Mailing List Archive

Gentoo Weekly Newsletter 23 April 2007
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Gentoo Weekly Newsletter
http://www.gentoo.org/news/en/gwn/20070423-newsletter.xml
This is the Gentoo Weekly Newsletter for the week of 23 April 2007.
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

==============
1. Gentoo News
==============

Thanks from the GWN staff
-------------------------

Over the past week, the GWN staff has had many users contact them,
interested in writing articles for the GWN, and the GWN team would like to
publicly express our gratitude and thanks to the new GWN contributors.

This does not mean, however, that the GWN team is not looking for more
contributors, as the team is always looking for articles, ideas for 'Tip of
the week', and so on. Plus, as the saying goes - "The more the merrier!".
Feel free to email the GWN team at gwn-feedback@gentoo.org or visit us in
our IRC channel (#gentoo-gwn on irc.freenode.net) for article suggestions
and any other ideas.

========================
2. Developer of the Week
========================

Markus Ullmann, aka Jokey
-------------------------

Figure 2.1: Markus Ullmann, aka Jokey
http://www.gentoo.org/images/gwn/20070423_jokey.jpg

Markus Ullmann[1], also known as 'Teh Jokey (TM)' is a 25 year old developer
and part of our 'German conspiracy'. Markus currently lives in Uetersen,
together with his family. Markus is studying electrical engineering at the
HAW Hamburg University. He took an apprenticeship as industrial electrician
at Beiersdorf and quickly discovered that building such production machines
would be fun. He decided to become an engineer and is currently on his 3rd
semester. Markus gets a lot of practical courses involving numeric
simulations with C, developing on FPGA boards, and getting into the deep
secrets of diodes and transistors.

1. jokey@gentoo.org

Of the variety of hobbies that Markus enjoys, which include working on
Gentoo, swimming, playing D20 (Dungeons and Dragons), and playing keyboard,
his favorite is swimming. Ironically, this self described computer nerd met
the love of his life, Svenja (who also considers herself a computer nerd),
via swimming.

So about that name, Jokey... Markus got the name Jokey from a LAN party
after having played pranks on several fellow gamers. Someone recalled the
children's cartoon 'The Smurfs' and the infamous character Jokey... the name
still sticks to this day.

Markus is an active member of two German Linux User groups: LUG Flensburg
e.V. and LUG Norderstedt e.V. He also likes to attend conventions and
FOSS-events. You could have met him at FOSDEM (Belgium) or CeBit (Germany).

Markus got started with Linux back in the SuSE 5.1 days, but his real Linux
life started with Xlinux 1.0 from a Golden Chip CD. He used that for several
years until he switched to LinuxFromScratch, since he was already compiling
most packages from scratch. After an OpenSSL update damaged his whole KDE
setup, he began looking for an alternative and ultimately found something
with an "automated" source build: Gentoo 1.2.

Around mid 2005, Jokey decided to help out with the heavily aging OpenLDAP
package as he wanted to get into the tree. After having fixed some 20 bugs
and sending various patches to Benjamin Smee[2], Benjamin mentored and lured
Markus down the path of dev-hood. Jokey is currently the Gentoo overlays
lead and sunrise lead. He also works in x86 and takes care of netmon, lcd
and OpenLDAP. Quite a busy bee right?

2. strerror@gentoo.org

Markus' first apps are KDE, KVIRC, Thunderbird, Firefox, and gajim. He's
also a fan of Beryl as window manager to spice up his X-environment.

=========================
3. Gentoo developer moves
=========================

Moves
-----

The following developers recently left the Gentoo project:

* none this week

Adds
----

The following developers recently joined the Gentoo project:

* Aggelos Orfanakos (agorf) Ruby/GWN teams
* Christina Fullam (musikc) Developer Relations/GWN teams
* Alistair John Bush (ali_bush) Java team

Changes
-------

The following developers recently changed roles within the Gentoo project:

* none this week

==================
4. Gentoo security
==================

xine-lib: Heap-based buffer overflow
------------------------------------

xine-lib is vulnerable to a heap-based buffer overflow.

For more information, please see the GLSA Announcement[3]

3. http://www.gentoo.org/security/en/glsa/glsa-200704-09.xml

Inkscape: Two format string vulnerabilities
-------------------------------------------

Two format string vulnerabilities have been discovered in Inkscape, allowing
for user-assisted execution of arbitrary code.

For more information, please see the GLSA Announcement[4]

4. http://www.gentoo.org/security/en/glsa/glsa-200704-10.xml

Vixie Cron: Denial of Service
-----------------------------

The Gentoo implementation of Vixie Cron is vulnerable to a local Denial of
Service.

For more information, please see the GLSA Announcement[5]

5. http://www.gentoo.org/security/en/glsa/glsa-200704-11.xml

OpenOffice.org: Multiple vulnerabilities
----------------------------------------

Multiple vulnerabilities have been discovered in OpenOffice.org, allowing
for remote execution of arbitrary code.

For more information, please see the GLSA Announcement[6]

6. http://www.gentoo.org/security/en/glsa/glsa-200704-12.xml

File: Denial of Service
-----------------------

A vulnerability has been discovered in file allowing for a denial of
service.

For more information, please see the GLSA Announcement[7]

7. http://www.gentoo.org/security/en/glsa/glsa-200704-13.xml

FreeRADIUS: Denial of Service
-----------------------------

A memory leak has been discovered in FreeRADIUS, possibly allowing for a
Denial of Service.

For more information, please see the GLSA Announcement[8]

8. http://www.gentoo.org/security/en/glsa/glsa-200704-14.xml

MadWifi: Multiple vulnerabilities
---------------------------------

Multiple vulnerabilities have been discovered in the MadWifi driver,
possibly leading to a Denial of Service and information disclosure.

For more information, please see the GLSA Announcement[9]

9. http://www.gentoo.org/security/en/glsa/glsa-200704-15.xml

Aircrack-ng: Remote execution of arbitrary code
-----------------------------------------------

Aircrack-ng contains a buffer overflow that could lead to the remote
execution of arbitrary code with root privileges.

For more information, please see the GLSA Announcement[10]

10. http://www.gentoo.org/security/en/glsa/glsa-200704-16.xml

3proxy: Buffer overflow
-----------------------

A vulnerability has been discovered in 3proxy allowing for the remote
execution of arbitrary code.

For more information, please see the GLSA Announcement[11]

11. http://www.gentoo.org/security/en/glsa/glsa-200704-17.xml

Courier-IMAP: Remote execution of arbitrary code
------------------------------------------------

A vulnerability has been discovered in Courier-IMAP allowing for remote code
execution with root privileges.

For more information, please see the GLSA Announcement[12]

12. http://www.gentoo.org/security/en/glsa/glsa-200704-18.xml

=======================
5. Gentoo package moves
=======================

This section lists packages that have either been moved or added to the tree
and packages that have had their "last rites" announcement given to be
removed in the future. The package removals come from many locations,
including the Treecleaners[13] and various developers. Most packages which
are listed under the Last Rites section are in need of some love and care
and can remain in the tree if proper maintainership is established.

13. http://www.gentoo.org/proj/en/qa/treecleaners

Removals:
---------

Package: Removal date: Contact:
media-gfx/plustek-parallel 16 Apr 2007 Patrick Kursawe[14]
app-editors/elisp-manual 18 Apr 2007 Ulrich Müller[15]
sci-electronics/modelsim 20 Apr 2007 Denis Dupeyron[16]
games-strategy/mylink 20 Apr 2007 Michael Sterrett[17]
games-puzzle/sdlvexed 20 Apr 2007 Michael Sterrett[17]
games-action/d1x 20 Apr 2007 Michael Sterrett[17]
app-crypt/aes-crypt 21 Apr 2007 Alon Bar-Lev[18]

14. phosphan@gentoo.org
15. ulm@gentoo.org
16. calchan@gentoo.org
17. mr_bones_@gentoo.org
18. alonbl@gentoo.org

Additions:
----------

Package: Addition date: Contact:
app-admin/eselect-emacs[19] 16 Apr 2007 Christian Faulhammer[20]
x11-misc/emacs-desktop[21] 16 Apr 2007 Christian Faulhammer[20]
net-misc/metacafe-dl[22] 16 Apr 2007 Aggelos Orfanakos[23]
sys-auth/pam_mktemp[24] 17 Apr 2007 Sven Wegener[25]
dev-php5/magickwand[26] 17 Apr 2007 Anant Narayanan[27]
dev-libs/stfl[28] 18 Apr 2007 Andrej Kacian[29]
dev-ruby/rubypants[30] 18 Apr 2007 Aggelos Orfanakos[23]
app-doc/elisp-manual[31] 18 Apr 2007 Ulrich Müller[15]
net-news/newsbeuter[32] 18 Apr 2007 Andrej Kacian[29]
media-libs/libdca[33] 18 Apr 2007 Alexis Ballier[34]
mail-filter/libdomainkeys[35] 18 Apr 2007 Colin Morey[36]
games-rpg/galaxymage[37] 19 Apr 2007 Alfredo Tupone[38]
dev-scheme/stklos[39] 19 Apr 2007 Marijn Schouten[40]
sci-astronomy/xfitsview[41] 19 Apr 2007 Sebastien Fabbro[42]
sys-apps/cciss_vol_status[43] 19 Apr 2007 Tony Vroon[44]
net-news/rsstail[45] 19 Apr 2007 Wulf Krueger[46]
dev-util/egypt[47] 19 Apr 2007 Mike Frysinger[48]
dev-ruby/htmlentities[49] 20 Apr 2007 Aggelos Orfanakos[23]
net-irc/znc[50] 20 Apr 2007 Raúl Porcel[51]
net-irc/sic[52] 20 Apr 2007 Raúl Porcel[51]
net-libs/telepathy-glib[53] 20 Apr 2007 Piotr Jaroszyński[54]
app-crypt/aesutil[55] 20 Apr 2007 Alon Bar-Lev[18]
sys-apps/pam_mount[56] 21 Apr 2007 Hanno Boeck[57]
games-arcade/xsfcave[58] 21 Apr 2007 Alfredo Tupone[38]
dev-java/jsap[59] 21 Apr 2007 Miroslav Å ulc[60]
media-video/ttcut[61] 21 Apr 2007 Matthias Schwarzott[62]
dev-python/workingenv[63] 21 Apr 2007 Rob Cakebread[64]
media-sound/ttaenc[65] 22 Apr 2007 Samuli Suominen[66]

15. ulm@gentoo.org
18. alonbl@gentoo.org
19. http://packages.gentoo.org/packages/?category=app-admin;name=eselect-emacs
20. opfer@gentoo.org
21. http://packages.gentoo.org/packages/?category=x11-misc;name=emacs-desktop
22. http://packages.gentoo.org/packages/?category=net-misc;name=metacafe-dl
23. agorf@gentoo.org
24. http://packages.gentoo.org/packages/?category=sys-auth;name=pam_mktemp
25. swegener@gentoo.org
26. http://packages.gentoo.org/packages/?category=dev-php5;name=magickwand
27. anant@gentoo.org
28. http://packages.gentoo.org/packages/?category=dev-libs;name=stfl
29. ticho@gentoo.org
30. http://packages.gentoo.org/packages/?category=dev-ruby;name=rubypants
31. http://packages.gentoo.org/packages/?category=app-doc;name=elisp-manual
32. http://packages.gentoo.org/packages/?category=net-news;name=newsbeuter
33. http://packages.gentoo.org/packages/?category=media-libs;name=libdca
34. aballier@gentoo.org
35. http://packages.gentoo.org/packages/?category=mail-filter;name=libdomainkeys
36. peitolm@gentoo.org
37. http://packages.gentoo.org/packages/?category=games-rpg;name=galaxymage
38. tupone@gentoo.org
39. http://packages.gentoo.org/packages/?category=dev-scheme;name=stklos
40. hkbst@gentoo.org
41. http://packages.gentoo.org/packages/?category=sci-astronomy;name=xfitsview
42. bicatali@gentoo.org
43. http://packages.gentoo.org/packages/?category=sys-apps;name=cciss_vol_status
44. chainsaw@gentoo.org
45. http://packages.gentoo.org/packages/?category=net-news;name=rsstail
46. philantrop@gentoo.org
47. http://packages.gentoo.org/packages/?category=dev-util;name=egypt
48. vapier@gentoo.org
49. http://packages.gentoo.org/packages/?category=dev-ruby;name=htmlentities
50. http://packages.gentoo.org/packages/?category=net-irc;name=znc
51. armin76@gentoo.org
52. http://packages.gentoo.org/packages/?category=net-irc;name=sic
53. http://packages.gentoo.org/packages/?category=net-libs;name=telepathy-glib
54. peper@gentoo.org
55. http://packages.gentoo.org/packages/?category=app-crypt;name=aesutil
56. http://packages.gentoo.org/packages/?category=sys-apps;name=pam_mount
57. hanno@gentoo.org
58. http://packages.gentoo.org/packages/?category=games-arcade;name=xsfcave
59. http://packages.gentoo.org/packages/?category=dev-java;name=jsap
60. fordfrog@gentoo.org
61. http://packages.gentoo.org/packages/?category=media-video;name=ttcut
62. zzam@gentoo.org
63. http://packages.gentoo.org/packages/?category=dev-python;name=workingenv
64. pythonhead@gentoo.org
65. http://packages.gentoo.org/packages/?category=media-sound;name=ttaenc
66. drac@gentoo.org

Last Rites:
-----------

Package: Removal date: Contact:
games-arcade/ddrmat[67] 16 May 2007 Chris Gianelloni[68]
net-dialup/slirp[69] 17 May 2007 Alin Năstac[70]
media-gfx/graphicsmagick[71] 17 May 2007 Bryan Østergaard[72]
mail-client/claws-mail-maildir[73] 20 May 2007 Andrej Kacian[29]
app-emulation/vmware-gsx-console[74] 20 May 2007 Michael Sterrett[17]
dev-java/systray4j[75] 22 May 2007 Alistair Bush[76]
net-misc/tlsproxyd[77] 19 Jun 2007 Raúl Porcel[51]

17. mr_bones_@gentoo.org
29. ticho@gentoo.org
51. armin76@gentoo.org
67. http://packages.gentoo.org/packages/?category=games-arcade;name=ddrmat
68. wolf31o2@gentoo.org
69. http://packages.gentoo.org/packages/?category=net-dialup;name=slirp
70. mrness@gentoo.org
71. http://packages.gentoo.org/packages/?category=media-gfx;name=graphicsmagick
72. kloeri@gentoo.org
73. http://packages.gentoo.org/packages/?category=mail-client;name=claws-mail-maildir
74. http://packages.gentoo.org/packages/?category=app-emulation;name=vmware-gsx-console
75. http://packages.gentoo.org/packages/?category=dev-java;name=systray4j
76. ali_bush@gentoo.org
77. http://packages.gentoo.org/packages/?category=net-misc;name=tlsproxyd

===========
6. Bugzilla
===========

Summary
-------

* Statistics
* Closed bug ranking
* New bug rankings

Statistics
----------

The Gentoo community uses Bugzilla (bugs.gentoo.org[78]) to record and track
bugs, notifications, suggestions and other interactions with the development
team. Between 16 April 2007 and 22 April 2007, activity on the site has
resulted in:

78. http://bugs.gentoo.org

* 524 new bugs during this period
* 320 bugs closed or resolved during this period
* 16 previously closed bugs were reopened this period
* 99 closed as NEEDINFO/WONTFIX/CANTFIX/INVALID/UPSTREAM during this
period
* 53 bugs marked as duplicates during this period

Of the 10066 currently open bugs: 14 are labeled 'blocker', 105 are labeled
'critical', and 369 are labeled 'major'.

Closed bug rankings
-------------------

The developers and teams who have closed the most bugs during this period
are:

* AMD64 Project[79], with 18 closed bugs[80]
* Gentoo Linux Gnome Desktop Team[81], with 13 closed bugs[82]
* GNU Emacs Herd[83], with 11 closed bugs[84]
* Gentoo Security[85], with 9 closed bugs[86]
* Gentoo Linux bug wranglers[87], with 9 closed bugs[88]
* Gentoo's Team for Core System packages[89], with 8 closed bugs[90]
* Karol Wojtaszek[91], with 7 closed bugs[92]
* Gentoo KDE team[93], with 7 closed bugs[94]

79. amd64@gentoo.org
80. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2007-04-16&chfieldto=2007-04-22&resolution=FIXED&assigned_to=amd64@gentoo.org
81. gnome@gentoo.org
82. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2007-04-16&chfieldto=2007-04-22&resolution=FIXED&assigned_to=gnome@gentoo.org
83. emacs@gentoo.org
84. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2007-04-16&chfieldto=2007-04-22&resolution=FIXED&assigned_to=emacs@gentoo.org
85. security@gentoo.org
86. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2007-04-16&chfieldto=2007-04-22&resolution=FIXED&assigned_to=security@gentoo.org
87. bug-wranglers@gentoo.org
88. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2007-04-16&chfieldto=2007-04-22&resolution=FIXED&assigned_to=bug-wranglers@gentoo.org
89. base-system@gentoo.org
90. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2007-04-16&chfieldto=2007-04-22&resolution=FIXED&assigned_to=base-system@gentoo.org
91. sekretarz@gentoo.org
92. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2007-04-16&chfieldto=2007-04-22&resolution=FIXED&assigned_to=sekretarz@gentoo.org
93. kde@gentoo.org
94. http://bugs.gentoo.org/buglist.cgi?bug_status=RESOLVED&bug_status=CLOSED&chfield=bug_status&chfieldfrom=2007-04-16&chfieldto=2007-04-22&resolution=FIXED&assigned_to=kde@gentoo.org

New bug rankings
----------------

The developers and teams who have been assigned the most new bugs during
this period are:

* Default Assignee for New Packages[95], with 27 new bugs[96]
* Java team[97], with 11 new bugs[98]
* AMD64 Project[79], with 8 new bugs[99]
* Gentoo's Team for Core System packages[89], with 7 new bugs[100]
* Gentoo Toolchain Maintainers[101], with 6 new bugs[102]
* Gentoo Web Application Packages Maintainers[103], with 5 new
bugs[104]
* voip herd[105], with 5 new bugs[106]
* Mobile Herd[107], with 5 new bugs[108]

79. amd64@gentoo.org
89. base-system@gentoo.org
95. maintainer-wanted@gentoo.org
96. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2007-04-16&chfieldto=2007-04-22&assigned_to=maintainer-wanted@gentoo.org
97. java@gentoo.org
98. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2007-04-16&chfieldto=2007-04-22&assigned_to=java@gentoo.org
99. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2007-04-16&chfieldto=2007-04-22&assigned_to=amd64@gentoo.org
100. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2007-04-16&chfieldto=2007-04-22&assigned_to=base-system@gentoo.org
101. toolchain@gentoo.org
102. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2007-04-16&chfieldto=2007-04-22&assigned_to=toolchain@gentoo.org
103. web-apps@gentoo.org
104. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2007-04-16&chfieldto=2007-04-22&assigned_to=web-apps@gentoo.org
105. voip@gentoo.org
106. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2007-04-16&chfieldto=2007-04-22&assigned_to=voip@gentoo.org
107. mobile@gentoo.org
108. http://bugs.gentoo.org/buglist.cgi?bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&chfield=assigned_to&chfieldfrom=2007-04-16&chfieldto=2007-04-22&assigned_to=mobile@gentoo.org

===============
7. GWN feedback
===============

The GWN is staffed by volunteers and members of the community who submit
ideas and articles. If you are interested in writing for the GWN, have
feedback on an article that we have posted, or just have an idea or article
that you would like to submit to the GWN, please send us your feedback[109]
and help make the GWN better.

109. gwn-feedback@gentoo.org

===============================
8. GWN subscription information
===============================

To subscribe to the Gentoo Weekly Newsletter, send a blank e-mail to
gentoo-gwn+subscribe@gentoo.org.

To unsubscribe to the Gentoo Weekly Newsletter, send a blank e-mail to
gentoo-gwn+unsubscribe@gentoo.org from the e-mail address you are subscribed
under.

==================
9. Other languages
==================

The Gentoo Weekly Newsletter is also available in the following languages:

* Chinese (Simplified)[110]
* Dutch[111]
* English[112]
* German[113]
* Greek[114]
* French[115]
* Korean[116]
* Japanese[117]
* Italian[118]
* Polish[119]
* Portuguese (Brazil)[120]
* Portuguese (Portugal)[121]
* Russian[122]
* Slovak[123]
* Spanish[124]
* Turkish[125]

110. http://www.gentoo.org/news/zh_cn/gwn/gwn.xml
111. http://www.gentoo.org/news/nl/gwn/gwn.xml
112. http://www.gentoo.org/news/en/gwn/gwn.xml
113. http://www.gentoo.org/news/de/gwn/gwn.xml
114. http://www.gentoo.org/news/el/gwn/gwn.xml
115. http://www.gentoo.org/news/fr/gwn/gwn.xml
116. http://www.gentoo.org/news/ko/gwn/gwn.xml
117. http://www.gentoo.org/news/ja/gwn/gwn.xml
118. http://www.gentoo.org/news/it/gwn/gwn.xml
119. http://www.gentoo.org/news/pl/gwn/gwn.xml
120. http://www.gentoo.org/news/pt_br/gwn/gwn.xml
121. http://www.gentoo.org/news/pt/gwn/gwn.xml
122. http://www.gentoo.org/news/ru/gwn/gwn.xml
123. http://www.gentoo.org/news/sk/gwn/gwn.xml
124. http://www.gentoo.org/news/es/gwn/gwn.xml
125. http://www.gentoo.org/news/tr/gwn/gwn.xml

Chris Gianelloni <wolf31o2@gentoo.org> - Editor
Dimitry Bradt <diox@gentoo.org> - Author
Chrissy Fullam <musikc@gentoo.org> - Author

--
gentoo-gwn@gentoo.org mailing list