Debian Package Tracker
Register | Log in
Subscribe

jabberd2

Jabber instant messenger server

Choose email to subscribe with

general
  • source: jabberd2 (main)
  • version: 2.7.0-4
  • maintainer: Debian XMPP Maintainers (archive) (DMD)
  • uploaders: Simon Josefsson [DMD]
  • arch: any
  • std-ver: 4.6.1
  • VCS: Git (Browse, QA)
versions [more versions can be listed by madison] [old versions available from snapshot.debian.org]
[pool directory]
  • o-o-stable: 2.4.0-3+deb9u1
  • o-o-sec: 2.4.0-3+deb9u1
  • oldstable: 2.7.0-1
  • stable: 2.7.0-2
  • testing: 2.7.0-4
  • unstable: 2.7.0-4
versioned links
  • 2.4.0-3+deb9u1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 2.7.0-1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 2.7.0-2: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 2.7.0-4: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
binaries
  • jabberd2 (4 bugs: 0, 2, 2, 0)
action needed
1 security issue in sid high

There is 1 open security issue in sid.

1 important issue:
  • CVE-2017-18226: The Gentoo net-im/jabberd2 package through 2.6.1 sets the ownership of /var/run/jabber to the jabber account, which might allow local users to kill arbitrary processes by leveraging access to this account for PID file modification before a root script executes a "kill -TERM `cat /var/run/jabber/filename.pid`" command.
Created: 2022-07-04 Last update: 2022-08-01 13:40
1 security issue in bookworm high

There is 1 open security issue in bookworm.

1 important issue:
  • CVE-2017-18226: The Gentoo net-im/jabberd2 package through 2.6.1 sets the ownership of /var/run/jabber to the jabber account, which might allow local users to kill arbitrary processes by leveraging access to this account for PID file modification before a root script executes a "kill -TERM `cat /var/run/jabber/filename.pid`" command.
Created: 2022-07-04 Last update: 2022-08-01 13:40
lintian reports 129 warnings high
Lintian reports 129 warnings about this package. You should make the package lintian clean getting rid of them.
Created: 2021-01-27 Last update: 2022-07-30 12:14
1 bug tagged patch in the BTS normal
The BTS contains patches fixing 1 bug, consider including or untagging them.
Created: 2022-07-27 Last update: 2022-09-20 00:03
Depends on packages which need a new maintainer normal
The packages that jabberd2 depends on which need a new maintainer are:
  • db5.3 (#1014386)
    • Depends: libdb5.3
  • db-defaults (#1014387)
    • Build-Depends: libdb-dev
Created: 2022-07-05 Last update: 2022-09-19 22:44
No known security issue in bullseye wishlist

There is 1 open security issue in bullseye.

1 ignored issue:
  • CVE-2017-18226: The Gentoo net-im/jabberd2 package through 2.6.1 sets the ownership of /var/run/jabber to the jabber account, which might allow local users to kill arbitrary processes by leveraging access to this account for PID file modification before a root script executes a "kill -TERM `cat /var/run/jabber/filename.pid`" command.
Created: 2022-07-04 Last update: 2022-08-01 13:40
testing migrations
  • This package will soon be part of the auto-openldap transition. You might want to ensure that your package is ready for it. You can probably find supplementary information in the debian-release archives or in the corresponding release.debian.org bug.
news
[rss feed]
  • [2022-06-11] jabberd2 2.7.0-4 MIGRATED to testing (Debian testing watch)
  • [2022-06-06] Accepted jabberd2 2.7.0-4 (source) into unstable (Simon Josefsson)
  • [2021-08-11] Accepted jabberd2 2.7.0-3 (source) into experimental (Simon Josefsson)
  • [2020-11-07] jabberd2 2.7.0-2 MIGRATED to testing (Debian testing watch)
  • [2020-11-01] Accepted jabberd2 2.7.0-2 (source) into unstable (Simon Josefsson)
  • [2019-02-03] jabberd2 2.7.0-1 MIGRATED to testing (Debian testing watch)
  • [2019-01-28] Accepted jabberd2 2.7.0-1 (source amd64) into unstable (Simon Josefsson)
  • [2018-01-28] jabberd2 2.6.1-3 MIGRATED to testing (Debian testing watch)
  • [2018-01-22] Accepted jabberd2 2.6.1-3 (source amd64) into unstable (Simon Josefsson)
  • [2018-01-22] Accepted jabberd2 2.6.1-2 (source amd64) into unstable (Simon Josefsson)
  • [2017-11-30] jabberd2 REMOVED from testing (Debian testing watch)
  • [2017-07-14] jabberd2 2.6.1-1 MIGRATED to testing (Debian testing watch)
  • [2017-07-09] Accepted jabberd2 2.4.0-3+deb9u1 (source) into proposed-updates->stable-new, proposed-updates (Salvatore Bonaccorso)
  • [2017-07-09] Accepted jabberd2 2.6.1-1 (source amd64) into unstable (Simon Josefsson)
  • [2017-06-20] jabberd2 2.5.0-1 MIGRATED to testing (Debian testing watch)
  • [2017-03-16] Accepted jabberd2 2.5.0-1 (source amd64) into unstable (Simon Josefsson)
  • [2017-01-18] jabberd2 2.4.0-3 MIGRATED to testing (Debian testing watch)
  • [2016-12-27] Accepted jabberd2 2.4.0-3 (source amd64) into unstable (Simon Josefsson)
  • [2016-11-11] jabberd2 REMOVED from testing (Debian testing watch)
  • [2016-10-01] jabberd2 2.4.0-2 MIGRATED to testing (Debian testing watch)
  • [2016-09-25] Accepted jabberd2 2.4.0-2 (source amd64) into unstable (Simon Josefsson)
  • [2016-07-24] jabberd2 2.4.0-1 MIGRATED to testing (Debian testing watch)
  • [2016-07-18] Accepted jabberd2 2.4.0-1~bpo8+1 (source amd64) into jessie-backports (Simon Josefsson)
  • [2016-07-18] Accepted jabberd2 2.4.0-1 (source) into unstable (Simon Josefsson)
  • [2015-11-11] jabberd2 2.3.4-1 MIGRATED to testing (Britney)
  • [2015-11-01] Accepted jabberd2 2.3.4-1 (source) into unstable (Simon Josefsson)
  • [2015-08-06] jabberd2 2.3.3-3 MIGRATED to testing (Britney)
  • [2015-07-31] Accepted jabberd2 2.3.3-3 (source) into unstable (Simon Josefsson)
  • [2015-07-29] jabberd2 REMOVED from testing (Britney)
  • [2015-05-10] jabberd2 2.3.3-2 MIGRATED to testing (Britney)
  • 1
  • 2
bugs [bug history graph]
  • all: 4
  • RC: 0
  • I&N: 2
  • M&W: 2
  • F&P: 0
  • patch: 1
links
  • homepage
  • lintian (0, 129)
  • buildd: logs, clang, reproducibility, cross
  • popcon
  • browse source code
  • edit tags
  • other distros
  • security tracker
  • screenshots
ubuntu Ubuntu logo [Information about Ubuntu for Debian Developers]
  • version: 2.7.0-2ubuntu5
  • 2 bugs (1 patch)
  • patches for 2.7.0-2ubuntu5

Debian Package Tracker — Copyright 2013-2018 The Distro Tracker Developers
Report problems to the tracker.debian.org pseudo-package in the Debian BTS.
Documentation — Bugs — Git Repository — Contributing