Gentoo Archives: gentoo-gwn

From: Ulrich Plate <plate@g.o>
To: gentoo-gwn@l.g.o
Subject: [gentoo-gwn] Gentoo Weekly Newsletter 11 July 2005
Date: Mon, 11 Jul 2005 01:15:53
Message-Id: 20050711025750.618301d2.plate@gentoo.org
1 ---------------------------------------------------------------------------
2 Gentoo Weekly Newsletter
3 http://www.gentoo.org/news/en/gwn/current.xml
4 This is the Gentoo Weekly Newsletter for the week of 11 July 2005.
5 ---------------------------------------------------------------------------
6
7 ==============
8 1. Gentoo News
9 ==============
10
11 2.5 million posts
12 -----------------
13
14 With the ascension of Gentoo Forum moderators to official staff membership
15 progressing nicely, their area of activity has just passed yet another
16 impressive milestone: On 6 July, the magic number of 2.5 million posts was
17 reached. Since finding out who the poster of this historic submission was
18 is fiendishly difficult and involves major operations on the underlying
19 database, suffice for now to show visual proof of the moment:
20
21 Figure 1.1: Passing the 2.5 million mark: Total number of Forum posts on 6
22 July 2005
23 http://www.gentoo.org/images/gwn/20050711_postcount.png
24
25 Documentation project update
26 ----------------------------
27
28 Recent addition to the Documentation team Shyam Mani[1] has rewritten the
29 heavily outdated ALSA Guide, and converted Daniel Robbins' articles from
30 IBM DeveloperWorks to the standard GuideXML format and made them available
31 at the Gentoo website[2]. A completely new piece of documentation is
32 Benedikt Boehm's[3] contributed vserver Howto[4], while major revamping
33 has been applied to the Gentoo Handbook[5] (now with an improved
34 description of lspci and an update on devfsd versus udev. A new part on
35 network configuration that covers Gentoo's current baselayout and includes
36 wireless networks has been added to the handbook, and the NVidia, Gentoo
37 Security and Printing Guides have also been updated. The complete status
38 update can be viewed at the Gentoo website[6].
39
40 1. fox2mike@g.o
41 2. http://www.gentoo.org/doc/en/articles/
42 3. hollow@g.o
43 4. http://www.gentoo.org/doc/en/vserver-howto.xml
44 5. http://www.gentoo.org/doc/en/handbook/
45 6. http://www.gentoo.org/proj/en/gdp/status/status_20050630.xml
46
47 Greek translator team looking for new members
48 ---------------------------------------------
49
50 The Greek translators of the Gentoo documentation are recruiting new team
51 members to reinforce their ability to cover the material in its entirety.
52 If your Greek is up to the task and you would like to join the other
53 translators, contact Ioannis Aslanidis[7], please.
54
55 7. deathwing_commander@×××××××.com
56
57 ========================
58 2. Developer of the week
59 ========================
60
61 "It's done when it's done" -- Tobias Scherbaum (dertobi123)
62 -----------------------------------------------------------
63
64 Figure 2.1: Tobias Scherbaum aka dertobi123
65 http://www.gentoo.org/images/gwn/20050711_dertobi123.jpg
66
67 This week's featured dev is Tobias Scherbaum, better known to most as
68 dertobi123[8]. He lives in Oberhausen in Germany's industrial Ruhr region,
69 and is one of the veterans among German developers. As with many other
70 Gentoo developers he associated himself with Gentoo well before he could
71 get involved with any other OSS project.
72
73 8. dertobi123@g.o
74
75 Tobias is the German lead translator, but recently started HPPA stage
76 building and PPC stable keywording, too. Probably his best-known project,
77 one he has spent a lot of time on, are the FizzleWizzle XLiveCDs that see
78 new releases shipping just in time for most of Europe's major Linux
79 events, like FOSDEM, LinuxTag or the German edition of the Linux World
80 Expo. At the moment he is undergoing an apprenticeship for
81 "Fachinformatiker Systemintegration", which essentially boils down to
82 becoming a highly trained monkey for fixing cabling and computer problems.
83 Before that he passed his German "Abitur" (graduation after 12 or 13 years
84 of school) and studied Economy for two years.
85
86 Like many Gentooists he owns an impressive hardware collection, spanning
87 many architectures, including SGI, SUN and HPPA, plus an iBook and some
88 obsolete x86 machines. Some platforms are still missing, but one of
89 Tobias' ambitions in life is to decorate his home with at least one
90 specimen of every single architecture that Gentoo runs on.
91
92 His normal working environment is the Gnome, with ssh and screen as the
93 main helpers for administration and remote connections. About the first
94 application he fires up in the morning is usually Evolution, followed by a
95 sufficiently large amount of terminals to accomodate all his screen
96 sessions. Contrary to popular opinion he has a life outside the computers,
97 with more exotic hobbies such as gardening (with barbecues as an important
98 subset), reading computerbooks and cycling, but he is currently void of a
99 female companion.
100
101 Tobias is one of the founders of the "Friends of Gentoo e.V.", the German
102 NFP association, and a regular booth staff member at German Linux
103 happenings. Just a few weeks ago he passed the ebuild quiz and is now a
104 fully enabled ot wreak havoc in the Portage tree, and he maintains the
105 GTK+-2 frontend for CD/DVD burning, graveman. Tobias has so far completely
106 and utterly failed to break the tree as such, but on the upside of things
107 he's managed to get a number of overdue packages to stable status, most
108 importantly Gnome 2.10 for PPC.
109
110 =========================
111 3. Heard in the community
112 =========================
113
114 gentoo-dev
115 ----------
116
117 Keywording problems
118
119 Just a few minutes apart two threads were started in response to some
120 violations of our keywording policy. As it seems some devs were a bit
121 optimistic and broke a few things on SPARC. This shouldn't happen, but
122 somehow it does every now and then. To quote Monty Python: "We apologise
123 for that. The people responsible have been sacked"
124
125 * Keys and words: ways to fail your team [9]
126 * Brainless keywording [10]
127 9. http://thread.gmane.org/gmane.linux.gentoo.devel/29230
128 10. http://thread.gmane.org/gmane.linux.gentoo.devel/29220
129
130
131 GLEP 38: Status of forum moderators
132
133 For the longest time the forum moderators that are not already developers
134 were not considered official staff while the forums were official. To
135 rectify this situation GLEP 38 was proposed in which the global moderators
136 would become official Gentoo staff by taking the staff quiz. Due to some
137 suboptimal wording this was slightly misunderstood and caused a minor
138 flamewar, but in the end an agreement was reached.
139
140 * Glep 38: Status of forum moderators in The Gentoo project [11]
141 * Glep 38: round two [12]
142 11. http://thread.gmane.org/gmane.linux.gentoo.devel/29139
143 12. http://thread.gmane.org/gmane.linux.gentoo.devel/29219
144
145
146 =======================
147 4. Gentoo International
148 =======================
149
150 Argentina: Ututo-E 2005.1 release
151 ---------------------------------
152
153 The Ututo-e[13] Core Team announces the release of its Gentoo-based
154 GNU/Linux Distribution, Ututo XS 2005.1. Ututo-e is a Gentoo-based
155 distribution for desktop users that keeps compatibility with Gentoo and
156 enjoys endorsement by the FSF and Richard M. Stallman himself as the "only
157 free GNU/Linux distribution"[14] he knows.
158
159 13. http://e.ututo.org.ar
160 14. http://kerneltrap.org/node/4484
161
162 The new release XS 2005.1 is aiming for ease of migration from proprietary
163 operating systems. Ututo-e provides a per-processor globally-optimized
164 software packages repository, processor-optimized downloadable ISO images
165 for installation, and a soon-to-be released LiveCD. Additionally, Ututo-e
166 is supporting the x86_64 architecture. You can download the different
167 flavors of Ututo-e's XS 2005.1 directly from the GNU Project's
168 servers[15], or from any of the nine mirrors[16] available worldwide, or
169 via BitTorrent[17]. The Ututo-e XS 2005.1 installation system is available
170 in English, Italian, Portuguese and Spanish, and comes with a GUI- or
171 console-based (ncurses) administration system.
172
173 15. http://ftp.gnu.org/pub/gnu+linux-distros/ututo-e/
174 16. https://e.ututo.org.ar/xp/modules/mydownloads/
175 17. http://www.linuxtracker.org/
176
177 Ututo-e's core team would like to join an expression of their gratitude to
178 this announcement: a huge thank you goes to every and each person that has
179 contributed to the Gentoo Project. People, base your projects on Gentoo.
180 It's a wonderful metadistribution. Again, thank you.
181
182 Japan: Visiting European devs get shown around
183 ----------------------------------------------
184
185 UK-based Gentoo dev Marcus D. Hanwell[18], returning from a conference in Sapporo,
186 stayed in Tokyo for a week. Enough excuse for Tomoyuki Sakurai, the GWN
187 lead translator, to organise a night out and about for cryos and his
188 English friends: They went to Tokyo's traditional and popular downtown
189 area of Asakusa, enjoyed the basic pleasures of Japanese food including
190 Okonomiyaki and Monjayaki[19], then went on to a genuine spa, one of the
191 few hotsprings right in the heart of Tokyo. The long day was rounded off
192 at a typical Izakaya, a Japanese style pub offering yet some more snacks,
193 and the four Englishmen who hadn't heard of anything but Sushi and Sashimi
194 went home quite pleasantly surprised at the wide range of foods in Japan.
195
196 18. cryos@g.o
197 19. http://en.wikipedia.org/wiki/Okonomiyaki
198
199 Figure 4.1: Cryos (right) and friends at Ueno train station
200 http://www.gentoo.org/images/gwn/20050711_cryos.jpg
201
202 Just a few days later, on 7 July, the GentooJP lot held a party in honor
203 of yet another visiting Gentoo dev, Luca Barbato[20] and his Italian
204 friends. A Japanese family of Gentooists, Japan-based Jason Stubbs[21] and
205 Mudrii joined the crowd, adding the benefit of both being
206 weathered foreigners living in Japan: very helpful resources, particularly
207 as guides to undocumented rules in Japanese society for Italian
208 travellers. The type of information Luca and his companions got is
209 impossible to be had from books, and available to other Gentooists if they
210 happen to make it all the way to Japan. Next time you do, remember to drop
211 a line to the gentoojp-misc@××××××××××××.jp mailing list, or /join the
212 #gentoo-ja IRC channel on Freenode.
213
214 20. lu_zero@g.o
215 21. jstubbs@g.o
216
217 Figure 4.2: Mudrii, jstubss and lu_zero at a pub in Tokyo
218 http://www.gentoo.org/images/gwn/20050711_luzero.jpg
219
220 ======================
221 5. Gentoo in the press
222 ======================
223
224 Linux Weekly News (28 June 2005)
225 --------------------------------
226
227 Gentoo dev and regular GWN contributor Patrick Lauer's article[22] about
228 the Gentoo community was published two weeks ago, but has only now been
229 made available to non-subscribers of the Linux Weekly News. He provides an
230 overview of the community, with fellow Gentoo devs Donnie Berkholz[23] and
231 Grant Goodyear[24] chiming in for the ensuing discussion.
232
233 22. http://lwn.net/Articles/141886/
234 23. spyderous@g.o
235 24. g2boojum@g.o
236
237 ===========================
238 6. Moves, adds, and changes
239 ===========================
240
241 Moves
242 -----
243
244 The following developers recently left the Gentoo team:
245
246 * None this week
247
248 Adds
249 ----
250
251 The following developers recently joined the Gentoo Linux team:
252
253 * Brent Baude (ranger) - PPC/PPC64
254 * Jan Hendrik Grahl (grahl04) - Documentation translator
255 * Joshua Baergen (Josh_B) - X11
256 * Kahtryn Kulick - commonbox, net-im, X11 themes
257 * Michael Curtis Napier (curtis119) - WWW redesign
258 * Scott Shawcroft (tannewt) - Bugday team
259
260 Changes
261 -------
262
263 The following developers recently changed roles within the Gentoo Linux
264 project:
265
266 * Tobias Scherbaum (dertobi123) - Adds HPPA release engineering to his
267 other duties
268
269 ==================
270 7. Gentoo security
271 ==================
272
273 Clam AntiVirus: Denial of Service vulnerability
274 -----------------------------------------------
275
276 Clam AntiVirus is vulnerable to a Denial of Service attack when processing
277 certain Quantum archives.
278
279 For more information, please see the GLSA Announcement[25]
280
281 25. http://www.gentoo.org/security/en/glsa/glsa-200506-23.xml
282
283 Heimdal: Buffer overflow vulnerabilities
284 ----------------------------------------
285
286 Multiple buffer overflow vulnerabilities in Heimdal's telnetd server could
287 allow the execution of arbitrary code.
288
289 For more information, please see the GLSA Announcement[26]
290
291 26. http://www.gentoo.org/security/en/glsa/glsa-200506-24.xml
292
293 PEAR XML-RPC, phpxmlrpc: PHP script injection vulnerability
294 -----------------------------------------------------------
295
296 The PEAR XML-RPC and phpxmlrpc libraries allow remote attackers to execute
297 arbitrary PHP script commands.
298
299 For more information, please see the GLSA Announcement[27]
300
301 27. http://www.gentoo.org/security/en/glsa/glsa-200507-01.xml
302
303 WordPress: Multiple vulnerabilities
304 -----------------------------------
305
306 WordPress contains PHP script injection, cross-site scripting and path
307 disclosure vulnerabilities.
308
309 For more information, please see the GLSA Announcement[28]
310
311 28. http://www.gentoo.org/security/en/glsa/glsa-200507-02.xml
312
313 phpBB: Arbitrary command execution
314 ----------------------------------
315
316 A vulnerability in phpBB allows a remote attacker to execute arbitrary
317 commands with the rights of the web server.
318
319 For more information, please see the GLSA Announcement[29]
320
321 29. http://www.gentoo.org/security/en/glsa/glsa-200507-03.xml
322
323 RealPlayer: Heap overflow vulnerability
324 ---------------------------------------
325
326 RealPlayer is vulnerable to a heap overflow that could lead to remote
327 execution of arbitrary code.
328
329 For more information, please see the GLSA Announcement[30]
330
331 30. http://www.gentoo.org/security/en/glsa/glsa-200507-04.xml
332
333 zlib: Buffer overflow
334 ---------------------
335
336 A buffer overflow has been discovered in zlib, potentially resulting in
337 the execution of arbitrary code.
338
339 For more information, please see the GLSA Announcement[31]
340
341 31. http://www.gentoo.org/security/en/glsa/glsa-200507-05.xml
342
343 TikiWiki: Arbitrary command execution through XML-RPC
344 -----------------------------------------------------
345
346 TikiWiki includes PHP XML-RPC code, making it vulnerable to arbitrary
347 command execution.
348
349 For more information, please see the GLSA Announcement[32]
350
351 32. http://www.gentoo.org/security/en/glsa/glsa-200507-06.xml
352
353 phpWebSite: Multiple vulnerabilities
354 ------------------------------------
355
356 phpWebSite is vulnerable to the remote execution of arbitrary PHP script
357 code and to other, yet undisclosed, vulnerabilities.
358
359 For more information, please see the GLSA Announcement[33]
360
361 33. http://www.gentoo.org/security/en/glsa/glsa-200507-07.xml
362
363 phpGroupWare, eGroupWare: PHP script injection vulnerability
364 ------------------------------------------------------------
365
366 phpGroupWare and eGroupWare include an XML-RPC implementation which allows
367 remote attackers to execute arbitrary PHP script commands.
368
369 For more information, please see the GLSA Announcement[34]
370
371 34. http://www.gentoo.org/security/en/glsa/glsa-200507-08.xml
372
373 ===========
374 8. Bugzilla
375 ===========
376
377 Summary
378 -------
379
380 * Statistics
381 * Closed bug ranking
382 * New bug rankings
383
384 Statistics
385 ----------
386
387 The Gentoo community uses Bugzilla (bugs.gentoo.org[35]) to record and
388 track bugs, notifications, suggestions and other interactions with the
389 development team. Between 26 June 2005 and 10 July 2005, activity on the
390 site has resulted in:
391
392 35. http://bugs.gentoo.org
393
394 * 1437 new bugs during this period
395 * 840 bugs closed or resolved during this period
396 * 35 previously closed bugs were reopened this period
397
398 Of the 8392 currently open bugs: 103 are labeled 'blocker', 200 are
399 labeled 'critical', and 597 are labeled 'major'.
400
401 Closed bug rankings
402 -------------------
403
404 The developers and teams who have closed the most bugs during this period
405 are:
406
407 * AMD64 Porting Team[36], with 44 closed bugs[37]
408 * Gentoo KDE team[38], with 41 closed bugs[39]
409 * Gentoo Web Application Packages Maintainers[40], with 36 closed
410 bugs[41]
411 * Gentoo Linux Gnome Desktop Team[42], with 33 closed bugs[43]
412 * Jonathan Smith[44], with 31 closed bugs[45]
413 * Xavier Neys[46], with 30 closed bugs[47]
414 * Gentoo's Team for Core System packages[48], with 29 closed bugs[49]
415 * Java team[50], with 28 closed bugs[51]
416 36. amd64@g.o
417 37.
418 http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2005-06-26&chfieldto=2005-07-10&resolution=FIXED&assigned_to=amd64@g.o
419 38. kde@g.o
420 39.
421 http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2005-06-26&chfieldto=2005-07-10&resolution=FIXED&assigned_to=kde@g.o
422 40. web-apps@g.o
423 41.
424 http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2005-06-26&chfieldto=2005-07-10&resolution=FIXED&assigned_to=web-apps@g.o
425 42. gnome@g.o
426 43.
427 http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2005-06-26&chfieldto=2005-07-10&resolution=FIXED&assigned_to=gnome@g.o
428 44. smithj@g.o
429 45.
430 http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2005-06-26&chfieldto=2005-07-10&resolution=FIXED&assigned_to=smithj@g.o
431 46. neysx@g.o
432 47.
433 http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2005-06-26&chfieldto=2005-07-10&resolution=FIXED&assigned_to=neysx@g.o
434 48. base-system@g.o
435 49.
436 http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2005-06-26&chfieldto=2005-07-10&resolution=FIXED&assigned_to=base-system@g.o
437 50. java@g.o
438 51.
439 http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2005-06-26&chfieldto=2005-07-10&resolution=FIXED&assigned_to=java@g.o
440
441
442 New bug rankings
443 ----------------
444
445 The developers and teams who have been assigned the most new bugs during
446 this period are:
447
448 * Default Assignee for New Packages[52], with 103 new bugs[53]
449 * Default Assignee for Orphaned Packages[54], with 59 new bugs[55]
450 * AMD64 Porting Team[56], with 25 new bugs[57]
451 * Gentoo Sound Team[58], with 21 new bugs[59]
452 * Stuart Herbert[60], with 20 new bugs[61]
453 * Gentoo KDE team[62], with 17 new bugs[63]
454 * Java team[64], with 17 new bugs[65]
455 * media-video herd[66], with 15 new bugs[67]
456 52. maintainer-wanted@g.o
457 53.
458 http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2005-06-26&chfieldto=2005-07-10&assigned_to=maintainer-wanted@g.o
459 54. maintainer-needed@g.o
460 55.
461 http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2005-06-26&chfieldto=2005-07-10&assigned_to=maintainer-needed@g.o
462 56. amd64@g.o
463 57.
464 http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2005-06-26&chfieldto=2005-07-10&assigned_to=amd64@g.o
465 58. sound@g.o
466 59.
467 http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2005-06-26&chfieldto=2005-07-10&assigned_to=sound@g.o
468 60. stuart@g.o
469 61.
470 http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2005-06-26&chfieldto=2005-07-10&assigned_to=stuart@g.o
471 62. kde@g.o
472 63.
473 http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2005-06-26&chfieldto=2005-07-10&assigned_to=kde@g.o
474 64. java@g.o
475 65.
476 http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2005-06-26&chfieldto=2005-07-10&assigned_to=java@g.o
477 66. media-video@g.o
478 67.
479 http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2005-06-26&chfieldto=2005-07-10&assigned_to=media-video@g.o
480
481
482 ===============
483 9. GWN feedback
484 ===============
485
486 Please send us your feedback[68] and help make the GWN better.
487
488 68. gwn-feedback@g.o
489
490 ================================
491 10. GWN subscription information
492 ================================
493
494 To subscribe to the Gentoo Weekly Newsletter, send a blank email to
495 gentoo-gwn+subscribe@g.o.
496
497 To unsubscribe to the Gentoo Weekly Newsletter, send a blank email to
498 gentoo-gwn+unsubscribe@g.o from the email address you are
499 subscribed under.
500
501 ===================
502 11. Other languages
503 ===================
504
505 The Gentoo Weekly Newsletter is also available in the following languages:
506
507 * Danish[69]
508 * Dutch[70]
509 * English[71]
510 * German[72]
511 * French[73]
512 * Japanese[74]
513 * Italian[75]
514 * Polish[76]
515 * Portuguese (Brazil)[77]
516 * Portuguese (Portugal)[78]
517 * Russian[79]
518 * Spanish[80]
519 * Turkish[81]
520 69. http://www.gentoo.org/news/da/gwn/gwn.xml
521 70. http://www.gentoo.org/news/nl/gwn/gwn.xml
522 71. http://www.gentoo.org/news/en/gwn/gwn.xml
523 72. http://www.gentoo.org/news/de/gwn/gwn.xml
524 73. http://www.gentoo.org/news/fr/gwn/gwn.xml
525 74. http://www.gentoo.org/news/ja/gwn/gwn.xml
526 75. http://www.gentoo.org/news/it/gwn/gwn.xml
527 76. http://www.gentoo.org/news/pl/gwn/gwn.xml
528 77. http://www.gentoo.org/news/pt_br/gwn/gwn.xml
529 78. http://www.gentoo.org/news/pt/gwn/gwn.xml
530 79. http://www.gentoo.org/news/ru/gwn/gwn.xml
531 80. http://www.gentoo.org/news/es/gwn/gwn.xml
532 81. http://www.gentoo.org/news/tr/gwn/gwn.xml
533
534
535 Ulrich Plate <plate@g.o> - Editor
536 Arturo 'Buanzo' Busleiman <buanzo@××××××××××.ar> - Author
537 Wernfried Haas <w.haas@×××××××××××××××××××.at> - Author
538 Patrick Lauer <patrick@g.o> - Author
539
540 --
541 gentoo-gwn@g.o mailing list