Bug#881067: Debian mirror ftp.uni-sofia.bg: out of date

2017-11-07 Thread Alexander Velin
On 2017-11-07 16:47, Peter Palfrader wrote: According to https://mirror-master.debian.org/status/mirror-info/ftp.uni-sofia.bg.html your mirror is out of date by about a week. Please investigate. Thanks for the notification. It seems, that due to the upgrade of the distribution on the

Bug#880739: ERROR: PhantomJS executable not found in PATH, download it from http://phantomjs.org

2017-11-07 Thread Rogério Brito
Dear Mathieu. On Nov 04 2017, Mathieu Malaterre wrote: > Package: youtube-dl > Version: 2017.10.15.1-1 > Tags: patch Your message didn't contain any patch. Anyway, it is so trivial that I uploaded another package with the recommends in place. > It would be super nice to add a Recommends:

Bug#881145: sox: null pointer dereference while running play

2017-11-07 Thread Joonun Jang
Package: sox Version: 14.4.1-5+b2 Severity: normal Tags: security null pointer dereference while running play with "poc bass +3" option Running 'play poc bass +3' with the attached file raises null pointer dereference which may allow a remote attack to cause a denial-of-service attack I

Bug#881144: fig2dev: out of bound read while running fig2dev with -L pic option

2017-11-07 Thread Joonun Jang
Package: fig2dev Version: 1:3.2.6a-4 Severity: important Tags: security out of bound read while running fig2dev with -L pic option Running 'fig2dev -L pic poc' with the attached file raises out of bound read bug which may allow a remote attack to cause a denial-of-service attack or information

Bug#880691: ruby-yajl: diff for NMU version 1.2.0-3.1

2017-11-07 Thread Salvatore Bonaccorso
Control: tags 880691 + patch Control: tags 880691 + pending Dear maintainer, I've prepared an NMU for ruby-yajl (versioned as 1.2.0-3.1) and uploaded it to DELAYED/5. Please feel free to tell me if I should delay it longer. Regards, Salvatore diff -Nru ruby-yajl-1.2.0/debian/changelog

Bug#881143: fig2dev: out of bound read while running fig2dev with -L tikz

2017-11-07 Thread Joonun Jang
Package: fig2dev Version: 1:3.2.6a-4 Severity: important Tags: security out of bound read while running fig2dev with -L tikz option Running 'fig2dev -L tikz poc' with the attached file raises out of bound read bug which may allow a remote attack to cause a denial-of-service attack or

Bug#881142: ruby-yajl: uses embedded copy of yajl

2017-11-07 Thread Salvatore Bonaccorso
Source: ruby-yajl Severity: normal Hi ruby-yajl embedds a copy of yajl, which is packaged for Debian. src:yajl is packaged in Debian. It might need first investigation, but if possible please consider switching to the system library for ruby-yajl instead of the embeeded copy. Regards,

Bug#881141: gifsicle: out of bound read while running gifsicle

2017-11-07 Thread Joonun Jang
Package: gifsicle Version: 1.90-1 Severity: important Tags: security out of bound read while running gifsicle with "gifsicle --dither --use-col=bw poc -o output" option Running 'gifsicle --dither --use-col=bw poc -o output' with the attached file raises out of bound read which may allow a

Bug#881140: ruby-yajl: New upstream version available

2017-11-07 Thread Salvatore Bonaccorso
Source: ruby-yajl Severity: wishlist Hi There is a new upstream version (1.3.1) ruby-yajl available. Can you package it for unstable? Regards, Salvatore

Bug#881139: ffmpeg2theora: heap buffer overflow while running ffmpeg2theora

2017-11-07 Thread Joonun Jang
Package: ffmpeg2theora Version: 0.30-1+b2 Severity: important Tags: security heap buffer overflow running ffmpeg2theora with "poc" option Running 'ffmpeg2theora poc' with the attached file raises null pointer dereference which may allow a remote attacker to cause unspecified impact including

Bug#881138: ffmpeg2theora: use uninitialized stack value as a pointer while running ffmpeg2theora

2017-11-07 Thread Joonun Jang
Package: ffmpeg2theora Version: 0.30-1+b2 Severity: important Tags: security use uninitialized stack value as a pointer while running ffmpeg2theora with "poc" option Running 'ffmpeg2theora poc' with the attached file uses uninitialized stack value as a pointer which may allow a remote attacker

Bug#881066: [#QMM-573-27544]: Bug#881066: Debian mirror debian.ipserverone.com: out of date

2017-11-07 Thread IP SERVERONE - Support
Hi Peter, We are sorry for the incident, have just manually run the sync, could you please check if the mirror is up-to-date now? Thanks -- Mak Kuen Seng Support Team Lead IP SERVERONE SOLUTIONS SDN BHD A-1-1, Block A, Glomac Damansara Jalan Damansara, 6 Kuala Lumpur Tel: 603 2026 1688

Bug#881137: xul-ext-https-everywhere: Please update xul-ext-https-everywhere to version 2017.10.30 by next pu

2017-11-07 Thread Julien Aubin
Package: xul-ext-https-everywhere Version: 5.2.8-1 Severity: grave Justification: renders package unusable Hi, Firefox release 59 is coming quite soon to Debian, actually next March for the ones using mozilla.debian.net. By this time current https-everywhere extension won't work anymore as it

Bug#881135: xul-ext-ublock-origin: Update ublock-origin to version 1.14.16 by next p-u

2017-11-07 Thread Julien Aubin
Package: xul-ext-ublock-origin Version: 1.10.4+dfsg-1 Severity: grave Justification: renders package unusable Hi, Firefox release 59 is coming quite soon to Debian, actually next March for the ones using mozilla.debian.net. By this time current ublock-origin extension won't work anymore as it

Bug#881136: ITP: ocaml-rope -- Ropes ("heavyweight strings") for OCaml

2017-11-07 Thread Andy Li
Package: wnpp Severity: wishlist Owner: Andy Li -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 * Package name: ocaml-rope Version : 0.5 Upstream Author : Christophe Troestler * URL :

Bug#881133: x264: out of bound read while running x264

2017-11-07 Thread Joonun Jang
Package: x264 Version: 2:0.148.2795+gitaaa9aa8-1 Severity: important Tags: security out of bound read while running x264 with "--crf 24 -o output.264 poc" option Running 'x264 --crf 24 -o output.264 poc' with the attached file raises out of bound read which may allow a remote attack to cause a

Bug#881134: RFS: runescape/0.2-2 [QA] -- Multiplayer online game set in a fantasy world

2017-11-07 Thread Carlos Donizete Froes
Package: sponsorship-requests Severity: normal Dear mentors, I am looking for a sponsor for my package "runescape" * Package name: runescape Version : 0.2-2 Upstream Author : Carlos Donizete Froes * URL :

Bug#881132: bs1770gain: stack buffer overflow while running bs1770gain

2017-11-07 Thread Joonun Jang
Package: bs1770gain Version: 0.4.12-2 Severity: important Tags: security stack buffer overflow while running bs1770gain with "poc -o output" option Running 'bs1770gain poc -o output' with the attached file raises stack buffer overflow which may allow a remote attack to cause a denial-of-service

Bug#881131: bs1770gain: divide by zero while running bs1770gain

2017-11-07 Thread Joonun Jang
Package: bs1770gain Version: 0.4.12-2 Severity: normal Tags: security divide by zero while running bs1770gain with "poc -o output" option Running 'bs1770gain poc -o output' with the attached file raises divide by zero exception which may allow a remote attack to cause a denial-of-service

Bug#881130: vorbis-tools: use uninitialized local value as a pointer running oggenc

2017-11-07 Thread Joonun Jang
Package: vorbis-tools Version: 1.4.0-10+b1 Severity: important Tags: security bad free while running oggenc with "poc -o output" option Running 'oggenc poc -o output' with the attached file raises bad free(use uninitalized local value as a pointer) which may allow a remote attacker to cause

Bug#881129: icewm-themes obsolete package left on disk

2017-11-07 Thread 積丹尼 Dan Jacobson
Package: icewm-experimental Version: 1.4.3.0~pre-20171017-1 Severity: minor I found icewm-themes obsolete package. icewm-themes: Installed: 1.2.26-2 Candidate: 1.2.26-2 Version table: *** 1.2.26-2 100 100 /var/lib/dpkg/status Shouldn't it have been removed automatically? Can I

Bug#881128: texlive-publishers: revtex4/docs.sty is not part of revtex

2017-11-07 Thread Jerome Benoit
Package: texlive-publishers Version: 2016.20170123-5 Severity: normal Dear Maintainer, it appears that revtex4/docs.sty is systemwidely distributed in /usr/share/texlive/texmf-dist/tex/latex/revtex4 , namely as part of REVTeX4 : as claimed in its header, docs.sty is only meant to compose the

Bug#878270: anthy (EUCJP->UTF-8) and *-anthy packages

2017-11-07 Thread dai
On Tue, Nov 07, 2017 at 11:44:45PM +0900, Osamu Aoki wrote: > Are *-anthy packages uploaded to cope with this new anthy just like > ibus-anthy? > fcitx-anthy > hime-anthy > scim-anthy > uim-anthy They are rebuild with new anthy (libanthy1).

Bug#711469: [Pkg-openldap-devel] Bug#711469: Can we have libslapi-dev back please:

2017-11-07 Thread Ryan Tandy
On Tue, Nov 07, 2017 at 03:07:04PM +0100, Florian Schlichting wrote: Control: tags 711469 + patch Hi, thank you for pinging the bug, and for the patch. I intend to make an upload in the coming weeks and I will definitely evaluate this addition. Do you have a convenient test case that I could

Bug#861796: Make Chromium run natively on Wayland

2017-11-07 Thread Michael Gilbert
As of chromium 62 passing enable_wayland_server=true to gn fails with an error related to ash. For anyone interested in getting this working, you could try debugging that error. Best wishes, Mike

Bug#879886: [Debian-med-packaging] Bug#879886: libhts2: libhts2 needs to handle ABI changes

2017-11-07 Thread Charles Plessy
Hi Diane and everybody, Le Tue, Nov 07, 2017 at 05:09:34PM -0800, Diane Trout a écrit : > > I do think we should bring back the symbols file I think so too. Symbols file are strange to work with because their update usually goes through a build failure that outputs a patch, which is not very

Bug#881127: transition: xerces-c

2017-11-07 Thread William Blough
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: transition Control: block -1 by 881026 881023 881108 881016 881018 881112 881114 881115 Control: block 873669 by -1 Hi, I would like to transition xerces-c from 3.1 to 3.2 (currently in

Bug#881126: mirror submission for debian.vancouver.fullhost.com

2017-11-07 Thread FullHost
Package: mirrors Severity: wishlist User: mirr...@packages.debian.org Usertags: mirror-submission Submission-Type: new Site: debian.vancouver.fullhost.com Type: leaf Archive-architecture: amd64 i386 Archive-http: /debian/ Maintainer: FullHost Country: CA Canada Location:

Bug#880573: chromium: Chromium built-in PDF visor prints garbage

2017-11-07 Thread Michael Gilbert
control: forwarded -1 http://crbug.com/777837 The latest upstream versions introduced a lot of printing problems. They should all be fixed in chromium 63. Please retest once that version is released. Best wishes, Mike

Bug#881125: arp-scan: Segmentation fault at link-packet-socket.c:127

2017-11-07 Thread Nelson A. de Oliveira
Package: arp-scan Version: 1.9-2 Severity: important Hi! While calling a simple "arp-scan" with an unprivileged user it segfaults. gdb output with arp-scan-dbgsym and "thread apply all bt full" is attached. Thank you! Best regards, Nelson -- System Information: Debian Release: buster/sid

Bug#881124: shadow.ind.ntou.edu.tw: request name change, and add as candidate of ftp.tw

2017-11-07 Thread 魏銘廷
Package: mirrors Severity: wishlist Dear Maintainer, I would like to change the name of the server shadow.ind.ntou.edu.tw to ftp.ntou.edu.tw, also set up as a ftp.tw.d.o candidate if possible. Due to recent removal of linux3.cc.ntu.edu.tw mirror server, ftp.tw.d.o is redirected to Hong Kong.

Bug#881123: ffmpeg2theora: null pointer dereference while running ffmpeg2theora

2017-11-07 Thread Joonun Jang
Package: ffmpeg2theora Version: 0.30-1+b2 Severity: normal Tags: security null pointer dereference while running ffmpeg2theora with "poc" option Running 'ffmpeg2theora poc' with the attached file raises null pointer dereference which may allow a remote attack to cause a denial-of-service attack

Bug#881122: ffmpeg2theora: null pointer dereference while running ffmpeg2theora

2017-11-07 Thread Joonun Jang
Package: ffmpeg2theora Version: 0.30-1+b2 Severity: normal Tags: security null pointer dereference while running ffmpeg2theora with "poc" option Running 'ffmpeg2theora poc' with the attached file raises null pointer dereference which may allow a remote attack to cause a denial-of-service attack

Bug#881121: sox: null pointer dereference while running sox

2017-11-07 Thread Joonun Jang
Package: sox Version: 14.4.1-5+b2 Severity: normal Tags: security null pointer dereference while running sox with "poc.aiff output.aiff speed 1.027" option Running 'sox poc.aiff output.aiff speed 1.027' with the attached file raises null pointer dereference which may allow a remote attack to

Bug#880992: debian-policy should not recommend running editor using absolute path

2017-11-07 Thread Sean Whitton
Hello Jonathan, On Mon, Nov 06 2017, Jonathan Nieder wrote: > Thus, every program that launches an editor or pager must use > the EDITOR or PAGER environment variable to determine the editor > or pager the user wishes to use. If these variables are not set, > the programs

Bug#881120: gifsicle: use after free while running gifsicle

2017-11-07 Thread Joonun Jang
Package: gifsicle Version: 1.90-1 Severity: important Tags: security use after free while running gifsicle with "poc poc -o output" option Running 'gifsicle poc poc -o output' with the attached file raises use after free which may allow a remote attack to cause a denial-of-service attack or

Bug#881119: gifsicle: double free while running gifsicle

2017-11-07 Thread Joonun Jang
Package: gifsicle Version: 1.90-1 Severity: important Tags: security double free while running 'gifsicle with --delay 50 poc poc -o output' option Running 'gifsicle --delay 50 poc poc -o output' with the attached file raises double free which may allow a remote attacker to cause a

Bug#881118: RFS: boost-numeric-bindings/0.99-1 [ITP] -- Numeric Library Bindings for Boost

2017-11-07 Thread Stephen Sinclair
Package: sponsorship-requests Severity: wishlist Dear mentors, I am looking for a sponsor for my package "boost-numeric-bindings": * Package name: boost-numeric-bindings Version : 0.99 Upstream Author : Kresimir Fresl et. al. * URL :

Bug#879886: [Debian-med-packaging] libhts2: libhts2 needs to handle ABI changes

2017-11-07 Thread Diane Trout
Hi everyone, I talked some with upstream about the symbols issues with htslib2 https://github.com/samtools/htslib/issues/616 They think that cram/*.h are private headers, but because we have a policy of avoiding convenience copies we made those functions public[1] because a few applications

Bug#880709: zfsutils-linux 0.7.3 has an unlisted dependency on libuutil1linux >= 0.7.3

2017-11-07 Thread Nathaniel W Filardo
It appears that libzpool2linux is also an unlisted dependency. Merely having libuutil1linux installed was enough to clear the error of this bug but left "/sbin/zfs: symbol lookup error: /lib/libzfs.so.2: undefined symbol: SHA2Update" behind until libzpool2linux got added to the system. Cheers,

Bug#881051: dpkg: Fails to build packages in non-ascii directories

2017-11-07 Thread James Clarke
Control: tags -1 patch On Tue, Nov 07, 2017 at 01:58:23PM +0100, Samuel Thibault wrote: > Package: dpkg > Version: 1.19.0.4 > Severity: normal > > Hello, > > $ locale charmap > UTF-8 > $ mkdir testé > $ cd testé > $ apt-get source hello > $ cd hello-* > $ dpkg-buildpackage -b > > fails with > >

Bug#876211:

2017-11-07 Thread Yangfl
Literally you and me can't do anything to help packages get through new queue. The new queue is widely known as seriously backlogged [ https://ftp-master.debian.org/stat.html]. We (another team) also suffer from this. But, you can try emailing ftp masters about this. Maybe they'll process our

Bug#871542: Chromium 60 UI is huge on HiDPI displays

2017-11-07 Thread Leandro Doctors
Hi, all, The problem seems to be solved using the latest version from unstable (62.0.3202.89-1). Could someone please confirm this? Best, Leandro

Bug#804638: kde-plasma-desktop: "The window switcher installation is broken"

2017-11-07 Thread Marcus Hansson
Package: kde-plasma-desktop Version: 5:92 Followup-For: Bug #804638 Hello! This is present for me as well. Also: ii kwin-addons 4:5.8.5-2 -- System Information: Debian Release: 9.2 APT prefers proposed-updates APT policy: (500, 'proposed-updates'), (500, 'stable') Architecture: amd64

Bug#439121: Add a .pc file for libapt-pkt

2017-11-07 Thread Corentin Noël
Ah, you're right, so here is finally the right one 2017-11-07 23:44 GMT+01:00 Julian Andres Klode : > On Tue, Nov 07, 2017 at 11:20:50PM +0100, Corentin Noël wrote: > > Here is a patch working with current master, It's now fully working. It > > contains a test to ensure that it

Bug#877670: [Debian-med-packaging] Bug#877670: Bug#877670: bcftools FTBFS on armel armhf and ppc64el

2017-11-07 Thread Graham Inggs
Control: reassign -1 htslib 1.4-1 Control: tags -1 + patch Control: affects -1 bcftools It seems this code appeared in htslib 1.4, but was only tested in bcftools 1.5. Description: Fix calculation of PLs on ARM and POWER Bug: https://github.com/samtools/bcftools/issues/702 Bug-Debian:

Bug#439121: Add a .pc file for libapt-pkt

2017-11-07 Thread Julian Andres Klode
On Tue, Nov 07, 2017 at 11:20:50PM +0100, Corentin Noël wrote: > Here is a patch working with current master, It's now fully working. It > contains a test to ensure that it works, I tested it with autopkgtest. > From 44fa7251911378bb0ca16a23024b7f7ede5a8f84 Mon Sep 17 00:00:00 2001 > From:

Bug#881117: Printing a pdf with non-ascii title with evince fails

2017-11-07 Thread Brian Oney
Package: hplip Version: 3.16.11+repack0-3 Package: evince Version: 3.22.1-3+deb9u1 Dear Debian Developers, I can't print a pdf with a title that has a non-ascii character (possibly) with evince. It looks like evince's handling of the pdf (ps conversion?) seems to cause it. qpdfviewer works

Bug#880604: mirror listing update for debian.utalca.cl

2017-11-07 Thread Fabio Duran Verdugo
As recommendation I update the upstream mirror from debian.netlinux.cl to mirrors.sfo.kernel.org. Now the repository is synchronized and you can check in this link https ://mirror-master.debian.org/status/mirror-info/debian.utalca.cl.html -- Fabio Durán Verdugo Escuela de Ingeniería Civil en

Bug#881061: python-lz4 FTBFS on big endian: FAIL: test_get_frame_info (test_frame.TestLZ4Frame)

2017-11-07 Thread Thomas Goirand
Hi James, I tried to build on zelenka.debian.org, which is a s390 porter box (big endian), and it failed even more. Cheers, Thomas Goirand (zigo)

Bug#881116: Call trace at debian stretch

2017-11-07 Thread paulo bruck
Package: linux-image-4.9.0-4-amd64 Version: 4.9.51-1 Severity: critical Justification: breaks the whole system Dear Mainteners Actually I am using kernel from jessie because if I try to use kernel from strech it hangs at boot with this message bellow. Let me know if I could help witn more

Bug#439121: Add a .pc file for libapt-pkt

2017-11-07 Thread Corentin Noël
Here is a patch working with current master, It's now fully working. It contains a test to ensure that it works, I tested it with autopkgtest. From 44fa7251911378bb0ca16a23024b7f7ede5a8f84 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Corentin=20No=C3=ABl?= Date: Tue, 7 Nov

Bug#857730: Need to support DPKG_ROOT

2017-11-07 Thread Bastien ROUCARIES
On Thu, Nov 2, 2017 at 6:27 PM, Thomas Liske wrote: > > tags 857730 upstream > severity 857730 wishlist > thanks > > > Hi Bastien, > > > Bastien ROUCARIES writes: > severity: important >>> >>> Using severity important for anything DPKG_ROOT

Bug#880982: ifup does not trigger scripts any more after booting

2017-11-07 Thread Guus Sliepen
On Tue, Nov 07, 2017 at 09:55:17PM +0100, Narcis Garcia wrote: > Thanks Guus for the suggestion about netplug as alternative. > Network interface's configurtaion (IP) is already done when hotplugging > the cable. > > What is not working on same event is the run-parts of scripts in >

Bug#881115: libkolabxml: Transition to xerces-c 3.2

2017-11-07 Thread William Blough
Source: libkolabxml Severity: important User: de...@blough.us Usertags: xerces-c3.2-transition Control: block -1 by 881108 This bug is for transition tracking purposes. xerces-c will be transitioning from 3.1 to 3.2 soon. However, libkolabxml depends on src:xsd which does not currently work

Bug#881114: freecontact: Transition to xerces-c 3.2

2017-11-07 Thread William Blough
Source: freecontact Severity: important User: de...@blough.us Usertags: xerces-c3.2-transition Control: block -1 by 881108 This bug is for transition tracking purposes. xerces-c will be transitioning from 3.1 to 3.2 soon. However, freecontact depends on src:xsd which does not currently work

Bug#881112: camitk: Transition to xerces-c 3.2

2017-11-07 Thread William Blough
Source: camitk Severity: important User: de...@blough.us Usertags: xerces-c3.2-transition Control: block -1 by 881108 This bug is for transition tracking purposes. xerces-c will be transitioning from 3.1 to 3.2 soon. However, camitk depends on src:xsd which does not currently work with

Bug#881113: mailman3-core: Package should suggest lynx

2017-11-07 Thread Philip Frei
Package: mailman3-core Version: 3.1.0-1 Severity: minor Dear Maintainer, Mailman uses lynx to convert html to plain text messages. Maybe it's a good idea to add lynx to the package suggestions. -- System Information: Debian Release: 9.1 APT prefers stable APT policy: (500, 'stable')

Bug#880234: Re%3A nibabel%3A FTBFS%3A Test failures

2017-11-07 Thread Yaroslav Halchenko
Thanks for checking it out! I will issue an updated package shortly Cheers and thnks again On Tue, 07 Nov 2017, Thiago Franco de Moraes wrote: > Hi > I cloned the git repo from nibabel and did some tests. I saw the HEAD of > upstream doesn't have this problem. The difference from the HEAD to

Bug#881111: python3-netaddr: unicode vs bytes issue between Python 2.x and 3.x when reading and writing IEEE data files

2017-11-07 Thread MoaMoaK
Package: python3-netaddr Version: 0.7.18-2 Severity: normal Dear Maintainer, When requesting OUI information on some MAC address with Python 3.x ( EUI("70:5A:B6:B8:64:8C").oui ), the package seems to fail on unicode vs bytes decoding if the MAC has been used before with Python 2.x The issue

Bug#877562: libqb FTCBFS: uses uncached AC_RUN_IFELSE

2017-11-07 Thread Ferenc Wágner
Control: forwarded -1 https://github.com/ClusterLabs/libqb/pull/269 "Manuel A. Fernandez Montecelo" writes: > If upstream Hurd people were so sure about it I'd strongly consider to > follow their advice. That's the plan. Unfortunately, the POSIX interface defers

Bug#881110: cacti: CVE-2017-16641: arbitrary execution of os commands via path_rrdtool parameter in an action=save request

2017-11-07 Thread Salvatore Bonaccorso
Source: cacti Version: 1.1.27+ds1-2 Severity: grave Tags: patch security upstream Forwarded: https://github.com/Cacti/cacti/issues/1057 Hi, the following vulnerability was published for cacti. CVE-2017-16641[0]: | lib/rrd.php in Cacti 1.1.27 allows remote authenticated administrators | to

Bug#881109: ITP: boost-numeric-bindings -- boost-numeric-bindings -- Numeric Library Bindings for Boost

2017-11-07 Thread Stephen Sinclair
Package: wnpp Severity: wishlist Owner: Stephen Sinclair * Package name: boost-numeric-bindings Version : 0.99 Upstream Author : Kresimir Fresl et. al. * URL : https://github.com/uBLAS/numeric_bindings * License : Boost Software License -

Bug#812721: gbp could filter out Files-Excluded: entries when committing to the pristine-tar branch

2017-11-07 Thread Michael Stapelberg
Thanks for your reply. Answers inline: On Mon, Nov 6, 2017 at 8:59 AM, Guido Günther wrote: > Hi, > On Tue, Oct 31, 2017 at 05:24:05PM +0100, Michael Stapelberg wrote: >> Hi Guido, >> >> The pkg-go team is currently discussing changes to its workflow, and >> we’d be interested

Bug#866343: extlinux: Files in /etc/kernel/ not removed during upgrade

2017-11-07 Thread Lukas Schwaighofer
Hi again, I just checked the contents of the /etc/kernel/post{inst,rm}.d/zz-extlinux files which are identical: #!/bin/sh set -e # Exit if extlinux was removed (!= purged) if [ -x /usr/sbin/extlinux-update ] then # Update

Bug#880982: ifup does not trigger scripts any more after booting

2017-11-07 Thread Narcis Garcia
Thanks Guus for the suggestion about netplug as alternative. Network interface's configurtaion (IP) is already done when hotplugging the cable. What is not working on same event is the run-parts of scripts in /etc/network/if-up.d (as non-Systemd Debian versions did) and maybe other directories as:

Bug#881097: libnet-ping-external-perl: long-standing command injection via crafted arguments

2017-11-07 Thread Salvatore Bonaccorso
Control: retitle -1 libnet-ping-external-perl: CVE-2008-7319: command injection via crafted arguments This issue got assigned CVE-2008-7319. I have filled #881102 for requesting the removal from unstable. For stretch and jessie I think the best course would be to have it removed as well in the

Bug#878722: bts reassign 878722 partman-auto

2017-11-07 Thread Michael Kesper
Dear Cyril, On 07.11.2017 08:12, Cyril Brulebois wrote: > Michael Kesper (2017-11-06): >> I think this bug is specific to partman-auto. >> Partman should allow rescanning devices and recognize NVMe devices when >> preconfigured with /dev/sda. >> Alternatively, there

Bug#880996: ring: FTBFS on mips64el

2017-11-07 Thread James Cowgill
Hi, On 06/11/17 19:48, Sebastian Ramacher wrote: > Source: ring > Version: 20170912.1.912f772~dfsg1-2 > Severity: serious > Tags: sid buster > Control: block 880355 by -1 > > ring FTBFS on mips64el during the libva transition: [...] > | ../src/.libs/libring.a(libringacc_la-ringaccount.o): In

Bug#866343: extlinux: Files in /etc/kernel/ not removed during upgrade

2017-11-07 Thread Lukas Schwaighofer
On Tue, 7 Nov 2017 21:48:04 +0100 Lukas Schwaighofer wrote: > 0. The syslinux installer is part of the syslinux binary package That should have been: 0. The syslinux installer is part of the *extlinux* binary package

Bug#879856: okular(25652)/kdecore (KConfigSkeleton) KCoreConfigSkeleton::writeConfig:

2017-11-07 Thread Sandro Knauß
Contro: tags -1 +moreinfo Hey, it is a upstream bug. So please report this bug upstream (htps://bugs.kde.org) and send the bug number to this bugreport. If you have any further questions, feel free to ask them here. Best Regards, sandro -- On Donnerstag, 26. Oktober 2017 16:46:15 CEST Nomen

Bug#866343: extlinux: Files in /etc/kernel/ not removed during upgrade

2017-11-07 Thread Lukas Schwaighofer
Hi Laurent, thanks for reporting this problem. Leftover files in /etc/kernel/*.d are bad… I made a bit of research and found out the following, all of which happened during the jessie release cycle: 0. The syslinux installer is part of the syslinux binary package 1. Version 3:6.03~pre1+dfsg-2:

Bug#878203: apparmor logs /proc//cmdline denials on vm shutdown

2017-11-07 Thread Gabriel Filion
Hello, I can still see this in the apparmor file included in libvirt-daemon-system 3.9.0-1 FWIW according to this ubuntu bug they've added a line to the profile to permit access: https://bugs.launchpad.net/ubuntu/+source/libvirt/+bug/1693115 signature.asc Description: OpenPGP digital

Bug#867671: libratbag-tools: removal of libratbag-tools/sid makes files disappear from liblur3/testing

2017-11-07 Thread Andreas Beckmann
On 07/08/2017 03:35 PM, Stephen Kitt wrote: > As I understand Policy in this case, I’m not convinced this is a violation. > lur-command.1.gz should never have been in liblur3; it should always have > been in libratbag-tools. I moved the file from liblur3 to libratbag-tools, and > added the

Bug#881106: flam3: Update to flam3 v3.1.1

2017-11-07 Thread linus . luessing
Package: flam3 Severity: wishlist Hi, Qosmic[0] seems to require flam3 v3.1.1. Would it be possible to update the flam3 package? Regards, Linus [0]: https://github.com/bitsed/qosmic -- System Information: Debian Release: buster/sid APT prefers unstable-debug APT policy: (500,

Bug#881105: golang-github-nebulouslabs-fastrand build depends on the obsolete golang-1.8-go

2017-11-07 Thread Adrian Bunk
Source: golang-github-nebulouslabs-fastrand Version: 0.0~git20170420.0.5a1a312-1 Severity: serious golang-github-nebulouslabs-fastrand build depends on the obsolete golang-1.8-go.

Bug#881107: gb (build) depends on the obsolete golang-1.8-go

2017-11-07 Thread Adrian Bunk
Source: gb Version: 0.4.4-1 Severity: serious gb depends and build depends on the obsolete golang-1.8-go.

Bug#881104: RM: libhdcd -- ROM; unused library

2017-11-07 Thread Sebastian Ramacher
Package: ftp.debian.org Severity: normal Please remove libhdcd from the archive. Initially ffmpeg was supposed to use it, but integrated the code in a different way. So libhdcd is not used and can be removed from the archive. Cheers -- Sebastian Ramacher signature.asc Description: PGP

Bug#881103: openresolv: bump version to 3.9.0 so it works with systemd

2017-11-07 Thread Roy Marples
Package: openresolv Version: 3.8.0-1 Severity: important Dear Maintainer, Please consider bumping openresolv to 3.9.0 so it works with systemd, which is the Debian default init now. The current version fails to restart services, rendering it pretty useless. Thanks Roy -- System Information:

Bug#880889: zfs-linux: zvol not in /dev after upgrade to 0.7.3-1

2017-11-07 Thread Moritz "LittleFox" Grosch
Hi again, sorry for the false bug report. This problem came from some packages at 0.6.5 and some at 0.7.3. Since there are already other bugs asking for fixed versions (#881013, #880709), this bug can be closed. Best regards, Moritz "LittleFox" Grosch

Bug#880587: [Pkg-tigervnc-devel] Bug#880587: xrandr -o left/right crashes the X server if libvnc.so loaded

2017-11-07 Thread Ola Lundqvist
Hi Thank you for the report. // Ola On 2 November 2017 at 16:13, Pierre Dinh-van wrote: > Package: tigervnc-xorg-extension > Version: 1.7.0+dfsg-7 > Severity: normal > Tags: upstream > > Dear Maintainer, > > I set up libvnc.so from tigervnc-xorg-extension for my stretch >

Bug#881102: RM: libnet-ping-external-perl -- RoQA; unmaintained upstream, contains security issue for several years unadressed

2017-11-07 Thread Salvatore Bonaccorso
Package: ftp.debian.org Severity: normal Hi As prompted by http://www.openwall.com/lists/oss-security/2017/11/07/4 and has been reported to the BTS as #881097: libnet-ping-external-perl is basically unmaintained upstream and has a command injection vulnerability reported upstream without having

Bug#881101: eyed3 FTBFS with LC_ALL=C

2017-11-07 Thread Adrian Bunk
Source: eyed3 Version: 0.8.3-1 Severity: serious https://tests.reproducible-builds.org/debian/rb-pkg/unstable/amd64/eyed3.html ... dh clean --with python2,python3 --buildsystem=pybuild dh_auto_clean -O--buildsystem=pybuild I: pybuild base:184: python2.7 setup.py clean running clean removing

Bug#881100: libnss-winbind is not multiarch safe

2017-11-07 Thread Matthew Gabeler-Lee
Package: libnss-winbind Version: 2:4.5.12+dfsg-2 Severity: normal Background: I use libnss-winbind, and a mulitiarch amd64/i386 system because I need to run some third party i386 binaries. At least one of those binaries needs to be able to do nss lookups for some basic account information.

Bug#881099: libatk-adaptor: breaks LibreOffice TexMaths extension

2017-11-07 Thread Paul Gevers
Package: libatk-adaptor Version: 2.22.0-2 Severity: normal -BEGIN PGP SIGNED MESSAGE- Hash: SHA256 This bug is a forward of Ubuntu bug 1641284¹, that was reported to also exist in Debian Strech. I have not verified myself, but the report seemed carefully written. = If the package

Bug#877168: transition: ldc

2017-11-07 Thread Gianfranco Costamagna
On Tue, 7 Nov 2017 02:02:30 +0100 Matthias Klumpp wrote: > Hi! > > 2017-10-04 13:36 GMT+02:00 Matthias Klumpp : > > 2017-10-04 9:39 GMT+02:00 Emilio Pozuelo Monfort : > >> [...] > > Thank you! > > Both issues are reported upstream: > > ppc64el:

Bug#843926: jemalloc hard codes page size during build

2017-11-07 Thread Faidon Liambotis
On Tue, Nov 07, 2017 at 05:07:42PM +, James Cowgill wrote: > Ah nevermind - I see it FTBFS in experimental on lots of arches. Yeah, I've fixed some in git already and been working with upstream on a lot of those (upstream #761, #979, #985, #999). They've been extremely collaborative (and even

Bug#814459: pxelinux: doesn't use gPXE/iPXE anymore to load files

2017-11-07 Thread Lukas Schwaighofer
Hi Christian, thanks for reporting this problem. I've only recently taken over maintenance of syslinux/pxelinux in the Debian CD Group. Sorry you had to wait more than a year for a response… We recently uploaded a pre-release of syslinux 6.04 to Debian experimental. Amongst other things the

Bug#877562: libqb FTCBFS: uses uncached AC_RUN_IFELSE

2017-11-07 Thread Manuel A. Fernandez Montecelo
Hi, 2017-10-12 10:07 Ferenc Wágner: Helmut Grohne writes: On Wed, Oct 11, 2017 at 03:24:50PM +0200, Ferenc Wágner wrote: #hurd confirmed that this is a Hurd bug in glibc, and promised a fix it in the next upload. So I guess an unconditional check for

Bug#881015: Massive memory leak in ksmserver

2017-11-07 Thread Julien Aubin
Hi, No I don't. However I saw today a Skype update which could be related to the issue. Cannot recall exactly whether the issue came with Skype update or with 9.2 release. I'll keep you updated with this issue. 2017-11-07 19:22 GMT+01:00 Lisandro Damián Nicanor Pérez Meyer <

Bug#881015: Massive memory leak in ksmserver

2017-11-07 Thread Lisandro Damián Nicanor Pérez Meyer
Hi! Do you have the wallpaper images changing from time to time? Because there is an upstream bug for that and it could not be solved so far (to the best of my knowledge).

Bug#828522: qt4-x11: FTBFS with openssl 1.1.0

2017-11-07 Thread Lisandro Damián Nicanor Pérez Meyer
Hi Dmitry! On 13 October 2017 at 21:43, Dmitry Eremin-Solenikov wrote: > Source: qt4-x11 > Version: 4:4.8.7+dfsg-11 > Followup-For: Bug #828522 > > Hello, > > Please try adding the attached patch, which should fix the rest of > incompatibilities between qt4-x11 and OpenSSL

Bug#880234: Re%3A nibabel%3A FTBFS%3A Test failures

2017-11-07 Thread Thiago Franco de Moraes
Hi I cloned the git repo from nibabel and did some tests. I saw the HEAD of upstream doesn't have this problem. The difference from the HEAD to the 2.1.0 version in the file with the error is diff I've attached in this email. Applying this diff fix this problem. I think you can send this patch

Bug#862522: cuda 9.0 RC available

2017-11-07 Thread Andreas Beckmann
On 09/26/2017 11:31 AM, Lumin wrote: > CUDA 9.0.176 is available. > https://developer.nvidia.com/cuda-downloads > I didn't download it. The nvidia-cuda-toolkit packaging has now been moved to GIT :-) We may have to see how to develop an efficient workflow there. There is also a 9.0 branch. It

Bug#881098: moreutils: pee should have an unbuffered or line-buffered mode

2017-11-07 Thread Matthew Gabeler-Lee
Package: moreutils Version: 0.60-1 Severity: wishlist Using pee to work with something generating output but also going through more processing before heading to a logfile gets icky, because pee always has the pipes it uses to talk to the child processes buffered. e.g. output-generating-thing |

Bug#879637: Ping?

2017-11-07 Thread Lisandro Damián Nicanor Pérez Meyer
Hi! Would it be possible at least to ignore the tests on mips64el for the time being? This has been stopping the Qt transition for too long already. Thanks! -- 1: Una computadora sirve: * Para tratar de dominar el mundo, un caso conocido de esto fue el de Skinet Damian Nadales

Bug#881097: libnet-ping-external-perl: long-standing command injection via crafted arguments

2017-11-07 Thread Simon McVittie
Package: libnet-ping-external-perl Version: 0.13-1 Severity: grave Tags: security patch upstream Justification: user security hole Forwarded: https://rt.cpan.org/Public/Bug/Display.html?id=33230 See forwarded message below. The reporter's proposed patch is also attached. The proposed patch seems

Bug#767414: RFP: 2048 -- Simple number game for the text console

2017-11-07 Thread Nicolas Boulenguez
Hello. Here are some comments about the current packaging. Hope this helps… As upstream contributor, you should merge your changes into the original project at https://github.com/mevdschee. Your fork misses README.md, latest bug fixes, and the original project would probably welcome a manpage and

Bug#879673: ffmpeg 3.4 API compat layer not 100% backwards compatible

2017-11-07 Thread James Cowgill
Control: affects -1 src:kodi src:gst-libav1.0 Control: tags -1 patch Hi, On 24/10/17 09:52, Sebastian Dröge wrote: > Package: ffmpeg > Version: 7:3.4-1 > Severity: serious > > Hi, > > ffmpeg 3.4 comes with a new decoding API (among other things), and > provides a compatibility layer around

Bug#878674: [Pkg-javascript-devel] Bug#878674: Bug#878674: Bug#878674: Bug#878674: Bug#878674: Bug#878674: nodejs segfaults when building d3-* with webpack

2017-11-07 Thread Jérémy Lal
2017-10-25 16:04 GMT+02:00 Pirate Praveen : > On ബുധന്‍ 25 ഒക്ടോബര്‍ 2017 07:08 വൈകു, Pirate Praveen wrote: > > I can reach the segfaulting point faster by setting break point at > > thread creation > > > > b pthread_create.c:333 > > > > after 8 c, I reach the segfault point.

  1   2   3   >