Bug#1014732: logrotate: daily mail “error: state file /var/lib/logrotate/status is world-readable and thus…”

2022-07-10 Thread Brad Barnett
Can confirm this bug here, and an updated patch fixes this. See: https://bugzilla.redhat.com/show_bug.cgi?id=2090926 And: https://github.com/logrotate/logrotate/commit/31cf1099ab8514dfcae5a980bc77352edd5292f8 Suggest at the very least, this is updated in Debian for the next point release.

Bug#967933: marked as pending in ant

2022-07-10 Thread tony mancill
Hello Stefan, On Mon, Jul 11, 2022 at 02:29:52AM +0200, Stefan Tauner wrote: > On Mon, 11 Jul 2022 00:06:35 + > Tony Mancill wrote: > > > Control: tag -1 pending > > > > Hello, > > > > Bug #967933 in ant reported by you has been fixed in the > > Git repository and is awaiting an upload.

Bug#1014741: libgd-perl: GD and GD2 image formats are disabled in libgd3 package

2022-07-10 Thread Guyang Mao
Package: libgd-perl Version: 2.76-2+b1 Severity: grave Justification: renders package unusable Graph.pm contains code that specifies file formats "gd" and "gd2" which are currently disabled in Debian's libgd3 package (these are actually obsolete formats, apparently, and only used in testing

Bug#981731: Multi-threaded bullet

2022-07-10 Thread Dima Kogan
Markus Koschany writes: > I have no strong preferences here. I would rebuild all > reverse-dependencies with the multi-threaded version and see if that > works. If this is successful, we could just drop single threaded > support and re-use the existing binary packages (just bumping the > SONAME

Bug#965921: zemberek-server: diff for NMU version 0.7.1-12.4

2022-07-10 Thread Joao Eriberto Mota Filho
Control: tags 965921 + patch Control: tags 965921 + pending Dear maintainer, I've prepared an NMU for zemberek-server (versioned as 0.7.1-12.4) and uploaded it to DELAYED/2. Please feel free to tell me if Ishould delay it longer. Regards, Eriberto diff -u

Bug#1014648: digikam: Unable to display .heic correctly

2022-07-10 Thread Steven Robbins
On Saturday, July 9, 2022 8:26:21 A.M. CDT Christian Marillat wrote: > Package: digikam > Version: 4:7.7.0-1 > Severity: normal > > Dear Maintainer, > > Since the last version .heic files aren't > displayed correctly. See attached screen capture. I agree that does look odd. Can you share the

Bug#1014740: pdb-tools: mangled manual pages: errors, duplicate text

2022-07-10 Thread Paul Wise
Package: pdb-tools Version: 2.5.0-1 Severity: normal Usertags: doc The manual pages appear to be a bit mangled.  * They have errors about options the programs don't expect.  * They have lots of duplicate paragraphs of text. These are probably caused by incorrect help2man invocation. $ zgrep

Bug#1014739: node-parse5-*: missing Breaks+Replaces: node-jsdom (<< 20.0.0+repack1~)

2022-07-10 Thread Andreas Beckmann
Source: node-parse5 Version: 7.0.0+dfsg-4 Severity: serious User: debian...@lists.debian.org Usertags: piuparts Hi, during a test with piuparts I noticed your package fails to upgrade from 'testing'. It installed fine in 'testing', then the upgrade to 'sid' fails because it tries to overwrite

Bug#1014738: coreutils: du --exclude 4x slower when given a trivial string than with an equivalent glob?

2022-07-10 Thread наб
Package: coreutils Version: 8.32-4+b1 Severity: normal Dear Maintainer, Consider the following: -- >8 -- nabijaczleweli@tarta:~/code/voreutils$ time du asdfg > /dev/null real0m0.118s user0m0.024s sys 0m0.093s nabijaczleweli@tarta:~/code/voreutils$ time du asdfg --exclude dupa >

Bug#1014737: node-react: missing Breaks+Replaces: node-react (<< 18)

2022-07-10 Thread Andreas Beckmann
Source: node-react Version: 18.1.0~18.2.0+dfsg+~cs87.31.26-1 Severity: serious User: debian...@lists.debian.org Usertags: piuparts Hi, during a test with piuparts I noticed your package fails to upgrade from 'sid' to 'experimental'. It installed fine in 'sid', then the upgrade to 'experimental'

Bug#988120: Patch for broken cache-entry deserialization

2022-07-10 Thread Mike Paul
Tags: patch I've also observed this problem, that Jigdo ignores the cache and re- scans all the files every time. I did some debugging and tracked it down to a one-line mistake that's easy to fix: diff --git a/src/scan.cc b/src/scan.cc index 9ce598e..b031680 100644 --- a/src/scan.cc +++

Bug#1014736: python3-hug,python3-hug-doc: both ship /usr/share/man/man1/hug.1.gz

2022-07-10 Thread Andreas Beckmann
Package: python3-hug,python3-hug-doc Version: 2.6.0-2.3 Severity: serious User: debian...@lists.debian.org Usertags: piuparts Hi, during a test with piuparts I noticed your package failed to install because it tries to overwrite other packages files. >From the attached log (scroll to the

Bug#992313: hexedit: please add non-superficial autopkgtest

2022-07-10 Thread Eriberto
Em dom., 10 de jul. de 2022 às 22:11, Paul Wise escreveu: > > On Sun, 2022-07-10 at 20:51 -0300, Eriberto wrote: > > > What do you think about this change? > > The approach seems reasonable. I'm not sure that xterm is the correct > TERM value to use since pipetty is just a psuedo-terminal. OTOH

Bug#992313: hexedit: please add non-superficial autopkgtest

2022-07-10 Thread Paul Wise
On Sun, 2022-07-10 at 20:51 -0300, Eriberto wrote: > What do you think about this change? The approach seems reasonable. I'm not sure that xterm is the correct TERM value to use since pipetty is just a psuedo-terminal. OTOH you likely need to test that hexedit works with any terminal type, so

Bug#967933: marked as pending in ant

2022-07-10 Thread Stefan Tauner
On Mon, 11 Jul 2022 00:06:35 + Tony Mancill wrote: > Control: tag -1 pending > > Hello, > > Bug #967933 in ant reported by you has been fixed in the > Git repository and is awaiting an upload. You can see the commit > message below and you can check the diff of the fix at: > >

Bug#794799: libwxgtk3.0-0: assertion failure with gnuplot5

2022-07-10 Thread Vincent Lefevre
On 2022-07-11 11:51:26 +1200, Olly Betts wrote: > This bug was originally opened in 2015 (so just under 7 years ago now) > and the reporter "[hadn't] managed to reproduce it since a long time" > in 2019 (nearly 3 years ago). We've not had reports of this from anyone > else either in that time.

Bug#1014734: RM: yosys [s390x] -- ROM; Not in maintainer's arch list

2022-07-10 Thread Steffen Moeller
Package: ftp.debian.org Severity: normal X-Debbugs-Cc: moel...@debian.org Not in arch list and can hence not be tested, which blocks the transition of that package as seen on https://tracker.debian.org/pkg/yosys

Bug#992313: hexedit: please add non-superficial autopkgtest

2022-07-10 Thread Eriberto
Hi Pabs, Sorry for the long time to react. Em qui., 6 de jan. de 2022 às 03:07, Paul Wise escreveu: > > Control: tags -1 - moreinfo > > On Fri, 2021-10-29 at 23:08 -0300, Eriberto Mota wrote: > > > To: 992...@bugs.debian.org > > Please CC submitters when you have questions/comments they

Bug#1014733: dh-make: 'p' option - FileExistsError: [Errno 17] File exists: 'source'

2022-07-10 Thread Joao Eriberto Mota Filho
Package: dh-make Version: 2.202201 Severity: important X-Debbugs-Cc: eribe...@debian.org Dear Maintainer, Considering the question: --- Type of package: (single, indep, library, python) [s/i/l/p]? --- if a user chooses 'p', the dh_make command exits with the following error: --- Traceback

Bug#1014449: ITP: sarif-python-om -- Python classes for the SARIF object model

2022-07-10 Thread Guilherme de Paula Xavier Segundo
This package is a dependency of the cfn-lint package.

Bug#992491: Package acpi-call-dkms 1.1.0-6 believes that acpi is disabled on 5.10 kernel

2022-07-10 Thread Andreas Beckmann
Control: tag -1 patch On Thu, 19 Aug 2021 11:51:48 +0200 (CEST) p...@tutanota.de wrote: The message comes from config file of the package (/usr/src/acpi-call-1.1.0/dkms.conf): # Don't build module when ACPI is disabled if ! grep -q "^CONFIG_ACPI=[ym]$" "$kernel_source_dir/.config" 2>/dev/null

Bug#981731: Multi-threaded bullet

2022-07-10 Thread Markus Koschany
Hi Dima, Am Sonntag, dem 10.07.2022 um 14:35 -0700 schrieb Dima Kogan: > Hi. I'm updating the Debian package to the latest upstream version now. > And I can do the multi-threaded builds. > > Which of these do we want? All of them? > > Also, is there a good reason to build both multi- and

Bug#1014732: logrotate: daily mail “error: state file /var/lib/logrotate/status is world-readable and thus…”

2022-07-10 Thread Thorsten Glaser
Package: logrotate Version: 3.18.0-2+deb11u1 Severity: important X-Debbugs-Cc: t...@mirbsd.de, t...@security.debian.org I got a new version of logrotate on multiple systems due to the security/point release, and since then I get, every night, from all of them, this: │Subject: Anacron job

Bug#1014731: php error after upgrading from 2.6.5-5 -> 2.6.6-1

2022-07-10 Thread Ivan Sergio Borgonovo
Package: php-horde-mail Version: 2.6.6-1 After upgrading I get Return value of Horde_Mail_Rfc822_List::current() must be an instance of mixed, instance of Horde_Mail_Rfc822_Address returned downgrading solves the problem. May I also ask why php-horde-turba is stuck in unstable? thanks --

Bug#1014730: liburi-perl: Breaks apt-cacher with "Can't locate Regexp/IPv6.pm" error

2022-07-10 Thread Robert Luberda
Package: liburi-perl Version: 5.11-1 Severity: serious Justification: Policy 7.2 Control: affects -1 apt-cacher After recent upgrade I've noticed that apt-cached does no longer work: Err:2 http://apt-testing.vox:3142/apt-cacher/debian bookworm InRelease 502 apt-cacher internal

Bug#998862: Please, depend on php-predis instead of php-nrk-predis

2022-07-10 Thread David Prévot
Hi Mike, Le 10/07/2022 à 21:48, Mike Gabriel a écrit : On  Di 09 Nov 2021 03:22:09 CET, David Prévot wrote: […] Please, make php-horde-hashtable depend on php-predis instead of php-nrk-predis, and use directly the package from /usr/share/php/Predis/ (you may use the static

Bug#1014729: glibc 2.34 breaks wcc autopkgtest on amd64: open: Invalid argument

2022-07-10 Thread Michael Hudson-Doyle
It looks like a no-change rebuild fixed this in Ubuntu fwiw. On Mon, 11 Jul 2022 at 09:54, Aurelien Jarno wrote: > Source: glibc, wcc > Control: found -1 glibc/2.34-0experimental4 > Control: found -1 wcc/0.0.2+dfsg-4.1 > Severity: important > Tags: experimental > > Dear maintainers, > > The

Bug#1014729: glibc 2.34 breaks wcc autopkgtest on amd64: open: Invalid argument

2022-07-10 Thread Aurelien Jarno
Source: glibc, wcc Control: found -1 glibc/2.34-0experimental4 Control: found -1 wcc/0.0.2+dfsg-4.1 Severity: important Tags: experimental Dear maintainers, The autopkgtest of wcc fails in sid on amd64 when that autopkgtest is run with the binary packages of glibc from experimental. It passes

Bug#1014728: networking-mlnx: homepage outdated

2022-07-10 Thread Santiago Ruano Rincón
Source: networking-mlnx Version: 1:9.0.0~b1-1 Severity: minor Hi there, It seems this homepage URL is outdated: https://salsa.debian.org/openstack-team/neutron-plugins/networking-mlnx/-/blob/8e3d7902984905776cbbbfd5db9e41886f242f5e/debian/control#L54 https://github.com/openstack/networking-mlnx

Bug#981731: Multi-threaded bullet

2022-07-10 Thread Dima Kogan
Hi. I'm updating the Debian package to the latest upstream version now. And I can do the multi-threaded builds. We have the following options: BULLET2_MULTITHREADING: Build Bullet 2 libraries with mutex locking around certain operations (required for multi-threading)

Bug#1014727: materialize: CVE-2022-25349

2022-07-10 Thread Moritz Mühlenhoff
Source: materialize X-Debbugs-CC: t...@security.debian.org Severity: normal Tags: security Hi, The following vulnerability was published for materialize. CVE-2022-25349[0]: | All versions of package materialize-css are vulnerable to Cross-site | Scripting (XSS) due to improper escape of user

Bug#1014726: Please package new upstream

2022-07-10 Thread julien . puydt
Package: libatd-ocaml-dev Version: 2.4.1-1 Severity: wishlist I need ocaml-atd version 2.9.1 to update the elpi package. For this, I need a more recent jsonschema which we should get only in september. This report is to leave a trail of this information. Cheers, J.Puydt

Bug#1014725: Please package newer upstream 4.6.0

2022-07-10 Thread julien . puydt
Package: python3-jsonschema Version: 3.2.0-5 Severity: wishlist I would need an updated python-jsonschema to update ocaml-atd in the Debian OCaml Team ; there's a 4.6.0-1 in experimental already, and after asking around, it will hit unstable only in september. This report is to keep track of

Bug#1014724: FBTFS: test failure in t/connection.t

2022-07-10 Thread gregor herrmann
Control: notfound -1 3.001-2 Control: found -1 3.009-1 On Sun, 10 Jul 2022 23:15:16 +0200, Axel Beckert wrote: > gregor herrmann wrote: > > Source: libmojo-sqlite-perl > > Version: 3.001-2 > That's the version in oldstable. Are you sure you wanted to report > this bug report against that version

Bug#1014724: FBTFS: test failure in t/connection.t

2022-07-10 Thread Axel Beckert
Hi gregor, gregor herrmann wrote: > Source: libmojo-sqlite-perl > Version: 3.001-2 That's the version in oldstable. Are you sure you wanted to report this bug report against that version instead of the version 3.009-1 in unstable? > Use of uninitialized value in string eq at >

Bug#949346: libnet: example Makefile includes build paths and binary paths

2022-07-10 Thread Vagrant Cascadian
On 2021-01-01, Vagrant Cascadian wrote: > On 2020-01-19, Vagrant Cascadian wrote: >> I'd suggest simply removing the Makefile, as it is not functional, or >> alternately, sanitizing with the attached patch to debian/rules. > > Patch attached which removes the Makefile instead, which should fix

Bug#1014724: FBTFS: test failure in t/connection.t

2022-07-10 Thread gregor herrmann
Source: libmojo-sqlite-perl Version: 3.001-2 Severity: serious Tags: upstream ftbfs Justification: fails to build from source -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 As seen on ci.debian.net, libmojo-sqlite-perl recently fails the t/connection.t test: Use of uninitialized value in

Bug#1000922: reopen

2022-07-10 Thread Sylvestre Ledru
Could you please try with 12? Thanks S Le 10/07/2022 à 16:57, M. Zhou a écrit : Control: reopen -1 Control: found -1 0.38.1-3 Simply upgrading llvm deps from 11 to 13 leads to regression for numba. I'm reverting this change back until the upstream source code can really support a newer

Bug#1014723: rpm: CVE-2021-3521

2022-07-10 Thread Moritz Mühlenhoff
Source: rpm X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerability was published for rpm. CVE-2021-3521[0]: https://github.com/rpm-software-management/rpm/pull/1788

Bug#1014720: FTBFS: test failure in t/update_mirror.t

2022-07-10 Thread gregor herrmann
On Sun, 10 Jul 2022 22:15:09 +0200, gregor herrmann wrote: > unable to contact the remote mirror at t/update_mirror.t line 35. > # Looks like your test exited with 111 just after 1. > t/update_mirror.t .. > 1..8 > CPANServer: You can connect to your server at http://localhost:45571/ > ok 1 -

Bug#1014719: FTBFS: test failures in t/FormatExternal.t

2022-07-10 Thread gregor herrmann
On Sun, 10 Jul 2022 22:15:04 +0200, gregor herrmann wrote: > As also seen by the autopkgtests on ci.debian.net, > this package has recently started to fail its tests, which also > causes a build failure: According to https://rt.cpan.org/Public/Bug/Display.html?id=143689 this might be caused by

Bug#1014722: ansible: CVE-2021-3532

2022-07-10 Thread Moritz Mühlenhoff
Source: ansible X-Debbugs-CC: t...@security.debian.org Severity: normal Tags: security Hi, The following vulnerability was published for ansible. CVE-2021-3532[0]: | A flaw was found in Ansible where the secret information present in | async_files are getting disclosed when the user changes the

Bug#1014721: ansible: CVE-2021-3447

2022-07-10 Thread Moritz Mühlenhoff
Source: ansible X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerability was published for ansible. CVE-2021-3447[0]: | A flaw was found in several ansible modules, where parameters | containing credentials, such as secrets, were being logged in

Bug#1004436: ikiwiki-hosting-web should depend only on known-working C compilers

2022-07-10 Thread Adrian Bunk
On Sun, Jul 10, 2022 at 06:03:13PM +0100, Simon McVittie wrote: >... > On Thu, 27 Jan 2022 at 19:07:34 +0200, Adrian Bunk wrote: > > There is no defined semantics what "c-compiler" actually provides, > > e.g. 'cc' might or might not be provided. > > If a package providing c-compiler isn't

Bug#1014720: FTBFS: test failure in t/update_mirror.t

2022-07-10 Thread gregor herrmann
Source: libcpan-mini-inject-perl Version: 0.33-2 Severity: serious Tags: ftbfs Justification: fails to build from source -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 As also seen by the autopkgtests on ci.debian.net, this package has recently started to fail its tests, which also causes a

Bug#1014719: FTBFS: test failures in t/FormatExternal.t

2022-07-10 Thread gregor herrmann
Source: libhtml-formatexternal-perl Version: 26-2 Severity: serious Tags: ftbfs Justification: fails to build from source -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 As also seen by the autopkgtests on ci.debian.net, this package has recently started to fail its tests, which also causes a

Bug#1014597: libitext5-java: new version 5.5.13.3 addresses CVE-2021-43113

2022-07-10 Thread Thomas Uhle
On Sun, 10 Jul 2022, tony mancill wrote: Hello Thomas, On Fri, Jul 08, 2022 at 04:00:20PM +0200, Thomas Uhle wrote: > [...] > Could you please also pay attention to my other bug ticket #983715 and > consider to package itext-xtra along with the other jar files, at least for > bookworm. I will

Bug#1014186: blueman: leaves stray "Connected" and "Disconnected" popup windows

2022-07-10 Thread Celejar
On Wed, 6 Jul 2022 23:44:21 +0200 Christopher Schramm wrote: > > Shouldn't > > there be some sort of "Okay" button, or some window decoration that > > allows them to be closed? > > Yes, window decorations are expected if those are the fallback windows. > They are GTK MessageDialogs which by

Bug#1014718: ITP: aardvark-dns -- A container-focused DNS server

2022-07-10 Thread Reinhard Tartler
Package: wnpp Owner: Reinhard Tartler Severity: wishlist * Package name: aardvark-dns Version : 1.0.3 Upstream Author : Redhat's Container team * URL or Web page : github.com/containers/aardvark-dns * License : Apache 2.0 Description : A container-focused DNS server

Bug#1014717: ruby-sinatra: CVE-2022-29970

2022-07-10 Thread Moritz Mühlenhoff
Source: ruby-sinatra X-Debbugs-CC: t...@security.debian.org Severity: grave Tags: security Hi, The following vulnerability was published for ruby-sinatra. CVE-2022-29970[0]: | Sinatra before 2.2.0 does not validate that the expanded path matches | public_dir when serving static files.

Bug#1014716: ignition: CVE-2022-1706

2022-07-10 Thread Moritz Mühlenhoff
Source: ignition X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerability was published for ignition. CVE-2022-1706[0]: | A vulnerability was found in Ignition where ignition configs are | accessible from unprivileged containers in VMs running on

Bug#1014715: dnsmasq: CVE-2022-0934

2022-07-10 Thread Moritz Mühlenhoff
Source: dnsmasq X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerability was published for dnsmasq. CVE-2022-0934[0]: https://lists.thekelleys.org.uk/pipermail/dnsmasq-discuss/2022q1/016272.html

Bug#926276: Should guacamole-client be removed?

2022-07-10 Thread Moritz Mühlenhoff
Am Mon, Mar 08, 2021 at 09:05:22AM + schrieb Mike Gabriel: > Hi Salvatore, > > On Sa 06 Mär 2021 20:31:46 CET, Salvatore Bonaccorso wrote: > > > Hi, > > > > On Wed, Apr 03, 2019 at 12:27:25PM +, Mike Gabriel wrote: > > > Hi Moritz, > > > > > > On Di 02 Apr 2019 22:04:34 CEST, Moritz

Bug#1014597: libitext5-java: new version 5.5.13.3 addresses CVE-2021-43113

2022-07-10 Thread tony mancill
Hello Thomas, On Fri, Jul 08, 2022 at 04:00:20PM +0200, Thomas Uhle wrote: > Package: libitext5-java > Version: 5.5.13.2-1 > Severity: serious > Tags: security upstream > X-Debbugs-Cc: t...@security.debian.org > Control: found -1 5.5.13-1 > > Dear maintainers, > > there is a new bugfix release

Bug#1014295: libwx-perl-processstream-perl: FTBFS with Perl 5.36: build hangs

2022-07-10 Thread Niko Tyni
Control: reassign -1 libwx-perl 1:0.9932-6 Control: retitle -1 libxwx-perl: Wx::InputStream::READLINE returns non-string value Control: tag -1 patch Control: affects -1 libwx-perl-processstream-perl (Full quote for context, see below for discussion.) On Sun, Jul 03, 2022 at 05:29:36PM +0300,

Bug#1014714: nim: CVE-2021-41259

2022-07-10 Thread Moritz Mühlenhoff
Source: nim X-Debbugs-CC: t...@security.debian.org Severity: normal Tags: security Hi, The following vulnerability was published for nim. CVE-2021-41259[0]: | Nim is a systems programming language with a focus on efficiency, | expressiveness, and elegance. In affected versions the uri.parseUri

Bug#1014713: libsndfile: CVE-2021-4156

2022-07-10 Thread Moritz Mühlenhoff
Source: libsndfile X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerability was published for libsndfile. CVE-2021-4156[0]: | An out-of-bounds read flaw was found in libsndfile's FLAC codec | functionality. An attacker who is able to submit a

Bug#1014712: isa-support: Cannot be build/generated from fresh git repo

2022-07-10 Thread Gioele Barabucci
Package: src:isa-support Version: 6 Dear isa-support maintainer, the package's build script fails when run from a fresh git repo. To reproduce: $ cd /tmp && git clone https://salsa.debian.org/debian/isa-support $ cd isa-support/ $ ./build sse2: not on arch list, skipping. Building sse3...

Bug#1014711: libstb: CVE-2019-20056

2022-07-10 Thread Moritz Mühlenhoff
Source: libstb X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerability was published for libstb. CVE-2019-20056[0]: | stb_image.h (aka the stb image loader) 2.23, as used in libsixel and | other products, has an assertion failure in

Bug#1014710: gegl: CVE-2018-10111 CVE-2018-10112

2022-07-10 Thread Moritz Mühlenhoff
Source: gegl X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerabilities were published for gegl. CVE-2018-10111[0]: | An issue was discovered in GEGL through 0.3.32. The render_rectangle | function in process/gegl-processor.c has unbounded memory

Bug#1014709: jakarta-jmeter: CVE-2018-1287 CVE-2019-0187

2022-07-10 Thread Moritz Mühlenhoff
Source: jakarta-jmeter X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerabilities were published for jakarta-jmeter. CVE-2018-1287[0]: | In Apache JMeter 2.X and 3.X, when using Distributed Test only (RMI | based), jmeter server binds RMI

Bug#1014708: please package DejaGnu 1.6.3

2022-07-10 Thread John Scott
Source: dejagnu Version: 1.6.2-1 Severity: wishlist Hi, DejaGnu 1.6.3 includes baseboards/riscv-sim.exp, the configuration for the RISC V simulator. This version of DejaGnu will be necessary to run the GCC test suite for gcc-riscv32-elf. -- System Information: Debian Release: bookworm/sid  

Bug#1004436: ikiwiki-hosting-web should depend only on known-working C compilers

2022-07-10 Thread Simon McVittie
Control: clone -1 -2 -3 Control: retitle -2 bcc: provides c-compiler while not providing cc alternative Control: retitle -3 pcc: provides c-compiler while not providing cc alternative Control: reassign -2 bcc 0.16.17-3.3 Control: reassign -3 pcc 1.2.0~DEVEL+20200630-2 On Thu, 27 Jan 2022 at

Bug#1003045: LibreOffice Calc won't open

2022-07-10 Thread Rene Engelhard
Hi, I just saw in your attachement that you use stable. No big deal per se but: Versions of packages libreoffice-calc depends on: pn coinor-libcoinmp1v5 ii libc62.31-13+deb11u3 pn libetonyek-0.1-1 ii libgcc-s110.2.1-6 ii libicu67

Bug#1003045: LibreOffice Calc won't open

2022-07-10 Thread Rene Engelhard
Hi, Am 10.07.22 um 03:39 schrieb Brian Chase: > it would be helpful if you didn't send an empty email with an attachement of the reportbug stuff instead of just sending a proper email.. Anyways, citing from the attachement... >   * What led up to the situation? >  > tried to launch

Bug#1014705: bullseye-pu: package xtables-addons/3.13-1

2022-07-10 Thread Jeremy Sowden
Package: release.debian.org Severity: normal Tags: bullseye User: release.debian@packages.debian.org Usertags: pu The related xtables-addons bug is: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1014680 [ Reason ] xtables-addons-dkms and xtables-addons-source contain sources for

Bug#1012741: modprobe: ERROR: could not insert 'crc_itu_t': Key was rejected by service

2022-07-10 Thread Ansgar
On Tue, 05 Jul 2022 17:44:14 -0500 Matthias Maier wrote: > I think this is an issue with the Hardware token and not with the > userland libraries and tools. I too tried with a YubiKey 5 (Firmware 5.4.3). The signature was fine with those. So it looks indeed likely that this is a firmware bug

Bug#1014511: sysvinit: debian/copyright reports incorrect licenses

2022-07-10 Thread Mark Hindley
Thanks both. Please find attached a new d/copyright file together with the diff. I have tried to take your comments into account and make the file more complete and consistent without introducing a level of specificity which may not be warranted. Any comments? Thanks. Mark Format:

Bug#1014680: Patch

2022-07-10 Thread Jeremy Sowden
Here's the patch I propose to add to the package. I've filed a bug report with the stable release managers to explain the situation and ask them to accept an update. J. Last-Update: 2022-07-10 Forwarded: not-needed Author: Jeremy Sowden Bug-Debian: https://bugs.debian.org/1014680 Description:

Bug#1014183: golang-github-openshift-imagebuilder FTBFS due to unlisted dependency

2022-07-10 Thread Reinhard Tartler
Hi Matthias, thanks for reaching out. I've uploaded the patch to unstable and pushed all my local tags and commits. Let me know if I missed anything. Thanks for providing the patch! -rt On July 9, 2022 9:13:09 PM EDT, Mathias Gibbens wrote: >found 1014183 1.2.3+ds1-1 >tags 1014183 + ftbfs

Bug#1014704: mgetty: Outdated checks in postinst

2022-07-10 Thread Gioele Barabucci
Package: mgetty Version: 1.2.1-1.2 Tags: patch Dear mgetty maintainer, the `postinst` maintscript contains code meant to be used when upgrading from versions older than 1.1.27 or 1.0.x. That code, however, is not going to be run in any future upgrade, given that old-stable already provides

Bug#1014680: Quick fix for xt_ECHO.c

2022-07-10 Thread Lupe Christoph
I have a quick fix for xt_ECHO.c (attached). There is a problem with using the code from xtables-addons 3.15: 99a100,102 > #if LINUX_VERSION_CODE >= KERNEL_VERSION(5, 11, 0) > security_skb_classify_flow((struct sk_buff *)oldskb, flowi6_to_flowi_common()); > #else 100a104 > #endif The

Bug#1014703: nss: Please package recent NSS version

2022-07-10 Thread Carsten Schoenert
Source: nss Version: 2:3.79-1 Severity: wishlist Hello Mike, I'd like to package also recent Thunderbird Beta version to keep track of the current source code changes and update the patching set in rather small junks. The current Beta version of Thunderbird requires NSS at least at >= 3.80,

Bug#1014701: RFS: streamlink/4.2.0-1 -- CLI for extracting video streams from various websites to a video player

2022-07-10 Thread Alexis Murzeau
Package: sponsorship-requests Severity: normal Dear mentors, I am looking for a sponsor for my package "streamlink" for a new upstream version 4.2.0. * Package name: streamlink Version : 4.2.0-1 Upstream Author : Streamlink Team * URL :

Bug#1000922: reopen

2022-07-10 Thread M. Zhou
Control: reopen -1 Control: found -1 0.38.1-3 Simply upgrading llvm deps from 11 to 13 leads to regression for numba. I'm reverting this change back until the upstream source code can really support a newer version.

Bug#1014700: RM: php-http-request2 -- RoQA; Useless in Debian

2022-07-10 Thread David Prévot
Package: ftp.debian.org Severity: normal X-Debbugs-Cc: Sascha Girrulat , Debian PHP PEAR Maintainers Hi, php-http-request2 has not been part of stable since Stretch, has only php-xml-rpc2 as a reverse dependency (removal requested in #1014697) and phing has it as a recommendation (but is not

Bug#1014699: thunar: Thunar crashes and logs out XFCE when started after several minutes without use

2022-07-10 Thread Patrick Coleman
Package: thunar Version: 4.16.10-1 Severity: important X-Debbugs-Cc: blin...@gmail.com Dear Maintainer, Thunar crashes when started after a period of disuse on my laptop. It immediately logs out XFCE and returns me to the login prompt. To reproduce - 1. Use the computer, but do not use Thunar

Bug#1014698: RM: php-cache-lite -- RoQA; Abandoned upstream

2022-07-10 Thread David Prévot
Package: ftp.debian.org Severity: normal X-Debbugs-Cc: Debian PHP PEAR Maintainers Hi, As per #940275, php-cache-lite is not maintained upstream, has not been in stable since Buster, and is only useful in Debian as a php-xml-rpc2 dependency (removal requested in #1014697). TIA taffit

Bug#1014697: RM: php-xml-rpc2 -- RoQA; Abandoned upstream

2022-07-10 Thread David Prévot
Package: ftp.debian.org Severity: normal X-Debbugs-Cc: Dario Minnucci , Debian PHP PEAR Maintainers Hi, php-xml-rpc2 is not maintained [upstream], has not been part of a stable release since Stretch (due to broken reverse-depencies, other RM bugs follow), and is a leaf package.

Bug#1014617: libfcgi-perl: perl is segfaulting and I think it's CGI::Fast

2022-07-10 Thread gregor herrmann
On Fri, 08 Jul 2022 23:12:24 +0100, Ian Jackson wrote: > > You're filing this bug against libfcgi-perl, and in the subject you > > say "I think it's CGI::Fast". > > I'd just like to mention that CGI::Fast is in the libcgi-fast-perl > > package. > I am obviously confused. > ... :) > Ah I see.

Bug#1014696: [PATCH] add a DEP-8 autopkgtest

2022-07-10 Thread John Scott
Source: libiberty Version: 20211102-1 Severity: wishlist Tags: patch Hi, Attached is a patch that adds an autopkgtest to libiberty that exercises some of its functionality. I agree to keep this up-to-date with new releases. Thanks for your consideration -- System Information: Debian Release:

Bug#1014695: RM: nanopolish [s390x] -- ROM; nanopolish transitively depends on streamvbyte which does not build on s390x

2022-07-10 Thread Nilesh Patra
Package: ftp.debian.org Severity: normal X-Debbugs-Cc: debian-...@lists.debian.org Hi, nanopolish recently started depending on snow5lib which inturn depends on streamvbyte. streamvbyte does not build on s390x and so doesn't nanopolish. nanopolish has virtually 0 users on s390x and hence I

Bug#1014694: a possible solution

2022-07-10 Thread Geert Stappers
Hi, With 'User=www-data' and 'Group=www-data' in `/lib/systemd/system/caddy.service` does `caddy` start. But that local modification will be overwritten upon upgrades (and re-installs). Having a group 'caddy' and a user 'caddy' is a better solution. What I did: |stappers@hop:~ |$ sudo

Bug#804722: git-buildpackage: import-dsc creates impractical merge commits after new upstream releases

2022-07-10 Thread Gioele Barabucci
All that is needed to do two-step merge (first merge the upstream branch, then apply the debian diff) is to do a merge at the right moment in `import_dsc.py`. The following quick-and-dirty patch adds such a merge. --- /usr/lib/python3/dist-packages/gbp/scripts/import_dsc.py.orig

Bug#1014694: caddy.service: Failed to determine user credentials: No such process

2022-07-10 Thread Geert Stappers
Package: caddy Version: 2.4.6-2 Severity: serious Justification: package usable Hello, For me, on Debian Testing, doesn't Caddy start. How I installed: |stappers@hop:~ |$ wget http://ftp.nl.debian.org/debian/pool/main/c/caddy/caddy_2.4.6-2_amd64.deb |--2022-07-10 11:15:44--

Bug#1014693: gappa: should be Architecture: any rather than all

2022-07-10 Thread Helmut Grohne
Package: gappa Version: 1.4.0-2 Severity: grave Justification: fails to run on anything but amd64 gappa is marked Architecture: all, but it really is architecture-dependent as it contains an amd64 ELF binary. It should be Architecture: any. It also lacks ${shlibs:Depends}. Lintian should have

Bug#1014692: RM: qiime [armel armhf i386] -- ROM; FTBFS, no longer builds on 32bit platforms

2022-07-10 Thread Steffen Moeller
Package: ftp.debian.org Severity: normal X-Debbugs-Cc: moel...@debian.org There is no point (scientifically) and not resources on Debian's side to substitute upstream's lack of interest in maintaining the 32bit platform.

Bug#1014680: xtables-addons-dkms fails build on linux 5.10.127-1

2022-07-10 Thread Jeremy Sowden
On 2022-07-10, at 10:38:10 +0200, Grzegorz Alibozek wrote: > Package: xtables-addons-dkms > Version: 3.13-1 > Severity: important > X-Debbugs-Cc: grzegorz.alibo...@gmail.com > > Dear Maintainer, > > Build xtables on linux 5.10.0-16 (bullseye) has failed, on 5.10.0-15 it's ok. > > make.log: > >

Bug#1014522: pipewire: Regressions in 0.3.53-1

2022-07-10 Thread Cristian Rigamonti
On 8 July 2022 15:24:19 CEST, "Dylan Aïssi" < >The new pipewire version 0.3.54, available in sid, fixes some critical bugs. >It would be nice if you could test it. I tested 0.3.54. It fixes problem 1 (mpv), but problem 2. (audio corruption in ffmpeg encoding) still happens. It looks like the

Bug#1014691: wireplumber: kernel complains with wireplumber

2022-07-10 Thread pdormeau
Package: wireplumber Version: 0.4.11-1 Severity: minor Dear Maintainer, The kernel complains when wireplumber user service starts but sound is working on the laptop (hence bug tagged as "minor"). juil. 10 12:06:33 myrtille kernel: snd_hda_codec_realtek ehdaudio0D0: didn't find PCM for DAI

Bug#1014523: strawberry: Fails to index a few songs

2022-07-10 Thread Peter B
On 09/07/2022 10:57, Peter B wrote: Hi Alberto, If you can supply an mp3 file that causes this problem, that would really help. You could email me directly if you don't want to attach it to this bug report. Cheers, Peter Forget the above. Please just post the output of stat for the

Bug#1009713: RFP: netavark -- A container network stack

2022-07-10 Thread Reinhard Tartler
Control: bts retitle 1009713 "ITP: netavark -- A container network stack" Control: owner 1009713 ! > Hi Folks, I've been working on packaging all dependencies of netavark, and prepared initial packaging in https://salsa.debian.org/debian/netavark -- feedback welcome. Right now I'm waiting for

Bug#1004436: ikiwiki-hosting-web should depend only on known-working C compilers

2022-07-10 Thread Paul Gevers
Control: severity -1 serious On Thu, 27 Jan 2022 19:07:34 +0200 Adrian Bunk wrote: Package: ikiwiki-hosting-web Version: 0.20180719-2 Severity: important Depends: ..., gcc | c-compiler,... There is no defined semantics what "c-compiler" actually provides, e.g. 'cc' might or might not be

Bug#1014659: logrotate: error: state file /var/lib/logrotate/status is world-readable

2022-07-10 Thread Roman Mamedov
Hello, Here is the permission layout after the "error" message has been issued. I did not check what it was before. I'm not sure if this means I will not get another "error" tomorrow. On another host, I did "chmod o-rx" on the logrotate directory, thinking maybe it wants that. Not sure yet if

Bug#1014319: depmod: WARNING: could not open modules.builtin.modinfo at /var/tmp/mkinitramfs_vBlw4a/lib/modules/5.18.0-2-amd64: No such file or directory

2022-07-10 Thread Sedat Dilek
Hi, with the fix from Sven Joachim applied to mkinitramfs I do not see the warning of kmod-30. Feel free to add my: Tested-by: Sedat Dilek # Debian/unstable AMD64 Thanks. Regards, -Sedat-

Bug#1014690: llvmlite breaks numba autopkgtest: segmentation fault

2022-07-10 Thread Paul Gevers
Source: llvmlite, numba Control: found -1 llvmlite/0.38.1-2 Control: found -1 numba/0.55.2+dfsg-1 Severity: serious Tags: sid bookworm User: debian...@lists.debian.org Usertags: breaks needs-update Dear maintainer(s), With a recent upload of llvmlite the autopkgtest of numba fails in testing

Bug#1014689: leiningen-clojure breaks cljx-clojure autopkgtest: artifact nrepl:nrepl:jar:0.9.0 has not been downloaded

2022-07-10 Thread Paul Gevers
Source: leiningen-clojure, cljx-clojure Control: found -1 leiningen-clojure/2.9.1-6 Control: found -1 cljx-clojure/0.6.0-3 Severity: serious Tags: sid bookworm User: debian...@lists.debian.org Usertags: breaks needs-update Dear maintainer(s), With a recent upload of leiningen-clojure the

Bug#1004589: Part of a solution for #1004589

2022-07-10 Thread Levin Engel
This bug is not only a problem in version 0.15.3-4, but also in 0.13.1- 2, the version currently in stable, and possibly other versions. I found a complete solution for 0.13.1-2, and part of a solution for the version currently in 0.15.3-4. In the .service-file of the gnunet service (normally

Bug#695835: Projekt

2022-07-10 Thread Dave Ramsden
Mam projekt/biznes do omówienia z toba. Jesli jestes zainteresowany, odpowiedz po wiecej szczególów, jesli to mozliwe, w jezyku angielskim. Z powazaniem, Dave Ramsden _ Sekretarka: Vanni Gilbert

Bug#1014631: docker.io: No networking in rootless docker with firewalld

2022-07-10 Thread Tomas Janousek
Hi, On Sat, Jul 09, 2022 at 05:01:55PM +0800, Shengjing Zhu wrote: I just checked that Docker 22.06 has bumped godbus to 5.0.6, https://github.com/moby/moby/blob/22.06/vendor.mod So it would be an issue for upstream too. Indeed they have. I must've been looking at an outdated vendor.conf,

  1   2   >