From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from lists.gentoo.org ([140.105.134.102] helo=robin.gentoo.org) by nuthatch.gentoo.org with esmtp (Exim 4.43) id 1E9XMb-0007u8-MO for garchives@archives.gentoo.org; Mon, 29 Aug 2005 00:19:02 +0000 Received: from robin.gentoo.org (localhost [127.0.0.1]) by robin.gentoo.org (8.13.4/8.13.4) with SMTP id j7T0Fbb4009022; Mon, 29 Aug 2005 00:15:37 GMT Received: from smtp.gentoo.org (smtp.gentoo.org [134.68.220.30]) by robin.gentoo.org (8.13.4/8.13.4) with ESMTP id j7SNuQ1c031460 for ; Sun, 28 Aug 2005 23:56:26 GMT Received: from smtp02.dentaku.gol.com ([203.216.5.72]) by smtp.gentoo.org with esmtp (Exim 4.43) id 1E9X2V-0004pk-0f for gentoo-gwn@lists.gentoo.org; Sun, 28 Aug 2005 23:58:15 +0000 Received: from 80-72-254-140.bgsk.tgnet.de ([80.72.254.140] helo=localhost) by smtp02.dentaku.gol.com with esmtpa (Dentaku) id 1E9X2T-0001zR-5q for ; Mon, 29 Aug 2005 08:58:14 +0900 Date: Mon, 29 Aug 2005 01:58:10 +0200 From: Ulrich Plate To: gentoo-gwn@lists.gentoo.org Subject: [gentoo-gwn] Gentoo Weekly Newsletter 29 August 2005 Message-Id: <20050829015810.3c1b98cb.plate@gentoo.org> X-Mailer: Sylpheed version 2.0.1 (GTK+ 2.6.10; i686-pc-linux-gnu) Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: List-Id: Gentoo Linux mail X-BeenThere: gentoo-gwn@gentoo.org Reply-to: gwn-feedback@gentoo.org Mime-Version: 1.0 Content-Type: text/plain; charset=UTF-8 X-Virus-Scanned: ClamAV GOL X-Abuse-Complaints: abuse@gol.com Content-Transfer-Encoding: quoted-printable X-MIME-Autoconverted: from 8bit to quoted-printable by robin.gentoo.org id j7T0Fbbr009022 X-Archives-Salt: 078f0b09-56b0-4735-b554-f8964b9e6f38 X-Archives-Hash: 485b14ab11b3a6f2616dd21124c50c40 -------------------------------------------------------------------------= -- Gentoo Weekly Newsletter http://www.gentoo.org/news/en/gwn/current.xml This is the Gentoo Weekly Newsletter for the week of 29 August 2005. -------------------------------------------------------------------------= -- =20 =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D 1. Gentoo news =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D =20 Gentoo documentation updates ---------------------------- =20 The Gentoo documentation has been amazing users ever since the project=20 started five years ago, but even for an impressive collection it=20 represents today, there's still plenty of room for growth. Even when=20 everything else is somewhat slowing down over the summer, the=20 documentation team does some catching up with development and continues t= o=20 publish and update texts left and right. Among other things, two entirely= =20 new guides have been contributed last week:=20 =20 * Ioannis Aslanidis[1], Shyam Mani[2] and Douglas Russell[3] wrote most=20 of the new Gentoo Bluetooth guide[4], explaining how to install the=20 devices, configure the kernel, and show the whole diversity of Bluetooth.= =20 * Chris White[5] has written a complete introductory tutorial on setting= =20 up MySQL[6] =20 1. deathwing00@gentoo.org 2. fox2mike@gentoo.org 3. puggy@gentoo.org 4. http://www.gentoo.org/doc/en/bluetooth-guide.xml 5. chriswhite@gentoo.org 6. http://www.gentoo.org/doc/en/mysql-howto.xml =20 Tim Yamin's[7] guide on genkernel has been updated again, too, reflecting= =20 changes that have been introduced for the 2005.1 release. Equally updated= =20 was the page that collects articles published by Gentoo authors[8] in=20 different media, many of them on the IBM developer works pages. By the=20 way, if you're interested in popularity statistics of the different items= =20 on offer at the documentation project, check the Topdocs page[9] once in = a=20 while!=20 7. plasmaroo@gentoo.org 8. http://www.gentoo.org/doc/en/articles/ 9. http://www.gentoo.org/proj/en/gdp/tests/topdocs.xml =20 =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D 2. Heard in the community =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D =20 gentoo-dev ---------- =20 Fixing the TERM mess =20 Ciaran McCreesh[10] gives an exhaustive explanation of the differences=20 between different terminals (e.g. xterm, konsole, Gnome Terminal) and why= =20 the current behaviour is mostly broken. He also explains the two competin= g=20 methods for finding terminal capabilities (termcap and terminfo) and thei= r=20 differences. There are a few possibilities for sorting out this suboptima= l=20 situation - read on to find out all the details!=20 10. ciaranm@gentoo.org =20 * Fixing the TERM mess [11] =20 11. http://thread.gmane.org/gmane.linux.gentoo.devel/30624 =20 Multiple portage threads =20 While on the surface Portage development seems to have come to a=20 standstill much is happening behind the scenes. Some of the design=20 decisions for the upcoming new-and-improved Portage are rather radical or= =20 will change existing behaviour dramatically enough for multiple threads=20 discussing Portage internals and changes this week:=20 =20 * stripping implementation in portage [12]=20 * future restrictions to DISTDIR access from the ebuild env [13]=20 * proposed shift of files in the tree of non profiles files into seperat= e=20 dir [14]=20 * [RFC] EAPI [15]=20 12. http://thread.gmane.org/gmane.linux.gentoo.devel/30656 13. http://thread.gmane.org/gmane.linux.gentoo.devel/30738 14. http://thread.gmane.org/gmane.linux.gentoo.devel/30786 15. http://thread.gmane.org/gmane.linux.gentoo.devel/30776 =20 [RFC] autotools support eclass =20 There is a lot of black magic in the build tools known as "autotools".=20 While many developers try to stay away from them, some are forced to work= =20 with them and try to improve the handling of autotools in Gentoo. A=20 proposal by Diego Petten=C3=B2[16] for an autotools support eclass to hel= p with=20 autotools magic is discussed in much detail in this thread.=20 16. flameeyes@gentoo.org =20 * [RFC] autotools support eclass [17]=20 17. http://thread.gmane.org/gmane.linux.gentoo.devel/30794 =20 =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D 3. Gentoo international =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D =20 Sweden: Gentoo-based Mupper rescue CD for PegasosPPC ---------------------------------------------------- =20 Figure 3.1: Mupper logo http://www.gentoo.org/images/gwn/20050829_mupper.png =20 Last Saturday Mikael Karlsson, known as lisardman to his local Linux User= =20 Group[18] and others, released version 0.3 of his "Mupper"[19] project. A= =20 rescue system similar to Dolphin[20] or SystemRescueCd[21], Mupper is als= o=20 based on Gentoo Linux, but designed especially for PegasosPPCs, namely fo= r=20 Gentoo sponsor Genesi's Open Desktop Workstations[22]. Mupper carries=20 several tools like parted to be expected in rescue media, and offers=20 support for the AmigaFFS and many other filesystems.=20 18. http://hjolug.org 19. http://www.mupper.org 20. http://bugs.gentoo.org/show_bug.cgi?id=3D90053 21. http://www.sysresccd.org 22. http://vendors.gentoo.org/index.cgi?page=3D1&comGroup=3D1 =20 =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D 4. Gentoo in the press =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D =20 Linux Journal (25 August 2005) ------------------------------ =20 Just in case you've always wanted to set up and run a call center, Michae= l=20 George's article in Linux Journal[23] tells you how to do it, with a=20 little help from his friends Gentoo, the Linux Terminal Server Project,=20 soft-phone application kphone, and a few terminals and headsets. The=20 result leaves nothing to desire in terms of comfort and usability compare= d=20 to expensive commercial solutions, but the use of readily available=20 open-source solutions keeps the project from outgrowing the tight budget=20 of the not-for-profit association it's being set up for.=20 23. http://www.linuxjournal.com/article/8165 =20 Linux.com (26 August 2005) -------------------------- =20 The Puerto-Rican commercial Gentoo spin-off Vidalinux has released a new=20 version 1.2 recently, and Linux.com author Jem Matzan wrote a review of=20 VLOS 1.2[24] that couldn't possibly be any less indulgent. Vidalinux=20 (basically Gentoo with Red Hat's Anaconda installer screwed on top) prett= y=20 much evolves along the same lines as Gentoo itself, but Matzan compares i= t=20 to other commercial vendors, and consequently isn't impressed at all: "Th= e=20 changes and enhancements to this edition are significant, but not good=20 enough to save this conceptually astute operating system from failure."=20 Vidalinux apparently did put some effort into the modification of one of=20 the Portage GUI projects -- Porthole[25] -- and rebaptized it Yukiyu, but= =20 "while it's no trouble to use the preinstalled applications, you'll run=20 into problems trying to update current packages or install new software=20 through Yukiyu."=20 24. http://www.linux.com/article.pl?sid=3D05/08/19/1552220 25.=20 http://packages.gentoo.org/packages/?category=3Dapp-portage;name=3Dportho= le =20 =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D= =3D=3D 5. Moves, adds, and changes =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D= =3D=3D =20 Moves ----- =20 The following developers recently left the Gentoo team:=20 =20 * Michael Cummings=20 =20 Adds ---- =20 The following developers recently joined the Gentoo Linux team:=20 =20 * None this week=20 =20 Changes ------- =20 The following developers recently changed roles within the Gentoo Linux=20 project: =20 * None this week=20 =20 =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D 6. Gentoo Security =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D =20 Evolution: Format string vulnerabilities ---------------------------------------- =20 Evolution is vulnerable to format string vulnerabilities which may result= =20 in remote execution of arbitrary code.=20 =20 For more information, please see the GLSA Announcement[26]=20 26. http://www.gentoo.org/security/en/glsa/glsa-200508-12.xml =20 PEAR XML-RPC, phpxmlrpc: New PHP script injection vulnerability --------------------------------------------------------------- =20 The PEAR XML-RPC and phpxmlrpc libraries allow remote attackers to execut= e=20 arbitrary PHP script commands.=20 =20 For more information, please see the GLSA Announcement[27]=20 27. http://www.gentoo.org/security/en/glsa/glsa-200508-13.xml =20 TikiWiki, eGroupWare: Arbitrary command execution through XML-RPC ----------------------------------------------------------------- =20 TikiWiki and eGroupWare both include PHP XML-RPC code vulnerable to=20 arbitrary command execution.=20 =20 For more information, please see the GLSA Announcement[28]=20 28. http://www.gentoo.org/security/en/glsa/glsa-200508-14.xml =20 Apache 2.0: Denial of Service vulnerability ------------------------------------------- =20 A bug in Apache may allow a remote attacker to perform a Denial of Servic= e=20 attack.=20 =20 For more information, please see the GLSA Announcement[29]=20 29. http://www.gentoo.org/security/en/glsa/glsa-200508-15.xml =20 Tor: Information disclosure --------------------------- =20 A flaw in Tor leads to the disclosure of information and the loss of=20 anonymity, integrity and confidentiality.=20 =20 For more information, please see the GLSA Announcement[30]=20 30. http://www.gentoo.org/security/en/glsa/glsa-200508-16.xml =20 libpcre: Heap integer overflow ------------------------------ =20 libpcre is vulnerable to a heap integer overflow, possibly leading to the= =20 execution of arbitrary code.=20 =20 For more information, please see the GLSA Announcement[31]=20 31. http://www.gentoo.org/security/en/glsa/glsa-200508-17.xml =20 PhpWiki: Arbitrary command execution through XML-RPC ---------------------------------------------------- =20 PhpWiki includes PHP XML-RPC code which is vulnerable to arbitrary comman= d=20 execution.=20 =20 For more information, please see the GLSA Announcement[32]=20 32. http://www.gentoo.org/security/en/glsa/glsa-200508-18.xml =20 =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D 7. Bugzilla =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D =20 Summary ------- =20 * Statistics=20 * Closed bug ranking=20 * New bug rankings=20 =20 Statistics ---------- =20 The Gentoo community uses Bugzilla (bugs.gentoo.org[33]) to record and=20 track bugs, notifications, suggestions and other interactions with the=20 development team. Between 21 August 2005 and 28 August 2005, activity on=20 the site has resulted in:=20 33. http://bugs.gentoo.org =20 * 791 new bugs during this period=20 * 391 bugs closed or resolved during this period=20 * 51 previously closed bugs were reopened this period=20 =20 Of the 8038 currently open bugs: 103 are labeled 'blocker', 198 are=20 labeled 'critical', and 529 are labeled 'major'.=20 =20 Closed bug rankings ------------------- =20 The developers and teams who have closed the most bugs during this period= =20 are:=20 =20 * AMD64 Porting Team[34], with 47 closed bugs[35] =20 * PHP Bugs[36], with 29 closed bugs[37] =20 * Gentoo Science Related Packages[38], with 18 closed bugs[39] =20 * Gentoo Security[40], with 16 closed bugs[41] =20 * Xavier Neys[42], with 15 closed bugs[43] =20 * Gentoo net-p2p team[44], with 15 closed bugs[45] =20 * Gentoo KDE team[46], with 15 closed bugs[47] =20 * Gentoo Games[48], with 15 closed bugs[49] =20 34. amd64@gentoo.org 35.=20 http://bugs.gentoo.org/buglist.cgi?bug_status=3DRESOLVED&bug_status=3DCLO= SED&chfield=3Dbug_status&chfieldfrom=3D2005-08-21&chfieldto=3D2005-08-28&= resolution=3DFIXED&assigned_to=3Damd64@gentoo.org 36. php-bugs@gentoo.org 37.=20 http://bugs.gentoo.org/buglist.cgi?bug_status=3DRESOLVED&bug_status=3DCLO= SED&chfield=3Dbug_status&chfieldfrom=3D2005-08-21&chfieldto=3D2005-08-28&= resolution=3DFIXED&assigned_to=3Dphp-bugs@gentoo.org 38. sci@gentoo.org 39.=20 http://bugs.gentoo.org/buglist.cgi?bug_status=3DRESOLVED&bug_status=3DCLO= SED&chfield=3Dbug_status&chfieldfrom=3D2005-08-21&chfieldto=3D2005-08-28&= resolution=3DFIXED&assigned_to=3Dsci@gentoo.org 40. security@gentoo.org 41.=20 http://bugs.gentoo.org/buglist.cgi?bug_status=3DRESOLVED&bug_status=3DCLO= SED&chfield=3Dbug_status&chfieldfrom=3D2005-08-21&chfieldto=3D2005-08-28&= resolution=3DFIXED&assigned_to=3Dsecurity@gentoo.org 42. neysx@gentoo.org 43.=20 http://bugs.gentoo.org/buglist.cgi?bug_status=3DRESOLVED&bug_status=3DCLO= SED&chfield=3Dbug_status&chfieldfrom=3D2005-08-21&chfieldto=3D2005-08-28&= resolution=3DFIXED&assigned_to=3Dneysx@gentoo.org 44. net-p2p@gentoo.org 45.=20 http://bugs.gentoo.org/buglist.cgi?bug_status=3DRESOLVED&bug_status=3DCLO= SED&chfield=3Dbug_status&chfieldfrom=3D2005-08-21&chfieldto=3D2005-08-28&= resolution=3DFIXED&assigned_to=3Dnet-p2p@gentoo.org 46. kde@gentoo.org 47.=20 http://bugs.gentoo.org/buglist.cgi?bug_status=3DRESOLVED&bug_status=3DCLO= SED&chfield=3Dbug_status&chfieldfrom=3D2005-08-21&chfieldto=3D2005-08-28&= resolution=3DFIXED&assigned_to=3Dkde@gentoo.org 48. games@gentoo.org 49.=20 http://bugs.gentoo.org/buglist.cgi?bug_status=3DRESOLVED&bug_status=3DCLO= SED&chfield=3Dbug_status&chfieldfrom=3D2005-08-21&chfieldto=3D2005-08-28&= resolution=3DFIXED&assigned_to=3Dgames@gentoo.org =20 New bug rankings ---------------- =20 The developers and teams who have been assigned the most new bugs during=20 this period are:=20 =20 * Default Assignee for New Packages[50], with 22 new bugs[51] =20 * Perl Devs @ Gentoo[52], with 20 new bugs[53] =20 * media-video herd[54], with 13 new bugs[55] =20 * Gentoo Linux Gnome Desktop Team[56], with 11 new bugs[57] =20 * AMD64 Porting Team[58], with 8 new bugs[59] =20 * Gentoo Toolchain Maintainers[60], with 7 new bugs[61] =20 * Gentoo Sound Team[62], with 7 new bugs[63] =20 * Net-Mail Packages[64], with 7 new bugs[65] =20 50. maintainer-wanted@gentoo.org 51.=20 http://bugs.gentoo.org/buglist.cgi?bug_status=3DNEW&bug_status=3DASSIGNED= &bug_status=3DREOPENED&chfield=3Dassigned_to&chfieldfrom=3D2005-08-21&chf= ieldto=3D2005-08-28&assigned_to=3Dmaintainer-wanted@gentoo.org 52. perl@gentoo.org 53.=20 http://bugs.gentoo.org/buglist.cgi?bug_status=3DNEW&bug_status=3DASSIGNED= &bug_status=3DREOPENED&chfield=3Dassigned_to&chfieldfrom=3D2005-08-21&chf= ieldto=3D2005-08-28&assigned_to=3Dperl@gentoo.org 54. media-video@gentoo.org 55.=20 http://bugs.gentoo.org/buglist.cgi?bug_status=3DNEW&bug_status=3DASSIGNED= &bug_status=3DREOPENED&chfield=3Dassigned_to&chfieldfrom=3D2005-08-21&chf= ieldto=3D2005-08-28&assigned_to=3Dmedia-video@gentoo.org 56. gnome@gentoo.org 57.=20 http://bugs.gentoo.org/buglist.cgi?bug_status=3DNEW&bug_status=3DASSIGNED= &bug_status=3DREOPENED&chfield=3Dassigned_to&chfieldfrom=3D2005-08-21&chf= ieldto=3D2005-08-28&assigned_to=3Dgnome@gentoo.org 58. amd64@gentoo.org 59.=20 http://bugs.gentoo.org/buglist.cgi?bug_status=3DNEW&bug_status=3DASSIGNED= &bug_status=3DREOPENED&chfield=3Dassigned_to&chfieldfrom=3D2005-08-21&chf= ieldto=3D2005-08-28&assigned_to=3Damd64@gentoo.org 60. toolchain@gentoo.org 61.=20 http://bugs.gentoo.org/buglist.cgi?bug_status=3DNEW&bug_status=3DASSIGNED= &bug_status=3DREOPENED&chfield=3Dassigned_to&chfieldfrom=3D2005-08-21&chf= ieldto=3D2005-08-28&assigned_to=3Dtoolchain@gentoo.org 62. sound@gentoo.org 63.=20 http://bugs.gentoo.org/buglist.cgi?bug_status=3DNEW&bug_status=3DASSIGNED= &bug_status=3DREOPENED&chfield=3Dassigned_to&chfieldfrom=3D2005-08-21&chf= ieldto=3D2005-08-28&assigned_to=3Dsound@gentoo.org 64. net-mail@gentoo.org 65.=20 http://bugs.gentoo.org/buglist.cgi?bug_status=3DNEW&bug_status=3DASSIGNED= &bug_status=3DREOPENED&chfield=3Dassigned_to&chfieldfrom=3D2005-08-21&chf= ieldto=3D2005-08-28&assigned_to=3Dnet-mail@gentoo.org =20 =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D= =3D=3D=3D=3D=3D=3D 8. GWN subscription information =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D= =3D=3D=3D=3D=3D=3D =20 To subscribe to the Gentoo Weekly Newsletter, send a blank email to=20 gentoo-gwn+subscribe@gentoo.org.=20 =20 To unsubscribe to the Gentoo Weekly Newsletter, send a blank email to=20 gentoo-gwn+unsubscribe@gentoo.org from the email address you are=20 subscribed under. =20 =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D 9. Other languages =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D =20 The Gentoo Weekly Newsletter is also available in the following languages= : =20 * Danish[66] =20 * Dutch[67] =20 * English[68] =20 * German[69] =20 * French[70] =20 * Japanese[71] =20 * Italian[72] =20 * Polish[73] =20 * Portuguese (Brazil)[74] =20 * Portuguese (Portugal)[75] =20 * Russian[76] =20 * Spanish[77] =20 * Turkish[78] =20 66. http://www.gentoo.org/news/da/gwn/gwn.xml 67. http://www.gentoo.org/news/nl/gwn/gwn.xml 68. http://www.gentoo.org/news/en/gwn/gwn.xml 69. http://www.gentoo.org/news/de/gwn/gwn.xml 70. http://www.gentoo.org/news/fr/gwn/gwn.xml 71. http://www.gentoo.org/news/ja/gwn/gwn.xml 72. http://www.gentoo.org/news/it/gwn/gwn.xml 73. http://www.gentoo.org/news/pl/gwn/gwn.xml 74. http://www.gentoo.org/news/pt_br/gwn/gwn.xml 75. http://www.gentoo.org/news/pt/gwn/gwn.xml 76. http://www.gentoo.org/news/ru/gwn/gwn.xml 77. http://www.gentoo.org/news/es/gwn/gwn.xml 78. http://www.gentoo.org/news/tr/gwn/gwn.xml =20 Ulrich Plate - Editor Patrick Lauer - Author --=20 gentoo-gwn@gentoo.org mailing list