Debian Bug report logs - #800981
mule: depends on obsolete libcommons-httpclient-java library

version graph

Package: mule; Maintainer for mule is (unknown);

Reported by: apo@gambaru.de

Date: Mon, 5 Oct 2015 14:54:47 UTC

Severity: normal

Fixed in version 2.0.1-10+rm

Done: Debian FTP Masters <ftpmaster@ftp-master.debian.org>

Bug is archived. No further changes may be made.

Toggle useless messages

View this report as an mbox folder, status mbox, maintainer mbox


Report forwarded to Debian Eucalyptus Maintainers <pkg-eucalyptus-maintainers@lists.alioth.debian.org>:
Bug#800981; Package mule. (Mon, 05 Oct 2015 14:54:50 GMT) (full text, mbox, link).


Acknowledgement sent to apo@gambaru.de:
New Bug report received and forwarded. Copy sent to Debian Eucalyptus Maintainers <pkg-eucalyptus-maintainers@lists.alioth.debian.org>. (Mon, 05 Oct 2015 14:54:50 GMT) (full text, mbox, link).


Message #5 received at maintonly@bugs.debian.org (full text, mbox, reply):

From: apo@gambaru.de
To: maintonly@bugs.debian.org
Subject: mule: depends on obsolete libcommons-httpclient-java library
Date: Mon, 05 Oct 2015 16:51:46 +0200
Package: mule
Severity: normal
User: pkg-java-maintainers@lists.alioth.debian.org
Usertags: oldlibs libcommons-httpclient-java

Hi,

mule depends on libcommons-httpclient-java, which is obsolete and was
replaced by libhttpclient-java. It has reached EOL status in 2011! It is no
longer supported upstream [1] and was affected by multiple security issues in
the recent past. mule should be ported to the new libhttpclient-java
version, so that we can remove the old, unmaintained one. Please forward this
issue upstream, if you can't migrate the package yourself.

We would like to see libcommons-httpclient-java removed during the Stretch
release cycle but due to the large number of reverse-dependencies the outcome
depends more than ever on your help.

Please help us to accomplish this goal. We will bump this issue to important
when the list of rdeps is getting smaller and we think that the removal is
possible. We will eventually raise the severity to serious when the number
of rdeps is small.

If you have any questions don't hesitate to ask and contact us on

debian-java@list.debian.org

Regards,

Markus

[1] https://hc.apache.org/httpclient-3.x/

[2] https://security-tracker.debian.org/tracker/source-package/commons-httpclient




Added indication that bug 800981 blocks 781063 Request was from Markus Koschany <apo@gambaru.de> to control@bugs.debian.org. (Mon, 05 Oct 2015 17:42:21 GMT) (full text, mbox, link).


Reply sent to Debian FTP Masters <ftpmaster@ftp-master.debian.org>:
You have taken responsibility. (Sat, 02 Apr 2016 04:45:46 GMT) (full text, mbox, link).


Notification sent to apo@gambaru.de:
Bug acknowledged by developer. (Sat, 02 Apr 2016 04:45:46 GMT) (full text, mbox, link).


Message #12 received at 800981-done@bugs.debian.org (full text, mbox, reply):

From: Debian FTP Masters <ftpmaster@ftp-master.debian.org>
To: 638927-done@bugs.debian.org,800981-done@bugs.debian.org,
Cc: mule@packages.debian.org, mule@packages.qa.debian.org
Subject: Bug#818898: Removed package(s) from unstable
Date: Sat, 02 Apr 2016 04:42:15 +0000
Version: 2.0.1-10+rm

Dear submitter,

as the package mule has just been removed from the Debian archive
unstable we hereby close the associated bug reports.  We are sorry
that we couldn't deal with your issue properly.

For details on the removal, please see https://bugs.debian.org/818898

The version of this package that was in Debian prior to this removal
can still be found using http://snapshot.debian.org/.

This message was generated automatically; if you believe that there is
a problem with it please contact the archive administrators by mailing
ftpmaster@ftp-master.debian.org.

Debian distribution maintenance software
pp.
Scott Kitterman (the ftpmaster behind the curtain)



Bug archived. Request was from Debbugs Internal Request <owner@bugs.debian.org> to internal_control@bugs.debian.org. (Sat, 30 Apr 2016 07:45:12 GMT) (full text, mbox, link).


Send a report that this bug log contains spam.


Debian bug tracking system administrator <owner@bugs.debian.org>. Last modified: Sat Jul 1 13:49:01 2023; Machine Name: bembo

Debian Bug tracking system

Debbugs is free software and licensed under the terms of the GNU Public License version 2. The current version can be obtained from https://bugs.debian.org/debbugs-source/.

Copyright © 1999 Darren O. Benham, 1997,2003 nCipher Corporation Ltd, 1994-97 Ian Jackson, 2005-2017 Don Armstrong, and many other contributors.