1 |
--------------------------------------------------------------------------- |
2 |
Gentoo Weekly Newsletter |
3 |
http://www.gentoo.org/news/en/gwn/current.xml |
4 |
This is the Gentoo Weekly Newsletter for the week of May 31st, 2004. |
5 |
--------------------------------------------------------------------------- |
6 |
|
7 |
============== |
8 |
1. Gentoo News |
9 |
============== |
10 |
|
11 |
Gentoo Not-For-Profit Paperwork complete |
12 |
---------------------------------------- |
13 |
|
14 |
The paperwork for the Gentoo Not-For-Profit entity was approved by the |
15 |
State of New Mexico today. This means that as of today, the Gentoo |
16 |
Foundation is an official Not-For-Profit Corporation in the United States. |
17 |
The process of becoming a Federally-recognized not-for-profit entity, |
18 |
which will take about six months for approval, can now begin. Sven |
19 |
Vermeulen has been tasked with drafting a charter for the newly approved |
20 |
Gentoo Foundation. Assets of Gentoo Technologies, Inc. such as the |
21 |
gentoo.org domain, can now be transferred to the Gentoo Foundation. We're |
22 |
glad to see all the hard work that has been put into this process giving |
23 |
some positive results and would like to thank Daniel Robbins[1] and all of |
24 |
the trustees for their hard work. |
25 |
|
26 |
1. drobbins@g.o |
27 |
|
28 |
Ways to get involved: Introducing webapps-request@g.o |
29 |
------------------------------------------------------------ |
30 |
|
31 |
Developer Stuart Herbert[2] has created a new bugzilla user |
32 |
(webapps-request@g.o), to which he is assigning all bugs about new |
33 |
packages. Some of these bugs are requests for ebuilds. Some of the bugs |
34 |
include ebuilds that need testing (and maybe fixing). |
35 |
|
36 |
2. stuart@g.o |
37 |
|
38 |
If you want to get involved with Gentoo, and can spare the time, this |
39 |
would be a great way - especially if you know any of the packages |
40 |
involved. This will free up some time for the developers to concentrate on |
41 |
real bugs reported against packages already in Portage. |
42 |
|
43 |
If you want to be notified when new bugs are added to the webapps-request |
44 |
list, you can setup a watch in your Bugzilla account. Simply go to this |
45 |
page[3] and in the "Users to watch:" box, type in |
46 |
'webapps-request@g.o'. |
47 |
|
48 |
3. http://bugs.gentoo.org/userprefs.cgi?tab=email |
49 |
|
50 |
================== |
51 |
2. Gentoo Security |
52 |
================== |
53 |
|
54 |
Mailman: Member password disclosure vulnerability |
55 |
------------------------------------------------- |
56 |
|
57 |
Mailman contains a bug allowing 3rd parties to retrieve member passwords. |
58 |
|
59 |
For more information, please see the GLSA Announcement[4] |
60 |
|
61 |
4. http://www.gentoo.org/security/en/glsa/glsa-200406-04.xml |
62 |
|
63 |
Apache: Buffer overflow in mod_ssl |
64 |
---------------------------------- |
65 |
|
66 |
A bug in mod_ssl may allow a remote attacker to execute remote code when |
67 |
Apache is configured a certain way. |
68 |
|
69 |
For more information, please see the GLSA Announcement[5] |
70 |
|
71 |
5. http://www.gentoo.org/security/en/glsa/glsa-200406-05.xml |
72 |
|
73 |
CVS: additional DoS and arbitrary code execution vulnerabilities |
74 |
---------------------------------------------------------------- |
75 |
|
76 |
Several serious new vulnerabilities have been found in CVS, which may |
77 |
allow an attacker to remotely compromise a CVS server. |
78 |
|
79 |
For more information, please see the GLSA Announcement[6] |
80 |
|
81 |
6. http://www.gentoo.org/security/en/glsa/glsa-200406-06.xml |
82 |
|
83 |
Subversion: Remote heap overflow |
84 |
-------------------------------- |
85 |
|
86 |
Subversion is vulnerable to a remote Denial of Service that may be |
87 |
exploitable to execute arbitrary code on the server running svnserve. |
88 |
|
89 |
For more information, please see the GLSA Announcement[7] |
90 |
|
91 |
7. http://www.gentoo.org/security/en/glsa/glsa-200406-07.xml |
92 |
|
93 |
========================= |
94 |
3. Heard in the Community |
95 |
========================= |
96 |
|
97 |
Web Forums |
98 |
---------- |
99 |
|
100 |
Linux Memory Management |
101 |
|
102 |
A concise and very useful tutorial about memory management in Linux has |
103 |
made its way into the Documentation, Tips & Tricks section, paying special |
104 |
attention to things peculiar in 2.6 kernels: |
105 |
|
106 |
* Linux Memory Management or 'Why is there no free RAM?'[8] |
107 |
8. http://forums.gentoo.org/viewtopic.php?t=175419 |
108 |
|
109 |
gentoo-user |
110 |
----------- |
111 |
|
112 |
Deadlocking Kernels |
113 |
|
114 |
A vulnerability that apparently affects all x86 2.4 and 2.6 series kernels |
115 |
was shared on gentoo-user here[9] with exploit code in tow. |
116 |
|
117 |
9. http://article.gmane.org/gmane.linux.gentoo.user/84302 |
118 |
|
119 |
The GWN and RSS |
120 |
|
121 |
This[10] thread covered reading the GWN via an RSS feed, as well as |
122 |
preferred applications to do so. |
123 |
|
124 |
10. http://article.gmane.org/gmane.linux.gentoo.user/84115 |
125 |
|
126 |
======================= |
127 |
4. Gentoo International |
128 |
======================= |
129 |
|
130 |
Germany: LPI 101 Certification in German at the LinuxTag in Karlsruhe |
131 |
|
132 |
The German branch of the Linux Professional Institute[11] has announced |
133 |
that they will offer certification in German for the first time at the |
134 |
LinuxTag in Karlsruhe[12] this year. For 30 Euros, visitors to the fair |
135 |
(and some of the German devs at the Gentoo booth are known to go as well) |
136 |
can sit for the LPI 101 in German or English, or the LPI 201 in English |
137 |
only, on 24 to 26 June 2004. Details here.[13]. |
138 |
|
139 |
11. http://www.lpi-german.de |
140 |
12. http://www.linuxtag.de |
141 |
13. http://www.lpi-german.de/presse/20040609.html |
142 |
|
143 |
=========== |
144 |
5. Bugzilla |
145 |
=========== |
146 |
|
147 |
Summary |
148 |
------- |
149 |
|
150 |
* Statistics |
151 |
* Closed Bug Ranking |
152 |
* New Bug Rankings |
153 |
|
154 |
Statistics |
155 |
---------- |
156 |
|
157 |
The Gentoo community uses Bugzilla (bugs.gentoo.org[14]) to record and |
158 |
track bugs, notifications, suggestions and other interactions with the |
159 |
development team. Between 04 June 2004 and 10 June 2004, activity on the |
160 |
site has resulted in: |
161 |
|
162 |
14. http://bugs.gentoo.org |
163 |
|
164 |
* 537 new bugs during this period |
165 |
* 305 bugs closed or resolved during this period |
166 |
* 14 previously closed bugs were reopened this period |
167 |
|
168 |
Of the 6461 currently open bugs: 131 are labeled 'blocker', 189 are |
169 |
labeled 'critical', and 524 are labeled 'major'. |
170 |
|
171 |
Closed Bug Rankings |
172 |
------------------- |
173 |
|
174 |
The developers and teams who have closed the most bugs during this period |
175 |
are: |
176 |
|
177 |
* Gentoo Games[15], with 18 closed bugs[16] |
178 |
* Gentoo's Team for Core System packages[17], with 12 closed bugs[18] |
179 |
* Net-Mail Packages[19], with 11 closed bugs[20] |
180 |
* Thomas Raschbacher[21], with 9 closed bugs[22] |
181 |
* Gentoo KDE team[23], with 8 closed bugs[24] |
182 |
15. games@g.o |
183 |
16. |
184 |
http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&ch |
185 |
field=bug_status&chfieldfrom=2004-06-04&chfieldto=2004-06-10&resolution=FIX |
186 |
ED&assigned_to=games@g.o |
187 |
17. base-system@g.o |
188 |
18. |
189 |
http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&ch |
190 |
field=bug_status&chfieldfrom=2004-06-04&chfieldto=2004-06-10&resolution=FIX |
191 |
ED&assigned_to=base-system@g.o |
192 |
19. net-mail@g.o |
193 |
20. |
194 |
http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&ch |
195 |
field=bug_status&chfieldfrom=2004-06-04&chfieldto=2004-06-10&resolution=FIX |
196 |
ED&assigned_to=net-mail@g.o |
197 |
21. lordvan@g.o |
198 |
22. |
199 |
http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&ch |
200 |
field=bug_status&chfieldfrom=2004-06-04&chfieldto=2004-06-10&resolution=FIX |
201 |
ED&assigned_to=lordvan@g.o |
202 |
23. kde@g.o |
203 |
24. |
204 |
http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&ch |
205 |
field=bug_status&chfieldfrom=2004-06-04&chfieldto=2004-06-10&resolution=FIX |
206 |
ED&assigned_to=kde@g.o |
207 |
|
208 |
New Bug Rankings |
209 |
---------------- |
210 |
|
211 |
The developers and teams who have been assigned the most new bugs during |
212 |
this period are: |
213 |
|
214 |
* Gentoo Toolchain Maintainers[25], with 19 new bugs[26] |
215 |
* Gentoo Linux Gnome Desktop Team[27], with 17 new bugs[28] |
216 |
* AMD64 Porting Team[29], with 16 new bugs[30] |
217 |
* Gentoo Web Application Packages Maintainers[31], with 12 new bugs[32] |
218 |
* Gentoo Perl Devs[33], with 12 new bugs[34] |
219 |
* Gentoo KDE team[35], with 12 new bugs[36] |
220 |
25. toolchain@g.o |
221 |
26. |
222 |
http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_s |
223 |
tatus=REOPENED&chfield=assigned_to&chfieldfrom=2004-06-04&chfieldto=2004-06 |
224 |
-10&assigned_to=toolchain@g.o |
225 |
27. gnome@g.o |
226 |
28. |
227 |
http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_s |
228 |
tatus=REOPENED&chfield=assigned_to&chfieldfrom=2004-06-04&chfieldto=2004-06 |
229 |
-10&assigned_to=gnome@g.o |
230 |
29. amd64@g.o |
231 |
30. |
232 |
http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_s |
233 |
tatus=REOPENED&chfield=assigned_to&chfieldfrom=2004-06-04&chfieldto=2004-06 |
234 |
-10&assigned_to=amd64@g.o |
235 |
31. web-apps@g.o |
236 |
32. |
237 |
http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_s |
238 |
tatus=REOPENED&chfield=assigned_to&chfieldfrom=2004-06-04&chfieldto=2004-06 |
239 |
-10&assigned_to=web-apps@g.o |
240 |
33. perl@g.o |
241 |
34. |
242 |
http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_s |
243 |
tatus=REOPENED&chfield=assigned_to&chfieldfrom=2004-06-04&chfieldto=2004-06 |
244 |
-10&assigned_to=perl@g.o |
245 |
35. kde@g.o |
246 |
36. |
247 |
http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_s |
248 |
tatus=REOPENED&chfield=assigned_to&chfieldfrom=2004-06-04&chfieldto=2004-06 |
249 |
-10&assigned_to=kde@g.o |
250 |
|
251 |
================== |
252 |
6. Tips and Tricks |
253 |
================== |
254 |
|
255 |
Protecting files with noclobber |
256 |
|
257 |
This tip is for people who have ever hosed important files by using > when |
258 |
they meant to use >>. Add the following line to .bashrc: set -o noclobber. |
259 |
The noclobber option prevents you from overwriting existing files with the |
260 |
> operator. |
261 |
|
262 |
--------------------------------------------------------------------------- |
263 |
| Code Listing 6.1: | |
264 |
|-------------------------------------------------------------------------| |
265 |
| | |
266 |
|% program > file2 | |
267 |
|bash: file2: cannot overwrite existing file | |
268 |
--------------------------------------------------------------------------- |
269 |
|
270 |
In some cases you may really want to overwrite the file. In this case, |
271 |
instead of turning noclobber off, you can use >| to force the file to be |
272 |
written. |
273 |
|
274 |
--------------------------------------------------------------------------- |
275 |
| Code Listing 6.2: | |
276 |
|-------------------------------------------------------------------------| |
277 |
| | |
278 |
|% program >| file2 | |
279 |
--------------------------------------------------------------------------- |
280 |
|
281 |
=========================== |
282 |
7. Moves, Adds, and Changes |
283 |
=========================== |
284 |
|
285 |
Moves |
286 |
----- |
287 |
|
288 |
The following developers recently left the Gentoo team: |
289 |
|
290 |
* None this week |
291 |
|
292 |
Adds |
293 |
---- |
294 |
|
295 |
The following developers recently joined the Gentoo Linux team: |
296 |
|
297 |
* None this week |
298 |
|
299 |
Changes |
300 |
------- |
301 |
|
302 |
The following developers recently changed roles within the Gentoo Linux |
303 |
project: |
304 |
|
305 |
* None this week |
306 |
|
307 |
==================== |
308 |
8. Contribute to GWN |
309 |
==================== |
310 |
|
311 |
Interested in contributing to the Gentoo Weekly Newsletter? Send us an |
312 |
email[37]. |
313 |
|
314 |
37. gwn-feedback@g.o |
315 |
|
316 |
=============== |
317 |
9. GWN Feedback |
318 |
=============== |
319 |
|
320 |
Please send us your feedback[38] and help make the GWN better. |
321 |
|
322 |
38. gwn-feedback@g.o |
323 |
|
324 |
================================ |
325 |
10. GWN Subscription Information |
326 |
================================ |
327 |
|
328 |
To subscribe to the Gentoo Weekly Newsletter, send a blank email to |
329 |
gentoo-gwn-subscribe@g.o. |
330 |
|
331 |
To unsubscribe to the Gentoo Weekly Newsletter, send a blank email to |
332 |
gentoo-gwn-unsubscribe@g.o from the email address you are |
333 |
subscribed under. |
334 |
|
335 |
=================== |
336 |
11. Other Languages |
337 |
=================== |
338 |
|
339 |
The Gentoo Weekly Newsletter is also available in the following languages: |
340 |
|
341 |
* Danish[39] |
342 |
* Dutch[40] |
343 |
* English[41] |
344 |
* German[42] |
345 |
* French[43] |
346 |
* Japanese[44] |
347 |
* Italian[45] |
348 |
* Polish[46] |
349 |
* Portuguese (Brazil)[47] |
350 |
* Portuguese (Portugal)[48] |
351 |
* Russian[49] |
352 |
* Spanish[50] |
353 |
* Turkish[51] |
354 |
39. http://www.gentoo.org/news/da/gwn/gwn.xml |
355 |
40. http://www.gentoo.org/news/be/gwn/gwn.xml |
356 |
41. http://www.gentoo.org/news/en/gwn/gwn.xml |
357 |
42. http://www.gentoo.org/news/de/gwn/gwn.xml |
358 |
43. http://www.gentoo.org/news/fr/gwn/gwn.xml |
359 |
44. http://www.gentoo.org/news/ja/gwn/gwn.xml |
360 |
45. http://www.gentoo.org/news/it/gwn/gwn.xml |
361 |
46. http://www.gentoo.org/news/pl/gwn/gwn.xml |
362 |
47. http://www.gentoo.org/news/br/gwn/gwn.xml |
363 |
48. http://www.gentoo.org/news/pt/gwn/gwn.xml |
364 |
49. http://www.gentoo.org/news/ru/gwn/gwn.xml |
365 |
50. http://www.gentoo.org/news/es/gwn/gwn.xml |
366 |
51. http://www.gentoo.org/news/tr/gwn/gwn.xml |
367 |
|
368 |
Yuji Carlos Kosugi <carlos@g.o> - Editor |
369 |
AJ Armstrong <aja@×××××××××××××.com> - Contributor |
370 |
Brian Downey <bdowney@×××××××××××.net> - Contributor |
371 |
Kurt Lieber <klieber@g.o> - Contributor |
372 |
David Narayan <david@×××××××.net> - Contributor |
373 |
Ulrich Plate <plate@g.o> - Contributor |
374 |
Sven Vermeulen <swift@g.o> - Contributor |
375 |
Simon Holm Thagersen <simon@××××××.net> - Danish Translation |
376 |
Jesper Brodersen <broeman@g.o> - Danish Translation |
377 |
Arne Mejlholm <aaby@g.o> - Danish Translation |
378 |
Hendrik Eeckhaut <Hendrik.Eeckhaut@×××××.be> - Dutch Translation |
379 |
Jorn Eilander <sephiroth@××××××××.nl> - Dutch Translation |
380 |
Bernard Kerckenaere <bernieke@××××××××.com> - Dutch Translation |
381 |
Peter ter Borg <peter@××××××.nl> - Dutch Translation |
382 |
Jochen Maes <linux@××××.be> - Dutch Translation |
383 |
Roderick Goessen <rgoessen@××××.nl> - Dutch Translation |
384 |
Gerard van den Berg <gerard@××××××.net> - Dutch Translation |
385 |
Matthieu Montaudouin <mat@××××××××.com> - French Translation |
386 |
Xavier Neys <neysx@g.o> - French Translation |
387 |
Martin Prieto <riverdale@×××××××××.org> - French Translation |
388 |
Antoine Raillon <cabec2@××××××.net> - French Translation |
389 |
Sebastien Cevey <seb@×××××.net> - French Translation |
390 |
Jean-Christophe Choisy <mabouya@××××××××××××.org> - French Translation |
391 |
Thomas Raschbacher <lordvan@g.o> - German Translation |
392 |
Steffen Lassahn <madeagle@g.o> - German Translation |
393 |
Matthias F. Brandstetter <haim@g.o> - German Translation |
394 |
Lukas Domagala <Cyrik@g.o> - German Translation |
395 |
Tobias Scherbaum <dertobi123@g.o> - German Translation |
396 |
Daniel Gerholdt <Sputnik1969@g.o> - German Translation |
397 |
Marc Herren <dj-submerge@g.o> - German Translation |
398 |
Tobias Matzat <SirSeoman@g.o> - German Translation |
399 |
Marco Mascherpa <mush@××××××.net> - Italian Translation |
400 |
Claudio Merloni <paper@×××××××.it> - Italian Translation |
401 |
Stefano Lucidi <stefano.lucidi@×××××××××××××.org> - Italian Translation |
402 |
Katuyuki Konno <katuyuki@××××××××.jp> - Japanese Translation |
403 |
Hiroyuki Takeda <hiro@××××××××××××××.jp> - Japanese Translation |
404 |
Masato Hatakeyama <hatake@×××××××××××.jp> - Japanese Translation |
405 |
Masayoshi Nakamura <masayang@×××××××××.com> - Japanese Translation |
406 |
Yasunori Fukudome <yasunori@××××××××××××××××.uk> - Japanese Translation |
407 |
Tomoyuki Sakurai <web-gentoo-doc-jp@××××××××××××.nu> - Japanese Translation |
408 |
Lukasz Strzygowski <lucass@××××××.pl> - Polish Translation |
409 |
Karol Goralski <gooroo@××××××.pl> - Polish Translation |
410 |
Atila "Jedi" Bohlke Vasconcelos <bohlke@×××××××××.br> - Portuguese |
411 |
(Brazil) Translation |
412 |
Eduardo Belloti <dudu@××××××××.net> - Portuguese (Brazil) Translation |
413 |
Jo??o Rafael Moraes Nicola <joaoraf@×××××××××.br> - Portuguese (Brazil) |
414 |
Translation |
415 |
Marcelo Gon??alves de Azambuja <mgazambuja@×××××××××.br> - Portuguese |
416 |
(Brazil) Translation |
417 |
Otavio Rodolfo Piske <angusy@××××××××.org> - Portuguese (Brazil) |
418 |
Translation |
419 |
Pablo N. Hess -- NatuNobilis <natunobilis@××××××××.org> - Portuguese |
420 |
(Brazil) Translation |
421 |
Pedro de Medeiros <pzilla@××××××××.br> - Portuguese (Brazil) Translation |
422 |
Ventura Barbeiro <venturasbarbeiro@××××××.br> - Portuguese (Brazil) |
423 |
Translation |
424 |
Bruno Ferreira <blueroom@××××××××××××.net> - Portuguese (Portugal) |
425 |
Translation |
426 |
Gustavo Felisberto <humpback@××××××××××.net> - Portuguese (Portugal) |
427 |
Translation |
428 |
Jos?? Costa <jose_costa@×××××××.pt> - Portuguese (Portugal) Translation |
429 |
Luis Medina <metalgodin@×××××××××.org> - Portuguese (Portugal) Translation |
430 |
Ricardo Loureiro <rjlouro@×××××××.org> - Portuguese (Portugal) Translation |
431 |
Aleksandr Martyncev <amncorp@××.ru> - Russian Translator |
432 |
Sergey Galkin <gals_home@××××.ru> - Russian Translator |
433 |
Sergey Kuleshov <svyatogor@g.o> - Russian Translator |
434 |
Alex Spirin <asp13@××××.ru> - Russian Translator |
435 |
Denis Zaletov <dzaletov@×××××××.ru> - Russian Translator |
436 |
Lanark <lanark@××××××××××.ar> - Spanish Translation |
437 |
Fernando J. Pereda <ferdy@××××××.org> - Spanish Translation |
438 |
Lluis Peinado Cifuentes <lpeinado@×××.edu> - Spanish Translation |
439 |
Zephryn Xirdal T <ZEPHRYNXIRDAL@××××××××××.net> - Spanish Translation |
440 |
Guillermo Juarez <katossi@××××××××××××××××.es> - Spanish Translation |
441 |
Jes??s Garc??a Crespo <correo@××××××.com> - Spanish Translation |
442 |
Carlos Castillo <carlos@×××××××××××××.com> - Spanish Translation |
443 |
Julio Castillo <julio@×××××××××××××.com> - Spanish Translation |
444 |
Sergio G??mez <s3r@××××××××××××.ar> - Spanish Translation |
445 |
Aycan Irican <aycan@××××××××.tr> - Turkish Translation |
446 |
Bugra Cakir <bugra@×××××××××.com> - Turkish Translation |
447 |
Cagil Seker <cagils@××××××××××.tr> - Turkish Translation |
448 |
Emre Kazdagli <emre@××××××××.tr> - Turkish Translation |
449 |
Evrim Ulu <evrim@××××××××.tr> - Turkish Translation |
450 |
Gursel Kaynak <gurcell@××××××××.tr> - Turkish Translation |