Debian Bug report logs - #773387
please mark khtml (not src:kde4libs) as "support limited"

version graph

Package: debian-security-support; Maintainer for debian-security-support is Debian Security Team <[email protected]>; Source for debian-security-support is src:debian-security-support (PTS, buildd, popcon).

Reported by: Holger Levsen <[email protected]>

Date: Wed, 17 Dec 2014 20:36:01 UTC

Severity: normal

Found in version debian-security-support/2014.09.07~bpo70+1

Fixed in versions 1:12+2022.08.06, debian-security-support/1:12+2022.08.18

Done: Holger Levsen <[email protected]>

Bug is archived. No further changes may be made.

View this report as an mbox folder, status mbox, maintainer mbox


Report forwarded to [email protected], [email protected], Christoph Biedl <[email protected]>:
Bug#773387; Package debian-security-support. (Wed, 17 Dec 2014 20:36:06 GMT) (full text, mbox, link).


Acknowledgement sent to Holger Levsen <[email protected]>:
New Bug report received and forwarded. Copy sent to [email protected], Christoph Biedl <[email protected]>. (Wed, 17 Dec 2014 20:36:06 GMT) (full text, mbox, link).


Message #5 received at [email protected] (full text, mbox, reply):

From: Holger Levsen <[email protected]>
To: [email protected]
Subject: please mark khtml (not src:kde4libs) as "support limited" in wheezy
Date: Wed, 17 Dec 2014 21:32:48 +0100
[Message part 1 (text/plain, inline)]
package: debian-security-support
x-debbugs-cc: [email protected]
version: 2014.09.07~bpo70+1
block: -1 by 765452

Hi,

from #-devel:

[21:15] <      h01ger> | and stuff like this (about stable) is useful to know:
[21:16] <      h01ger> | kde4libs|(qt)webkit        No security support 
upstream and backports not feasible, only for use  on trusted content
[21:18] <  svuorela_> | h01ger: it is not kde4libs. it is khtml in 
src:kde4libs.
[21:22] <      h01ger> | svuorela_: point/ic. this needs #765452...


cheers,
	Holger
[signature.asc (application/pgp-signature, inline)]

Added blocking bug(s) of 773387: 765452 Request was from Samuel Bronson <[email protected]> to [email protected]. (Sat, 18 Apr 2015 18:39:13 GMT) (full text, mbox, link).


Reply sent to Holger Levsen <[email protected]>:
You have taken responsibility. (Sun, 25 Nov 2018 13:51:05 GMT) (full text, mbox, link).


Notification sent to Holger Levsen <[email protected]>:
Bug acknowledged by developer. (Sun, 25 Nov 2018 13:51:06 GMT) (full text, mbox, link).


Message #12 received at [email protected] (full text, mbox, reply):

From: Holger Levsen <[email protected]>
To: [email protected], [email protected]
Subject: wheeze has reached EOL, closing
Date: Sun, 25 Nov 2018 13:46:58 +0000
[Message part 1 (text/plain, inline)]
Hi,

wheezy has reached EOL, thus closing these bug reports.

also, glassfish-appserv is gone from sid and khtml is covered like this:

security-support-limited:kde4libs        khtml has no security support upstream, only for use on trusted content


-- 
cheers,
	Holger

-------------------------------------------------------------------------------
               holger@(debian|reproducible-builds|layer-acht).org
       PGP fingerprint: B8BF 5413 7B09 D35C F026 FE9D 091A B856 069A AA1C
[signature.asc (application/pgp-signature, inline)]

Information forwarded to [email protected], Christoph Biedl <[email protected]>:
Bug#773387; Package debian-security-support. (Tue, 27 Nov 2018 15:57:03 GMT) (full text, mbox, link).


Acknowledgement sent to Holger Levsen <[email protected]>:
Extra info received and forwarded to list. Copy sent to Christoph Biedl <[email protected]>. (Tue, 27 Nov 2018 15:57:03 GMT) (full text, mbox, link).


Message #17 received at [email protected] (full text, mbox, reply):

From: Holger Levsen <[email protected]>
To: John Scott <[email protected]>, [email protected]
Subject: Re: Bug#773387: marked as done (please mark khtml (not src:kde4libs) as "support limited" in wheezy)
Date: Tue, 27 Nov 2018 15:53:32 +0000
[Message part 1 (text/plain, inline)]
control: reopen -1
control: retitle -1 please mark khtml (not src:kde4libs) as "support limited"
control: block -1 by 765452
thanks

On Sun, Nov 25, 2018 at 08:06:25PM -0500, John Scott wrote:
> > [...] khtml is covered like this:
> > 
> > security-support-limited:kde4libs        khtml has no security support upstream, only for use on trusted content
> IMHO, the bug isn't fixed. The bug #773387 was to
> mark  "khtml (not src:kde4libs) as support limited in wheezy", as in
> mark the binary package rather than the source package. That's why it
> was blocked by the bug to enable specifying security support for binary
> packages. Though wheezy isn't relevant anymore, I ask that you
> reconsider opening the bug for that sake.

fine by me (though I consider it a bit pointless, as long as noone fixes #765452.)


-- 
cheers,
	Holger

-------------------------------------------------------------------------------
               holger@(debian|reproducible-builds|layer-acht).org
       PGP fingerprint: B8BF 5413 7B09 D35C F026 FE9D 091A B856 069A AA1C
[signature.asc (application/pgp-signature, inline)]

Bug reopened Request was from Holger Levsen <[email protected]> to [email protected]. (Tue, 27 Nov 2018 15:57:03 GMT) (full text, mbox, link).


Changed Bug title to 'please mark khtml (not src:kde4libs) as "support limited"' from 'please mark khtml (not src:kde4libs) as "support limited" in wheezy'. Request was from Holger Levsen <[email protected]> to [email protected]. (Tue, 27 Nov 2018 15:57:03 GMT) (full text, mbox, link).


Reply sent to Holger Levsen <[email protected]>:
You have taken responsibility. (Wed, 17 Aug 2022 09:45:08 GMT) (full text, mbox, link).


Notification sent to Holger Levsen <[email protected]>:
Bug acknowledged by developer. (Wed, 17 Aug 2022 09:45:08 GMT) (full text, mbox, link).


Message #26 received at [email protected] (full text, mbox, reply):

From: Holger Levsen <[email protected]>
To: [email protected]
Subject: #1004293 was closed in 1:12+2022.08.06 and was a duplicate of #773387
Date: Wed, 17 Aug 2022 09:44:31 +0000
[Message part 1 (text/plain, inline)]
version: 1:12+2022.08.06

#1004293 should have been merged with #773387...


-- 
cheers,
	Holger

 ⢀⣴⠾⠻⢶⣦⠀
 ⣾⠁⢠⠒⠀⣿⡁  holger@(debian|reproducible-builds|layer-acht).org
 ⢿⡄⠘⠷⠚⠋⠀  OpenPGP: B8BF54137B09D35CF026FE9D 091AB856069AAA1C
 ⠈⠳⣄

It's not climate change nor climate crisis, it's climate disaster.
[signature.asc (application/pgp-signature, inline)]

Reply sent to Holger Levsen <[email protected]>:
You have taken responsibility. (Thu, 18 Aug 2022 09:51:04 GMT) (full text, mbox, link).


Notification sent to Holger Levsen <[email protected]>:
Bug acknowledged by developer. (Thu, 18 Aug 2022 09:51:04 GMT) (full text, mbox, link).


Message #31 received at [email protected] (full text, mbox, reply):

From: Debian FTP Masters <[email protected]>
To: [email protected]
Subject: Bug#773387: fixed in debian-security-support 1:12+2022.08.18
Date: Thu, 18 Aug 2022 09:49:04 +0000
Source: debian-security-support
Source-Version: 1:12+2022.08.18
Done: Holger Levsen <[email protected]>

We believe that the bug you reported is fixed in the latest version of
debian-security-support, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Holger Levsen <[email protected]> (supplier of updated debian-security-support package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Thu, 18 Aug 2022 11:32:08 +0200
Source: debian-security-support
Architecture: source
Version: 1:12+2022.08.18
Distribution: unstable
Urgency: medium
Maintainer: Debian Security Team <[email protected]>,
Changed-By: Holger Levsen <[email protected]>
Closes: 773387 928027
Changes:
 debian-security-support (1:12+2022.08.18) unstable; urgency=medium
 .
   * security-support-limited:
     - for golang, point to the bullseye manual instead the buster one.
     - drop libv8-3.14, mosjz, mosjz24, swftools and webkitgtk as they were only
       present in stretch and earlier.
     - drop mosjz68 as it was never part of any release.
   * check-support-status.in: set DEB_NEXT_VER_ID=12.
   * debian/rules:
     - set NEXT_VERSION_ID=12
     - include /usr/share/dpkg/pkg-info.mk and use DEB_VERSION accordingly.
       Thanks lintian.
   * Add "Closes: #773387" (which should have been merged with #1004293) in
     1:12+2022.08.06 changelog entry.
   * Add "Closes: #928027" to 2019.12.12 changelog entry.
Checksums-Sha1:
 0a4b0c12233e97ce6beeae8192ffbe62aafd9d69 1909 debian-security-support_12+2022.08.18.dsc
 d590b5e0905a6ee73e7ec9a20b63830ac07dc999 32104 debian-security-support_12+2022.08.18.tar.xz
 2c868e6e52f90404264e4498242420734e6d55b8 6880 debian-security-support_12+2022.08.18_source.buildinfo
Checksums-Sha256:
 3d6188d0301e29cc0cfa66a87a0a414c7b3cf7a449467c937e463e73a5014fc4 1909 debian-security-support_12+2022.08.18.dsc
 bb30ba35097e140c77da494a11ab5560f2f3c17c7d762e3bccc86af12e692fe3 32104 debian-security-support_12+2022.08.18.tar.xz
 d05592c8ebb646b82d1723577857f7ce3292c42cbab4c8090da422a418afb721 6880 debian-security-support_12+2022.08.18_source.buildinfo
Files:
 3d5fff0a68565ad44b7c18049da51ac8 1909 admin optional debian-security-support_12+2022.08.18.dsc
 e62a231afe45fdd50f0043590f07819c 32104 admin optional debian-security-support_12+2022.08.18.tar.xz
 56fd8babe45ff6e79590ab1e22487348 6880 admin optional debian-security-support_12+2022.08.18_source.buildinfo

-----BEGIN PGP SIGNATURE-----
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=BFtL
-----END PGP SIGNATURE-----




Bug archived. Request was from Debbugs Internal Request <[email protected]> to [email protected]. (Fri, 16 Sep 2022 07:29:34 GMT) (full text, mbox, link).


Send a report that this bug log contains spam.


Debian bug tracking system administrator <[email protected]>. Last modified: Tue May 13 08:45:04 2025; Machine Name: buxtehude

Debian Bug tracking system

Debbugs is free software and licensed under the terms of the GNU General Public License version 2. The current version can be obtained from https://bugs.debian.org/debbugs-source/.

Copyright © 1999 Darren O. Benham, 1997,2003 nCipher Corporation Ltd, 1994-97 Ian Jackson, 2005-2017 Don Armstrong, and many other contributors.