Bug#776963: please document that /etc/default/tmpfs is ignored with systemd

2016-07-25 Thread Nicolas Le Cam
On Tue, 3 Feb 2015 17:16:35 +0100 Peter Palfrader wrote: > Bonus points for pointing the admin to alternative ways of achieving > what she wants. # systemctl link /usr/share/systemd/tmp.mount Created symlink /etc/systemd/system/tmp.mount → /usr/share/systemd/tmp.mount. See

Bug#832495: libreoffice: Extremely slow to redraw UI.

2016-07-25 Thread Rene Engelhard
tag 832495 + moreinfo tag 832495 + unreproducible thanks Hi, On Tue, Jul 26, 2016 at 09:53:07AM +0800, Andrew King wrote: > After upgrading libreoffice, ui is extremely slow to redraw, almost to the > point of unusable. (Hence - important). >ou are aware that the upgrade to 5.1.5 is already >

Bug#832499: ITP: apertium-mlt-ara -- Apertium translation data for the Maltese-Arabic pair

2016-07-25 Thread Kartik Mistry
Package: wnpp Severity: wishlist Owner: Kartik Mistry * Package name: apertium-mlt-ara Version : 0.2.0 Upstream Author : Kevin Brubeck Unhammer , Francis M. Tyers , Maria Fronczak

Bug#832489: tzdata-java: The Debian 8 package tzdata-java without support openjdk8

2016-07-25 Thread Aurelien Jarno
control: reassign -1 openjdk-8 control: retitle -1 openjdk-8-jre-headless doesn't provide tzdb.dat On 2016-07-26 07:34, Семёнов Артём Игоревич wrote: > Package: tzdata-java > Version: 2016f-0+deb8u1 > Severity: important > > Dear Maintainer, > > > The Debian 8 package tzdata-java without

Bug#832498: ITP: apertium-kaz-tat -- Apertium translation data for the Kazakh-Tatar pair

2016-07-25 Thread Kartik Mistry
Package: wnpp Severity: wishlist Owner: Kartik Mistry * Package name: apertium-kaz-tat Version : 0.2.1 Upstream Author : Nathan Maxson, Francis M. Tyers , Jonathan N. Washington

Bug#832497: ITP: apertium-is-sv -- Apertium translation data for the Icelandic-Swedish pair

2016-07-25 Thread Kartik Mistry
Package: wnpp Severity: wishlist Owner: Kartik Mistry * Package name: apertium-is-sv Version : 0.1.0 Upstream Author : Tihomir Rangelov , Francis M. Tyers , Kevin Brubeck

Bug#825342: mips/mipsel: make sure all packages built with fpxx enabled

2016-07-25 Thread YunQiang Su
On Sat, Jul 23, 2016 at 5:06 PM, Emilio Pozuelo Monfort wrote: > On 09/06/16 21:13, Emilio Pozuelo Monfort wrote: >> On 07/06/16 19:38, YunQiang Su wrote: >>> After the 1st step of binNMU of mipsel (mips is still running), >> >> mips is finally catching up. >> >>> We still have

Bug#832456: elfutils: improve handling of DEB_BUILD_OPTIONS=nocheck

2016-07-25 Thread Helmut Grohne
Hi Kurt, On Mon, Jul 25, 2016 at 08:36:41PM +0200, Kurt Roeckx wrote: > This all looks fine. I'm just wondering why gcc-multilib is a > problem in your case since it was already any-amd64. I'm also > wondering if any other arches need it, like x32 and ppc64el. Well, kfreebsd-amd64 matches

Bug#832496: gdk-pixbuf: ico loader crashes when loading crafted file ico loader crashes when loading crafted file

2016-07-25 Thread Salvatore Bonaccorso
Source: gdk-pixbuf Version: 2.31.1-1 Severity: important Tags: security upstream Forwarded: https://bugzilla.gnome.org/show_bug.cgi?id=769170 >From upstream bug report, and since there is no CVE assigned, for better trackability: > There's a crash when loading specially crafted ico files. > >

Bug#827111: jessie-pu: package exim4/4.84.2-2

2016-07-25 Thread Salvatore Bonaccorso
Hi Adam, On Mon, Jul 25, 2016 at 08:50:47PM +0200, Salvatore Bonaccorso wrote: > Hi Adam, > > On Mon, Jul 25, 2016 at 07:28:33PM +0100, Adam D. Barratt wrote: > > Hi, > > > > On Mon, 2016-07-25 at 20:14 +0200, Salvatore Bonaccorso wrote: > > > Hi Adam, > > > > > > On Mon, Jul 25, 2016 at

Bug#832494: aqemu: Description need to be updated

2016-07-25 Thread Ignace Mouzannar
Hi, On Mon, Jul 25, 2016 at 9:51 PM, Zhang Jingqiang wrote: > > Hello, >The Qt4 based description need to be replaced. Nice catch. I will update this right away. Cheers, Ignace M

Bug#832062:

2016-07-25 Thread Jacob's PC Tune-up
I don't think it came from modarchive in the first place, it was added to the media repo in 2002. (https://sourceforge.net/p/supertuxkart/code/492/log/?path=/trunk/tuxkart/mods/Boom_boom_boom.mod) If it was, the terms might have been different 13 years ago, the terms from back then should be

Bug#817632: ptex-base: Removal of debhelper compat 4

2016-07-25 Thread Logan Rosen
Control: tags -1 patch Dear Maintainer, In Ubuntu, the attached patch was applied to achieve the following: * debian/compat: Bump to 9. * debian/control: Build-depend on debhelper (>= 9). * debian/rules: - Use dh_prep instead of dh_clean -k. - Add recommended build-arch and

Bug#823868: closed by Yves-Alexis Perez <cor...@debian.org> (Bug#823868: fixed in greybird-gtk-theme 3.18.0+20160720.7b72fea.gtk320-1)

2016-07-25 Thread Jeremy Bicha
Control: fixed -1 murrine-themes/0.98.11 On Mon, Jul 25, 2016 at 4:08 PM, Karagkiaouris Diamantis wrote: > Unfortunately the problem exist in the latest available in stretch repo: > > Package: murrine-themes > Version: 0.98.10 Yes, bugs are fixed in unstable and take

Bug#817631: psignifit: Removal of debhelper compat 4

2016-07-25 Thread Logan Rosen
Control: tags -1 patch Dear Maintainer, In Ubuntu, the attached patch was applied to achieve the following: * debian/compat: Bump to 9. * debian/control: - Build-depend on debhelper (>= 9). - Depend on ${misc:Depends}. * debian/rules: Switch to dh sequencer. Thanks for

Bug#822502: nemiver: FTBFS: error: cannot convert 'const sigc::slot_base' to 'bool' in return

2016-07-25 Thread Logan Rosen
Control: tags -1 patch Dear Maintainer, In Ubuntu, the attached patch was applied to achieve the following: * debian/patches/bool-conversion.patch: Grab patch from upstream Git to fix FTBFS due to bool conversion. Thanks for considering the patch. Logan Rosen diff -Nru

Bug#832495: libreoffice: Extremely slow to redraw UI.

2016-07-25 Thread Andrew King
Package: libreoffice Version: 1:5.1.5~rc1-1 Severity: important Dear Maintainer, After upgrading libreoffice, ui is extremely slow to redraw, almost to the point of unusable. (Hence - important). This started happening after an apt-get upgrade. Now opening Libre-office (any component) is

Bug#831537: marked as pending

2016-07-25 Thread Roland Hieber
Hi, I'm curious and want to understand, so am I right that a binNMU [0] should be enough here? If not, why not? [0]: https://wiki.debian.org/binNMU Cheers, - Roland > commit d3dc4b14057eab6f3bfa09c8388a7c20351ccf95 > Author: Nicholas D Steeves > Date: Sun Jul 17

Bug#832494: aqemu: Description need to be updated

2016-07-25 Thread Zhang Jingqiang
Package: aqemu Version: 0.9.2-1 Severity: normal Hello, The Qt4 based description need to be replaced. Thanks -- System Information: Debian Release: stretch/sid APT prefers unstable APT policy: (990, 'unstable'), (500, 'work'), (500, 'testing'), (1, 'experimental') Architecture: amd64

Bug#832493: flashplugin-nonfree: update-flashplugin-nonfree detect upstream version as 22.0.0.209

2016-07-25 Thread sharuzzaman
Package: flashplugin-nonfree Version: 1:3.6.1+b1 Severity: grave Tags: security Justification: renders package unusable Dear Maintainer, When running the update-flashplugin-nonfree script, the upstream version detected is 22.0.0.209 This is wrong and will cause the update to fail to get the

Bug#832492: dolphin: depends on baloo-kf5

2016-07-25 Thread HJ
Package: dolphin Version: 4:16.04.2-2 Severity: normal Dear Maintainer, the dolphin internal find won't work if there is no package baloo-kf5 installed. -- System Information: APT prefers stable APT policy: (500, 'stable') Architecture: amd64 (x86_64) Kernel: Linux 3.16.0-4-amd64 (SMP

Bug#817526: libdshconfig: Removal of debhelper compat 4

2016-07-25 Thread Logan Rosen
Control: tags -1 patch Dear Maintainer, In Ubuntu, the attached patch was applied to achieve the following: * debian/rules: - Remove legacy DH_COMPAT export. - Don't allow distclean to ignore errors. * debian/compat: Indicate compatibility level of 9. * debian/control: -

Bug#832490: gitlab: fails to install if it was previously installed

2016-07-25 Thread Dmitry Smirnov
Package: gitlab Version: 8.9.0+dfsg-7 Severity: serious Creating runtime directories for gitlab... mkdir: cannot create directory ‘/var/lib/gitlab/.ssh’: File exists Obviously problem was introduced by the following commit:

Bug#832491: aboot: please remove build dependency on obsolete package sp

2016-07-25 Thread Neil Roeth
Package: aboot Version: 1.0~pre20040408-4 Severity: normal Tags: patch Dear maintainer, The sp package is obsolete and will be removed from Debian. Please change the build dependency in aboot accordingly (patch attached) or, if you prefer, I can NMU it. Regards. diff -u

Bug#832441: devscripts: CVE-2016-1238 fix

2016-07-25 Thread James McCoy
On Mon, Jul 25, 2016 at 03:48:13PM +0100, Dominic Hargreaves wrote: > An update for this package has been released as part of our handling for > the issue described below. This fixes an instance of the dynamic module > loading vulnerability alluded to. > > I attach the patch I applied for jessie;

Bug#832489: tzdata-java: The Debian 8 package tzdata-java without support openjdk8

2016-07-25 Thread Семёнов Артём Игоревич
Package: tzdata-java Version: 2016f-0+deb8u1 Severity: important Dear Maintainer, The Debian 8 package tzdata-java without support openjdk8. The package doesn't include timezone data-base file tzdb.dat -- System Information: Debian Release: 8.5 APT prefers stable-updates APT policy: (500,

Bug#800168: funny-manpages: Please migrate a supported debhelper compat level

2016-07-25 Thread Logan Rosen
My apologies, here's an updated patch that removes a command in debian/rules to copy the Lintian overrides. Logan diff -u funny-manpages-1.3/debian/control funny-manpages-1.3/debian/control --- funny-manpages-1.3/debian/control +++ funny-manpages-1.3/debian/control @@ -2,11 +2,12 @@ Section: doc

Bug#800168: funny-manpages: Please migrate a supported debhelper compat level

2016-07-25 Thread Logan Rosen
Control: tags -1 patch Dear Maintainer, In Ubuntu, the attached patch was applied to achieve the following: * debian/rules: - Remove legacy DH_COMPAT export. - Use dh_prep instead of dh_clean -k. - Remove obsolete dh_undocumented. * debian/compat: Indicate compatibility level of

Bug#832488: libnpgsql2.2-cil: Client is not registered in machine.config DbProviderFactory.

2016-07-25 Thread Chris Capon
Package: libnpgsql2.2-cil Version: 2.2.7+dfsg3-1 Severity: important Tags: patch Dear Maintainer, To provide DbProviderFactory support, the client component needs to be registered in the machine.config file as well as the GAC. In the machine.config file for each .NET version supported, look

Bug#832359: linux-kbuild-4.6: Please include "scripts/headers_install.sh" and "scripts/unifdef", needed by "scripts/Makefile.headersinst"

2016-07-25 Thread Ben Hutchings
Control: retitle -1 linux-kbuild include useless Makefile.headersinst Control: severity -1 minor Control: severity -1 wontfix On Sun, 2016-07-24 at 17:10 +0200, Jan Luca Naumann wrote: > Package: linux-kbuild-4.6 > Version: 4.6.4-1 > Severity: normal > > In linux-kbuild-* the Makefile

Bug#832487: libmysql6.4-cil: Client is not registered in machine.config DbProviderFactory.

2016-07-25 Thread Chris Capon
Package: libmysql6.4-cil Version: 6.4.3-4 Severity: important Tags: patch Dear Maintainer, To provide DbProviderFactory support, the client component needs to be registered in the machine.config file as well as the GAC. In the machine.config file for each .NET version supported in /etc/mono,

Bug#832451: ITP: aufs4 -- advanced multi layered unification filesystem version 4.x

2016-07-25 Thread Ben Hutchings
On Mon, 2016-07-25 at 21:05 +0200, Thomas Goirand wrote: > On 07/25/2016 06:12 PM, Jan Luca Naumann wrote: > > Package: wnpp > > Severity: wishlist > > Owner: Jan Luca Naumann > > > > * Package name: aufs4 > >   Version : 4.6+20160523 > >   Upstream Author :

Bug#832155: New ssh-session-cleanup.service kills ssh user session during upgrade

2016-07-25 Thread Michael Biebl
Am 24.07.2016 um 17:47 schrieb Colin Watson: > Compromise proposal: how about I make it do nothing if libpam-systemd is > installed (e.g. "ConditionPathExists=!/usr/share/pam-configs/systemd", > which is probably the simplest available check without needing to deal > with multiarch paths), in

Bug#817574: maloc: Removal of debhelper compat 4

2016-07-25 Thread Logan Rosen
Control: tags -1 patch Dear Maintainer, In Ubuntu, the attached patch was applied to achieve the following: * debian/compat: Bump to 9. * debian/control: - Build-depend on debhelper (>= 9). - Add Homepage field. * debian/watch: Add. * debian/copyright: Don't point to symlink

Bug#832470: nmu: deal.ii_8.4.1-1

2016-07-25 Thread Matthias Maier
On Mon, Jul 25, 2016, at 16:05 CDT, Emilio Pozuelo Monfort wrote: > What's the bug number? There is no reported bug so far. > A binNMU to workaround an ABI break is usually the wrong approach, > unless there has been a SONAME bump. libtrilinos-teuchos12 changed ABI from

Bug#832062: supertuxkart: source for GPL song Boom_boom_boom.ogg missing

2016-07-25 Thread James Cowgill
Hi, On Mon, 2016-07-25 at 22:44 +, Jacob's PC Tune-up wrote: >  > The source of the .ogg file is missing. > > The mod is actually in the media repo:  > https://svn.code.sf.net/p/supertuxkart/code/media/trunk/music/mods/Boom_boom_boom.mod It's still a bug - the source has to be in the

Bug#832470: nmu: deal.ii_8.4.1-1

2016-07-25 Thread Graham Inggs
Hi Emilio The bug in trilinos is #830681. There wasn't a SONAME bump, libtrilinos_teuchoscore.so was dynamically linked against libbfd-2.26-system.so which is not allowed. This latest of version of deal.ii is the only reverse dependency of trilinos and only the amd64 build which I uploaded is

Bug#832237: [Pkg-javascript-devel] Bug#832237: libjs-mousetrap: Section should not be “ruby”

2016-07-25 Thread Ben Finney
On 25-Jul-2016, Alexandre Viau wrote: > I wonder where the issue is from? I can confirm that the section > shows as ruby by running apt-get show. I don't know an ‘apt-get show’ command, that gives an error. Both ‘aptitude show’ and ‘apt show’ report that the section is “ruby”. > Perhaps a bit

Bug#832452: twinkle: Crashes during call when switching desktop

2016-07-25 Thread Rob van der Putten
Hi there On Tue, 26 Jul 2016, Geert Stappers wrote: Date: Tue, 26 Jul 2016 00:35:03 From: Geert Stappers To: Rob van der Putten , 832...@bugs.debian.org Subject: Re: Bug#832452: twinkle: Crashes during call when switching desktop On Mon, Jul 25, 2016 at

Bug#832062: supertuxkart: source for GPL song Boom_boom_boom.ogg missing

2016-07-25 Thread Jacob's PC Tune-up
> The source of the .ogg file is missing. The mod is actually in the media repo: https://svn.code.sf.net/p/supertuxkart/code/media/trunk/music/mods/Boom_boom_boom.mod > The license of modarchive modules prohibits modification, so the file would be non- free for Debian anyway (even if the

Bug#832476: addition

2016-07-25 Thread Helios Solaris
Addition: "Automatic" was probably broken by the intel driver before too. I just found an entry I made in /etc/X11/Xsessions.d which set "RGB Broadcast" to full, which now didn't worked anymore because the device/port is now DP-1 instead of DP1. Nevertheless, somewhere is a bug, either in

Bug#832222: foodcritic: Section should not be “ruby”

2016-07-25 Thread Ben Finney
On 25-Jul-2016, Stefano Rivera wrote: > Hi Ben (2016.07.23_05:17:01_-0700) > > The package ‘foodcritic’ installs primarily an application, of > > interest regardless of the programming language. It should not be in > > the “ruby” section. > > foodcritic is a linter for chef cookbooks, which are

Bug#832192: [Python-modules-team] Bug#832192: celeryd: Section should not be “python”

2016-07-25 Thread Brian May
To: Debian-Devel Any ideas what section this package should go into? I don't really care myself, however don't want to move it somewhere and find that I need to move it again. Thanks. Ben Finney writes: > Well, it seems at least a good fit: Celery is a “system

Bug#832452: twinkle: Crashes during call when switching desktop

2016-07-25 Thread Geert Stappers
On Mon, Jul 25, 2016 at 11:30:07PM +0200, Rob van der Putten wrote: > On Mon, 25 Jul 2016, Geert Stappers wrote: > >Please elaborate that, describe how to reproduce the crash. > > - Start twinkle > - Call someone > - Press Ctrl-Fn to switch workspace. > - Wait a few seconds. > This will crash

Bug#832486: Please package yabause 0.19.15

2016-07-25 Thread Markus Koschany
Package: yabause Version: 0.9.14-1 Severity: wishlist Please package the latest version of yabause 0.19.15. I have forwarded Michael's message to pkg-games-devel. Perhaps his files are of use for a future update. Forwarded Message Subject:yabause 0.19.15 Date: Mon,

Bug#832460: World readable .rediscli_history

2016-07-25 Thread kpcyrd
> > Another bug report by @denisvm, this time on the linenoise library: > > https://github.com/antirez/linenoise/issues/121 > > Indeed this looks like it might affect some other packages in Debian: > > https://codesearch.debian.net/search?q=int+linenoiseHistorySave=1 > > Can you check these?

Bug#832485: task-xfce-desktop: uninstallable on kfreebsd due to dependency on light-locker

2016-07-25 Thread Adam Borowski
Package: task-xfce-desktop Version: 3.35 Severity: important Hi! I'm afraid that the xfce task can't be currently installed on kfreebsd. This is especially nasty as xfce is the default DE on that arch. The reason is that it depends on light-locker, which is Linux only. A possible solution is to

Bug#832484: xserver-xorg-core: modesetting on some Intel hw causes hangs on xscreensaver (and on VT switches)

2016-07-25 Thread Francesco Poli (wintermute)
Package: xserver-xorg-core Version: 2:1.18.4-1 Severity: normal Hello X Strike Force, thanks for taking the step to use the modesetting X video driver by default on most Intel graphics hardware. I hope this move will help in solving the issues that many users have been facing in recent times with

Bug#832482: WPG file security bug

2016-07-25 Thread Bastien ROUCARIES
commit 4042a65de0e0bc4402bdb63538bbb54587cbfb7a Author: dirk Date: Sat Feb 6 12:10:10 2016 +0100 Out of bound in wpg file This is a partial fix bug: https://github.com/ImageMagick/ImageMagick/issues/102 origin: upstream,

Bug#832483: Fix out of bound for viff file

2016-07-25 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Bug: https://github.com/ImageMagick/ImageMagick/issues/99 Origin: upstream,

Bug#832482: WPG file security bug

2016-07-25 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Out of bound in wpg file This is a partial fix bug: https://github.com/ImageMagick/ImageMagick/issues/102 origin: upstream,

Bug#832481: Please remove "local stratum 10" from default config file

2016-07-25 Thread Juliusz Chroboczek
Package: chrony Version: 1.30-2+deb8u2 Severity: minor The default config file contains the line local stratum 10 When run on a node with no RTC, this line causes chrony to disrupt the other nodes until the node manages to synchronise with a network node. I suggest commenting it out in the

Bug#832480: Fix head buffer overflow in psd file

2016-07-25 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org bug: https://github.com/ImageMagick/ImageMagick/issues/98 origin: upstream,

Bug#832478: [Pkg-gmagick-im-team] Bug#832478: Fix meta file outofbound access

2016-07-25 Thread Bastien ROUCARIES
Fix meta file outofbound access This is a partial fix bug: https://github.com/ImageMagick/ImageMagick/issues/96 origin: upstream, https://github.com/ImageMagick/ImageMagick/commit/5a34d7ac889bd6645f6cfd164636e3efb56dbb2f bug-ubuntu:

Bug#832478: [Pkg-gmagick-im-team] Bug#832478: Fix meta file outofbound access

2016-07-25 Thread Bastien ROUCARIES
outofbound-LP1537420.meta Description: Binary data

Bug#832479: ValueError: Namespace Poppler not available

2016-07-25 Thread Mark Caglienzi
Package: mat Version: 0.6.1-2 Severity: important Dear Maintainer, I just installed mat, and doing a simple $ mat -c image.jpg gives this error: Traceback (most recent call last): File "/usr/bin/mat", line 10, in from libmat import mat File

Bug#757331: buggy magic: mistakes HTML as unified diff

2016-07-25 Thread Christoph Biedl
tags 757331 confirmed upstream thanks LB wrote... > the problem occurs with a file from the bzr-doc package: > > $ file /usr/share/doc/bzr/html/en/user-guide/shelving_changes.html > /usr/share/doc/bzr/html/en/user-guide/shelving_changes.html: unified diff > output, UTF-8 Unicode text > >

Bug#832478: Fix meta file outofbound access

2016-07-25 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org This is a partial fix bug: https://github.com/ImageMagick/ImageMagick/issues/96 origin: upstream,

Bug#832452: twinkle: Crashes during call when switching desktop

2016-07-25 Thread Rob van der Putten
Hi there On Mon, 25 Jul 2016, Geert Stappers wrote: Please elaborate that, describe how to reproduce the crash. - Start twinkle - Call someone - Press Ctrl-Fn to switch workspace. - Wait a few seconds. This will crash twinkle. - It will also crash if the above is combined with minimised -

Bug#832476: xserver-common: "Broadcast RGB" auto fails on Intel HD + DisplayPort

2016-07-25 Thread helios
Package: xserver-common Version: 2:1.18.4-1 Severity: normal Tags: newcomer Dear Maintainer, This has been a problem earlier with the intel driver. If "Broadcast RGB" was set to auto, my screen connected via displayport was set to limited color space (16-235). I changed this by running "xrandr

Bug#829292: autoconf-archive: new upstream version 2016.03.20

2016-07-25 Thread roucaries bastien
Will do please reprod in end of august if not done On Sat, Jul 2, 2016 at 7:40 AM, Paul Wise wrote: > Package: autoconf-archive > Version: 20150925-1 > Severity: wishlist > > The latest upstream version 2016.03.20 has some changes to AX_CHECK_GL > that would appear to fix macOS

Bug#832477: pu: libtool

2016-07-25 Thread Kurt Roeckx
Package: release.debian.org Tags: jessie User: release.debian@packages.debian.org Usertags: pu Hi, I would like to fix #800446 in stable. It was caused by the uploader not using the current version of automake when uploading the binary package. The i386 and amd64 version need to be build

Bug#832475: Fix a outofbound access for psd file

2016-07-25 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Split of 823750 Fix a outofbound access for psd file Added extra check to fix https://github.com/ImageMagick/ImageMagick/issues/93 origin:

Bug#832433: [Pkg-erlang-devel] Bug#832433: CVE-2016-1000108

2016-07-25 Thread Moritz Mühlenhoff
On Mon, Jul 25, 2016 at 06:04:50PM +0300, Sergei Golovan wrote: > Hi Moritz, > > On Mon, Jul 25, 2016 at 5:03 PM, Moritz Muehlenhoff wrote: > > Source: yaws > > Severity: normal > > Tags: security > > > > http://seclists.org/oss-sec/2016/q3/95 claims that yaws sets > >

Bug#832460: World readable .rediscli_history

2016-07-25 Thread Chris Lamb
> Another bug report by @denisvm, this time on the linenoise library: > https://github.com/antirez/linenoise/issues/121 Indeed this looks like it might affect some other packages in Debian: https://codesearch.debian.net/search?q=int+linenoiseHistorySave=1 Can you check these? I'm about to get

Bug#832474: Fix a heap buffer overflow in psd file handling

2016-07-25 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Split of 823750 Fix a heap buffer overflow in psd file handling Bug: https://github.com/ImageMagick/ImageMagick/issues/92. Origin:

Bug#832452: twinkle: Crashes during call when switching desktop

2016-07-25 Thread Geert Stappers
On Mon, Jul 25, 2016 at 06:15:10PM +0200, Rob van der Putten wrote: > Twinkle works OK until I switch vertual desktop. Please elaborate that, describe how to reproduce the crash. Groeten Geert Stappers -- Leven en laten leven

Bug#828886: lintian: error on .js file even though its .min.js co-exist in the same folder

2016-07-25 Thread Bastien ROUCARIES
On Tue, Jun 28, 2016 at 9:19 PM, Andrew Lee wrote: > Package: lintian > Version: 2.5.44~bpo8+1 > Severity: normal > > Dear Maintainer, > > I am packaging a new package ruby-flot-rails. Lintian complains > source-is-missing error on it's .js files. But it has both .js and >

Bug#832470: nmu: deal.ii_8.4.1-1

2016-07-25 Thread Emilio Pozuelo Monfort
On 25/07/16 22:51, Matthias Maier wrote: > Package: release.debian.org > Severity: normal > User: release.debian@packages.debian.org > Usertags: binnmu > > nmu deal.ii_8.4.1-1 . amd64 . unstable . -m "Rebuild against trilinos > 12.6.3-2 due to ABI change" What's the bug number? A binNMU to

Bug#751281: icedove send (with ntlm) results in SIGSEGV

2016-07-25 Thread Glenn Serre
Good afternoon Carsten, On Mon, Jul 25, 2016 at 1:17 PM, Carsten Schoenert wrote: > Hello Glenn, > > On Wed, Jun 11, 2014 at 10:52:56AM -0700, Glenn Serre wrote: >> Package: icedove >> Version: 30.0~b1-1 >> Severity: important >> >> Dear Maintainer, >> >> Starting about

Bug#831529: gstreamer1.0-libav: segfault when trying to play h264 video

2016-07-25 Thread Philip Rinn
Hi, I was hit by the same bug (which is not restricted to h264 video for me). I can fix it if I set LANG to C, so LANG=C gst-launch-1.0 -v playbin uri=file:///path/to/video.mp4 works for me.Is this the same bug or should I file a new bug? Hope that helps, Philip signature.asc Description:

Bug#669859: closed by Guido Günther <a...@sigxcpu.org> (Re: Bug#669859: icedove startup: user flooded with overlapping reminder and password prompts)

2016-07-25 Thread Daniel Pocock
On 25/07/16 22:09, Carsten Schoenert wrote: > Hello Daniel, > > is this issue still present in recent versions? I'm running icedove 38.7.0-1~deb8u1 and iceowl-extension 38.7.0-1~deb8u1, I didn't see the prompt for CalDAV credentials at all last time I started icedove I still see multiple

Bug#734213: [file] Please detect silverlight xac

2016-07-25 Thread Christoph Biedl
retitle 734213 Missing magic: silverlight tags 734213 moreinfo thanks bastien ROUCARIES wrote... > I wish for lintian to detect silverlight file. Hello, it's been a long time, sorry for that. The file program has evolved a lot since your request, can you please re-check with a recent version?

Bug#832469: HDR file overflow

2016-07-25 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Split of 823750 bug: https://github.com/ImageMagick/ImageMagick/issues/90 bug-ubuntu: https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1537213

Bug#832469: HDR file overflow

2016-07-25 Thread Bastien ROUCARIES
Test case

Bug#832473: synaptic: Cannot change mark from "complete removal" to "removal"

2016-07-25 Thread Kyanos
Package: synaptic Version: 0.83+b1 Severity: minor Dear Maintainer, If I mark a package for complete removal, I cannot change the mark directly to simple removal. Steps to reproduce: 1. Select a package. 2. Mark the package for complete removal.[1] 3. Mark the package for removal.[1] [1]

Bug#820583: flashplugin-nonfree: should notify when an update is not yet available, not just reinstall current version

2016-07-25 Thread Peter Gervai
Package: flashplugin-nonfree Version: 1:3.6.1+b1 Followup-For: Bug #820583 And again. This time, however, this is a major update, which may or may not justify some delay, but still the install re-downloads the same version happily and makes no noise about it. This should be fixed; either

Bug#827941: more hash sum of lena image

2016-07-25 Thread Bastien ROUCARIES
control: tags -1 + moreinfo On Thu, Jun 23, 2016 at 5:44 PM, Jakub Wilk wrote: > * Lumin , 2016-06-23, 01:50: >> >> $ dpkg -L python-matplotlib-data | grep lena | xargs sha224sum > > > The current Lintian code requires SHA-256 digest, not SHA-224. > >

Bug#832471: RM: deal.ii [arm64 armhf i386 mips mips64el mipsel hppa ppc64 sh4 x32] -- ROM; build-depends (trilinos-all-dev, petsc-dev, libtbb-dev) not available on all architectures

2016-07-25 Thread Matthias Maier
Package: ftp.debian.org Severity: normal

Bug#832472: RFS: django-memoize/2.0.0+dfsg-1 [ITP]

2016-07-25 Thread Christopher Hoskin
Package: sponsorship-requests Severity: wishlist Dear Mentors, I am looking for a sponsor for my package "django-memoize" * Package name: django-memoize Version : 2.0.0+dfsg-1 Upstream Author : Thadeus Burgess, Thomas Vavrys * URL :

Bug#832470: nmu: deal.ii_8.4.1-1

2016-07-25 Thread Matthias Maier
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: binnmu nmu deal.ii_8.4.1-1 . amd64 . unstable . -m "Rebuild against trilinos 12.6.3-2 due to ABI change" -- System Information: Debian Release: stretch/sid APT prefers unstable APT policy:

Bug#832418: gmap: no longer builds on all little-endian architectures

2016-07-25 Thread Graham Inggs
Hi Alexandre Thanks for the fast upload! I'm sorry, I made a typo in my bug report and it ended up in your debian/changelog. * Add patch from Graham Inggs fixing FTBFS on armf and amd64 Should be: * Add patch from Graham Inggs fixing FTBFS on armhf and arm64 The description in the patch

Bug#832460: World readable .rediscli_history

2016-07-25 Thread kpcyrd
> > I've contacted upstream on 2016-05-30 without any reaction at all and > > discovered this bug was first reported 3 years ago, still unfixed. > > @RedisLabs keeps referring to their paid support on twitter. > > Boo. Is there an upstream bug# for this or was this reported privately? My report:

Bug#832467: Fix multiple out of bound problem

2016-07-25 Thread Bastien ROUCARIES
commit 033c060a1ec8bf8df6b863208a08eaa8edc0656e Author: Cristy Date: Thu Jan 14 19:55:03 2016 -0500 Fix out of bound access in sun file This is a partial fix for sun file. Bug: https://github.com/ImageMagick/ImageMagick/issues/81 Bug-ubuntu:

Bug#832433: [Pkg-erlang-devel] Bug#832433: Bug#832433: CVE-2016-1000108

2016-07-25 Thread Sergei Golovan
Hi again, Appears that this bug is already fixed upstream (in VCS, not in any release yet): https://github.com/klacke/yaws/commit/9d8fb070e782c95821c90d0ca7372fc6d7316c78#diff-54053c47eb173a90c26ed19bd9d106c1 I could take this patch and prepare the fixes for sid and jessie. Cheers! -- Sergei

Bug#832468: bgpdump: FTBFS on s390x, ppc64, sparc64

2016-07-25 Thread Christoph Biedl
Package: bgpdump Version: 1.4.99.15+hg127-2 Severity: important The bgpdump fails to build on big-endian archs where sizeof(time_t) == sizeof(long) == sizeof(void *) == 8 Reason is the loader for 32 bit timestamps in bgpdump_lib.c:144 that stuffs the data into the first bytes (but is

Bug#832466: ITP: python-ubjson -- Universal Binary JSON encoder/decoder

2016-07-25 Thread Orestis Ioannou
Package: wnpp Severity: wishlist Owner: Orestis Ioannou * Package name: python-ubjson Version : 0.8.5 Upstream Author : 2016 Iotic Labs Ltd vilnis.terma...@iotic-labs.com * URL : https://github.com/Iotic-Labs/py-ubjson * License :

Bug#832467: Fix multiple out of bound problem

2016-07-25 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Split 823750 Fix an out of bound access in rle file. Fix an out of bound access in pict file. Fix an out of bound access in viff file.

Bug#505638: mailman: Mailman dies on log rotation

2016-07-25 Thread Tony Middleton
Sorry - finger trouble. Version should have said 2.1.18. Regards Tony signature.asc Description: OpenPGP digital signature

Bug#763822: Moving towards buildinfo on the archive network

2016-07-25 Thread Jonathan McDowell
Having been impressed by the current status of reproducible builds and the fact it looks like we're close to having the important pieces in Debian proper, I have started to have a look at how I could help out with this bug. I've done some poking around in the dak code, and think I have a vague

Bug#832465: SUN file ABRT signal

2016-07-25 Thread Bastien ROUCARIES
Avoid a SIGABRT in sun file handling This is a partial fix for malformed sun file Bug: http://www.imagemagick.org/discourse-server/viewtopic.php?f=3=26857 Bug-debian: https://bugs.debian.org/832465 Origin: upstream,

Bug#810913: mesa: Enable OpenCL on ppc64el

2016-07-25 Thread Timothy Pearson
> As I understand your first mail in this report, this requires a fix > somewhere first? (I wouldn't want to apply a "temporary" patch in > Debian.) Unfortunately it doesn't look like upstream is going to patch their code. There is a protracted "blame game" going on between mesa and gcc:

Bug#832465: SUN file ABRT signal

2016-07-25 Thread Bastien ROUCARIES
Test case

Bug#505638: mailman: Mailman dies on log rotation

2016-07-25 Thread Tony Middleton
I still seem to have this problem on Debian Mailman 2.18.2. I've only ever noticed it happening on a Sunday but can't be sure that is always the case. Regards Tony qrunner log: ul 24 03:31:09 2016 (7179) Master watcher caught SIGHUP. Re-opening log files. Jul 24 03:31:10 2016 (7180)

Bug#832465: SUN file ABRT signal

2016-07-25 Thread Bastien ROUCARIES
Avoid a SIGABRT in sun file handling This is a partial fix for malformed sun file Bug: http://www.imagemagick.org/discourse-server/viewtopic.php?f=3=26857 Bug-debian: https://bugs.debian.org/832465 Origin: upstream,

Bug#825562: dovecot-imapd: service fail to start at boot time

2016-07-25 Thread pitamila
Hi, Sorry for the late reponse, I'm on holidays, accessing remotely to the box it gives: On 07/22/2016 09:05 AM, Apollon Oikonomopoulos wrote: Control: tags -1 moreinfo Hi, On 21:55 Fri 27 May , zulu wrote: Package: dovecot-imapd Version: 1:2.2.24-1 Severity: normal Dear Maintainer,

Bug#832465: SUN file ABRT signal

2016-07-25 Thread Bastien ROUCARIES
Avoid a SIGABRT in sun file handling This is a partial fix for malformed sun file Bug: http://www.imagemagick.org/discourse-server/viewtopic.php?f=3=26857 Bug-debian: https://bugs.debian.org/823750 Origin: upstream,

Bug#825756: [pkg-cinnamon] Bug#825756: Bug#825756: cinnamon-session: stopped using/working with gpg-agent

2016-07-25 Thread Norbert Preining
Hi Max, > You can always override the autostart desktop files adding a desktop > file to ~/.config/autostart/ with the same name and the content: > [Desktop Entry] > Hidden=true > > I've just tested this with gnome-keyring-ssh and this avoids the > gnome-keyring taking over the SSH_AUTH_SOCK.

Bug#749359: Won't connect to HTTPS in default configuration

2016-07-25 Thread Tobias Gruetzmacher
Package: keepass2 Version: 2.34+dfsg-1 Followup-For: Bug #749359 It seems mono 4.0.2.5+dfsg-1 introduced a ca-certificates-mono package[1], so it would be a good idea to depend on (or recommended) that... Regards, Tobias [1] The changelog reads: [823d507] Add a package to integrate Mono with

Bug#832222: foodcritic: Section should not be “ruby”

2016-07-25 Thread Stefano Rivera
Hi Ben (2016.07.23_05:17:01_-0700) > The package ‘foodcritic’ installs primarily an application, of > interest regardless of the programming language. It should not be in > the “ruby” section. foodcritic is a linter for chef cookbooks, which are written in ruby. Well, chef cookbooks are a

  1   2   3   4   >