scan.coverity.com
15 years, 8 months
Vladimir G. Ivanovic
Coverity, under contract to the US Department of Homeland Security
(DHS), has scanned over 2,500 open source projects for defects using
their (proprietary) automated defect detection technology.
GNU Emacs is one of the projects that they've scanned and has advanced
to Rung 1 and is apparently fixing bugs discovered by the Coverity
scanning.
I'd like to see XEmacs included in this effort, and I volunteer being
the XEmacs point of contact, the person responsible for submitting
releases to be scanned and for filing the resulting bug reports.
More info: http://scan.coverity.com/index.html
Comments?
--- Vladimir
--
Vladimir G. Ivanovic
_______________________________________________
XEmacs-Beta mailing list
XEmacs-Beta(a)xemacs.org
http://calypso.tux.org/cgi-bin/mailman/listinfo/xemacs-beta
[Bug: 21.5-b28] Save Options Doesn't Work?
15 years, 8 months
Rodney Sparapani
================================================================
Dear Bug Team!
Over the past week, I have migrated to a new platform: Solaris
10 on AMD64. It has been pretty smooth. However, I think there
is a bug in Save Options (or I don't understand it). On the
options menu, I chose a Font and Font Size. But, when I restart
xemacs, this choice is not brought in and I have do it again.
Here's what custom.el looks like:
(custom-set-variables)
(custom-set-faces
'(default ((t (:size "18pt" :family "Lucidatypewriter"))) t))
Am I doing something wrong or is it xemacs-beta?
Thanks,
Rodney
================================================================
System Info to help track down your bug:
---------------------------------------
uname -a: SunOS godzilla 5.10 Generic_127128-11 i86pc i386 i86pc
./configure '--with-sound=esd' '--with-clash-detection=yes'
'--with-dialogs=motif' '--with-widgets=motif' '--with-mule'
'--with-xim=motif' '--with-png' '--with-optimization' '--with-dynamic'
'CC=cc'
'LDFLAGS=-R/usr/lib:/opt/csw/lib:/usr/sfw/lib:/usr/local/lib:/usr/dt/lib:/usr/openwin/lib'
'CPPFLAGS=-I/opt/csw/include:/usr/sfw/include:/usr/local/include:/usr/dt/include'
XEmacs 21.5-b28 "fuki" (+CVS-20071205) configured for `i386-pc-solaris2.10'.
Compilation Environment and Installation Defaults:
Source code location: /usr/local/src/xemacs/xemacs-21.5
Installation prefix: /usr/local
Runtime library search path: /usr/openwin/lib:/opt/SUNWdt/lib
Operating system description file: `s/sol2.h'
Machine description file: `m/intel386.h'
Compiler version: cc: Sun C 5.9 SunOS_i386 Patch
124868-01 2007/07/12
- Compiler command: cc -v -xO4
libc version: SUNWcsl 11.10.0,REV=2005.01.21.16.34
Relocating allocator for buffers: yes
GNU version of malloc: yes
Window System:
Compiling in support for the X window system:
- X Windows headers location: /usr/X11/include
- X Windows libraries location: /usr/openwin/lib
- Handling WM_COMMAND properly.
Compiling in support for Motif.
*WARNING* Many versions of Motif are buggy, requiring workarounds.
You are likely to experience slow redisplay.
You may need to install vendor patches to Motif.
See PROBLEMS for more information.
Using Lucid menubars.
Using Lucid scrollbars.
Using Motif dialog boxes.
Using Motif native widgets.
TTY:
Images:
Compiling in support for GIF images (builtin).
Compiling in support for XPM images.
Compiling in support for PNG images.
Compiling in support for JPEG images.
Compiling in support for TIFF images.
Sound:
Compiling in support for ESD (Enlightened Sound Daemon).
Databases:
Compiling in support for DBM.
Compiling in support for LDAP.
Compiling in support for PostgreSQL.
- Using PostgreSQL header file: pgsql/libpq-fe.h
- Using PostgreSQL V7 bindings.
Internationalization:
Compiling in support for Mule (multi-lingual Emacs).
Compiling in support for XIM (X11R5+ I18N input method).
- Using Motif to provide XIM support.
Mail:
Compiling in support for "file" mail spool file locking method.
Other Features:
Inhibiting IPv6 canonicalization at startup.
Compiling in support for dynamic shared object modules.
Using the new GC mark algorithms (KKCC).
WARNING: ---------------------------------------------------------
WARNING: The new algorithms are experimental. They are enabled by
WARNING: default for this release. Use `--disable-kkcc' to
WARNING: turn it off.
WARNING: ---------------------------------------------------------
Compiling in support for extra debugging code.
Compiling in support for runtime error checking.
WARNING: ---------------------------------------------------------
WARNING: XEmacs will run noticeably more slowly as a result.
WARNING: Error checking is on by default for XEmacs beta releases.
WARNING: ---------------------------------------------------------
Load-Path Lisp Shadows:
----------------------
(/usr/local/share/xemacs/mule-packages/lisp/mule-base/japan-util
/usr/local/share/xemacs-21.5-b28/lisp/mule/japan-util
/usr/local/share/xemacs/mule-packages/lisp/mule-base/viet-util
/usr/local/share/xemacs-21.5-b28/lisp/mule/viet-util
/usr/local/share/xemacs/mule-packages/lisp/mule-base/china-util
/usr/local/share/xemacs-21.5-b28/lisp/mule/china-util
/usr/local/share/xemacs/mule-packages/lisp/mule-base/ethio-util
/usr/local/share/xemacs-21.5-b28/lisp/mule/ethio-util
/usr/local/share/xemacs/mule-packages/lisp/mule-base/cyril-util
/usr/local/share/xemacs-21.5-b28/lisp/mule/cyril-util
/usr/local/share/xemacs/mule-packages/lisp/mule-base/korea-util
/usr/local/share/xemacs-21.5-b28/lisp/mule/korea-util
/usr/local/share/xemacs/xemacs-packages/lisp/xemacs-base/easy-mmode
/usr/local/share/xemacs-21.5-b28/lisp/easy-mmode
/usr/local/share/xemacs/mule-packages/lisp/mule-ucs/unicode
/usr/local/share/xemacs-21.5-b28/lisp/unicode
/usr/local/share/xemacs/xemacs-packages/lisp/build/build-report
/usr/local/share/xemacs-21.5-b28/lisp/build-report
/usr/local/share/xemacs/xemacs-packages/lisp/xemacs-base/regexp-opt
/usr/local/share/xemacs-21.5-b28/lisp/regexp-opt)
Installed XEmacs Packages:
-------------------------
(zenirc ver: 1.16 upstream: 2.112)
(xwem ver: 1.22 upstream: lg(a)xwem.org--2005/xwem--main--2.1--versionfix-1)
(xslt-process ver: 1.12 upstream: 1.2.1)
(xslide ver: 1.09 upstream: 0.2.2)
(xlib ver: 1.14 upstream: lg(a)xwem.org--2005/xlib--main--2.1--version-0)
(xetla ver: 1.01 upstream: steve(a)eicq.org--2005/xetla--main--1.1--version-0)
(xemacs-devel ver: 1.75 upstream: No-Upstream-Ver)
(xemacs-base ver: 2.1 upstream: No-Upstream-Ver)
(x-symbol ver: 1.1 upstream: 4.5.1)
(w3 ver: 1.33 upstream: 4.0pre47)
(vm ver: 7.22 upstream: 7.17)
(viper ver: 1.55 upstream: 3.09)
(view-process ver: 1.13 upstream: 2.4)
(vhdl ver: 1.22 upstream: 3.33.12)
(vc-cc ver: 1.22 upstream: No-Upstream-Ver)
(vc ver: 1.41 upstream: No-Upstream-Ver)
(tramp ver: 1.37 upstream: 2.0.55)
(tpu ver: 1.14 upstream: 4.2X)
(tooltalk ver: 1.15 upstream: No-Upstream-Ver)
(tm ver: 1.38 upstream: No-Upstream-Ver)
(time ver: 1.14 upstream: 1.17)
(textools ver: 1.15 upstream: No-Upstream-Ver)
(text-modes ver: 1.92 upstream: No-Upstream-Ver)
(texinfo ver: 1.3 upstream: No-Upstream-Ver)
(supercite ver: 1.21 upstream: 3.55x3)
(strokes ver: 1.1 upstream: No-Upstream-Ver)
(speedbar ver: 1.28 upstream: 0.14beta4)
(sounds-wav ver: 1.12 upstream: No-Upstream-Ver)
(sounds-au ver: 1.12 upstream: No-Upstream-Ver)
(sml-mode ver: 0.12 upstream: 3.9.5)
(slider ver: 1.15 upstream: 0.3x1)
(sieve ver: 1.18 upstream: No-Upstream-Ver)
(sh-script ver: 1.22 upstream: 2.0f)
(sgml ver: 1.11 upstream: No-Upstream-Ver)
(semantic ver: 1.2 upstream: 1.4.4)
(scheme ver: 1.15 upstream: No-Upstream-Ver)
(sasl ver: 1.16 upstream: 1.14.4)
(ruby-modes ver: 1.02 upstream: 1.6.8)
(rmail ver: 1.14 upstream: No-Upstream-Ver)
(riece ver: 1.23 upstream: 3.1.2)
(reftex ver: 1.34 upstream: 4.21)
(re-builder ver: 1.05 upstream: 1.20)
(python-modes ver: 1.08 upstream: No-Upstream-Ver)
(psgml-dtds ver: 1.03 upstream: No-Upstream-Ver)
(psgml ver: 1.44 upstream: 1.3.1)
(ps-print ver: 1.11 upstream: 6.5.6)
(prog-modes ver: 2.1 upstream: No-Upstream-Ver)
(pgg ver: 1.06 upstream: 0.1)
(perl-modes ver: 1.09 upstream: No-Upstream-Ver)
(pcomplete ver: 1.04 upstream: 1.1.6)
(pcl-cvs ver: 1.67 upstream: R-2_9_9)
(pc ver: 1.28 upstream: No-Upstream-Ver)
(os-utils ver: 1.39 upstream: No-Upstream-Ver)
(oo-browser ver: 1.04 upstream: 4.08)
(ocaml ver: 0.06 upstream: 3.06)
(net-utils ver: 1.52 upstream: N/A)
(mmm-mode ver: 1.02 upstream: 0.4.7)
(misc-games ver: 1.19 upstream: No-Upstream-Ver)
(mine ver: 1.16 upstream: 1.9)
(mh-e ver: 1.29 upstream: 7.4.2)
(mew ver: 1.19 upstream: 1.94.2)
(mailcrypt ver: 2.14 upstream: 3.5.8)
(mail-lib ver: 1.79 upstream: No-Upstream-Ver)
(jde ver: 1.51 upstream: 2.3.3)
(ispell ver: 1.32 upstream: 3.6)
(ilisp ver: 1.34 upstream: 5.12.0)
(igrep ver: 1.14 upstream: 2.111)
(idlwave ver: 1.32 upstream: 5.1)
(ibuffer ver: 1.09 upstream: No-Upstream-Ver)
(hyperbole ver: 1.16 upstream: 4.18)
(hm--html-menus ver: 1.23 upstream: 5.9)
(haskell-mode ver: 1.11 upstream: 2.1)
(gnus ver: 1.91 upstream: 5.10.8)
(gnats ver: 1.17 upstream: 3.101)
(general-docs ver: 1.04 upstream: No-Upstream-Ver)
(games ver: 1.17 upstream: 1.04)
(fsf-compat ver: 1.15 upstream: No-Upstream-Ver)
(frame-icon ver: 1.11 upstream: No-Upstream-Ver)
(fortran-modes ver: 1.05 upstream: No-Upstream-Ver)
(forms ver: 1.15 upstream: 2.37)
(footnote ver: 1.16 upstream: 0.18x)
(eudc ver: 1.39 upstream: 1.32)
(eterm ver: 1.17 upstream: No-Upstream-Ver)
(eshell ver: 1.1 upstream: 2.4.1)
(escreen ver: 1.01 upstream: 1.16)
(erc ver: 0.21 upstream: Version 5.1.2 Revision: 1.796.2.6)
(emerge ver: 1.11 upstream: No-Upstream-Ver)
(elib ver: 1.11 upstream: 1.0)
(eieio ver: 1.05 upstream: 0.17)
(efs ver: 1.33 upstream: 1.23)
(edt ver: 1.13 upstream: No-Upstream-Ver)
(edit-utils ver: 2.37 upstream: No-Upstream-Ver)
(ediff ver: 1.68 upstream: 2.75)
(edebug ver: 1.22 upstream: No-Upstream-Ver)
(ecrypto ver: 0.2 upstream: 2.0)
(ecb ver: 1.22 upstream: 2.31)
(docbookide ver: 0.08 upstream: 0.1)
(dired ver: 1.17 upstream: 7.13)
(dictionary ver: 1.16 upstream: 1.8)
(debug ver: 1.18 upstream: No-Upstream-Ver)
(crisp ver: 1.15 upstream: 1.34)
(cookie ver: 1.15 upstream: No-Upstream-Ver)
(clearcase ver: 1.1 upstream: /main/laptop/165)
(cc-mode ver: 1.45 upstream: 5.30.10)
(calendar ver: 1.32 upstream: No-Upstream-Ver)
(calc ver: 1.26 upstream: 2.02fX3)
(c-support ver: 1.22 upstream: No-Upstream-Ver)
(build ver: 1.14 upstream: 2.02)
(bbdb ver: 1.32 upstream: 2.35)
(auctex ver: 1.47 upstream: 11.55)
(apel ver: 1.32 upstream: 10.6)
(ada ver: 1.14 upstream: 2.27)
(Sun ver: 1.16 upstream: No-Upstream-Ver)
(skk ver: 1.23 upstream: 10.62a)
(mule-ucs ver: 1.14 upstream: 0.84)
(mule-base ver: 1.49 upstream: No-Upstream-Ver)
(lookup ver: 1.15 upstream: 1.0)
(locale ver: 1.24 upstream: No-Upstream-Ver)
(leim ver: 1.24 upstream: No-Upstream-Ver)
(latin-unity ver: 1.2 upstream: 1.20)
(latin-euro-standards ver: 1.07 upstream: 1.07)
(egg-its ver: 1.27 upstream: No-Upstream-Ver)
(edict ver: 1.16 upstream: 0.9.9)
Installed Modules:
-----------------
Features:
--------
(xemacsbug shadow mail-abbrevs sendmail rfc822 build-report config
font disp-table alist x-font-menu font-menu lazy-lock gnuserv psvn
edmacro overlay viper viper-ex viper-macs viper-mous viper-cmd
viper-util viper-keym viper-init tramp-smb tramp password format-spec
timer-funcs trampver efs-x19.15 efs-fnh efs-ovwrt efs-cu efs-netrc
efs-defun efs advice advice-preload ess-toolbar ess-mous mouseme
thingatpt browse-url ess-menu imenu ess-swv ess-noweb essl-bugs
essd-omg essl-omg essd-els essd-sas essl-sas essa-sas rtf-support
executable shell essd-arc essd-vst essd-xls essl-lsp essd-sta essl-sta
cc-vars cc-defs make-regexp essd-sp6 essd-sp5 essd-sp3 essd-r
essd-r-args essl-s ess-inf ess-utils comint ring ess-mode noweb-mode
ess ess-cust regexp-opt ess-emcs ess-site font-lock cus-face
recent-files savehist pending-del zenirc-autoloads xwem-autoloads
xslt-process-autoloads xslide-autoloads xlib-autoloads xetla-autoloads
xemacs-devel-autoloads xemacs-base-autoloads x-symbol-autoloads
w3-autoloads vm-autoloads viper-autoloads view-process-autoloads
vhdl-autoloads vc-cc-autoloads vc-autoloads tramp-autoloads
tpu-autoloads tooltalk-autoloads tm-autoloads time-autoloads
textools-autoloads text-modes-autoloads texinfo-autoloads
supercite-autoloads strokes-autoloads speedbar-autoloads
sounds-wav-autoloads sounds-au-autoloads sml-mode-autoloads
slider-autoloads sieve-autoloads sh-script-autoloads sgml-autoloads
semantic-autoloads scheme-autoloads sasl-autoloads
ruby-modes-autoloads rmail-autoloads riece-autoloads reftex-autoloads
re-builder-autoloads python-modes-autoloads psgml-dtds-autoloads
psgml-autoloads ps-print-autoloads prog-modes-autoloads pgg-autoloads
perl-modes-autoloads pcomplete-autoloads pcl-cvs-autoloads
pc-autoloads os-utils-autoloads oo-browser-autoloads ocaml-autoloads
net-utils-autoloads mmm-mode-autoloads misc-games-autoloads
mine-autoloads mh-e-autoloads mew-autoloads mailcrypt-autoloads
mail-lib-autoloads jde-autoloads ispell-autoloads ilisp-autoloads
igrep-autoloads idlwave-autoloads ibuffer-autoloads
hyperbole-autoloads hm--html-menus-autoloads haskell-mode-autoloads
gnus-autoloads gnats-autoloads general-docs-autoloads games-autoloads
fsf-compat-autoloads frame-icon-autoloads fortran-modes-autoloads
forms-autoloads footnote-autoloads eudc-autoloads eterm-autoloads
eshell-autoloads escreen-autoloads erc-autoloads emerge-autoloads
elib-autoloads eieio-autoloads efs-autoloads edt-autoloads
edit-utils-autoloads ediff-autoloads edebug-autoloads
ecrypto-autoloads ecb-autoloads docbookide-autoloads dired-autoloads
dictionary-autoloads debug-autoloads crisp-autoloads cookie-autoloads
clearcase-autoloads cc-mode-autoloads calendar-autoloads
calc-autoloads c-support-autoloads build-autoloads bbdb-autoloads
auctex-autoloads apel-autoloads ada-autoloads Sun-autoloads
skk-autoloads mule-ucs-autoloads mule-base-autoloads lookup-autoloads
locale-autoloads leim-autoloads latin-unity-autoloads
latin-euro-standards-autoloads egg-its-autoloads edict-autoloads
modules-autoloads mule-autoloads auto-autoloads auto-show fontl-hooks
canna-leim tibetan slovenian czech romanian lao devanagari indian
cyrillic code-cmds gutter-items menubar-items x-menubar mode-motion
mouse behavior itimer auto-save lisp-mode easymenu easy-mmode
iso8859-1 page buff-menu lib-complete loadhist cus-file derived
newcomment rsz-minibuf env text-props frame obsolete cus-start custom
widget cl-extra cl cl-19 packages backquote unicode lucid-scrollbars
cut-buffer lucid-menubars motif-dialogs x c-balloon-help tty-frames
tty toolbar esd-sound scrollbar unix-processes multicast
network-streams subprocesses modules menu-accelerator-support menubar
dbm md5 xemacs xim mule gutter tiff png gif jpeg xpm xbm
lisp-float-type file-coding usg-unix-v dialog devices window-system
base64)
Recent keystrokes:
-----------------
misc-user misc-user misc-user misc-user misc-user misc-user
misc-user misc-user misc-user misc-user misc-user misc-user
misc-user misc-user misc-user misc-user misc-user misc-user
misc-user misc-user misc-user misc-user misc-user misc-user
misc-user misc-user misc-user misc-user misc-user misc-user
misc-user misc-user misc-user misc-user misc-user misc-user
misc-user misc-user misc-user misc-user misc-user misc-user
misc-user misc-user misc-user misc-user misc-user misc-user
misc-user misc-user misc-user misc-user misc-user misc-user
misc-user misc-user misc-user misc-user misc-user misc-user
misc-user misc-user misc-user misc-user misc-user misc-user
misc-user misc-user misc-user misc-user misc-user misc-user
misc-user misc-user misc-user misc-user misc-user misc-user
C-x k RET M-x r e p o r t - x e m a c s - b u g RE
T
Recent messages (most recent first):
-----------------------------------
Loading xemacsbug...done
Loading xemacsbug...
Loading sendmail...done
Loading sendmail...
Warning:
Defaulting to the GNU Emacs-derived `sendmail.el' mail client. This
facility,
while part of base XEmacs, is heinously underfeatured, and not going to get
better in the medium term. We include it so that bug reports work without
packages; we suggest that you choose and/or install one of the other mail
clients from packages if you're doing something other than M-x
report-xemacs-bug , or even if you are reporting bugs regularly.
To choose a package from those installed, click on "Options" ->
"Internet" -> "Compose Mail With ..." and decide on one from the
list. Gnus and VM are full-featured and have active user communities.
To disable this warning and stick with the old behavior, you can explicitly
initialize `mail-user-agent' to 'sendmail-user-agent .
Note: file is write protected
Loading build-report...done
Loading build-report...
Font -*-Lucidatypewriter-medium-r-*-*-*-180-*-*-*-*-*-*
Changing font of `blue'...
Changing font of `bold-italic'...
Changing font of `viper-minibuffer-vi'...
Changing font of `left-margin'...
Changing font of `font-lock-function-name-face'...
Changing font of `list-mode-item-selected'...
Changing font of `shell-output-face'...
Changing font of `viper-replace-overlay'...
Changing font of `font-lock-constant-face'...
Changing font of `svn-status-filename-face'...
Changing font of `font-lock-string-face'...
_______________________________________________
XEmacs-Beta mailing list
XEmacs-Beta(a)xemacs.org
http://calypso.tux.org/cgi-bin/mailman/listinfo/xemacs-beta
Re: [issue] VC submenu under Tools
15 years, 9 months
Rodney Sparapani
Uwe Brauer wrote:
> A finally. This is the same error I observed from time to time and
> nobody can tell me why. Sorry that I can't be more helpful.
>
> Uwe Brauer
>
I can produce this with -vanilla, (require 'vc-hooks) and
(setq debug-on-error t). If I leave the last part off,
then I get to see that the submenu is replaced by the entry
"No Menu" and I get the *Warnings*:
(1) (error/warning) Error in menubar filter: (void-function vc-locking-user)
And sure enough, this function does not appear to be defined anywhere,
although it is called from vc-menu-filter in vc-hooks.el
AHA! SVN does not use locking. So change line 968 of vc-hooks.el to
((or (eq type 'CVS) (eq type 'SVN))
and then it works for me!
--
Rodney Sparapani Center for Patient Care & Outcomes Research (PCOR)
Sr. Biostatistician http://www.mcw.edu/pcor
4 wheels good, 2 wheels better! Medical College of Wisconsin (MCW)
WWLD?: What Would Lombardi Do? Milwaukee, WI, USA
_______________________________________________
XEmacs-Beta mailing list
XEmacs-Beta(a)xemacs.org
http://calypso.tux.org/cgi-bin/mailman/listinfo/xemacs-beta
Gentoo security alert 200902-06 (emacs)
15 years, 9 months
Vladimir G. Ivanovic
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Is there an established procedure for dealing with bugs like the
following? Is there an established for noticing & tracking security
issues?
I am unaware of any process for doing either. I happened to stumble
upon this one simply because it was visible without having to scroll
my browser window.)
Absent any instruction, I will file a high priority bug. (Is it
possible mark bugs as security-related in Tracker?)
- --- Vladimir
http://lwn.net/Articles/320484/
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Severity: Normal
Title: GNU Emacs, XEmacs: Multiple vulnerabilities
Date: February 23, 2009
Bugs: #221197, #236498
ID: 200902-06
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Synopsis
========
Two vulnerabilities were found in GNU Emacs, possibly leading to
user-assisted execution of arbitrary code. One also affects edit-utils
in XEmacs.
Background
==========
GNU Emacs and XEmacs are highly extensible and customizable text
editors. edit-utils are miscellaneous extensions to XEmacs.
Affected packages
=================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 app-editors/emacs < 22.2-r3 >= 22.2-r3
*>= 21.4-r17
< 19
2 app-xemacs/edit-utils < 2.39 >= 2.39
-------------------------------------------------------------------
2 affected packages on all of their supported architectures.
-------------------------------------------------------------------
Description
===========
Morten Welinder reports about GNU Emacs and edit-utils in XEmacs: By
shipping a .flc accompanying a source file (.c for example) and setting
font-lock-support-mode to fast-lock-mode in the source file through
local variables, any Lisp code in the .flc file is executed without
warning (CVE-2008-2142).
Romain Francoise reported a security risk in a feature of GNU Emacs
related to interacting with Python. The vulnerability arises because
Python, by default, prepends the current directory to the module search
path, allowing for arbitrary code execution when launched from a
specially crafted directory (CVE-2008-3949).
Impact
======
Remote attackers could entice a user to open a specially crafted file
in GNU Emacs, possibly leading to the execution of arbitrary Emacs Lisp
code or arbitrary Python code with the privileges of the user running
GNU Emacs or XEmacs.
Workaround
==========
There is no known workaround at this time.
Resolution
==========
All GNU Emacs users should upgrade to the latest version:
# emerge --sync
# emerge --ask --oneshot --verbose ">=app-editors/emacs-22.2-r3"
All edit-utils users should upgrade to the latest version:
# emerge --sync
# emerge --ask --oneshot --verbose ">=app-xemacs/edit-utils-2.39"
References
==========
[ 1 ] CVE-2008-2142
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2142
[ 2 ] CVE-2008-3949
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3949
- --
Vladimir G. Ivanovic
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)
Comment: Using GnuPG with Fedora - http://enigmail.mozdev.org
iEYEARECAAYFAkmnB4wACgkQtoykdjDhdFu4XACbBWK0IOolc4zzXyW43288rcQH
AXQAnAzQEwzjR1SGqMnUc5q96RqpuQCj
=YpdN
-----END PGP SIGNATURE-----
_______________________________________________
XEmacs-Beta mailing list
XEmacs-Beta(a)xemacs.org
http://calypso.tux.org/cgi-bin/mailman/listinfo/xemacs-beta
auctex versions
15 years, 9 months
Ville Skyttä
Hello,
I see the latest sumo (and its tag in CVS) contains auctex 11.84 while CVS
HEAD has 11.55. Apparently 11.84 was at some point in HEAD, but reverted back
to 11.55 by Stephen in July with the comment "Sync auctex trunk back to
release 1.48." but no further info.
Which one is the version that should be distributed with the sumos and
packages collection at the moment? Uwe was surprised to hear that 11.84 is
in sumos, and the fact that CVS HEAD is at 11.55 and 11.84 is in a branch is
going to cause some surprises if 11.84 is the version that should be
distributed currently. If it's 11.84, I suggest moving that to CVS HEAD. If
11.55, perhaps we need new sumos soon.
Uwe, Mats, Norbert, Stephen, comments?
_______________________________________________
XEmacs-Beta mailing list
XEmacs-Beta(a)xemacs.org
http://calypso.tux.org/cgi-bin/mailman/listinfo/xemacs-beta
Re: auctex preview.dvi build failure
15 years, 9 months
Ville Skyttä
On Friday 27 February 2009, Uwe Brauer wrote:
> Ville Skyttä wrote:
> > On Thursday 26 February 2009, David Kastrup wrote:
> >> If it actually _is_ the same as the upstream version (and it sounds like
> >> there is not really any change to it), then checking in the original
> >> version and telling the version control system not to tamper with the
> >> tags at all should be perfectly fine.
> >
> > Ok. I've applied tested this change locally to
> > preview/latex/preview.dtx, preview/preview.el, and style/prosper.el and
> > it fixes the build for me. I have no idea why it didn't fail in
> > Norbert's official package sumo build though.
> >
> > Uwe, would you like me to take care of making these changes in XEmacs
> > CVS?
>
> well, it is not supposed to break anything? No
> Then please go ahead
Done in the auctex-11_84-import branch.
_______________________________________________
XEmacs-Beta mailing list
XEmacs-Beta(a)xemacs.org
http://calypso.tux.org/cgi-bin/mailman/listinfo/xemacs-beta
[issue] VC submenu under Tools
15 years, 9 months
Rodney Sparapani
So, I have (require 'vc-hooks) and VC is working with SVN
perfectly. However, on the Tools menu, the VC submenu is either
grayed out or gives me an error message (but no backtrace):
Attempt to enter command_loop_3 inside menu callback
I can't figure out where this error message is coming from
(or what it means either). Any ideas?
Thanks,
Rodney
_______________________________________________
XEmacs-Beta mailing list
XEmacs-Beta(a)xemacs.org
http://calypso.tux.org/cgi-bin/mailman/listinfo/xemacs-beta
auctex preview.dvi build failure
15 years, 9 months
Ville Skyttä
Hello,
Trying to build the latest sumo-tagged packages from CVS fails for me while
building auctex's preview.dvi. I have absolutely no clue about *tex, but
attached is the preview.log in case someone can tell from it what might be
wrong. This is with texinfo 4.11, texlive-texmf-latex 2007-24.fc9 on Fedora
9.
This looks to me like something that could be the problem, but I don't know
what to do about it:
----
! Use of \next doesn't match its definition.
\pr@version ->s
umo-2009-02-17
l.33 ...nd\pr@version{\expandafter\next\pr@version
}}} \next \fi
If you say, e.g., `\def\a1{...}', then you must always
put `1' after `\a', since control sequence names are
made up of letters only. The macro here has not been
followed by the required stuff, so I'm ignoring it.
----
The build eventually fails with:
[...]
(see the transcript file for additional information)
Output written on preview.dvi (30 pages, 98244 bytes).
Transcript written on preview.log.
make[2]: Leaving directory
`/builddir/build/BUILD/xemacs-packages-extra-20090217/xemacs-packages/auctex'
make[1]: Leaving directory
`/builddir/build/BUILD/xemacs-packages-extra-20090217/xemacs-packages'
RPM build errors:
make[2]: *** [preview/latex/preview.dvi] Error 1
make[1]: *** [auctex/bytecompile.target] Error 2
make: *** [xemacs-packages/bytecompile.target] Error 2
_______________________________________________
XEmacs-Beta mailing list
XEmacs-Beta(a)xemacs.org
http://calypso.tux.org/cgi-bin/mailman/listinfo/xemacs-beta