From mikael at tinysofa.org Fri May 5 07:32:20 2006 From: mikael at tinysofa.org (Mikael Bak) Date: Sun May 4 12:26:18 2008 Subject: [tinysofa-devel] tinysofa trac spammed Message-ID: <200605051432.30879.mikael@tinysofa.org> Hi, Seems like we've been spammed: http://minbar.tinysofa.org/report/2 I have been awfully busy doing other things for a while. I wanted to update clamav, but I saw jh was faster :-) I'm finally about to replace my last tinysofa 1.1 system with tcs2.0. When done I can concentrate on tcs2.0 packages only :-) Mikael -------------- next part -------------- A non-text attachment was scrubbed... Name: not available Type: application/pgp-signature Size: 189 bytes Desc: not available Url : http://lists.tinysofa.org/pipermail/tinysofa-devel/attachments/20060505/f152be48/attachment.bin From jh at tinysofa.org Tue May 9 13:04:07 2006 From: jh at tinysofa.org (Jaakko Heinonen) Date: Sun May 4 12:26:18 2008 Subject: [tinysofa-devel] classic 2.0 update 5 plan Message-ID: <20060509180407.GA1798@ws64.jh.dy.fi> Hi, I have now following updates ready for update 5: acl - new upstream, packaging improvements attr - new upstream, packaging improvements cyrus-sasl - CVE-2006-1721 device-mapper - 1.02.05 dovecot - packaging fixes - patches drbd - 0.7.17 elinks - 0.11.1 gdb - 6.4 grsecurity - 2.1.9 for 2.6.16 based kernel iptables - 1.3.5 - update module lists for kernel 2.6.16 kernel - 2.6.16.x based - drbd 0.7.17 - grsecurity 2.1.9 - squashfs 3.0 libtiff - CVE-2006-2024 lvm2 - 2.02.04 mysql - 4.1.19 openssh - 4.3p2 rsync - 2.6.8 with acl and xattr support squasfs-tools - 3.0 tar - 1.2.53 tcsh - 6.14 Anything missing? I have created a pre iso (i586 only at this time) which is available here: http://minbar.tinysofa.org/~jh/classic/2.0U5/iso/Ceara.i586.iso sha1sum: 86e7ed368bd7ae3b39d83c31fdef2129def27ed3 Ceara.i586.iso I will create release candidate isos for both architectures soon. -- Jaakko From mikael at tinysofa.org Wed May 10 10:58:25 2006 From: mikael at tinysofa.org (Mikael Bak) Date: Sun May 4 12:26:18 2008 Subject: [tinysofa-devel] classic 2.0 update 5 plan In-Reply-To: <20060509180407.GA1798@ws64.jh.dy.fi> References: <20060509180407.GA1798@ws64.jh.dy.fi> Message-ID: <200605101758.35984.mikael@tinysofa.org> On Tuesday 09 May 2006 20:04, Jaakko Heinonen wrote: [snip] > > Anything missing? > Hi Jaakko, There have been some new php releases fixing security issues the last couple of days: http://www.securityfocus.com/bid/15411 http://www.checksum.org/cso/message/28442.html I don't know if there is a patch against 5.0.4. I didn't find one. Also I don't know if it's a good idea to swap php version to 5.1.4 when releasing an update 5 :-) perhaps not. But on the other hand, browsing the changelog, I don't really see why updating to the latest php version would break anything. But I'm probably not the right man to tell. Mikael -------------- next part -------------- A non-text attachment was scrubbed... Name: not available Type: application/pgp-signature Size: 189 bytes Desc: not available Url : http://lists.tinysofa.org/pipermail/tinysofa-devel/attachments/20060510/58c5432f/attachment.bin From jh at tinysofa.org Wed May 10 11:53:18 2006 From: jh at tinysofa.org (Jaakko Heinonen) Date: Sun May 4 12:26:18 2008 Subject: [tinysofa-devel] classic 2.0 update 5 plan In-Reply-To: <200605101758.35984.mikael@tinysofa.org> References: <20060509180407.GA1798@ws64.jh.dy.fi> <200605101758.35984.mikael@tinysofa.org> Message-ID: <20060510165318.GB1507@ws64.jh.dy.fi> On 2006-05-10, Mikael Bak wrote: > There have been some new php releases fixing security issues the last couple > of days: > > I don't know if there is a patch against 5.0.4. I didn't find one. Also I > don't know if it's a good idea to swap php version to 5.1.4 when releasing an > update 5 :-) perhaps not. But on the other hand, browsing the changelog, I > don't really see why updating to the latest php version would break anything. > But I'm probably not the right man to tell. Yes, I am aware of this. Actually I have checked 5.1.4 but upgrading to it is not trivial. They have changed things for it. (For example pear packaging.) Fedora Core 4 is missing too fixes for their 5.0.4. I assume because backporting the fixes is not easy. Seems that Suse has backported fixes for following recent CVEs: CVE-2006-0207 CVE-2006-0208 CVE-2006-0996 CVE-2006-1490 CVE-2006-1494 CVE-2006-1608 I'll try to get the patches from their package unless someone wants to package and test 5.1.4. -- Jaakko From gda at tinysofa.org Wed May 10 13:20:21 2006 From: gda at tinysofa.org (Gerald Dachs) Date: Sun May 4 12:26:18 2008 Subject: [tinysofa-devel] classic 2.0 update 5 plan In-Reply-To: <20060509180407.GA1798@ws64.jh.dy.fi> References: <20060509180407.GA1798@ws64.jh.dy.fi> Message-ID: <20060510202021.9ba1979f.gda@tinysofa.org> > attr > - new upstream, packaging improvements Installing libattr-2.4.28-1ts.i586. warning: user machbuild does not exist - using root warning: group machbuild does not exist - using root warning: user machbuild does not exist - using root warning: group machbuild does not exist - using root %defattr missing? base system installs fine on parallels Gerald From jh at tinysofa.org Wed May 10 14:21:05 2006 From: jh at tinysofa.org (Jaakko Heinonen) Date: Sun May 4 12:26:18 2008 Subject: [tinysofa-devel] classic 2.0 update 5 plan In-Reply-To: <20060510165318.GB1507@ws64.jh.dy.fi> References: <20060509180407.GA1798@ws64.jh.dy.fi> <200605101758.35984.mikael@tinysofa.org> <20060510165318.GB1507@ws64.jh.dy.fi> Message-ID: <20060510192104.GA2108@ws64.jh.dy.fi> On 2006-05-10, Jaakko Heinonen wrote: > I'll try to get the patches from their package unless someone wants to > package and test 5.1.4. Here's the changeset: http://minbar.tinysofa.org/changeset/6947 Does it look OK? -- Jaakko From jh at tinysofa.org Wed May 10 14:25:27 2006 From: jh at tinysofa.org (Jaakko Heinonen) Date: Sun May 4 12:26:18 2008 Subject: [tinysofa-devel] classic 2.0 update 5 plan In-Reply-To: <20060510202021.9ba1979f.gda@tinysofa.org> References: <20060509180407.GA1798@ws64.jh.dy.fi> <20060510202021.9ba1979f.gda@tinysofa.org> Message-ID: <20060510192519.GB2108@ws64.jh.dy.fi> On 2006-05-10, Gerald Dachs wrote: > > attr > %defattr missing? Yes, I had already committed a fix to svn. > base system installs fine on parallels Thanks for testing. -- Jaakko From mikael at tinysofa.org Thu May 11 00:58:22 2006 From: mikael at tinysofa.org (Mikael Bak) Date: Sun May 4 12:26:18 2008 Subject: [tinysofa-devel] classic 2.0 update 5 plan In-Reply-To: <20060510192104.GA2108@ws64.jh.dy.fi> References: <20060509180407.GA1798@ws64.jh.dy.fi> <20060510165318.GB1507@ws64.jh.dy.fi> <20060510192104.GA2108@ws64.jh.dy.fi> Message-ID: <200605110758.31103.mikael@tinysofa.org> On Wednesday 10 May 2006 21:21, Jaakko Heinonen wrote: > On 2006-05-10, Jaakko Heinonen wrote: > > I'll try to get the patches from their package unless someone wants to > > package and test 5.1.4. > > Here's the changeset: > > http://minbar.tinysofa.org/changeset/6947 > > Does it look OK? Jaakko, Looks great! Thanks a lot! I will still try to package 5.1.4, because sooner or later we will have to move along with newer versions of php and it's not always easy to find well working backports. Thanks for finding them! Mikael -------------- next part -------------- A non-text attachment was scrubbed... Name: not available Type: application/pgp-signature Size: 189 bytes Desc: not available Url : http://lists.tinysofa.org/pipermail/tinysofa-devel/attachments/20060511/3202cecd/attachment.bin From mikael at tinysofa.org Thu May 11 06:47:29 2006 From: mikael at tinysofa.org (Mikael Bak) Date: Sun May 4 12:26:18 2008 Subject: [tinysofa-devel] classic 2.0 update 5 plan In-Reply-To: <20060509180407.GA1798@ws64.jh.dy.fi> References: <20060509180407.GA1798@ws64.jh.dy.fi> Message-ID: <200605111347.38713.mikael@tinysofa.org> On Tuesday 09 May 2006 20:04, Jaakko Heinonen wrote: > I have created a pre iso (i586 only at this time) which is available > here: > > http://minbar.tinysofa.org/~jh/classic/2.0U5/iso/Ceara.i586.iso > Hi, The only spare "hardware" I have at the moment is a QEmu on my desktop machine. I installed the above image witout any problems. I have only installed a very minimal system though. Are there any functionality in particular you want tested? Mikael -------------- next part -------------- A non-text attachment was scrubbed... Name: not available Type: application/pgp-signature Size: 189 bytes Desc: not available Url : http://lists.tinysofa.org/pipermail/tinysofa-devel/attachments/20060511/15ffa713/attachment.bin From jh at tinysofa.org Sat May 13 12:18:14 2006 From: jh at tinysofa.org (Jaakko Heinonen) Date: Sun May 4 12:26:18 2008 Subject: [tinysofa-devel] classic 2.0 update 5 release candidate isos Message-ID: <20060513171813.GA3271@ws64.jh.dy.fi> i586: http://minbar.tinysofa.org/~jh/classic/2.0U5/iso/Ceara.i586.iso x86_64: http://minbar.tinysofa.org/~jh/classic/2.0U5/iso/Ceara.x86_64.iso source: http://minbar.tinysofa.org/~jh/classic/2.0U5/iso/Ceara.src.iso sha1sums: http://minbar.tinysofa.org/~jh/classic/2.0U5/iso/sha1sums These isos will be released as update 5 if problems won't show up. -- Jaakko From jh at tinysofa.org Sat May 13 12:22:29 2006 From: jh at tinysofa.org (Jaakko Heinonen) Date: Sun May 4 12:26:18 2008 Subject: [tinysofa-devel] classic 2.0 update 5 plan In-Reply-To: <200605111347.38713.mikael@tinysofa.org> References: <20060509180407.GA1798@ws64.jh.dy.fi> <200605111347.38713.mikael@tinysofa.org> Message-ID: <20060513172229.GB3271@ws64.jh.dy.fi> On 2006-05-11, Mikael Bak wrote: > Are there any functionality in particular you want tested? (release candidate isos are now out) - kernel (SMP and UP) and utilities which are closely coupled with kernel (for example lvm) - php -- Jaakko From gda at tinysofa.org Sun May 14 01:15:34 2006 From: gda at tinysofa.org (Gerald Dachs) Date: Sun May 4 12:26:18 2008 Subject: [tinysofa-devel] classic 2.0 update 5 release candidate isos In-Reply-To: <20060513171813.GA3271@ws64.jh.dy.fi> References: <20060513171813.GA3271@ws64.jh.dy.fi> Message-ID: <2825.62.148.156.75.1147587334.squirrel@sohoserver.homelinux.net> > > i586: > http://minbar.tinysofa.org/~jh/classic/2.0U5/iso/Ceara.i586.iso > > x86_64: > http://minbar.tinysofa.org/~jh/classic/2.0U5/iso/Ceara.x86_64.iso > > source: > http://minbar.tinysofa.org/~jh/classic/2.0U5/iso/Ceara.src.iso > > sha1sums: > http://minbar.tinysofa.org/~jh/classic/2.0U5/iso/sha1sums > > > These isos will be released as update 5 if problems won't show up. Currently in Russia, connected with a 32KBit modem, sorry no tests possible. Gerald From mikael at tinysofa.org Mon May 15 08:01:13 2006 From: mikael at tinysofa.org (Mikael Bak) Date: Sun May 4 12:26:18 2008 Subject: [tinysofa-devel] classic 2.0 update 5 plan In-Reply-To: <20060513172229.GB3271@ws64.jh.dy.fi> References: <20060509180407.GA1798@ws64.jh.dy.fi> <200605111347.38713.mikael@tinysofa.org> <20060513172229.GB3271@ws64.jh.dy.fi> Message-ID: <200605151501.21785.mikael@tinysofa.org> On Saturday 13 May 2006 19:22, Jaakko Heinonen wrote: > On 2006-05-11, Mikael Bak wrote: > > Are there any functionality in particular you want tested? > > (release candidate isos are now out) > Hi Jaakko, I downloaded the newest ISO (i586) and did a fresh install on QEmu. > - php I've only tested php, because that's what I know better and thats what a can test in my limited QEmu environment. Test case: Horde/IMP (webmail application) Packages tested: httpd, mysql, mysql-client, php, php-mysql, php-imap Result: OK Note: Had to install a few extra pear modules. No big deal. Great work, Jaakko! And thanks! Mikael -------------- next part -------------- A non-text attachment was scrubbed... Name: not available Type: application/pgp-signature Size: 189 bytes Desc: not available Url : http://lists.tinysofa.org/pipermail/tinysofa-devel/attachments/20060515/71bcfb25/attachment.bin From mikael at tinysofa.org Mon May 15 10:52:49 2006 From: mikael at tinysofa.org (Mikael Bak) Date: Sun May 4 12:26:18 2008 Subject: [tinysofa-devel] stunnel package seems broken Message-ID: <200605151752.54734.mikael@tinysofa.org> Hi, It seems our stunnel package is broken. I haven't figured out what's wrong with it yet, but I suspect errors in at least the init script. Even syntactical errors. I will do some more tests tomorrow to try to track down the problems. Mikael -------------- next part -------------- A non-text attachment was scrubbed... Name: not available Type: application/pgp-signature Size: 189 bytes Desc: not available Url : http://lists.tinysofa.org/pipermail/tinysofa-devel/attachments/20060515/c4134891/attachment.bin From mikael at tinysofa.org Wed May 17 11:26:35 2006 From: mikael at tinysofa.org (Mikael Bak) Date: Sun May 4 12:26:18 2008 Subject: [tinysofa-devel] stunnel package seems broken In-Reply-To: <200605151752.54734.mikael@tinysofa.org> References: <200605151752.54734.mikael@tinysofa.org> Message-ID: <200605171826.46367.mikael@tinysofa.org> On Monday 15 May 2006 17:52, Mikael Bak wrote: > Hi, > It seems our stunnel package is broken. I haven't figured out what's wrong > with it yet, but I suspect errors in at least the init script. Even > syntactical errors. I will do some more tests tomorrow to try to track down > the problems. > I found the problems in the stunnel package. This package can never have worked, I think. Errors in the init script made it impossible. Additionally the rpm has to be modified so that the stunnel process can write to /var/run/stunnel/ directory. Patch to /etc/init.d/stunnel: $ diff -u /etc/init.d/stunnel.orig /etc/init.d/stunnel --- /etc/init.d/stunnel.orig 2005-03-10 03:26:13.000000000 +0100 +++ /etc/init.d/stunnel 2006-05-17 17:23:04.000000000 +0200 @@ -19,14 +19,14 @@ fi # Sanity checks. -if [ -f /etc/stunnel/stunnel.conf ]; then +if [ ! -f /etc/stunnel/stunnel.conf ]; then STRING="stunnel: Config file not found" echo -n "$STRING" failure "$STRING" echo exit 1 fi -if [ -x /usr/sbin/stunnel ]; then +if [ ! -x /usr/sbin/stunnel ]; then STRING="stunnel: Executable binary not found" echo -n "$STRING" failure "$STRING" @@ -75,6 +75,7 @@ $0 start RETVAL=$? fi + ;; *) echo "Usage: $0 {start|stop|status|restart|try-restart}" ;; -------------- next part -------------- A non-text attachment was scrubbed... Name: not available Type: application/pgp-signature Size: 189 bytes Desc: not available Url : http://lists.tinysofa.org/pipermail/tinysofa-devel/attachments/20060517/85172e1f/attachment.bin From jh at tinysofa.org Thu May 18 12:59:34 2006 From: jh at tinysofa.org (Jaakko Heinonen) Date: Sun May 4 12:26:18 2008 Subject: [tinysofa-devel] stunnel package seems broken In-Reply-To: <200605151752.54734.mikael@tinysofa.org> References: <200605151752.54734.mikael@tinysofa.org> Message-ID: <20060518175933.GA32694@ws64.jh.dy.fi> On 2006-05-15, Mikael Bak wrote: > It seems our stunnel package is broken. Hopefully fixed in svn now: http://minbar.tinysofa.org/changeset/6953 http://minbar.tinysofa.org/changeset/6954 -- Jaakko