Gentoo Archives: gentoo-gwn

From: Chris Gianelloni <wolf31o2@g.o>
To: gentoo-gwn@l.g.o
Subject: [gentoo-gwn] Gentoo Weekly Newsletter 11 December 2006
Date: Wed, 13 Dec 2006 22:27:13
Message-Id: 1166045370.11262.19.camel@inertia.twi-31o2.org
1 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
2 Gentoo Weekly Newsletter
3 http://www.gentoo.org/news/en/gwn/20061211-newsletter.xml
4 This is the Gentoo Weekly Newsletter for the week of 11 December 2006.
5 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
6
7 ==============
8 1. Gentoo News
9 ==============
10
11 EFIKA boards shipped
12 --------------------
13
14 Christmas came a little early this year for the Gentoo/PPC team and others.
15 A number of developers received the EFIKA[1], an evaluation board from
16 Genesi built around the MPC5200B PowerPC SoC (System on Chip) running at
17 400MHz. Also included on the board is 128MB of DDR memory, 10/100 ethernet,
18 2 USB 1.1 ports, 1 PCI/AGP slot, and sound with optical out.
19
20 1. http://www.efika.de/index_en.html
21
22 The Gentoo/PPC team, along with Release Engineering, are working on both
23 detailed instructions for installing Gentoo on the EFIKA, as well as CD
24 media capable of booting the EFIKA from USB. Gentoo would like to thank
25 Genesi for its continued support and Freescale for providing the funding to
26 make this program possible.
27
28 For more information on the EFIKA, or to buy one yourself, visit Genesi's
29 EFIKA page[2].
30
31 2. http://www.genesippc.com/efika.php
32
33 =========================
34 2. Heard in the community
35 =========================
36
37 forums.gentoo.org
38 -----------------
39
40 D-Bus 1.0.1 has been ~amd64'd
41
42 D-Bus, the inter-process communications program, has reached its 1.0
43 milestone and the resultant 1.01 ebuild is in testing. That is the good
44 news. The bad news is that the ABI (application binary interface) was
45 radically shifted from the prior 0.6x releases now stable in portage.
46
47 Emopig issued a warning to his fellow users that when he followed the
48 ebuild's instruction to run revdep-rebuild the resulting list of packages to
49 be re-merged was non-trivial (54 packages for him). Others seconded that,
50 particularly Gnome users. The damage on the KDE side seemed confined to the
51 kde-kioslaves package.
52
53 6thpink suggested that users install the binding packages dbus-glib,
54 dbus-python and dbus-qt3-old since the base dbus package no longer had USE
55 flags for python, qt3 or the like. This seemed to help at least one user.
56
57 * http://forums.gentoo.org/viewtopic-t-521973.html
58
59 Goodbye, Gentoo
60
61 Forums user beazizo has returned after an 18 month absence and said "I must
62 say, it [gentoo] is MUCH better than it was back then. It took me less than
63 a day to get a system up to a point where I had all the apps installed that
64 I was running in Ubuntu (and running much faster). I felt comfortable enough
65 to blow away my Ubuntu install. Good work Gentoo team!"
66
67 Welcome back to Gentoo, beazizo.
68
69 * https://forums.gentoo.org/viewtopic-p-3772054.html#3772054
70
71 gentoo-user
72 -----------
73
74 gnome-screensaver requires emacs?
75
76 Chris Bare was trying to install gnome-screensaver, with the following
77 result:
78
79 +---------------------------------------------------------------------------------+
80 | Code Listing 2.1 |
81 | Trying to emerge gnome-screensaver |
82 +---------------------------------------------------------------------------------+
83 | # emerge emerge -pv --tree gnome-screensaver |
84 | |
85 | These are the packages that would be merged, in reverse order: |
86 | |
87 | Calculating dependencies... done! |
88 | [ebuild N ] gnome-extra/gnome-screensaver-2.14.2 USE="pam xinerama -debug |
89 | -doc" 1,872 kB |
90 | [ebuild N ] app-xemacs/emerge-1.09 59 kB |
91 | [ebuild N ] app-editors/xemacs-21.4.17 USE="X berkdb gpm jpeg png tiff |
92 | -Xaw3d -athena -canna -dnd -freewnn -ldap -motif -mule -nas -neXt -postgres |
93 | -xface" 10,377 kB |
94 +---------------------------------------------------------------------------------+
95
96 He wanted to know why gnome-screensaver seemed, against all logic, to depend
97 on xemacs.
98
99 Etaoin Shrdlu spotted the real problem. (Did you?) Chris had typed emerge
100 emerge and portage thought he wanted to emerge the app-xemacs/emerge package
101 and its dependencies.
102
103 This serves as a useful warning, since we all make such a mistakes
104 sometimes.
105
106 * http://archives.gentoo.org/gentoo-user/msg_105017.xml
107
108 gentoo-amd64
109 ------------
110
111 CFLAGS for Intel Core 2 CPUs
112
113 The Core 2 Duo is the flagship chip of Intel's CPU line and the "it"
114 processor of the moment. Any right-thinking Gentoo-er has only one question:
115 "What CFLAGS should I use for that bad boy?"
116
117 Michael Weyershäuser provided a pointer to a dirtyepic blog post[3] that
118 answered that question based on information from Intel itself. For GCC 4.1,
119 Core Solo/Duo uses -march=prescott while the Core 2 Duo/Solo gets
120 -march=nocona. For GCC 4.2, the -march is the same, but a -mtune=generic
121 flag is added.
122
123 3. http://psykil.livejournal.com/2006/12/03/
124
125 * http://archives.gentoo.org/gentoo-amd64/msg_14402.xml
126
127 =======================
128 3. Gentoo International
129 =======================
130
131 Belgium: DonnaroomLAN, Arendonk
132 -------------------------------
133
134 Dutch Documentation Lead Dimitry Bradt[4] and other members of the Dutch
135 community are organizing a LAN party event and are inviting the Dutch Gentoo
136 community. The event takes place on Saturday 6 January 2007 and Sunday 7
137 January 2007 and is being held in Arendonk, Belgium[5], about half way
138 between Antwerpen and Eindhoven.
139
140 4. diox@g.o
141 5. http://www.google.com/maps?f=q&hl=en&q=Arendonk,+Belgium&ie=UTF8&z=10
142
143 For more information, please visit the home page[6].
144
145 6. http://LAN.donnaroom.be/
146
147 ======================
148 4. Gentoo in the press
149 ======================
150
151 Linux.com (7 December 2006)
152 ---------------------------
153
154 Several developers were contacted from several distributions by the
155 article's author, Mayank Sharma, about their distribution's security
156 practices. Mayank spoke with developers from Red Hat, Novell, CentOS,
157 Debian, and, of course, Gentoo. He explains the different methodologies used
158 by the distributions, as well as points out some differences between the
159 community and commercial distributions.
160
161 * http://specialreports.linux.com/specialreports/06/12/04/072249.shtml
162
163 =========================
164 5. Gentoo developer moves
165 =========================
166
167 Moves
168 -----
169
170 The following developers recently left the Gentoo project:
171
172 * none this week
173
174 Adds
175 ----
176
177 The following developers recently joined the Gentoo project:
178
179 * Peter Weller (welp) AMD64/Bugday/XFCE
180
181 Changes
182 -------
183
184 The following developers recently changed roles within the Gentoo project:
185
186 * Stephen Bennet (spb) joined Bugday team
187
188 ==================
189 6. Gentoo security
190 ==================
191
192 wv library: Multiple integer overflows
193 --------------------------------------
194
195 The wv library is vulnerable to multiple integer overflows which could lead
196 to the execution of arbitrary code.
197
198 For more information, please see the GLSA Announcement[7]
199
200 7. http://www.gentoo.org/security/en/glsa/glsa-200612-01.xml
201
202 xine-lib: Buffer overflow
203 -------------------------
204
205 xine-lib is vulnerable to a buffer overflow in the Real Media input plugin,
206 which could lead to the execution of arbitrary code.
207
208 For more information, please see the GLSA Announcement[8]
209
210 8. http://www.gentoo.org/security/en/glsa/glsa-200612-02.xml
211
212 GnuPG: Multiple vulnerabilities
213 -------------------------------
214
215 GnuPG is vulnerable to a buffer overflow and an erroneous function pointer
216 dereference that can result in the execution of arbitrary code.
217
218 For more information, please see the GLSA Announcement[9]
219
220 9. http://www.gentoo.org/security/en/glsa/glsa-200612-03.xml
221
222 ModPlug: Multiple buffer overflows
223 ----------------------------------
224
225 ModPlug contains several boundary errors that could lead to buffer overflows
226 resulting in the possible execution of arbitrary code.
227
228 For more information, please see the GLSA Announcement[10]
229
230 10. http://www.gentoo.org/security/en/glsa/glsa-200612-04.xml
231
232 KOffice shared libraries: Heap corruption
233 -----------------------------------------
234
235 An integer overflow in koffice-libs allows for a Denial of Service and
236 possibly the execution of arbitrary code when viewing malicious PowerPoint
237 files.
238
239 For more information, please see the GLSA Announcement[11]
240
241 11. http://www.gentoo.org/security/en/glsa/glsa-200612-05.xml
242
243 Mozilla Thunderbird: Multiple vulnerabilities
244 ---------------------------------------------
245
246 Multiple vulnerabilities have been identified in Mozilla Thunderbird.
247
248 For more information, please see the GLSA Announcement[12]
249
250 12. http://www.gentoo.org/security/en/glsa/glsa-200612-06.xml
251
252 Mozilla Firefox: Multiple vulnerabilities
253 -----------------------------------------
254
255 Multiple vulnerabilities have been reported in Mozilla Firefox.
256
257 For more information, please see the GLSA Announcement[13]
258
259 13. http://www.gentoo.org/security/en/glsa/glsa-200612-07.xml
260
261 SeaMonkey: Multiple vulnerabilities
262 -----------------------------------
263
264 Multiple vulnerabilities have been identified in the SeaMonkey project.
265
266 For more information, please see the GLSA Announcement[14]
267
268 14. http://www.gentoo.org/security/en/glsa/glsa-200612-08.xml
269
270 MadWifi: Kernel driver buffer overflow
271 --------------------------------------
272
273 MadWifi is vulnerable to a buffer overflow that could potentially lead to
274 the remote execution of arbitrary code with root privileges.
275
276 For more information, please see the GLSA Announcement[15]
277
278 15. http://www.gentoo.org/security/en/glsa/glsa-200612-09.xml
279
280 ============================
281 7. Upcoming package removals
282 ============================
283
284 This is a list of packages that have been announced to be removed in the
285 future. The package removals come from many locations, including the
286 Treecleaners[16] and various developers.
287
288 16. http://www.gentoo.org/proj/en/qa/treecleaners
289
290 Last Rites:
291 -----------
292
293 Package: Removal date: Contact:
294 dev-lang/prothon 03 Jan 07 Bryan Østergaard[17]
295 x11-themes/bmpx-themes 04 Jan 07 Patrick McLean[18]
296 app-antivirus/vlnx 09 Jan 07 Timothy Redaelli[19]
297
298 17. kloeri@g.o
299 18. chutzpah@g.o
300 19. drizzt@g.o
301
302 ===========
303 8. Bugzilla
304 ===========
305
306 Summary
307 -------
308
309 * Statistics
310 * Closed bug ranking
311 * New bug rankings
312
313 Statistics
314 ----------
315
316 The Gentoo community uses Bugzilla (bugs.gentoo.org[20]) to record and track
317 bugs, notifications, suggestions and other interactions with the development
318 team. Between 03 December 2006 and 10 December 2006, activity on the site
319 has resulted in:
320
321 20. http://bugs.gentoo.org
322
323 * 724 new bugs during this period
324 * 427 bugs closed or resolved during this period
325 * 25 previously closed bugs were reopened this period
326 * 146 closed as NEEDINFO/WONTFIX/CANTFIX/INVALID/UPSTREAM during this
327 period
328 * 163 bugs marked as duplicates during this period
329
330 Of the 10699 currently open bugs: 26 are labeled 'blocker', 104 are labeled
331 'critical', and 447 are labeled 'major'.
332
333 Closed bug rankings
334 -------------------
335
336 The developers and teams who have closed the most bugs during this period
337 are:
338
339 * Default Assignee for Orphaned Packages[21], with 22 closed bugs[22]
340 * XFCE Team[23], with 20 closed bugs[24]
341 * dotnet AT gentoo DOT org[25], with 16 closed bugs[26]
342 * Gentoo's Team for Core System packages[27], with 14 closed bugs[28]
343 * Gentoo Catalyst Developers[29], with 13 closed bugs[30]
344 * Gentoo/BSD Team[31], with 13 closed bugs[32]
345 * Roy Marples[33], with 11 closed bugs[34]
346 * Gnustep herd[35], with 11 closed bugs[36]
347
348 21. maintainer-needed@g.o
349 22. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2006-12-03&chfieldto=2006-12-10&resolution=FIXED&assigned_to=maintainer-needed@g.o
350 23. xfce@g.o
351 24. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2006-12-03&chfieldto=2006-12-10&resolution=FIXED&assigned_to=xfce@g.o
352 25. dotnet@g.o
353 26. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2006-12-03&chfieldto=2006-12-10&resolution=FIXED&assigned_to=dotnet@g.o
354 27. base-system@g.o
355 28. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2006-12-03&chfieldto=2006-12-10&resolution=FIXED&assigned_to=base-system@g.o
356 29. catalyst@g.o
357 30. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2006-12-03&chfieldto=2006-12-10&resolution=FIXED&assigned_to=catalyst@g.o
358 31. bsd@g.o
359 32. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2006-12-03&chfieldto=2006-12-10&resolution=FIXED&assigned_to=bsd@g.o
360 33. uberlord@g.o
361 34. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2006-12-03&chfieldto=2006-12-10&resolution=FIXED&assigned_to=uberlord@g.o
362 35. gnustep@g.o
363 36. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2006-12-03&chfieldto=2006-12-10&resolution=FIXED&assigned_to=gnustep@g.o
364
365 New bug rankings
366 ----------------
367
368 The developers and teams who have been assigned the most new bugs during
369 this period are:
370
371 * Default Assignee for New Packages[37], with 29 new bugs[38]
372 * Default Assignee for Orphaned Packages[21], with 11 new bugs[39]
373 * Bryan Østergaard[17], with 10 new bugs[40]
374 * AMD64 Project[41], with 9 new bugs[42]
375 * Gentoo X-windows packagers[43], with 7 new bugs[44]
376 * Gentoo Sound Team[45], with 7 new bugs[46]
377 * mips team[47], with 6 new bugs[48]
378 * media-video herd[49], with 6 new bugs[50]
379
380 17. kloeri@g.o
381 21. maintainer-needed@g.o
382 37. maintainer-wanted@g.o
383 38. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2006-12-03&chfieldto=2006-12-10&assigned_to=maintainer-wanted@g.o
384 39. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2006-12-03&chfieldto=2006-12-10&assigned_to=maintainer-needed@g.o
385 40. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2006-12-03&chfieldto=2006-12-10&assigned_to=kloeri@g.o
386 41. amd64@g.o
387 42. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2006-12-03&chfieldto=2006-12-10&assigned_to=amd64@g.o
388 43. x11@g.o
389 44. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2006-12-03&chfieldto=2006-12-10&assigned_to=x11@g.o
390 45. sound@g.o
391 46. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2006-12-03&chfieldto=2006-12-10&assigned_to=sound@g.o
392 47. mips@g.o
393 48. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2006-12-03&chfieldto=2006-12-10&assigned_to=mips@g.o
394 49. media-video@g.o
395 50. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2006-12-03&chfieldto=2006-12-10&assigned_to=media-video@g.o
396
397 ===============
398 9. GWN feedback
399 ===============
400
401 The GWN is staffed by volunteers and members of the community who submit
402 ideas and articles. If you are interested in writing for the GWN, have
403 feedback on an article that we have posted, or just have an idea or article
404 that you would like to submit to the GWN, please send us your feedback[51]
405 and help make the GWN better.
406
407 51. gwn-feedback@g.o
408
409 ================================
410 10. GWN subscription information
411 ================================
412
413 To subscribe to the Gentoo Weekly Newsletter, send a blank e-mail to
414 gentoo-gwn+subscribe@g.o.
415
416 To unsubscribe to the Gentoo Weekly Newsletter, send a blank e-mail to
417 gentoo-gwn+unsubscribe@g.o from the e-mail address you are subscribed
418 under.
419
420 ===================
421 11. Other languages
422 ===================
423
424 The Gentoo Weekly Newsletter is also available in the following languages:
425
426 * Chinese (Simplified)[52]
427 * Danish[53]
428 * Dutch[54]
429 * English[55]
430 * German[56]
431 * Greek[57]
432 * French[58]
433 * Korean[59]
434 * Japanese[60]
435 * Italian[61]
436 * Polish[62]
437 * Portuguese (Brazil)[63]
438 * Portuguese (Portugal)[64]
439 * Russian[65]
440 * Slovak[66]
441 * Spanish[67]
442 * Turkish[68]
443
444 52. http://www.gentoo.org/news/zh_cn/gwn/gwn.xml
445 53. http://www.gentoo.org/news/da/gwn/gwn.xml
446 54. http://www.gentoo.org/news/nl/gwn/gwn.xml
447 55. http://www.gentoo.org/news/en/gwn/gwn.xml
448 56. http://www.gentoo.org/news/de/gwn/gwn.xml
449 57. http://www.gentoo.org/news/el/gwn/gwn.xml
450 58. http://www.gentoo.org/news/fr/gwn/gwn.xml
451 59. http://www.gentoo.org/news/ko/gwn/gwn.xml
452 60. http://www.gentoo.org/news/ja/gwn/gwn.xml
453 61. http://www.gentoo.org/news/it/gwn/gwn.xml
454 62. http://www.gentoo.org/news/pl/gwn/gwn.xml
455 63. http://www.gentoo.org/news/pt_br/gwn/gwn.xml
456 64. http://www.gentoo.org/news/pt/gwn/gwn.xml
457 65. http://www.gentoo.org/news/ru/gwn/gwn.xml
458 66. http://www.gentoo.org/news/sk/gwn/gwn.xml
459 67. http://www.gentoo.org/news/es/gwn/gwn.xml
460 68. http://www.gentoo.org/news/tr/gwn/gwn.xml
461
462 Ulrich Plate <plate@g.o> - Editor
463 Chris Atkinson <thirtyyearswar@××××××××××.com> - Author
464 Joseph Jezak <josejx@g.o> - Author
465 Roy Bamford <neddyseagoon@g.o> - Author
466 Chris Gianelloni <wolf31o2@g.o> - Author
467
468
469 --
470 gentoo-gwn@g.o mailing list