Bug#1073197: RM: spip/4.1.9+dfsg-1+deb12u4

2024-06-19 Thread Adam D. Barratt
On Fri, 2024-06-14 at 13:24 +0200, David Prévot wrote: > Unless you agree with bumping the spip version in stable, I’d like to > see the package removed during an upcoming point release. Out of curiosity, what does that look like? Regards, Adam

Bug#1070155: bullseye-pu: package wpa/2.9.0-21+deb11u1

2024-06-19 Thread Adam D. Barratt
Control: severity -1 normal Control: tags -1 + confirmed On Tue, 2024-04-30 at 23:31 +, Bastien Roucariès wrote: > [ Reason ] > CVE-2023-52160 security bug Please go ahead. Regards, Adam

Bug#1073839: bookworm-pu: package libimage-imlib2-perl/2.03-1.2~deb12u1

2024-06-19 Thread Adam D. Barratt
Control: tags -1 + confirmed On Wed, 2024-06-19 at 18:00 +0200, Andreas Beckmann wrote: > Rebuilding libimage-imlib2-perl would create a broken package. > This is caused by libimlib2-dev dropping imlib2-config. > The package currently in bookworm is not yet broken as the last > binNMU happened

Bug#1073208: bookworm-pu: package nvidia-graphics-drivers/535.183.01-1~deb12u1

2024-06-19 Thread Adam D. Barratt
Control: tags -1 + confirmed On Wed, 2024-06-19 at 13:27 +0200, Andreas Beckmann wrote: > Control: tag -1 - moreinfo > > On 17/06/2024 19.23, Adam D. Barratt wrote: > > Assuming britney's correct here, is there a plan for updating > > nvidia- > > open-gpu-k

Bug#1070151: bookworm-pu: package wpa/2:2.10-12

2024-06-19 Thread Adam D. Barratt
Control: severity -1 normal On Tue, 2024-04-30 at 23:03 +, Bastien Roucariès wrote: > Package: release.debian.org > Severity: important > p-u requests are always "normal"; fixed. > [ Reason ] > CVE-2023-52160 security bug Please go ahead. Regards, Adam

Bug#1073556: nano 5.4-2+deb11u3 flagged for acceptance

2024-06-19 Thread Adam D Barratt
package release.debian.org tags 1073556 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: nano Version: 5.4-2+deb11u3

Bug#1073231: sendmail 8.15.2-22+deb11u3 flagged for acceptance

2024-06-19 Thread Adam D Barratt
package release.debian.org tags 1073231 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: sendmail Version:

Bug#1069297: reportbug 7.10.3+deb11u2 flagged for acceptance

2024-06-19 Thread Adam D Barratt
package release.debian.org tags 1069297 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: reportbug Version:

Bug#1067392: allegro5 5.2.6.0-3+deb11u1 flagged for acceptance

2024-06-19 Thread Adam D Barratt
package release.debian.org tags 1067392 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: allegro5 Version:

Bug#1073838: ruby-aws-partitions 1.653.0-3~deb12u1 flagged for acceptance

2024-06-19 Thread Adam D Barratt
package release.debian.org tags 1073838 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: ruby-aws-partitions

Bug#1073524: pymongo 3.11.0-1+deb12u1 flagged for acceptance

2024-06-19 Thread Adam D Barratt
package release.debian.org tags 1073524 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: pymongo Version:

Bug#1073235: bluez 5.66-1+deb12u2 flagged for acceptance

2024-06-19 Thread Adam D Barratt
package release.debian.org tags 1073235 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: bluez Version:

Bug#1073194: lxc-templates 3.0.4.48.g4765da8-1+deb12u1 flagged for acceptance

2024-06-19 Thread Adam D Barratt
package release.debian.org tags 1073194 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: lxc-templates Version:

Bug#1071826: libreoffice 7.4.7-1+deb12u3 flagged for acceptance

2024-06-19 Thread Adam D Barratt
package release.debian.org tags 1071826 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: libreoffice Version:

Bug#1070466: dm-writeboost 2.2.17-0.2~deb12u1 flagged for acceptance

2024-06-19 Thread Adam D Barratt
package release.debian.org tags 1070466 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: dm-writeboost Version:

Bug#1069291: comitup 1.38-2~deb12u1 flagged for acceptance

2024-06-19 Thread Adam D Barratt
package release.debian.org tags 1069291 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: comitup Version:

Bug#1069295: python-asdf 2.14.3-1+deb12u1 flagged for acceptance

2024-06-19 Thread Adam D Barratt
package release.debian.org tags 1069295 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: python-asdf Version:

Bug#1068633: cjson 1.7.15-1+deb12u1 flagged for acceptance

2024-06-19 Thread Adam D Barratt
package release.debian.org tags 1068633 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: cjson Version:

Bug#1073843: bookworm-pu: package kio/5.103.0-1+deb12u1

2024-06-19 Thread Adam D. Barratt
Control: tags -1 + confirmed On Wed, 2024-06-19 at 18:54 +0200, Andreas B. Mundt wrote: > With network shares mounted using CIFS, under some circumstances > libreoffice documents may disappear from the file system.  The > underlying reason are locking mechanisms by the file system. > A lock

Bug#1073234: bookworm-pu: package gdk-pixbuf/2.42.10+dfsg-1+deb12u1

2024-06-19 Thread Adam D. Barratt
On Sat, 2024-06-15 at 08:28 +0200, Salvatore Bonaccorso wrote: > Hi Jeremy, Simon, > > On Fri, Jun 14, 2024 at 06:22:13PM -0400, Jeremy Bícha wrote: > > [...] > > Salvatore, I pushed commits a few days ago to the debian/bookworm > > and > > debian/bullseye branches of > >

Bug#1073817: bookworm-pu: package nvidia-open-gpu-kernel-modules/535.183.01-1~deb12u1

2024-06-19 Thread Adam D. Barratt
Control: tags -1 + confirmed On Wed, 2024-06-19 at 09:44 +0200, Andreas Beckmann wrote: > To finish the update series of the nvidia 535 driver series and fix a > few new CVEs we need to update src:nvidia-open-gpu-kernel-modules to > a > new upstream release, too. > There are no additional

Bug#1067392: bullseye-pu: package allegro5/2:5.2.6.0-3+deb11u1

2024-06-17 Thread Adam D. Barratt
Control: tags -1 + confirmed On Wed, 2024-03-20 at 22:59 +0100, Andreas Rönnquist wrote: > Older versions of Allegro5 contains a no-dsa security vulnerability > (CVE-2021-36489, > https://security-tracker.debian.org/tracker/CVE-2021-36489 ) Please go ahead. Regards, Adam

Bug#1073556: bullseye-pu: package nano/5.4-2+deb11u3

2024-06-17 Thread Adam D. Barratt
Control: tags -1 + confirmed On Mon, 2024-06-17 at 15:51 +0300, Adrian Bunk wrote: >   * CVE-2024-5742: Emergency file symlink attack > > For bookworm the pu-fix for this no-dsa CVE is part of #1070702. Please go ahead. Regards, Adam

Bug#1073529: bullseye-pu: package pymongo/3.11.0-1+deb11u1

2024-06-17 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sun, 2024-06-16 at 20:52 +, Bastien Roucariès wrote: > CVE-2024-5629 > > [ Impact ] > An out-of-bounds read in the 'bson' module allows deserialization > of malformed BSON provided by a Server to raise an exception which > may contain > arbitrary application

Bug#1073524: bookworm-pu: package pymongo/3.11.0-1+deb12u1

2024-06-17 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sun, 2024-06-16 at 20:25 +, Bastien Roucariès wrote: > CVE-2024-5629 > > [ Impact ] > An out-of-bounds read in the 'bson' module allows deserialization > of malformed BSON provided by a Server to raise an exception which > may contain > arbitrary application

Bug#1073519: bullseye-pu: cups/2.3.3op2-3+deb11u7

2024-06-17 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sun, 2024-06-16 at 17:52 +, Thorsten Alteholz wrote: > The attached debdiff for cups fixes CVE-2024-35235 in Bullseye. The > CVE > has been marked as no-dsa by the security team. The same patch has > been > already uploaded to unstable. Please go ahead.

Bug#1073261: bookworm-pu: package dhcpcd5/9.4.1-24~deb12u4

2024-06-17 Thread Adam D. Barratt
On Sun, 2024-06-16 at 10:21 +0300, Martin-Éric Racine wrote: > la 15. kesäk. 2024 klo 18.04 Martin-Éric Racine > (martin-eric.rac...@iki.fi) kirjoitti: > > > > la 15. kesäk. 2024 klo 17.48 Adam D. Barratt > > (a...@adam-barratt.org.uk) kirjoitti: > > > &

Bug#1073518: bookworm-pu: cups/2.4.2-3+deb12u6

2024-06-17 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sun, 2024-06-16 at 17:54 +, Thorsten Alteholz wrote: > The attached debdiff for cups fixes CVE-2024-35235 in Bookworm. The > CVE > has been marked as no-dsa by the security team. The same patch has > been > already uploaded to unstable. Please go ahead.

Bug#1073235: bookworm-pu: package bluez/5.66-1+deb12u2

2024-06-17 Thread Adam D. Barratt
Control: tags -1 + confirmed On Fri, 2024-06-14 at 23:25 +0200, Moritz Muehlenhoff wrote: > Attached debdiff fixes three minor security issues. The update > has been tested on a Bookworm system. debdiff below. Please go ahead. Regards, Adam

Bug#1073208: bookworm-pu: package nvidia-graphics-drivers/535.183.01-1~deb12u1

2024-06-17 Thread Adam D. Barratt
Control: tags -1 + moreinfo On Fri, 2024-06-14 at 17:42 +0200, Andreas Beckmann wrote: > A new upstream release of the nvidia drivers in non-free is needed > for > fixing a few new CVEs. > There are some packaging updates for systemd 256 in sid (adding drop- > in > configuration snippets to set

Bug#1073194: bookworm-pu: package lxc-templates/3.0.4.48.g4765da8-1+deb12u1

2024-06-17 Thread Adam D. Barratt
Control: tags -1 -moreinfo +confirmed On Sun, 2024-06-16 at 15:16 +0200, Pierre-Elliott Bécue wrote: > "Adam D. Barratt" wrote on 16/06/2024 at > 13:55:09+0200: > > > On Sun, 2024-06-16 at 13:00 +0200, Pierre-Elliott Bécue wrote: > > > Hey, > > > &g

Bug#1072919: bookworm-pu: package nvidia-graphics-drivers-tesla-470/470.256.02-1~deb12u1

2024-06-17 Thread Adam D. Barratt
Control: tags -1 + confirmed On Mon, 2024-06-10 at 13:11 +0200, Andreas Beckmann wrote: > A new upstream release of the nvidia drivers in non-free is needed > for > fixing a few new CVEs. > There are some tightened dependencies regarding libnvidia-glvkspirv. > The > vulkan bits and corresponding

Bug#1071826: bookworm-pu: package libreoffice/4:7.4.7-1+deb12u3

2024-06-17 Thread Adam D. Barratt
Control: tags -1 -moreinfo +confirmed On Sat, 2024-06-15 at 17:44 +0200, Rene Engelhard wrote: > Hi, > > Am 15.06.24 um 17:28 schrieb Adam D. Barratt: > > Control: tags -1 + moreinfo > > > > On Sat, 2024-05-25 at 10:35 +0200, Rene Engelhard wrote: > > >

Bug#1073231: bullseye-pu: package sendmail/8.15.2-22+deb11u1

2024-06-16 Thread Adam D. Barratt
On Sun, 2024-06-16 at 20:09 +, Bastien Roucariès wrote: > Le dimanche 16 juin 2024, 20:08:42 UTC Adam D. Barratt a écrit : > > On Sat, 2024-06-15 at 19:43 +0100, Jonathan Wiltshire wrote: > > >  "slightly non-conformant" really good justification for a pop-up &g

Bug#1073231: bullseye-pu: package sendmail/8.15.2-22+deb11u1

2024-06-16 Thread Adam D. Barratt
On Sat, 2024-06-15 at 19:43 +0100, Jonathan Wiltshire wrote: > "slightly non-conformant" really good justification for a pop-up > news item on upgrades? I don't recall the other MTAs doing this. > > It's up to you, either way please go ahead. As with the bookworm upload, the NEWS file won't

Bug#1072716: systemd 252.26-1~deb12u2 flagged for acceptance

2024-06-16 Thread Adam D Barratt
package release.debian.org tags 1072716 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: systemd Version:

Bug#1073202: python-aiosmtpd 1.4.3-1.1+deb12u1 flagged for acceptance

2024-06-16 Thread Adam D Barratt
package release.debian.org tags 1073202 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: python-aiosmtpd Version:

Bug#1073116: python-idna 3.3-1+deb12u1 flagged for acceptance

2024-06-16 Thread Adam D Barratt
package release.debian.org tags 1073116 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: python-idna Version:

Bug#1070431: php-composer-pcre 3.1.0-1+deb12u1 flagged for acceptance

2024-06-16 Thread Adam D Barratt
package release.debian.org tags 1070431 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: php-composer-pcre Version:

Bug#1070249: python-jwcrypto 1.1.0-1+deb12u1 flagged for acceptance

2024-06-16 Thread Adam D Barratt
package release.debian.org tags 1070249 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: python-jwcrypto Version:

Bug#1068932: node-v8-compile-cache 2.3.0-3+deb12u1 flagged for acceptance

2024-06-16 Thread Adam D Barratt
package release.debian.org tags 1068932 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: node-v8-compile-cache

Bug#1068920: node-zx 7.1.1+~cs6.7.23-2+deb12u1 flagged for acceptance

2024-06-16 Thread Adam D Barratt
package release.debian.org tags 1068920 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: node-zx Version:

Bug#1073262: gnutls28 3.7.9-2+deb12u3 flagged for acceptance

2024-06-16 Thread Adam D Barratt
package release.debian.org tags 1073262 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: gnutls28 Version:

Bug#1072983: golang-github-google-nftables 0.1.0-4~deb12u1 flagged for acceptance

2024-06-16 Thread Adam D Barratt
package release.debian.org tags 1072983 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package:

Bug#1072984: crowdsec-firewall-bouncer 0.0.25-4~deb12u1 flagged for acceptance

2024-06-16 Thread Adam D Barratt
package release.debian.org tags 1072984 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: crowdsec-firewall-bouncer

Bug#1072476: lua5.4 5.4.4-3+deb12u1 flagged for acceptance

2024-06-16 Thread Adam D Barratt
package release.debian.org tags 1072476 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: lua5.4 Version:

Bug#1071920: libseccomp 2.5.4-1+deb12u1 flagged for acceptance

2024-06-16 Thread Adam D Barratt
package release.debian.org tags 1071920 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: libseccomp Version:

Bug#1071564: aide 0.18.3-1+deb12u3 flagged for acceptance

2024-06-16 Thread Adam D Barratt
package release.debian.org tags 1071564 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: aide Version:

Bug#1069690: libkf5ksieve 22.12.3-1+deb12u1 flagged for acceptance

2024-06-16 Thread Adam D Barratt
package release.debian.org tags 1069690 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: libkf5ksieve Version:

Bug#1068912: node-undici 5.15.0+dfsg1+~cs20.10.9.3-1+deb12u4 flagged for acceptance

2024-06-16 Thread Adam D Barratt
package release.debian.org tags 1068912 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: node-undici Version:

Bug#1068016: node-babel7 7.20.15+ds1+~cs214.269.168-3+deb12u2 flagged for acceptance

2024-06-16 Thread Adam D Barratt
package release.debian.org tags 1068016 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: node-babel7 Version:

Bug#1068016: bookworm-pu: package node-babel7/7.20.15+ds1+~cs214.269.168-3+deb12u2

2024-06-16 Thread Adam D. Barratt
On Sat, 2024-04-13 at 18:36 +0200, Jérémy Lal wrote: > Also, even with that, the current debdiff *will FTBFS*, see #1068933. The metadata for that bug claims that it affects the package in unstable/testing, and not the package in bookworm. I assume that's incorrect (and should be fixed).

Bug#1068932: bookworm-pu: package node-v8-compile-cache/2.3.0-3+deb12u1

2024-06-16 Thread Adam D. Barratt
On Sat, 2024-04-13 at 18:01 +0200, Jérémy Lal wrote: > FTBFS because of test failures, see #1068921 > These are regressions caused by nodejs 18.19.0+dfsg-6~deb12u1 For the record, the metadata on that bug is confus{ed,ing} - it claims to be about a bug in the bookworm version of

Bug#1071449: bookworm-pu: package sendmail/8.17.1.9-2+deb12u1

2024-06-16 Thread Adam D. Barratt
On Sun, 2024-06-16 at 00:17 +0100, Jonathan Wiltshire wrote: > With a couple of fixes please go ahead. One more fix is needed: +W: incorrect-packaging-filename debian/NEWS.Debian -> debian/NEWS Regards, Adam

Bug#1073194: bookworm-pu: package lxc-templates/3.0.4.48.g4765da8-1+deb12u1

2024-06-16 Thread Adam D. Barratt
On Sun, 2024-06-16 at 13:00 +0200, Pierre-Elliott Bécue wrote: > Hey, > > Jonathan Wiltshire wrote on 15/06/2024 at > 23:34:32+0200: > > > Control: tag -1 moreinfo > > > > On Fri, Jun 14, 2024 at 11:53:38AM +0200, Pierre-Elliott Bécue > > wrote: > > > [ Reason ] > > > Two bugs within the

Bug#1068888: bookworm-pu: package zookeeper/3.8.0-11+deb12u2

2024-06-16 Thread Adam D. Barratt
On Sun, 2024-06-16 at 11:12 +, Bastien Roucariès wrote: > control: tag -1 - moreinfo > Le samedi 15 juin 2024, 22:49:24 UTC Jonathan Wiltshire a écrit : > > > [...] > > > zookeeper-3.8.0/debian/patches/0027-CVE-2024-23944-ZOOKEEPER- > > > 4799-Refactor-ACL-check-in-.patch  1970-01-01 > >

Bug#1070739: bookworm-pu: package python-glance-store/4.1.0-4

2024-06-15 Thread Adam D. Barratt
Control: tags -1 -moreinfo +confirmed On Sat, 2024-06-15 at 16:21 +0100, Adam D. Barratt wrote: > Control: tags -1 + moreinfo > > On Wed, 2024-05-08 at 17:59 +0200, Salvatore Bonaccorso wrote: > > Hi, > > > > On Wed, May 08, 2024 at 09:52:01AM +0200, Thomas Goirand

Bug#1073116: bookworm-pu: package python-idna/3.3-1+deb12u1

2024-06-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Thu, 2024-06-13 at 00:38 +0200, Guilhem Moulin wrote: > Fix CVE-2024-3651: Specially crafted inputs to idna.encode() can > consume > significant resources, which may lead to denial of service. Please go ahead. Regards, Adam

Bug#1072476: bookworm-pu: package lua5.4/5.4.4-3+deb12u1

2024-06-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sun, 2024-06-02 at 11:34 -0400, Boyuan Yang wrote: > As described in https://bugs.debian.org/1072460 , the current lua5.4 > in Debian Stable (Bookworm) misses several symbols that were supposed > to be exported while they still present in the lua headers. This >

Bug#1071920: bookworm-pu: package libseccomp/2.5.4-1+deb12u1

2024-06-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sat, 2024-05-25 at 23:33 +0200, Felix Geyer wrote: > libseccomp 2.5.4 only knows about syscall up to Linux 6.4. > The proposed changes add the syscalls up to Linux 6.7. Please go ahead. Regards, Adam

Bug#1071826: bookworm-pu: package libreoffice/4:7.4.7-1+deb12u3

2024-06-15 Thread Adam D. Barratt
Control: tags -1 + moreinfo On Sat, 2024-05-25 at 10:35 +0200, Rene Engelhard wrote: > I'd like to fix 2 libreoffice bugs in stable. Most important is > the SMB fix (which - for kf5 - also needs a kio stable update, but > those > can be done in parallel or kio later as there's no updated >

Bug#1071564: bookworm-pu: package aide/0.18.3-1+deb12u3

2024-06-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Tue, 2024-05-21 at 12:00 +0200, Marc Haber wrote: > aide 0.18 has introduced some concurrency in processing. There is a > bug > that makes fail to concurrently read extended attributes (xattrs) due > to > variables shared between worker threads. Please go ahead.

Bug#1070739: bookworm-pu: package python-glance-store/4.1.0-4

2024-06-15 Thread Adam D. Barratt
Control: tags -1 + moreinfo On Wed, 2024-05-08 at 17:59 +0200, Salvatore Bonaccorso wrote: > Hi, > > On Wed, May 08, 2024 at 09:52:01AM +0200, Thomas Goirand wrote: > [...] > > I would like to update python-glance-store/4.1.0-4 to > > python-glance-store/4.1.1-1+deb12u1 to address CVE-2024-1141

Bug#1070484: bookworm-pu: package tryton-client/tryton-client_6.0.26-1+deb12u1

2024-06-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Mon, 2024-05-06 at 11:19 +0200, Mathias Behrle wrote: > Backport the patch to send only compressed content from > authenticated sessions. > https://foss.heptapod.net/tryton/tryton/-/commit/96ccd17bd4db4be46bb42eb4217ba5c7dcb7de82 Please go ahead. Regards, Adam

Bug#1070478: bookworm-pu: package tryton-server/tryton-server_6.0.29-2+deb12u2

2024-06-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Mon, 2024-05-06 at 10:35 +0200, Mathias Behrle wrote: > Backport the patch to fix the vulnerabilty to zip bomb > attacks via decoded gzip content from unauthenticated users. > https://discuss.tryton.org/t/security-release-for-issue-13142/7196 Please go ahead.

Bug#1070466: bookworm-pu: package dm-writeboost/2.2.17-0.2~deb12u1

2024-06-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sun, 2024-05-05 at 21:07 +0200, Andreas Beckmann wrote: > A change from Linux v6.9-rc1 got backported to v6.1.83 and breaks > building the dm-writeboost module (dm_io() got an extra parameter). > > I'd like to update dm-writeboost to a new upstream release, the

Bug#1070431: bookworm-pu: package php-composer-pcre/3.1.0-1+deb12u1

2024-06-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sun, 2024-05-05 at 11:25 +0200, David Prévot wrote: > While fixing CVE-2024-24821 in composer in the recent DSA-5632-1, > code > from php-composer-pcre has been backported in the Bullseye version of > composer. Because of that, php-composer-pcre now needs a >

Bug#1070425: bookworm-pu: package numpy/1:1.24.2-1+deb12u1

2024-06-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sun, 2024-05-05 at 10:30 +0200, Timo Röhling wrote: > python3-numpy has an undeclared file conflict on /usr/bin/f2py with > python-numpy. Even though python-numpy is gone, it is possible to > have that > package linger on systems, which will affect the upgrade to

Bug#1070153: bookworm-pu: qtbase-opensource-src/5.15.8+dfsg-11+deb12u2

2024-06-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Tue, 2024-04-30 at 23:26 +, Thorsten Alteholz wrote: > The attached debdiff for qtbase-opensource-src fixes several CVEs in > Bookworm. All CVEs are marked as no-dsa by the security team. Please go ahead. Regards, Adam

Bug#1070249: bookworm-pu: package python-jwcrypto/1.1.0-1+deb12u1

2024-06-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Thu, 2024-05-02 at 18:53 +0100, Steve McIntyre wrote: > I've backported the upstream fix for CVE-2024-28102 (#1065688) to > bookworm. It's not considered critical as a security fix by the > security team, but would still be good to have in bookworm. Please go

Bug#1069690: bookworm-pu: package libkf5ksieve/4:22.12.3-1+deb12u1

2024-06-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Mon, 2024-04-22 at 21:36 +0200, Patrick Franz wrote: > There is a bug in libkf5sieve where the password instead of the > username is sent when using managesieve and could therefore be > logged on a server as the login will fail. Please go ahead. Regards, Adam

Bug#1069295: bookworm-pu: package python-asdf/2.14.3-1+deb12u1

2024-06-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Fri, 2024-04-19 at 15:41 +0200, Andreas Beckmann wrote: > python3-asdf has an internal dependency on asdf-unit-schemas which is > neither mapped to a package dependency nor does it exist in the > archive. > This internal dependency (which only exists for backward >

Bug#1069291: bookworm-pu: package comitup/1.38-2~deb12u1

2024-06-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Fri, 2024-04-19 at 15:14 +0200, Andreas Beckmann wrote: > On certain upgrade paths installation/upgrade will fail if a masked > service file from a previous installation is still present. > Please go ahead. Regards, Adam

Bug#1069284: bookworm-pu: package libmail-dkim-perl/1.20230212-2~deb12u1

2024-06-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Fri, 2024-04-19 at 12:06 +0200, Andreas Beckmann wrote: > A missing dependency causes dkimproxy-verify to fail upon execution. Please go ahead. Regards, Adam

Bug#1069281: bookworm-pu: package what-is-python/13+deb12u1

2024-06-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Fri, 2024-04-19 at 11:44 +0200, Andreas Beckmann wrote: > A missing Breaks+Replaces relationship can cause a file conflict on > /usr/bin/pydoc on upgrades from bullseye to bookworm. #1034995 Please go ahead. Regards, Adam

Bug#1072983: bookworm-pu: package golang-github-google-nftables/0.1.0-4~deb12u1

2024-06-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Tue, 2024-06-11 at 11:29 +0200, Cyril Brulebois wrote: > I'd like to fix the #1071247/#1071248 pair in bookworm, which results > in > crowdsec-firewall-bouncer's being broken on little-endian > architectures > (addresses are getting logged just fine, but they're

Bug#1072984: bookworm-pu: package crowdsec-firewall-bouncer/0.0.25-4~deb12u1

2024-06-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Tue, 2024-06-11 at 11:29 +0200, Cyril Brulebois wrote: > I'd like to fix the #1071247/#1071248 pair in bookworm, which results > in > crowdsec-firewall-bouncer's being broken on little-endian > architectures > (addresses are getting logged just fine, but they're

Bug#1073261: bookworm-pu: package dhcpcd5/9.4.1-24~deb12u4

2024-06-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sat, 2024-06-15 at 14:38 +0300, Martin-Éric Racine wrote: > RC bug #1050805 was fixed in Testing with src:dhcpcd 10.0.2, but > upstream only got around back-porting the fix to Stable src:dhcpcd5 > 9.x.x today. Please go ahead. Regards, Adam

Bug#1073262: bookworm-pu: package gnutls28/3.7.9-2+deb12u3

2024-06-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sat, 2024-06-15 at 13:44 +0200, Andreas Metzler wrote: > I would like to essentially (i.e. sans version number bump) upgrade > gnutls28 to 3.7.11. All changes are cherry-picked from 3.8.x and are > already included in the sid/testing version. Please go ahead.

Bug#1072817: bookworm-pu: package openrc/0.45.2-2+deb12u1

2024-06-08 Thread Adam D. Barratt
Control: tags -1 + moreinfo Hi, On Sat, 2024-06-08 at 11:59 +0100, Mark Hindley wrote: [...] >   [x] attach debdiff against the package in stable While you have attached a debdiff, it's of the binary packages. Please provide a source debdiff, i.e. between the current and proposed DSCs.

Bug#1072035: marked as done (bookworm-pu: package dns-root-data/2024041801~deb12u1)

2024-06-05 Thread Adam D. Barratt
Control: reopen -1 Control: tags -1 + pending On Wed, 2024-06-05 at 21:51 +, Debian Bug Tracking System wrote: > Your message dated Wed, 05 Jun 2024 21:47:08 + > with message-id > and subject line Bug#1072035: fixed in dns-root-data > 2024041801~deb12u1 > has caused the Debian Bug report

Bug#1071574: netcfg 1.187+deb12u1 flagged for acceptance

2024-05-28 Thread Adam D Barratt
package release.debian.org tags 1071574 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: netcfg Version:

Bug#1072098: systemd 252.26-1~deb12u1 flagged for acceptance

2024-05-28 Thread Adam D Barratt
package release.debian.org tags 1072098 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: systemd Version:

Bug#1071159: glib2.0 2.74.6-2+deb12u3 flagged for acceptance

2024-05-25 Thread Adam D Barratt
package release.debian.org tags 1071159 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: glib2.0 Version:

Bug#1070856: riseup-vpn 0.21.11+ds1-5+deb12u1 flagged for acceptance

2024-05-25 Thread Adam D Barratt
package release.debian.org tags 1070856 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: riseup-vpn Version:

Bug#1070801: qemu 7.2+dfsg-7+deb12u6 flagged for acceptance

2024-05-25 Thread Adam D Barratt
package release.debian.org tags 1070801 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: qemu Version:

Bug#1069881: systemd 252.25-1~deb12u1 flagged for acceptance

2024-05-25 Thread Adam D Barratt
package release.debian.org tags 1069881 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: systemd Version:

Bug#1069881: systemd 252.24-1~deb12u1 flagged for acceptance

2024-05-25 Thread Adam D Barratt
package release.debian.org tags 1069881 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: systemd Version:

Bug#1069720: dpdk 22.11.5-1~deb12u1 flagged for acceptance

2024-05-25 Thread Adam D Barratt
package release.debian.org tags 1069720 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: dpdk Version:

Bug#1066965: bookworm-pu: package newlib/3.3.0-2

2024-05-25 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sat, 2024-03-16 at 09:09 +0100, Petter Reinholdtsen wrote: > +newlib (3.3.0-2) bookworm; urgency=medium > As Salvatore already noted, that's not a conventional version number for a stable upload, but can be used iff no such version has ever been used for a

Bug#1071161: glib2.0 2.66.8-1+deb11u4 flagged for acceptance

2024-05-21 Thread Adam D. Barratt
On Tue, 2024-05-21 at 11:23 +0100, Simon McVittie wrote: > On Mon, 20 May 2024 at 20:12:24 +0000, Adam D Barratt wrote: > > The upload referenced by this bug report has been flagged for > > acceptance > > into the proposed-updates queue for Debian bullseye. > ... > >

Bug#1071266: software-properties 0.99.30-4.1~deb12u1 flagged for acceptance

2024-05-20 Thread Adam D Barratt
package release.debian.org tags 1071266 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: software-properties

Bug#1071161: glib2.0 2.66.8-1+deb11u4 flagged for acceptance

2024-05-20 Thread Adam D Barratt
package release.debian.org tags 1071161 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: glib2.0 Version:

Bug#1070799: rustc-web 1.70.0+dfsg1-7~deb11u1 flagged for acceptance

2024-05-20 Thread Adam D Barratt
package release.debian.org tags 1070799 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: rustc-web Version:

Bug#1070232: python3.11 3.11.2-6+deb12u2 flagged for acceptance

2024-05-20 Thread Adam D Barratt
package release.debian.org tags 1070232 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: python3.11 Version:

Bug#1069933: emacs 28.2+1-15+deb12u1 flagged for acceptance

2024-05-20 Thread Adam D Barratt
package release.debian.org tags 1069933 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: emacs Version:

Bug#1070218: pypy3 7.3.11+dfsg-2+deb12u2 flagged for acceptance

2024-05-20 Thread Adam D Barratt
package release.debian.org tags 1070218 = bookworm pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bookworm. Thanks for your contribution! Upload details == Package: pypy3 Version:

Bug#1065071: php-symfony-contracts 1.1.10-2+deb11u1 flagged for acceptance

2024-05-20 Thread Adam D Barratt
package release.debian.org tags 1065071 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: php-symfony-contracts

Bug#1069880: cpu 1.4.3-14~deb11u1 flagged for acceptance

2024-05-20 Thread Adam D Barratt
package release.debian.org tags 1069880 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: cpu Version:

Bug#1068694: bullseye-pu: package json-smart/2.2-2+deb11u1

2024-05-20 Thread Adam D. Barratt
On Mon, 2024-04-22 at 17:57 +0100, Jonathan Wiltshire wrote: > Control: tag -1 confirmed > > On Tue, Apr 09, 2024 at 10:01:11AM +0200, Andreas Beckmann wrote: > > +++ b/debian/patches/0004-CVE-2021-31684-Fix-indexOf.patch > > @@ -0,0 +1,27 @@ > > +From: HAPPY > > Well if that doesn't tickle my

  1   2   3   4   5   6   7   8   9   10   >