence medium urgency). (closes: Bug#194523)

-4:

* Fixed around some security patches in 2.4.18 kernel (otherwise the patch fails to apply rendering it useless, hence medium urgency). (refer to Bug#231858).

-5:

* Fixed a stupid cut'n'paste bug in the patch for the 2.4.18 kernel, which renders the patch unappliable.

ptrace/2.4 can't go into stable due to binary-incompatibility.

libgtop-daemon stable 1.0.13-3 alpha arm hppa i386 ia64 m68k mips mi= psel powerpc s390 sparc libgtop-daemon updates 1.0.13-3.1 alpha arm hppa i386 ia64 m68k powerpc= s390 sparc libgtop-dev stable 1.0.13-3 alpha arm hppa i386 ia64 m68k mips mi= psel powerpc s390 sparc libgtop-dev updates 1.0.13-3.1 alpha arm hppa i386 ia64 m68k powerpc= s390 sparc libgtop1 stable 1.0.13-3 alpha arm hppa i386 ia64 m68k mips mi= psel powerpc s390 sparc libgtop1 updates 1.0.13-3.1 alpha arm hppa i386 ia64 m68k powerpc= s390 sparc libgtop stable 1.0.13-3 source libgtop updates 1.0.13-3.1 source

DSA 301 - buffer overflow

MISSING mips MISSING mipsel

lsb stable 1.1.0-11 all source lsb updates 1.2-5.woody.1 all source

Support LSB 1.2 in woody. Includes all changes through 1.2-6 in sid.

This package is not sufficient to make Debian stable LSB 1.3 compliant. The only approved LSB version is 1.3. According to Anthony also required: alien, kernel-(headers|source|image) 2.4.19 and glibc, pax. According to Tobias Burnus start-stop-daemon needs to be altered as well. lsb.deb needs another backport.

Matt Taggart wrote: The separate OpenI18N standard was merged into the LSB at 1.3 so there are additional requirements that are being tested for now. These are mostly requirements on the commands provided by the LSB and _will_ require patches to fix. I do not know if the patches have been accepted upstream yet. There's a rumor that they affect performance. there may need to be additional changes to glibc for the new test suites.

I don't think that we can meet the LSB 1.3 with Debian stable without too many changes, hence LSB updates will be rejected.

Newsflash: Maybe it's still possible to meet the LSB testsuite. To be discussed after 3.0r2.

metamail stable 2.7-45 alpha arm hppa i386 ia64 m68k mips mip= sel powerpc s390 sparc source metamail updates 2.7-45woody.2 s390 metamail updates 2.7-45woody.3 alpha arm hppa i386 ia64 m68k mips mip= sel powerpc sparc source

DSA 449 metamail - buffer overflow, format string bugs

MISSING s390

mpg321 stable 0.2.10.1 alpha arm hppa i386 ia64 m68k mips mipsel= powerpc s390 sparc source mpg321 updates 0.2.10.2 alpha hppa i386 ia64 m68k mipsel powerpc = s390 sparc source

DSA 411 mpg321 - format string vulnerability

MISSING arm MISSING mips

nbd-client stable 1:1.2cvs20020320-3 alpha arm hppa i386 ia64 = m68k mips mipsel powerpc s390 sparc nbd-client updates 1:1.2cvs20020320-3.woody.1 alpha arm s390 nbd-client updates 1:1.2cvs20020320-3.woody.2 hppa i386 ia64 m68k mips = mipsel powerpc sparc nbd-server stable 1:1.2cvs20020320-3 alpha arm hppa i386 ia64 = m68k mips mipsel powerpc s390 sparc nbd-server updates 1:1.2cvs20020320-3.woody.1 alpha arm s390 nbd-server updates 1:1.2cvs20020320-3.woody.2 hppa i386 ia64 m68k mips = mipsel powerpc sparc nbd stable 1:1.2cvs20020320-3 source nbd updates 1:1.2cvs20020320-3.woody.2 source

* Backported the following fixes to serious bugs from unstable version:

- rewrite /etc/nbd-server, even if it doesn't exist yet (not doing so makes package uninstallable)

- make sure nbd-server.init.d doesn't kill itself (not doing so breaks upgrades, while also rendering the 'stop' target quite useless)

This closes: #179334, whilst also re-closing some bugs that should've been fixed when woody was still 'frozen' instead of 'stable'.

Upon installation, /etc/nbd-server is now generated, since the postinst fails at its end, but the package is installed fine. Hence, it is not uninstallable and therefore there's no urgent need to update this package.

Bug in postinst in 1.2cvs20020320-3.woody.1: $TEMPFILE is not removed and will clutter /tmp . (fixed in woody.2)

Package was said to be uninstallable before, it's rather unusable, since the postinst doesn't fail.

MISSING alpha MISSING arm MISSING s390

nd stable 0.5.0-1 alpha arm hppa i386 ia64 m68k mips mip= sel powerpc s390 sparc source nd updates 0.5.0-1woody1 alpha arm hppa i386 ia64 m68k mips mip= sel powerpc s390 sparc source

DSA 412 nd - buffer overflows

nethack-common stable 3.4.0-3.0woody1 alpha arm hppa i386 m68k mips mi= psel powerpc s390 sparc nethack-common updates 3.4.0-3.0woody3 sparc nethack-common updates 3.4.0-3.0woody4 alpha arm hppa i386 m68k mips mi= psel powerpc s390 nethack-gnome stable 3.4.0-3.0woody1 alpha arm hppa i386 m68k mips mi= psel powerpc s390 sparc nethack-gnome updates 3.4.0-3.0woody3 sparc nethack-gnome updates 3.4.0-3.0woody4 alpha arm hppa i386 m68k mips mi= psel powerpc s390 nethack-qt stable 3.4.0-3.0woody1 alpha arm hppa i386 m68k mips mi= psel powerpc s390 sparc nethack-qt updates 3.4.0-3.0woody3 sparc nethack-qt updates 3.4.0-3.0woody4 alpha arm hppa i386 m68k mips mi= psel powerpc s390 nethack-x11 stable 3.4.0-3.0woody1 alpha arm hppa i386 m68k mips mi= psel powerpc s390 sparc nethack-x11 updates 3.4.0-3.0woody3 sparc nethack-x11 updates 3.4.0-3.0woody4 alpha arm hppa i386 m68k mips mi= psel powerpc s390 nethack stable 3.4.0-3.0woody1 all source nethack updates 3.4.0-3.0woody4 all source

DSA 316 - buffer overflow, incorrect permissions

* Force a build with gcc-3.0 to fix compiler bug that caused invisible doors on alpha.

I hope that this does not introduce more unexpected "features".

MISSING sparc

libssl-dev stable 0.9.6c-2.woody.4 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc libssl-dev updates 0.9.6c-2.woody.5 mipsel libssl-dev updates 0.9.6c-2.woody.6 alpha arm hppa i386 ia64 m68k mips= powerpc s390 sparc libssl0.9.6 stable 0.9.6c-2.woody.4 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc libssl0.9.6 updates 0.9.6c-2.woody.5 mipsel libssl0.9.6 updates 0.9.6c-2.woody.6 alpha arm hppa i386 ia64 m68k mips= powerpc s390 sparc openssl stable 0.9.6c-2.woody.4 alpha arm hppa i386 ia64 m68k mips= mipsel powerpc s390 sparc source openssl updates 0.9.6c-2.woody.5 mipsel openssl updates 0.9.6c-2.woody.6 alpha arm hppa i386 ia64 m68k mips= powerpc s390 sparc source ssleay stable 0.9.6c-2.woody.4 all ssleay updates 0.9.6c-2.woody.6 all

DSA 465 openssl - several vulnerabilities

MISSING mipsel

libparted1.4-dbg stable 1.4.24-4 alpha arm hppa i386 ia64 m68= k mips mipsel powerpc s390 sparc libparted1.4-dbg updates 1.4.24-4.woody.1 alpha arm hppa i386 ia64 m68= k mips mipsel powerpc s390 sparc libparted1.4-dev stable 1.4.24-4 alpha arm hppa i386 ia64 m68= k mips mipsel powerpc s390 sparc libparted1.4-dev updates 1.4.24-4.woody.1 alpha arm hppa i386 ia64 m68= k mips mipsel powerpc s390 sparc libparted1.4-i18n stable 1.4.24-4 all libparted1.4-i18n updates 1.4.24-4.woody.1 all libparted1.4 stable 1.4.24-4 alpha arm hppa i386 ia64 m68= k mips mipsel powerpc s390 sparc libparted1.4 updates 1.4.24-4.woody.1 alpha arm hppa i386 ia64 m68= k mips mipsel powerpc s390 sparc parted-bf stable 1.4.24-4 alpha arm hppa i386 ia64 m68= k mips mipsel powerpc s390 sparc parted-bf updates 1.4.24-4.woody.1 alpha arm hppa i386 ia64 m68= k mips mipsel powerpc s390 sparc parted-doc stable 1.4.24-4 all parted-doc updates 1.4.24-4.woody.1 all parted stable 1.4.24-4 alpha arm hppa i386 ia64 m68= k mips mipsel powerpc s390 sparc source parted updates 1.4.24-4.woody.1 alpha arm hppa i386 ia64 m68= k mips mipsel powerpc s390 sparc source

TODO: Why should this be added to Debian stable?

phpmyadmin stable 2.2.3-1 all source phpmyadmin updates 2.5.2-1woody2.1 all source

* Stable security backport, closes: #203233.

* The upstream also fixes XSS vulnerabilities, information encoding weakness and transversal directory attack. This was mentioned in Debian.NEWS file only, not changelog.Debian file. See http://www.securityfocus.com/archive/1/325641. Closes: #203092.

* CVS fix: another patch for path disclosure problem.

* CVS fix: a user could not edit his own global privileges.

rinetd stable 0.61-1 alpha arm hppa i386 ia64 m68k mips mipsel= powerpc s390 sparc source rinetd updates 0.61-1.1 alpha arm hppa ia64 m68k mips mipsel powe= rpc s390 sparc source

DSA 289 - incorrect memory resizing

MISSING i386

rsync stable 2.5.5-0.1 alpha arm hppa i386 ia64 m68k mips mipsel= powerpc s390 sparc source rsync updates 2.5.5-0.3 alpha arm hppa i386 ia64 m68k mips powerp= c sparc source

DSA 404 rsync - heap overflow

MISSING mipsel MISSING s390 MISSING sparc

seti-applet stable 0.2.2-1.1 alpha arm hppa i386 ia64 m68k mips mipse= l powerpc s390 sparc source seti-applet updates 0.2.2-2 alpha arm hppa i386 ia64 m68k mips power= pc s390 sparc source

* Added CFLAGS and CONFIG_FLAGS to find libgtop header files. (Closes: #140659)

* Fixed installation (Closes: #168930)

* Delete symlink on clean target, so that subsequent builds don't fail.

Amaya: The version in stable didn't build from source or install. This upload fixes that. No changes in the orignial package, just in the debian/ dir. No new features, no new bugs.

MISSING mipsel

spamassassin stable 2.20-1woody3 alpha arm hppa i386 ia64 m68k mips mi= psel powerpc s390 sparc source spamassassin updates 2.20-1woody4 alpha arm hppa i386 ia64 m68k mips po= werpc s390 sparc source

Argh. Someone forgot to build 2.20-1woody3 on a woody system leading to incorrect versioned Recommends: on libc. (Closes: #222331, #222372, #222474)

MISSING mipsel

ssed stable 3.57a-1 alpha arm hppa i386 ia64 m68k mips mips= el powerpc s390 sparc source ssed updates 3.57a-2woody i386 source

Fix "usigned char" bug that renders ssed practically unusable on arm.

MISSING alpha MISSING arm MISSING hppa MISSING ia64 MISSING m68k MISSING mips MISSING mipsel MISSING powerpc MISSING s390 MISSING sparc

tcpdump stable 3.6.2-2.4 alpha arm hppa i386 ia64 m68k mips mipsel= powerpc s390 sparc source tcpdump updates 3.6.2-2.7 alpha arm hppa i386 ia64 m68k mips powerp= c s390 sparc source

DSA 425 tcpdump - multiple vulnerabilities

MISSING mipsel

teg stable 0.9.2-1 alpha arm hppa i386 ia64 m68k mips mipsel= powerpc s390 sparc source teg updates 0.9.2-2 alpha hppa i386 ia64 m68k mips powerpc s3= 90 sparc source

Removed tegserver entry from teg.menu file; this avoids to have tons of message errors logged into ~/.xsession-errors (it could be a dangerous thing, see for example a server where /home is mounted via nfs with quotas enabled); closes: #219159.

MISSING arm MISSING mipsel

tiger stable 2.2.4-22 alpha arm hppa i386 ia64 m68k mips mipsel= powerpc s390 sparc source tiger updates 2.2.4-23 alpha arm hppa i386 ia64 m68k mips mipsel= powerpc s390 sparc source

* Upload to the proposed-updates queue to be considered by the Release Manager. This version generated for the benefit of stable users (which are still encouraged to use 3.2 since it fixes many more bugs and can be backported easily, but still). This package fixes some open (and important) bugs including a security bug and also updates data (DSA listing) to latest available information. Bugs fixed:

* Fixed buffer overflow discovered by Steve Grub in realpath.c this might be able to be locally exploited if a user can make a _very_ long path in the system but it might be difficult to pull off local privilege escalation with this one. Still, worth fixing. The fix has been backported from the 3.2 version.

* Fixed the installation so all scripts are set as executable (I'm not incorporating all the Makefile changes done on 3.2 but it's now better) this has the side effect of now setting check_listeningprocs executable and properly installing check_sendmail (Closes: #157695, #172377)

* No longer depends on essential packages as per policy, since there are no known versioned dependancies (there are for the 3.x release) for any of them (Closes: #170461)

* Updated deb_advisories to include all the latest Debian Security Advisories so that the deb_checkadvisories check makes sense (was over a year out of date). Notice that, without this update the deb_checkadvisories is useless. This check is still useful for those running a system without internet access (i.e. cannot check updates at security.debian.org). If there is a new release of the CD images this might turn out useful for users updating through CD.

wget stable 1.8.1-6 alpha arm hppa i386 ia64 m68k mips mipsel= powerpc s390 sparc source wget updates 1.8.1-6.1 alpha arm hppa i386 ia64 m68k mips powerp= c s390 sparc source

DSA 209 - directory traversal

MISSING mipsel

xaos stable 3.0-23 alpha arm hppa i386 ia64 m68k mips mips= el powerpc sparc source xaos stable 3.0-23.0.1 s390 xaos updates 3.0-23woody1 alpha arm hppa i386 ia64 m68k mips mips= el powerpc sparc source

DSA 310 - improper setuid-root execution

MISSING s390

yaboot stable 1.3.6-1 powerpc source yaboot updates 1.3.10-0woody1 powerpc source

* Backport yaboot 1.3.10 to stable (See bug #190439).

- This is necessary to boot/install on recent Apple hardware.

- Ethan reports that the one line change between 1.3.9 and 1.3.10 is critical.

Unly required with new boot-floppies

Rejected Packages -----------------

These packages don't meet the requirements and will be rejected (if katie supports that, otherwise we'll just carry them with us until the end of time).

kernel-build-2.4.22-2 updates 2.4.22-2woody.2 alpha kernel-headers-2.4.22-2-generic updates 2.4.22-2woody.2 alpha kernel-headers-2.4.22-2-smp updates 2.4.22-2woody.2 alpha kernel-headers-2.4.22-2 updates 2.4.22-2woody.2 alpha kernel-image-2.4-generic updates 2.4.22-2woody.2 alpha kernel-image-2.4-smp updates 2.4.22-2woody.2 alpha kernel-image-2.4.22-2-generic updates 2.4.22-2woody.2 alpha kernel-image-2.4.22-2-smp updates 2.4.22-2woody.2 alpha kernel-image-2.4.22-alpha updates 2.4.22-2woody.2 source

* Built against kernel-tree 2.4.22-2woody.2.

. Added TASK_SIZE check to do_brk in mm/mmap.c.

New packages

kernel-build-2.4.22-2 updates 2.4.22-2woody.2 i386 kernel-headers-2.4.22-2-386 updates 2.4.22-2woody.2 i386 kernel-headers-2.4.22-2-586tsc updates 2.4.22-2woody.2 i386 kernel-headers-2.4.22-2-686 updates 2.4.22-2woody.2 i386 kernel-headers-2.4.22-2-k6 updates 2.4.22-2woody.2 i386 kernel-headers-2.4.22-2-k7-smp updates 2.4.22-2woody.2 i386 kernel-headers-2.4.22-2-k7 updates 2.4.22-2woody.2 i386 kernel-headers-2.4.22-2 updates 2.4.22-2woody.2 i386 kernel-image-2.4-386 updates 2.4.22-2woody.2 i386 kernel-image-2.4-586tsc updates 2.4.22-2woody.2 i386 kernel-image-2.4-686-smp updates 2.4.22-2woody.2 i386 kernel-image-2.4-686 updates 2.4.22-2woody.2 i386 kernel-image-2.4-k6 updates 2.4.22-2woody.2 i386 kernel-image-2.4-k7-smp updates 2.4.22-2woody.2 i386 kernel-image-2.4-k7 updates 2.4.22-2woody.2 i386 kernel-image-2.4.22-2-386 updates 2.4.22-2woody.2 i386 kernel-image-2.4.22-2-586tsc updates 2.4.22-2woody.2 i386 kernel-image-2.4.22-2-686-smp updates 2.4.22-2woody.2 i386 kernel-image-2.4.22-2-686 updates 2.4.22-2woody.2 i386 kernel-image-2.4.22-2-k6 updates 2.4.22-2woody.2 i386 kernel-image-2.4.22-2-k7-smp updates 2.4.22-2woody.2 i386 kernel-image-2.4.22-2-k7 updates 2.4.22-2woody.2 i386 kernel-image-2.4.22-i386 updates 2.4.22-2woody.2 source kernel-pcmcia-modules-2.4-386 updates 2.4.22-2woody.2 i386 kernel-pcmcia-modules-2.4-586tsc updates 2.4.22-2woody.2 i386 kernel-pcmcia-modules-2.4-686-smp updates 2.4.22-2woody.2 i386 kernel-pcmcia-modules-2.4-686 updates 2.4.22-2woody.2 i386 kernel-pcmcia-modules-2.4-k6 updates 2.4.22-2woody.2 i386 kernel-pcmcia-modules-2.4-k7-smp updates 2.4.22-2woody.2 i386 kernel-pcmcia-modules-2.4-k7 updates 2.4.22-2woody.2 i386 kernel-pcmcia-modules-2.4.22-2-386 updates 2.4.22-2woody.2 i386 kernel-pcmcia-modules-2.4.22-2-586tsc updates 2.4.22-2woody.2 i386 kernel-pcmcia-modules-2.4.22-2-686-smp updates 2.4.22-2woody.2 i386 kernel-pcmcia-modules-2.4.22-2-686 updates 2.4.22-2woody.2 i386 kernel-pcmcia-modules-2.4.22-2-k6 updates 2.4.22-2woody.2 i386 kernel-pcmcia-modules-2.4.22-2-k7-smp updates 2.4.22-2woody.2 i386 kernel-pcmcia-modules-2.4.22-2-k7 updates 2.4.22-2woody.2 i386

* Built against kernel-tree 2.4.22-2woody.2.

. Added TASK_SIZE check to do_brk in mm/mmap.c.

New packages

kernel-build-2.4.24-2 updates 2.4.24-2woody.1 alpha kernel-headers-2.4.24-2-generic updates 2.4.24-2woody.1 alpha kernel-headers-2.4.24-2-smp updates 2.4.24-2woody.1 alpha kernel-headers-2.4.24-2 updates 2.4.24-2woody.1 alpha kernel-image-2.4-generic updates 2.4.24-2woody.1 alpha kernel-image-2.4-smp updates 2.4.24-2woody.1 alpha kernel-image-2.4.24-2-generic updates 2.4.24-2woody.1 alpha kernel-image-2.4.24-2-smp updates 2.4.24-2woody.1 alpha kernel-image-2.4.24-alpha updates 2.4.24-2woody.1 source

New package

kernel-build-2.4.24-2 updates 2.4.24-2woody.1 i386 kernel-headers-2.4.24-2-386 updates 2.4.24-2woody.1 i386 kernel-headers-2.4.24-2-586tsc updates 2.4.24-2woody.1 i386 kernel-headers-2.4.24-2-686-smp updates 2.4.24-2woody.1 i386 kernel-headers-2.4.24-2-686 updates 2.4.24-2woody.1 i386 kernel-headers-2.4.24-2-k6 updates 2.4.24-2woody.1 i386 kernel-headers-2.4.24-2-k7-smp updates 2.4.24-2woody.1 i386 kernel-headers-2.4.24-2-k7 updates 2.4.24-2woody.1 i386 kernel-headers-2.4.24-2 updates 2.4.24-2woody.1 i386 kernel-image-2.4-386 updates 2.4.24-2woody.1 i386 kernel-image-2.4-586tsc updates 2.4.24-2woody.1 i386 kernel-image-2.4-686-smp updates 2.4.24-2woody.1 i386 kernel-image-2.4-686 updates 2.4.24-2woody.1 i386 kernel-image-2.4-k6 updates 2.4.24-2woody.1 i386 kernel-image-2.4-k7-smp updates 2.4.24-2woody.1 i386 kernel-image-2.4-k7 updates 2.4.24-2woody.1 i386 kernel-image-2.4.24-2-386 updates 2.4.24-2woody.1 i386 kernel-image-2.4.24-2-586tsc updates 2.4.24-2woody.1 i386 kernel-image-2.4.24-2-686-smp updates 2.4.24-2woody.1 i386 kernel-image-2.4.24-2-686 updates 2.4.24-2woody.1 i386 kernel-image-2.4.24-2-k6 updates 2.4.24-2woody.1 i386 kernel-image-2.4.24-2-k7-smp updates 2.4.24-2woody.1 i386 kernel-image-2.4.24-2-k7 updates 2.4.24-2woody.1 i386 kernel-image-2.4.24-i386 updates 2.4.24-2woody.1 source kernel-pcmcia-modules-2.4-386 updates 2.4.24-2woody.1 i386 kernel-pcmcia-modules-2.4-586tsc updates 2.4.24-2woody.1 i386 kernel-pcmcia-modules-2.4-686-smp updates 2.4.24-2woody.1 i386 kernel-pcmcia-modules-2.4-686 updates 2.4.24-2woody.1 i386 kernel-pcmcia-modules-2.4-k6 updates 2.4.24-2woody.1 i386 kernel-pcmcia-modules-2.4-k7-smp updates 2.4.24-2woody.1 i386 kernel-pcmcia-modules-2.4-k7 updates 2.4.24-2woody.1 i386 kernel-pcmcia-modules-2.4.24-2-386 updates 2.4.24-2woody.1 i386 kernel-pcmcia-modules-2.4.24-2-586tsc updates 2.4.24-2woody.1 i386 kernel-pcmcia-modules-2.4.24-2-686-smp updates 2.4.24-2woody.1 i386 kernel-pcmcia-modules-2.4.24-2-686 updates 2.4.24-2woody.1 i386 kernel-pcmcia-modules-2.4.24-2-k6 updates 2.4.24-2woody.1 i386 kernel-pcmcia-modules-2.4.24-2-k7-smp updates 2.4.24-2woody.1 i386 kernel-pcmcia-modules-2.4.24-2-k7 updates 2.4.24-2woody.1 i386

New packge

kernel-image-2.4.24-sparc32-smp updates 34.woody.1 sparc kernel-image-2.4.24-sparc32 updates 34.woody.1 sparc kernel-image-2.4.24-sparc64-smp updates 34.woody.1 sparc kernel-image-2.4.24-sparc64 updates 34.woody.1 sparc kernel-image-sparc-2.4 stable 26 source kernel-image-sparc-2.4 updates 34.woody.1 source

New package

kernel-doc-2.4.22 updates 2.4.22-2woody.3 all kernel-patch-debian-2.4.22 updates 2.4.22-2woody.3 all kernel-source-2.4.22 updates 2.4.22-2woody.3 all source kernel-tree-2.4.22 updates 2.4.22-2woody.3 all

New packages

kernel-doc-2.4.24 updates 2.4.24-2woody.1 all kernel-patch-debian-2.4.24 updates 2.4.24-2woody.1 all kernel-source-2.4.24 updates 2.4.24-2woody.1 all source kernel-tree-2.4.24 updates 2.4.24-2woody.1 all

New packages

masqmail stable 0.1.16-2.1 alpha arm hppa i386 ia64 m68k mips mipsel= powerpc s390 sparc source masqmail updates 0.1.17-2 alpha arm hppa i386 ia64 m68k mips mipsel= powerpc s390 sparc source

* fixed a segfault bug

What bug exactly?

pcmcia-modules-2.4.18-bf2.4 stable 3.1.33-6k5 i386 pcmcia-modules-2.4.18-bf2.4 updates 3.1.33-6woody1k5woody3 i386

DSA 311 - several vulnerabilities

Depends: kernel-image-2.4.18-bf2.4 (=3D 2.4.18-5woody3)

kernel-image-2.4.18-i386bf is at version 2.4.18-5woody7

Unusable

silo stable 1.2.5-2 sparc source silo updates 1.4.4-0.woody.1 sparc source

New upstream. Fixes sparc32 boots.

Disclaimer ----------

This list intends to help the ftp-masters releasing 3.0r3. They have the final power to accept a package or not. If you want to comment on this list, please send a mail to Martin Schulze .

Last updated 2004/03/26 20:53 MET

--=20 The good thing about standards is that there are so many to choose from. -- Andrew S. Tanenbaum

Please always Cc to me when replying to me on the lists.

--cjNiBkmi8s9yAE0W Content-Type: application/pgp-signature; name="signature.asc" Content-Description: Digital signature Content-Disposition: inline

-----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.4 (GNU/Linux)

iD8DBQFAZI7vW5ql+IAeqTIRAnW3AJ9H3bnH6Xz8M1v/zIwWR5rY4oCGwACgrmGQ 7L3uhP1Z4Zc8Lch0tyWYScI= =whH5 -----END PGP SIGNATURE-----

--cjNiBkmi8s9yAE0W--

-- To UNSUBSCRIBE, email to [e-mail:debian-devel-announce-request@lists.debian.org] with a subject of "unsubscribe". Trouble? Contact [e-mail:listmaster@lists.debian.org]

[PARSEASHTML]

  Nav
» Read more about: Story Type: News Story; Groups: Debian, GNU

« Return to the newswire homepage

Subject Topic Starter Replies Views Last Post
Debian GNU/Linux = Heaven OmegaBLK 0 2,511 Mar 27, 2004 9:36 PM

You cannot post until you login.