Gentoo Archives: gentoo-gwn

From: Yuji Kosugi <carlos@g.o>
To: gentoo-gwn@l.g.o
Subject: [gentoo-gwn] Gentoo Weekly Newsletter - Volume 3, Issue 24
Date: Tue, 15 Jun 2004 12:26:35
Message-Id: 20040615121446.GA3293@sparda.dyndns.org
1 ---------------------------------------------------------------------------
2 Gentoo Weekly Newsletter
3 http://www.gentoo.org/news/en/gwn/current.xml
4 This is the Gentoo Weekly Newsletter for the week of May 31st, 2004.
5 ---------------------------------------------------------------------------
6
7 ==============
8 1. Gentoo News
9 ==============
10
11 Gentoo Not-For-Profit Paperwork complete
12 ----------------------------------------
13
14 The paperwork for the Gentoo Not-For-Profit entity was approved by the
15 State of New Mexico today. This means that as of today, the Gentoo
16 Foundation is an official Not-For-Profit Corporation in the United States.
17 The process of becoming a Federally-recognized not-for-profit entity,
18 which will take about six months for approval, can now begin. Sven
19 Vermeulen has been tasked with drafting a charter for the newly approved
20 Gentoo Foundation. Assets of Gentoo Technologies, Inc. such as the
21 gentoo.org domain, can now be transferred to the Gentoo Foundation. We're
22 glad to see all the hard work that has been put into this process giving
23 some positive results and would like to thank Daniel Robbins[1] and all of
24 the trustees for their hard work.
25
26 1. drobbins@g.o
27
28 Ways to get involved: Introducing webapps-request@g.o
29 ------------------------------------------------------------
30
31 Developer Stuart Herbert[2] has created a new bugzilla user
32 (webapps-request@g.o), to which he is assigning all bugs about new
33 packages. Some of these bugs are requests for ebuilds. Some of the bugs
34 include ebuilds that need testing (and maybe fixing).
35
36 2. stuart@g.o
37
38 If you want to get involved with Gentoo, and can spare the time, this
39 would be a great way - especially if you know any of the packages
40 involved. This will free up some time for the developers to concentrate on
41 real bugs reported against packages already in Portage.
42
43 If you want to be notified when new bugs are added to the webapps-request
44 list, you can setup a watch in your Bugzilla account. Simply go to this
45 page[3] and in the "Users to watch:" box, type in
46 'webapps-request@g.o'.
47
48 3. http://bugs.gentoo.org/userprefs.cgi?tab=email
49
50 ==================
51 2. Gentoo Security
52 ==================
53
54 Mailman: Member password disclosure vulnerability
55 -------------------------------------------------
56
57 Mailman contains a bug allowing 3rd parties to retrieve member passwords.
58
59 For more information, please see the GLSA Announcement[4]
60
61 4. http://www.gentoo.org/security/en/glsa/glsa-200406-04.xml
62
63 Apache: Buffer overflow in mod_ssl
64 ----------------------------------
65
66 A bug in mod_ssl may allow a remote attacker to execute remote code when
67 Apache is configured a certain way.
68
69 For more information, please see the GLSA Announcement[5]
70
71 5. http://www.gentoo.org/security/en/glsa/glsa-200406-05.xml
72
73 CVS: additional DoS and arbitrary code execution vulnerabilities
74 ----------------------------------------------------------------
75
76 Several serious new vulnerabilities have been found in CVS, which may
77 allow an attacker to remotely compromise a CVS server.
78
79 For more information, please see the GLSA Announcement[6]
80
81 6. http://www.gentoo.org/security/en/glsa/glsa-200406-06.xml
82
83 Subversion: Remote heap overflow
84 --------------------------------
85
86 Subversion is vulnerable to a remote Denial of Service that may be
87 exploitable to execute arbitrary code on the server running svnserve.
88
89 For more information, please see the GLSA Announcement[7]
90
91 7. http://www.gentoo.org/security/en/glsa/glsa-200406-07.xml
92
93 =========================
94 3. Heard in the Community
95 =========================
96
97 Web Forums
98 ----------
99
100 Linux Memory Management
101
102 A concise and very useful tutorial about memory management in Linux has
103 made its way into the Documentation, Tips & Tricks section, paying special
104 attention to things peculiar in 2.6 kernels:
105
106 * Linux Memory Management or 'Why is there no free RAM?'[8]
107 8. http://forums.gentoo.org/viewtopic.php?t=175419
108
109 gentoo-user
110 -----------
111
112 Deadlocking Kernels
113
114 A vulnerability that apparently affects all x86 2.4 and 2.6 series kernels
115 was shared on gentoo-user here[9] with exploit code in tow.
116
117 9. http://article.gmane.org/gmane.linux.gentoo.user/84302
118
119 The GWN and RSS
120
121 This[10] thread covered reading the GWN via an RSS feed, as well as
122 preferred applications to do so.
123
124 10. http://article.gmane.org/gmane.linux.gentoo.user/84115
125
126 =======================
127 4. Gentoo International
128 =======================
129
130 Germany: LPI 101 Certification in German at the LinuxTag in Karlsruhe
131
132 The German branch of the Linux Professional Institute[11] has announced
133 that they will offer certification in German for the first time at the
134 LinuxTag in Karlsruhe[12] this year. For 30 Euros, visitors to the fair
135 (and some of the German devs at the Gentoo booth are known to go as well)
136 can sit for the LPI 101 in German or English, or the LPI 201 in English
137 only, on 24 to 26 June 2004. Details here.[13].
138
139 11. http://www.lpi-german.de
140 12. http://www.linuxtag.de
141 13. http://www.lpi-german.de/presse/20040609.html
142
143 ===========
144 5. Bugzilla
145 ===========
146
147 Summary
148 -------
149
150 * Statistics
151 * Closed Bug Ranking
152 * New Bug Rankings
153
154 Statistics
155 ----------
156
157 The Gentoo community uses Bugzilla (bugs.gentoo.org[14]) to record and
158 track bugs, notifications, suggestions and other interactions with the
159 development team. Between 04 June 2004 and 10 June 2004, activity on the
160 site has resulted in:
161
162 14. http://bugs.gentoo.org
163
164 * 537 new bugs during this period
165 * 305 bugs closed or resolved during this period
166 * 14 previously closed bugs were reopened this period
167
168 Of the 6461 currently open bugs: 131 are labeled 'blocker', 189 are
169 labeled 'critical', and 524 are labeled 'major'.
170
171 Closed Bug Rankings
172 -------------------
173
174 The developers and teams who have closed the most bugs during this period
175 are:
176
177 * Gentoo Games[15], with 18 closed bugs[16]
178 * Gentoo's Team for Core System packages[17], with 12 closed bugs[18]
179 * Net-Mail Packages[19], with 11 closed bugs[20]
180 * Thomas Raschbacher[21], with 9 closed bugs[22]
181 * Gentoo KDE team[23], with 8 closed bugs[24]
182 15. games@g.o
183 16.
184 http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&ch
185 field=bug_status&chfieldfrom=2004-06-04&chfieldto=2004-06-10&resolution=FIX
186 ED&assigned_to=games@g.o
187 17. base-system@g.o
188 18.
189 http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&ch
190 field=bug_status&chfieldfrom=2004-06-04&chfieldto=2004-06-10&resolution=FIX
191 ED&assigned_to=base-system@g.o
192 19. net-mail@g.o
193 20.
194 http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&ch
195 field=bug_status&chfieldfrom=2004-06-04&chfieldto=2004-06-10&resolution=FIX
196 ED&assigned_to=net-mail@g.o
197 21. lordvan@g.o
198 22.
199 http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&ch
200 field=bug_status&chfieldfrom=2004-06-04&chfieldto=2004-06-10&resolution=FIX
201 ED&assigned_to=lordvan@g.o
202 23. kde@g.o
203 24.
204 http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&ch
205 field=bug_status&chfieldfrom=2004-06-04&chfieldto=2004-06-10&resolution=FIX
206 ED&assigned_to=kde@g.o
207
208 New Bug Rankings
209 ----------------
210
211 The developers and teams who have been assigned the most new bugs during
212 this period are:
213
214 * Gentoo Toolchain Maintainers[25], with 19 new bugs[26]
215 * Gentoo Linux Gnome Desktop Team[27], with 17 new bugs[28]
216 * AMD64 Porting Team[29], with 16 new bugs[30]
217 * Gentoo Web Application Packages Maintainers[31], with 12 new bugs[32]
218 * Gentoo Perl Devs[33], with 12 new bugs[34]
219 * Gentoo KDE team[35], with 12 new bugs[36]
220 25. toolchain@g.o
221 26.
222 http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_s
223 tatus=REOPENED&chfield=assigned_to&chfieldfrom=2004-06-04&chfieldto=2004-06
224 -10&assigned_to=toolchain@g.o
225 27. gnome@g.o
226 28.
227 http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_s
228 tatus=REOPENED&chfield=assigned_to&chfieldfrom=2004-06-04&chfieldto=2004-06
229 -10&assigned_to=gnome@g.o
230 29. amd64@g.o
231 30.
232 http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_s
233 tatus=REOPENED&chfield=assigned_to&chfieldfrom=2004-06-04&chfieldto=2004-06
234 -10&assigned_to=amd64@g.o
235 31. web-apps@g.o
236 32.
237 http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_s
238 tatus=REOPENED&chfield=assigned_to&chfieldfrom=2004-06-04&chfieldto=2004-06
239 -10&assigned_to=web-apps@g.o
240 33. perl@g.o
241 34.
242 http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_s
243 tatus=REOPENED&chfield=assigned_to&chfieldfrom=2004-06-04&chfieldto=2004-06
244 -10&assigned_to=perl@g.o
245 35. kde@g.o
246 36.
247 http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_s
248 tatus=REOPENED&chfield=assigned_to&chfieldfrom=2004-06-04&chfieldto=2004-06
249 -10&assigned_to=kde@g.o
250
251 ==================
252 6. Tips and Tricks
253 ==================
254
255 Protecting files with noclobber
256
257 This tip is for people who have ever hosed important files by using > when
258 they meant to use >>. Add the following line to .bashrc: set -o noclobber.
259 The noclobber option prevents you from overwriting existing files with the
260 > operator.
261
262 ---------------------------------------------------------------------------
263 | Code Listing 6.1: |
264 |-------------------------------------------------------------------------|
265 | |
266 |% program > file2 |
267 |bash: file2: cannot overwrite existing file |
268 ---------------------------------------------------------------------------
269
270 In some cases you may really want to overwrite the file. In this case,
271 instead of turning noclobber off, you can use >| to force the file to be
272 written.
273
274 ---------------------------------------------------------------------------
275 | Code Listing 6.2: |
276 |-------------------------------------------------------------------------|
277 | |
278 |% program >| file2 |
279 ---------------------------------------------------------------------------
280
281 ===========================
282 7. Moves, Adds, and Changes
283 ===========================
284
285 Moves
286 -----
287
288 The following developers recently left the Gentoo team:
289
290 * None this week
291
292 Adds
293 ----
294
295 The following developers recently joined the Gentoo Linux team:
296
297 * None this week
298
299 Changes
300 -------
301
302 The following developers recently changed roles within the Gentoo Linux
303 project:
304
305 * None this week
306
307 ====================
308 8. Contribute to GWN
309 ====================
310
311 Interested in contributing to the Gentoo Weekly Newsletter? Send us an
312 email[37].
313
314 37. gwn-feedback@g.o
315
316 ===============
317 9. GWN Feedback
318 ===============
319
320 Please send us your feedback[38] and help make the GWN better.
321
322 38. gwn-feedback@g.o
323
324 ================================
325 10. GWN Subscription Information
326 ================================
327
328 To subscribe to the Gentoo Weekly Newsletter, send a blank email to
329 gentoo-gwn-subscribe@g.o.
330
331 To unsubscribe to the Gentoo Weekly Newsletter, send a blank email to
332 gentoo-gwn-unsubscribe@g.o from the email address you are
333 subscribed under.
334
335 ===================
336 11. Other Languages
337 ===================
338
339 The Gentoo Weekly Newsletter is also available in the following languages:
340
341 * Danish[39]
342 * Dutch[40]
343 * English[41]
344 * German[42]
345 * French[43]
346 * Japanese[44]
347 * Italian[45]
348 * Polish[46]
349 * Portuguese (Brazil)[47]
350 * Portuguese (Portugal)[48]
351 * Russian[49]
352 * Spanish[50]
353 * Turkish[51]
354 39. http://www.gentoo.org/news/da/gwn/gwn.xml
355 40. http://www.gentoo.org/news/be/gwn/gwn.xml
356 41. http://www.gentoo.org/news/en/gwn/gwn.xml
357 42. http://www.gentoo.org/news/de/gwn/gwn.xml
358 43. http://www.gentoo.org/news/fr/gwn/gwn.xml
359 44. http://www.gentoo.org/news/ja/gwn/gwn.xml
360 45. http://www.gentoo.org/news/it/gwn/gwn.xml
361 46. http://www.gentoo.org/news/pl/gwn/gwn.xml
362 47. http://www.gentoo.org/news/br/gwn/gwn.xml
363 48. http://www.gentoo.org/news/pt/gwn/gwn.xml
364 49. http://www.gentoo.org/news/ru/gwn/gwn.xml
365 50. http://www.gentoo.org/news/es/gwn/gwn.xml
366 51. http://www.gentoo.org/news/tr/gwn/gwn.xml
367
368 Yuji Carlos Kosugi <carlos@g.o> - Editor
369 AJ Armstrong <aja@×××××××××××××.com> - Contributor
370 Brian Downey <bdowney@×××××××××××.net> - Contributor
371 Kurt Lieber <klieber@g.o> - Contributor
372 David Narayan <david@×××××××.net> - Contributor
373 Ulrich Plate <plate@g.o> - Contributor
374 Sven Vermeulen <swift@g.o> - Contributor
375 Simon Holm Thagersen <simon@××××××.net> - Danish Translation
376 Jesper Brodersen <broeman@g.o> - Danish Translation
377 Arne Mejlholm <aaby@g.o> - Danish Translation
378 Hendrik Eeckhaut <Hendrik.Eeckhaut@×××××.be> - Dutch Translation
379 Jorn Eilander <sephiroth@××××××××.nl> - Dutch Translation
380 Bernard Kerckenaere <bernieke@××××××××.com> - Dutch Translation
381 Peter ter Borg <peter@××××××.nl> - Dutch Translation
382 Jochen Maes <linux@××××.be> - Dutch Translation
383 Roderick Goessen <rgoessen@××××.nl> - Dutch Translation
384 Gerard van den Berg <gerard@××××××.net> - Dutch Translation
385 Matthieu Montaudouin <mat@××××××××.com> - French Translation
386 Xavier Neys <neysx@g.o> - French Translation
387 Martin Prieto <riverdale@×××××××××.org> - French Translation
388 Antoine Raillon <cabec2@××××××.net> - French Translation
389 Sebastien Cevey <seb@×××××.net> - French Translation
390 Jean-Christophe Choisy <mabouya@××××××××××××.org> - French Translation
391 Thomas Raschbacher <lordvan@g.o> - German Translation
392 Steffen Lassahn <madeagle@g.o> - German Translation
393 Matthias F. Brandstetter <haim@g.o> - German Translation
394 Lukas Domagala <Cyrik@g.o> - German Translation
395 Tobias Scherbaum <dertobi123@g.o> - German Translation
396 Daniel Gerholdt <Sputnik1969@g.o> - German Translation
397 Marc Herren <dj-submerge@g.o> - German Translation
398 Tobias Matzat <SirSeoman@g.o> - German Translation
399 Marco Mascherpa <mush@××××××.net> - Italian Translation
400 Claudio Merloni <paper@×××××××.it> - Italian Translation
401 Stefano Lucidi <stefano.lucidi@×××××××××××××.org> - Italian Translation
402 Katuyuki Konno <katuyuki@××××××××.jp> - Japanese Translation
403 Hiroyuki Takeda <hiro@××××××××××××××.jp> - Japanese Translation
404 Masato Hatakeyama <hatake@×××××××××××.jp> - Japanese Translation
405 Masayoshi Nakamura <masayang@×××××××××.com> - Japanese Translation
406 Yasunori Fukudome <yasunori@××××××××××××××××.uk> - Japanese Translation
407 Tomoyuki Sakurai <web-gentoo-doc-jp@××××××××××××.nu> - Japanese Translation
408 Lukasz Strzygowski <lucass@××××××.pl> - Polish Translation
409 Karol Goralski <gooroo@××××××.pl> - Polish Translation
410 Atila "Jedi" Bohlke Vasconcelos <bohlke@×××××××××.br> - Portuguese
411 (Brazil) Translation
412 Eduardo Belloti <dudu@××××××××.net> - Portuguese (Brazil) Translation
413 Jo??o Rafael Moraes Nicola <joaoraf@×××××××××.br> - Portuguese (Brazil)
414 Translation
415 Marcelo Gon??alves de Azambuja <mgazambuja@×××××××××.br> - Portuguese
416 (Brazil) Translation
417 Otavio Rodolfo Piske <angusy@××××××××.org> - Portuguese (Brazil)
418 Translation
419 Pablo N. Hess -- NatuNobilis <natunobilis@××××××××.org> - Portuguese
420 (Brazil) Translation
421 Pedro de Medeiros <pzilla@××××××××.br> - Portuguese (Brazil) Translation
422 Ventura Barbeiro <venturasbarbeiro@××××××.br> - Portuguese (Brazil)
423 Translation
424 Bruno Ferreira <blueroom@××××××××××××.net> - Portuguese (Portugal)
425 Translation
426 Gustavo Felisberto <humpback@××××××××××.net> - Portuguese (Portugal)
427 Translation
428 Jos?? Costa <jose_costa@×××××××.pt> - Portuguese (Portugal) Translation
429 Luis Medina <metalgodin@×××××××××.org> - Portuguese (Portugal) Translation
430 Ricardo Loureiro <rjlouro@×××××××.org> - Portuguese (Portugal) Translation
431 Aleksandr Martyncev <amncorp@××.ru> - Russian Translator
432 Sergey Galkin <gals_home@××××.ru> - Russian Translator
433 Sergey Kuleshov <svyatogor@g.o> - Russian Translator
434 Alex Spirin <asp13@××××.ru> - Russian Translator
435 Denis Zaletov <dzaletov@×××××××.ru> - Russian Translator
436 Lanark <lanark@××××××××××.ar> - Spanish Translation
437 Fernando J. Pereda <ferdy@××××××.org> - Spanish Translation
438 Lluis Peinado Cifuentes <lpeinado@×××.edu> - Spanish Translation
439 Zephryn Xirdal T <ZEPHRYNXIRDAL@××××××××××.net> - Spanish Translation
440 Guillermo Juarez <katossi@××××××××××××××××.es> - Spanish Translation
441 Jes??s Garc??a Crespo <correo@××××××.com> - Spanish Translation
442 Carlos Castillo <carlos@×××××××××××××.com> - Spanish Translation
443 Julio Castillo <julio@×××××××××××××.com> - Spanish Translation
444 Sergio G??mez <s3r@××××××××××××.ar> - Spanish Translation
445 Aycan Irican <aycan@××××××××.tr> - Turkish Translation
446 Bugra Cakir <bugra@×××××××××.com> - Turkish Translation
447 Cagil Seker <cagils@××××××××××.tr> - Turkish Translation
448 Emre Kazdagli <emre@××××××××.tr> - Turkish Translation
449 Evrim Ulu <evrim@××××××××.tr> - Turkish Translation
450 Gursel Kaynak <gurcell@××××××××.tr> - Turkish Translation