
wolf31o2 at gentoo
May 7, 2007, 9:42 AM
Post #1 of 1
(1855 views)
Permalink
|
|
Gentoo Weekly Newsletter 23 April 2007
|
|
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Gentoo Weekly Newsletter http://www.gentoo.org/news/en/gwn/20070423-newsletter.xml This is the Gentoo Weekly Newsletter for the week of 23 April 2007. ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ============== 1. Gentoo News ============== Thanks from the GWN staff ------------------------- Over the past week, the GWN staff has had many users contact them, interested in writing articles for the GWN, and the GWN team would like to publicly express our gratitude and thanks to the new GWN contributors. This does not mean, however, that the GWN team is not looking for more contributors, as the team is always looking for articles, ideas for 'Tip of the week', and so on. Plus, as the saying goes - "The more the merrier!". Feel free to email the GWN team at gwn-feedback [at] gentoo or visit us in our IRC channel (#gentoo-gwn on irc.freenode.net) for article suggestions and any other ideas. ======================== 2. Developer of the Week ======================== Markus Ullmann, aka Jokey ------------------------- Figure 2.1: Markus Ullmann, aka Jokey http://www.gentoo.org/images/gwn/20070423_jokey.jpg Markus Ullmann[1], also known as 'Teh Jokey (TM)' is a 25 year old developer and part of our 'German conspiracy'. Markus currently lives in Uetersen, together with his family. Markus is studying electrical engineering at the HAW Hamburg University. He took an apprenticeship as industrial electrician at Beiersdorf and quickly discovered that building such production machines would be fun. He decided to become an engineer and is currently on his 3rd semester. Markus gets a lot of practical courses involving numeric simulations with C, developing on FPGA boards, and getting into the deep secrets of diodes and transistors. 1. jokey [at] gentoo Of the variety of hobbies that Markus enjoys, which include working on Gentoo, swimming, playing D20 (Dungeons and Dragons), and playing keyboard, his favorite is swimming. Ironically, this self described computer nerd met the love of his life, Svenja (who also considers herself a computer nerd), via swimming. So about that name, Jokey... Markus got the name Jokey from a LAN party after having played pranks on several fellow gamers. Someone recalled the children's cartoon 'The Smurfs' and the infamous character Jokey... the name still sticks to this day. Markus is an active member of two German Linux User groups: LUG Flensburg e.V. and LUG Norderstedt e.V. He also likes to attend conventions and FOSS-events. You could have met him at FOSDEM (Belgium) or CeBit (Germany). Markus got started with Linux back in the SuSE 5.1 days, but his real Linux life started with Xlinux 1.0 from a Golden Chip CD. He used that for several years until he switched to LinuxFromScratch, since he was already compiling most packages from scratch. After an OpenSSL update damaged his whole KDE setup, he began looking for an alternative and ultimately found something with an "automated" source build: Gentoo 1.2. Around mid 2005, Jokey decided to help out with the heavily aging OpenLDAP package as he wanted to get into the tree. After having fixed some 20 bugs and sending various patches to Benjamin Smee[2], Benjamin mentored and lured Markus down the path of dev-hood. Jokey is currently the Gentoo overlays lead and sunrise lead. He also works in x86 and takes care of netmon, lcd and OpenLDAP. Quite a busy bee right? 2. strerror [at] gentoo Markus' first apps are KDE, KVIRC, Thunderbird, Firefox, and gajim. He's also a fan of Beryl as window manager to spice up his X-environment. ========================= 3. Gentoo developer moves ========================= Moves ----- The following developers recently left the Gentoo project: * none this week Adds ---- The following developers recently joined the Gentoo project: * Aggelos Orfanakos (agorf) Ruby/GWN teams * Christina Fullam (musikc) Developer Relations/GWN teams * Alistair John Bush (ali_bush) Java team Changes ------- The following developers recently changed roles within the Gentoo project: * none this week ================== 4. Gentoo security ================== xine-lib: Heap-based buffer overflow ------------------------------------ xine-lib is vulnerable to a heap-based buffer overflow. For more information, please see the GLSA Announcement[3] 3. http://www.gentoo.org/security/en/glsa/glsa-200704-09.xml Inkscape: Two format string vulnerabilities ------------------------------------------- Two format string vulnerabilities have been discovered in Inkscape, allowing for user-assisted execution of arbitrary code. For more information, please see the GLSA Announcement[4] 4. http://www.gentoo.org/security/en/glsa/glsa-200704-10.xml Vixie Cron: Denial of Service ----------------------------- The Gentoo implementation of Vixie Cron is vulnerable to a local Denial of Service. For more information, please see the GLSA Announcement[5] 5. http://www.gentoo.org/security/en/glsa/glsa-200704-11.xml OpenOffice.org: Multiple vulnerabilities ---------------------------------------- Multiple vulnerabilities have been discovered in OpenOffice.org, allowing for remote execution of arbitrary code. For more information, please see the GLSA Announcement[6] 6. http://www.gentoo.org/security/en/glsa/glsa-200704-12.xml File: Denial of Service ----------------------- A vulnerability has been discovered in file allowing for a denial of service. For more information, please see the GLSA Announcement[7] 7. http://www.gentoo.org/security/en/glsa/glsa-200704-13.xml FreeRADIUS: Denial of Service ----------------------------- A memory leak has been discovered in FreeRADIUS, possibly allowing for a Denial of Service. For more information, please see the GLSA Announcement[8] 8. http://www.gentoo.org/security/en/glsa/glsa-200704-14.xml MadWifi: Multiple vulnerabilities --------------------------------- Multiple vulnerabilities have been discovered in the MadWifi driver, possibly leading to a Denial of Service and information disclosure. For more information, please see the GLSA Announcement[9] 9. http://www.gentoo.org/security/en/glsa/glsa-200704-15.xml Aircrack-ng: Remote execution of arbitrary code ----------------------------------------------- Aircrack-ng contains a buffer overflow that could lead to the remote execution of arbitrary code with root privileges. For more information, please see the GLSA Announcement[10] 10. http://www.gentoo.org/security/en/glsa/glsa-200704-16.xml 3proxy: Buffer overflow ----------------------- A vulnerability has been discovered in 3proxy allowing for the remote execution of arbitrary code. For more information, please see the GLSA Announcement[11] 11. http://www.gentoo.org/security/en/glsa/glsa-200704-17.xml Courier-IMAP: Remote execution of arbitrary code ------------------------------------------------ A vulnerability has been discovered in Courier-IMAP allowing for remote code execution with root privileges. For more information, please see the GLSA Announcement[12] 12. http://www.gentoo.org/security/en/glsa/glsa-200704-18.xml ======================= 5. Gentoo package moves ======================= This section lists packages that have either been moved or added to the tree and packages that have had their "last rites" announcement given to be removed in the future. The package removals come from many locations, including the Treecleaners[13] and various developers. Most packages which are listed under the Last Rites section are in need of some love and care and can remain in the tree if proper maintainership is established. 13. http://www.gentoo.org/proj/en/qa/treecleaners Removals: --------- Package: Removal date: Contact: media-gfx/plustek-parallel 16 Apr 2007 Patrick Kursawe[14] app-editors/elisp-manual 18 Apr 2007 Ulrich Müller[15] sci-electronics/modelsim 20 Apr 2007 Denis Dupeyron[16] games-strategy/mylink 20 Apr 2007 Michael Sterrett[17] games-puzzle/sdlvexed 20 Apr 2007 Michael Sterrett[17] games-action/d1x 20 Apr 2007 Michael Sterrett[17] app-crypt/aes-crypt 21 Apr 2007 Alon Bar-Lev[18] 14. phosphan [at] gentoo 15. ulm [at] gentoo 16. calchan [at] gentoo 17. mr_bones_ [at] gentoo 18. alonbl [at] gentoo Additions: ---------- Package: Addition date: Contact: app-admin/eselect-emacs[19] 16 Apr 2007 Christian Faulhammer[20] x11-misc/emacs-desktop[21] 16 Apr 2007 Christian Faulhammer[20] net-misc/metacafe-dl[22] 16 Apr 2007 Aggelos Orfanakos[23] sys-auth/pam_mktemp[24] 17 Apr 2007 Sven Wegener[25] dev-php5/magickwand[26] 17 Apr 2007 Anant Narayanan[27] dev-libs/stfl[28] 18 Apr 2007 Andrej Kacian[29] dev-ruby/rubypants[30] 18 Apr 2007 Aggelos Orfanakos[23] app-doc/elisp-manual[31] 18 Apr 2007 Ulrich Müller[15] net-news/newsbeuter[32] 18 Apr 2007 Andrej Kacian[29] media-libs/libdca[33] 18 Apr 2007 Alexis Ballier[34] mail-filter/libdomainkeys[35] 18 Apr 2007 Colin Morey[36] games-rpg/galaxymage[37] 19 Apr 2007 Alfredo Tupone[38] dev-scheme/stklos[39] 19 Apr 2007 Marijn Schouten[40] sci-astronomy/xfitsview[41] 19 Apr 2007 Sebastien Fabbro[42] sys-apps/cciss_vol_status[43] 19 Apr 2007 Tony Vroon[44] net-news/rsstail[45] 19 Apr 2007 Wulf Krueger[46] dev-util/egypt[47] 19 Apr 2007 Mike Frysinger[48] dev-ruby/htmlentities[49] 20 Apr 2007 Aggelos Orfanakos[23] net-irc/znc[50] 20 Apr 2007 Raúl Porcel[51] net-irc/sic[52] 20 Apr 2007 Raúl Porcel[51] net-libs/telepathy-glib[53] 20 Apr 2007 Piotr Jaroszyński[54] app-crypt/aesutil[55] 20 Apr 2007 Alon Bar-Lev[18] sys-apps/pam_mount[56] 21 Apr 2007 Hanno Boeck[57] games-arcade/xsfcave[58] 21 Apr 2007 Alfredo Tupone[38] dev-java/jsap[59] 21 Apr 2007 Miroslav Šulc[60] media-video/ttcut[61] 21 Apr 2007 Matthias Schwarzott[62] dev-python/workingenv[63] 21 Apr 2007 Rob Cakebread[64] media-sound/ttaenc[65] 22 Apr 2007 Samuli Suominen[66] 15. ulm [at] gentoo 18. alonbl [at] gentoo 19. http://packages.gentoo.org/packages/?category=app-admin;name=eselect-emacs 20. opfer [at] gentoo 21. http://packages.gentoo.org/packages/?category=x11-misc;name=emacs-desktop 22. http://packages.gentoo.org/packages/?category=net-misc;name=metacafe-dl 23. agorf [at] gentoo 24. http://packages.gentoo.org/packages/?category=sys-auth;name=pam_mktemp 25. swegener [at] gentoo 26. http://packages.gentoo.org/packages/?category=dev-php5;name=magickwand 27. anant [at] gentoo 28. http://packages.gentoo.org/packages/?category=dev-libs;name=stfl 29. ticho [at] gentoo 30. http://packages.gentoo.org/packages/?category=dev-ruby;name=rubypants 31. http://packages.gentoo.org/packages/?category=app-doc;name=elisp-manual 32. http://packages.gentoo.org/packages/?category=net-news;name=newsbeuter 33. http://packages.gentoo.org/packages/?category=media-libs;name=libdca 34. aballier [at] gentoo 35. http://packages.gentoo.org/packages/?category=mail-filter;name=libdomainkeys 36. peitolm [at] gentoo 37. http://packages.gentoo.org/packages/?category=games-rpg;name=galaxymage 38. tupone [at] gentoo 39. http://packages.gentoo.org/packages/?category=dev-scheme;name=stklos 40. hkbst [at] gentoo 41. http://packages.gentoo.org/packages/?category=sci-astronomy;name=xfitsview 42. bicatali [at] gentoo 43. http://packages.gentoo.org/packages/?category=sys-apps;name=cciss_vol_status 44. chainsaw [at] gentoo 45. http://packages.gentoo.org/packages/?category=net-news;name=rsstail 46. philantrop [at] gentoo 47. http://packages.gentoo.org/packages/?category=dev-util;name=egypt 48. vapier [at] gentoo 49. http://packages.gentoo.org/packages/?category=dev-ruby;name=htmlentities 50. http://packages.gentoo.org/packages/?category=net-irc;name=znc 51. armin76 [at] gentoo 52. http://packages.gentoo.org/packages/?category=net-irc;name=sic 53. http://packages.gentoo.org/packages/?category=net-libs;name=telepathy-glib 54. peper [at] gentoo 55. http://packages.gentoo.org/packages/?category=app-crypt;name=aesutil 56. http://packages.gentoo.org/packages/?category=sys-apps;name=pam_mount 57. hanno [at] gentoo 58. http://packages.gentoo.org/packages/?category=games-arcade;name=xsfcave 59. http://packages.gentoo.org/packages/?category=dev-java;name=jsap 60. fordfrog [at] gentoo 61. http://packages.gentoo.org/packages/?category=media-video;name=ttcut 62. zzam [at] gentoo 63. http://packages.gentoo.org/packages/?category=dev-python;name=workingenv 64. pythonhead [at] gentoo 65. http://packages.gentoo.org/packages/?category=media-sound;name=ttaenc 66. drac [at] gentoo Last Rites: ----------- Package: Removal date: Contact: games-arcade/ddrmat[67] 16 May 2007 Chris Gianelloni[68] net-dialup/slirp[69] 17 May 2007 Alin Năstac[70] media-gfx/graphicsmagick[71] 17 May 2007 Bryan Østergaard[72] mail-client/claws-mail-maildir[73] 20 May 2007 Andrej Kacian[29] app-emulation/vmware-gsx-console[74] 20 May 2007 Michael Sterrett[17] dev-java/systray4j[75] 22 May 2007 Alistair Bush[76] net-misc/tlsproxyd[77] 19 Jun 2007 Raúl Porcel[51] 17. mr_bones_ [at] gentoo 29. ticho [at] gentoo 51. armin76 [at] gentoo 67. http://packages.gentoo.org/packages/?category=games-arcade;name=ddrmat 68. wolf31o2 [at] gentoo 69. http://packages.gentoo.org/packages/?category=net-dialup;name=slirp 70. mrness [at] gentoo 71. http://packages.gentoo.org/packages/?category=media-gfx;name=graphicsmagick 72. kloeri [at] gentoo 73. http://packages.gentoo.org/packages/?category=mail-client;name=claws-mail-maildir 74. http://packages.gentoo.org/packages/?category=app-emulation;name=vmware-gsx-console 75. http://packages.gentoo.org/packages/?category=dev-java;name=systray4j 76. ali_bush [at] gentoo 77. http://packages.gentoo.org/packages/?category=net-misc;name=tlsproxyd =========== 6. Bugzilla =========== Summary ------- * Statistics * Closed bug ranking * New bug rankings Statistics ---------- The Gentoo community uses Bugzilla (bugs.gentoo.org[78]) to record and track bugs, notifications, suggestions and other interactions with the development team. Between 16 April 2007 and 22 April 2007, activity on the site has resulted in: 78. http://bugs.gentoo.org * 524 new bugs during this period * 320 bugs closed or resolved during this period * 16 previously closed bugs were reopened this period * 99 closed as NEEDINFO/WONTFIX/CANTFIX/INVALID/UPSTREAM during this period * 53 bugs marked as duplicates during this period Of the 10066 currently open bugs: 14 are labeled 'blocker', 105 are labeled 'critical', and 369 are labeled 'major'. Closed bug rankings ------------------- The developers and teams who have closed the most bugs during this period are: * AMD64 Project[79], with 18 closed bugs[80] * Gentoo Linux Gnome Desktop Team[81], with 13 closed bugs[82] * GNU Emacs Herd[83], with 11 closed bugs[84] * Gentoo Security[85], with 9 closed bugs[86] * Gentoo Linux bug wranglers[87], with 9 closed bugs[88] * Gentoo's Team for Core System packages[89], with 8 closed bugs[90] * Karol Wojtaszek[91], with 7 closed bugs[92] * Gentoo KDE team[93], with 7 closed bugs[94] 79. amd64 [at] gentoo 80. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2007-04-16&chfieldto=2007-04-22&resolution=FIXED&assigned_to=amd64 [at] gentoo 81. gnome [at] gentoo 82. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2007-04-16&chfieldto=2007-04-22&resolution=FIXED&assigned_to=gnome [at] gentoo 83. emacs [at] gentoo 84. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2007-04-16&chfieldto=2007-04-22&resolution=FIXED&assigned_to=emacs [at] gentoo 85. security [at] gentoo 86. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2007-04-16&chfieldto=2007-04-22&resolution=FIXED&assigned_to=security [at] gentoo 87. bug-wranglers [at] gentoo 88. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2007-04-16&chfieldto=2007-04-22&resolution=FIXED&assigned_to=bug-wranglers [at] gentoo 89. base-system [at] gentoo 90. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2007-04-16&chfieldto=2007-04-22&resolution=FIXED&assigned_to=base-system [at] gentoo 91. sekretarz [at] gentoo 92. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2007-04-16&chfieldto=2007-04-22&resolution=FIXED&assigned_to=sekretarz [at] gentoo 93. kde [at] gentoo 94. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2007-04-16&chfieldto=2007-04-22&resolution=FIXED&assigned_to=kde [at] gentoo New bug rankings ---------------- The developers and teams who have been assigned the most new bugs during this period are: * Default Assignee for New Packages[95], with 27 new bugs[96] * Java team[97], with 11 new bugs[98] * AMD64 Project[79], with 8 new bugs[99] * Gentoo's Team for Core System packages[89], with 7 new bugs[100] * Gentoo Toolchain Maintainers[101], with 6 new bugs[102] * Gentoo Web Application Packages Maintainers[103], with 5 new bugs[104] * voip herd[105], with 5 new bugs[106] * Mobile Herd[107], with 5 new bugs[108] 79. amd64 [at] gentoo 89. base-system [at] gentoo 95. maintainer-wanted [at] gentoo 96. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2007-04-16&chfieldto=2007-04-22&assigned_to=maintainer-wanted [at] gentoo 97. java [at] gentoo 98. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2007-04-16&chfieldto=2007-04-22&assigned_to=java [at] gentoo 99. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2007-04-16&chfieldto=2007-04-22&assigned_to=amd64 [at] gentoo 100. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2007-04-16&chfieldto=2007-04-22&assigned_to=base-system [at] gentoo 101. toolchain [at] gentoo 102. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2007-04-16&chfieldto=2007-04-22&assigned_to=toolchain [at] gentoo 103. web-apps [at] gentoo 104. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2007-04-16&chfieldto=2007-04-22&assigned_to=web-apps [at] gentoo 105. voip [at] gentoo 106. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2007-04-16&chfieldto=2007-04-22&assigned_to=voip [at] gentoo 107. mobile [at] gentoo 108. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2007-04-16&chfieldto=2007-04-22&assigned_to=mobile [at] gentoo =============== 7. GWN feedback =============== The GWN is staffed by volunteers and members of the community who submit ideas and articles. If you are interested in writing for the GWN, have feedback on an article that we have posted, or just have an idea or article that you would like to submit to the GWN, please send us your feedback[109] and help make the GWN better. 109. gwn-feedback [at] gentoo =============================== 8. GWN subscription information =============================== To subscribe to the Gentoo Weekly Newsletter, send a blank e-mail to gentoo-gwn+subscribe [at] gentoo To unsubscribe to the Gentoo Weekly Newsletter, send a blank e-mail to gentoo-gwn+unsubscribe [at] gentoo from the e-mail address you are subscribed under. ================== 9. Other languages ================== The Gentoo Weekly Newsletter is also available in the following languages: * Chinese (Simplified)[110] * Dutch[111] * English[112] * German[113] * Greek[114] * French[115] * Korean[116] * Japanese[117] * Italian[118] * Polish[119] * Portuguese (Brazil)[120] * Portuguese (Portugal)[121] * Russian[122] * Slovak[123] * Spanish[124] * Turkish[125] 110. http://www.gentoo.org/news/zh_cn/gwn/gwn.xml 111. http://www.gentoo.org/news/nl/gwn/gwn.xml 112. http://www.gentoo.org/news/en/gwn/gwn.xml 113. http://www.gentoo.org/news/de/gwn/gwn.xml 114. http://www.gentoo.org/news/el/gwn/gwn.xml 115. http://www.gentoo.org/news/fr/gwn/gwn.xml 116. http://www.gentoo.org/news/ko/gwn/gwn.xml 117. http://www.gentoo.org/news/ja/gwn/gwn.xml 118. http://www.gentoo.org/news/it/gwn/gwn.xml 119. http://www.gentoo.org/news/pl/gwn/gwn.xml 120. http://www.gentoo.org/news/pt_br/gwn/gwn.xml 121. http://www.gentoo.org/news/pt/gwn/gwn.xml 122. http://www.gentoo.org/news/ru/gwn/gwn.xml 123. http://www.gentoo.org/news/sk/gwn/gwn.xml 124. http://www.gentoo.org/news/es/gwn/gwn.xml 125. http://www.gentoo.org/news/tr/gwn/gwn.xml Chris Gianelloni <wolf31o2 [at] gentoo> - Editor Dimitry Bradt <diox [at] gentoo> - Author Chrissy Fullam <musikc [at] gentoo> - Author -- gentoo-gwn [at] gentoo mailing list
|