Bug#1060134: kmod-udeb vs busybox-udeb: agree on who ships depmod

2024-04-26 Thread Marco d'Itri
On Apr 26, Michael Tokarev wrote: > So, should I disable module utils in busybox-udeb now? I think so. > Is kmod udeb ready and used in d-i already, or does it need some > prep first? AFAIK it works. -- ciao, Marco signature.asc Description: PGP signature

Bug#1060134: kmod-udeb vs busybox-udeb: agree on who ships depmod

2024-04-09 Thread Marco d'Itri
On Jan 06, Michael Tokarev wrote: > Yes, some utils in busybox aren't as good as regular implementations. For Yes. Nowadays kmod has many more features related to compressed modules and verification of signatures. Can we agree that kmod should provide these programs for d-i? Or can the d-i

Bug#1056156: varnish: CVE-2023-44487: VSV00013 Varnish HTTP/2 Rapid Reset Attack

2024-04-04 Thread Marco d'Itri
On Apr 04, Salvatore Bonaccorso wrote: > While I do agree (and it was filled with this severity), the bug > severity would not be RC, varnish currently seem to lack active > maintainership. Not anymore: https://salsa.debian.org/md/varnish/ . -- ciao, Marco signature.asc Description: PGP

Bug#782691: varnishncsa sometimes does not start after reboot

2024-04-03 Thread Marco d'Itri
On Apr 16, Oskar Liljeblad wrote: > varnishncsa sometimes does not start after reboot. > I suspect varnishncsa fails because it cannot contact varnish, which has not > started completely yet. This bug is 9 years old: can you still reproduce it? -- ciao, Marco signature.asc Description: PGP

Bug#1068311: tcp-wrappers: Can anything be done to avoid the libnsl dependency?

2024-04-03 Thread Marco d'Itri
On Apr 03, Colin Watson wrote: > I wondered if anything could be done to avoid this or refactor it > somehow? Sure: I think that it makes sense to just disable NETGROUP (which is the conditional for yp_get_default_domain), because I do not think that anybody in 2024 still uses NIS and if they

Bug#1056156: varnish: CVE-2023-44487: VSV00013 Varnish HTTP/2 Rapid Reset Attack

2024-04-01 Thread Marco d'Itri
Control: found -1 5.0.0-1 Control: fixed -1 7.4.2 On Nov 17, Salvatore Bonaccorso wrote: > CVE-2023-44487[0]: > | The HTTP/2 protocol allows a denial of service (server resource > | consumption) because request cancellation can reset many streams > | quickly, as exploited in the wild in August

Bug#1068184: RM: gup -- ROM; popcon 0

2024-04-01 Thread Marco d'Itri
Package: ftp.debian.org Severity: normal X-Debbugs-Cc: g...@packages.debian.org Control: affects -1 + src:gup User: ftp.debian@packages.debian.org Usertags: remove As much as I like retrocomputing, let's not waste space in the archive. -- ciao, Marco signature.asc Description: PGP

Bug#1067932: usrmerge is dangerous : lost bash and other commands

2024-03-29 Thread Marco d'Itri
On Mar 29, Denis Migdal wrote: > Maybe I was better off reinstalling, indeed, but I prefer to properly > plan/prepare for it. This is why the conversion procedure stopped. Then you started thinkering with your system to "fix" it and did worse. > It'd help me if, at least, usrmerge printed the

Bug#1041552: HFS/HFS+ are insecure

2024-03-14 Thread Marco d'Itri
On Mar 13, Michael Biebl wrote: > > So I propose this content for a file like > > /usr/lib/udev/rules.d/75-insecure-fs.rules: > Just curious: Why did you pick priority 75? I can't remember. -- ciao, Marco signature.asc Description: PGP signature

Bug#1064798: kmod: installs same filename to both bin and sbin

2024-03-09 Thread Marco d'Itri
On Mar 09, ca...@allfreemail.net wrote: > I believe the fix is incomplete, because both /usr/bin/lsmod and > /usr/sbin/lsmod are still being created. Actually it has been this way at least since Debian 7. I will not break compatibility for no good reason. -- ciao, Marco signature.asc

Bug#1061516: Please add a sshd@.service template for socket activation

2024-03-05 Thread Marco d'Itri
On Mar 04, Colin Watson wrote: > Does this patch look workable? It mostly just resurrects the template > unit we used to ship, under a different name. Looks good to me! -- ciao, Marco signature.asc Description: PGP signature

Bug#1065192: RM: gortr -- ROM; abandoned by upstream

2024-03-01 Thread Marco d'Itri
Package: ftp.debian.org Severity: normal X-Debbugs-Cc: go...@packages.debian.org Control: affects -1 + src:gortr User: ftp.debian@packages.debian.org Usertags: remove Development of cfrpki and gortr has been discontinued by the upstream maintainers, so there is no reason to keep them in

Bug#1065191: RM: cfrpki -- ROM; abandoned by upstream

2024-03-01 Thread Marco d'Itri
Package: ftp.debian.org Severity: normal X-Debbugs-Cc: cfr...@packages.debian.org Control: affects -1 + src:cfrpki User: ftp.debian@packages.debian.org Usertags: remove Development of cfrpki and gortr has been discontinued by the upstream maintainers, so there is no reason to keep them in

Bug#1061516: Please add a sshd@.service template for socket activation

2024-02-27 Thread Marco d'Itri
On Jan 25, Marco d'Itri wrote: > systemd currently expects the template to be named sshd@.service > (because that is what Fedora uses), but if you prefer to keep the > ssh@.service name then I suppose that we could patch systemd as well. Is there any way I can help with this? The ma

Bug#1064798: kmod: installs same filename to both bin and sbin

2024-02-25 Thread Marco d'Itri
On Feb 26, ca...@allfreemail.net wrote: > This causes a problem on a filesystem layout where bin and sbin are > merged into a single real directory, typically by sbin being a symlink > to bin. Such a filesystem layout has become standard on some > distributions now, and others are moving onto

Bug#1063804: FTBFS: depmod: FATAL: could not search modules: No such file or directory

2024-02-12 Thread Marco d'Itri
On Feb 12, Salvatore Bonaccorso wrote: > --with-module-directory=/usr/lib/modules > > Looping in Marco for comments. I can revert it if it causes too much trouble, but maybe this is just the right time to switch the kernel packages to /usr/lib/modules/ as well? Please let me know if I am

Bug#1063476: the sanesecurity configuration is not suitable for a release

2024-02-08 Thread Marco d'Itri
Source: fangfrisch Version: 1.7.0-1 Severity: grave Tags: upstream Control: forwarded -1 https://github.com/rseichter/fangfrisch/issues/30 The sanesecurity section of default configuration, if enabled, relies on an unofficial HTTP mirror which is seriously overloaded and probably seriously

Bug#1061516: Please add a sshd@.service template for socket activation

2024-01-25 Thread Marco d'Itri
Package: openssh-server Version: 1:9.6p1-3 Severity: normal Control: affects -1 systemd The next release of systemd will contain support to connect to the system with SSH over an AF_VSOCK socket: https://github.com/systemd/systemd/pull/30777/files The server side of this uses what Ubuntu

Bug#1054393: dns-root-data: New IPs for b.root-servers-net 2023-11-27

2024-01-22 Thread Marco d'Itri
This is annoying and needs to be fixed in stable too. Do you want me to make a NMU? -- ciao, Marco signature.asc Description: PGP signature

Bug#1061178: usrmerge: Usrmerge fails with a staticly-linked cp command

2024-01-20 Thread Marco d'Itri
On Jan 20, Ajax Dong wrote: > Days ago I upgraded one of my machines (I use sudo machinectl shell > network-service to get its shell) from Debian Buster to Debian Bookworm. > The cp and mv command on that machine was staticly-linked and > self-contained. (It does not require any shared library.)

Bug#1041552: HFS/HFS+ are insecure

2024-01-10 Thread Marco d'Itri
On Jan 10, Michael Biebl wrote: > While we could ship such a udev rule for udisks, I don't think it will > properly solve the issue. The device will still show up in nautilus, plasma > etc and mounting is just an additional click away. The threat model here is: somebody connects a crafted USB

Bug#1060002: usrmerge: support working with a moved coreutils and policycoreutils

2024-01-04 Thread Marco d'Itri
On Jan 04, Helmut Grohne wrote: > the way usrmerge works now prevents us from moving /bin/cp and > /sbin/restorecon to /usr for DEP17. I'm attaching a patch that makes > both of them movable and thus decouples their move from when base-files > switches. Do you have any objections? Please just

Bug#1059920: DEP17: move all kmod files to /usr

2024-01-03 Thread Marco d'Itri
On Jan 03, Helmut Grohne wrote: > We want to finalize the /usr-merge transition via DEP17 by moving all > the files to /usr. kmod is involved now, because it is installed by > debootstrap. Hence, I'm sending you a patch for the move. I don't think > this is going to cause any flags from dumat,

Bug#1059841: DDPO: backports-new show in the wrong column

2024-01-02 Thread Marco d'Itri
Package: qa.debian.org Severity: normal I have uploaded fort-validator 1.6.1-1~bpo12+2 to bookworm-backports, but it is shown in the testing/unstable column instead of in the stable one. -- ciao, Marco signature.asc Description: PGP signature

Bug#1059768: CapabilityBoundingSet breaks fileOwner/fileGroup

2023-12-31 Thread Marco d'Itri
Package: rsyslog Version: 8.2310.0-1 Severity: normal Tags: upstream forwarded -1 https://github.com/rsyslog/rsyslog/pull/5223 affects -1 inn inn2 CapabilityBoundingSet in /usr/lib/systemd/system/rsyslog.service lacks CAP_DAC_OVERRIDE, which is needed to make fileOwner/fileGroup work. --

Bug#1059745: ITP: cryptsetup-2fa -- 2FA plugin for cryptsetup

2023-12-31 Thread Marco d'Itri
On Dec 31, YunQiang Su wrote: > Upstream Contact: YunQiang Su > * URL : https://github.com/wzssyqa/cryptsetup-2fa/ What are the benefits of this compared to systemd-cryptenroll? -- ciao, Marco signature.asc Description: PGP signature

Bug#1058761: cheese segfaulted

2023-12-15 Thread Marco d'Itri
Package: cheese Version: 44.1-1 Severity: normal Tags: upstream I do not remember exactly what I did to cause this. #0 0x7f5d4cf46c83 in find_root (node=0xdd74dc3c3606beee) at ../../../glib/gsequence.c:1615 Download failed: Invalid argument. Continuing without source file

Bug#1058760: assertion failed in isc_signal_stop()

2023-12-15 Thread Marco d'Itri
Package: bind9-host Version: 1:9.19.17-1 Severity: normal Tags: upstream This happened after I pressed ^C: #0 __pthread_kill_implementation (threadid=, signo=signo@entry=6, no_tid=no_tid@entry=0) at ./nptl/pthread_kill.c:44 Download failed: Invalid argument. Continuing without source file

Bug#1057089: bullseye-pu: package usrmerge/37~deb12u1

2023-11-30 Thread Marco d'Itri
On Nov 29, Andreas Beckmann wrote: > Improve the usrmerge experience in bookworm. Great idea, thank you for working on this! -- ciao, Marco signature.asc Description: PGP signature

Bug#1056698: should not depend on the Javascript libraries

2023-11-24 Thread Marco d'Itri
Package: restic Version: 0.16.2-1 Severity: normal Having a 100% console-based backup program depend on tens of MBs of Javascript libraries and fonts just for the HTML manual that almost nobody will access there is really wasteful. Please make these recommends, or else move the HTML to a

Bug#810018: New Essential package procps-base

2023-11-20 Thread Marco d'Itri
On Nov 20, Craig Small wrote: > Also why is killall5 not a candidate too? Probably because it makes no sense outside of sysvinit, except that as a footgun. (Also, is it equivalent to pkill --inverse?) -- ciao, Marco signature.asc Description: PGP signature

Bug#706918: pppd stopped passing ipparam value to /etc/ppp/ip-up after an upgrade to Wheezy

2023-11-04 Thread Marco d'Itri
On May 06, Evgeny Kapun wrote: > Package: ppp > Version: 2.4.5-5.1+b1 > > If ipparam option is supplied to pppd, pppd is supposed to pass its > argument to scripts like /etc/ppp/ip-up. However, after a system > upgrade from Squeeze to Wheezy, this stopped working. Previously, > ip-up was

Bug#736851: ppp: Please ship logcheck rules

2023-11-03 Thread Marco d'Itri
Control: severity -1 wishlist Control: tag -1 help On Jan 27, Jonathan Wiltshire wrote: > Please ship snippets for consumption by the logcheck package. Please provide sensible rules. -- ciao, Marco signature.asc Description: PGP signature

Bug#514274: Bad ppp frames for certain TCP package lengths

2023-11-03 Thread Marco d'Itri
On Feb 05, Eckhart Wörner wrote: > With a UMTS connection to o2 Germany, connections sometimes dropped. Looking > into that issue with wireshark, I found out that the > connection drops because a TCP package of length 187 + k * 240 bytes (with k > in 0,1,...) never makes it to the TCP stack

Bug#555477: /usr/sbin/pppd: ppp with persist does not redial after error

2023-11-03 Thread Marco d'Itri
On Nov 09, Alex S Kurilo wrote: > ppp does not redial if pppoe server return 'No client slots available' > (persist turned on, after other errors it tries to reconnect) > The following line appears in the syslog before pppd dies: > > PADS: System-Error: RP-PPPoE: Server: No client slots

Bug#650634: pppd eats all cpu in tdb_allocate()

2023-11-03 Thread Marco d'Itri
On Dec 01, onehalf3544 wrote: > Problem is reproducible (nobody is able to establish connection =(( ). > I'll continue debugging, but would appreciate any advice. Are you still able to reproduce this issue? -- ciao, Marco signature.asc Description: PGP signature

Bug#451363: ppp: radius plugin stops talking to radius server

2023-11-03 Thread Marco d'Itri
On Nov 15, B Thompson wrote: > I am having problems with the radius plugin supplied with ppp (I am using this > to authenticate users of my (poptop) pptp vpn. Here are the logs from a failed > login :- Are you still able to reproduce this issue? -- ciao, Marco signature.asc Description: PGP

Bug#384998: rp-pppoe plugin and MLPPP don't play well together - tiny fragments are sent

2023-11-03 Thread Marco d'Itri
On Aug 28, James Harper wrote: > When using the rp-pppoe plugin and pppoe, the fragments used are tiny (8 > bytes of ppp data), and consequently the link behaves really really poorly. > The correct behaviour is that MLPPP fragments should be (packet size) / > (number of links), but less than

Bug#374698: pppd exits despite 'persist' option

2023-11-03 Thread Marco d'Itri
On Jun 20, Claus Fischer wrote: > Summary: The persist option does not work properly. Are you still able to reproduce this issue? -- ciao, Marco signature.asc Description: PGP signature

Bug#203620: ppp: pppstats returns 0 for IN (incoming bytes) after a while

2023-11-03 Thread Marco d'Itri
On Jul 31, Christian Schoenebeck wrote: > I encountered that pppstats displays 0 for incoming bytes after a while. Here > is an example output of pppstats: Are you still able to reproduce this issue? -- ciao, Marco signature.asc Description: PGP signature

Bug#325746: pppd 2.4.3 (+pptpd) bug - error count recive and transmit bytes

2023-11-03 Thread Marco d'Itri
On Aug 30, Женя Дрюков wrote: > Error count VPN traffic client disconnect after 10 secconds width only > Send bytes 113 Megabytes !!! Are you still able to reproduce this issue? -- ciao, Marco signature.asc Description: PGP signature

Bug#518624: /usr/sbin/pppd: ppp authentication mschapv2 doesn't work after upgrading winbind to 2:3.2.5-4

2023-11-03 Thread Marco d'Itri
On Mar 07, Sergey Dorofeev wrote: > Both upgraded. > Windows clients also affected. Are you still able to reproduce this issue? -- ciao, Marco signature.asc Description: PGP signature

Bug#627088: ppp: reconnect after hangup fails with many Protocol-Reject messages

2023-11-03 Thread Marco d'Itri
On May 17, Richard wrote: > after upgrading to wheezy a previously functioning PPTP connection has > problems. > when the connection hangs up and the daemon tries to reconnect, the > connection fails > with the following log messages: Are you still able to reproduce this issue? -- ciao,

Bug#1034053: segfaulted on quit

2023-10-02 Thread Marco d'Itri
Control: version -1 2.2.12-0.1 Again: #0 0x7f4fd963a11a in __GI___libc_free (mem=0x54495f7469) at ./malloc/malloc.c:3344 Download failed: Argomento non valido. Continuing without source file ./malloc/./malloc/malloc.c. 3344./malloc/malloc.c: File o directory non esistente. (gdb)

Bug#1053156: libmnl is 18 months out of date

2023-09-28 Thread Marco d'Itri
Source: libmnl Version: 1.0.4-3 Severity: wishlist 1.0.5 was released in April 2022. -- ciao, Marco signature.asc Description: PGP signature

Bug#704435: varnish: Pushing vcls failed:#012CLI communication error (hdr)

2023-09-25 Thread Marco d'Itri
On Apr 01, "Rune K. Svendsen" wrote: > Apr 1 06:40:17 raspberrypi varnishd[28809]: Pushing vcls failed:#012CLI > communication error (hdr) This bug is 10 years old: can you still reproduce this? -- ciao, Marco signature.asc Description: PGP signature

Bug#945269: debian-policy: packages should use tmpfiles.d(5) to create directories below /var

2023-09-17 Thread Marco d'Itri
On Sep 17, Bill Allombert wrote: > Does not that would break users expectation that the system image contains > /var > before the first boot ? I am not aware of such expectations. > A lot of things in /var are caches that are mostly instance-independent and > can > be prefilled, but for that,

Bug#945269: debian-policy: packages should use tmpfiles.d(5) to create directories below /var

2023-09-17 Thread Marco d'Itri
On Sep 17, Russ Allbery wrote: > (I am a little confused by this wording, but I think what you're saying is > that /usr is encrypted and read-only, and /var is recreated on each boot. > That at least is my understanding of the pattern that you're trying to > enable.) The general idea is to be

Bug#885698: What licenses should be included in /usr/share/common-licenses?

2023-09-10 Thread Marco d'Itri
On Sep 10, Enrico Zini wrote: > I like this. I'd say that even if a license is shorter than 25 lines I'd > appreciate to be able to link to it instead of copypasting it. Me too. > I like to be able to fill the license field with a value, after checking > that the upstream license didn't diverge

Bug#1050901: libc6:amd64: install /usr/lib64 without including it

2023-09-08 Thread Marco d'Itri
> As the issue is actually introduced by the usrmerge package, I am > reassigning the bug there. I am also tagging it wontfix as I don't > believe the usrmerge maintainer will want to rollback the usrmerge > transition, but feel free to change that if I am wrong. Indeed. I have used TSM for many

Bug#1043456: tecla: shows nothing and segfaults on keypress

2023-09-07 Thread Marco d'Itri
On Sep 07, Jeremy Bícha wrote: > This popup window is Tecla. Does it work correctly? This way it does not crash anymore. Still, it should be fixed to either not crash or not start if it can only be called by gnome-control-center. (BTW, it does not react to left-alt, while it correctly reports

Bug#1043456: tecla: shows nothing and segfaults on keypress

2023-09-07 Thread Marco d'Itri
Control: reopen -1 Still broken. ||/ Name Version Architecture Description +++-==---==> ii tecla 45~rc-1 amd64keyboard layout viewer for the GNO> [Thread debugging using libthread_db

Bug#1051119: NM reports fake Wi-Fi BSSIDs

2023-09-02 Thread Marco d'Itri
Package: network-manager Version: 1.44.0-1 Severity: important "nmcli device wifi list" reports obviously fake BSSIDs for all networks to which I have not connected to: IN-USE BSSID SSIDMODE CHAN RATE SIGNAL > B4:4B:D6:..:..:.. (omitted)

Bug#1050681: bookworm-pu: package inn2/2.7.1-1~deb12u1

2023-08-27 Thread Marco d'Itri
nnrpd hangs +when compression is enabled. + * Added patch backport_f7d111aad: this upstream commit adds support for +high-precision syslog timestamps which now are the default in Debian. + * Made inn-{radius,secrets}.conf not world readable. + + -- Marco d'Itri Mon, 28 Aug 2023 02:04:59

Bug#1050586: kmod: Updating to kmod to 30+20230601-1 results in a non booting system modules cannot be decompressed

2023-08-27 Thread Marco d'Itri
Control: retitle -1 kmod does not work with XZ in-kernel module decompression On Aug 27, Jon Westgate wrote: > Note that I already had "Support in-kernel module decompression" selected > when the compression method was XZ. > > Would you like me to try without it? No need to: we know that

Bug#1041552: HFS/HFS+ are insecure

2023-08-27 Thread Marco d'Itri
On Aug 27, Diederik de Haas wrote: > While I agree that "orphan" does mean that it is NOT actively maintained, > AFAICT the situation is a bit more blurry for "odd fixes". All these file systems are either rare enough and/or not used on removable media, so I do not believe that it is

Bug#1050586: kmod: Updating to kmod to 30+20230601-1 results in a non booting system modules cannot be decompressed

2023-08-26 Thread Marco d'Itri
On Aug 26, Jon Westgate <0...@fsck.tv> wrote: > The error message it gave was "decompresson failed with status 6" Status 6 is XZ_OPTIONS_ERROR, which means "Input was encoded with settings that are not supported by this XZ decoder". So it looks like you have compressed the modules (how?) with XZ

Bug#1041552: HFS/HFS+ are insecure

2023-08-26 Thread Marco d'Itri
Control: reassign -1 udisks2 Control: retitle -1 do not mount automatically unmaintained file systems On Jul 20, md wrote: > You are totally correct. > Kernel team, please blacklist HFS/HFS+ for automounting. As discussed on debian-devel@, this policy should not be handled by the kernel because

Bug#1050586: kmod: Updating to kmod to 30+20230601-1 results in a non booting system modules cannot be decompressed

2023-08-26 Thread Marco d'Itri
On Aug 26, Jon Westgate wrote: > Yes I am using compressed modules And are these modules compressed with xz or something else? This new code was introduced in the latest snapshot, and apparently it fails when used with kernels with compressed modules support enabled (which so far is not the

Bug#1050582: kmod update corrupts systemd uefi boot

2023-08-26 Thread Marco d'Itri
On Aug 26, antonio wrote: > Kernel: Linux 6.4.12-1-liquorix-amd64 (SMP w/24 CPU threads; PREEMPT) I see that you are using a custom kernel. What is the status of the CONFIG_MODULE_COMPRESS_* kernel configuration options? -- ciao, Marco signature.asc Description: PGP signature

Bug#1050586: kmod: Updating to kmod to 30+20230601-1 results in a non booting system modules cannot be decompressed

2023-08-26 Thread Marco d'Itri
On Aug 26, Jon Westgate <0...@fsck.tv> wrote: > Kernel: Linux 6.4.11 (SMP w/12 CPU threads; PREEMPT) I see that you are using a custom kernel. What is the status of the CONFIG_MODULE_COMPRESS_* kernel configuration options? -- ciao, Marco signature.asc Description: PGP signature

Bug#1050586: kmod: Updating to kmod to 30+20230601-1 results in a non booting system modules cannot be decompressed

2023-08-26 Thread Marco d'Itri
On Aug 26, Jon Westgate <0...@fsck.tv> wrote: > The system partially booted but systemd then prevented boot due to missing > modules, > The error message it gave was "decompresson failed with status 6" Are you using compressed modules? -- ciao, Marco signature.asc Description: PGP signature

Bug#1050542: bookworm-pu: package openbsd-inetd/0.20221205-2+deb12u1

2023-08-25 Thread Marco d'Itri
+1,21 @@ +openbsd-inetd (0.20221205-2+deb12u1) bookworm; urgency=medium + + * Rebuilt for bookworm. + + -- Marco d'Itri Sat, 26 Aug 2023 00:34:16 +0200 + +openbsd-inetd (0.20221205-2) unstable; urgency=medium + + * Updated the Debian patch default_v4v6 to fix fix a double free and +a memory

Bug#1050208: libc6: double free detected in tcache 2, then abort

2023-08-23 Thread Marco d'Itri
In one or two weeks I will also do a stable upload. -- ciao, Marco signature.asc Description: PGP signature

Bug#1043539: project: Forwarding of @debian.org mails to gmail broken

2023-08-15 Thread Marco d'Itri
On Aug 14, Stephen Frost wrote: >If someone has some idea how to get them to care about ARC, I'd love to >hear about it, as I have folks on the one hand who view DKIM/DMARC as >too painful to set up but then they end up with bounces from gmail due >to my forwarding of messages through my server

Bug#1043094: gnome-flashback segfaults after unlocking the screen

2023-08-05 Thread Marco d'Itri
Package: gnome-flashback Version: 3.46.0-2 Severity: important This started on August 2 and I have already seen 3 crashes. (gdb) where #0 0x55841ae65d2a in check_volume_queue (manager=0x55841bf80270 [GsdAutomountManager]) at

Bug#1041892: debchange --bpo ignores -D

2023-07-24 Thread Marco d'Itri
Package: devscripts Version: 2.23.5 Severity: normal If I run e.g. "debchange -D bullseye-backports --bpo" then debchange should be smart enough to use the correct value for the changelog entry and for the package version, but instead it defaults to the current stable release: package

Bug#1041552: HFS/HFS+ are insecure

2023-07-21 Thread Marco d'Itri
On Jul 21, Matthew Garrett wrote: > > You are totally correct. > > Kernel team, please blacklist HFS/HFS+ for automounting. > Isn't this a userland policy decision? udisks will happily trigger a > module load for hfsplus if udev has identified it, and I don't think > there's a trivial

Bug#1039919: Please consider the ssh-agent socket activation patch

2023-06-29 Thread Marco d'Itri
Source: openssh Severity: wishlist Tags: patch It would be nice to have this patch added to the Debian package: http://lists.mindrot.org/pipermail/openssh-unix-dev/2023-June/040812.html -- ciao, Marco signature.asc Description: PGP signature

Bug#1039913: Please add hook for self-signing systemd-boot after upgrade

2023-06-29 Thread Marco d'Itri
On Jun 29, Jan Naumann wrote: > Could you please add a hook to the postinst that either a local script can be > called on installation time which takes care of signing the image (similar to > the `/etc/kernel/postinst.d/ mechamism) or add some call to `sbsign` yourself > if > e.g. the signing

Bug#1039522: usrmerge: cannot complete upgrade to bookworm because of #842145

2023-06-26 Thread Marco d'Itri
On Jun 26, Giuseppe Sacco wrote: > Warning: NFS detected, /usr/lib/usrmerge/convert-usrmerge will not be run > automatically. See #842145 for details. What is the purpose of opening this new bug about the same issue? -- ciao, Marco signature.asc Description: PGP signature

Bug#1038853: usrmerge: clean up the unused empty biarch directories

2023-06-22 Thread Marco d'Itri
Release managers, I would like to upload to 12.1 a new package to fix this (and other minor issues). On Jun 22, Andreas Beckmann wrote: > Package: usrmerge > Version: 35 > Severity: important > Tags: patch > > bootstrapping a merged-/usr system or earlier conversions may have > created empty

Bug#945269: debian-policy: packages should use tmpfiles.d(5) to create directories below /var

2023-06-13 Thread Marco d'Itri
On Jun 13, Bill Allombert wrote: > Conversely, sometimes I need to use chroots to test init scripts. > start-stop-daemon should not refuse to run in a chroot if policy-rc.d allows > it. I suggest that you try systemd-nspawn for this purpose. -- ciao, Marco signature.asc Description: PGP

Bug#1037362: usrmerge: Can not run due to an open file handle (GLOB) that it seems is not possible to close

2023-06-13 Thread Marco d'Itri
retitle -1 1037362 usrmerge: fails to run ldd On Jun 13, Lawrence Bayly wrote: > Spoke too soon, usrmerge broke my system worse than I could have > imagined, /usr/bin/init went to systemd but in the old place > /lib/systemd (the lib folder was either empty or not there, likely > because of

Bug#1037362: usrmerge: Can not run due to an open file handle (GLOB) that it seems is not possible to close

2023-06-12 Thread Marco d'Itri
On Jun 12, Lawrence Bayly wrote: > root@cg-sg:/tmp/coreutils/bin# ldd /bin/cp > not a dynamic executable > root@cg-sg:/tmp/coreutils/bin# file /bin/cp > /bin/cp: ELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically > linked, interpreter /lib64/ld-linux-x86-64.so.2, >

Bug#1037362: usrmerge: Can not run due to an open file handle (GLOB) that it seems is not possible to close

2023-06-12 Thread Marco d'Itri
On Jun 12, Lawrence Bayly wrote: > root@cg-sg:~# file /bin/cp > /bin/cp: ELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically > linked, interpreter /lib64/ld-linux-x86-64.so.2, for GNU/Linux 2.6.32, > BuildID[sha1]=3a0bad79264ea6b37c1b8d4dd2b206b8001097dc, stripped Interesting.

Bug#1037362: usrmerge: Can not run due to an open file handle (GLOB) that it seems is not possible to close

2023-06-12 Thread Marco d'Itri
On Jun 12, Lawrence Bayly wrote: > The output is as follows:- > > root@cg-sg:~# ldd /bin/cp >not a dynamic executable Weird. Is /bin/cp a script then? Where does it come from? -- ciao, Marco

Bug#1037362: usrmerge: Can not run due to an open file handle (GLOB) that it seems is not possible to close

2023-06-12 Thread Marco d'Itri
On Jun 12, Lawrence Bayly wrote: > FATAL ERROR: > Can't close(GLOB(0x564e905c3aa0)) filehandle: '' at > /usr/lib/usrmerge/convert-usrmerge line 222 This is not an open file but the call to ldd, the default error message is stupid. Please report the output and exit status of "ldd /bin/cp". --

Bug#1037257: is 5 years out of date, has warnings

2023-06-09 Thread Marco d'Itri
Package: python3-junos-eznc Version: 2.1.7-5 Severity: normal 2.1.7 was released in 2017. Running a playbook which depends on this package makes Ansible emit these warning: /usr/lib/python3/dist-packages/jnpr/junos/device.py:838: SyntaxWarning: "is not" with a literal. Did you mean "!="? if

Bug#1036920: systemd: please ship a placeholder in /usr/lib/modules-load.d/

2023-05-29 Thread Marco d'Itri
On May 29, Luca Boccassi wrote: > Does it matter that much if the empty directory is removed? Next time > a package shipping a modules-load config is installed it will be just > re-added, no? Or are there functional issues? I do not think that it is a big deal if /usr/lib/modules-load.d/

Bug#1034053: segfaulted on quit

2023-05-23 Thread Marco d'Itri
> This happened while/after saving a mailbox on quit. > Apparently nothing was corrupted. Again: warning: Section `.reg-xstate/3368169' in core file too small. #0 __pthread_kill_implementation (threadid=, signo=signo@entry=6, no_tid=no_tid@entry=0) at ./nptl/pthread_kill.c:44 Download

Bug#1036523: should not enable non-free-firmware on virtualized systems

2023-05-22 Thread Marco d'Itri
On May 22, Cyril Brulebois wrote: > For the record: non-free-firmware can be enabled because (1) the kernel logs > firmware requests, (2) available hardware matches modalias information, (3) > CPU matches one with microcode. > > (1) and (2) definitely make sense in a virtualized system as well:

Bug#1036523: should not enable non-free-firmware on virtualized systems

2023-05-21 Thread Marco d'Itri
Source: hw-detect Version: 1.155 Severity: normal Tags: d-i When bookworm is installed on a virtualized system, the non-free-firmware component will be enabled even if this is not needed: firmwares cannot be loaded on virtualized systems because guests usually lack direct access to the

Bug#1035673: unblock: whois/5.5.17

2023-05-07 Thread Marco d'Itri
/changelog b/debian/changelog index 741c74a..13123bc 100644 --- a/debian/changelog +++ b/debian/changelog @@ -1,3 +1,14 @@ +whois (5.5.17) unstable; urgency=medium + + [ Robert Scheck ] + * Added the .cd TLD server. + * Updated the -kg NIC handles server name. + + [ Marco d'Itri ] + * Removed 2 new

Bug#1035672: unblock: inn2/2.7.1-1

2023-05-07 Thread Marco d'Itri
.1-1) unstable; urgency=medium + + * New upstream release. + * Breaks manpages-dev << 6.03-2 to make upgrades smoother, because of +file(3) and list(3) removed from inn2-dev 2.6.5-1. (Closes: #1035098) + + -- Marco d'Itri Mon, 01 May 2023 19:25:42 +0200 + inn2 (2.7.1~20230322-1) unstabl

Bug#1035390: mirror submission for mirrors.qontinuum.space

2023-05-03 Thread Marco d'Itri
On May 03, Qontinuum wrote: > The server is plugged on the ISP's router which is itself linked on fiber > optics. Why such question? Because this looks very much like some kind of consumer/small business internet service, unsuitable for hosting a public mirror. -- ciao, Marco signature.asc

Bug#1035390: mirror submission for mirrors.qontinuum.space

2023-05-03 Thread Marco d'Itri
On May 03, Qontinuum wrote: > It isn't located in a datacenter and it has 1Gbps uplink bandwidth. Please describe what kind of connectivity. -- ciao, Marco signature.asc Description: PGP signature

Bug#1035390: mirror submission for mirrors.qontinuum.space

2023-05-02 Thread Marco d'Itri
On May 02, Qontinuum wrote: > Country: MC Monaco > Location: Monaco > Sponsor: Q Continuum https://qontinuum.space > Comment: This site replaces debian.qontinuum.space that no longer exist Can you clarify which data center is hosting this server and how much bandwidth is available to it? --

Bug#1034958: Consequence of #951598

2023-04-29 Thread Marco d'Itri
On Apr 29, Helge Kreutzmann wrote: > Reverse, I believe manpages-dev should declare: > Breaks: inn2-dev (<< 2.7.0-1) > Replaces: inn2-dev (<< 2.7.0-1) > > Is this fine for you? Yes. -- ciao, Marco signature.asc Description: PGP signature

Bug#1034958: Consequence of #951598

2023-04-29 Thread Marco d'Itri
Would this work for you? Please let me know ASAP since the hard freeze is very close. Package: inn2-dev Breaks: manpages-dev (<< 6.03-2) -- ciao, Marco signature.asc Description: PGP signature

Bug#1034468: unblock: inn2/2.7.1~20230322-1

2023-04-26 Thread Marco d'Itri
On Apr 26, Paul Gevers wrote: > PS: have you considered adding a non-superficial autopkgtest to your package > such that you don't need to wait for us to unblock your package? Yes, long story. There is actually one but it is not run, because it needs to be significantly modified to actually

Bug#1034586: always reports inactive/expired certificate on armhf

2023-04-21 Thread Marco d'Itri
On Apr 21, gs-debian@gluelogic.com wrote: > I probably should have started with the most basic thing: > > What is the date on your device? NTP-accurate. -- ciao, Marco signature.asc Description: PGP signature

Bug#1034586: always reports inactive/expired certificate on armhf

2023-04-21 Thread Marco d'Itri
On Apr 21, gs-debian@gluelogic.com wrote: > What your `uname -a` ? Linux omitted.mi.bofh.it 6.1.0-7-arm64 #1 SMP Debian 6.1.20-2 (2023-04-08) aarch64 GNU/Linux > What is the output of the following for you? > $ lighttpd -V | grep "Y2038 support" > + Y2038 support Same. Thank you for

Bug#1034586: always reports inactive/expired certificate on armhf

2023-04-20 Thread Marco d'Itri
On Apr 21, gs-debian@gluelogic.com wrote: > Please confirm you are running an arm64 kernel, as you posted above. Confirmed. > What lighttpd package (from which architecture) do you have installed? > $ file /usr/sbin/lighttpd root@omitted:~# /usr/sbin/lighttpd -f /etc/lighttpd/lighttpd.conf

Bug#1034586: always reports inactive/expired certificate on armhf

2023-04-18 Thread Marco d'Itri
Package: lighttpd Version: 1.4.69-1 Severity: normal I am using the latest openssl and lighttpd packages on an armhf (with an arm64 kernel) and an amd64 system, and only on the armhf system I always get this warning at startup even just after having created a Let's Encrypt certificate. Apr 19

Bug#1034572: Add a unveil(3) implementation?

2023-04-18 Thread Marco d'Itri
Source: libbsd Version: 0.11.7-4 Severity: wishlist OpenBSD wrote a unveil(3) implementation for Linux based on landlock(7), maybe it is general enough that it could be added to libbsd: https://github.com/rpki-client/rpki-client-portable/blob/master/compat/unveil_landlock.c -- ciao, Marco

Bug#1034551: kmod: Include iwlwifi.conf from Ubuntu

2023-04-18 Thread Marco d'Itri
On Apr 18, Jamie Bainbridge wrote: I would like to have feedback from the kernel team about this proposed change. > I have a laptop with iwlwifi wireless card: > > $ sudo lspci -nn | grep Net > Network controller [0280]: Intel Corporation Wireless 7265 [8086:095a] (rev > 59) > > This

Bug#1034545: crashed while exporting a PDF

2023-04-17 Thread Marco d'Itri
Package: qvge Version: 0.6.3-2 Severity: normal I think that the destination directory was not writeable. #0 0x55f6035d798d in CEditorScene::drawBackground(QPainter*, QRectF const&) () #1 0x55f60360e5d9 in CNodeEditorScene::drawBackground(QPainter*, QRectF const&) () #2

Bug#1034081: openbgpd: FTBFS twice in a row: src/bgpd/parse.c cannot be regenerated

2023-04-16 Thread Marco d'Itri
On Apr 08, Andreas Beckmann wrote: > Justification: fails to build from source twice in a row This can be fixed by adding a build-dependency on yacc. > openbgpd/experimental fails to build twice in a row. (I haven't checked > whether the version in sid has the same problem.) It does: should I

Bug#1034468: unblock: inn2/2.7.1~20230322-1

2023-04-16 Thread Marco d'Itri
. Using relative paths confuses libtool diff --git a/debian/changelog b/debian/changelog index ffbb0e6a6..eff319e64 100644 --- a/debian/changelog +++ b/debian/changelog @@ -1,3 +1,9 @@ +inn2 (2.7.1~20230322-1) unstable; urgency=medium + + * New release candidate 1 of the stable branch. + + -- Marco

  1   2   3   4   5   6   7   8   9   10   >