Bug#953080: create and store ssh private host keys in tpm?

2020-03-03 Thread Harald Dunkel
Package: openssh-server Version: 1:8.2p1-4 Severity: wishlist The private host keys in /etc/ssh are (usually) unencrypted and easy to steal, e.g. using docker (not shown here). Would it be possible to add some code to postinst to make use of the tpm to create and store the private ssh keys, if

Bug#952695: Request for sponsorship or upload rights Re: r-cran-xml2: autopkgtest failure against libxml2 2.9.10

2020-03-03 Thread Dylan Aïssi
Hi Michael, On Tue, 3 Mar 2020 16:22:47 +0100 "Michael R. Crusoe" wrote: > I've commited a fix for this bug. > > > If a DD could sponsor that upload or grant me upload rights, I would > appreciate it. > Thanks for this! Just uploaded! I got an error when I tried to grant you upload rights for

Bug#918531: ITP: trx -- realtime audio over IP

2020-03-03 Thread Kyle Robbertze
Hi, Apologies, I did not see this ITP when I was searching for it earlier. I have packaged and uploaded trx to the NEW queue [1]. The package is in the Debian group on Salsa [2], and you are welcome to become a co-maintainer of the package if you wish. The binaries have been renamed to trx-rx

Bug#952408: fontforge: no longer works in non-GUI environment

2020-03-03 Thread Julian Gilbey
tags 952408 patch forwarded 952408 https://github.com/fontforge/fontforge/issues/4203 thanks On Sun, Feb 23, 2020 at 09:28:55PM +, Julian Gilbey wrote: > [...] > Up until a relatively recent release of fontforge, if fontforge were > run from a script without a GUI present, it would behave

Bug#953079: fontforge: FTBFS: builds with Python 2.7 by default if it is present and build then fails

2020-03-03 Thread Julian Gilbey
Package: fontforge Version: 1:20190801~dfsg-2 Severity: serious Tags: patch The configure script prefers Python 2.7 over Python 3.x by default. This then leads to a build failure as the shlib symbols in debian/libfontforge3.symbols do not match the symbols in the compiled libfontforge3. The easy

Bug#953078: libvirt: CVE-2019-20485

2020-03-03 Thread Salvatore Bonaccorso
Source: libvirt Version: 5.6.0-3 Severity: important Tags: security upstream fixed-upstream Control: found -1 5.6.0-2 Control: fixed -1 6.0.0-1 Hi, The following vulnerability was published for libvirt. CVE-2019-20485[0]: | potential DoS by holding a monitor job while querying QEMU guest-agent

Bug#949584: mmdebstrap fails to create temp file if TMPDIR is set to directory with mode 0755

2020-03-03 Thread Johannes Schauer
Hi, Quoting Benjamin Drung (2020-03-03 17:05:44) > Am Mittwoch, den 22.01.2020, 21:40 +0100 schrieb Johannes Schauer: > > Quoting Benjamin Drung (2020-01-22 13:23:36) > > > Am Mittwoch, den 22.01.2020, 13:13 +0100 schrieb Johannes Schauer: > > > > Quoting Benjamin Drung (2020-01-22 12:58:38) > >

Bug#953077: adequate informs obsolete-conffile for mate-settings-daemon when it upgrades it

2020-03-03 Thread shirish शिरीष
Package: mate-settings-daemon Version: 1.24.0-2 Severity: normal User: debian...@lists.debian.org Usertags : obsolete-conffile@adequate Dear Maintainer, I got the following obsolete-conffile complaint by adequate while upgrading. Please fix the same - mate-settings-daemon: obsolete-conffile

Bug#953076: unace: goes into endless loop when stdin is /dev/null

2020-03-03 Thread Marc Lehmann
Package: unace Version: 1.2b-17 Severity: normal Dear Maintainer, unace goes into an endless loop when stdin is /dev/null, for example, when using xargs:; unace t x.ace

Bug#952742: mumble: start locks sound for all application (even the client itself)

2020-03-03 Thread Chris Knadle
severity 952742 important tags 952742 + moreinfo unreproducible thanks lemmel: > Package: mumble > Version: 1.3.0+dfsg-1+b1 > Severity: grave > Tags: upstream > Justification: renders package unusable > > Dear Maintainer, > > fresh dist-upgrade (this day 02/28/20) brought up a mumble that lock

Bug#953075: debian-reference: Incorrect environment example for 'date' in section 1.5.2

2020-03-03 Thread Hank Knox
Package: debian-reference Version: 2.76 Severity: minor Dear Maintainer, In section 1.5.2, The "$LANG" variable, one of the examples given, showing how to pass an environement variable to a shell command, doesn't work as expected. The example looks like: $ date Sun Jun 3 10:27:39 JST 2007 $

Bug#953074: python3-twisted: conch/client/knownhosts.py:492: SyntaxWarning: "is" with a literal. Did you mean "=="?

2020-03-03 Thread Paul Wise
Package: python3-twisted Version: 18.9.0-6 Severity: normal File: /usr/lib/python3/dist-packages/twisted/conch/client/knownhosts.py Usertag: warnings I got a warning from Python when upgrading python3-twisted recently: Setting up python3-twisted (18.9.0-6) ...

Bug#953073: texlive-fonts-extra: TwemojiMozilla.ttf is included in 4 Debian packages

2020-03-03 Thread Ryutaroh Matsumoto
Package: texlive-fonts-extra Version: 2019.202000302-1 Severity: wishlist User: pkg-fonts-de...@lists.alioth.debian.org Usertags: duplicate Dear Maintainer, Seaching TwemojiMozilla.ttf for Debian unstable packages by https://packages.debian.org shows that it is included in firefox-esr firefox

Bug#953072: texlive-fonts-extra: NotoColorEmoji.ttf is included in 3 Debian packages

2020-03-03 Thread Ryutaroh Matsumoto
Package: texlive-fonts-extra Version: 2019.202000302-1 Severity: minor User: pkg-fonts-de...@lists.alioth.debian.org Usertags: duplicate Dear Maintainer, Seaching NotoColorEmoji.ttf for Debian unstable packages by https://packages.debian.org shows that it is included in fonts-noto-color-emoji

Bug#953071: ndisc6: please make the build reproducible

2020-03-03 Thread Chris Lamb
Source: ndisc6 Version: 1.0.4-1 Severity: wishlist Tags: patch User: reproducible-bui...@lists.alioth.debian.org Usertags: buildpath X-Debbugs-Cc: reproducible-b...@lists.alioth.debian.org Hi, Whilst working on the Reproducible Builds effort [0] we noticed that ndisc6 could not be built

Bug#953070: RFP: source-to-image -- toolkit for building reproducible container images from source code

2020-03-03 Thread Sam Morris
Package: wnpp Severity: wishlist -BEGIN PGP SIGNED MESSAGE- Hash: SHA256 * Package name: source-to-image Version : 1.2.0 Upstream Author : Various * URL : https://github.com/openshift/source-to-image * License : Apache 2.0 Programming Lang: Go

Bug#933425: sooperlooper: Please rebuild against wxWidgets GTK 3 package

2020-03-03 Thread Steve Langasek
Package: sooperlooper Followup-For: Bug #933425 User: ubuntu-de...@lists.ubuntu.com Usertags: origin-ubuntu focal ubuntu-patch I've confirmed that sooperlooper can build against gtk3 with a one-line change to the build-dependencies. Please see attached. -- Steve Langasek Give

Bug#953067: (no subject)

2020-03-03 Thread Mark Szymczak
The JFrame children should be available for garbage collection and garbage collected after the JFrames are closed.

Bug#953069: libgnatcoll-db: FTBFS on mipsel with assembler message: branch out of range

2020-03-03 Thread Nicolas Boulenguez
Source: libgnatcoll-db Version: 19.2-2 Severity: normal The relevant lines are: xref/gnatcoll-xref.adb: In function ‘GNATCOLL.XREF’: xref/gnatcoll-xref.adb:40:1: note: variable tracking size limit exceeded with ‘-fvar-tracking-assignments’, retrying without Assembler messages: 678119: Error:

Bug#946572: abcm2ps: diff for NMU version 8.14.7-0.1

2020-03-03 Thread Nicolas Boulenguez
Dear maintainer, New upstream version 8.14.7 includes Helmut's fix for #946572. Please update the package, or allow the attached trivial NMU. Thanks. diff -Nru abcm2ps-8.14.6/abcm2ps.h abcm2ps-8.14.7/abcm2ps.h --- abcm2ps-8.14.6/abcm2ps.h 2019-11-05 14:02:00.0 +0100 +++

Bug#950716: transition: ruby2.7

2020-03-03 Thread Daniel Leidert
Am Montag, den 02.03.2020, 15:01 -0300 schrieb Lucas Kanashiro: > On 02/03/2020 08:35, Graham Inggs wrote: > > Hi Lucas > > > > I notice kamailio and klayout still appear red in the Debian tracker > > [1], but went green in Ubuntu [2]. > > > > Do you have any ideas? Do we miss something in

Bug#953068: bossa: patch to initialize variables (needed when building with -O3)

2020-03-03 Thread Steve Langasek
Package: bossa Version: 1.9.1-1 Severity: minor Tags: patch User: ubuntu-de...@lists.ubuntu.com Usertags: origin-ubuntu focal ubuntu-patch Hi Scott, In Ubuntu, the latest version of bossa has failed to build on ppc64el because the ppc64el architecture in Ubuntu uses -O3 as a default

Bug#953067: openjdk-8-jre: JFrame is not garbage collected.

2020-03-03 Thread Mark Szymczak
Package: openjdk-8-jre Version: 8u242-b08-1~deb9u1 Severity: important Dear Maintainer, Run the following: import java.awt.Frame; import java.awt.event.*; import javax.swing.*; public class Testing extends JFrame { public static void main(String[] args) {

Bug#953062: FTBFS on arm64, armel, armhf, ppc64el, s390x

2020-03-03 Thread Ryan Pavlik
arm64 and s390x (and maybe ppc64el?) are all an issue with signed char conversions. I have a patch to fix that in my git repo, along with other fixes that effectively block further usage (dfsg, etc): https://salsa.debian.org/rpavlik-guest/meshlab/-/commit/2631636f29b7375a1d7977a1484b826db55ba153

Bug#951209: transition: libgusb

2020-03-03 Thread Laurent Bigonville
On Tue, 3 Mar 2020 20:19:12 +0100 Julien Cristau wrote: > On Wed, Feb 12, 2020 at 03:24:42PM +0100, Laurent Bigonville wrote: > > libgusb is carrying in debian a patch[0] to revert/fix an after the fact > > change that was done upstream in the versioning of the symbols. > > > > I don't think

Bug#953066: libpciaccess0: nVidia driver finds no devices, sddm dies with ABRT

2020-03-03 Thread Stephen Dowdy
Package: libpciaccess0 Version: 0.13.4-1+b2 Severity: important -- System Information: Debian Release: 9.12 APT prefers oldstable-updates APT policy: (500, 'oldstable-updates'), (500, 'oldstable') Architecture: amd64 (x86_64) Foreign Architectures: i386 Kernel: Linux 4.19.0-0.bpo.6-amd64

Bug#950795: buster-pu: package puma/3.12.0-2

2020-03-03 Thread Daniel Leidert
Am Dienstag, den 03.03.2020, 20:37 + schrieb Adam D. Barratt: > On Thu, 2020-02-06 at 17:33 +0100, Daniel Leidert wrote: > > The proposed update will fix CVE-2019-16770 (#946312) for Buster > > users. The security team marked the issue no-dsa and asked to > > schedule the fix via the next

Bug#940461: [PATCH v2] Add imap-dl, a simple imap downloader

2020-03-03 Thread Daniel Kahn Gillmor
On Fri 2020-02-14 07:58:34 -0700, Sean Whitton wrote: >>> Also, will imap-dl skip messages with the deleted flag? Do you think it >>> should? >> >> I don't think it should -- the use case at the moment is just to fetch >> all messages that exist in the inbox. Why should it treat any flag >>

Bug#953065: util-linux: hwclock reports incorrect status in audit message

2020-03-03 Thread Joy Latten
Package: util-linux Version: 2.31.1-0.4 hwclock code uses EXIT_SUCCESS == 0 and EXIT_FAILURE == 1. hwclock_exit() calls audit_log_user_message() and sometimes uses the exit status from a call as the status it passes to create the audit record. The audit_log_user_message() manpage states that for

Bug#953054: "DeprecationWarning: PY_SSIZE_T_CLEAN will be required" after python3.7 -> 3.8

2020-03-03 Thread Florian Weimer
* Anders Breindahl: > As unattended-upgrades was doing its thing, my regularly-running > debsecan-exploitive monitoring suite started throwing these errors on > regular debsecan invocations: > > $ debsecan > /dev/null > /usr/bin/debsecan:95: DeprecationWarning: PY_SSIZE_T_CLEAN will be >

Bug#953064: FTBFS on i386

2020-03-03 Thread Moritz Muehlenhoff
Source: odin Severity: serious odin FTBFSes on i386. This also means that on i386 it still uses Qt4. Cheers, Moritz

Bug#953063: FTBFS on i386

2020-03-03 Thread Moritz Muehlenhoff
Source: mrtrix3 Severity: serious mrtrix3 FTBFS on i386, which means that the stale i386 build still uses Qt4. There's the existing "#916284 mrtrix3 seems to be amd64-only", so I suggest to simply restrict the arch list to amd64 and file an RM bug for the outdated i386 binaries? Cheers,

Bug#953033: Not ready for text-scale-adjust

2020-03-03 Thread Katsumi Yamaoka
On Tue, 03 Mar 2020 23:51:58 +0800, 積丹尼さん wrote: > Package: w3m-el-snapshot > X-Debbugs-Cc: yama...@jpl.org > Version: 1.4.632+0.20191218.2243.cef0c7e-1 > $ emacs -q -f w3m > C-x C-= [text-scale-adjust] > C-= [anonymous-command] > Here the lines get cut off. > They should fold, staying on the

Bug#953062: FTBFS on arm64, armel, armhf, ppc64el, s390x

2020-03-03 Thread Moritz Muehlenhoff
Package: meshlab Severity: serious The new meshlab FTBFSes on arm64, armel, armhf, ppc64el, s390x. This also means that on those archs meshlab still uses Qt4. Cheers, Moritz

Bug#953061: pydoc3 matplotlib gives a deprecation warning about rcparam

2020-03-03 Thread Josh Triplett
Package: python3-matplotlib Version: 3.1.2-2 Severity: normal pydoc3 matplotlib gives the following warning: /usr/lib/python3.7/pydoc.py:1058: MatplotlibDeprecationWarning: The examples.directory rcparam was deprecated in Matplotlib 3.0 and will be removed in 3.2. In the future, examples will

Bug#953060: ImportError when trying to import OpenImageIO

2020-03-03 Thread James Dietrich
Package: python3-openimageio Version: 2.1.11.2~dfsg0-3 Severity: normal I am getting an ImportError when trying to import OpenImageIO: jdietrch@saturn:~$ python3 Python 3.7.6 (default, Jan 19 2020, 22:34:52) [GCC 9.2.1 20200117] on linux Type "help", "copyright", "credits" or "license" for more

Bug#953059: node-vm-browserify: Please run test

2020-03-03 Thread Bastien Roucariès
Package: node-vm-browserify Version: 0.0.4-1 Severity: wishlist Dear Maintainer, After browserify is shipped upstream please run test (and add also example) -- System Information: Debian Release: bullseye/sid APT prefers testing APT policy: (900, 'testing') Architecture: amd64 (x86_64)

Bug#953058: RFS: node-emoj/2.0.0-1~exp1 [ITP] -- Find relevant emoji from text on the command-line

2020-03-03 Thread Ko Ko Ye`
Package: sponsorship-requests Severity: wishlist Dear mentors, I am looking for a sponsor for my package "node-emoj" * Package name: node-emoj Version : 2.0.0-1~exp1 Upstream Author : https://github.com/sindresorhus/emoj/issues * URL :

Bug#950718: RFS: depthcharge-tools/0.3.1-1 [ITP] -- Tools for ChromeOS firmware/bootloader integration

2020-03-03 Thread Alper Nebi Yasak
On 03/03/2020 18:51, Cyril Brulebois wrote: partman-* is of course fine for udebs shipping partman stuff, but depthcharge-support-installer strikes me as something that could be named depthcharge-support-udeb, or maybe just depthcharge-udeb? I mimicked the flash-kernel & flash-kernel-installer

Bug#953057: subversion: FTBFS against swig 4

2020-03-03 Thread Lucas Kanashiro
Source: subversion Version: 1.13.0-2 Severity: important Dear Maintainer, While trying to rebuild src:subversion in a clean unstable amd64 chroot I got the following error: ... Wrote subversion/bindings/swig/proxy/swig_python_external_runtime.swg /usr/bin/swig -I/<>/BUILD/subversion

Bug#952188: golang-github-mendersoftware-scopestack: FTBFS: dh_auto_test: error: cd obj-x86_64-linux-gnu && go test -vet=off -v -p 4 github.com/mendersoftware/scopestack returned exit code 1

2020-03-03 Thread Andreas Henriksson
On Mon, Mar 02, 2020 at 09:38:00AM +0100, Lluis Campos wrote: > Hello, > > The patch looks good to us. Thanks Andreas for following up! > > Side note. We have discussed internally and decided that we will remove > both scopestack and log[1] dependencies from the mender-client code. > This will

Bug#953056: RuntimeWarning: line buffering (buffering=1) isn't supported in binary mode, the default buffer size will be used

2020-03-03 Thread 積丹尼 Dan Jacobson
Package: python3 Version: 3.8.2-1 Setting up python3 (3.8.2-1) ... running python rtupdate hooks for python3.8... /usr/lib/python3.8/subprocess.py:838: RuntimeWarning: line buffering (buffering=1) isn't supported in binary mode, the default buffer size will be used self.stdin =

Bug#952610: fixed in meson 0.53.2-2

2020-03-03 Thread Jussi Pakkanen
On Mon, Mar 2, 2020 at 4:27 PM Gianfranco Costamagna wrote: > lets see the sum of the issues without the stderr change > > amd64: > crossbuild FAIL stderr: dpkg-architecture: warning: specified GNU > system type arm-linux-gnueabihf does not match CC system type >

Bug#953053: psychopy: missing python3 dependencies

2020-03-03 Thread Bob
Package: psychopy Version: 2020.1.1+dfsg-1 Severity: important Dear Maintainer, After installing psychopy 2020.1.1, when I use pip3 to install some packages (that do not have psychopy as dependency), I get the following error: ERROR: psychopy 2020.1.1 requires arabic_reshaper, which is not

Bug#953052: psychopy: python2 dependencies

2020-03-03 Thread Bob
Package: psychopy Version: 2020.1.1+dfsg-1 Severity: important Dear Maintainer, Psychopy seems to have python2 dependencies. I do not have any python2 packages installed anymore. When installing psychopy 2020.1.1 with apt-get from the official debian repo, it pulls in a selection of python2

Bug#953055: apt-listchanges: DeprecationWarning: PY_SSIZE_T_CLEAN [...] after python3.7->python3.8

2020-03-03 Thread Anders Breindahl
Package: apt-listchanges Version: 3.22 Severity: low Dear Maintainer, As unattended-upgrades updated python (between 06:27:18 and 06:28:21), the output behaviour of apt-listchanges changed in the subsequent run (starting 06:28:21): Log started: 2020-03-03 06:27:18 apt-listchanges:

Bug#953051: psychopy: python2 dependencies

2020-03-03 Thread Bob
Package: psychopy Version: 2020.1.1+dfsg-1 Severity: important Dear Maintainer, *** Reporter, please consider answering these questions, where appropriate *** * What led up to the situation? * What exactly did you do (or not do) that was effective (or ineffective)? * What was the

Bug#953054: "DeprecationWarning: PY_SSIZE_T_CLEAN will be required" after python3.7 -> 3.8

2020-03-03 Thread Anders Breindahl
Package: debsecan Version: 0.4.20.1 Severity: normal Dear Maintainer, As unattended-upgrades was doing its thing, my regularly-running debsecan-exploitive monitoring suite started throwing these errors on regular debsecan invocations: $ debsecan > /dev/null /usr/bin/debsecan:95:

Bug#953013: [Python-modules-team] Bug#953013: pyyaml: CVE-2020-1747: arbitrary command execution through python/object/new when FullLoader is used

2020-03-03 Thread Moritz Mühlenhoff
On Tue, Mar 03, 2020 at 12:15:09PM -0500, Scott Kitterman wrote: > On Tuesday, March 3, 2020 11:41:26 AM EST Salvatore Bonaccorso wrote: > > OK. If anyone has a reproducer for this, it'd be very helpful to sort it out. > > I think this is like the recent CVE for python-bleach where the affected

Bug#953048: [Pkg-sass-devel] Bug#953048: ruby-sass: sass --watch does not work

2020-03-03 Thread Jonas Smedegaard
control: tags -1 confirmed control: severity -1 low Quoting Werner Joss (2020-03-03 20:46:47) > sass --watcg does not work - I get the following errors: You are right, that feature has been omitted from the Debian packaging of ruby-sass. It should work if you install the Python module

Bug#953005: buster-pu: package serverspec-runner/1.2.2-1+deb10u1

2020-03-03 Thread Adam D. Barratt
Control: tags -1 -moreinfo +confirmed On Tue, 2020-03-03 at 20:43 +0100, Daniel Leidert wrote: > Package: release.debian.org > Followup-For: Bug #953005 > > Sorry. Now it should be. > Thanks, please go ahead. Regards, Adam

Bug#950795: buster-pu: package puma/3.12.0-2

2020-03-03 Thread Adam D. Barratt
Control: tags -1 + confirmed On Thu, 2020-02-06 at 17:33 +0100, Daniel Leidert wrote: > The proposed update will fix CVE-2019-16770 (#946312) for Buster > users. The security team marked the issue no-dsa and asked to > schedule the fix via the next point release. The debdiff is attached. > The

Bug#953050: /usr/bin/xfdesktop: XFdesktop crashes when install libreoffice6.4-debian-menus (6.4.1-2)

2020-03-03 Thread alain
Package: xfdesktop4 Version: 4.12.4-2 Severity: normal File: /usr/bin/xfdesktop Dear Maintainer, When I installed Libreoffice 6.4.1 from upstream, on the dpkg -i libreoffice6.4-debian-menus (6.4.1-2), XFdesktop and xfce4-panel crashed. Mar 3 21:01:09 X kernel: [112575.427569]

Bug#952714: texlive-latex-extra: missing Breaks+Replaces: sdaps (<< 1.9.7)

2020-03-03 Thread Andreas Beckmann
On 28/02/2020 01.14, Norbert Preining wrote: > what on **EARTH** made sdaps install anything into /usr/share/texlive... fortunately it's the only non-texlive package in buster doing this ... (and none in sid does it) grep -h usr/share/texlive lists/buster/Contents* | awk '{print $2}' | sort |

Bug#953049: qtwebsockets-opensource-src: CVE-2018-21035: QWebsocket large frame/message issue, denial of service

2020-03-03 Thread Salvatore Bonaccorso
Source: qtwebsockets-opensource-src Version: 5.14.1-1 Severity: important Tags: security upstream Forwarded: https://bugreports.qt.io/browse/QTBUG-70693 Control: found -1 5.12.5-2 Control: found -1 5.11.3-5 Hi, The following vulnerability was published for qtwebsockets-opensource-src.

Bug#953048: ruby-sass: sass --watch does not work

2020-03-03 Thread Werner Joss
Package: ruby-sass Version: 3.5.6-1 Severity: normal Dear Maintainer, sass --watcg does not work - I get the following errors: sass --watch --trace custom.scss:custom.css >>> Sass is watching for changes. Press Ctrl-C to stop. Traceback (most recent call last): 9: from

Bug#953047: python3.8: Packages requiring python3 < 3.8 doesn't install even when 3.7 is available

2020-03-03 Thread Matthias Klose
Control: severity -1 normal On 3/3/20 8:44 PM, Sajjad Kabir Joy wrote: > Package: python3.8 > Version: 3.8.2-1 > Severity: important > > Dear Maintainer, > > Installation of packages depending on samba failed, and when I tried > installing samba itself I got this: If you don't know how to

Bug#950430: more rdeps testing

2020-03-03 Thread Rebecca N. Palmer
These packages were missing from my old packages-to-test list due to #953014: influxdb-python jsonpickle psychopy tqdm They have now been tested: jsonpickle - OK influxdb-python (#950063), tqdm - already broken (probably by the 0.23 -> 0.25 transition, where the same bug left them off the

Bug#953047: python3.8: Packages requiring python3 < 3.8 doesn't install even when 3.7 is available

2020-03-03 Thread Sajjad Kabir Joy
Package: python3.8 Version: 3.8.2-1 Severity: important Dear Maintainer, Installation of packages depending on samba failed, and when I tried installing samba itself I got this: Reading package lists... Done Building dependency tree Reading state information... Done Some packages could

Bug#953005: buster-pu: package serverspec-runner/1.2.2-1+deb10u1

2020-03-03 Thread Daniel Leidert
Package: release.debian.org Followup-For: Bug #953005 -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Sorry. Now it should be. - -- System Information: Debian Release: bullseye/sid APT prefers unstable APT policy: (990, 'unstable'), (500, 'testing'), (500, 'stable'), (1, 'experimental')

Bug#952538: libwolfssl-dev: user_settings.h missing

2020-03-03 Thread Otto Kekäläinen
Hello! Related to this is upstream issue https://jira.mariadb.org/browse/MDEV-21835 where Robert Bindar is working to make MariaDB support building with system WolfSSL. Robert might fill on this (https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=952538) issue if there are needs regarding what the

Bug#953046: Wrongly picks AZERTY layout when alternative Canadian layout is present.

2020-03-03 Thread Charles Plessy
Package: ibus-mozc Version: 2.23.2815.102+dfsg-4 Severity: normal Hi Nobuhiro, It has been years that I was affected with that bug, but I am only reporting it now as I found an (old!) workaround in Launchpad. I use GNOME with a Japanese keyboard, and I have 3 layouts configured; I switch

Bug#953018: ITP: spamassassin-milter -- milter for spam filtering with SpamAssassin

2020-03-03 Thread Noah Meyerhans
On Tue, Mar 03, 2020 at 11:00:45AM +0100, David Bürgin wrote: > Debian already has package spamass-milter, which serves the same > function. This new alternative is not exactly the same: It does a few > things better (eg automatic macro negotiation, skipping large bodies), > some things

Bug#953045: SSL routines:ssl_choose_client_version:unsupported protocol

2020-03-03 Thread 積丹尼 Dan Jacobson
Package: w3m Version: 0.5.3-37+b1 $ w3m -dump https://data.moi.gov.tw/MoiOD/Data/DataDetail.aspx?oid=8001F4E6-7035-49E4-ADFC-DF43E755F824 SSL error: error:1425F102:SSL routines:ssl_choose_client_version:unsupported protocol w3m: Can't load

Bug#951209: transition: libgusb

2020-03-03 Thread Julien Cristau
On Wed, Feb 12, 2020 at 03:24:42PM +0100, Laurent Bigonville wrote: > libgusb is carrying in debian a patch[0] to revert/fix an after the fact > change that was done upstream in the versioning of the symbols. > > I don't think we should/can carry this patch forever and due to the fact > that the

Bug#952441: buster-pu: package user-mode-linux/4.19-1um-1+b1

2020-03-03 Thread Adam D. Barratt
Control: tags -1 -moreinfo +confirmed On Wed, 2020-02-26 at 11:02 +0100, Santiago R.R. wrote: > Control: fixed 951329 user-mode-linux/5.4-1um-2 > > El 25/02/20 a las 21:05, Adam D. Barratt escribió: > > Control: tags -1 + moreinfo > > > > On Mon, 2020-02-24 at 14:49 +0100, Santiago R.R. wrote:

Bug#952586: buster-pu: package backuppc/3.3.2-2

2020-03-03 Thread Adam D. Barratt
Control: tags -1 + confirmed On Wed, 2020-02-26 at 12:26 +, Jonathan Wiltshire wrote: > I'd like to fix an important bug in backuppc which prevents > `systemd reload backuppc.service` from failing. As a result of this > bug backuppc has to be restarted for systemd's supervision to be > reset,

Bug#952785: buster-pu: package dojo/1.15.0+dfsg1-1+deb10u1

2020-03-03 Thread Adam D. Barratt
Control: tags -1 + confirmed On Mon, 2020-03-02 at 11:28 +0100, Xavier wrote: > Le 01/03/2020 à 22:52, Andreas Beckmann a écrit : > > > +#CVE-2019-10785.patch > > > > The patch is commented in the series file and thus does not get > > applied. > > > > Andreas > > Sorry for this error. Here is

Bug#953021: libhdf5-mpi-dev: provide links to default mpi (hdf5-mpi.pc)

2020-03-03 Thread Drew Parsons
Thinking about it, if possible it would be best to have hdf5-mpi.pc managed by update-alternatives, but tracking the mpi alternative. i.e. set up as a slave alternative depending on mpi, that updates if the local system switches mpi from openmpi to mpich. I'm not sure if this can be done

Bug#952960: buster-pu: package ruby-factory-girl-rails/4.7.0-1+deb10u1

2020-03-03 Thread Adam D. Barratt
Control: tags -1 +confirmed -moreinfo On Mon, 2020-03-02 at 18:59 +0100, Daniel Leidert wrote: > Package: release.debian.org > Followup-For: Bug #952960 > > I've uploaded the fix to unstable and updated the diff (Vcs* fields > changed, see attached). > Thanks, please go ahead. Regards, Adam

Bug#951631: lightning: UI elements show what looks like XML errors

2020-03-03 Thread Bob Ham
On 21/02/2020 12:42, Carsten Schoenert wrote: > Hello Bob, > > Am 19.02.20 um 08:30 schrieb Bob Ham: >> It appears that the most recent update to lightning has caused serious >> problems in the thunderbird UI where lightning's UI elements do not >> work correctly and display large sections of

Bug#953005: buster-pu: package serverspec-runner/1.2.2-1+deb10u1

2020-03-03 Thread Adam D. Barratt
Control: tags -1 + moreinfo On Tue, 2020-03-03 at 01:00 +0100, Daniel Leidert wrote: > This update is to fix #939645 [1]. The debdiff is attached. Apparently not. :-) Regards, Adam

Bug#952669: reportbug output

2020-03-03 Thread Lucas B. Cohen
On 3/3/20 6:56 PM, Andreas Beckmann wrote: > On 03/03/2020 18.05, Lucas B. Cohen wrote: >> Attached is partial output of : reportbug --template -T none -s none -S >> normal -b --list-cc none -q xserver-xorg-video-nvidia-legacy-390xx (with >> repeated lines removed, and some irrelevant info

Bug#953042: Package removal can fail if some contained files are no present

2020-03-03 Thread Ondřej Surý
Debian doesn’t work on “IMO”s, but on the Debian policy and it says no such thing here: https://www.debian.org/doc/debian-policy/ch-maintainerscripts.html Ondrej -- Ondřej Surý > On 3 Mar 2020, at 19:21, MichaIng wrote: > > IMO any prerm/postrm script must not depend on any of the packages

Bug#953030: bacula-sd.postinst fails on systems with protected_regular=2 enabled

2020-03-03 Thread Robie Basak
Hi, On Tue, Mar 03, 2020 at 05:53:31PM +0100, Carsten Leonhardt wrote: > thanks for the patch. I've commited a change to our git repository based > on it. For consistency I changed the order in similar postinst files > too. Thank you! I grabbed your commit in Ubuntu to replace my patch.

Bug#953039: upgrading packet python3 up to 3.8.2-1 asks packets deletion

2020-03-03 Thread Matthias Klose
Control: severity -1 normal just wait until packages are installable again. It takes some time. On 3/3/20 6:11 PM, Сергей Фёдоров wrote: > > Package: python3 > Version: 3.7.5-3 > Severity: critical > Tags: a11y > Justification: breaks unrelated software > > > > -- System Information: >

Bug#953044: net-snmp: Either provide tool or remove references to net-snmp-cert

2020-03-03 Thread Guillem Jover
Source: net-snmp Source-Version: 5.8+dfsg-2 Severity: normal Hi! There are references to a helper tool called net-snmp-cert in snmpcmd(1) and snmpd.conf(5), but that tool is not shipped anywhere. Please either ship the tool somewhere, or remove the references from the man pages, as that will

Bug#953043: snmpd: Please move net-snmp-create-v3-user into snmpd package

2020-03-03 Thread Guillem Jover
Package: snmpd Version: 5.8+dfsg-2 Severity: normal Hi! There's an administrative script called net-snmp-create-v3-user used to create SNMP v3 user credentials, but it is shipped in the libsnmp-dev, instead of in the snmpd package. Having to install a development package on a production system

Bug#953042: Package removal can fail if some contained files are no present

2020-03-03 Thread MichaIng
Package: libapache2-mod-php7.0 Version: 7.0.33-0+deb9u7 Hey guys, I wanted to report an issue that we faced some time ago: https://github.com/MichaIng/DietPi/issues/2797 The postrm script calls "php_invoke dismod 7.0 apache2 $mod" to disable the modules, but this fails if either

Bug#953041: RM: ruby-extendmatrix -- ROM; dead upstream, RC buggy, low popcon, no reverse dependencies

2020-03-03 Thread Daniel Leidert
Package: ftp.debian.org Severity: normal -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 ruby-extendmatrix fails to build with the current Ruby version and has an RC bug. It has no reverse dependencies and popcon reports just one installation. After discussing it internally [1] we would like to

Bug#952669: reportbug output

2020-03-03 Thread Andreas Beckmann
On 03/03/2020 18.05, Lucas B. Cohen wrote: > Attached is partial output of : reportbug --template -T none -s none -S > normal -b --list-cc none -q xserver-xorg-video-nvidia-legacy-390xx (with > repeated lines removed, and some irrelevant info sanitized). You were running the current (418.xx)

Bug#950578: (no subject)

2020-03-03 Thread Pete Batard
Just going to point out that the 5.x equivalent patch has now been applied to Linux mainline as per: https://lkml.kernel.org/lkml/20200224.153146.125327154283545636.da...@davemloft.net/ Could we get some acknowledgement that this patchset is being looked at for possible integration and isn't

Bug#953040: prometheus-mysqld-exporter: Regression on configuration disallows proper use of mysql auth_socket authentication

2020-03-03 Thread jynus
Package: prometheus-mysqld-exporter Version: 0.11.0+ds-1+b20 Severity: serious Justification: Policy 10.9 Dear Maintainer, After upgrading my MariaDB server boxes to buster, the version of prometheus mysqld exporter monitoring package stopped working. When I checked the cause of it, the package

Bug#953039: upgrading packet python3 up to 3.8.2-1 asks packets deletion

2020-03-03 Thread Сергей Фёдоров
Package: python3 Version: 3.7.5-3 Severity: critical Tags: a11y Justification: breaks unrelated software -- System Information: Debian Release: bullseye/sid APT prefers unstable APT policy: (500, 'unstable') Architecture: amd64 (x86_64) Kernel: Linux 4.19.0-8-amd64 (SMP w/8 CPU cores)

Bug#953013: [Python-modules-team] Bug#953013: pyyaml: CVE-2020-1747: arbitrary command execution through python/object/new when FullLoader is used

2020-03-03 Thread Scott Kitterman
On Tuesday, March 3, 2020 11:41:26 AM EST Salvatore Bonaccorso wrote: > Hi Scott, > > On Tue, Mar 03, 2020 at 09:19:06AM -0500, Scott Kitterman wrote: > > On Tuesday, March 3, 2020 2:29:51 AM EST Salvatore Bonaccorso wrote: > > > Source: pyyaml > > > Version: 5.3-1 > > > Severity: important > > >

Bug#950983: clickhouse FTBFS in bullseye/sid

2020-03-03 Thread Stefano Rivera
Hi Jochen (2020.02.09_00:40:36_-0800) Control: tag -1 + patch I notice that Ubuntu has a patch for this: https://launchpadlibrarian.net/466815449/clickhouse_18.16.1+ds-5_18.16.1+ds-5ubuntu1.diff.gz It's building on amd64 and ppc64el:

Bug#953030: bacula-sd.postinst fails on systems with protected_regular=2 enabled

2020-03-03 Thread Carsten Leonhardt
Control: tag -1 pending Hi, > bacula-sd.postinst currently uses mktemp, chowns to bacula.bacula, and > then attempts to write to the temporary file using a shell redirection. > > If a system has /proc/sys/fs/protected_regular set to 2, then this > fails[1]. thanks for the patch. I've commited a

Bug#951420: RFS: sane-backends/1.0.29-1~experimental1 -- API library for scanners -- utilities

2020-03-03 Thread Jörg Frings-Fürst
Hello Adam, thanks for your review. We are this week on a exhibition. That's why I can't look for it until next weekend. CU Jörg Am Freitag, den 28.02.2020, 19:58 +0100 schrieb Adam Borowski: > On Sun, Feb 16, 2020 at 12:19:44PM +0100, Jörg Frings-Fürst wrote: > >Package name:

Bug#953038: ITP: node-emoj -- Find relevant emoji from text on the command-line

2020-03-03 Thread Ko Ko Ye`
Package: wnpp Severity: wishlist Owner: kokoye2007 * Package name: node-emoj Version : 2.0.0 Upstream Author : Sindre Sorhus (sindresorhus.com ) * URL : https://github.com/sindresorhus/emoj#readme * License : MIT Programming Lang: JavaScript Description

Bug#953037: lua-cgi: CVE-2014-2875

2020-03-03 Thread Sylvain Beucler
Package: lua-cgi Severity: important Tags: security upstream Control: found -1 5.2~alpha2-1 Hi, The following vulnerability was published for lua-cgi. CVE-2014-2875[0]: | The session.lua library in CGILua 5.2 alpha 1 and 5.2 alpha 2 uses | weak session IDs generated based on OS time, which

Bug#953013: [Python-modules-team] Bug#953013: pyyaml: CVE-2020-1747: arbitrary command execution through python/object/new when FullLoader is used

2020-03-03 Thread Salvatore Bonaccorso
Hi Scott, On Tue, Mar 03, 2020 at 09:19:06AM -0500, Scott Kitterman wrote: > On Tuesday, March 3, 2020 2:29:51 AM EST Salvatore Bonaccorso wrote: > > Source: pyyaml > > Version: 5.3-1 > > Severity: important > > Tags: security upstream > > Forwarded: https://github.com/yaml/pyyaml/pull/386 > > >

Bug#953036: Flag date-based/large version numbers

2020-03-03 Thread Richard Laager
Package: lintian Severity: wishlist From debian-devel: On 3/3/20 7:35 AM, Edward Betts wrote: > When I originally packaged uap-core upstream was not producing any releases. > I was using the most recent commit to master on github with the date for the > version number. The initial version was

Bug#953035: openssh-client: SIGABRT with “corrupted size vs. prev_size”

2020-03-03 Thread Thorsten Glaser
Package: openssh-client Version: 1:8.2p1-4 Severity: normal An ssh session with port forwarding just crashed for me. Backtrace: (gdb) bt #0 __GI_raise (sig=sig@entry=6) at ../sysdeps/unix/sysv/linux/raise.c:50 #1 0xf7a75513 in __GI_abort () at abort.c:79 #2 0xf7acc82c in __libc_message

Bug#949584: mmdebstrap fails to create temp file if TMPDIR is set to directory with mode 0755

2020-03-03 Thread Benjamin Drung
Am Mittwoch, den 22.01.2020, 21:40 +0100 schrieb Johannes Schauer: > Hi, > > Quoting Benjamin Drung (2020-01-22 13:23:36) > > Am Mittwoch, den 22.01.2020, 13:13 +0100 schrieb Johannes Schauer: > > > Quoting Benjamin Drung (2020-01-22 12:58:38) > > > > when I set TMPDIR to a directory that has

Bug#937302: playonlinux: Python2 removal in sid/bullseye

2020-03-03 Thread Scott Talbert
On Tue, 3 Mar 2020, Markus Koschany wrote: Sorry, I do not mean any disrespect.  What can I do to help? I believe the best thing to do would be to package the new Java version. https://github.com/PhoenicisOrg/phoenicis This requires some knowledge of Java and how Java applications are

Bug#953033: Not ready for text-scale-adjust

2020-03-03 Thread 積丹尼 Dan Jacobson
Package: w3m-el-snapshot X-Debbugs-Cc: yama...@jpl.org Version: 1.4.632+0.20191218.2243.cef0c7e-1 $ emacs -q -f w3m C-x C-= [text-scale-adjust] C-= [anonymous-command] Here the lines get cut off. They should fold, staying on the screen as the text zooms.

Bug#950718: RFS: depthcharge-tools/0.3.1-1 [ITP] -- Tools for ChromeOS firmware/bootloader integration

2020-03-03 Thread Cyril Brulebois
Hey, Alper Nebi Yasak (2020-03-03): > I've uploaded a new version of depthcharge-tools to mentors.debian.net. > > General changes: > - New upstream release v0.3.1, set version to 0.3.1-1 > - Use *.{service,init} symlinks to install systemd/init.d files > - Export build-configuration variables

Bug#952669: not an Aegisub bug

2020-03-03 Thread Lucas B. Cohen
reassign 952669 nvidia-graphics-drivers-legacy-390xx severity wishlist retitle 952669 bad interaction between nvidia legacy driver 3900xx and wxWidgets 3.0 when using unsupported GM107 chip thanks Mucking around with my system, I've managed to figure that the wxWidgets UI issue in Aegisub only

Bug#933301: mpd: systemd service doesn't use user configured UNIX socket since last update

2020-03-03 Thread Max Kellermann
On 2020/03/03 15:25, Simon Désaulniers wrote: > Hi, > > I have gone back working on this issue and I can confirm that the issue is due > to the socket. It seems like this "socket" unit is disabling usage of a Unix > socket in favor of a TCP socket. What do you recommend for someone who wants >

Bug#952895: php7.3-fpm: Can't install/upgrade on system with elogind (forced init switch)

2020-03-03 Thread Michael Biebl
On Sun, 1 Mar 2020 17:02:29 +0100 =?utf-8?Q?Ond=C5=99ej_Sur=C3=BD?= wrote: > Control: severity -1 wishlist > > Hi Lorenzo, > > not until opentmpfiles provides unified interface. I am not adding more shell > spaghetti anywhere if I can help it. > > systemd does not enforce systemd-sysv package

  1   2   >