Gentoo Archives: gentoo-gwn

From: Lars Weiler <pylon@g.o>
To: gentoo-gwn@l.g.o
Subject: [gentoo-gwn] Gentoo Weekly Newsletter 30 January 2006
Date: Mon, 30 Jan 2006 21:43:27
Message-Id: 20060130210529.GA10827@elladan.wh-og.hs-niederrhein.de
1 ---------------------------------------------------------------------------
2 Gentoo Weekly Newsletter
3 http://www.gentoo.org/news/en/gwn/current.xml
4 This is the Gentoo Weekly Newsletter for the week of 30 January 2006.
5 ---------------------------------------------------------------------------
6
7 ==============
8 1. Gentoo news
9 ==============
10
11 Modular X entering ~arch (testing)
12 ----------------------------------
13
14 The X team members plan to remove all 289 modular X packages from
15 package.mask soon. They will enter ~arch (testing) for all the
16 architectures for which they're keyworded: alpha, amd64, arm, ia64, mips,
17 ppc, sh, sparc and x86. To learn how to upgrade properly, read the
18 migration guide[1] before starting the upgrade. It discusses how the USE
19 flags changed, why X.Org went modular and why emerge xorg-x11 won't be
20 quite enough yet.
21
22 1. http://www.gentoo.org/proj/en/desktop/x/x11/modular-x-howto.xml
23
24 Not all packages in the tree will work with modular X when it enters
25 ~arch, although the most common applications already do. The X team
26 encourages users and developers to contribute fixes to their favorite
27 packages by reading the porting guide[2]. Applications requiring the most
28 work include games and packages without a listed maintainer in
29 metadata.xml or altogether lacking metadata.
30
31 2. http://www.gentoo.org/proj/en/desktop/x/x11/porting-modular-x-howto.xml
32
33 Donnie Berkholz[3] provides a list of all unported applications along with
34 their maintainers, updated daily, in his webspace[4]. A graph of porting
35 progress exists in the same location. If you encounter any bugs with the
36 migration, please report them at Gentoo's Bugzilla[5].
37
38 3. spyderous@g.o
39 4. http://dev.gentoo.org/~spyderous/broken_modular/
40 5. https://bugs.gentoo.org
41
42 End of lifetime announcement for old-style configuration Apache packages
43 ------------------------------------------------------------------------
44
45 In October, the Apache team made stable a new configuration style for
46 apache and its modules. While many users have made the switch, many
47 cautious users have not.
48
49 The Apache team is announcing that they will no longer support the
50 old-style configuration of Apache after March 1, 2006. Anyone who has not
51 upgraded to net-www/apache-2.0.55 and higher, or net-www/apache-1.3.34-r10
52 and higher should do so before then. For information on how to upgrade, we
53 provide an Upgrading Apache Guide[6].
54
55 6. http://www.gentoo.org/doc/en/apache-upgrading.xml
56
57 PHP Herd's January meeting
58 --------------------------
59
60 Gentoo's PHP Herd held their first meeting in 2006 on January 21st. Topics
61 on the agenda included election of herd leads, SLOTting of PHP minor
62 versions and the stabilization of dev-lang/php.
63
64 Luca Longinotti[7] has been elected as lead for core-PHP packages and
65 Sebastian Bergmann[8] as lead for PEAR packages. The PHP Herd agreed to
66 keep the SLOTting scheme as is, i.e. only major versions of PHP (PHP 4,
67 PHP 5) will be slotted. The most notable decision made from a users point
68 of view forces users to migrate from dev-php/php to dev-lang/php as soon
69 as possible as the PHP Herd decided to no longer support them. The old
70 dev-php/php packages will be package.masked as soon as the architecture
71 teams have stabilized the new-style PHP packages, which is expected by the
72 end of February, and removed from the Portage tree about two months later.
73
74 7. chtekk@g.o
75 8. sebastian@g.o
76
77 The minutes of the PHP Herd's January meeting are available at the PHP
78 Overlay website[9]. Their next meeting is scheduled for February 7th at
79 19:00 UTC in #gentoo-php on irc.freenode.net.
80
81 9. http://tinyurl.com/cc964
82
83 Slotted MySQL
84 -------------
85
86 Gentoo's MySQL maintainers plan to move =dev-db/mysql-4.1.16-r30 and
87 dev-db/mysql-5.0.18-r30 into ~arch (testing) soon. Those -r30 revision
88 Ebuilds now allow installing several MySQL versions in parallel, or in
89 Gentoo speak: They support SLOTting. While all minor versions beyond or
90 equal to 4.1 will become slotted, dev-db/mysql-4.0* will stay at SLOT="0".
91
92 To accomplish this, new Eclasses and an eselect module for easy switching
93 between MySQL versions were written. Though you can run several MySQL
94 versions simultaneously you are still limited to one (the current)
95 libmysqlclient at a time. To learn how to upgrade properly, read the
96 migration guide[10] before starting the upgrade. All packages in the tree
97 that worked before should also work with slotted MySQL when it enters
98 ~arch.
99
100 10. http://www.gentoo.org/doc/en/mysql-upgrade-slotted.xml
101
102 If you encounter any bugs with the migration, please report them at
103 Gentoo's Bugzilla[11].
104
105 11. https://bugs.gentoo.org
106
107 gentoolkit update
108 -----------------
109
110 A new version of app-portage/gentoolkit (0.2.1) containing significant
111 improvements has been marked stable a few days ago. These are the major
112 changes between gentoolkit-0.2.0 and gentoolkit-0.2.1:
113
114 * A new tool called eclean for removing no longer needed distfiles and
115 packages has been added
116 * revdep-rebuild now allows for more user interaction and customizing.
117 You can avoid rebuilding binary packages like app-office/openoffice-bin by
118 setting the SEARCH_DIRS_MASK variable in /etc/make.conf to for example
119 skip packages installed in the /opt directory.
120 * One major fix optimizing memory consumption has been applied to equery.
121 Also many fixes made it more usable, though it is still not the fastest
122 program on the block. If the lack of speed bothers you, we would recommend
123 investigating the app-portage/portage-utils package
124
125 A detailed listing of the changes for those interested is in
126 /usr/share/doc/gentoolkit-0.2.1/ChangeLog.
127
128 Three million posts in the Gentoo Forums
129 ----------------------------------------
130
131 Figure 1.1: Three million posts in the Gentoo Forums
132 http://www.gentoo.org/images/gwn/20060130_3M-posts.png
133
134 Almost exactly a year after reaching two million posts in January 2005[12]
135 the Gentoo Forums hit three million posts on Jan 24th. A thread on the
136 forums[13] not only features the answer to the question "Whose post was
137 it?", but also leaves space for wild conspiracy theories about a
138 mysterious decrease in postcount shortly before the three millionth post
139 was reached. The Gentoo Forums were noted to be among the largest phpBB
140 installations on big-boards.com[14].
141
142 12. http://www.gentoo.org/news/en/gwn/20050207-newsletter.xml
143 13. http://forums.gentoo.org/viewtopic-t-421954.html
144 14. http://rankings.big-boards.com/?filter=phpBB,all
145
146 pdftohtml replaced by poppler
147 -----------------------------
148
149 app-text/pdftohtml has been replaced by app-text/poppler because of
150 security concerns as stated in bug #115789[15]. You are strongly advised
151 to unmerge app-text/pdftohtml and emerge app-text/poppler instead.
152
153 15. https://bugs.gentoo.org/show_bug.cgi?id=115789
154
155 ==============
156 2. Future zone
157 ==============
158
159 "Prefixed Portage" for Gentoo for Mac OS X
160 ------------------------------------------
161
162 For the last few months, the Gentoo for Mac OS X project has been serving
163 as the primary testbed for a "prefix aware" portage and ebuild repository.
164 This basically allows for a configurable 'offset prefix' in which portage
165 and all software it manages can be installed, as any user, without any
166 interference with the 'host' operating system. The need for such
167 functionality arose from the ever-increasing problems of using Portage in
168 'foreign' environments such as Apple's Mac OS X.
169
170 While in its current state, it is serving merely as a working and
171 functional prototype, it has opened up many exciting possibilities for the
172 future of Gentoo and Portage. Although the Gentoo for Mac OS X project is
173 the first project from the Gentoo/Alt umbrella project to have a pressing
174 need for portage installations that leave the host operating system
175 unmodified, it has proved to be of great interest to users and developers
176 alike who are having excellent results running portage on a multitude of
177 OS - AIX, HP-UX, FreeBSD, BeOS/Haiku/Zeta, Solaris, and Fedora Core Linux.
178
179 The Gentoo for Mac OS X team hopes to have preliminary documentation and
180 developer installer packages available as soon as possible. Those
181 interested in contributing may contact Kito Danya Dietrich[16] or Fabian
182 Groffen[17].
183
184 16. kito@g.o
185 17. grobian@g.o
186
187 =========================
188 3. Heard in the community
189 =========================
190
191 gentoo-dev
192 ----------
193
194 sed vs. gsed
195
196 In his quest for Gentoo/Alt improvements Diego Pettenò [18] asks for
197 advice on how to handle sed as some of the alternative hosts for Gentoo
198 use non-GNU sed, which has a slightly different behavior in some cases.
199
200 18. flameeyes@g.o
201
202 * sed vs. gsed [19]
203 19. http://thread.gmane.org/gmane.linux.gentoo.devel/35436
204
205
206 RFC: emerge snapshots
207
208 If something breaks during an update the "repair" often takes quite some
209 time. Are there any methods for doing a "rollback" to the old state of the
210 system to undo the breakage? What would need to be done to make this
211 feasible, and why is quickpkg often not good enough?
212
213 * RFC: emerge snapshots [20]
214 20. http://thread.gmane.org/gmane.linux.gentoo.devel/35411
215
216
217 ======================
218 4. Gentoo in the press
219 ======================
220
221 Alternative Linux distributions on the POWER5 platform
222 ------------------------------------------------------
223
224 A review of unsupported Linux distributions on the POWER5 platform has
225 been published on IBM developerworks[21]. Besides Debian, openSUSE 10 and
226 Fedora Core this article also covers a test-environment and the
227 installation of Gentoo on an IBM eServerâ„¢ OpenPowerâ„¢ 720 system.
228
229 21. http://www-128.ibm.com/developerworks/linux/library/l-pow-linuxdistros.html?ca=drs-
230
231 =========================
232 5. Gentoo developer moves
233 =========================
234
235 Moves
236 -----
237
238 The following developers recently left the Gentoo project:
239
240 * None this week
241
242 Adds
243 ----
244
245 The following developers recently joined the Gentoo project:
246
247 * Markus Ullmann (Jokey) - netmon
248 * Patrick Mclean (chutzpah) - sound, amd64
249 * Damian Kuras (shadoww) - Polish translations
250 * Karol Pasternak (reb) - Gentoo/OpenBSD Lead Developer
251
252 Changes
253 -------
254
255 The following developers recently changed roles within the Gentoo project:
256
257 * None this week
258
259 ==================
260 6. Gentoo Security
261 ==================
262
263 Sun and Blackdown Java: Applet privilege escalation
264 ---------------------------------------------------
265
266 Sun's and Blackdown's JDK or JRE may allow untrusted applets to elevate
267 their privileges.
268
269 For more information, please see the GLSA Announcement[22]
270
271 22. http://www.gentoo.org/security/en/glsa/glsa-200601-10.xml
272
273 KDE kjs: URI heap overflow vulnerability
274 ----------------------------------------
275
276 KDE fails to properly validate URIs when handling javascript, potentially
277 resulting in the execution of arbitrary code.
278
279 For more information, please see the GLSA Announcement[23]
280
281 23. http://www.gentoo.org/security/en/glsa/glsa-200601-11.xml
282
283 Trac: Cross-site scripting vulnerability
284 ----------------------------------------
285
286 Trac is vulnerable to a cross-site scripting attack that could allow
287 arbitrary JavaScript code execution.
288
289 For more information, please see the GLSA Announcement[24]
290
291 24. http://www.gentoo.org/security/en/glsa/glsa-200601-12.xml
292
293 Gallery: Cross-site scripting vulnerability
294 -------------------------------------------
295
296 Gallery is possibly vulnerable to a cross-site scripting attack that could
297 allow arbitrary JavaScript code execution.
298
299 For more information, please see the GLSA Announcement[25]
300
301 25. http://www.gentoo.org/security/en/glsa/glsa-200601-13.xml
302
303 LibAST: Privilege escalation
304 ----------------------------
305
306 A buffer overflow in LibAST may result in execution of arbitrary code with
307 escalated privileges.
308
309 For more information, please see the GLSA Announcement[26]
310
311 26. http://www.gentoo.org/security/en/glsa/glsa-200601-14.xml
312
313 Paros: Default administrator password
314 -------------------------------------
315
316 Paros's database component is installed without a password, allowing
317 execution of arbitrary system commands.
318
319 For more information, please see the GLSA Announcement[27]
320
321 27. http://www.gentoo.org/security/en/glsa/glsa-200601-15.xml
322
323 ===========
324 7. Bugzilla
325 ===========
326
327 Summary
328 -------
329
330 * Statistics
331 * Closed bug ranking
332 * New bug rankings
333
334 Statistics
335 ----------
336
337 The Gentoo community uses Bugzilla (bugs.gentoo.org[28]) to record and
338 track bugs, notifications, suggestions and other interactions with the
339 development team. Between 15 January 2006 and 29 January 2006, activity on
340 the site has resulted in:
341
342 28. http://bugs.gentoo.org
343
344 * 1734 new bugs during this period
345 * 960 bugs closed or resolved during this period
346 * 59 previously closed bugs were reopened this period
347
348 Of the 9192 currently open bugs: 72 are labeled 'blocker', 171 are labeled
349 'critical', and 503 are labeled 'major'.
350
351 Closed bug rankings
352 -------------------
353
354 The developers and teams who have closed the most bugs during this period
355 are:
356
357 * PHP Bugs[29], with 53 closed bugs[30]
358 * Gentoo Games[31], with 47 closed bugs[32]
359 * Portage Utilities Team[33], with 45 closed bugs[34]
360 * AMD64 Porting Team[35], with 32 closed bugs[36]
361 * Perl Devs @ Gentoo[37], with 25 closed bugs[38]
362 * Gentoo Linux Gnome Desktop Team[39], with 25 closed bugs[40]
363 * Portage team[41], with 23 closed bugs[42]
364 * Gentoo's Team for Core System packages[43], with 22 closed bugs[44]
365 29. php-bugs@g.o
366 30. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2006-01-15&chfieldto=2006-01-29&resolution=FIXED&assigned_to=php-bugs@g.o
367 31. games@g.o
368 32. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2006-01-15&chfieldto=2006-01-29&resolution=FIXED&assigned_to=games@g.o
369 33. tools-portage@g.o
370 34. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2006-01-15&chfieldto=2006-01-29&resolution=FIXED&assigned_to=tools-portage@g.o
371 35. amd64@g.o
372 36. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2006-01-15&chfieldto=2006-01-29&resolution=FIXED&assigned_to=amd64@g.o
373 37. perl@g.o
374 38. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2006-01-15&chfieldto=2006-01-29&resolution=FIXED&assigned_to=perl@g.o
375 39. gnome@g.o
376 40. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2006-01-15&chfieldto=2006-01-29&resolution=FIXED&assigned_to=gnome@g.o
377 41. dev-portage@g.o
378 42. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2006-01-15&chfieldto=2006-01-29&resolution=FIXED&assigned_to=dev-portage@g.o
379 43. base-system@g.o
380 44. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2006-01-15&chfieldto=2006-01-29&resolution=FIXED&assigned_to=base-system@g.o
381
382
383 New bug rankings
384 ----------------
385
386 The developers and teams who have been assigned the most new bugs during
387 this period are:
388
389 * Default Assignee for New Packages[45], with 72 new bugs[46]
390 * AMD64 Porting Team[47], with 17 new bugs[48]
391 * Default Assignee for Orphaned Packages[49], with 16 new bugs[50]
392 * Gentoo Games[51], with 14 new bugs[52]
393 * X11 External Driver Maintainers[53], with 13 new bugs[54]
394 * Volkov Peter[55], with 12 new bugs[56]
395 * Gentoo's Team for Core System packages[57], with 11 new bugs[58]
396 * Gentoo Sound Team[59], with 10 new bugs[60]
397 45. maintainer-wanted@g.o
398 46. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2006-01-15&chfieldto=2006-01-29&assigned_to=maintainer-wanted@g.o
399 47. amd64@g.o
400 48. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2006-01-15&chfieldto=2006-01-29&assigned_to=amd64@g.o
401 49. maintainer-needed@g.o
402 50. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2006-01-15&chfieldto=2006-01-29&assigned_to=maintainer-needed@g.o
403 51. games@g.o
404 52. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2006-01-15&chfieldto=2006-01-29&assigned_to=games@g.o
405 53. x11-drivers@g.o
406 54. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2006-01-15&chfieldto=2006-01-29&assigned_to=x11-drivers@g.o
407 55. pva@g.o
408 56. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2006-01-15&chfieldto=2006-01-29&assigned_to=pva@g.o
409 57. base-system@g.o
410 58. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2006-01-15&chfieldto=2006-01-29&assigned_to=base-system@g.o
411 59. sound@g.o
412 60. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2006-01-15&chfieldto=2006-01-29&assigned_to=sound@g.o
413
414
415 ===============================
416 8. GWN subscription information
417 ===============================
418
419 To subscribe to the Gentoo Weekly Newsletter, send a blank email to
420 gentoo-gwn+subscribe@g.o.
421
422 To unsubscribe to the Gentoo Weekly Newsletter, send a blank email to
423 gentoo-gwn+unsubscribe@g.o from the email address you are
424 subscribed under.
425
426 ==================
427 9. Other languages
428 ==================
429
430 The Gentoo Weekly Newsletter is also available in the following languages:
431
432 * Danish[61]
433 * Dutch[62]
434 * English[63]
435 * German[64]
436 * French[65]
437 * Korean[66]
438 * Japanese[67]
439 * Italian[68]
440 * Polish[69]
441 * Portuguese (Brazil)[70]
442 * Portuguese (Portugal)[71]
443 * Russian[72]
444 * Spanish[73]
445 * Turkish[74]
446 61. http://www.gentoo.org/news/da/gwn/gwn.xml
447 62. http://www.gentoo.org/news/nl/gwn/gwn.xml
448 63. http://www.gentoo.org/news/en/gwn/gwn.xml
449 64. http://www.gentoo.org/news/de/gwn/gwn.xml
450 65. http://www.gentoo.org/news/fr/gwn/gwn.xml
451 66. http://www.gentoo.org/news/ko/gwn/gwn.xml
452 67. http://www.gentoo.org/news/ja/gwn/gwn.xml
453 68. http://www.gentoo.org/news/it/gwn/gwn.xml
454 69. http://www.gentoo.org/news/pl/gwn/gwn.xml
455 70. http://www.gentoo.org/news/pt_br/gwn/gwn.xml
456 71. http://www.gentoo.org/news/pt/gwn/gwn.xml
457 72. http://www.gentoo.org/news/ru/gwn/gwn.xml
458 73. http://www.gentoo.org/news/es/gwn/gwn.xml
459 74. http://www.gentoo.org/news/tr/gwn/gwn.xml
460
461
462 Ulrich Plate <plate@g.o> - Editor
463 Tobias Scherbaum <dertobi123@g.o> - Author
464 Patrick Lauer <patrick@g.o> - Author
465 Donnie Berkholz <spyderous@g.o> - Author
466 Michael Stewart <vericgar@g.o> - Author
467 Wernfried Haas <amne@g.o> - Author
468 Fabian Groffen <grobian@g.o> - Author
469
470 --
471 gentoo-gwn@g.o mailing list