Bug#1020802: libz3-4: Xorg crashes on startup due to illegal instruction (SSE2) in libz3-4

2022-10-12 Thread Russ Dill
> The package pulling in libz3-4 into the dependency chain is libllvm14. > I've noticed the ubuntu version of the package does not link against > libz3-4 and the libz3-4 package can be removed from the system and > xorg and mesa function just fine. Perhaps a version of libllvm14 > compiled without

Bug#1020802: libz3-4: Xorg crashes on startup due to illegal instruction (SSE2) in libz3-4

2022-10-12 Thread Russ Dill
On Tue, Oct 11, 2022 at 4:06 AM karogyoker999 wrote: > > > As far as I see your MR just adds a dependency to sse2-support, > > which I guess just makes the installation abort in case of a CPU > > not supporting sse2, so I guess this would just make > > mesa not installable on your hardware? > >

Bug#1021678: [Pkg-rust-maintainers] Bug#1021678: Bug#1021678: rust-object: autopkgtest failure on s390x

2022-10-12 Thread Wolfgang Silbermayr
Am 13.10.22 um 01:23 schrieb Peter Green: 3. Apply the upstream fix as Debian packages, hope any resulting API breakage    is manageable. I did a quick regex search on https://codesearch.debian.not/ for "\bshndx\b package:^rust*", and that only revealed two source packages, namely

Bug#1021693: RFP: buskill -- app for arming/disarming/configuring the BusKill laptop kill cord

2022-10-12 Thread Francois Marier
Package: wnpp Severity: wishlist * Package name: buskill Version : 0.5.0 Upstream Author : Michael Altfield * URL : https://github.com/BusKill/buskill-app * License : GPL-3.0 Programming Lang: Python Description : app for arming/disarming/configuring

Bug#1021692: zint: incorrect Homepage link

2022-10-12 Thread Paul Wise
Source: zint Version: 2.11.1-1 Severity: minor The Homepage link points at the zint SourceForge project, but that points at a different location for its web page. Please note that the zint website also redirects to https. $ apt-cache show zint | grep Homepage Homepage:

Bug#1021691: llvm-toolchain-snapshot: mips need some patches

2022-10-12 Thread YunQiang Su
Package: llvm-toolchain-snapshot Version: 1:16~++20220928062542+48b8dee773f3-1~exp1 The upstream compiler-rt and openmp have some problem, and we are try to push the patches upstream: https://reviews.llvm.org/D135552 https://reviews.llvm.org/D135735 https://reviews.llvm.org/D135565

Bug#1021289: apt-listbugs: automatic pinning is not added under unattended-upgrades

2022-10-12 Thread Paul Wise
On Thu, 2022-10-13 at 00:29 +0200, Francesco Poli wrote: > Now everything seems to work as intended: the pinnings are saved, even > when apt-listbugs is run with no controlling terminal. Excellent, thanks for fixing! > Thanks again, the debugging session you provided was also pretty useful >

Bug#1021690: RM: r-cran-m2r [mipsel] -- ROM; macaulay2 (in Depends) is not available in mipsel

2022-10-12 Thread Torrance, Douglas
Package: ftp.debian.org Severity: normal X-Debbugs-Cc: dtorra...@piedmont.edu Hello! I am an uploader for r-cran-m2r, which is team-mainted by the Debian R Team. It hasn't transitioned to testing because it originally built on mipsel but has macaulay2, which is not available in mipsel, in its

Bug#1014619: libstdc++-arm-none-eabi: dpkg-buildflags leak into target build

2022-10-12 Thread Keith Packard
> One way to solve this would be to set DEB_BUILD_OPTIONS=optimize=-lto, to > exclude the LTO flags specifically so that they don't leak into the target > builds. Another thought I had was to use the dpkg-buildflags for armhf as a > target architecture, since there could be other per-arch flags

Bug#1021527: isc-dhcp-server: apt upgrade fails with sed error

2022-10-12 Thread Felix Wong
thanks adi, that was perfect! i had a stray comma in that list for some reason, probably from some failed copy/pasta error. the rest of the variable uses spaces. On Wed, Oct 12, 2022 at 1:07 AM Adi Kriegisch wrote: > Hi! > > This could happen when there is a comma in the list of interfaces (in

Bug#1021689: firefox-esr: regression: Ctrl-Shift-T does not work any more, menu option greyed out

2022-10-12 Thread Mike Hommey
On Thu, Oct 13, 2022 at 01:28:33AM +0200, Thorsten Glaser wrote: > Package: firefox-esr > Version: 102.3.0esr-1~deb11u1 > Severity: normal > X-Debbugs-Cc: t...@mirbsd.de, t...@security.debian.org > > Since the upgrade to 102 in bullseye, Ctrl-Shift-T does not work any more. > Upon looking in the

Bug#1021689: firefox-esr: regression: Ctrl-Shift-T does not work any more, menu option greyed out

2022-10-12 Thread Thorsten Glaser
Package: firefox-esr Version: 102.3.0esr-1~deb11u1 Severity: normal X-Debbugs-Cc: t...@mirbsd.de, t...@security.debian.org Since the upgrade to 102 in bullseye, Ctrl-Shift-T does not work any more. Upon looking in the menu, “Recently Closed Tabs” is greyed out instead of listing these as before.

Bug#1021684: Dino Mobile Layout in Experimental

2022-10-12 Thread Quinn Stambaugh
No worries, thank you for the information! I just wanted to make sure it was known. On Wed, 2022-10-12 at 22:57 +, Martin wrote: > Dear Quinn, > > On 2022-10-12 16:43, Quinn Stambaugh wrote: > > The move from libhandy to GTK4 for the Experimental build of Dino > > broke > > the mobile

Bug#1021678: [Pkg-rust-maintainers] Bug#1021678: rust-object: autopkgtest failure on s390x

2022-10-12 Thread Peter Green
https://ci.debian.net/data/autopkgtest/testing/s390x/r/rust-object/26973632/log.gz test round_trip::elf::symtab_shndx ... FAILED I noticed this and filed a bug upstream soon after the package was uploaded. https://github.com/gimli-rs/object/issues/456 And a fix appeared fairly shortly.

Bug#1021684: Dino Mobile Layout in Experimental

2022-10-12 Thread Martin
Dear Quinn, On 2022-10-12 16:43, Quinn Stambaugh wrote: > The move from libhandy to GTK4 for the Experimental build of Dino broke > the mobile layout. It's still somewhat usable, but the main hamburger > menu won't open and context menu for copying and pasting won't come up > either. This is

Bug#1021352: GOA malfunction for mails

2022-10-12 Thread Osamu Aoki
I can confirm this problem on my Debian testing system . > gnome-online-accounts 3.46.0-1 My workaround is: Settings -> Online accounts -> Open my registered online account panel, --> Move Mail slide switch off/on --> Click X on right top to close window This trick worked every time (I

Bug#1021688: debian-edu-config: Broken network setup if LXQt desktop environment is used on main or LTSP server

2022-10-12 Thread Wolfgang Schweer
Package: debian-edu-config Version: 2.11.56+debu4 Severity: normal On systems with 'Main server' and/or 'LTSP server' profiles the network setup fails to work correctly in case the LXQt desktop environment is used. To fix it locally, replace connman with network-manager-gnome (ConnMan is the

Bug#1020387: dictionaries-common: Consensus regarding the packaging of the Qt WebEngine hunspell binary dictionaries

2022-10-12 Thread Soren Stoutner
I submitted three upstream bugs. https://bugreports.qt.io/browse/QTBUG-107599[1] https://bugreports.qt.io/browse/QTBUG-107600[2] https://bugreports.qt.io/browse/QTBUG-107601[3] -- Soren Stoutner so...@stoutner.com [1] https://bugreports.qt.io/browse/QTBUG-107599 [2]

Bug#1021687: debian-edu-config: Make sure the ntp package is installed on the main server

2022-10-12 Thread Wolfgang Schweer
Package: debian-edu-config Version: 2.11.56+deb11u4 Severity: normal In case Internet connection isn't available, synchronizing clocks on the Debian Edu network requires running a local time server (e.g. for kerberized services like SSH and NFS). On the main server, the ntp package should be

Bug#1021686: zxing-cpp: FTBFS: error: static assertion failed: Cannot format an argument.

2022-10-12 Thread Andreas Beckmann
Source: zxing-cpp Version: 1.4.0-1~exp2 Severity: serious Tags: ftbfs Justification: fails to build from source (but built successfully in the past) Hi, zxing-cpp/experimental recently started to FTBFS (but the version in sid is not affected). ... [ 90%] Building CXX object

Bug#1021685: upgrading from 40.1-1 to 43.0-2 breaks xfce

2022-10-12 Thread Brent S. Elmer
Package: libwnck3 Version: libwnck-3-0 Severity: normal X-Debbugs-Cc: webe...@aim.com When I upgrade from 40.1-1 to 43.0-2 on a debian testing system, xfce breaks. I see no xfce items at all on the screen(i.e. top bar, application menu, bottom bar, desktop icons) I am accessing the machine

Bug#1021289: apt-listbugs: automatic pinning is not added under unattended-upgrades

2022-10-12 Thread Francesco Poli
Control: tags -1 - moreinfo On Fri, 07 Oct 2022 08:36:36 +0800 Paul Wise wrote: [...] > Refocusing this bug report on the pinning issue. > > On Fri, 2022-10-07 at 00:26 +0200, Francesco Poli wrote: > > > Specifically, when apt-listbugs sees that its stdout is not a terminal, > > it

Bug#1021684: Dino Mobile Layout in Experimental

2022-10-12 Thread Quinn Stambaugh
Package: dino-im Version: 0.3.0+git20221011.a45280f-1 The move from libhandy to GTK4 for the Experimental build of Dino broke the mobile layout. It's still somewhat usable, but the main hamburger menu won't open and context menu for copying and pasting won't come up either. -- Thank you for your

Bug#985749: apt: "apt-mark hold" flag lost on package upgrade using --ignore-hold

2022-10-12 Thread Guillem Jover
Control: reassign -1 apt Hi! On Tue, 2021-03-23 at 00:06:21 +0100, Sven-Haegar Koch wrote: > On Mon, 22 Mar 2021, David Kalnischkies wrote: > > On Mon, Mar 22, 2021 at 10:21:59PM +0100, Sven-Haegar Koch wrote: > > > I hold the package, and with normal upgrade/dist-upgrade it works > > > exactly

Bug#1021658: latexml: AutoPKG test suite fails since latest upload of TLive

2022-10-12 Thread Hilmar Preusse
Control: forwarded -1 https://github.com/brucemiller/LaTeXML/issues/1963 On 12.10.22 Hilmar Preusse (hill...@web.de) wrote: Dear Maintainer, > This is just for the records: since the latest upload of > texlive-base/texlive-lang/texlive-extra snapshot the latexml > test suite fails to run. The

Bug#1021622: libwxsqlit3-3.0-dev: not coinstallable

2022-10-12 Thread Olly Betts
On Wed, Oct 12, 2022 at 10:40:29PM +0200, László Böszörményi (GCS) wrote: > On Wed, Oct 12, 2022 at 10:36 PM Olly Betts wrote: > > On Tue, Oct 11, 2022 at 11:28:53PM +0200, Sebastian Ramacher wrote: > > > The following packages have unmet dependencies: > > > libwxsqlite3-3.2-dev : Breaks:

Bug#1020387: dictionaries-common: Consensus regarding the packaging of the Qt WebEngine hunspell binary dictionaries

2022-10-12 Thread Soren Stoutner
On Wednesday, October 5, 2022 9:38:09 AM MST Soren Stoutner wrote: > > ++ processing gl_ES.aff > > gl_ES.dic_delta not found. > > Reading gl_ES.aff > > Reading gl_ES.dic > > Serializing... > > Verifying... > > Word does not match! > > > > Index:2126 > > Expected: Abū po:antropónimo > > >

Bug#1021620: openssl: CVE-2022-3358

2022-10-12 Thread Salvatore Bonaccorso
Hi, On Tue, Oct 11, 2022 at 10:56:34PM +0200, Salvatore Bonaccorso wrote: > Source: openssl > Version: 3.0.5-4 > Severity: important > Tags: security upstream > X-Debbugs-Cc: car...@debian.org, Debian Security Team > > Control: found -1 3.0.5-2 > > Hi, > > The following vulnerability was

Bug#1021576: Interim gdb log

2022-10-12 Thread ael
Sorry. Had no time to look at this today. Meanwhile, I attach the gbd log following the suggestion to run linphone directly under gdb. I suspect that I need some more dbgsym packages installed to be more useful. My previous use of gdb was mainly for checking my own programs with source available

Bug#1021683: ITP: qt6-quick3dphysics -- Qt6 Quick 3D Physics module

2022-10-12 Thread Patrick Franz
Package: wnpp Severity: wishlist Owner: Patrick Franz X-Debbugs-Cc: debian-de...@lists.debian.org, delta...@debian.org,debian-qt-...@lists.debian.org * Package name: qt6-quick3dphysics Version : 6.4.0 Upstream Author : The Qt Company Ltd. * URL :

Bug#1021682: ITP: qt6-speech -- Qt6 Speech support

2022-10-12 Thread Patrick Franz
Package: wnpp Severity: wishlist Owner: Patrick Franz X-Debbugs-Cc: debian-de...@lists.debian.org, delta...@debian.org,debian-qt-...@lists.debian.org * Package name: qt6-speech Version : 6.4.0 Upstream Author : The Qt Company Ltd. * URL :

Bug#1021681: ITP: qt6-httpserver -- Qt6 HTTP Server module

2022-10-12 Thread Patrick Franz
Package: wnpp Severity: wishlist Owner: Patrick Franz X-Debbugs-Cc: debian-de...@lists.debian.org, delta...@debian.org,debian-qt-...@lists.debian.org * Package name: qt6-httpserver Version : 6.4.0 Upstream Author : The Qt Company Ltd. * URL :

Bug#1021680: libmutter-11-0: Segfault when ICC profile of device is garbage

2022-10-12 Thread Emmanuel Fleury
Package: libmutter-11-0 Version: 43.0-2 Severity: important Dear Maintainer, I recently stumbled on an old and wacky video-projector device that produce garbage ICC profiles. The problem is that it crashes the whole Xserver at once with a Segfault. I tried to understand a bit the bug and I

Bug#1021622: libwxsqlit3-3.0-dev: not coinstallable

2022-10-12 Thread GCS
On Wed, Oct 12, 2022 at 10:36 PM Olly Betts wrote: > On Tue, Oct 11, 2022 at 11:28:53PM +0200, Sebastian Ramacher wrote: > > The following packages have unmet dependencies: > > libwxsqlite3-3.2-dev : Breaks: libwxsqlite3-3.0-dev but 3.4.1~dfsg-8 is to > > be installed > > E: Unable to correct

Bug#1021622: libwxsqlit3-3.0-dev: not coinstallable

2022-10-12 Thread Olly Betts
title -1 libwxsqlite3-3.0-dev: not coinstallable On Tue, Oct 11, 2022 at 11:28:53PM +0200, Sebastian Ramacher wrote: > The following packages have unmet dependencies: > libwxsqlite3-3.2-dev : Breaks: libwxsqlite3-3.0-dev but 3.4.1~dfsg-8 is to > be installed > E: Unable to correct problems, you

Bug#1021564: RFP: openrocket -- Rocket simulation software

2022-10-12 Thread Bdale Garbee
Petter Reinholdtsen writes: > How is this different from the libjogl2-java package with home page > http://jogamp.org >? The source seem to be available from > https://jogamp.org/wiki/index.php/Jogamp_SCM_Repositories > > pointing to https://github.com/sgothel/ >. See Debian bug #1011549.

Bug#932988: dpkg-gensymbols: Please add a option to set the Build-Depends-Package field

2022-10-12 Thread Guillem Jover
Control: user d...@packages.debian.org Control: usertags -1 dpkg-gensymbols Control: tag -1 moreinfo On Thu, 2019-07-25 at 16:59:14 +0200, Jörg Frings-Fürst wrote: > Package: dpkg-dev > Version: 1.19.7 > Severity: wishlist > > please add a option to set the Build-Depends-Package meta-information

Bug#977862: support systems without lchown, perhaps with Gnulib

2022-10-12 Thread Guillem Jover
Control: tag -1 moreinfo Hi! On Mon, 2021-08-23 at 22:51:25 +0200, Guillem Jover wrote: > So, while I'm truly interested in improving portability for dpkg, I'm > not sure (as in, I've not kept up with times) whether MinGW might be a > valid target at all? Also AFAIR there's still the problem

Bug#1021664: vlc: Automatic hardware acceleration drops most frames

2022-10-12 Thread Miguel A. Vallejo
Rémi Denis-Courmont () wrote: > That log shows VLC *not* using video acceleration. But intel-gpu-top shows VLC using the GPU, so it is trying to use accelerated video. From the very same log I submitted: libva info: VA-API version 1.16.0 libva info: Trying to open

Bug#1021530: wireplumber: No sound after upgrade to 0.4.12-1

2022-10-12 Thread Francois Le Hir
I have the exact same issue. Installing 0.4.11-5 fixes it.

Bug#1021668: xen: CVE-2022-33749 CVE-2022-33748 CVE-2022-33747 CVE-2022-33746

2022-10-12 Thread Salvatore Bonaccorso
Hi, On Wed, Oct 12, 2022 at 07:38:17PM +0200, Moritz Mühlenhoff wrote: > Source: xen > X-Debbugs-CC: t...@security.debian.org > Severity: important > Tags: security > > Hi, > > The following vulnerabilities were published for xen. > > CVE-2022-33749[0]: > | XAPI open file limit DoS It is

Bug#1021672: Cannot reproduce

2022-10-12 Thread Michael Biebl
Control: severity -1 normal Control: tags -1 unreproducible Control: close -1 Am 12.10.22 um 21:38 schrieb Matteo Settenvini: Okay, I retried and I cannot reproduce it now. I think what happened is: * my system was hanging at the beginning due to some unrelated problem with video (mesa). *

Bug#1021679: tilix: doesn't provide x-terminal-emulator alternative

2022-10-12 Thread realroot
Package: tilix Version: 1.9.5-2 Severity: minor X-Debbugs-Cc: scorpion2...@protonmail.com Dear Maintainer, This package should provide an alternative for "update-alternatives --config x-terminal-emulator". Can I set it manually with some option in ~/.profile meanwhile? -- System Information:

Bug#1021678: rust-object: autopkgtest failure on s390x

2022-10-12 Thread Sebastian Ramacher
Source: rust-object Version: 0.29.0-1 Severity: serious X-Debbugs-Cc: sramac...@debian.org https://ci.debian.net/data/autopkgtest/testing/s390x/r/rust-object/26973632/log.gz test round_trip::elf::symtab_shndx ... FAILED failures: round_trip::elf::symtab_shndx stdout thread

Bug#1021672: Cannot reproduce

2022-10-12 Thread Matteo Settenvini
Okay, I retried and I cannot reproduce it now. I think what happened is: * my system was hanging at the beginning due to some unrelated problem with video (mesa). * I rebooted from a pendrive, and regenerated the initrd with dracut and hostonly=yes. * I believe this somehow messed up the

Bug#1021311: vlc: No sound with some AAC encoded MKV videos

2022-10-12 Thread Sebastian Ramacher
Control: forwarded -1 https://code.videolan.org/videolan/vlc/-/issues/27421 On 2022-10-12 16:05:00 +0200, Miguel A. Vallejo wrote: > Hello! > > I uploaded a small 10 second long video that shows the problem with VLC: > > https://www.dropbox.com/s/a5p2850q1npw5c6/testvideo.mkv?dl=1 > > Video

Bug#1021677: bugs.debian.org: Video fails to play in any web browser (chrome, firefox); music fails to play in Spotify

2022-10-12 Thread Steven Zalek
Package: bugs.debian.org Severity: normal X-Debbugs-Cc: zalek.ste...@gmail.com Dear Maintainer, I attempted to play a video clip on a web news site, on youtube, etc. The video attempts to load and run but freezes within the first second. This applies to any clip at any web site. I attempted to

Bug#1021672: udev: No USB (no keyboard nor FIDO token!) at boot after update from udev 251.5-1 to 252.5-2

2022-10-12 Thread Matteo Settenvini
How can I instruct the kernel to save the logs to a file? The rootfs is not mounted (so the logs cannot be persisted by journald), and I have no keyboard to be dropped to a init shell and save e.g. /run/initramfs/rdsosreport.txt or the output of any log in RAM to an unencrypted partition. I

Bug#1021152: audacity: FTBFS on armel, s390x

2022-10-12 Thread Jochen Sprickerhof
Hi Benjamin, we discussed this in #debian-devel yesterday and found: For armel it fails at: https://github.com/audacity/audacity/blob/master/libraries/lib-utility/MemoryX.h#L622 which was introduced here: https://github.com/audacity/audacity/pull/3028 And for s390x it is: 124 | #error

Bug#1021676: r-cran-leidenbase: autopkgtest failure on several architectures

2022-10-12 Thread Adrian Bunk
Source: r-cran-leidenbase Version: 0.1.12-1 Severity: serious Control: block 1019706 by -1 https://ci.debian.net/data/autopkgtest/testing/arm64/r/r-cran-leidenbase/26869942/log.gz ... BEGIN TEST testthat.R R version 4.2.1 (2022-06-23) -- "Funny-Looking Kid" Copyright (C) 2022 The R Foundation

Bug#1021675: ariba: autopkgtest regression and ftbfs with samtools 1.16

2022-10-12 Thread Étienne Mollier
Source: ariba Version: 2.14.6+ds-3 Severity: serious Tags: ftbfs upstream help Justification: fails to build from source (but built successfully in the past) Greetings, Following the upgrade of htslib, samtools and bcftools from versions 1.13 to 1.16, ariba hits autopkgtest regressions which are

Bug#1021662: libosip2: CVE-2022-41550

2022-10-12 Thread Aymeric Moizard
Hi, I made an official version which includes the fix. http://ftp.gnu.org/gnu/osip/libosip2-5.3.1.tar.gz Best Regards, Aymeric Le mer. 12 oct. 2022 à 17:39, Salvatore Bonaccorso a écrit : > Source: libosip2 > Version: 5.3.0-2 > Severity: important > Tags: security upstream > Forwarded:

Bug#1021588: Please apply the proposed fix (revert) for hi-dpi thumbnailing, until glib is properly fixed

2022-10-12 Thread Amr Ibrahim
Am Mittwoch, dem 12.10.2022 um 13:11 -0400 schrieb Jeremy Bicha: > > We'll fix this in glib. My understanding is that the glib fix is > sufficient to not need to patch Nautilus. > Yes, that's also my understanding. Best, Amr

Bug#969202: ITA: binutils-avr -- Binary utilities supporting Atmel's AVR targets

2022-10-12 Thread Steve M
Joshua, It has been a little over a year since you changed binutils-avr from RFA to ITA. Do you still intend to proceed with this adoption? If not, please consider returning it to RFA as I am considering adopting avr-libc, binutils-avr, and gcc-avr as a group. Thanks -Steve

Bug#1010152: emacs-gtk: tries to read a config file from another user's home dir

2022-10-12 Thread Paul Gevers
Control: fixed -1 1:27.2~ On Mon, 25 Apr 2022 15:40:26 +0200 Vincent Lefevre wrote: Control: forwarded -1 https://debbugs.gnu.org/cgi/bugreport.cgi?bug=42827 On 2022-04-25 15:37:08 +0200, Vincent Lefevre wrote: > This is also fixed in upstream's 27.2. 2020-08-17 Robert Pluim Fix

Bug#1021674: src:kpcli: fails to migrate to testing for too long: uploader built arch:all binary

2022-10-12 Thread Paul Gevers
Source: kpcli Version: 3.7-1 Severity: serious Control: close -1 3.8.1-1 Tags: sid bookworm pending User: release.debian@packages.debian.org Usertags: out-of-sync Dear maintainer(s), The Release Team considers packages that are out-of-sync between testing and unstable for more than 60 days

Bug#1021673: Acknowledgement (Wrong __cplusplus definition when using -std=c++20)

2022-10-12 Thread Marco Trevisan
Forwarded: https://gcc.gnu.org/bugzilla/show_bug.cgi?id=93821 Upstream commit fixing this is https://gcc.gnu.org/git/?p=gcc.git;a=commit;f=libcpp/init.c;h=445430e16bd08ade34637d2346ded40dd49de508

Bug#1021672: udev: No USB (no keyboard nor FIDO token!) at boot after update from udev 251.5-1 to 252.5-2

2022-10-12 Thread Michael Biebl
Am 12.10.22 um 20:18 schrieb Michael Biebl: Please remove "debug" from the kernel command line and capture the log messages I meant to say "quiet". You can also add "systemd.log_level=debug" to increase the verbosity. See man kernel-command-line. OpenPGP_signature Description: OpenPGP

Bug#1021672: udev: No USB (no keyboard nor FIDO token!) at boot after update from udev 251.5-1 to 252.5-2

2022-10-12 Thread Michael Biebl
On Wed, 12 Oct 2022 19:39:40 +0200 Matteo Settenvini wrote: Package: udev Version: 251.5-2 Severity: critical Justification: breaks the whole system Dear Maintainer, I have a root partition (separate from the boot partition) which is encrypted with LUKS and unlocked at boot. After an

Bug#1021673: Wrong __cplusplus definition when using -std=c++20

2022-10-12 Thread Marco Trevisan
Package: g++ Version: 4:10.2.1-1 In bullseye: $ echo | g++ -dM -E -x c++ -std=c++20 - |grep _cplusplus #define __cplusplus 201709L It should instead be: #define __cplusplus 202002L

Bug#1021577: libc-bin.postinst: please create /var/cache/ldconfig with DPKG_ROOT

2022-10-12 Thread Aurelien Jarno
On 2022-10-12 10:59, Johannes Schauer Marin Rodrigues wrote: > Quoting Aurelien Jarno (2022-10-11 22:14:31) > > From what I have understood from your explanation, if the directory exists > > chroot_canon() will work, so `ldconfig -r` will be able to create the > > aux-cache file in it. > > I can

Bug#1021671: shiro: CVE-2022-40664

2022-10-12 Thread Moritz Mühlenhoff
Source: shiro X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerability was published for shiro. CVE-2022-40664[0]: | Apache Shiro before 1.10.0, Authentication Bypass Vulnerability in | Shiro when forwarding or including via RequestDispatcher.

Bug#1021670: nomad: CVE-2022-41606

2022-10-12 Thread Moritz Mühlenhoff
Source: nomad X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerability was published for nomad. CVE-2022-41606[0]: | HashiCorp Nomad and Nomad Enterprise 1.0.2 up to 1.2.12, and 1.3.5 | jobs submitted with an artifact stanza using invalid S3 or

Bug#1021669: poppler: CVE-2022-24106

2022-10-12 Thread Moritz Mühlenhoff
Source: poppler X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerability was published for poppler. CVE-2022-24106[0]: | In Xpdf prior to 4.04, the DCT (JPEG) decoder was incorrectly allowing | the 'interleaved' flag to be changed after the first

Bug#983861: k3b: Permissions of external program should be of group "cdrom" and not "operator"

2022-10-12 Thread Fab Stz
Hello Norbert, This is still relevant for 22.04.2-1 Would you please add that patch to the package? Since the "operator" group is present on a fresh install of Debian, and since it is prefered to have group "cdrom" used by k3b, I think it would be better if the patch was applied. Rgds Fab

Bug#1021668: xen: CVE-2022-33749 CVE-2022-33748 CVE-2022-33747 CVE-2022-33746

2022-10-12 Thread Moritz Mühlenhoff
Source: xen X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerabilities were published for xen. CVE-2022-33749[0]: | XAPI open file limit DoS It is possible for an unauthenticated client | on the network to cause XAPI to hit its file-descriptor

Bug#1021667: RFS: ghostwriter/2.1.6 dfsg-1 [RC] -- Distraction-free, themeable Markdown editor

2022-10-12 Thread Sebastien Chavaux
Package: sponsorship-requests Severity: important Dear mentors, I am looking for a sponsor for my package "ghostwriter": * Package name : ghostwriter Version : 2.1.6+dfsg-1 Upstream contact : wereturtle * URL : https://ghostwriter.kde.org/ * License

Bug#1021576: Small update

2022-10-12 Thread Dennis Filder
X-Debbugs-Cc: ael On Wed, Oct 12, 2022 at 11:12:07AM +0100, ael wrote: > A quick note in haste. > > Seems that I had ulimit still slightly too small. > > Trying to get a backtrace on a full core > ($ ls -ltrh core > -rw--- 1 ael ael 229M Oct 12 11:06 core > ) > > gives: > (gdb) bt > #0

Bug#1021666: mesa: Add wayland-protocols version >= 1.24 to Mesa's Build-Depends

2022-10-12 Thread Christopher Obbard
Source: mesa Version: 22.2.0-1 Severity: normal Dear Maintainer, With older version of wayland-protocols package available (1.20), the build starts but fails late with: Dependency wayland-protocols found: NO found 1.20 but need: '>= 1.24' Invalid version of dependency, need

Bug#1021588: Please apply the proposed fix (revert) for hi-dpi thumbnailing, until glib is properly fixed

2022-10-12 Thread Jeremy Bicha
Control: reassign -1 src:glib2.0 2.74.0-2 Control: affects -1 src:nautilus We'll fix this in glib. My understanding is that the glib fix is sufficient to not need to patch Nautilus. Thank you, Jeremy Bicha

Bug#1021664: vlc: Automatic hardware acceleration drops most frames

2022-10-12 Thread Rémi Denis-Courmont
Le keskiviikkona 12. lokakuuta 2022, 18.47.05 EEST Miguel A. Vallejo a écrit : > Package: vlc > X-Debbugs-Cc: ea4...@gmail.com > Version: 3.0.18~rc2-1 > Severity: important > > Dear Maintainer, > > The last available versions of VLC have problems displaying h264 video > using hardware

Bug#1021576: linphone-desktop: Core dumped: Program terminated with signal SIGABRT, Aborted.

2022-10-12 Thread Dennis Filder
On Wed, Oct 12, 2022 at 12:31:58PM +0200, Bernhard Schmidt wrote: > Am 11.10.22 um 18:19 schrieb Dennis Filder: > > > The change in 5.0.37-6 was tiny and I doubt it broke something. But > > maybe you're running into #1021125: liblinphone10:amd64 5.0.37-6 is > > already linked against

Bug#1016047: RFH: chromium -- web browser

2022-10-12 Thread karthek
On Mon, 25 Jul 2022 21:45:33 -0400 Andres Salomon wrote: > Package: wnpp > Severity: normal > > I'm currently the only active maintainer for the chromium package in > Debian. This really needs to be maintained by a team, especially since > it requires security updates for stable at least two

Bug#1021665: lnav: FTBFS on mipsel: cc1plus: out of memory allocating 189688476 bytes after a total of 28327936 bytes

2022-10-12 Thread Salvatore Bonaccorso
Source: lnav Version: 0.11.1~rc1-1~exp1 Severity: serious Tags: help Justification: FTBFS X-Debbugs-Cc: car...@debian.org,debian-m...@lists.debian.org Hi lnav/0.11.1~rc1-1~exp1 in experimental with the new upstream version 0.11.1~rc1 FTBFS on mipsel:

Bug#1021648: buster-pu: package node-xmldom/0.1.27+ds-1+deb10u1

2022-10-12 Thread Salvatore Bonaccorso
Hi, On Wed, Oct 12, 2022 at 10:12:09AM +0200, Yadd wrote: > Package: release.debian.org > Severity: normal > Tags: buster > User: release.debian@packages.debian.org > Usertags: pu > > [ Reason ] > node-xmldom is vulnerable to prototype pollution > > [ Impact ] > Medium security issue > > [

Bug#1021588: Fixed in glib

2022-10-12 Thread Amr Ibrahim
Hello, A fix in glib for the stable release: https://gitlab.gnome.org/GNOME/glib/-/merge_requests/2941 Best, Amr

Bug#1000313: Bug#975490: u-boot-sunxi: A64-Olinuxino-eMMC boot stuck at "Starting kernel ..."

2022-10-12 Thread Philip Rinn
On 11.10.22 at 23:25, Philip Rinn wrote: Wild guess; maybe the flash-kernel boot.scr gets the wrong console settings (e.g. serial vs. hdmi or whatnot), while u-boot-menu just uses the default console specified in the .dtb? That might very well be, but how to debug? (Let's continue that

Bug#1020081: aft: FTBFS: make: *** [debian/rules:47: binary-indep] Error 25

2022-10-12 Thread Olivier Gayot
Package: aft Followup-For: Bug #1020081 User: ubuntu-de...@lists.ubuntu.com Usertags: origin-ubuntu kinetic ubuntu-patch Control: tags -1 patch Dear Maintainer, The last upload of aft changed the format of a doc file from HTML to RTF. The packaging was not updated accordingly. This prevents the

Bug#1021663: os-release: unstable and testing cannot be identified because of empty VERSION_ID and same VERSION_CODENAME

2022-10-12 Thread Gioele Barabucci
Package: base-files Version: 12.3 Dear base-files maintainer, this is a followup to #1008735 to provide 3rd-party software authors with better clarity (and confirmations) about Debian's approach to the information shipped in `os-release`. A quick summary: `os-release(5)` is the only

Bug#1021662: libosip2: CVE-2022-41550

2022-10-12 Thread Salvatore Bonaccorso
Source: libosip2 Version: 5.3.0-2 Severity: important Tags: security upstream Forwarded: https://savannah.gnu.org/bugs/?63103 X-Debbugs-Cc: car...@debian.org, Debian Security Team Hi, The following vulnerability was published for libosip2. CVE-2022-41550[0]: | GNU oSIP v5.3.0 was discovered to

Bug#1016272: transient bug in latex

2022-10-12 Thread Hilmar Preuße
Am 12.10.2022 um 11:22 teilte Cédric Boutillier mit: Hi, For the record, please find attached one of the latex files produced with kramdown which was causing the problematic character, together with the output of the failing compilation log with latex from texlive-latex-base/2022.20220722-1,

Bug#1021661: RFS: hashcash/1.22-1 [ITA] [RC] -- postage payment scheme for email based on hash calculations

2022-10-12 Thread Stefan Kangas
Package: sponsorship-requests Severity: important Dear mentors, I am looking for a sponsor for my package "hashcash": * Package name : hashcash Version : 1.22-1 Upstream contact : Adam Back * URL : http://hashcash.org/ * License : public-domain,

Bug#863498: Trash: undo for delete files to trash

2022-10-12 Thread Akbarkhon Variskhanov
Control: forwarded -1 gitlab.xfce.org/xfce/thunar/issues/819 Control: severity -1 wishlist Control: tags -1 upstream By the looks of it, this feature will be made available in the upcoming 4.18 version. Please see the provided upstream link. Cheers, Akbar.

Bug#1021660: gcc-12-offload-nvptx: offloading to nvidia via nvptx fails with cuda version 11 (default in sid)

2022-10-12 Thread Giacomo Mulas
Package: gcc-12-offload-nvptx Version: 12.2.0-5 Severity: grave Justification: renders package unusable for nvidia Dear Maintainer, the nvptx plugin for gcc-12 currently available for sid mandates a cuda level sm_30, which is no longer available in cuda 11 (the one now in sid). This means that

Bug#1011665: [RFC] Updating crowdsec, adding and updating other packages

2022-10-12 Thread Shengjing Zhu
On Wed, Oct 12, 2022 at 11:05 PM Cyril Brulebois wrote: > > Shengjing Zhu (2022-10-12): > > On Wed, Oct 12, 2022 at 9:37 PM Shengjing Zhu wrote: > > > Thanks for the detailed plan! All look good to me except this. > > Many thanks for the review and the few uploads! > > > > I think it can just

Bug#1011665: [RFC] Updating crowdsec, adding and updating other packages

2022-10-12 Thread Cyril Brulebois
Shengjing Zhu (2022-10-12): > On Wed, Oct 12, 2022 at 9:37 PM Shengjing Zhu wrote: > > Thanks for the detailed plan! All look good to me except this. Many thanks for the review and the few uploads! > > I think it can just bump to v13 without introducing new package. > > I'll try today and if I

Bug#940139: nautilus: open files by double clicking or right click "open"

2022-10-12 Thread Jeremy Bicha
Control: severity -1 normal Control: tags -1 -moreinfo Are you still experiencing this issue? Could you make a new user, log in as the new user and verify whether the new user is affected by this issue? Thank you, Jeremy Bicha

Bug#625758: 'adduser --disabled-login' does not behave as documented.

2022-10-12 Thread Vincent Lefevre
On 2022-03-19 11:44:05 +0100, Marc Haber wrote: > - change and document (adduser(8)) that --disabled-password will behave > like --disabled-login and additionally set the shell to > /usr/sbin/nologin. > - --disabled-login and an explicitly set --shell is an error and will be > flagged as

Bug#1011665: [RFC] Updating crowdsec, adding and updating other packages

2022-10-12 Thread Shengjing Zhu
On Wed, Oct 12, 2022 at 9:37 PM Shengjing Zhu wrote: > > Hi, > > On Wed, Oct 12, 2022 at 6:30 PM Cyril Brulebois wrote: > > New -vN packages: > > - > > > > - golang-github-apparentlymart-go-textseg-v13 > >+ required by (updated) golang-github-zclconf-go-cty > >+ upstream

Bug#1021311: vlc: No sound with some AAC encoded MKV videos

2022-10-12 Thread Miguel A. Vallejo
Hello! I uploaded a small 10 second long video that shows the problem with VLC: https://www.dropbox.com/s/a5p2850q1npw5c6/testvideo.mkv?dl=1 Video plays fine but no audio with VLC. Other players like mpv or ffplay play audio nicely. Thanks in advance.

Bug#1021613: systemd: generates too much log for ssh connection

2022-10-12 Thread Vincent Lefevre
On 2022-10-12 14:43:06 +0200, Michael Biebl wrote: > Apparently you can still use su, sudo etc with --disabled-login. So I wonder > if there is a real difference in practice to --disabled-password. In some way, I would regard the command-via-ssh feature to behave a bit like sudo: this is not a

Bug#1021659: freerdp2: Update to 2.8.1

2022-10-12 Thread Jeremy Bicha
Source: freerdp2 Version: 2.8.0+dfsg1-1 Please update freerdp2 to the new version. Because I needed to work on the update today for Ubuntu 22.10 deadlines, I am submitting merge proposals for you. https://github.com/FreeRDP/FreeRDP/releases/tag/2.8.1

Bug#1011665: [RFC] Updating crowdsec, adding and updating other packages

2022-10-12 Thread Shengjing Zhu
Hi, On Wed, Oct 12, 2022 at 6:30 PM Cyril Brulebois wrote: > New -vN packages: > - > > - golang-github-apparentlymart-go-textseg-v13 >+ required by (updated) golang-github-zclconf-go-cty >+ upstream documents using the /v13 path in `go get`, go.mod, etc. >+

Bug#1021658: latexml: AutoPKG test suite fails since latest upload of TLive

2022-10-12 Thread Hilmar Preusse
Package: latexml Version: 0.8.6-4 Severity: important Dear Maintainer, This is just for the records: since the latest upload of texlive-base/texlive-lang/texlive-extra snapshot the latexml test suite fails to run. The issue is known in upstream. Hilmar -- System Information: Debian Release:

Bug#1021613: systemd: generates too much log for ssh connection

2022-10-12 Thread Michael Biebl
Am 12.10.22 um 14:22 schrieb Vincent Lefevre: On 2022-10-12 13:42:55 +0200, Michael Biebl wrote: Am 12.10.22 um 13:15 schrieb Vincent Lefevre: On 2022-10-12 11:39:40 +0200, Michael Biebl wrote: What you see here is expected behaviour: Your login via SSH is apparently done via PAM, which

Bug#1021613: systemd: generates too much log for ssh connection

2022-10-12 Thread Vincent Lefevre
On 2022-10-12 13:52:26 +0200, Michael Biebl wrote: > > Am 12.10.22 um 13:15 schrieb Vincent Lefevre: > > On 2022-10-12 11:39:40 +0200, Michael Biebl wrote: > > > > If you don't want to constantly start/stop the user instance, you can also > > > use linger, so the user instance will stick around

Bug#1021613: systemd: generates too much log for ssh connection

2022-10-12 Thread Vincent Lefevre
On 2022-10-12 13:42:55 +0200, Michael Biebl wrote: > Am 12.10.22 um 13:15 schrieb Vincent Lefevre: > > On 2022-10-12 11:39:40 +0200, Michael Biebl wrote: > > > What you see here is expected behaviour: > > > Your login via SSH is apparently done via PAM, which triggers the start > > > of a > > >

Bug#1021496: anacron: cron.daily stopped executing a month ago

2022-10-12 Thread Ralf Jung
Dear Lance, This is a problem, since obviously many things rely on these cron jobs running regularly. For example, one of my SSL certificates expired because of this. Kind regards, Ralf I have merged this bug with #1019554. The problem was introduced in -33. I've noticed that it

Bug#1014177: qemu-user-static: QEMU aarch64 user mode emulation always segfaults

2022-10-12 Thread Tony Garnock-Jones
On Tue, 13 Sep 2022 23:42:19 +0300 Michael Tokarev wrote: I uploaded new upstream release of qemu a few days ago, 7.1, can you verify if that one makes any difference? It looks hopeful at least for my use cases! # dpkg --add-architecture arm64 # apt update # apt install hello:arm64 # apt

Bug#1021603: libpmix2: mca_base_component_repository_open: unable to open mca_pmix_ext3x: libpmix.so.2: cannot open shared object file: No such file or directory (ignored)

2022-10-12 Thread Alastair McKinstry
This appears to be fixed locally for me by rebuilding openmpi against the latest pmix. I'm doing a rebuild now Alastair On 11/10/2022 16:50, Andreas Beckmann wrote: Package: libpmix2 Version: 4.2.1-2 Severity: serious Hi, the new pmix version in sid causes autopkgtest regressions, e.g.

  1   2   >