Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 102374

Summary: www-apps/egroupware XML-RPC Vulnerabilities round 2
Product: Gentoo Security Reporter: Sune Kloppenborg Jeppesen (RETIRED) <jaervosz>
Component: VulnerabilitiesAssignee: Gentoo Security <security>
Status: RESOLVED FIXED    
Severity: major CC: web-apps, yoswink
Priority: High    
Version: unspecified   
Hardware: All   
OS: Linux   
Whiteboard: B1 [glsa] jaervosz
Package list:
Runtime testing required: ---

Description Sune Kloppenborg Jeppesen (RETIRED) gentoo-dev 2005-08-13 07:29:32 UTC
see bug #102324
Comment 1 Sune Kloppenborg Jeppesen (RETIRED) gentoo-dev 2005-08-14 22:06:39 UTC
Now instead see bug #102576 
Comment 2 Renat Lumpau (RETIRED) gentoo-dev 2005-08-16 12:18:44 UTC
egroupware-1.0.0.009 in CVS
Comment 3 Sune Kloppenborg Jeppesen (RETIRED) gentoo-dev 2005-08-16 13:05:25 UTC
Arches please test and mark stable. 
Comment 4 Michael Hanselmann (hansmi) (RETIRED) gentoo-dev 2005-08-16 14:45:18 UTC
Stable on ppc.
Comment 5 Renat Lumpau (RETIRED) gentoo-dev 2005-08-17 03:22:27 UTC
stable on x86
Comment 6 Jose Luis Rivero (yoswink) (RETIRED) gentoo-dev 2005-08-20 10:43:23 UTC
egroupware-1.0.0.009 stable on alpha.

A little note for our web-apps maintainers:

During the configuration of egroupware it complains about the lack of the gd
library which is needed to show an especific type of diagrams.

Nothing in the ebuild seems to reflect this so, maybe include a USE flag called
 "diagrams" (or whatever) which enabled a RDEPEND on media-libs/gd could be good
idea. 

I think, something similiar happends with the imap extension.

Thanks.
Comment 7 Renat Lumpau (RETIRED) gentoo-dev 2005-08-20 16:26:42 UTC
Could you post the errors you got?
Comment 8 Jose Luis Rivero (yoswink) (RETIRED) gentoo-dev 2005-08-20 19:27:55 UTC
Sure:

If I run the checks in: /$egroupware-vdir/setup/check_install.php, it gives me
the following errors:

[*] Checking extension imap is loaded or loadable: False
The imap extension is needed by the two email apps (even if you use email with
pop3 as protocoll).

[*] Checking for GD support...: False
Your PHP installation does not have appropriate GD support. You need gd library
version 1.8 or newer to see Gantt charts in projects.
Comment 9 Renat Lumpau (RETIRED) gentoo-dev 2005-08-21 10:31:50 UTC
Thanks
Comment 10 Thierry Carrez (RETIRED) gentoo-dev 2005-08-24 06:58:36 UTC
amd64: you're late to mark stable, GLSA waits.
Comment 11 Homer Parker (RETIRED) gentoo-dev 2005-08-24 08:41:12 UTC
Stable on amd64, sorry for the delay
Comment 12 Thierry Carrez (RETIRED) gentoo-dev 2005-08-24 12:06:22 UTC
CVS says current keywords are :
KEYWORDS="alpha ~amd64 ~hppa ppc ~sparc x86"

hparker: apparently the keyword didn't make it to CVS.
Comment 13 Thierry Carrez (RETIRED) gentoo-dev 2005-08-24 12:23:37 UTC
OK it's fixed now, ready for GLSa
Comment 14 Thierry Carrez (RETIRED) gentoo-dev 2005-08-24 12:58:27 UTC
GLSA 200508-14