Control: tag -1 + patch Hi,
(sorry for the delay, post-DebConf holiday / traveling + another conference) Michael Biebl: > They might want to usertag this bug accordingly Done with: bts user [email protected] \ . usertag 855346 + help-needed Feel free to do so yourself next time :) > Fwiw, I can confirm that opening attachments from TB with AA active is > currently broken e.g. for PDF files. My PDF viewer is evince. Indeed. I observe the same problem for OpenPGP keys, PNG images, Scribus .sla files and ODS spreadsheets: the profile we ship will forbid opening almost all kinds of attachments, and despite the "Open" action being advertised in the GUI, one currently has to first save the attachment and then open it from outside of Thunderbird. Such a restriction might make sense as long as AppArmor is disabled by default: users who want extra security hard enough to opt-in might be ready to live with it… although it's troubling that we advertise a broken "Open" action in this case. But I don't think it's acceptable now that we're seriously considering enabling AppArmor by default in Debian. The bugfix/855346 branch in the https://git-tails.immerda.ch/icedove.git repository has a fix based on Ulrike's branch + additional fixes. Please review & merge :) I'll forward my proposed change upstream once it's been clarified for this profile what's our upstream actually is: https://bugs.debian.org/874100 By the way, IIRC Carsten told me that I could push such fixed directly to the Vcs-Git. I've just tried to push my branch there, and was told: remote: error: insufficient permission for adding an object to repository database ./objects remote: fatal: failed to write object error: remote unpack failed: unpack-objects abnormal exit To git+ssh://git.debian.org/git/pkg-mozilla/icedove.git ! [remote rejected] bugfix/874100 -> bugfix/874100 (unpacker error) error: failed to push some refs to 'git+ssh://git.debian.org/git/pkg-mozilla/icedove.git' Cheers, -- intrigeri

