[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Preparation of the next stable Debian GNU/Linux update



Preparation of Debian GNU/Linux 4.1r3
=====================================

An up-to-date version is at <http://release.debian.org/stable/4.0/4.1r3/>.

We are preparing the next revision of the current stable Debian
distribution (sarge) and will frequently send reports so people can
actually comment on it and intervene whenever this is required.

If you disagree with one bit or another, please reply to this mail and
explain why these things should be handled differently.  

The overall plan is to release a new update of the stable Debian
distribution roughly two months after the last update or after the
initial release, whichever is suitable.  The next revision of stable
should therefore be released at the mid of February or 48h before the
release of Etch, whatever comes first.

An ftpmaster still has to give the final approval for each package
since ftpmasters are responsible for the archive.  However, we are
trying to make their work as easy as possible in hope to get the next
revision out properly and without any hassle.

The regulations for updates to the stable Debian release are quite
conservative.

The requirements for packages to get updated in stable are:

 1. The package fixes a security problem.  An advisory by our own
    Security Team is required.  Updates need to be approved by the
    Security Team.

 2. The package fixes a critical bug which can lead to data loss,
    data corruption, or an overly broken system, or the package is
    broken or not usable (anymore).

 3. The stable version of the package is not installable at all due to
    broken or unmet dependencies or broken installation scripts.

 4. All released architectures have to be in sync.

 5. The package gets all released architectures back in sync.

It is (or (and (or 1 2 3) 4) 5)

Regular bugs and upgrade problems don't get fixed in new revisions for
the stable distribution.  

Packages which will most probably be rejected:

  . Packages that fix non-critical bugs.

  . Misplaced uploads, i.e. packages that were uploaded to 'stable
    unstable' or `frozen unstable' or similar.

  . Packages for which its binary packages are out of sync with regard
    to all supported architectures in the stable distribution.

  . Binary packages for which the source got lost somehow.

  . Packages that fix an unusable minor part of a package.

If you would like to get a package updated in the stable release, you
are advised to talk to the stable release managers first (see
<http://www.debian.org/intro/organization>).

Accepted Packages
-----------------

These packages will be installed into the stable Debian distribution
and will be part of the next revision.



cupsys-bsd           stable    1.2.7-4etch1  alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
cupsys-bsd           updates   1.2.7-4etch2  alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
cupsys-client        stable    1.2.7-4etch1  alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
cupsys-client        updates   1.2.7-4etch2  alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
cupsys-common        stable    1.2.7-4etch1  all
cupsys-common        updates   1.2.7-4etch2  all
cupsys-dbg           stable    1.2.7-4etch1  alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
cupsys-dbg           updates   1.2.7-4etch2  alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
cupsys               stable    1.2.7-4etch1  alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc source
cupsys               updates   1.2.7-4etch2  alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc source
libcupsimage2-dev    stable    1.2.7-4etch1  alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
libcupsimage2-dev    updates   1.2.7-4etch2  alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
libcupsimage2        stable    1.2.7-4etch1  alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
libcupsimage2        updates   1.2.7-4etch2  alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
libcupsys2-dev       stable    1.2.7-4etch1  alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
libcupsys2-dev       updates   1.2.7-4etch2  alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
libcupsys2-gnutls10  stable    1.2.7-4etch1  all
libcupsys2-gnutls10  updates   1.2.7-4etch2  all
libcupsys2           stable    1.2.7-4etch1  alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
libcupsys2           updates   1.2.7-4etch2  alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc

	DSA 1437 cupsys - several vulnerabilities

inotify-tools  stable    3.3-1       alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc source
inotify-tools  updates   3.3-2       alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc source

	DSA 1440 inotify-tools - Arbitrary code execution

ipmitool    stable    1.8.8-3     amd64 i386 source
ipmitool    updates   1.8.8-3     ia64 powerpc

	Bring architectures back in sync.

libpeercast0-dev   stable    0.1217.toots.20060314-1       alpha amd64 arm i386 ia64 mips mipsel powerpc s390 sparc
libpeercast0-dev   stable    0.1217.toots.20060314-1+b1    hppa
libpeercast0-dev   updates   0.1217.toots.20060314-1etch0  alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
libpeercast0       stable    0.1217.toots.20060314-1       alpha amd64 arm i386 ia64 mips mipsel powerpc s390 sparc
libpeercast0       stable    0.1217.toots.20060314-1+b1    hppa
libpeercast0       updates   0.1217.toots.20060314-1etch0  alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
peercast-handlers  stable    0.1217.toots.20060314-1       all
peercast-handlers  updates   0.1217.toots.20060314-1etch0  all
peercast-servent   stable    0.1217.toots.20060314-1       alpha amd64 arm i386 ia64 mips mipsel powerpc s390 sparc
peercast-servent   stable    0.1217.toots.20060314-1+b1    hppa
peercast-servent   updates   0.1217.toots.20060314-1etch0  alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
peercast           stable    0.1217.toots.20060314-1       alpha amd64 arm i386 ia64 mips mipsel powerpc s390 sparc source
peercast           stable    0.1217.toots.20060314-1+b1    hppa
peercast           updates   0.1217.toots.20060314-1etch0  alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc source

	DSA 1441 peercast - Arbitrary code execution

tar         stable    1.16-2       alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc source
tar         updates   1.16-2etch1  alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc source

	DSA 1438 tar - Several vulnerabilities

typo3-src-4.0  stable    4.0.2+debian-3  all
typo3-src-4.0  updates   4.0.2+debian-4  all
typo3-src      stable    4.0.2+debian-3  source
typo3-src      updates   4.0.2+debian-4  source
typo3          stable    4.0.2+debian-3  all
typo3          updates   4.0.2+debian-4  all

	DSA 1439 typo3-src - SQL injection.

viewcvs-query  stable    0.9.2+cvs.1.0.dev.2004.07.28-4.1       all
viewcvs-query  updates   0.9.2+cvs.1.0.dev.2004.07.28-4.1etch1  all
viewcvs        stable    0.9.2+cvs.1.0.dev.2004.07.28-4.1       all source
viewcvs        updates   0.9.2+cvs.1.0.dev.2004.07.28-4.1etch1  all source

	Fix CVS parsing

plone-site     stable    2.5.1-4etch2  all
plone-site     updates   2.5.1-4etch3  all
zope-cmfplone  stable    2.5.1-4etch2  all source
zope-cmfplone  updates   2.5.1-4etch3  all source

	DSA 1405 zope-cmfplone - Arbitrary code execution

Requires further Investigation
------------------------------

These packages need further investigation.  One reason the package is
listed here could be that I'm not yet convinced this package should go
into stable, but don't want to reject it entirely at the moment.

Another reason could be that released and updated architectures are
not yet in sync.

libsnmp-base  stable    5.2.3-7       all
libsnmp-base  updates   5.2.3-7etch1  all
libsnmp-perl  stable    5.2.3-7       alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
libsnmp-perl  updates   5.2.3-7etch1  i386
libsnmp9-dev  stable    5.2.3-7       alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
libsnmp9-dev  updates   5.2.3-7etch1  i386
libsnmp9      stable    5.2.3-7       alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
libsnmp9      updates   5.2.3-7etch1  i386
net-snmp      stable    5.2.3-7       source
net-snmp      updates   5.2.3-7etch1  source
snmpd         stable    5.2.3-7       alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
snmpd         updates   5.2.3-7etch1  i386
snmp          stable    5.2.3-7       alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
snmp          updates   5.2.3-7etch1  i386
tkmib         stable    5.2.3-7       all
tkmib         updates   5.2.3-7etch1  all

	fix broken snmpbulkwalk (#429162)

Rejected Packages
-----------------

These packages don't meet the requirements and will be rejected (if
dak supports that, otherwise we'll just carry them with us until the
end of time).

cl-sql-aodbc              stable    3.7.8-1     all
cl-sql-mysql              stable    3.7.8-1     alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
cl-sql-odbc               stable    3.7.8-1     all
cl-sql-oracle             stable    3.7.8-1     all
cl-sql-postgresql-socket  stable    3.7.8-1     all
cl-sql-postgresql         stable    3.7.8-1     all
cl-sql-sqlite3            stable    3.7.8-1     all
cl-sql-sqlite             stable    3.7.8-1     all
cl-sql-tests              stable    3.7.8-1     all
cl-sql-uffi               stable    3.7.8-1     alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
cl-sql                    stable    3.7.8-1     all source

	fix #451095 - no mail on debian-release@lists.debian.org yet

gnokii-smsd-mysql  stable    0.6.14-1    alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
gnokii-smsd-pgsql  stable    0.6.14-1    alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
gnokii-smsd        stable    0.6.14-1    alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
gnokii             stable    0.6.14-1    alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc source
libgnokii3-dev     stable    0.6.14-1    alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc
libgnokii3         stable    0.6.14-1    alpha amd64 arm hppa i386 ia64 mips mipsel powerpc s390 sparc

	fix #409936 - no mail on debian-release@lists.debian.org yet

Removed Packages
----------------

These packages will be removed from the stable Debian distribution.
This normally only a result of license problems when the license
prohibits their distribution.

unace-nonfree  stable    2.5-1       alpha amd64 arm hppa i386 ia64 mips mipsel powerpc sparc source

	#458052

Disclaimer
----------

This list intends to help the ftp-masters releasing 4.1r3.  They have the
final power to accept a package or not.  If you want to comment on
this list, please send a mail to the debian release mailing list 
<debian-release@lists.debian.org>.

Last updated 2007/12/28 23:15 MET

Attachment: signature.asc
Description: Digital signature


Reply to: