[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: draft of announcement for sarge r2



Hi,

On Friday, 14 Apr 2006, you wrote:
> * Andreas Barth (aba@not.so.argh.org) [060414 17:14]:
> > * Andreas Barth (aba@not.so.argh.org) [060412 11:07]:
> > > as we're now directly moving towards sarge r2, we drafted an
> > > announcement. Please see the attachement for more details. We will
> > > notify you as soon as the mail can be sent out.
> 
> > As promised, here is an updated announcement draft.
> 
> And yet another version, with small languages fixes. Hopefully really
> final this time. :)

I wml-ized that file for the website.

Greetings
Martin

PS: Let's hope, i didn't do to much wrong.
<define-tag pagetitle>Debian GNU/Linux 3.1 updated (r2)</define-tag>
<define-tag release_date>2006-04-XX</define-tag>
#use wml::debian::news
# $Id$

<define-tag revision>3.1r2</define-tag>

<define-tag dsa>
    <tr><td align="center"><a href="$(HOME)/security/%0/dsa-%1">DSA-%1</a></td>
        <td align="center"><:
    my @p = ();
    for my $p (split (/,\s*/, "%2")) {
	push (@p, sprintf ('<a href="http://packages.debian.org/%s";>%s</a>', $p, $p));
    }
    print join (", ", @p);
:></td></tr>
</define-tag>

<define-tag correction>
    <tr><td><a href="http://packages.debian.org/%0";>%0</a></td>              <td>%1</td></tr>
</define-tag>

<p>This is the second update of Debian GNU/Linux 3.1 (codename &lsquo;sarge$rsquo;)
which mainly adds security updates to the stable release, along with a
few corrections to serious problems.  Those who frequently update from
security.debian.org won't have to update many packages and most
updates from security.debian.org are included in this update.</p>

<p>Please note that this update does not produce a new version of Debian
GNU/Linux 3.1 but only adds a few updated packages to it.  There is no
need to throw away 3.1 CDs but only to update against ftp.debian.org
after an installation, in order to incorporate those late changes.</p>

<p>Upgrading to this revision online is usually done by pointing the
&lsquo;apt&rsquo; package tool (see the sources.list(5) manual page) to one of
Debian's many FTP or HTTP mirrors.  A comprehensive list of mirrors is
available at:</p>


<div class="center">
  <a href="$(HOME)/mirror/list">http://www.debian.org/mirror/list</a>
</div>

<h2>Notable Changes</h2>

<p>sudo has been changed to not propagate all environment variables to
subsequent programs to avoid security risks.  This change might affect
software that uses sudo.  Please see /usr/share/doc/sudo/README.Debian
for more details.</p>


<h2>Miscellaneous Bugfixes</h2>

<p>This revision adds important corrections to the following packages.
Most of them don't affect the security of the system, but may affect
data integrity.</p>

<table border=0>
<tr><th>Package</th>                 <th>Reason</th></tr>

<correction affix-kernel           "Fix build failures with sarge's kernel"
	
<correction backuppc               "Fix possible backup archive corruption and possible data loss when changing the configuration file">
	
<correction cernlib                "License problems, repackaged">
	
<correction cyrus-imapd            "Don't remove mail data on package purge">
	
<correction cyrus21-imapd          "Note cyrus-imapd data loss on package purge in upgrade documentation">
			       
<correction evms                   "Fix address stack corruption leading to possible data loss when activating degraded RAID-5 volumes">
			       
<correction exim4                  "Fix mail delivery problems to hosts with AAAA DNS records and unbalanced DNS">
			       
<correction f-prot-installer       "Adjusted to work with recent releases">
	
<correction fai                    "Fix setup of lo device, replaced hardcoded name of debian distribution in fai-cd, add missing packages when calling fai-mirror">

<correction glibc                  "Update timezone data, fix NPTL for x86_64 (amd64)">
	
<correction leafnode               "Fix security issue (CVE 2005-1911)">
	
<correction libchipcard            "Don't remove user account on package purge">
	
<correction mutt                   "Fix possible attachments data loss">

<correction perl                   "Fix problem with utf-8/taint interaction, fix possible malloc-to-death bug, #227621">

<correction rssh                   "Fix security issue (CVE-2005-3345)">

<correction slune                  "Adjust to security fix in py2play, #326976">

<correction sodipodi               "Fix segfaults on 64-bit architectures">

<correction tar                    "Fix inability to work with remote devices on non-i386, #356657">

</table>

<h2>Security Updates</h2>

<p>This revision adds the following security updates to the stable release.
The Security Team has already released an advisory for each of these updates.
The security fixes of the kernel have been delayed to the next point release
due to constraints with the installer, please update the kernel images from
security.debian.org.
</p>

<table border=0>
<tr><th>Debian Security Advisory ID</th>     <th>Package(s)</th></tr>


<dsa 2005 740                aide>
<dsa 2005 763                aide>
<dsa 2005 856                py2play>
<dsa 2005 903                unzip>
<dsa 2005 919                curl >
<dsa 2005 923                dropbear>
<dsa 2005 924                nbd>
<dsa 2005 925                phpbb2>
<dsa 2005 926                ketm>
<dsa 2005 927                tkdiff>
<dsa 2005 928                dhis-tools-dns>
<dsa 2006 929                petris>
<dsa 2006 930                smstools>
<dsa 2006 931                xpdf>
<dsa 2006 932                kdegraphics>
<dsa 2006 933                hylafax>
<dsa 2006 934                pound>
<dsa 2006 935                libapache2-mod-auth-pgsql>
<dsa 2006 936                libextractor>
<dsa 2006 937                tetex-bin>
<dsa 2006 938                koffice>
<dsa 2006 939                fetchmail>
<dsa 2006 940                gpdf>
<dsa 2006 941                tuxpaint>
<dsa 2006 942                albatross>
<dsa 2006 943                perl>
<dsa 2006 944                mantis>
<dsa 2006 945                antiword>
<dsa 2006 946                sudo>
<dsa 2006 947                clamav>
<dsa 2006 948                kdelibs>
<dsa 2006 949                crawl>
<dsa 2006 950                cupsys>
<dsa 2006 951                trac>
<dsa 2006 952                libapache-auth-ldap>
<dsa 2006 953                flyspray>
<dsa 2006 954                wine>
<dsa 2006 955                mailman>
<dsa 2006 956                lsh-server>
<dsa 2006 957                imagemagick>
<dsa 2006 958                drupal>
<dsa 2006 959                unalz>
<dsa 2006 960	             lib-mail-audit-perl>
<dsa 2006 961                pdfkit.framework>
<dsa 2006 962                pdftohtml>
<dsa 2006 963                mydns>
<dsa 2006 964                gnocatan>
<dsa 2006 965                ipsec-tools>
<dsa 2006 966                adzapper>
<dsa 2006 967                elog>
<dsa 2006 968                noweb>
<dsa 2006 969                scponly>
<dsa 2006 970                kronolith>
<dsa 2006 971                xpdf>
<dsa 2006 972                pdfkit.framework>
<dsa 2006 973                otrs>
<dsa 2006 974                gpdf>
<dsa 2006 975                nfs-user-server>
<dsa 2006 976                libast>
<dsa 2006 977                heimdal>
<dsa 2006 978                gnupg>
<dsa 2006 979                pdfkit.framework>
<dsa 2006 980                tutos>
<dsa 2006 981                bmv>
<dsa 2006 982                gpdf>
<dsa 2006 983                pdftohtml>
<dsa 2006 984                xpdf>
<dsa 2006 985                libtasn1-2>
<dsa 2006 986                gnutls11>
<dsa 2006 987                tar>
<dsa 2006 988                squirrelmail>
<dsa 2006 989                zoph>
<dsa 2006 990                bluez-hcidump>
<dsa 2006 991                zoo>
<dsa 2006 992                ffmpeg>
<dsa 2006 993                gnupg>
<dsa 2006 994                freeciv>
<dsa 2006 995                metamail>
<dsa 2006 997                bomberclone>
<dsa 2006 998                libextractor>
<dsa 2006 999                lurker>
<dsa 2006 1000               libapreq2-perl>
<dsa 2006 1001               crossfire>
<dsa 2006 1002               webcalendar>
<dsa 2006 1003               xpvm>
<dsa 2006 1004               vlc>
<dsa 2006 1005               xine-lib>
<dsa 2006 1006               wzdftpd>
<dsa 2006 1007               drupal>
<dsa 2006 1008               kdegraphics>
<dsa 2006 1009               crossfire>
<dsa 2006 1010               ilohamail>
<dsa 2006 1011               "kernel-patch-vserver and util-vserver">
<dsa 2006 1012               unzip>
<dsa 2006 1013               snmptrapfmt>
<dsa 2006 1014               firebird2>
<dsa 2006 1015               sendmail>
<dsa 2006 1016               evolution>
<dsa 2006 1019               kdegraphics>
<dsa 2006 1020               flex>
<dsa 2006 1021               netpbm-free>
<dsa 2006 1022               storebackup>
<dsa 2006 1023               kaffeine>
<dsa 2006 1024               clamav>
<dsa 2006 1025               dia>
<dsa 2006 1026               sash>
<dsa 2006 1027               mailman>
<dsa 2006 1028               libimager-perl>
<dsa 2006 1029               libphp-adodb>
<dsa 2006 1030               moodle>
<dsa 2006 1031               cacti>

</table>

<p>A complete list of all accepted and rejected packages together with
rationale is on the preparation page for this revision:</p>

<div class="center">
  <url "http://release.debian.org/stable/3.1/3.1r2/";>
</div>


<h2>URLs</h2>

<p>The complete lists of packages that have changed with this
release:</p>

<p>The current stable distribution:</p>

<div class="center">
  <url "http://ftp.debian.org/debian/dists/stable/";>
</div>

<p>Stable distribution information (release notes, errata, etc.):</p>

<div class="center">
  <a href="$(HOME)/releases/stable/">http://www.debian.org/releases/stable/</a>
</div>

<p>Security announcements and information:</p>

<div class="center">
  <a href="$(HOME)/security/">http://security.debian.org/</a>
</div>

<h2>About Debian</h2>

<p>The Debian Project is an organization of free software developers who
volunteer their time and effort in order to produce the completely
free operating systems Debian GNU/Linux and Debian GNU/Hurd.</p>

<h2>Contact Information</h2>

<p>For further information, please visit the Debian web pages at
<a href="$(HOME)/">http://www.debian.org/</a> or send mail to
&lt;press@debian.org&gt;.</p>


Reply to: