Bug#855009: unblock: geoclue-2.0/2.4.5-1
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Hi, Please unblock package geoclue-2.0 The 2.4.5-1 apparently didn't migrate in time and contains a fix for a crash (see bug #842352). The fix in itself is a one-liner, the diff is a bit bigger due to the documentation and some other automatically generated headers. I've attached the debdiff generated with the following command: debdiff geoclue-2.0_2.4.4-1.dsc geoclue-2.0_2.4.5-1.dsc|filterdiff -x '*/docs/*' -x '*/Makefile' -x '*/Makefile.in' -x '*/configure' -x '*/m4/*' -x '*/aclocal.m4' -x '*/gtk-doc.make' The full diffstat: $ debdiff geoclue-2.0_2.4.4-1.dsc geoclue-2.0_2.4.5-1.dsc |diffstat Makefile.in| 16 NEWS |6 aclocal.m4 | 357 + build-aux/Makefile.in | 10 configure | 20 configure.ac |2 data/Makefile.in |8 debian/changelog |7 demo/Makefile.in |8 docs/Makefile.in | 66 docs/docs-org.freedesktop.GeoClue2.Agent.xml | 80 - docs/docs-org.freedesktop.GeoClue2.Client.xml | 170 -- docs/docs-org.freedesktop.GeoClue2.Location.xml| 117 - docs/docs-org.freedesktop.GeoClue2.Manager.xml | 89 - docs/geoclue-sections.txt |5 docs/html/gdbus-org.freedesktop.GeoClue2.Agent.html| 114 - docs/html/gdbus-org.freedesktop.GeoClue2.Client.html | 206 -- docs/html/gdbus-org.freedesktop.GeoClue2.Location.html | 148 -- docs/html/gdbus-org.freedesktop.GeoClue2.Manager.html | 125 - docs/html/geoclue-gclue-enums.html | 119 - docs/html/geoclue.devhelp2 | 48 docs/html/index.html | 87 - docs/html/ix01.html| 110 - docs/html/license.html | 861 docs/html/ref-agent-dbus.html | 45 docs/html/ref-dbus.html| 56 docs/html/style.css| 479 -- docs/lib/Makefile.in | 66 docs/lib/html/GClueClient.html | 1213 - docs/lib/html/GClueClientProxy.html| 441 -- docs/lib/html/GClueLocation.html | 952 - docs/lib/html/GClueLocationProxy.html | 442 -- docs/lib/html/GClueManager.html| 786 --- docs/lib/html/GClueManagerProxy.html | 442 -- docs/lib/html/annotation-glossary.html | 50 docs/lib/html/ch01.html| 32 docs/lib/html/ch02.html| 32 docs/lib/html/ch03.html| 37 docs/lib/html/ch04.html| 37 docs/lib/html/ch05.html| 37 docs/lib/html/index.html | 104 - docs/lib/html/ix01.html| 222 --- docs/lib/html/libgeoclue-GClueSimple.html | 48 docs/lib/html/libgeoclue-gclue-enums.html | 87 - docs/lib/html/libgeoclue.devhelp2 | 122 - docs/lib/html/license.html | 536 --- docs/lib/html/style.css| 479 -- docs/lib/libgeoclue-sections.txt | 254 --- docs/lib/libgeoclue.types | 10 docs/lib/version.xml |1 docs/version.xml |1 gtk-doc.make | 53 libgeoclue/Makefile.in |8 libgeoclue/gclue-client.c |2 libgeoclue/gclue-client.h |2 libgeoclue/gclue-location.c|2 libgeoclue/gclue-location.h|2 libgeoclue/gclue-manager.c |2 libgeoclue/gclue-manager.h |2 m4/intltool.m4 | 212 ++ public-api/Makefile.in |8 public-api/gclue-enum-types.c |2 public-api/gclue-enum-types.h |2 src/Makefile.in|8 src/agent/Makefile.in |8
Processed: transgui: build and use libssl 1.0.2
Processing control commands: > block 827061 by -1 Bug #827061 [release.debian.org] transition: openssl 827061 was blocked by: 828579 850881 828497 846908 828401 846769 828494 828313 828321 845030 828268 828487 835789 828412 828489 828385 828570 828458 828231 828272 844534 828533 808669 828549 828527 828466 844906 828558 828341 828323 828609 828596 828246 828253 828316 828310 828288 844916 828564 828485 828296 828519 828583 828435 828258 828317 828295 829452 844234 828440 850882 843871 828374 828476 828459 844345 828562 828383 828428 828235 828506 828592 844503 828426 844945 835549 828530 828289 828338 828241 835785 828285 828433 828537 828230 828472 828588 828275 828567 828479 844920 854468 835804 828263 828406 844271 844018 828334 828262 828291 844706 828410 828340 828448 828540 827068 828371 835796 835797 828376 828380 828391 828600 828300 828535 828488 828279 828302 828452 828276 828605 828356 828359 828368 828303 828407 828233 828346 828344 828417 828349 828450 828400 828585 828553 828612 828470 828528 844213 835790 828504 828619 828405 828566 828554 828350 828430 828576 828575 828510 809271 844301 844663 828584 828420 835793 828242 828607 828387 828411 828464 828559 828602 828531 828293 844975 828546 828363 844947 844948 828611 828534 828536 844833 828308 828423 828551 828369 828505 828257 828521 828354 828267 828379 844951 828491 828427 828342 828357 828462 828492 828502 828254 828392 828319 828366 828398 828516 828415 828347 828511 844838 837960 828283 828278 828402 828552 828556 828082 828390 828568 828543 828352 828512 854253 843532 828444 828515 828574 828252 828508 828484 844909 844800 828581 828304 828237 828545 828251 828555 828381 828270 828544 828501 828358 828290 828265 828330 828281 846113 828229 828424 844845 828305 828620 828414 828370 828573 828336 828362 836419 828616 828542 828389 828500 828606 835799 828377 828250 828578 828613 828523 828594 828503 844366 828238 828403 828269 850883 828499 828593 841635 828541 828495 828372 828244 828438 828432 828292 828394 844347 828382 844904 854470 828367 828287 828453 844936 844664 828240 828277 828456 828532 828280 828232 828446 828248 828550 828309 828355 844926 828271 845106 828589 828255 828416 828571 828463 828608 828325 828297 828610 828324 845729 828364 828565 828301 828249 828598 828617 835786 835794 828409 828457 828461 828282 828375 828315 828436 828322 828474 828345 828259 828431 828318 828538 828339 828384 828507 844931 828393 828618 828517 828343 828422 845016 828582 828434 828447 828595 828260 828397 828307 828597 828524 828234 828569 828473 828365 835800 828395 828139 828514 828469 828615 814600 828529 828587 828228 828547 828437 828388 828331 828580 844254 828614 828261 828454 828256 844870 828311 828286 828298 828490 828127 850880 828586 828496 828361 828603 828373 835798 828333 828284 828591 822380 844949 828306 843852 828351 828320 828468 828396 828590 828239 828326 828399 828418 828335 828348 835811 828419 844311 843988 828509 844836 828601 828360 843682 828378 828429 828518 828243 828604 828539 828443 854257 828455 828274 828083 828599 828478 844815 828337 828445 844877 828465 828493 828526 844907 828548 835585 828386 828563 828561 828404 828294 828328 828480 828577 828421 828467 828442 844928 829465 828482 828525 828264 828460 828439 828314 827061 was not blocking any bugs. Added blocking bug(s) of 827061: 855007 -- 827061: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=827061 855007: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=855007 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems
NEW changes in stable-new
Processing changes file: mongodb_2.4.10-5+deb8u1_armhf.changes ACCEPT
NEW changes in stable-new
Processing changes file: ndoutils_1.4b9-1.1+deb8u1_armel.changes ACCEPT Processing changes file: ndoutils_1.4b9-1.1+deb8u1_armhf.changes ACCEPT
NEW changes in stable-new
Processing changes file: libmateweather_1.8.0-2+deb8u2_armel.changes ACCEPT Processing changes file: libmateweather_1.8.0-2+deb8u2_armhf.changes ACCEPT Processing changes file: mongodb_2.4.10-5+deb8u1_amd64.changes ACCEPT Processing changes file: mongodb_2.4.10-5+deb8u1_i386.changes ACCEPT Processing changes file: sendmail_8.14.4-8+deb8u2_armel.changes ACCEPT Processing changes file: sendmail_8.14.4-8+deb8u2_armhf.changes ACCEPT
NEW changes in stable-new
Processing changes file: libmateweather_1.8.0-2+deb8u2_mips.changes ACCEPT Processing changes file: libmateweather_1.8.0-2+deb8u2_mipsel.changes ACCEPT Processing changes file: ndoutils_1.4b9-1.1+deb8u1_mips.changes ACCEPT Processing changes file: ndoutils_1.4b9-1.1+deb8u1_mipsel.changes ACCEPT Processing changes file: sendmail_8.14.4-8+deb8u2_mips.changes ACCEPT Processing changes file: sendmail_8.14.4-8+deb8u2_mipsel.changes ACCEPT
NEW changes in stable-new
Processing changes file: libmateweather_1.8.0-2+deb8u2_arm64.changes ACCEPT Processing changes file: libmateweather_1.8.0-2+deb8u2_i386.changes ACCEPT Processing changes file: libmateweather_1.8.0-2+deb8u2_powerpc.changes ACCEPT Processing changes file: libmateweather_1.8.0-2+deb8u2_ppc64el.changes ACCEPT Processing changes file: libmateweather_1.8.0-2+deb8u2_s390x.changes ACCEPT Processing changes file: ndoutils_1.4b9-1.1+deb8u1_amd64.changes ACCEPT Processing changes file: ndoutils_1.4b9-1.1+deb8u1_arm64.changes ACCEPT Processing changes file: ndoutils_1.4b9-1.1+deb8u1_i386.changes ACCEPT Processing changes file: ndoutils_1.4b9-1.1+deb8u1_powerpc.changes ACCEPT Processing changes file: ndoutils_1.4b9-1.1+deb8u1_ppc64el.changes ACCEPT Processing changes file: ndoutils_1.4b9-1.1+deb8u1_s390x.changes ACCEPT Processing changes file: sendmail_8.14.4-8+deb8u2_amd64.changes ACCEPT Processing changes file: sendmail_8.14.4-8+deb8u2_arm64.changes ACCEPT Processing changes file: sendmail_8.14.4-8+deb8u2_i386.changes ACCEPT Processing changes file: sendmail_8.14.4-8+deb8u2_powerpc.changes ACCEPT Processing changes file: sendmail_8.14.4-8+deb8u2_ppc64el.changes ACCEPT Processing changes file: sendmail_8.14.4-8+deb8u2_s390x.changes ACCEPT
Bug#854993: unblock: python-uniconvertor/1.1.5-4
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package python-uniconvertor I just uploaded this package fixing the RC bug about the -dbg doc symlink that got lost between jessie and now, by using the --link-doc option of dh_installdocs and the maint script to handle the dir -> symlin migration. I also took the liberty to update the Homepage, as it makes sense to have that information as updated as possible for stretch lifetime source debdiff between 1.1.5-3 and 1.1.5-4 is attached unblock python-uniconvertor/1.1.5-4 -- System Information: Debian Release: stretch/sid APT prefers unstable APT policy: (500, 'unstable'), (1, 'experimental') Architecture: amd64 (x86_64) Foreign Architectures: i386 Kernel: Linux 4.2.0-1-amd64 (SMP w/8 CPU cores) Locale: LANG=en_US.utf8, LC_CTYPE=en_US.utf8 (charmap=UTF-8) Shell: /bin/sh linked to /bin/dash Init: systemd (via /run/systemd/system) diff -Nru python-uniconvertor-1.1.5/debian/changelog python-uniconvertor-1.1.5/debian/changelog --- python-uniconvertor-1.1.5/debian/changelog 2016-10-01 11:14:52.0 -0400 +++ python-uniconvertor-1.1.5/debian/changelog 2017-02-12 19:36:23.0 -0500 @@ -1,3 +1,11 @@ +python-uniconvertor (1.1.5-4) unstable; urgency=medium + + * QA upload. + * restore the doc symlink between -dbg and main pkg; Closes: #852144 + * Update homepage URL; Closes: #845230 + + -- Sandro TosiSun, 12 Feb 2017 19:36:15 -0500 + python-uniconvertor (1.1.5-3) unstable; urgency=medium * QA upload. diff -Nru python-uniconvertor-1.1.5/debian/control python-uniconvertor-1.1.5/debian/control --- python-uniconvertor-1.1.5/debian/control2016-10-01 10:51:52.0 -0400 +++ python-uniconvertor-1.1.5/debian/control2017-02-12 19:32:27.0 -0500 @@ -2,7 +2,7 @@ Section: python Priority: optional Maintainer: Debian QA Group -Homepage: http://sk1project.org/modules.php?name=Products=uniconvertor +Homepage: https://sk1project.net/modules.php?name=Products=uniconvertor Build-Depends: debhelper (>= 9), dh-python, diff -Nru python-uniconvertor-1.1.5/debian/copyright python-uniconvertor-1.1.5/debian/copyright --- python-uniconvertor-1.1.5/debian/copyright 2016-10-01 10:51:52.0 -0400 +++ python-uniconvertor-1.1.5/debian/copyright 2017-02-12 19:32:41.0 -0500 @@ -2,7 +2,7 @@ Mon, 10 Mar 2008 22:42:50 +0100 It was downloaded from: -http://sk1project.org/modules.php?name=Products=uniconvertor +https://sk1project.net/modules.php?name=Products=uniconvertor Copyright (C) 2007-2008 by Igor E. Novikov, Valek Fillipov diff -Nru python-uniconvertor-1.1.5/debian/python-uniconvertor-dbg.maintscript python-uniconvertor-1.1.5/debian/python-uniconvertor-dbg.maintscript --- python-uniconvertor-1.1.5/debian/python-uniconvertor-dbg.maintscript 1969-12-31 19:00:00.0 -0500 +++ python-uniconvertor-1.1.5/debian/python-uniconvertor-dbg.maintscript 2017-02-12 19:45:15.0 -0500 @@ -0,0 +1 @@ +dir_to_symlink /usr/share/doc/python-uniconvertor-dbg /usr/share/doc/python-uniconvertor 1.1.5-3 diff -Nru python-uniconvertor-1.1.5/debian/rules python-uniconvertor-1.1.5/debian/rules --- python-uniconvertor-1.1.5/debian/rules 2016-10-01 11:14:52.0 -0400 +++ python-uniconvertor-1.1.5/debian/rules 2017-02-12 19:28:54.0 -0500 @@ -24,3 +24,5 @@ override_dh_strip: dh_strip -ppython-uniconvertor --dbg-package=python-uniconvertor-dbg +override_dh_installdocs: + dh_installdocs --link-doc=python-uniconvertor
Bug#854990: unblock: matplotlib/2.0.0+dfsg1-1
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package matplotlib I just uploaded matplotlib removing a non-free file (hence the "apparent" new release, which is just the previous tarball without that file and the dfsg tag appended to the version) and adding copyright/license notices for several font files; those 2 changes closes 2 RC bugs against mpl Source debdiff between 2.0.0-3 and 2.0.0+dfsg1-1 is attached unblock matplotlib/2.0.0+dfsg1-1 -- System Information: Debian Release: stretch/sid APT prefers unstable APT policy: (500, 'unstable'), (1, 'experimental') Architecture: amd64 (x86_64) Foreign Architectures: i386 Kernel: Linux 4.2.0-1-amd64 (SMP w/8 CPU cores) Locale: LANG=en_US.utf8, LC_CTYPE=en_US.utf8 (charmap=UTF-8) Shell: /bin/sh linked to /bin/dash Init: systemd (via /run/systemd/system) diff -Nru matplotlib-2.0.0/debian/changelog matplotlib-2.0.0+dfsg1/debian/changelog --- matplotlib-2.0.0/debian/changelog 2017-01-21 21:35:45.0 -0500 +++ matplotlib-2.0.0+dfsg1/debian/changelog 2017-02-12 16:13:26.0 -0500 @@ -1,3 +1,16 @@ +matplotlib (2.0.0+dfsg1-1) unstable; urgency=medium + + * Import upstream tarball with necked_tensile_specimen.png removed + * exclude necked_tensile_specimen.png from upstream tarball, as that file +contains a non-free color calibration profile; Closes: #854280 + * debian/copyright +- add pdfcorefiles license grant +- add copyright notices for all AFM fonts +- add license and copyright notice to TTG BaKoMa fonts files; + Closes: #854279 + + -- Sandro TosiSun, 12 Feb 2017 16:13:26 -0500 + matplotlib (2.0.0-3) unstable; urgency=medium * debian/patches/0009-Add-a-newline-separator-in-fc-list-call.patch diff -Nru matplotlib-2.0.0/debian/copyright matplotlib-2.0.0+dfsg1/debian/copyright --- matplotlib-2.0.0/debian/copyright 2017-01-21 21:35:45.0 -0500 +++ matplotlib-2.0.0+dfsg1/debian/copyright 2017-02-12 16:13:26.0 -0500 @@ -2,6 +2,7 @@ Upstream-Name: matplotlib Upstream-Contact: John D. Hunter, Michael Droettboom Source: http://matplotlib.org +Files-Excluded: lib/matplotlib/mpl-data/sample_data/necked_tensile_specimen.png Files: * Copyright: Copyright (c) 2002 - 2012 John Hunter, Darren Dale, Eric Firing, Michael Droettboom and the matplotlib development team; 2012 - 2016 The matplotlib development team @@ -259,11 +260,300 @@ mathematical fonts, please contact MicroPress, Inc., 68-30 Harrow Street, Forest Hills, NY 11375, USA - Phone: (718) 575-1816. +Files: lib/matplotlib/mpl-data/fonts/ttf/cmb10.ttf lib/matplotlib/mpl-data/fonts/ttf/cmex10.ttf lib/matplotlib/mpl-data/fonts/ttf/cmmi10.ttf lib/matplotlib/mpl-data/fonts/ttf/cmr10.ttf lib/matplotlib/mpl-data/fonts/ttf/cmss10.ttf lib/matplotlib/mpl-data/fonts/ttf/cmsy10.ttf lib/matplotlib/mpl-data/fonts/ttf/cmtt10.ttf +Copyright: Copyright (C) 1994, Basil K. Malyshev. All Rights Reserved. +License: from LICENSE/LICENSE_BAKOMA +BaKoMa Fonts Licence + + . + This licence covers two font packs (known as BaKoMa Fonts Colelction, + which is available at `CTAN:fonts/cm/ps-type1/bakoma/'): + . +1) BaKoMa-CM (1.1/12-Nov-94) + Computer Modern Fonts in PostScript Type 1 and TrueType font formats. + . +2) BaKoMa-AMS (1.2/19-Jan-95) + AMS TeX fonts in PostScript Type 1 and TrueType font formats. + . + Copyright (C) 1994, 1995, Basil K. Malyshev. All Rights Reserved. + . + Permission to copy and distribute these fonts for any purpose is + hereby granted without fee, provided that the above copyright notice, + author statement and this permission notice appear in all copies of + these fonts and related documentation. + . + Permission to modify and distribute modified fonts for any purpose is + hereby granted without fee, provided that the copyright notice, + author statement, this permission notice and location of original + fonts (http://www.ctan.org/tex-archive/fonts/cm/ps-type1/bakoma) + appear in all copies of modified fonts and related documentation. + . + Permission to use these fonts (embedding into PostScript, PDF, SVG + and printing by using any software) is hereby granted without fee. + It is not required to provide any notices about using these fonts. + . + Basil K. Malyshev + INSTITUTE FOR HIGH ENERGY PHYSICS + IHEP, OMVT + Moscow Region + 142281 PROTVINO + RUSSIA + . + E-Mail:bak...@mail.ru + ormalys...@mail.ihep.ru + Files: lib/matplotlib/mpl-data/fonts/pdfcorefonts/* Copyright: Copyright (c) 1985, 1987, 1989, 1990, 1991, 1992, 1993, 1997 Adobe Systems Incorporated. All Rights Reserved. +License: + This directory contains font metrics for the 14 PDF Core Fonts, + downloaded from Adobe. The title and this paragraph were added by + Matplotlib developers. The download URL was +
NEW changes in stable-new
Processing changes file: libmateweather_1.8.0-2+deb8u2_amd64.changes ACCEPT Processing changes file: mongodb_2.4.10-5+deb8u1_source.changes ACCEPT Processing changes file: ndoutils_1.4b9-1.1+deb8u1_all.changes ACCEPT Processing changes file: sendmail_8.14.4-8+deb8u2_all.changes ACCEPT
Bug#854968: marked as done (unblock: ntfs-3g)
Your message dated Sun, 12 Feb 2017 23:55:39 +0100 with message-id <2f1ede03-c7b7-ecdd-de39-5d449348b...@debian.org> and subject line Re: Bug#854968: unblock: ntfs-3g has caused the Debian Bug report #854968, regarding unblock: ntfs-3g to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what this message is talking about, this may indicate a serious mail system misconfiguration somewhere. Please contact ow...@bugs.debian.org immediately.) -- 854968: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=854968 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems --- Begin Message --- Package: release.debian.org User: release.debian@packages.debian.org Usertags: unblock Hi Release Team, Please unblock ntfs-3g 2016.2.22AR.1-4 as it fixes CVE-2017-0358. The debdiff is attached for your convenience. Thanks, Laszlo/GCSdiff -Nru ntfs-3g-2016.2.22AR.1/debian/changelog ntfs-3g-2016.2.22AR.1/debian/changelog --- ntfs-3g-2016.2.22AR.1/debian/changelog 2016-04-21 18:48:50.0 + +++ ntfs-3g-2016.2.22AR.1/debian/changelog 2017-02-01 06:23:28.0 + @@ -1,3 +1,10 @@ +ntfs-3g (1:2016.2.22AR.1-4) unstable; urgency=high + + * Fix CVE-2017-0358: modprobe influence vulnerability via environment +variables. + + -- Laszlo Boszormenyi (GCS)Wed, 01 Feb 2017 06:23:28 + + ntfs-3g (1:2016.2.22AR.1-3) unstable; urgency=low * Really fix ELIBBAD errno on kFreeBSD (closes: #821838). diff -Nru ntfs-3g-2016.2.22AR.1/debian/patches/0003-CVE-2017-0358.patch ntfs-3g-2016.2.22AR.1/debian/patches/0003-CVE-2017-0358.patch --- ntfs-3g-2016.2.22AR.1/debian/patches/0003-CVE-2017-0358.patch 1970-01-01 00:00:00.0 + +++ ntfs-3g-2016.2.22AR.1/debian/patches/0003-CVE-2017-0358.patch 2017-02-01 06:23:28.0 + @@ -0,0 +1,36 @@ +--- ntfs-3g/src/lowntfs-3g.c.ref 2016-12-31 08:56:59.011749600 +0100 ntfs-3g/src/lowntfs-3g.c 2017-01-05 14:41:52.041473700 +0100 +@@ -4291,13 +4291,14 @@ + struct stat st; + pid_t pid; + const char *cmd = "/sbin/modprobe"; ++ char *env = (char*)NULL; + struct timespec req = { 0, 1 }; /* 100 msec */ + fuse_fstype fstype; + + if (!stat(cmd, ) && !geteuid()) { + pid = fork(); + if (!pid) { +- execl(cmd, cmd, "fuse", NULL); ++ execle(cmd, cmd, "fuse", NULL, ); + _exit(1); + } else if (pid != -1) + waitpid(pid, NULL, 0); +--- ntfs-3g/src/ntfs-3g.c.ref 2016-12-31 08:56:59.022518700 +0100 ntfs-3g/src/ntfs-3g.c 2017-01-05 15:45:45.912499400 +0100 +@@ -3885,13 +3885,14 @@ + struct stat st; + pid_t pid; + const char *cmd = "/sbin/modprobe"; ++ char *env = (char*)NULL; + struct timespec req = { 0, 1 }; /* 100 msec */ + fuse_fstype fstype; + + if (!stat(cmd, ) && !geteuid()) { + pid = fork(); + if (!pid) { +- execl(cmd, cmd, "fuse", NULL); ++ execle(cmd, cmd, "fuse", NULL, ); + _exit(1); + } else if (pid != -1) + waitpid(pid, NULL, 0); diff -Nru ntfs-3g-2016.2.22AR.1/debian/patches/series ntfs-3g-2016.2.22AR.1/debian/patches/series --- ntfs-3g-2016.2.22AR.1/debian/patches/series 2016-04-20 15:51:16.0 + +++ ntfs-3g-2016.2.22AR.1/debian/patches/series 2017-02-01 06:23:28.0 + @@ -1,2 +1,3 @@ 0001-link-with-gpg-error.patch 0002-kFreeBSD_ELIBBAD.patch +0003-CVE-2017-0358.patch --- End Message --- --- Begin Message --- On 12/02/17 22:17, Cyril Brulebois wrote: > Hi, > > Emilio Pozuelo Monfort (2017-02-12): >> On 12/02/17 18:08, Laszlo Boszormenyi (GCS) wrote: >>> Package: release.debian.org >>> User: release.debian@packages.debian.org >>> Usertags: unblock >>> >>> Hi Release Team, >>> >>> Please unblock ntfs-3g 2016.2.22AR.1-4 as it fixes CVE-2017-0358. >>> The debdiff is attached for your convenience. >> >> Unblocked, but needs a d-i RM ack for the udeb. > > I really hope this doesn't break d-i. :) (If it does, we'll fix.) > > So feel free to go ahead, thanks. Thanks. Done. Cheers, Emilio--- End Message ---
Bug#852624: jessie-pu: package libmateweather/1.8.0-2+deb8u2
Control: tags -1 + pending On Tue, 2017-01-31 at 01:55 +0100, ZenWalker wrote: > libmateweather has now been uploaded to jessie-pu Flagged for acceptance. Regards, Adam
Bug#850931: jessie-pu: package mongodb/1:2.4.10-5
Control: tags -1 + pending On Mon, 2017-01-30 at 11:28 +0200, Apollon Oikonomopoulos wrote: > On 16:36 Sat 28 Jan , Adam D. Barratt wrote: > > Control: tags -1 + confirmed > > > > On Wed, 2017-01-11 at 12:46 +0200, Apollon Oikonomopoulos wrote: > > > - CVE-2016-6494[1] is fixed by backporting the patch already applied to > > >2.6 (once in sid). > > > > > > - TEMP-0833087-C5410D[2] is fixed by reimplementing upstream's fix for > > >2.6[3] using the infrastructure available in MongoDB 2.4. > > >Unfortunately the mutable BSON infrastructure used in 2.6 is > > >incomplete and unusable in 2.4. I benchmarked my own version and > > >found no measurable performance impact. > > > > Please go ahead. > > > > fwiw: > > > > +This fixes TEMP-0833087-C5410D and closes #833087. > > > > The Security Team have previously requested that TEMP-* identifiers not > > be used in changelogs at least; I'm not sure how far that extends to > > things like patch headers. > > Uploaded with the following interdiff: Flagged for acceptance. Regards, Adam
Bug#851397: jessie-pu: package sendmail/8.14.4-8+deb8u2
Control: tags -1 + pending On Sat, 2017-01-28 at 12:07 +, Adam D. Barratt wrote: > Control: tags -1 + confirmed > > On Sat, 2017-01-14 at 16:22 +0100, Andreas Beckmann wrote: > > sendmail (8.14.4-8+deb8u2) jessie-pu; urgency=medium > > > > * QA upload. > > > > Disclaimer: I last ran sendmail about 15 years ago on Solaris 8. > > > > * Only touch files as smmsp:smmsp in /var/run/sendmail/stampdir (writable > > by > > group smmsp) to avoid possible privilege escalation. (Closes: #841257) > > * Use lockfile-create (from lockfile-progs) instead of touch to manage the > > cronjob lockfiles. > > > > This fix has been in unstable for some time (and without regression > > reports for its second iteration), but I don't know anyone who could > > test this in jessie properly. > > Anyway, I'll ping all people involved in the relevant bug reports > > to see whether they can test it once it reached jessie-pu. > > > > * sendmail-base: Add Depends: netbase for /etc/services. > > > > Backported from sid, sendmail is noisy if /etc/services is missing > > (and maybe not working). No known bug report, probably since > > it is unlikely to install a production server without netbase. > > Please go ahead. Uploaded and flagged for acceptance. Regards, Adam
Processed: Re: Bug#851105: jessie-pu: package ndoutils/1.4b9-1.1+deb8u1
Processing control commands: > tags -1 + pending Bug #851105 [release.debian.org] jessie-pu: package ndoutils/1.4b9-1.1+deb8u1 Added tag(s) pending. -- 851105: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=851105 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems
Processed: Re: Bug#852624: jessie-pu: package libmateweather/1.8.0-2+deb8u2
Processing control commands: > tags -1 + pending Bug #852624 [release.debian.org] jessie-pu: package libmateweather/1.8.0-2+deb8u2 Added tag(s) pending. -- 852624: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=852624 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems
Bug#851105: jessie-pu: package ndoutils/1.4b9-1.1+deb8u1
Control: tags -1 + pending On Sat, 2017-01-28 at 16:37 +, Adam D. Barratt wrote: > Control: tags -1 + confirmed > > On Thu, 2017-01-12 at 03:22 +0100, Andreas Beckmann wrote: > > ndoutils is one of two packages remaining in the archive that use ucf > > unconditionally during postrm purge, causing piuparts failures. > > Since the package has been removed after jessie, I propose to finally > > fix this bug in jessie-pu. > > Please go ahead. Uploaded and flagged for acceptance. Regards, Adam
Processed: Re: Bug#850931: jessie-pu: package mongodb/1:2.4.10-5
Processing control commands: > tags -1 + pending Bug #850931 [release.debian.org] jessie-pu: package mongodb/1:2.4.10-5 Added tag(s) pending. -- 850931: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=850931 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems
Processed: Re: Bug#851397: jessie-pu: package sendmail/8.14.4-8+deb8u2
Processing control commands: > tags -1 + pending Bug #851397 [release.debian.org] jessie-pu: package sendmail/8.14.4-8+deb8u2 Added tag(s) pending. -- 851397: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=851397 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems
NEW changes in stable-new
Processing changes file: chromium-browser_56.0.2924.76-1~deb8u1_i386.changes ACCEPT Processing changes file: chromium-browser_56.0.2924.76-1~deb8u1_amd64.changes ACCEPT Processing changes file: jasper_1.900.1-debian1-2.4+deb8u2_amd64.changes ACCEPT Processing changes file: jasper_1.900.1-debian1-2.4+deb8u2_arm64.changes ACCEPT Processing changes file: jasper_1.900.1-debian1-2.4+deb8u2_armel.changes ACCEPT Processing changes file: jasper_1.900.1-debian1-2.4+deb8u2_armhf.changes ACCEPT Processing changes file: jasper_1.900.1-debian1-2.4+deb8u2_i386.changes ACCEPT Processing changes file: jasper_1.900.1-debian1-2.4+deb8u2_mips.changes ACCEPT Processing changes file: jasper_1.900.1-debian1-2.4+deb8u2_mipsel.changes ACCEPT Processing changes file: jasper_1.900.1-debian1-2.4+deb8u2_powerpc.changes ACCEPT Processing changes file: jasper_1.900.1-debian1-2.4+deb8u2_ppc64el.changes ACCEPT Processing changes file: jasper_1.900.1-debian1-2.4+deb8u2_s390x.changes ACCEPT Processing changes file: libgd2_2.1.0-5+deb8u9_amd64.changes ACCEPT Processing changes file: libgd2_2.1.0-5+deb8u9_arm64.changes ACCEPT Processing changes file: libgd2_2.1.0-5+deb8u9_armel.changes ACCEPT Processing changes file: libgd2_2.1.0-5+deb8u9_armhf.changes ACCEPT Processing changes file: libgd2_2.1.0-5+deb8u9_i386.changes ACCEPT Processing changes file: libgd2_2.1.0-5+deb8u9_mips.changes ACCEPT Processing changes file: libgd2_2.1.0-5+deb8u9_mipsel.changes ACCEPT Processing changes file: libgd2_2.1.0-5+deb8u9_powerpc.changes ACCEPT Processing changes file: libgd2_2.1.0-5+deb8u9_ppc64el.changes ACCEPT Processing changes file: libgd2_2.1.0-5+deb8u9_s390x.changes ACCEPT Processing changes file: ntfs-3g_2014.2.15AR.2-1+deb8u3_amd64.changes ACCEPT Processing changes file: ntfs-3g_2014.2.15AR.2-1+deb8u3_arm64.changes ACCEPT Processing changes file: ntfs-3g_2014.2.15AR.2-1+deb8u3_armel.changes ACCEPT Processing changes file: ntfs-3g_2014.2.15AR.2-1+deb8u3_armhf.changes ACCEPT Processing changes file: ntfs-3g_2014.2.15AR.2-1+deb8u3_i386.changes ACCEPT Processing changes file: ntfs-3g_2014.2.15AR.2-1+deb8u3_mips.changes ACCEPT Processing changes file: ntfs-3g_2014.2.15AR.2-1+deb8u3_mipsel.changes ACCEPT Processing changes file: ntfs-3g_2014.2.15AR.2-1+deb8u3_powerpc.changes ACCEPT Processing changes file: ntfs-3g_2014.2.15AR.2-1+deb8u3_ppc64el.changes ACCEPT Processing changes file: ntfs-3g_2014.2.15AR.2-1+deb8u3_s390x.changes ACCEPT Processing changes file: ruby-archive-tar-minitar_0.5.2-2+deb8u1_allonly.changes ACCEPT Processing changes file: svgsalamander_0~svn95-1+deb8u1_amd64.changes ACCEPT Processing changes file: tcpdump_4.9.0-1~deb8u1_multi.changes ACCEPT Processing changes file: tcpdump_4.9.0-1~deb8u1_arm64.changes ACCEPT Processing changes file: tcpdump_4.9.0-1~deb8u1_armel.changes ACCEPT Processing changes file: tcpdump_4.9.0-1~deb8u1_armhf.changes ACCEPT Processing changes file: tcpdump_4.9.0-1~deb8u1_i386.changes ACCEPT Processing changes file: tcpdump_4.9.0-1~deb8u1_mips.changes ACCEPT Processing changes file: tcpdump_4.9.0-1~deb8u1_mipsel.changes ACCEPT Processing changes file: tcpdump_4.9.0-1~deb8u1_powerpc.changes ACCEPT Processing changes file: tcpdump_4.9.0-1~deb8u1_ppc64el.changes ACCEPT Processing changes file: tcpdump_4.9.0-1~deb8u1_s390x.changes ACCEPT Processing changes file: viewvc_1.1.22-1+deb8u1_amd64.changes ACCEPT Processing changes file: wordpress_4.1+dfsg-1+deb8u12_amd64.changes ACCEPT
Bug#854968: unblock: ntfs-3g
Hi, Emilio Pozuelo Monfort(2017-02-12): > On 12/02/17 18:08, Laszlo Boszormenyi (GCS) wrote: > > Package: release.debian.org > > User: release.debian@packages.debian.org > > Usertags: unblock > > > > Hi Release Team, > > > > Please unblock ntfs-3g 2016.2.22AR.1-4 as it fixes CVE-2017-0358. > > The debdiff is attached for your convenience. > > Unblocked, but needs a d-i RM ack for the udeb. I really hope this doesn't break d-i. :) (If it does, we'll fix.) So feel free to go ahead, thanks. KiBi. signature.asc Description: Digital signature
Bug#854981: marked as done (unblock: le-dico-de-rene-cougnenc/1.3-2.3)
Your message dated Sun, 12 Feb 2017 20:48:19 + with message-idand subject line unblock le-dico-de-rene-cougnenc has caused the Debian Bug report #854981, regarding unblock: le-dico-de-rene-cougnenc/1.3-2.3 to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what this message is talking about, this may indicate a serious mail system misconfiguration somewhere. Please contact ow...@bugs.debian.org immediately.) -- 854981: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=854981 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems --- Begin Message --- Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package le-dico-de-rene-cougnenc dico in testing segfaults immediately upon startup, which was reported as #852659. This upload fixes the crash by avoiding undefined behaviour by moving an increment from an assignment to a separate line. Also current -dbgsym packages contain no line number information. Therefore in the Makefile the option -g is added to gcc. bernhard@rechner:/tmp/dico$ debdiff le-dico-de-rene-cougnenc_1.3-2.2.dsc le- dico-de-rene-cougnenc_1.3-2.3.dsc diff -u le-dico-de-rene-cougnenc-1.3/debian/changelog le-dico-de-rene- cougnenc-1.3/debian/changelog --- le-dico-de-rene-cougnenc-1.3/debian/changelog +++ le-dico-de-rene-cougnenc-1.3/debian/changelog @@ -1,3 +1,11 @@ +le-dico-de-rene-cougnenc (1.3-2.3) unstable; urgency=medium + + * Non-maintainer upload. + * Build with debug info to make dbgsym package usable. + * Avoid segfault by undefined behaviour. (Closes: #852659) + + -- Bernhard Übelacker Wed, 08 Feb 2017 22:03:54 +0100 + le-dico-de-rene-cougnenc (1.3-2.2) unstable; urgency=medium * Non-maintainer upload. diff -u le-dico-de-rene-cougnenc-1.3/src/dico.c le-dico-de-rene- cougnenc-1.3/src/dico.c --- le-dico-de-rene-cougnenc-1.3/src/dico.c +++ le-dico-de-rene-cougnenc-1.3/src/dico.c @@ -1040,7 +1040,8 @@ while (*str) { - *str = EquivalTable[ *str++ ] ; + *str = EquivalTable[ *str ] ; + str++; } return p ; only in patch2: unchanged: --- le-dico-de-rene-cougnenc-1.3.orig/src/Makefile +++ le-dico-de-rene-cougnenc-1.3/src/Makefile @@ -2,8 +2,8 @@ prefix = /usr dico: dico.c killposte.c - gcc dico.c -o dico - gcc killposte.c -o killposte + gcc -g dico.c -o dico + gcc -g killposte.c -o killposte clean: rm -fr *~ dico killposte *.1 manpage.links manpage.refs unblock le-dico-de-rene-cougnenc/1.3-2.3 -- System Information: Debian Release: 9.0 APT prefers testing-debug APT policy: (500, 'testing-debug'), (500, 'testing') Architecture: amd64 (x86_64) Foreign Architectures: i386 Kernel: Linux 4.9.0-1-amd64 (SMP w/2 CPU cores) Locale: LANG=de_DE.UTF-8, LC_CTYPE=de_DE.UTF-8 (charmap=UTF-8) --- End Message --- --- Begin Message --- Unblocked.--- End Message ---
Bug#854981: unblock: le-dico-de-rene-cougnenc/1.3-2.3
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package le-dico-de-rene-cougnenc dico in testing segfaults immediately upon startup, which was reported as #852659. This upload fixes the crash by avoiding undefined behaviour by moving an increment from an assignment to a separate line. Also current -dbgsym packages contain no line number information. Therefore in the Makefile the option -g is added to gcc. bernhard@rechner:/tmp/dico$ debdiff le-dico-de-rene-cougnenc_1.3-2.2.dsc le- dico-de-rene-cougnenc_1.3-2.3.dsc diff -u le-dico-de-rene-cougnenc-1.3/debian/changelog le-dico-de-rene- cougnenc-1.3/debian/changelog --- le-dico-de-rene-cougnenc-1.3/debian/changelog +++ le-dico-de-rene-cougnenc-1.3/debian/changelog @@ -1,3 +1,11 @@ +le-dico-de-rene-cougnenc (1.3-2.3) unstable; urgency=medium + + * Non-maintainer upload. + * Build with debug info to make dbgsym package usable. + * Avoid segfault by undefined behaviour. (Closes: #852659) + + -- Bernhard ÜbelackerWed, 08 Feb 2017 22:03:54 +0100 + le-dico-de-rene-cougnenc (1.3-2.2) unstable; urgency=medium * Non-maintainer upload. diff -u le-dico-de-rene-cougnenc-1.3/src/dico.c le-dico-de-rene- cougnenc-1.3/src/dico.c --- le-dico-de-rene-cougnenc-1.3/src/dico.c +++ le-dico-de-rene-cougnenc-1.3/src/dico.c @@ -1040,7 +1040,8 @@ while (*str) { - *str = EquivalTable[ *str++ ] ; + *str = EquivalTable[ *str ] ; + str++; } return p ; only in patch2: unchanged: --- le-dico-de-rene-cougnenc-1.3.orig/src/Makefile +++ le-dico-de-rene-cougnenc-1.3/src/Makefile @@ -2,8 +2,8 @@ prefix = /usr dico: dico.c killposte.c - gcc dico.c -o dico - gcc killposte.c -o killposte + gcc -g dico.c -o dico + gcc -g killposte.c -o killposte clean: rm -fr *~ dico killposte *.1 manpage.links manpage.refs unblock le-dico-de-rene-cougnenc/1.3-2.3 -- System Information: Debian Release: 9.0 APT prefers testing-debug APT policy: (500, 'testing-debug'), (500, 'testing') Architecture: amd64 (x86_64) Foreign Architectures: i386 Kernel: Linux 4.9.0-1-amd64 (SMP w/2 CPU cores) Locale: LANG=de_DE.UTF-8, LC_CTYPE=de_DE.UTF-8 (charmap=UTF-8)
Bug#854384: marked as done (RM [RoM] virtualbox-guest-additions-iso)
Your message dated Sun, 12 Feb 2017 20:42:05 +0100 with message-id <6505ac6e-fe47-0a80-d6f8-68f9317c0...@debian.org> and subject line Re: Bug#854384: RM [RoM] virtualbox-guest-additions-iso has caused the Debian Bug report #854384, regarding RM [RoM] virtualbox-guest-additions-iso to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what this message is talking about, this may indicate a serious mail system misconfiguration somewhere. Please contact ow...@bugs.debian.org immediately.) -- 854384: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=854384 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems --- Begin Message --- Package: release.debian.org Severity: normal As said, for reasons including #794466, virtualbox-guest-additions-iso is not suitable for a Stable Release. please kick it out of testing, Gianfranco --- End Message --- --- Begin Message --- # please use reportbug... user release.debian@packages.debian.org usertag 854384 rm thanks On 06/02/17 15:36, Gianfranco Costamagna wrote: > Package: release.debian.org > Severity: normal > > > As said, for reasons including #794466, virtualbox-guest-additions-iso is not > suitable for a Stable Release. Removal hint added. Cheers, Emilio--- End Message ---
Bug#854945: marked as done (unblock: lprng/3.8.B-2.1)
Your message dated Sun, 12 Feb 2017 20:30:00 +0100 with message-id <4d75fd7d-6975-bb1e-7b51-50d37075a...@debian.org> and subject line Re: Bug#854945: unblock: lprng/3.8.B-2.1 has caused the Debian Bug report #854945, regarding unblock: lprng/3.8.B-2.1 to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what this message is talking about, this may indicate a serious mail system misconfiguration somewhere. Please contact ow...@bugs.debian.org immediately.) -- 854945: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=854945 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems --- Begin Message --- Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package lprng. The NMU 3.8.B-2.1 fixes a bug where SSL support in the package was silently dropped since OpenSSL 1.1 (#854468), because the configure checks were looking for a deprecated library symbol, which is now a preprocessor macro. The change restores SSL support by looking for a different symbol. Regards, Reiner unblock lprng/3.8.B-2.1 diff -Nru lprng-3.8.B/debian/changelog lprng-3.8.B/debian/changelog --- lprng-3.8.B/debian/changelog2012-06-11 10:07:15.0 +0200 +++ lprng-3.8.B/debian/changelog2017-02-08 21:20:30.0 +0100 @@ -1,3 +1,11 @@ +lprng (3.8.B-2.1) unstable; urgency=medium + + * Non-maintainer upload. + * Don't lose authentication support when compiled with OpenSSL 1.1, patch by +Reiner Herrmann(Closes: #854468). + + -- Sebastian Andrzej Siewior Wed, 08 Feb 2017 21:20:30 +0100 + lprng (3.8.B-2) unstable; urgency=low * Compilies on hurd-i386 Closes: #671848 diff -Nru lprng-3.8.B/debian/patches/openssl_1.1.patch lprng-3.8.B/debian/patches/openssl_1.1.patch --- lprng-3.8.B/debian/patches/openssl_1.1.patch1970-01-01 01:00:00.0 +0100 +++ lprng-3.8.B/debian/patches/openssl_1.1.patch2017-02-08 21:19:17.0 +0100 @@ -0,0 +1,27 @@ +--- a/configure.ac b/configure.ac +@@ -1008,7 +1008,7 @@ + SSL_LDADD="-L$dir $SSL_LDADD" + fi + LDFLAGS="$LDFLAGS $SSL_LDADD" +- AC_TRY_LINK_FUNC(SSL_load_error_strings,ac_linked_libssl="true", ++ AC_TRY_LINK_FUNC(OPENSSL_init_ssl,ac_linked_libssl="true", + ac_linked_libssl="false"); + AC_TRY_LINK_FUNC(RC4_set_key,ac_linked_libcrypto="true", + ac_linked_libcrypto="false"); +--- a/configure b/configure +@@ -10408,11 +10408,11 @@ + #ifdef __cplusplus + extern "C" + #endif +-char SSL_load_error_strings (); ++char OPENSSL_init_ssl (); + int + main () + { +-return SSL_load_error_strings (); ++return OPENSSL_init_ssl (); + ; + return 0; + } diff -Nru lprng-3.8.B/debian/patches/series lprng-3.8.B/debian/patches/series --- lprng-3.8.B/debian/patches/series 2012-06-11 08:49:05.0 +0200 +++ lprng-3.8.B/debian/patches/series 2017-02-08 21:19:17.0 +0100 @@ -1,3 +1,4 @@ lpd_conf_manwarnings portable_maxpathlen string_literals +openssl_1.1.patch --- End Message --- --- Begin Message --- On 12/02/17 12:16, Reiner Herrmann wrote: > Package: release.debian.org > Severity: normal > User: release.debian@packages.debian.org > Usertags: unblock > > Please unblock package lprng. > > The NMU 3.8.B-2.1 fixes a bug where SSL support in the package was > silently dropped since OpenSSL 1.1 (#854468), because the configure > checks were looking for a deprecated library symbol, which is now > a preprocessor macro. The change restores SSL support by looking for > a different symbol. > > Regards, > Reiner > > unblock lprng/3.8.B-2.1 lprng | 3.8.B-2.1 | testing | source, amd64, arm64, armel, armhf, i386, mips, mips64el, mipsel, ppc64el, s390x lprng | 3.8.B-2.1 | unstable| source, amd64, arm64, armel, armhf, hurd-i386, i386, kfreebsd-amd64, kfreebsd-i386, mips, mips64el, mipsel, powerpc, ppc64el, s390x Looks like this already migrated. Cheers, Emilio--- End Message ---
Bug#854944: marked as done (unblock: ftpcopy/0.6.7-3.1)
Your message dated Sun, 12 Feb 2017 19:28:35 + with message-idand subject line unblock ftpcopy has caused the Debian Bug report #854944, regarding unblock: ftpcopy/0.6.7-3.1 to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what this message is talking about, this may indicate a serious mail system misconfiguration somewhere. Please contact ow...@bugs.debian.org immediately.) -- 854944: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=854944 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems --- Begin Message --- Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package ftpcopy. The 0.6.7-3.1 NMU contains a fix for an FTBFS bug (#854512), because dpkg-shlibdeps was called on a shell script, which is fatal in recent dpkg versions. Regards, Reiner unblock ftpcopy/0.6.7-3.1 diff -u ftpcopy-0.6.7/debian/changelog ftpcopy-0.6.7/debian/changelog --- ftpcopy-0.6.7/debian/changelog +++ ftpcopy-0.6.7/debian/changelog @@ -1,3 +1,11 @@ +ftpcopy (0.6.7-3.1) unstable; urgency=medium + + * Non-maintainer upload. + * Fix FTBFS by calling dpkg-shlibdeps only for binaries and not +the ftpcp shell script (Closes: #854512). + + -- Reiner Herrmann Wed, 08 Feb 2017 18:57:50 +0100 + ftpcopy (0.6.7-3) unstable; urgency=medium * debian/diff/disable--html-option.diff: the --html option is no diff -u ftpcopy-0.6.7/debian/rules ftpcopy-0.6.7/debian/rules --- ftpcopy-0.6.7/debian/rules +++ ftpcopy-0.6.7/debian/rules @@ -69,7 +69,7 @@ install-indep: deb-checkdir deb-checkuid build-indep-stamp binary-arch: deb-checkdir deb-checkuid install-arch ftpcopy.deb - test '$(DIET)' -ne 0 || dpkg-shlibdeps '$(DIR)'/usr/bin/* + test '$(DIET)' -ne 0 || dpkg-shlibdeps '$(DIR)'/usr/bin/ftpcopy '$(DIR)'/usr/bin/ftpls dpkg-gencontrol -isp -pftpcopy -P'$(DIR)' dpkg -b '$(DIR)' .. --- End Message --- --- Begin Message --- Unblocked.--- End Message ---
Bug#854674: closed by Ivo De Decker <iv...@debian.org> (Re: unblock: puppet/4.8.2-2)
On 12/02/17 14:17, Apollon Oikonomopoulos wrote: > Dear Release Team, > > On 23:12 Thu 09 Feb , Debian Bug Tracking System wrote: >> This is an automatic notification regarding your Bug report >> which was filed against the release.debian.org package: >> >> #854674: unblock: puppet/4.8.2-2 >> >> It has been closed by Ivo De Decker. > > Thank you for unblocking puppet. Since I also have a fix for #854680 > pending, would it be possible to reduce the migration delay for 4.8.2-2? Done. Cheers, Emilio
Bug#854970: marked as done (unblock: ruby-uuidtools/2.1.5-2)
Your message dated Sun, 12 Feb 2017 19:27:25 + with message-idand subject line unblock ruby-uuidtools has caused the Debian Bug report #854970, regarding unblock: ruby-uuidtools/2.1.5-2 to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what this message is talking about, this may indicate a serious mail system misconfiguration somewhere. Please contact ow...@bugs.debian.org immediately.) -- 854970: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=854970 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems --- Begin Message --- Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package ruby-uuidtools Upstream found clever to embed a library to ensure it would work on older Ruby version, but this is not necessary and causes conflict because ruby-signet's upstream had the same idea. Please find the debdiff: diff -Nru ruby-uuidtools-2.1.5/debian/changelog ruby-uuidtools-2.1.5/debian/changelog --- ruby-uuidtools-2.1.5/debian/changelog 2016-03-05 11:34:14.0 +0900 +++ ruby-uuidtools-2.1.5/debian/changelog 2017-02-08 06:14:56.0 +0900 @@ -1,3 +1,10 @@ +ruby-uuidtools (2.1.5-2) unstable; urgency=medium + + * Removed embedded compat library, useless and causing conflict +(Closes: #853887) + + -- Marc Dequènes (Duck) Wed, 08 Feb 2017 06:14:56 +0900 + ruby-uuidtools (2.1.5-1) unstable; urgency=medium * Team upload. diff -Nru ruby-uuidtools-2.1.5/debian/rules ruby-uuidtools-2.1.5/debian/rules --- ruby-uuidtools-2.1.5/debian/rules 2016-03-05 11:34:14.0 +0900 +++ ruby-uuidtools-2.1.5/debian/rules 2017-02-08 06:06:56.0 +0900 @@ -19,6 +19,12 @@ rdoc --all --inline-source --diagram --fileboxes --line-numbers --fmt=html \ -o build-doc/rdoc lib +# do not install compatibility libraries which are already included in +# recent Ruby anyway and only cause conflicts (see #853887) +override_dh_auto_install: + dh_auto_install + rm -rf debian/ruby-uuidtools/usr/lib/ruby/vendor_ruby/compat + override_dh_installdocs: dh_installdocs # use the system library unblock ruby-uuidtools/2.1.5-2 -- System Information: Debian Release: 9.0 APT prefers unstable APT policy: (500, 'unstable') Architecture: amd64 (x86_64) Kernel: Linux 4.9.0-1-amd64 (SMP w/4 CPU cores) Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8) Shell: /bin/sh linked to /bin/dash Init: systemd (via /run/systemd/system) --- End Message --- --- Begin Message --- Unblocked.--- End Message ---
Bug#854968: unblock: ntfs-3g
On 12/02/17 18:08, Laszlo Boszormenyi (GCS) wrote: > Package: release.debian.org > User: release.debian@packages.debian.org > Usertags: unblock > > Hi Release Team, > > Please unblock ntfs-3g 2016.2.22AR.1-4 as it fixes CVE-2017-0358. > The debdiff is attached for your convenience. Unblocked, but needs a d-i RM ack for the udeb. Cheers, Emilio
Bug#854971: marked as done (unblock: reportbug/7.1.5)
Your message dated Sun, 12 Feb 2017 19:21:07 + with message-idand subject line unblock reportbug has caused the Debian Bug report #854971, regarding unblock: reportbug/7.1.5 to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what this message is talking about, this may indicate a serious mail system misconfiguration somewhere. Please contact ow...@bugs.debian.org immediately.) -- 854971: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=854971 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems --- Begin Message --- Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package reportbug I just uploaded a new release of reportbug fixing bugs in GTK+ interface and in charset/locale handling which are affecting many users Source debdiff between 7.1.4 and 7.1.5 is attached unblock reportbug/7.1.5 -- System Information: Debian Release: stretch/sid APT prefers unstable APT policy: (500, 'unstable'), (1, 'experimental') Architecture: amd64 (x86_64) Foreign Architectures: i386 Kernel: Linux 4.2.0-1-amd64 (SMP w/8 CPU cores) Locale: LANG=en_US.utf8, LC_CTYPE=en_US.utf8 (charmap=UTF-8) Shell: /bin/sh linked to /bin/dash Init: systemd (via /run/systemd/system) diff -Nru reportbug-7.1.4/debian/changelog reportbug-7.1.5/debian/changelog --- reportbug-7.1.4/debian/changelog2017-01-22 18:16:04.0 -0500 +++ reportbug-7.1.5/debian/changelog2017-02-12 12:07:18.0 -0500 @@ -1,3 +1,20 @@ +reportbug (7.1.5) unstable; urgency=medium + + * reportbug/utils.py +- handle correcly the situation where reportbug config file and dpkg status + database have a different charset than current locale; patch by Nis + Martensen; Closes: #848729 + * reportbug/ui/gtk2_ui.py +- fallback gracefully to text UI if running GTK+ interface on a text + console; patch by Nis Martensen; Closes: #853269 +- fallback gracefully to text UI in case some of the GTK+ deps are not + available, by catching all the relevant exceptions; patch by Jakob Haufe; + Closes: #854405 +- require also Cairo, required to render the GTK+ interface; patch by Nis + Martensen; Closes: #852652 + + -- Sandro Tosi Sun, 12 Feb 2017 12:07:18 -0500 + reportbug (7.1.4) unstable; urgency=medium * reportbug/submit.py diff -Nru reportbug-7.1.4/reportbug/__init__.py reportbug-7.1.5/reportbug/__init__.py --- reportbug-7.1.4/reportbug/__init__.py 2017-01-22 18:16:04.0 -0500 +++ reportbug-7.1.5/reportbug/__init__.py 2017-02-12 12:07:18.0 -0500 @@ -25,7 +25,7 @@ __all__ = ['bugreport', 'utils', 'urlutils', 'checkbuildd', 'checkversions', 'debbugs', 'exceptions', 'submit', 'tempfile'] -VERSION_NUMBER = "7.1.4" +VERSION_NUMBER = "7.1.5" VERSION = "reportbug " + VERSION_NUMBER COPYRIGHT = VERSION + '\nCopyright (C) 1999-2008 Chris Lawrence ' + \ Binary files /tmp/cOjLl1qlsz/reportbug-7.1.4/reportbug/__pycache__/__init__.cpython-35.pyc and /tmp/vTwa7oxWbv/reportbug-7.1.5/reportbug/__pycache__/__init__.cpython-35.pyc differ Binary files /tmp/cOjLl1qlsz/reportbug-7.1.4/reportbug/__pycache__/submit.cpython-35.pyc and /tmp/vTwa7oxWbv/reportbug-7.1.5/reportbug/__pycache__/submit.cpython-35.pyc differ Binary files /tmp/cOjLl1qlsz/reportbug-7.1.4/reportbug/__pycache__/utils.cpython-35.pyc and /tmp/vTwa7oxWbv/reportbug-7.1.5/reportbug/__pycache__/utils.cpython-35.pyc differ diff -Nru reportbug-7.1.4/reportbug/ui/gtk2_ui.py reportbug-7.1.5/reportbug/ui/gtk2_ui.py --- reportbug-7.1.4/reportbug/ui/gtk2_ui.py 2017-01-22 18:16:04.0 -0500 +++ reportbug-7.1.5/reportbug/ui/gtk2_ui.py 2017-02-12 12:07:18.0 -0500 @@ -22,6 +22,10 @@ from reportbug.exceptions import UINotImportable +import os +if not ('DISPLAY' in os.environ or 'WAYLAND_DISPLAY' in os.environ): +raise UINotImportable('No graphical display detected, falling back to text UI.') + try: import gi @@ -42,6 +46,8 @@ gi.require_version('Gtk', '3.0') from gi.repository import Gtk + +gi.require_foreign('cairo') except ImportError: raise UINotImportable('Please install the python3-gi and gir1.2-gtk-3.0 packages to use this interface.') @@ -1777,7 +1783,7 @@ try: gi.require_version('Vte', '2.91') from gi.repository import Vte -except ImportError: +except (ImportError,ValueError): message = """Please install the %s package to use the GTK+(known as 'gtk2' in reportbug) interface. Falling back to 'text' interface.""" dialog = Gtk.MessageDialog(None, Gtk.DialogFlags.MODAL | Gtk.DialogFlags.DESTROY_WITH_PARENT,
Bug#854905: nmu: petsc_3.7.5+dfsg1-4
user release.debian@packages.debian.org usertag 854905 nmu thanks On 11/02/17 21:41, Adrian Bunk wrote: > Control: reassign -1 release.debian.org > Control: retitle -1 nmu: petsc_3.7.5+dfsg1-4 > Control: severity -1 normal > Control: tags -1 - sid > Control: affects -1 libpetsc3.7.5-dev You forgot to usertag it... > > On Sat, Feb 11, 2017 at 11:32:39AM -0800, Dima Kogan wrote: >> Package: libpetsc3.7.5-dev >> Severity: grave >> >> Hi. Currently libpetsc3.7.5-dev is uninstallable. Sbuild resolver says: >> >> missing: >> pkg: >> package: libpetsc3.7.5-dev >> version: 3.7.5+dfsg1-4 >> architecture: amd64 >> unsat-dependency: libopenmpi-dev:amd64 (< 2.0.2~git.20161226) >> depchains: >> - >>depchain: >> - >> package: sbuild-build-depends-sundials-dummy >> version: 0.invalid.0 >> architecture: amd64 >> depends: libpetsc3.7-dev:amd64 >> - >> package: libpetsc3.7-dev >> version: 3.7.5+dfsg1-4 >> architecture: amd64 >> depends: libpetsc3.7.5-dev:amd64 >> >> >> Which is true, because libpetsc3.7.5-dev has >> >> Depends: libopenmpi-dev (>= 2.0.2~git.20161225), >> libopenmpi-dev (<< 2.0.2~git.20161226) >> >> But the only available libopenmpi-dev is 2.0.2-2 > > A binNMU seems to be sufficient here. > > nmu petsc_3.7.5+dfsg1-4 . ANY . unstable . -m "Rebuild with openmpi 2.0.2" We should probably wait until petsc migrates, and then maybe not do this unless we unblock openmpi. Emilio
Bug#854972: unblock: spl-linux and zfs-linux
Package: release.debian.org User: release.debian@packages.debian.org Usertags: unblock Hi Release Team, Please unblock spl-linux/0.6.5.9-1 and zfs-linux/0.6.5.9-2. The latter is an upstream point release that has included fix for Linux 4.9 compatibility (Closes: #851513), and it depends on the newer point release of spl-linux. Thanks, Aron
Bug#854971: unblock: reportbug/7.1.5
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package reportbug I just uploaded a new release of reportbug fixing bugs in GTK+ interface and in charset/locale handling which are affecting many users Source debdiff between 7.1.4 and 7.1.5 is attached unblock reportbug/7.1.5 -- System Information: Debian Release: stretch/sid APT prefers unstable APT policy: (500, 'unstable'), (1, 'experimental') Architecture: amd64 (x86_64) Foreign Architectures: i386 Kernel: Linux 4.2.0-1-amd64 (SMP w/8 CPU cores) Locale: LANG=en_US.utf8, LC_CTYPE=en_US.utf8 (charmap=UTF-8) Shell: /bin/sh linked to /bin/dash Init: systemd (via /run/systemd/system) diff -Nru reportbug-7.1.4/debian/changelog reportbug-7.1.5/debian/changelog --- reportbug-7.1.4/debian/changelog2017-01-22 18:16:04.0 -0500 +++ reportbug-7.1.5/debian/changelog2017-02-12 12:07:18.0 -0500 @@ -1,3 +1,20 @@ +reportbug (7.1.5) unstable; urgency=medium + + * reportbug/utils.py +- handle correcly the situation where reportbug config file and dpkg status + database have a different charset than current locale; patch by Nis + Martensen; Closes: #848729 + * reportbug/ui/gtk2_ui.py +- fallback gracefully to text UI if running GTK+ interface on a text + console; patch by Nis Martensen; Closes: #853269 +- fallback gracefully to text UI in case some of the GTK+ deps are not + available, by catching all the relevant exceptions; patch by Jakob Haufe; + Closes: #854405 +- require also Cairo, required to render the GTK+ interface; patch by Nis + Martensen; Closes: #852652 + + -- Sandro TosiSun, 12 Feb 2017 12:07:18 -0500 + reportbug (7.1.4) unstable; urgency=medium * reportbug/submit.py diff -Nru reportbug-7.1.4/reportbug/__init__.py reportbug-7.1.5/reportbug/__init__.py --- reportbug-7.1.4/reportbug/__init__.py 2017-01-22 18:16:04.0 -0500 +++ reportbug-7.1.5/reportbug/__init__.py 2017-02-12 12:07:18.0 -0500 @@ -25,7 +25,7 @@ __all__ = ['bugreport', 'utils', 'urlutils', 'checkbuildd', 'checkversions', 'debbugs', 'exceptions', 'submit', 'tempfile'] -VERSION_NUMBER = "7.1.4" +VERSION_NUMBER = "7.1.5" VERSION = "reportbug " + VERSION_NUMBER COPYRIGHT = VERSION + '\nCopyright (C) 1999-2008 Chris Lawrence ' + \ Binary files /tmp/cOjLl1qlsz/reportbug-7.1.4/reportbug/__pycache__/__init__.cpython-35.pyc and /tmp/vTwa7oxWbv/reportbug-7.1.5/reportbug/__pycache__/__init__.cpython-35.pyc differ Binary files /tmp/cOjLl1qlsz/reportbug-7.1.4/reportbug/__pycache__/submit.cpython-35.pyc and /tmp/vTwa7oxWbv/reportbug-7.1.5/reportbug/__pycache__/submit.cpython-35.pyc differ Binary files /tmp/cOjLl1qlsz/reportbug-7.1.4/reportbug/__pycache__/utils.cpython-35.pyc and /tmp/vTwa7oxWbv/reportbug-7.1.5/reportbug/__pycache__/utils.cpython-35.pyc differ diff -Nru reportbug-7.1.4/reportbug/ui/gtk2_ui.py reportbug-7.1.5/reportbug/ui/gtk2_ui.py --- reportbug-7.1.4/reportbug/ui/gtk2_ui.py 2017-01-22 18:16:04.0 -0500 +++ reportbug-7.1.5/reportbug/ui/gtk2_ui.py 2017-02-12 12:07:18.0 -0500 @@ -22,6 +22,10 @@ from reportbug.exceptions import UINotImportable +import os +if not ('DISPLAY' in os.environ or 'WAYLAND_DISPLAY' in os.environ): +raise UINotImportable('No graphical display detected, falling back to text UI.') + try: import gi @@ -42,6 +46,8 @@ gi.require_version('Gtk', '3.0') from gi.repository import Gtk + +gi.require_foreign('cairo') except ImportError: raise UINotImportable('Please install the python3-gi and gir1.2-gtk-3.0 packages to use this interface.') @@ -1777,7 +1783,7 @@ try: gi.require_version('Vte', '2.91') from gi.repository import Vte -except ImportError: +except (ImportError,ValueError): message = """Please install the %s package to use the GTK+(known as 'gtk2' in reportbug) interface. Falling back to 'text' interface.""" dialog = Gtk.MessageDialog(None, Gtk.DialogFlags.MODAL | Gtk.DialogFlags.DESTROY_WITH_PARENT, Binary files /tmp/cOjLl1qlsz/reportbug-7.1.4/reportbug/ui/__pycache__/gtk2_ui.cpython-35.pyc and /tmp/vTwa7oxWbv/reportbug-7.1.5/reportbug/ui/__pycache__/gtk2_ui.cpython-35.pyc differ diff -Nru reportbug-7.1.4/reportbug/utils.py reportbug-7.1.5/reportbug/utils.py --- reportbug-7.1.4/reportbug/utils.py 2017-01-22 18:16:04.0 -0500 +++ reportbug-7.1.5/reportbug/utils.py 2017-02-12 12:07:18.0 -0500 @@ -496,7 +496,7 @@ def get_dpkg_database(): try: -fp = open(STATUSDB) +fp = open(STATUSDB, errors="backslashreplace") if fp: return AvailDB(fp=fp) except IOError: @@ -976,7 +976,7 @@ for filename in FILES: if os.path.exists(filename): try: -lex = our_lex(open(filename), posix=True) +
Bug#854970: unblock: ruby-uuidtools/2.1.5-2
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package ruby-uuidtools Upstream found clever to embed a library to ensure it would work on older Ruby version, but this is not necessary and causes conflict because ruby-signet's upstream had the same idea. Please find the debdiff: diff -Nru ruby-uuidtools-2.1.5/debian/changelog ruby-uuidtools-2.1.5/debian/changelog --- ruby-uuidtools-2.1.5/debian/changelog 2016-03-05 11:34:14.0 +0900 +++ ruby-uuidtools-2.1.5/debian/changelog 2017-02-08 06:14:56.0 +0900 @@ -1,3 +1,10 @@ +ruby-uuidtools (2.1.5-2) unstable; urgency=medium + + * Removed embedded compat library, useless and causing conflict +(Closes: #853887) + + -- Marc Dequènes (Duck)Wed, 08 Feb 2017 06:14:56 +0900 + ruby-uuidtools (2.1.5-1) unstable; urgency=medium * Team upload. diff -Nru ruby-uuidtools-2.1.5/debian/rules ruby-uuidtools-2.1.5/debian/rules --- ruby-uuidtools-2.1.5/debian/rules 2016-03-05 11:34:14.0 +0900 +++ ruby-uuidtools-2.1.5/debian/rules 2017-02-08 06:06:56.0 +0900 @@ -19,6 +19,12 @@ rdoc --all --inline-source --diagram --fileboxes --line-numbers --fmt=html \ -o build-doc/rdoc lib +# do not install compatibility libraries which are already included in +# recent Ruby anyway and only cause conflicts (see #853887) +override_dh_auto_install: + dh_auto_install + rm -rf debian/ruby-uuidtools/usr/lib/ruby/vendor_ruby/compat + override_dh_installdocs: dh_installdocs # use the system library unblock ruby-uuidtools/2.1.5-2 -- System Information: Debian Release: 9.0 APT prefers unstable APT policy: (500, 'unstable') Architecture: amd64 (x86_64) Kernel: Linux 4.9.0-1-amd64 (SMP w/4 CPU cores) Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8) Shell: /bin/sh linked to /bin/dash Init: systemd (via /run/systemd/system)
Bug#854968: unblock: ntfs-3g
Package: release.debian.org User: release.debian@packages.debian.org Usertags: unblock Hi Release Team, Please unblock ntfs-3g 2016.2.22AR.1-4 as it fixes CVE-2017-0358. The debdiff is attached for your convenience. Thanks, Laszlo/GCSdiff -Nru ntfs-3g-2016.2.22AR.1/debian/changelog ntfs-3g-2016.2.22AR.1/debian/changelog --- ntfs-3g-2016.2.22AR.1/debian/changelog 2016-04-21 18:48:50.0 + +++ ntfs-3g-2016.2.22AR.1/debian/changelog 2017-02-01 06:23:28.0 + @@ -1,3 +1,10 @@ +ntfs-3g (1:2016.2.22AR.1-4) unstable; urgency=high + + * Fix CVE-2017-0358: modprobe influence vulnerability via environment +variables. + + -- Laszlo Boszormenyi (GCS)Wed, 01 Feb 2017 06:23:28 + + ntfs-3g (1:2016.2.22AR.1-3) unstable; urgency=low * Really fix ELIBBAD errno on kFreeBSD (closes: #821838). diff -Nru ntfs-3g-2016.2.22AR.1/debian/patches/0003-CVE-2017-0358.patch ntfs-3g-2016.2.22AR.1/debian/patches/0003-CVE-2017-0358.patch --- ntfs-3g-2016.2.22AR.1/debian/patches/0003-CVE-2017-0358.patch 1970-01-01 00:00:00.0 + +++ ntfs-3g-2016.2.22AR.1/debian/patches/0003-CVE-2017-0358.patch 2017-02-01 06:23:28.0 + @@ -0,0 +1,36 @@ +--- ntfs-3g/src/lowntfs-3g.c.ref 2016-12-31 08:56:59.011749600 +0100 ntfs-3g/src/lowntfs-3g.c 2017-01-05 14:41:52.041473700 +0100 +@@ -4291,13 +4291,14 @@ + struct stat st; + pid_t pid; + const char *cmd = "/sbin/modprobe"; ++ char *env = (char*)NULL; + struct timespec req = { 0, 1 }; /* 100 msec */ + fuse_fstype fstype; + + if (!stat(cmd, ) && !geteuid()) { + pid = fork(); + if (!pid) { +- execl(cmd, cmd, "fuse", NULL); ++ execle(cmd, cmd, "fuse", NULL, ); + _exit(1); + } else if (pid != -1) + waitpid(pid, NULL, 0); +--- ntfs-3g/src/ntfs-3g.c.ref 2016-12-31 08:56:59.022518700 +0100 ntfs-3g/src/ntfs-3g.c 2017-01-05 15:45:45.912499400 +0100 +@@ -3885,13 +3885,14 @@ + struct stat st; + pid_t pid; + const char *cmd = "/sbin/modprobe"; ++ char *env = (char*)NULL; + struct timespec req = { 0, 1 }; /* 100 msec */ + fuse_fstype fstype; + + if (!stat(cmd, ) && !geteuid()) { + pid = fork(); + if (!pid) { +- execl(cmd, cmd, "fuse", NULL); ++ execle(cmd, cmd, "fuse", NULL, ); + _exit(1); + } else if (pid != -1) + waitpid(pid, NULL, 0); diff -Nru ntfs-3g-2016.2.22AR.1/debian/patches/series ntfs-3g-2016.2.22AR.1/debian/patches/series --- ntfs-3g-2016.2.22AR.1/debian/patches/series 2016-04-20 15:51:16.0 + +++ ntfs-3g-2016.2.22AR.1/debian/patches/series 2017-02-01 06:23:28.0 + @@ -1,2 +1,3 @@ 0001-link-with-gpg-error.patch 0002-kFreeBSD_ELIBBAD.patch +0003-CVE-2017-0358.patch
Bug#854953: unblock: dustmite/0~20170126.e95dff8-2
Package: release.debian.org User: release.debian@packages.debian.org Usertags: unblock Severity: minor Please unblock dustmite 0~20170126.e95dff8-2. This is a new package for testing which unfortunately didn't make the deadline due to being stuck in NEW for almost 2 months. It has no reverse-dependencies and does not interfere with any other package in Debian, so including it in the release is very save (it also has no known bugs affecting Debian at time). The main reason why I want this in Debian Stretch is to debug D compiler issues. Dustmite is an invaluable tool for finding minimal testcases for compiler bugs or to create minimal testcases for any other issues affecting D code. It's very useful for bug reporters to have this tool available if they find an issue in another D-based software in the Debian archive. So, having it directly available from the archive would help a lot with debugging these issues. Usually I would go with backports for something like this, but since it's very early in the freeze and the dustmite package does not affect any other software (only depends on gdc for building, even), I think asking for an unblock is justified. It is also worth noting that this package is not affected by RC issue #850958, which affects most D packages in Debian, since dustmite is built with the GDC compiler instead of LDC. (we are confident though to resolve that issue in-time for the release and have the remaining packages built on ppc64el and migrate) Kind regards, Matthias unblock dustmite/0~20170126.e95dff8-2
Bug#854674: closed by Ivo De Decker <iv...@debian.org> (Re: unblock: puppet/4.8.2-2)
Dear Release Team, On 23:12 Thu 09 Feb , Debian Bug Tracking System wrote: > This is an automatic notification regarding your Bug report > which was filed against the release.debian.org package: > > #854674: unblock: puppet/4.8.2-2 > > It has been closed by Ivo De Decker. Thank you for unblocking puppet. Since I also have a fix for #854680 pending, would it be possible to reduce the migration delay for 4.8.2-2? Regards, Apollon
Bug#854945: unblock: lprng/3.8.B-2.1
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package lprng. The NMU 3.8.B-2.1 fixes a bug where SSL support in the package was silently dropped since OpenSSL 1.1 (#854468), because the configure checks were looking for a deprecated library symbol, which is now a preprocessor macro. The change restores SSL support by looking for a different symbol. Regards, Reiner unblock lprng/3.8.B-2.1 diff -Nru lprng-3.8.B/debian/changelog lprng-3.8.B/debian/changelog --- lprng-3.8.B/debian/changelog2012-06-11 10:07:15.0 +0200 +++ lprng-3.8.B/debian/changelog2017-02-08 21:20:30.0 +0100 @@ -1,3 +1,11 @@ +lprng (3.8.B-2.1) unstable; urgency=medium + + * Non-maintainer upload. + * Don't lose authentication support when compiled with OpenSSL 1.1, patch by +Reiner Herrmann(Closes: #854468). + + -- Sebastian Andrzej Siewior Wed, 08 Feb 2017 21:20:30 +0100 + lprng (3.8.B-2) unstable; urgency=low * Compilies on hurd-i386 Closes: #671848 diff -Nru lprng-3.8.B/debian/patches/openssl_1.1.patch lprng-3.8.B/debian/patches/openssl_1.1.patch --- lprng-3.8.B/debian/patches/openssl_1.1.patch1970-01-01 01:00:00.0 +0100 +++ lprng-3.8.B/debian/patches/openssl_1.1.patch2017-02-08 21:19:17.0 +0100 @@ -0,0 +1,27 @@ +--- a/configure.ac b/configure.ac +@@ -1008,7 +1008,7 @@ + SSL_LDADD="-L$dir $SSL_LDADD" + fi + LDFLAGS="$LDFLAGS $SSL_LDADD" +- AC_TRY_LINK_FUNC(SSL_load_error_strings,ac_linked_libssl="true", ++ AC_TRY_LINK_FUNC(OPENSSL_init_ssl,ac_linked_libssl="true", + ac_linked_libssl="false"); + AC_TRY_LINK_FUNC(RC4_set_key,ac_linked_libcrypto="true", + ac_linked_libcrypto="false"); +--- a/configure b/configure +@@ -10408,11 +10408,11 @@ + #ifdef __cplusplus + extern "C" + #endif +-char SSL_load_error_strings (); ++char OPENSSL_init_ssl (); + int + main () + { +-return SSL_load_error_strings (); ++return OPENSSL_init_ssl (); + ; + return 0; + } diff -Nru lprng-3.8.B/debian/patches/series lprng-3.8.B/debian/patches/series --- lprng-3.8.B/debian/patches/series 2012-06-11 08:49:05.0 +0200 +++ lprng-3.8.B/debian/patches/series 2017-02-08 21:19:17.0 +0100 @@ -1,3 +1,4 @@ lpd_conf_manwarnings portable_maxpathlen string_literals +openssl_1.1.patch
Bug#854944: unblock: ftpcopy/0.6.7-3.1
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package ftpcopy. The 0.6.7-3.1 NMU contains a fix for an FTBFS bug (#854512), because dpkg-shlibdeps was called on a shell script, which is fatal in recent dpkg versions. Regards, Reiner unblock ftpcopy/0.6.7-3.1 diff -u ftpcopy-0.6.7/debian/changelog ftpcopy-0.6.7/debian/changelog --- ftpcopy-0.6.7/debian/changelog +++ ftpcopy-0.6.7/debian/changelog @@ -1,3 +1,11 @@ +ftpcopy (0.6.7-3.1) unstable; urgency=medium + + * Non-maintainer upload. + * Fix FTBFS by calling dpkg-shlibdeps only for binaries and not +the ftpcp shell script (Closes: #854512). + + -- Reiner HerrmannWed, 08 Feb 2017 18:57:50 +0100 + ftpcopy (0.6.7-3) unstable; urgency=medium * debian/diff/disable--html-option.diff: the --html option is no diff -u ftpcopy-0.6.7/debian/rules ftpcopy-0.6.7/debian/rules --- ftpcopy-0.6.7/debian/rules +++ ftpcopy-0.6.7/debian/rules @@ -69,7 +69,7 @@ install-indep: deb-checkdir deb-checkuid build-indep-stamp binary-arch: deb-checkdir deb-checkuid install-arch ftpcopy.deb - test '$(DIET)' -ne 0 || dpkg-shlibdeps '$(DIR)'/usr/bin/* + test '$(DIET)' -ne 0 || dpkg-shlibdeps '$(DIR)'/usr/bin/ftpcopy '$(DIR)'/usr/bin/ftpls dpkg-gencontrol -isp -pftpcopy -P'$(DIR)' dpkg -b '$(DIR)' ..
Processed: Re: Bug#854711: Unblocking package netkit-ftp-ssl, resolving #854460.
Processing commands for cont...@bugs.debian.org: > # please use reportbug next time > severity 854711 normal Bug #854711 {Done: Jonathan Wiltshire} [release.debian.org] unblock: netkit-ftp-ssl/0.17.34+0.2-4 Ignoring request to change severity of Bug 854711 to the same value. > user release.debian@packages.debian.org Setting user to release.debian@packages.debian.org (was po...@debian.org). > usertag 854711 unblock Usertags were: unblock. Usertags are now: unblock. > thanks Stopping processing here. Please contact me if you need assistance. -- 854711: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=854711 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems
Bug#854919: marked as done (unblock: rephrase/0.2-2)
Your message dated Sun, 12 Feb 2017 07:59:00 + with message-id <457797ab-5cdf-1080-f74e-90d6965a3...@thykier.net> and subject line Re: Bug#854919: unblock: rephrase/0.2-2 has caused the Debian Bug report #854919, regarding unblock: rephrase/0.2-2 to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what this message is talking about, this may indicate a serious mail system misconfiguration somewhere. Please contact ow...@bugs.debian.org immediately.) -- 854919: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=854919 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems --- Begin Message --- Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package rephrase. Some considerations: * The package was unusable. This revision fix the issue, doing an unconditional call to gpg with "--pinentry-mode loopback", allowing rephrase work with GPG2. It closes #853935, severity grave. * The package was already uploaded to Sid and it builds correctly on all applicable architectures. * There is a debdiff attached. * The debian/changelog says: rephrase (0.2-2) unstable; urgency=medium * Team upload. * debian/control: - Bumped Standards-Version to 3.9.8. - Updated the Vcs-Git field to use https instead of git. * debian/patches/02_minimal_gpg2_support.patch: added to unconditionally call gpg with "--pinentry-mode loopback", allowing rephrase work with GPG2. Thanks to Axel Beckert. (Closes: #853935) Thanks in advance. Regards, Eriberto diff -Nru rephrase-0.2/debian/changelog rephrase-0.2/debian/changelog --- rephrase-0.2/debian/changelog 2015-07-14 12:02:55.0 -0300 +++ rephrase-0.2/debian/changelog 2017-02-05 18:53:54.0 -0200 @@ -1,3 +1,15 @@ +rephrase (0.2-2) unstable; urgency=medium + + * Team upload. + * debian/control: + - Bumped Standards-Version to 3.9.8. + - Updated the Vcs-Git field to use https instead of git. + * debian/patches/02_minimal_gpg2_support.patch: added to unconditionally +call gpg with "--pinentry-mode loopback", allowing rephrase work with +GPG2. Thanks to Axel Beckert . (Closes: #853935) + + -- Joao Eriberto Mota Filho Sun, 05 Feb 2017 18:53:54 -0200 + rephrase (0.2-1) unstable; urgency=medium * Team upload. diff -Nru rephrase-0.2/debian/control rephrase-0.2/debian/control --- rephrase-0.2/debian/control 2015-07-13 17:57:52.0 -0300 +++ rephrase-0.2/debian/control 2017-02-05 18:53:54.0 -0200 @@ -4,10 +4,10 @@ Maintainer: Debian Forensics Uploaders: Tiago Bortoletto Vaz Build-Depends: debhelper (>= 9) -Standards-Version: 3.9.6 +Standards-Version: 3.9.8 Homepage: http://www.roguedaemon.net/rephrase/ Vcs-Browser: https://anonscm.debian.org/cgit/forensics/rephrase.git -Vcs-Git: git://anonscm.debian.org/forensics/rephrase.git +Vcs-Git: https://anonscm.debian.org/git/forensics/rephrase.git Package: rephrase Architecture: any diff -Nru rephrase-0.2/debian/patches/02_minimal_gpg2_support.patch rephrase-0.2/debian/patches/02_minimal_gpg2_support.patch --- rephrase-0.2/debian/patches/02_minimal_gpg2_support.patch 1969-12-31 21:00:00.0 -0300 +++ rephrase-0.2/debian/patches/02_minimal_gpg2_support.patch 2017-02-05 18:53:54.0 -0200 @@ -0,0 +1,25 @@ +Description: Make rephrase working with gpg2 +Author: Axel Beckert after an idea by Daniel Kahn Gillmor +Bug-Debian: https://bugs.debian.org/853935 +Last-Update: 2017-02-03 +Index: rephrase-0.2/rephrase.c +=== +--- rephrase-0.2.orig/rephrase.c rephrase-0.2/rephrase.c +@@ -63,14 +63,14 @@ struct profile { + struct profile profiles[] = { + { + "--gpg-key", +-{ GPG, "--default-key", "%1", "--passphrase-fd", "0", "--batch", "--no-tty", "--dry-run", "--clearsign", "/dev/null", NULL }, ++{ GPG, "--pinentry-mode", "loopback", "--default-key", "%1", "--passphrase-fd", "0", "--batch", "--no-tty", "--dry-run", "--clearsign", "/dev/null", NULL }, + 1, + 0, + -1 + }, + { + "--gpg-symmetric", +-{ GPG, "--passphrase-fd", "0", "--batch", "--no-tty", "--decrypt", "%1", NULL }, ++{ GPG, "--pinentry-mode", "loopback", "--passphrase-fd", "0", "--batch", "--no-tty", "--decrypt", "%1", NULL }, + 1, + 0, + -1 diff -Nru rephrase-0.2/debian/patches/series rephrase-0.2/debian/patches/series --- rephrase-0.2/debian/patches/series 2015-07-13 17:42:25.0 -0300 +++ rephrase-0.2/debian/patches/series
Bug#854910: marked as done (unblock: ffmpeg/7:3.2.4-1)
Your message dated Sun, 12 Feb 2017 07:57:00 + with message-idand subject line Re: Bug#854910: unblock: ffmpeg/7:3.2.4-1 has caused the Debian Bug report #854910, regarding unblock: ffmpeg/7:3.2.4-1 to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what this message is talking about, this may indicate a serious mail system misconfiguration somewhere. Please contact ow...@bugs.debian.org immediately.) -- 854910: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=854910 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems --- Begin Message --- Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Dear Release Team, The new FFmpeg upstream release contains bug fixes incuding fixes for security issues. I believe most non-security releated issues would deserve important severity, too. I would like to upload the new upstream release to unstable and ship it in Stretch, but I can also cherry-pick most fixes to the current package it this would be acceptable. Please share your opinion about the options. Cheers, Balint unblock ffmpeg/7:3.2.4-1 diff -Nru ffmpeg-3.2.2/Changelog ffmpeg-3.2.4/Changelog --- ffmpeg-3.2.2/Changelog 2016-12-06 00:28:58.0 +0100 +++ ffmpeg-3.2.4/Changelog 2017-02-10 14:25:37.0 +0100 @@ -1,6 +1,51 @@ Entries are sorted chronologically from oldest to youngest within each release, releases are sorted from youngest to oldest. +version 3.2.4: +- avcodec/h264_slice: Clear ref_counts on redundant slices +- lavf/mov.c: Avoid heap allocation wrap in mov_read_uuid +- lavf/mov.c: Avoid heap allocation wrap in mov_read_hdlr +- avcodec/pictordec: Fix logic error +- ffserver_config: Setup codecpar in add_codec() +- Changelog: fix typos + +version 3.2.3: +- avcodec/movtextdec: Fix decode_styl() cleanup +- lavf/matroskadec: fix is_keyframe for early Blocks +- configure: bump year +- avcodec/pngdec: Check trns more completely +- avcodec/interplayvideo: Move parameter change check up +- avcodec/dca_lbr: Fix off by 1 error in freq check +- avcodec/mjpegdec: Check for for the bitstream end in mjpeg_decode_scan_progressive_ac() +- pgssubdec: reset rle_data_len/rle_remaining_len on allocation error +- swscale: save ebx register when it is not available +- avformat/flacdec: Check avio_read result when reading flac block header. +- avcodec/utils: correct align value for interplay +- avcodec/vp56: Check for the bitstream end, pass error codes on +- avcodec/mjpegdec: Check remaining bitstream in ljpeg_decode_yuv_scan() +- avcodec/pngdec: Fix off by 1 size in decode_zbuf() +- libopenmpt: add missing avio_read return value check +- avcodec/bsf: Fix av_bsf_list_free() +- avcodec/omx: Do not pass negative value into av_malloc() +- avformat/avidec: skip odml master index chunks in avi_sync +- avcodec/mjpegdec: Check for rgb before flipping +- lavf/utils.c Protect against accessing entries[nb_entries] +- avutil/random_seed: Reduce the time needed on systems with very low precision clock() +- swscale/swscale: Fix dereference of stride array before null check +- avutil/random_seed: Improve get_generic_seed() with higher precision clock() +- avformat/mp3dec: fix msan warning when verifying mpa header +- avformat/utils: Print verbose error message if stream count exceeds max_streams +- avformat/options_table: Set the default maximum number of streams to 1000 +- lavf/chromaprint: Update for version 1.4 +- avutil: Add av_image_check_size2() +- avformat: Add max_streams option +- avcodec/ffv1enc: Allocate smaller packet if the worst case size cannot be allocated +- avcodec/mpeg4videodec: Fix undefined shifts in mpeg4_decode_sprite_trajectory() +- avformat/oggdec: Skip streams in duration correction that did not had their duration set. +- avcodec/ffv1enc: Fix size of first slice +- ffplay: fix sws_scale possible out of bounds array access +- avfilter/vf_hwupload_cuda: Add min/max limits for the 'device' option + version 3.2.2: - ffserver: Check chunk size - Avoid using the term "file" and prefer "url" in some docs and comments diff -Nru ffmpeg-3.2.2/configure ffmpeg-3.2.4/configure --- ffmpeg-3.2.2/configure 2016-12-06 00:28:58.0 +0100 +++ ffmpeg-3.2.4/configure 2017-02-10 14:25:25.0 +0100 @@ -6703,7 +6703,7 @@ #define FFMPEG_CONFIG_H #define FFMPEG_CONFIGURATION "$(c_escape $FFMPEG_CONFIGURATION)" #define FFMPEG_LICENSE "$(c_escape $license)" -#define CONFIG_THIS_YEAR 2016 +#define CONFIG_THIS_YEAR 2017 #define FFMPEG_DATADIR "$(eval c_escape $datadir)" #define AVCONV_DATADIR "$(eval c_escape $datadir)" #define CC_IDENT "$(c_escape ${cc_ident:-Unknown compiler})" diff -Nru ffmpeg-3.2.2/debian/changelog ffmpeg-3.2.4/debian/changelog ---