Bug#931485: Sourcing .xprofile is missing from /etc/sddm/Xsession

2019-07-05 Thread Hodong Kim
Package: sddm Version: 0.18.0-1 Hello I am using Debian Buster. See: https://github.com/sddm/sddm/blob/v0.18.0/data/scripts/Xsession#L54 Official sddm 0.18 sources .xprofile [ -f /etc/xprofile ] && . /etc/xprofile [ -f $HOME/.xprofile ] && . $HOME/.xprofile But, debian package doesn't source

Bug#928893: Workaround

2019-07-05 Thread Narcis Garcia
Simple: A) Package gnome-disk-utility with this feature disabled, until bug is solved. B) Not including buggy gnome-disk-utility in repositories Is really dangerous for people to have this possibility to loss their data, because of a small piece of bad code or bad release decision. --

Bug#931484: ogmtools: ogmsplit fails to split two different .ogm files created with Handbrake

2019-07-05 Thread Dan Stromberg
Package: ogmtools Version: 1:1.5-4+b1 Severity: normal Dear Maintainer, *** Reporter, please consider answering these questions, where appropriate *** * What led up to the situation? I have a large .ogm file I wish to split into two smaller .ogm files. * What exactly did you do (or

Bug#931483: konsole: Konsole will not launch from mate-panel or from KDE Application Launcher.

2019-07-05 Thread David J. Ring
Package: konsole Version: 4:18.04.0-1 Severity: grave Justification: renders package unusable Dear Maintainer, konsole will not launch from mate-panel shortcut or from KDE Application menu. konsole WILL launch from mate-terminal and will subsequently open both new windows and new tabs.

Bug#594506: konsole crashed (signal 11)

2019-07-05 Thread David J. Ring
Package: konsole Version: 4:18.04.0-1 Followup-For: Bug #594506 Dear Maintainer, Additional information. konsole will not open from KDE Application Menu, nor from the shortcut on the Mate-panel. HOWEVER konsole WILL open when run from mate-terminal. Once it is running, additional windows

Bug#726252: makeinfo 5.2 (or 5) breaks current texi documents

2019-07-05 Thread Norbert Preining
> did you ever got a response to this question? Not that I remember ;-) Norbert -- PREINING Norbert http://www.preining.info Accelia Inc. + IFMGA ProGuide + TU Wien + JAIST + TeX Live + Debian Dev GPG: 0x860CDC13 fp: F7D8 A928 26E3 16A1 9FA0 ACF0 6CAC A448 860C

Bug#931482: Old forbid-versions hanging around in /var/lib/aptitude/pkgstates

2019-07-05 Thread 積丹尼 Dan Jacobson
Package: aptitude Version: 0.8.11-7 Severity: minor The only way to find old ForbidVer entries is # grep-status -sPackage,ForbidVer -F ForbidVer --ge 0 /var/lib/aptitude/pkgstates Package: chromium-common ForbidVer: 74.0.3729.108-1 As one couldn't just look for any "F" in this list # aptitude

Bug#931481: smbclient: Printing via smbspool backend with kerberos auth fails

2019-07-05 Thread Laurent Grawet
Package: smbclient Version: 2:4.9.5+dfsg-5 Severity: important Tags: patch upstream Hi, Please see Samba bug #13832 for details and patch. https://bugzilla.samba.org/show_bug.cgi?id=13832 The bug is fixed in Samba 4.9.7. Thanks, Laurent -- System Information: Debian Release: 10.0 APT

Bug#931480: RFP: opentaxsolver -- open source USA tax software

2019-07-05 Thread jonathan daniel mooney
Package: wnpp Severity: wishlist * Package name: opentaxsolver Version : 16.06 Upstream Author : Name aston_robe...@yahoo.com * URL : http://opentaxsolver.sourceforge.net/index.html * License : GPLv2 Programming Lang: C Description : open source USA tax

Bug#931479: libosinfo: CVE-2019-13313

2019-07-05 Thread Salvatore Bonaccorso
Source: libosinfo Version: 1.2.0-1 Severity: normal Tags: security upstream Forwarded: https://www.redhat.com/archives/libosinfo/2019-July/msg00026.html Control: found -1 1.0.0-2 Hi, The following vulnerability was published for libosinfo. CVE-2019-13313[0]: | libosinfo 1.5.0 allows local users

Bug#866472: Uniconvertor 2.0 upstream depends on python-pil and has some .debs

2019-07-05 Thread Xavi Drudis Ferran
Well, for what is worth here're the files for a package that builds and install on buster for uniconvertor-2.0rc4. But I haven't tested. Only did a sg to pdf conversion once. I may have done lots of things wrong, of course. So far it does no seem to require sk1libs.

Bug#931478: squid: CVE-2019-13345

2019-07-05 Thread Salvatore Bonaccorso
Source: squid Version: 4.6-2 Severity: important Tags: security upstream Forwarded: https://bugs.squid-cache.org/show_bug.cgi?id=4957 Control: found -1 4.6-1 Hi, The following vulnerability was published for squid. CVE-2019-13345[0]: | The cachemgr.cgi web module of Squid through 4.7 has XSS

Bug#931459: release-notes: Release notes: mention re-introduction of the standard live image

2019-07-05 Thread Paul Gevers
Hi, On 05-07-2019 21:41, Justin B Rye wrote: > Paul Gevers wrote: >> There is now also >> https://salsa.debian.org/ddp-team/release-notes/merge_requests/45/diffs >> which touches on the same point, but is a bit more extensive. > > I notice it also has > * some Unicode apostrophes; > * and

Bug#931477: libhtp: Please replace Priority: extra with Priority: optional

2019-07-05 Thread Boyuan Yang
Source: libhtp Version: 1:0.5.30-1 Severity: minor Dear libhtp maintainers, As indicated in https://lintian.debian.org/tags/priority-extra-is-replaced-by-priority-optional.html , your package is still using the deprecated Priority: extra instead of Priority: optional. Please replace "extra"

Bug#931476: nsd: CVE-2019-13207

2019-07-05 Thread Salvatore Bonaccorso
Source: nsd Version: 4.1.26-1 Severity: important Tags: security upstream Forwarded: https://github.com/NLnetLabs/nsd/issues/20 Control: found -1 4.1.14-1 Hi, The following vulnerability was published for nsd. CVE-2019-13207[0]: | nsd-checkzone in NLnet Labs NSD 4.2.0 has a Stack-based Buffer |

Bug#931459: release-notes: Release notes: mention re-introduction of the standard live image

2019-07-05 Thread Justin B Rye
Paul Gevers wrote: > There is now also > https://salsa.debian.org/ddp-team/release-notes/merge_requests/45/diffs > which touches on the same point, but is a bit more extensive. I notice it also has * some Unicode apostrophes; * and Unicode quotes instead of s; * one en_GB spelling, "flavour";

Bug#931468: ITP: smilodon -- ActivityPub server with an opt-in workflow

2019-07-05 Thread Jonas Smedegaard
control: owner -1 ! control: retitle -1 ITP: smilodon -- ActivityPub server with an opt-in workflow -- * Jonas Smedegaard - idealist & Internet-arkitekt * Tlf.: +45 40843136 Website: http://dr.jones.dk/ [x] quote me freely [ ] ask before reusing [ ] keep private signature.asc

Bug#859741: RTP: mastodon -- A GNU Social-compatible microblogging server

2019-07-05 Thread Jonas Smedegaard
control: owner -1 ! control: retitle -1 RTP: mastodon -- A GNU Social-compatible microblogging server -- * Jonas Smedegaard - idealist & Internet-arkitekt * Tlf.: +45 40843136 Website: http://dr.jones.dk/ [x] quote me freely [ ] ask before reusing [ ] keep private signature.asc

Bug#931475: mupdf: CVE-2019-13290

2019-07-05 Thread Salvatore Bonaccorso
Source: mupdf Version: 1.14.0+ds1-4 Severity: important Tags: security upstream Forwarded: https://bugs.ghostscript.com/show_bug.cgi?id=701118 Hi, The following vulnerability was published for mupdf. CVE-2019-13290[0]: | Artifex MuPDF 1.15.0 has a heap-based buffer overflow in |

Bug#931459: release-notes: Release notes: mention re-introduction of the standard live image

2019-07-05 Thread Paul Gevers
There is now also https://salsa.debian.org/ddp-team/release-notes/merge_requests/45/diffs which touches on the same point, but is a bit more extensive. Paul On 05-07-2019 15:15, Justin B Rye wrote: > jonathan wrote: >> Debian Live Buster re-introduces the standard live image. This is a >> basic

Bug#803119: [Debian-rtc-admin] prosody config, status update

2019-07-05 Thread gustavo panizzo
Hi On Sat, Jun 15, 2019 at 11:27:48AM +0800, gustavo panizzo wrote: I'm moving next week, don't expect much from me until next weekend or so i'm back online, victor (or anybody else) had a change to take a look to the code? Great work Gustavo. Thank you for this! Cheers, Victor [1]

Bug#931474: network-manager: does not automatically connect to hidden network

2019-07-05 Thread Axel Stammler
Package: network-manager Version: 1.14.6-2 Severity: normal Dear Maintainer, the manager automatically connects to ethernet and visible wireless connections but nut to a hidden wireless network even though a manually established connection works perfectly and the option to automatically

Bug#726252: makeinfo 5.2 (or 5) breaks current texi documents

2019-07-05 Thread Hilmar Preuße
found 726252 6.5.0.dfsg.1-5 stop On 18.10.13 04:14, Norbert Preining wrote: Hi Norbert, did you ever got a response to this question? Hilmar > it seems that some changes to makeinfo broke some old texi files. > > The vera.texi from the vera distribution > ftp://ftp.gnu.org/gnu/vera/ >

Bug#874908: [grantlee] Future Qt4 removal from Buster

2019-07-05 Thread Moritz Mühlenhoff
On Sat, Sep 09, 2017 at 09:05:49PM +0200, Lisandro Damián Nicanor Pérez Meyer wrote: > Source: grantlee > Version: 0.4.0-4 > Severity: wishlist > User: debian-qt-...@lists.debian.org > Usertags: qt4-removal The changelog mentions that as of 5.0.0 upstream switched to Qt5. Cheers, Moritz

Bug#615596: tex4ht: mk4ht dblatex file.tex fails with xtpipes error

2019-07-05 Thread Hilmar Preuße
severity 615596 minor stop On 27.02.11 18:05, Martin Dietze wrote: Hi Martin, > Calling mk4ht dblatex some_file.tex results in this error: > > System call: java -classpath /usr/share/tex4ht/tex4ht.jar xtpipes -i > /usr/share/texmf/tex4ht/xtpipes/ -o some_file.xml some_file.tmp > --- xtpipes

Bug#805401: /bin/ping6: ping6 does not correctly handle avahi .local addresses

2019-07-05 Thread Noah Meyerhans
Control: reassign -1 libnss-mdns On Sat, Oct 06, 2018 at 04:53:00PM +0200, Benjamin Peter wrote: > just a moment after writing I found an article, saying to modify > nsswitch.conf as follows > > hosts: files mdns_minimal [NOTFOUND=return] dns mdns > #hosts: files mdns4_minimal

Bug#931346: [PATCH] Add additional resolutions for 16:9 displays: 1600x900 and 2560x1440

2019-07-05 Thread Uwe Kleine-König
From: Uwe Kleine-König This allows to have qemu run at the native screen resolution of my (physical) monitor. This is inspired by a patch created by Andreas Dangel that I found on https://adangel.org/2015/09/11/qemu-kvm-custom-resolutions/ . --- Andreas's patch applied to 1.12.0, I rebased it

Bug#910344: libgssapi-krb5-2: conffiles not removed

2019-07-05 Thread Martin-Éric Racine
It is very much expected to be resolved. Please see: https://manpages.debian.org/wheezy/dpkg/dpkg-maintscript-helper.1.en.html pe 5. heinäk. 2019 klo 18.58 Benjamin Kaduk (ka...@mit.edu) kirjoitti: > > On Fri, Jul 05, 2019 at 06:35:20PM +0300, Martin-Éric Racine wrote: > > > > This issue is

Bug#931473: hostapd: Stretch to Buster: broken systemd integration

2019-07-05 Thread Martin-Éric Racine
Package: hostapd Version: 2:2.7+git20190128+0c1e29f-6 Severity: important -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 After upgrading from Stretch to Buster, the hostapd stanza in /etc/network/interfaces is ignored. Instead, systemd tries to force-start hostapd, which fails anyhow, since

Bug#615596: tex4ht: mk4ht dblatex file.tex fails with xtpipes error

2019-07-05 Thread Hilmar Preuße
forwarded 615596 https://puszcza.gnu.org.ua/bugs/index.php?430 stop On 27.02.11 18:05, Martin Dietze wrote: Hi Martin > Calling mk4ht dblatex some_file.tex results in this error: > > System call: java -classpath /usr/share/tex4ht/tex4ht.jar xtpipes -i > /usr/share/texmf/tex4ht/xtpipes/ -o

Bug#910344: libgssapi-krb5-2: conffiles not removed

2019-07-05 Thread Benjamin Kaduk
On Fri, Jul 05, 2019 at 06:35:20PM +0300, Martin-Éric Racine wrote: > > This issue is still not resolved in Buster, which is scheduled to become the > new STABLE release tomorrow. To me the bug history implies that it is not expected to be resolved, ever. Do you think otherwise? If so, what

Bug#911744: thermald: conffiles not removed

2019-07-05 Thread Martin-Éric Racine
Package: thermald Followup-For: Bug #911744 -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 This issue is still not resolved in Buster, which is scheduled to become the new STABLE release tomorrow. - -- System Information: Debian Release: 10.0 APT prefers testing APT policy: (500,

Bug#910344: libgssapi-krb5-2: conffiles not removed

2019-07-05 Thread Martin-Éric Racine
Package: libgssapi-krb5-2 Version: 1.17-3 Followup-For: Bug #910344 -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 This issue is still not resolved in Buster, which is scheduled to become the new STABLE release tomorrow. - -- System Information: Debian Release: 10.0 APT prefers testing APT

Bug#931462: pcscd: Hangs after a ykman info

2019-07-05 Thread Ludovic Rousseau
Le 05/07/2019 à 16:56, Julien Palard a écrit : Hello Ludovic, It could be interesting to have a pcscd log as documented athttps://pcsclite.apdu.fr/#support Here are the requested infos: $ ykman info Device type: YubiKey 4 [...] Firmware version: 4.3.5 Enabled USB interfaces: OTP+FIDO+CCID

Bug#931472: grub2-common: Stretch to Buster: two oldconfigs remaining

2019-07-05 Thread Martin-Éric Racine
Package: grub2-common Version: 2.02+dfsg1-20 Severity: normal -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 During the upgrade from Stretch to Buster, dpkg reported the following oldconfig: grub2-common: /etc/kernel/postrm.d/zz-update-grub grub2-common: /etc/kernel/postinst.d/zz-update-grub

Bug#931471: deborphan: oldconfig: /etc/bash_completion.d/deborphan

2019-07-05 Thread Martin-Éric Racine
Package: deborphan Version: 1.7.31 Severity: normal -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 During the upgrade from Stretch to Buster, dpkg reported the following oldconfig: /etc/bash_completion.d/deborphan This should have been removed by maintainer script helpers. - -- System

Bug#931470: In debian buster: apparmor denies sys_rawio capability from libvirtd which happens when using scsi disks

2019-07-05 Thread Katerina Koukiou
Package:libapparmor1 When trying to create VMs with disks on scsi apparmor will show warnings in journal. Relevant packages versions: libapparmor1/testing,now 2.13.2-10 amd64 libvirt-daemon-system/testing,now 5.0.0-4 amd64 The apparmor warning line from journal is the following: audit:

Bug#931469: apt-show-versions: oldconfig: /etc/bash_completion.d/apt-show-versions

2019-07-05 Thread Martin-Éric Racine
Package: apt-show-versions Version: 0.22.11 Severity: normal -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 During the upgrade from Stretch to Buster, dpkg reported the following oldconfig: /etc/bash_completion.d/apt-show-versions This should have been removed by maintainer script helpers. -

Bug#928672: firmware-misc-nonfree: please include GV100 signed firmware

2019-07-05 Thread Martin-Éric Racine
Package: firmware-misc-nonfree Version: 20190114-1 Followup-For: Bug #928672 -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 This issue remains unresolved in Buster, which will become the Stable release tomorrow. - -- System Information: Debian Release: 10.0 APT prefers testing APT policy:

Bug#931462: pcscd: Hangs after a ykman info

2019-07-05 Thread Julien Palard
Hello Ludovic, > It could be interesting to have a pcscd log as documented > athttps://pcsclite.apdu.fr/#support Here are the requested infos: $ ykman info Device type: YubiKey 4 [...] Firmware version: 4.3.5 Enabled USB interfaces: OTP+FIDO+CCID Applications OTP Enabled FIDO U2F

Bug#931468: RFP: smilodon -- ActivityPub server with an opt-in workflow

2019-07-05 Thread David
Package: wnpp Severity: wishlist * Package name: smilodon Version : 1.0 Upstream Author : Purism SPC * URL : https://source.puri.sm/liberty/smilodon * License : AGPL-3.0-or-later Programming Lang: Ruby Description : ActivityPub server with an opt-in

Bug#931389: LXQt: SDDM does not start

2019-07-05 Thread Kevin Williams
On 7/5/2019 9:30 AM, Steve McIntyre wrote: > On Fri, Jul 05, 2019 at 02:09:24AM +, Kevin Williams wrote: >> On 7/4/19 11:21 AM, Steve McIntyre wrote: >>> >>> That's odd. I've just done a test installation of lxqt here in >>> qemu/kvm using that image and I can't reproduce your problem - see

Bug#931467: reportbug-gtk: Crashes after setting package name

2019-07-05 Thread David
Package: reportbug-gtk Version: 7.5.2 Severity: important Dear Maintainer, *** Reporter, please consider answering these questions, where appropriate *** * What led up to the situation? Started reportbug-gtk and attempted to log bug. * What exactly did you do (or not do) that was

Bug#931389: LXQt: SDDM does not start

2019-07-05 Thread Steve McIntyre
On Fri, Jul 05, 2019 at 02:09:24AM +, Kevin Williams wrote: >On 7/4/19 11:21 AM, Steve McIntyre wrote: >> >> That's odd. I've just done a test installation of lxqt here in >> qemu/kvm using that image and I can't reproduce your problem - see >> >>

Bug#931002: rust-coresimd: FTBFS (unrecognized platform-specific intrinsic function: `x86_rdrand16_step`unrecognized platform-specific intrinsic function: `x86_rdrand16_step`)

2019-07-05 Thread Henri Sivonen
> For future release, a better way of handling this will be needed. The fact > that these updates break random other packages isn't really acceptable. The fix in sid involved patching encoding_rs 0.8.15, which addressed the simd crate problem. The reason why simd complied previously and got

Bug#931463: tinc: Tinc fail up script because of network.target

2019-07-05 Thread Michael Tokarev
05.07.2019 16:18, Simone Piccardi wrote: Package: tinc Version: 1.0.35-2 Severity: normal Dear Maintainer, when starting tinc on a server using bridges as main interfaces (it's used to run VM) it starts but it fails in the up script execution to setup network routes, because interfaces are

Bug#924449: lintian: Periodic "out of disk space" errors from lindsay.d.o

2019-07-05 Thread Felix Lechner
Hi François, On Fri, Jul 5, 2019 at 2:03 AM Francois Gouget wrote: > > I'm also running into "out of disk space" errors caused by Lintian. > These happen when I check a 240 MB package Would you please provide a link to this package? Kind regards Felix

Bug#931462: pcscd: Hangs after a ykman info

2019-07-05 Thread Ludovic Rousseau
Hello Julien, Le 05/07/2019 à 15:17, Julien Palard a écrit : Package: pcscd Version: 1.8.25-1 Severity: normal When I use the following sequence of commands: $ ssh-add -s /usr/lib/x86_64-linux-gnu/opensc-pkcs11.so $ ssh remote_host hostname $ ykman info $ ssh remote_host hostname the 2nd ssh

Bug#931466: mailavenger: under systemd, tries to start at install, despite having no config

2019-07-05 Thread Philip Hands
Package: mailavenger Version: 0.8.5-1 Severity: normal Hi Dererk, As mentioned in #931085, I noticed that mailavenger now installs a systemd unit file, which causes it to try to run the mailavenger daemon during the install. If one has not already provided a configuration, this fails, which is

Bug#931465: monkeysphere-authentication: improve OpenPGP certificate retrieval

2019-07-05 Thread Daniel Kahn Gillmor
Package: monkeysphere Version: 0.44-1 Severity: wishlist Given the ongoing troubles with OpenPGP certificate distribution (SKS certificate flooding, etc), it would be good to have a way to manually inject certificates that the monkeysphere-authentication subsystem could know about. It would also

Bug#931464: movim: deamon start "--no-ansi" option doesn't work

2019-07-05 Thread Jean-Michel Vourgère
Package: movim Version: 0.14.1-5 Severity: normal Dear Maintainer, I just tried buster's movim. I have a black background and php daemon.php start --url=https://movim.nirgal.com/ --port=8080 --no-ansi -vvv prints text in dark blue over black, which is unreadable. I expected --no-ansi to

Bug#931463: tinc: Tinc fail up script because of network.target

2019-07-05 Thread Simone Piccardi
Package: tinc Version: 1.0.35-2 Severity: normal Dear Maintainer, when starting tinc on a server using bridges as main interfaces (it's used to run VM) it starts but it fails in the up script execution to setup network routes, because interfaces are still not up (on bridge it takes a while to go

Bug#930676: goplay: Should this package be removed?

2019-07-05 Thread Miriam Ruiz
> goplay has not received any updates since 2015, it uses libept, > which we'd like to get rid of eventually I think, as it's also > unmaintained, so I think it would be best to remove it. I agree. I think it should be removed. Miry

Bug#931462: pcscd: Hangs after a ykman info

2019-07-05 Thread Julien Palard
Package: pcscd Version: 1.8.25-1 Severity: normal When I use the following sequence of commands: $ ssh-add -s /usr/lib/x86_64-linux-gnu/opensc-pkcs11.so $ ssh remote_host hostname $ ykman info $ ssh remote_host hostname the 2nd ssh won't work, I'll get: sign_and_send_pubkey: signing failed:

Bug#931459: release-notes: Release notes: mention re-introduction of the standard live image

2019-07-05 Thread Justin B Rye
jonathan wrote: > Debian Live Buster re-introduces the standard live image. This is a > basic Debian image that contains a base Debian system without any > graphical user interface. Because it installs from a squashfs image > rather than installing the system files using dpkg, installation times >

Bug#931461: ITP: sentry-python -- New Python SDK for Sentry.io

2019-07-05 Thread William Grzybowski
Package: wnpp Severity: wishlist Owner: William Grzybowski * Package name: sentry-python Version : 0.9.5 Upstream Author : William Grzybowski * URL : https://github.com/getsentry/sentry-python * License : BSD-2-Clause Programming Lang: Python Description

Bug#645078: To be salvaged by Debian Science or removed: coinor-dylp

2019-07-05 Thread Andreas Tille
Hi folks, by chance I stumbled upon coinor-dylp[1]. As far as I remember Soeren Sonneburg is MIA and he is fine if any of his package are taken over by Debian Science team (its orphaned anyway - see #645078). I've checked popcon vor votes[2] which is not really impressive - but may be that's

Bug#931460: x2goserver: rstudio not starting

2019-07-05 Thread W Forum W
Package: x2goserver Version: 4.1.0.3-3~bpo9+1 Severity: important Tags: upstream When I try to run rstudio (from https://download1.rstudio.org/desktop/debian9/x86_64/rstudio-1.2.1335-amd64.deb) I get following error qt.qpa.xcb: X server does not support XInput 2

Bug#931459: release-notes: Release notes: mention re-introduction of the standard live image

2019-07-05 Thread jonathan
Package: release-notes Severity: normal Debian Live Buster re-introduces the standard live image. This is a basic Debian image that contains a base Debian system without any graphical user interface. Because it installs from a squashfs image rather than installing the system files using dpkg,

Bug#931458: [freecad] SIGSEV at creating a new file

2019-07-05 Thread Georg Gast
Package: freecad Version: 0.18~pre1+dfsg1-5+rpi1 Severity: normal --- Please enter the report below this line. --- Dear maintainer, i get a SIGSEV as i create a new file in freecad. It happens every time on my device. As this is a raspberry pi 4 with raspian buster, i asked in the forums

Bug#931433: unzip: CVE-2019-13232

2019-07-05 Thread Salvatore Bonaccorso
Hi Santiago, On Fri, Jul 05, 2019 at 12:57:31PM +0200, Santiago Vila wrote: > On Thu, Jul 04, 2019 at 10:50:46PM +0200, Salvatore Bonaccorso wrote: > > Source: unzip > > Version: 6.0-23 > > Severity: important > > Tags: security upstream > > Control: found -1 6.0-21+deb9u1 > > Control: found -1

Bug#931139: perl: switching locales no longer invalidates gettext translation cache

2019-07-05 Thread Niko Tyni
On Thu, Jul 04, 2019 at 09:06:33PM +0300, Niko Tyni wrote: > On Thu, Jul 04, 2019 at 08:04:52PM +0300, Niko Tyni wrote: > > > > Starting with Perl 5.28, Perl uses POSIX 2008 thread-safe locales, so > > > it calls uselocale(3) underneath when the Perl side POSIX::setlocale() > > > function is

Bug#931457: imagemagick: CVE-2019-13295

2019-07-05 Thread Salvatore Bonaccorso
Source: imagemagick Version: 8:6.9.10.23+dfsg-2.1 Severity: important Tags: security upstream Forwarded: https://github.com/ImageMagick/ImageMagick/issues/1608 Hi, The following vulnerability was published for imagemagick. CVE-2019-13295[0]: | ImageMagick 7.0.8-50 Q16 has a heap-based buffer

Bug#931456: libc6: uselocale(3) does not invalidate gettext translation cache

2019-07-05 Thread Niko Tyni
Package: libc6 Version: 2.28-10 Severity: normal As discussed in https://bugs.debian.org/931139 and https://bugs.debian.org/924657 glibc has a cache of already loaded gettext translations that gets invalidated (by incrementing _nl_msg_cat_cntr) in setlocale(3), bindtextdomain(3) and textdomain(3)

Bug#931455: imagemagick: CVE-2019-13297

2019-07-05 Thread Salvatore Bonaccorso
Source: imagemagick Version: 8:6.9.10.23+dfsg-2.1 Severity: important Tags: security upstream Forwarded: https://github.com/ImageMagick/ImageMagick/issues/1609 Hi, The following vulnerability was published for imagemagick. CVE-2019-13297[0]: | ImageMagick 7.0.8-50 Q16 has a heap-based buffer

Bug#931454: imagemagick: CVE-2019-13300

2019-07-05 Thread Salvatore Bonaccorso
Source: imagemagick Version: 8:6.9.10.23+dfsg-2.1 Severity: important Tags: security upstream Forwarded: https://github.com/ImageMagick/ImageMagick/issues/1586 Hi, The following vulnerability was published for imagemagick. CVE-2019-13300[0]: | ImageMagick 7.0.8-50 Q16 has a heap-based buffer

Bug#931453: imagemagick: CVE-2019-13304

2019-07-05 Thread Salvatore Bonaccorso
Source: imagemagick Version: 8:6.9.10.23+dfsg-2.1 Severity: important Tags: security upstream Forwarded: https://github.com/ImageMagick/ImageMagick/issues/1614 Hi, The following vulnerability was published for imagemagick. CVE-2019-13304[0]: | ImageMagick 7.0.8-50 Q16 has a stack-based buffer

Bug#756978: .tar-less push

2019-07-05 Thread Ian Jackson
Control: close -1 I'm not sure this is very actionable any more. Hopefully forthcoming ideas about "push to upload" will make this unnecessary. Ian. -- Ian JacksonThese opinions are my own. If I emailed you from an address @fyvzl.net or @evade.org.uk, that is a private address which

Bug#931452: imagemagick: CVE-2019-13305

2019-07-05 Thread Salvatore Bonaccorso
Source: imagemagick Version: 8:6.9.10.23+dfsg-2.1 Severity: important Tags: security upstream Forwarded: https://github.com/ImageMagick/ImageMagick/issues/1613 Hi, The following vulnerability was published for imagemagick. CVE-2019-13305[0]: | ImageMagick 7.0.8-50 Q16 has a stack-based buffer

Bug#931433: unzip: CVE-2019-13232

2019-07-05 Thread Santiago Vila
On Thu, Jul 04, 2019 at 10:50:46PM +0200, Salvatore Bonaccorso wrote: > Source: unzip > Version: 6.0-23 > Severity: important > Tags: security upstream > Control: found -1 6.0-21+deb9u1 > Control: found -1 6.0-21 > > Hi, > > The following vulnerability was published for unzip. > >

Bug#244506: info: menu lacks icon

2019-07-05 Thread Hilmar Preuße
tags 244506 + pending stop On 05.07.19 12:11, Norbert Preining wrote: >> Branch ist named info_logo. Kindly have a look. > > Merged, thanks. I deleted the branch on the server after merging. > > Can you please also write a changelog entry, thanks a lot > Done. Tag Pending. H. -- sigfault

Bug#244506: info: menu lacks icon

2019-07-05 Thread Norbert Preining
> Branch ist named info_logo. Kindly have a look. Merged, thanks. I deleted the branch on the server after merging. Can you please also write a changelog entry, thanks a lot Norbert -- PREINING Norbert http://www.preining.info Accelia Inc. + IFMGA ProGuide + TU

Bug#931451: Missing boot flag for /boot/efi when using gpt or gpt-bios disk label

2019-07-05 Thread Thomas Lange
Package: fai-setup-storage Version: 5.8.4 When using a GPT disk label the partition /boot/efi needs the flag boot. This is not set. It's also not set when using the FAI option gpt-bios. -- regards Thomas

Bug#931450: ITP: r-cran-fdrtool -- GNU R estimation of false discovery dates and higher criticism

2019-07-05 Thread Andreas Tille
Package: wnpp Severity: wishlist Subject: ITP: r-cran-fdrtool -- GNU R estimation of false discovery dates and higher criticism Package: wnpp Owner: Andreas Tille Severity: wishlist * Package name: r-cran-fdrtool Version : 1.2.15 Upstream Author : Bernd Klaus and Korbinian

Bug#931449: imagemagick: CVE-2019-13306

2019-07-05 Thread Salvatore Bonaccorso
Source: imagemagick Version: 8:6.9.10.23+dfsg-2.1 Severity: important Tags: security upstream Forwarded: https://github.com/ImageMagick/ImageMagick/issues/1612 Hi, The following vulnerability was published for imagemagick. CVE-2019-13306[0]: | ImageMagick 7.0.8-50 Q16 has a stack-based buffer

Bug#931448: imagemagick: CVE-2019-13307

2019-07-05 Thread Salvatore Bonaccorso
Source: imagemagick Version: 8:6.9.10.23+dfsg-2.1 Severity: important Tags: security upstream Forwarded: https://github.com/ImageMagick/ImageMagick/issues/1615 Hi, The following vulnerability was published for imagemagick. CVE-2019-13307[0]: | ImageMagick 7.0.8-50 Q16 has a heap-based buffer

Bug#931447: imagemagick: CVE-2019-13308

2019-07-05 Thread Salvatore Bonaccorso
Source: imagemagick Version: 8:6.9.10.23+dfsg-2.1 Severity: important Tags: security upstream Forwarded: https://github.com/ImageMagick/ImageMagick/issues/1595 Hi, The following vulnerability was published for imagemagick. CVE-2019-13308[0]: | ImageMagick 7.0.8-50 Q16 has a heap-based buffer

Bug#931430: X Server in PowerPC Debian SID Xorg is Unusably Slow on Wallstreet

2019-07-05 Thread Michel Dänzer
On 2019-07-04 8:56 p.m., user...@yahoo.com wrote: > Package: xorg-server > Version: 1.20 > > After installing Debian sid on a PowerBook G3 Wallstreet > (292 MHz, 512 MB memory) and selecting the default Debian > desktop and Xfce, I noticed that the desktop is unusably > slow. Just moving or

Bug#880407: #880407 xterm: font issue with FreeType 2.8; should not use the rounded ascender and descender

2019-07-05 Thread Vincent Lefevre
Control: found -1 347-1 Control: tags -1 patch Patch at https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=880407#100 On 2019-05-20 15:54:42 +0200, Vincent Lefevre wrote: > The attached patch, which decreasing both ascent and descent by 1 when > height < ascent + descent, avoids this font height

Bug#924449: lintian: Periodic "out of disk space" errors from lindsay.d.o

2019-07-05 Thread Francois Gouget
I'm also running into "out of disk space" errors caused by Lintian. These happen when I check a 240 MB package because lintian fills /tmp which, being on a tmpfs filesystem as is the default on Debian (as far as I know) only has about 2 GB of available space. tmpfs on /tmp type tmpfs

Bug#931446: lintian: corrections-case contains invalid lines

2019-07-05 Thread Francois Gouget
Package: lintian Version: 2.15.0 Severity: normal Dear Maintainer, /usr/share/lintian/data/spelling/corrections-case contains some invalid lines. That file's format is described in the initial comment: # The format of each line is: # mistake||correction But lintian 2.15.0 contains the

Bug#931080: here's a package

2019-07-05 Thread Gürkan Myczko
that's lintian clean, based on your work, however the debian/copyright needs more fixes http://phd-sid.ethz.ch/debian/asciiflowqt/upstream-deb/ best,

Bug#244506: info: menu lacks icon

2019-07-05 Thread Hilmar Preuße
On 05.07.19 01:02, Norbert Preining wrote: > On Thu, 04 Jul 2019, Hilmar Preuße wrote: Hi, >> May I commit the changes? > > COuld you push them for now to a different branch so that I can take a > look at them, please? > Branch ist named info_logo. Kindly have a look. Hilmar -- sigfault

Bug#642596: Time for version upgrade

2019-07-05 Thread Ralf Stubner
Package: fonts-oflb-asana-math Version: 000.907-6 Followup-For: Bug #642596 Dear Maintainer, any news on updating the Asana Math fonts from CTAN? Is there any way I could help? cheerio ralf -- Package-specific info: Desired=Unknown/Install/Remove/Purge/Hold |

Bug#767871: tex4ht: htlatex cannot find latex

2019-07-05 Thread Hilmar Preuße
tags 767871 + pending stop On 05.07.19 04:28, Norbert Preining wrote: > On Thu, 04 Jul 2019, Hilmar Preuße wrote: Hi, >> of all cases. I tend to add suggest: texlive-latex-base to >> texlive-plain-generic. > > I would say depends is also fine. > I voted for recommends, which is effectively

Bug#931445: RFS: wxmaxima/19.07.0-1

2019-07-05 Thread Gunter Königsmann
Package: sponsorship-requests Severity: normal Dear mentors, I am looking for a sponsor for my package "wxmaxima" * Package name: wxmaxima Version : 19.07.0-1 Upstream Author : Wolfgang Dautermann and Gunter Königsmann * URL :

Bug#931444: ncdu: progress dialog: for dirs with many files, total items can almost overlap size

2019-07-05 Thread Paul Wise
Package: ncdu Version: 1.13-1+b1 Severity: minor For directories that have many subdirectories and many files, in the ncdu progress dialog the total items count can encroach on and almost overlap the total size count: Total items: 20161797size: 123.4 GiB I would expect that the code should

Bug#851547: gnome-shell: under Wayland, alt-tab switcher fails when using focus-follow-mouse

2019-07-05 Thread Antonis Christofides
Apparently this is the upstream bug report: https://bugzilla.gnome.org/show_bug.cgi?id=739718