Gentoo Archives: gentoo-gwn

From: Chris Gianelloni <wolf31o2@g.o>
To: gentoo-gwn@l.g.o
Subject: [gentoo-gwn] Gentoo Weekly Newsletter 18 December 2006
Date: Thu, 28 Dec 2006 16:31:51
Message-Id: 1167319294.14923.3.camel@inertia.twi-31o2.org
1 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
2 Gentoo Weekly Newsletter
3 http://www.gentoo.org/news/en/gwn/20061218-newsletter.txt
4 This is the Gentoo Weekly Newsletter for the week of 18 December 2006.
5 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
6
7 ==============
8 1. Gentoo News
9 ==============
10
11 EFIKA overlay opens
12 -------------------
13
14 In a follow-up to last week's announcement that the EFIKA[1] evaluation
15 boards from Genesi[2] had made their way into developer hands, the
16 Gentoo/PPC[3] team, in cooperation with Release Engineering[4], has made
17 available an overlay[5] for the EFIKA boards. Currently, the overlay has
18 only sys-kernel/efika-sources, which is based on gentoo-sources, plus the
19 EFIKA-specific patches to 2.6.19 that are required. Any future
20 EFIKA-specific packages will start life out in the overlay before eventually
21 making their way into the main tree. The overlay is currently supported by
22 the Release Engineering team.
23
24 1. http://www.efika.de/index_en.html
25 2. http://www.genesippc.com
26 3. http://www.gentoo.org/proj/en/base/ppc
27 4. http://www.gentoo.org/proj/en/releng
28 5. http://overlays.gentoo.org/proj/efika
29
30 There is also a #gentoo-efika channel on Freenode for discussions about the
31 EFIKA hardware and software, as well as general discussion of the platform.
32
33 =========================
34 2. Heard in the community
35 =========================
36
37 gentoo-installer
38 ----------------
39
40 Quickstart 0.3 Released
41
42 Andrew Gaffney wrote to inform people that version 0.3 of Quickstart has
43 been released. Quickstart is a provisioning tool, designed to use a simple
44 configuration file to provision new Gentoo machines from bare metal. There
45 have been numerous changes and bug fixes since 0.2, some of which are below.
46
47 * partitioning and bootloader code redesigned to allow for
48 arch-specific code for each
49 * x86/amd64 partitioning support rewritten using fdisk instead of
50 sfdisk, since sfdisk isn't in busybox
51 * sun disklabel and partitioning support implemented
52 * sun bootloader (silo) support added (not yet tested)
53 * hppa partitioning (uses x86 code) and bootloader (palo) support
54 added and tested
55
56 With this release, x86/amd64/hppa are officially supported. Support for
57 sparc is experimental and expected to be fully supported with the next
58 release. You can find Quickstart at http://agaffney.org/quickstart/releases.
59
60 * http://archives.gentoo.org/gentoo-installer/msg_01323.xml
61
62 =========================
63 3. Gentoo developer moves
64 =========================
65
66 Moves
67 -----
68
69 The following developers recently left the Gentoo project:
70
71 * none this week
72
73 Adds
74 ----
75
76 The following developers recently joined the Gentoo project:
77
78 * Christian Marie (pingu) mozilla team
79
80 Changes
81 -------
82
83 The following developers recently changed roles within the Gentoo project:
84
85 * none this week
86
87 ==================
88 4. Gentoo security
89 ==================
90
91 Tar: Directory traversal vulnerability
92 --------------------------------------
93
94 Tar is vulnerable to directory traversal possibly allowing for the
95 overwriting of arbitrary files.
96
97 For more information, please see the GLSA Announcement[6]
98
99 6. http://www.gentoo.org/security/en/glsa/glsa-200612-10.xml
100
101 AMD64 x86 emulation base libraries: OpenSSL multiple vulnerabilities
102 --------------------------------------------------------------------
103
104 OpenSSL contains multiple vulnerabilities including the possible execution
105 of remote arbitrary code.
106
107 For more information, please see the GLSA Announcement[7]
108
109 7. http://www.gentoo.org/security/en/glsa/glsa-200612-11.xml
110
111 F-PROT Antivirus: Multiple vulnerabilities
112 ------------------------------------------
113
114 F-Prot Antivirus contains a buffer overflow and other unspecified
115 vulnerabilities, possibly allowing the remote execution of arbitrary code.
116
117 For more information, please see the GLSA Announcement[8]
118
119 8. http://www.gentoo.org/security/en/glsa/glsa-200612-12.xml
120
121 libgsf: Buffer overflow
122 -----------------------
123
124 libgsf improperly allocates memory allowing for a heap overflow and possibly
125 the execution of arbitrary code.
126
127 For more information, please see the GLSA Announcement[9]
128
129 9. http://www.gentoo.org/security/en/glsa/glsa-200612-13.xml
130
131 Trac: Cross-site request forgery
132 --------------------------------
133
134 Trac allows remote attackers to execute unauthorized actions as other users.
135
136 For more information, please see the GLSA Announcement[10]
137
138 10. http://www.gentoo.org/security/en/glsa/glsa-200612-14.xml
139
140 McAfee VirusScan: Insecure DT_RPATH
141 -----------------------------------
142
143 McAfee VirusScan for Linux is distributed with an insecure DT_RPATH,
144 potentially allowing a remote attacker to execute arbitrary code.
145
146 For more information, please see the GLSA Announcement[11]
147
148 11. http://www.gentoo.org/security/en/glsa/glsa-200612-15.xml
149
150 Links: Arbitrary Samba command execution
151 ----------------------------------------
152
153 Links does not properly validate "smb://" URLs, making it vulnerable to the
154 execution of arbitrary Samba commands.
155
156 For more information, please see the GLSA Announcement[12]
157
158 12. http://www.gentoo.org/security/en/glsa/glsa-200612-16.xml
159
160 GNU Radius: Format string vulnerability
161 ---------------------------------------
162
163 A format string vulnerability has been found in GNU Radius, which could lead
164 to the remote execution of arbitrary code.
165
166 For more information, please see the GLSA Announcement[13]
167
168 13. http://www.gentoo.org/security/en/glsa/glsa-200612-17.xml
169
170 =======================
171 5. Gentoo package moves
172 =======================
173
174 This section lists packages that have either been moved or added to the tree
175 and packages that have had their "last rites" announcement given to be
176 removed in the future. The package removals come from many locations,
177 including the Treecleaners[14] and various developers. Most packages which
178 are listed under the Last Rites section are in need of some love and care
179 and can remain in the tree if proper maintainership is established.
180
181 14. http://www.gentoo.org/proj/en/qa/treecleaners
182
183 Additions:
184 ----------
185
186 Package: Addition date: Contact:
187 sci-biology/amap[15] 11 Dec 06 Donnie Berkholz[16]
188 virtual/init[17] 12 Dec 06 Roy Marples[18]
189 games-fps/ut2004-unwheel[19] 12 Dec 06 Chris Gianelloni[20]
190 dev-libs/libisofs[21] 13 Dec 06 Steve Dibb[22]
191 games-fps/ut2004-damnation[23] 13 Dec 06 Chris Gianelloni[20]
192 games-fps/ut2004-muralis[24] 13 Dec 06 Chris Gianelloni[20]
193 net-print/splix[25] 14 Dec 06 Wolfram Schlich[26]
194 x11-libs/goocanvas[27] 14 Dec 06 Michael Hanselmann[28]
195 dev-python/pygoocanvas[29] 14 Dec 06 Michael Hanselmann[28]
196 games-fps/ut2004-troopers[30] 15 Dec 06 Chris Gianelloni[20]
197 app-cdr/poweriso[31] 16 Dec 06 Jurek Bartuszek[32]
198 app-crypt/asedriveiiie-usb[33] 16 Dec 06 Alon Bar-Lev[34]
199 app-crypt/asedriveiiie-serial[35] 16 Dec 06 Alon Bar-Lev[34]
200 app-crypt/asekey[36] 16 Dec 06 Alon Bar-Lev[34]
201 x11-libs/xcb-util[37] 16 Dec 06 Joshua Baergen[38]
202 dev-ruby/ruby-pcap[39] 17 Dec 06 Nguyen Thai Ngoc Duy[40]
203 dev-python/glewpy[41] 17 Dec 06 Joshua Baergen[38]
204 dev-cpp/libgtksourceviewmm[42] 17 Dec 06 Rémi Cardona[43]
205 media-plugins/gst-plugins-pulse[44] 17 Dec 06 Jim Ramsay[45]
206 dev-util/nemiver[46] 17 Dec 06 Rémi Cardona[43]
207
208 15. http://packages.gentoo.org/?category=sci-biology;name=amap
209 16. dberkholz@g.o
210 17. http://packages.gentoo.org/?category=virtual;name=init
211 18. uberlord@g.o
212 19. http://packages.gentoo.org/?category=games-fps;name=ut2004-unwheel
213 20. wolf31o2@g.o
214 21. http://packages.gentoo.org/?category=dev-libs;name=libisofs
215 22. beandog@g.o
216 23. http://packages.gentoo.org/?category=games-fps;name=ut2004-damnation
217 24. http://packages.gentoo.org/?category=games-fps;name=ut2004-muralis
218 25. http://packages.gentoo.org/?category=net-print;name=splix
219 26. wschlich@g.o
220 27. http://packages.gentoo.org/?category=x11-libs;name=goocanvas
221 28. hansmi@g.o
222 29. http://packages.gentoo.org/?category=dev-python;name=pygoocanvas
223 30. http://packages.gentoo.org/?category=games-fps;name=ut2004-troopers
224 31. http://packages.gentoo.org/?category=app-cdr;name=poweriso
225 32. jurek@g.o
226 33. http://packages.gentoo.org/?category=app-crypt;name=asedriveiiie-usb
227 34. alonbl@g.o
228 35. http://packages.gentoo.org/?category=app-crypt;name=asedriveiiie-serial
229 36. http://packages.gentoo.org/?category=app-crypt;name=asekey
230 37. http://packages.gentoo.org/?category=x11-libs/xcb-util
231 38. joshuabaergen@g.o
232 39. http://packages.gentoo.org/?category=dev-ruby;name=ruby-pcap
233 40. pclouds@g.o
234 41. http://packages.gentoo.org/?category=dev-python;name=glewpy
235 42. http://packages.gentoo.org/?category=dev-cpp;name=libgtksourceviewmm
236 43. remi@g.o
237 44. http://packages.gentoo.org/?category=media-plugins;name=gst-plugins-pulse
238 45. lack@g.o
239 46. http://packages.gentoo.org/?category=dev-util;name=nemiver
240
241 Removals:
242 ---------
243
244 Package: Removal date: Contact:
245 games-fps/ut2004-domain2049 12 Dec 06 Chris Gianelloni[20]
246 dev-db/dbbalancer 17 Dec 06 Tiziano Müller[47]
247
248 20. wolf31o2@g.o
249 47. dev-zero@g.o
250
251 Last Rites:
252 -----------
253
254 Package: Removal date: Contact:
255 net-misc/cidr[48] 25 Dec 06 Elfyn McBratney[49]
256 dev-util/mergetrees[50] 25 Dec 06 Elfyn McBratney[49]
257 sys-fs/submount[51] 02 Jan 07 Daniel Drake[52]
258 games-fps/doomlegacy[53] 13 Jan 07 Michael Sterrett[54]
259 kde-misc/styleclock[55] 13 Jan 07 Charlie Shepherd[56]
260 media-sound/xmp[57] 14 Jan 07 Michael Sterrett[54]
261 app-emulation/i8086emu[58] 14 Jan 07 Michael Sterrett[54]
262 net-p2p/xmule[59] 15 Jan 07 Christian Faulhammer[60]
263 net-misc/ltsp[61] 15 Jan 07 Christian Faulhammer[60]
264 app-misc/nomad-tool[62] 15 Jan 07 George Shapovalov[63]
265
266 48. http://packages.gentoo.org/?category=net-misc;name=cidr
267 49. beu@g.o
268 50. http://packages.gentoo.org/?category=dev-util;name=mergetrees
269 51. http://packages.gentoo.org/?category=sys-fs;name=submount
270 52. dsd@g.o
271 53. http://packages.gentoo.org/?category=games-fps;name=doomlegacy
272 54. mr_bones_@g.o
273 55. http://packages.gentoo.org/?category=kde-misc;name=styleclock
274 56. masterdriverz@g.o
275 57. http://packages.gentoo.org/?category=media-sound;name=xmp
276 58. http://packages.gentoo.org/?category=app-emulation;name=i8086emu
277 59. http://packages.gentoo.org/?category=net-p2p;name=xmule
278 60. opfer@g.o
279 61. http://packages.gentoo.org/?category=net-misc;name=ltsp
280 62. http://packages.gentoo.org/?category=app-misc;name=nomad-tool
281 63. george@g.o
282
283 ===========
284 6. Bugzilla
285 ===========
286
287 Summary
288 -------
289
290 * Statistics
291 * Closed bug ranking
292 * New bug rankings
293
294 Statistics
295 ----------
296
297 The Gentoo community uses Bugzilla (bugs.gentoo.org[64]) to record and track
298 bugs, notifications, suggestions and other interactions with the development
299 team. Between 10 December 2006 and 17 December 2006, activity on the site
300 has resulted in:
301
302 64. http://bugs.gentoo.org
303
304 * 649 new bugs during this period
305 * 342 bugs closed or resolved during this period
306 * 25 previously closed bugs were reopened this period
307 * 143 closed as NEEDINFO/WONTFIX/CANTFIX/INVALID/UPSTREAM during this
308 period
309 * 163 bugs marked as duplicates during this period
310
311 Of the 10688 currently open bugs: 25 are labeled 'blocker', 96 are labeled
312 'critical', and 430 are labeled 'major'.
313
314 Closed bug rankings
315 -------------------
316
317 The developers and teams who have closed the most bugs during this period
318 are:
319
320 * Gentoo's Team for Core System packages[65], with 35 closed bugs[66]
321 * Gentoo Security[67], with 20 closed bugs[68]
322 * Perl Devs @ Gentoo[69], with 16 closed bugs[70]
323 * Default Assignee for Orphaned Packages[71], with 16 closed bugs[72]
324 * Gentoo Games[73], with 15 closed bugs[74]
325 * XFCE Team[75], with 14 closed bugs[76]
326 * Gentoo Linux Gnome Desktop Team[77], with 11 closed bugs[78]
327 * Gentoo KDE team[79], with 9 closed bugs[80]
328
329 65. base-system@g.o
330 66. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2006-12-10&chfieldto=2006-12-17&resolution=FIXED&assigned_to=base-system@g.o
331 67. security@g.o
332 68. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2006-12-10&chfieldto=2006-12-17&resolution=FIXED&assigned_to=security@g.o
333 69. perl@g.o
334 70. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2006-12-10&chfieldto=2006-12-17&resolution=FIXED&assigned_to=perl@g.o
335 71. maintainer-needed@g.o
336 72. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2006-12-10&chfieldto=2006-12-17&resolution=FIXED&assigned_to=maintainer-needed@g.o
337 73. games@g.o
338 74. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2006-12-10&chfieldto=2006-12-17&resolution=FIXED&assigned_to=games@g.o
339 75. xfce@g.o
340 76. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2006-12-10&chfieldto=2006-12-17&resolution=FIXED&assigned_to=xfce@g.o
341 77. gnome@g.o
342 78. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2006-12-10&chfieldto=2006-12-17&resolution=FIXED&assigned_to=gnome@g.o
343 79. kde@g.o
344 80. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2006-12-10&chfieldto=2006-12-17&resolution=FIXED&assigned_to=kde@g.o
345
346 New bug rankings
347 ----------------
348
349 The developers and teams who have been assigned the most new bugs during
350 this period are:
351
352 * Default Assignee for New Packages[81], with 22 new bugs[82]
353 * AMD64 Project[83], with 10 new bugs[84]
354 * Mike Kelly[85], with 9 new bugs[86]
355 * media-video herd[87], with 9 new bugs[88]
356 * Gentoo's Team for Core System packages[65], with 8 new bugs[89]
357 * Default Assignee for Orphaned Packages[71], with 7 new bugs[90]
358 * Java team[91], with 6 new bugs[92]
359 * Gentoo Linux Gnome Desktop Team[77], with 6 new bugs[93]
360
361 65. base-system@g.o
362 71. maintainer-needed@g.o
363 77. gnome@g.o
364 81. maintainer-wanted@g.o
365 82. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2006-12-10&chfieldto=2006-12-17&assigned_to=maintainer-wanted@g.o
366 83. amd64@g.o
367 84. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2006-12-10&chfieldto=2006-12-17&assigned_to=amd64@g.o
368 85. pioto@g.o
369 86. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2006-12-10&chfieldto=2006-12-17&assigned_to=pioto@g.o
370 87. media-video@g.o
371 88. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2006-12-10&chfieldto=2006-12-17&assigned_to=media-video@g.o
372 89. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2006-12-10&chfieldto=2006-12-17&assigned_to=base-system@g.o
373 90. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2006-12-10&chfieldto=2006-12-17&assigned_to=maintainer-needed@g.o
374 91. java@g.o
375 92. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2006-12-10&chfieldto=2006-12-17&assigned_to=java@g.o
376 93. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2006-12-10&chfieldto=2006-12-17&assigned_to=gnome@g.o
377
378 ===============
379 7. GWN feedback
380 ===============
381
382 The GWN is staffed by volunteers and members of the community who submit
383 ideas and articles. If you are interested in writing for the GWN, have
384 feedback on an article that we have posted, or just have an idea or article
385 that you would like to submit to the GWN, please send us your feedback[94]
386 and help make the GWN better.
387
388 94. gwn-feedback@g.o
389
390 ===============================
391 8. GWN subscription information
392 ===============================
393
394 To subscribe to the Gentoo Weekly Newsletter, send a blank e-mail to
395 gentoo-gwn+subscribe@g.o.
396
397 To unsubscribe to the Gentoo Weekly Newsletter, send a blank e-mail to
398 gentoo-gwn+unsubscribe@g.o from the e-mail address you are subscribed
399 under.
400
401 ==================
402 9. Other languages
403 ==================
404
405 The Gentoo Weekly Newsletter is also available in the following languages:
406
407 * Chinese (Simplified)[95]
408 * Danish[96]
409 * Dutch[97]
410 * English[98]
411 * German[99]
412 * Greek[100]
413 * French[101]
414 * Korean[102]
415 * Japanese[103]
416 * Italian[104]
417 * Polish[105]
418 * Portuguese (Brazil)[106]
419 * Portuguese (Portugal)[107]
420 * Russian[108]
421 * Slovak[109]
422 * Spanish[110]
423 * Turkish[111]
424
425 95. http://www.gentoo.org/news/zh_cn/gwn/gwn.xml
426 96. http://www.gentoo.org/news/da/gwn/gwn.xml
427 97. http://www.gentoo.org/news/nl/gwn/gwn.xml
428 98. http://www.gentoo.org/news/en/gwn/gwn.xml
429 99. http://www.gentoo.org/news/de/gwn/gwn.xml
430 100. http://www.gentoo.org/news/el/gwn/gwn.xml
431 101. http://www.gentoo.org/news/fr/gwn/gwn.xml
432 102. http://www.gentoo.org/news/ko/gwn/gwn.xml
433 103. http://www.gentoo.org/news/ja/gwn/gwn.xml
434 104. http://www.gentoo.org/news/it/gwn/gwn.xml
435 105. http://www.gentoo.org/news/pl/gwn/gwn.xml
436 106. http://www.gentoo.org/news/pt_br/gwn/gwn.xml
437 107. http://www.gentoo.org/news/pt/gwn/gwn.xml
438 108. http://www.gentoo.org/news/ru/gwn/gwn.xml
439 109. http://www.gentoo.org/news/sk/gwn/gwn.xml
440 110. http://www.gentoo.org/news/es/gwn/gwn.xml
441 111. http://www.gentoo.org/news/tr/gwn/gwn.xml
442
443 Ulrich Plate <plate@g.o> - Editor
444 Chris Gianelloni <wolf31o2@g.o> - Author
445
446
447 --
448 gentoo-gwn@g.o mailing list