Bug#904043: arm: Enable CONFIG_SPI_SPIDEV

2018-07-31 Thread Gunnar Wolf
Hi, This bug is being added as several users (me included) have required this information from the (unofficial) Raspberry Pi Debian "clean" image. There is a great number of devices with similar format, allowing for GPIO communications, that would benefit from having SPIDEV enabled in our

Bug#904302: Whether vendor-specific patch series should be permitted in the archive

2018-07-29 Thread Gunnar Wolf
Sean Whitton dijo [Mon, Jul 30, 2018 at 12:01:35PM +0800]: > > ...Although if we make a policy change in this, it will require > > cooperation of the dpkg developers if we don't want to go into 6.1.4 > > (which we don't). > > Sorry, I don't follow. > > Surely policy can disallow things in

Bug#904302: Whether vendor-specific patch series should be permitted in the archive

2018-07-29 Thread Gunnar Wolf
Sean Whitton dijo [Mon, Jul 30, 2018 at 09:30:04AM +0800]: > > I believe his request might also be considered under §6.1.1, since we're > > being asked about a policy change. (After talking to Sean in person, he > > said he intended it under §6.1.3, not §6.1.1, though.) > > I think technically

Bug#904302: Whether vendor-specific patch series should be permitted in the archive

2018-07-24 Thread Gunnar Wolf
Sean Whitton dijo [Mon, Jul 23, 2018 at 09:22:17AM +0800]: > As a Debian Policy delegate I hereby request that the Technical > Committee decide whether a proposal that has been submitted to modify > the Debian Policy Manual should be accepted: > > #850156 [n| | ] [dpkg-dev, debian-policy]

Bug#864615: please update version of posix standard for scripts (section 10.4)

2018-07-03 Thread Gunnar Wolf
Sean Whitton dijo [Fri, Jun 15, 2018 at 01:06:43PM +0100]: > Thank you for this. > > Let's use POSIX.1-2017 rather than relying on the download filenames. > > Please find a revised patch below; hopefully Gunnar will renew his > second, and perhaps you'll second too, Simon. Again, all that the

Bug#890596: gnuhtml2latex: Wrong conversion of

2018-04-30 Thread Gunnar Wolf
『18』/tmp$ gnuhtml2latex test.html 0 gwolf@mosca『19』/tmp$ cat test.tex % This file was converted from HTML to LaTeX with % gnuhtml2latex program % (c) Tomasz Wegrzanowski <man...@beer.com> 1999 % (c) Gunnar Wolf <gw...@gwolf.org> 2005-2010 % Version : 0.4. \documentclass{article} \be

Bug#896912: ftp.debian.org: Already removed the drupal7 package at my request, but I uploaded again :-Þ

2018-04-25 Thread Gunnar Wolf
Package: ftp.debian.org Severity: normal Hi, Drupal7 has already been removed from unstable (#884929), but I am today performing some security updates - And while preparing the updates to security-stable and security-unstable, I forgot it was removed already. So, you will see drupal7 landing in

Bug#896701: drupal7: CVE-2018-7602: SA-CORE-2018-004

2018-04-23 Thread Gunnar Wolf
Salvatore Bonaccorso dijo [Mon, Apr 23, 2018 at 08:53:38PM +0200]: > The following vulnerability was published for drupal7. > > CVE-2018-7602[0]: > SA-CORE-2018-004 > > If you fix the vulnerability please also make sure to include the > CVE (Common Vulnerabilities & Exposures) id in your

Bug#896059: Info received (Bug#896059: Acknowledgement (ncmpc: Defaults to non-policy-compliant configuration file))

2018-04-18 Thread Gunnar Wolf
tags 896059 + patch thanks I believe the following very simple patch will take care of this bug: diff --git a/debian/rules b/debian/rules index 042e001..48e323a 100755 --- a/debian/rules +++ b/debian/rules @@ -27,6 +27,7 @@ config.status: configure ./configure --host=$(DEB_HOST_GNU_TYPE)

Bug#896059: Acknowledgement (ncmpc: Defaults to non-policy-compliant configuration file)

2018-04-18 Thread Gunnar Wolf
I see this issue was long ago brought up - Bug #306260, 13 years ago. Said bug is archived, so I cannot reopen it. I verified this by: # mkdir /etc/ncmpc # echo host=fake.example.com > /etc/ncmpc/config # exit $ ncmpc It still connects to localhost. However, # mkdir

Bug#896059: ncmpc: Defaults to non-policy-compliant configuration file

2018-04-18 Thread Gunnar Wolf
Package: ncmpc Version: 0.27-1 Severity: normal When querying ncmpc for its version information, it displays: $ ncmpc --version ncmpc version: 0.27 build options: multibyte wide locale nls colors lirc getmouse artist-screen help-screen search-screen song-screen key-screen

Bug#884929: Please proceed to remove Drupal7 - Dependencies have been removed; big security problem upcoming

2018-03-23 Thread Gunnar Wolf
Hi, I have been notified that drupal7-mod-civicrm is finally no longer built, so the last rdep on drupal7 has been cleared. The Drupal developers have issued a preventive warning, informing they will publish a highly critical bug fix for Drupal 7 and 8.x next Wednesday. I will update the Drupal

Bug#893200: TC Chair election

2018-03-22 Thread Gunnar Wolf
gt; E : David Bremner > F : Niko Tyni > G : Gunnar Wolf > H : Simon McVittie > ===END=== I vote: D > A > B = C = E = F > G > H Thanks! signature.asc Description: PGP signature

Bug#880014: Technical committee appointment

2018-03-16 Thread Gunnar Wolf
Chris Lamb dijo [Fri, Mar 16, 2018 at 06:14:37PM +]: > -BEGIN PGP SIGNED MESSAGE- > Hash: SHA256 > > Dear fellow developers, > > As defined by our constitution (§6.2.2), the Debian Technical Committee > has recommended the appointment of Simon McVittie (smcv). Yay! Welcome on board!

Bug#880014: Call for Votes for new TC member

2018-03-04 Thread Gunnar Wolf
Didier 'OdyX' Raboud dijo [Sun, Mar 04, 2018 at 11:44:45AM +0100]: > I call for votes on the following ballot to fill a vacant seat in the TC. The > voting period starts immediately and lasts for up to one week, or until the > outcome is no longer in doubt (§6.3.1). > > ===BEGIN > The Technical

Bug#891150: drupal7: SA-CORE-2018-001: Several vulnerabilities

2018-02-22 Thread Gunnar Wolf
Salvatore Bonaccorso dijo [Thu, Feb 22, 2018 at 08:46:30PM +0100]: > There was a new Drupal security advisory at > > https://www.drupal.org/sa-core-2018-001 > > where several issues affect as well drupal7. > > * JavaScript cross-site scripting prevention is incomplete - Critical - >Drupal

Bug#890816: ITP: autovpn -- Connect to a VPN in a country of your choice

2018-02-20 Thread Gunnar Wolf
Michael Meskes dijo [Mon, Feb 19, 2018 at 12:44:40PM +0100]: > > I'd strongly urge you to reconsider packaging this project, for > > three main reasons: > > > > * It relies upon the external VPNGate.net site/service. If this > > goes away in the lifetime of a stable Debian release users

Bug#883573: Call for vote on waiving libpam-systemd dependencies' ordering

2018-02-12 Thread Gunnar Wolf
Didier 'OdyX' Raboud dijo [Fri, Feb 09, 2018 at 09:14:49AM +0100]: > I call for votes on the following resolution with regards to #883573. > The voting period lasts for one week or until the outcome is no longer > in doubt (§6.3.1). > > === Resolution === > > In 2014, it was resolved in #746578

Bug#880014: Call for Votes for new TC member

2018-02-07 Thread Gunnar Wolf
As we agreed on the January #debian-ctte meeting¹, even though action has been taken on this bug (and thus I am a new TC member), there is still one open seat to fill. Even though it's not high priority to fill this position, this bug will remain open until a second TC member is appointed.

Bug#889493: tech-ctte: Please review if systemd is reliable enough to be the default

2018-02-04 Thread Gunnar Wolf
Gunnar Wolf dijo [Mon, Feb 05, 2018 at 12:57:47AM -0600]: > - Enough RC bugs (or evidence of regressions, could even be links to > blog posts from people complaining about how systemd is bad or > whatever) Just to be clear - Yes, you linked to the list of bugs on systemd. No piece of

Bug#889493: tech-ctte: Please review if systemd is reliable enough to be the default

2018-02-04 Thread Gunnar Wolf
Philip Hands dijo [Sat, Feb 03, 2018 at 10:22:19PM +0100]: > On Sat, 03 Feb 2018, "Kingsley G. Morse Jr." wrote: > > Package: tech-ctte > > I don't formally have the right to simply close this bug (as I am now > doing), so if anyone else on the TC thinks there is any merit

Bug#885117: drupal7-mod-civicrm: Please stop building the drupal7-mod-civicrm binary package (dependency drupal7 to be removed)

2018-02-01 Thread Gunnar Wolf
tags 885117 + patch thanks I am attaching a proposed patch to stop building the Drupal7 module packages. Please note that I have *not* tested it, am just sending what makes "semantic sense". Most important, probably debian/patches/debian-split-confname.patch is now useless, but you should check

Bug#682347: mark 'editor' virtual package name as obsolete

2018-01-30 Thread Gunnar Wolf
Russ Allbery dijo [Mon, Dec 25, 2017 at 05:02:01PM -0800]: > (...) > I think there are three options, and I'd love to get feedback on which of > those three options we should take. > > 1. Status quo: there is an undocumented editor virtual package, Policy >says that nothing has to provide or

Bug#742364: Patch to document debian/missing-sources

2018-01-30 Thread Gunnar Wolf
Sean Whitton dijo [Sat, Dec 09, 2017 at 12:16:35PM -0700]: > I am seeking seconds for the following patch: You just found one. Seconded! > > diff --git a/policy/ch-source.rst b/policy/ch-source.rst > > index 37c4442..f8f768f 100644 > > --- a/policy/ch-source.rst > > +++ b/policy/ch-source.rst >

Bug#864615: please update version of posix standard for scripts (section 10.4)

2018-01-30 Thread Gunnar Wolf
Sean Whitton dijo [Sat, Oct 14, 2017 at 03:28:04PM -0700]: > > The 2016 edition is Technical Corrigendum 2. I'm not sure that it's > > conventional to use versioning such as 4.2 in such cases, however. I'd > > expect it to be referred to as SUSv4, SUSv4TC2, or SUSv4 2016 edition; > > the latter

Bug#886267: Voting for TC Chair

2018-01-10 Thread Gunnar Wolf
gt; D: Margarita Manterola > E: David Bremner > F: Niko Tyni > G: Gunnar Wolf > ===END=== My vote is: A > B = C = D = E = F > G signature.asc Description: PGP signature

Bug#886265: dh-make-drupal: Package is useless

2018-01-04 Thread Gunnar Wolf
Felipe Alvarez dijo [Wed, Jan 03, 2018 at 12:54:09PM -0300]: > Package: dh-make-drupal > Version: 2.1-2 > Severity: important > > Dear Maintainer, > > trying to fetch a module: > > felipe@satriani:~$ dh-make-drupal --debug 5 views > D:Parsed options: > (...) > best regards. Hi, I have

Bug#884929: Removal requested for Drupal7

2017-12-23 Thread Gunnar Wolf
FWIW, I have opened bugs #885116 requesting the removal of drupal7-mod-libraries and #885117 requesting to rebuild the civicrm source package not including drupal7-mod-civicrm. signature.asc Description: PGP signature

Bug#885117: drupal7-mod-civicrm: Please stop building the drupal7-mod-civicrm binary package (dependency drupal7 to be removed)

2017-12-23 Thread Gunnar Wolf
Package: drupal7-mod-civicrm Severity: important Hi, I have requested ftp-masters to remove drupaly (#884929) as it should not be part of the next stable Debian release. I have been pointed out drupal7-mod-civicrm depends on it. Please build a new release of civicrm that does not generate this

Bug#885116: RM: drupal7-mod-libraries; Removal of dependency drupal7

2017-12-23 Thread Gunnar Wolf
Package: ftp.debian.org Severity: normal I have requested ftp-masters to remove drupal7 from unstable (#884929). drupal7-mod-libraries depends on it, so it should be removed as well.

Bug#884929: Removal requested for Drupal7

2017-12-23 Thread Gunnar Wolf
Hello, Dmitry and Daniel, I have requested the removal of Drupal7 (#884929), but forgot to check for reverse dependencies. So, I will request for the removal of your packages, drupal7-mod-libraries and drupal7-mod-civicrm. In the first case, Daniel, no further action will be needed from your

Bug#885015: RM: dh-make-drupal -- ROM; Designed to work with drupal7, scheduled for ROM as well

2017-12-22 Thread Gunnar Wolf
Package: ftp.debian.org Severity: normal Hi, I asked yesterday for drupal7 to be removed from Debian (#884929). I request also dh-make-drupal to be removed, as its main purpose is to prepare Debian packages from Drupal7 modules, and will now serve no purpose. Thanks,

Bug#884765: ITP: drupal-init-tools -- helper commands to create and install new Drupal projects

2017-12-22 Thread Gunnar Wolf
Antonio Ospite dijo [Tue, Dec 19, 2017 at 11:45:52AM +0100]: > (...) > I am the upstream author of drupal-init-tool and I plan on maintaining > the Debian package myself, but I am not a Debian Developer or a Debian > Maintainer. > > I do have a sponsor who is kind enough to upload some other

Bug#884929: RM: drupal7 -- ROM; Old version; newer version not packagable for Debian

2017-12-21 Thread Gunnar Wolf
Package: ftp.debian.org Severity: normal Drupal 7.x is no longer being actively developed, as developers have shifted to Drupal 8.x. While it still has security support (and should continue to be part of Stable and Oldstable), the 8.x series is already over a year old. I decided a year ago not to

Bug#683495: Mandating use of /usr/bin/perl in Policy

2017-11-27 Thread Gunnar Wolf
Sean Whitton dijo [Sat, Oct 14, 2017 at 11:49:59AM -0700]: > I am seeking seconds for the following patch to close this bug, which I > think is uncontroversial at this point. > > > @@ -185,7 +185,7 @@ All command scripts, including the package maintainer > > scripts inside the > > package and

Bug#882445: Proposed change of offensive packages to -offensive

2017-11-24 Thread Gunnar Wolf
Sean Whitton dijo [Thu, Nov 23, 2017 at 02:40:54PM -0700]: > Hello David, > > On Wed, Nov 22, 2017 at 05:18:37PM -0700, Sean Whitton wrote: > >> > "cowsay-offensive". In this situation the "-offensive" package can > >> > be Suggested by the core package(s), but should not be Recommended > >>

Bug#882445: Proposed change of offensive packages to -offensive

2017-11-22 Thread Gunnar Wolf
Sean Whitton dijo [Wed, Nov 22, 2017 at 05:18:37PM -0700]: > > So to be concrete, how about this: > > > > N. Packages with potentially offensive content > > > > As a maintainer you should make a judgement about whether the > > contents of a package is appropriate to include, whether it needs

Bug#862461: tiptop: requires root to run

2017-10-31 Thread Gunnar Wolf
is required When perf_event_paranoid level is set to 3 (default), tiptop requires root access to be run (#862461). Notify the user accordingly. Author: Gunnar Wolf <gw...@debian.org> Origin: vendor https://bugs.debian.org/862461 Bug-Debian: https://bugs.debian.org/862461 Forwarded: no Re

Bug#877212: [Pkg-javascript-devel] Bug#877212: node-d3-color: B-D npm not available in testing

2017-10-03 Thread Gunnar Wolf
Jérémy Lal dijo [Tue, Oct 03, 2017 at 07:46:43PM +0200]: > It might be a good idea to make policy more explicit about downloads during > build. I completely agree. This led me to look at #813471 ("network access to the loopback device should be allowed"), and... Well, it seems to set the stage to

Bug#877212: [Pkg-javascript-devel] Bug#877212: node-d3-color: B-D npm not available in testing

2017-10-03 Thread Gunnar Wolf
Pirate Praveen dijo [Tue, Oct 03, 2017 at 12:12:54PM +0530]: > > I am completely with Sean here; I read the following messages, and am > > happy a better resolution was found. But, FWIW, I'll support Sean's > > interpretation - Contrib and non-free are *not* places where we can > > happily breach

Bug#877212: [Pkg-javascript-devel] Bug#877212: node-d3-color: B-D npm not available in testing

2017-10-02 Thread Gunnar Wolf
Sean Whitton dijo [Sat, Sep 30, 2017 at 12:10:54PM -0700]: > > The whole purpose of having contrib and non-free is to host packages > > that can't be in main, either permanently or temporarily. I fail to > > see how it is against the spirit. > > To my mind, at least, the purpose of contrib and

Bug#877372: ITP: bzrmk -- Generator for .bzrignore files

2017-10-02 Thread Gunnar Wolf
Sascha Manns dijo [Sun, Oct 01, 2017 at 07:57:01AM +0200]: > This program helps by creating a .bzrignore file for your project. After > installing it provides a binary, which can copy the installed bzr.mk into your > current project directory. bzr.mk itself provides some useful rules for >

Bug#876157: python-fuse: Inconsistent explanation between short and long descriptions

2017-09-18 Thread Gunnar Wolf
Package: python-fuse Version: 2:0.2.1-14 Severity: minor Tags: patch Package: python-fuse Version: 2:0.2.1-14 Severity: minor Tags: patch Package: python-fuse Version: 2:0.2.1-14 Severity: minor Tags: patch Hiya, The short description for this module reads: Python bindings for FUSE

Bug#874020: lists.debian.org: Consider disabling/removing the "debian-research" mailing list

2017-09-01 Thread Gunnar Wolf
Package: lists.debian.org Severity: normal Hi listadmins, I was unaware of the existence of the debian-research mailing list before today. And that's quite odd, as I have followed activities regarding "Debian from an academic perspective" for several years! When I got to the list archives, it

Bug#868865: ITP: python-django-imagekit -- Automated image processing for Django

2017-07-22 Thread Gunnar Wolf
Michael Fladischer dijo [Wed, Jul 19, 2017 at 12:31:58PM +0200]: > ImageKit is a Django app for processing images. Need a thumbnail? A > black-and-white version of a user-uploaded image? ImageKit will make them for > you. If you need to programmatically generate one image from another, you >

Bug#866652: runit: Should depend on runit-(systemd|sysv) to be present

2017-06-30 Thread Gunnar Wolf
Package: runit Version: 2.1.2-9.2 Severity: important After updating a server from Jessie to Stretch, vblade-persist stopped working. It took me a while to understand the chain of items to blame: When I requesed «vblade-persist start all», it just replied that «runsv not running» — This, in turn,

Bug#865498: Wheezy update of drupal7?

2017-06-22 Thread Gunnar Wolf
Raphael Hertzog dijo [Thu, Jun 22, 2017 at 10:55:59AM +0200]: > Hello Gunnar, Hello Raphael, Thanks a lot for your great, invaluable help on LTS! > The Debian LTS team would like to fix the security issues which are > currently open in the Wheezy version of drupal7: >

Bug#865289: ITP: ruby-tool -- general purpose Ruby library used by Sinatra 2.0 and Mustermann

2017-06-20 Thread Gunnar Wolf
Balasankar C dijo [Wed, Jun 21, 2017 at 08:18:11AM +0530]: > >Umh, the name 'tool' is as generic as 'general purpose library'. Could > >you provide a description that people would find useful to know > >whether they could use this library (so that it's not _only_ used as a > >dependency)? > > To

Bug#865289: ITP: ruby-tool -- general purpose Ruby library used by Sinatra 2.0 and Mustermann

2017-06-20 Thread Gunnar Wolf
Balasankar C dijo [Tue, Jun 20, 2017 at 03:47:20PM +0530]: > Package: wnpp > Severity: wishlist > Owner: Balasankar C > > * Package name: ruby-tool > Version : 0.2.3 > Upstream Author : Konstantin Haase > * URL : https://github.com/rkh/tool

Bug#861581: ITP: rainloop -- Simple, modern & fast web-based email client

2017-05-14 Thread Gunnar Wolf
Hi Daniel, Daniel Ring dijo [Sun, May 07, 2017 at 11:01:33AM +]: > Hi Gunnar, > > I've finished putting together a preliminary version of the package, but I > have a few concerns about it. > > The largest one is that the build system is NodeJS-based, and requires a > version of npm newer

Bug#861581: ITP: rainloop -- Simple, modern & fast web-based email client

2017-05-02 Thread Gunnar Wolf
Daniel Ring dijo [Sun, Apr 30, 2017 at 05:53:11PM -0700]: > Rainloop is a PHP-based MUA with a modern interface and no database > requirements. > > It supports IMAP and SMTP protocols (including SSL), Sieve scripts, > multiple accounts and identities, an admin panel for configuration, > and

Bug#861340: ITP: elpa-poetry -- Poetry writing aids for Emacs

2017-04-28 Thread Gunnar Wolf
Nicholas D Steeves dijo [Thu, Apr 27, 2017 at 01:37:03PM -0400]: > Package: wnpp > Severity: wishlist > Owner: Nicholas D Steeves > > * Package name: elpa-poetry > (...) > In combination with tools such as dict.el, and thesaurus.el, this > package extends Emacs to make it

Bug#860714: general: disk became full after running a perl program

2017-04-28 Thread Gunnar Wolf
The bug submitter followed up by private mail to me only; I'm cc:ing the bug report before closing it to provide a reasoned follow-up. - Forwarded message from Luis Duarte <turcova...@sapo.pt> - Date: Sat, 22 Apr 2017 16:36:29 +0100 From: Luis Duarte <turcova...@sapo.pt> To:

Bug#860714: general: disk became full after running a perl program

2017-04-19 Thread Gunnar Wolf
Luis Duarte dijo [Wed, Apr 19, 2017 at 09:40:10AM +0100]: > Package: general > Severity: normal > > My windows manager is Xfce. Using Thunar - when I opened a directory > containing > perl programs, somethimes I click two times on a perl program to start it. No > Xterm appears - what I think

Bug#854822: installation-report: U-boot not correctly installed when partitioning with "Guided - use entire disk"

2017-02-10 Thread Gunnar Wolf
Thanks for the quick insight into this, Karsten! Karsten Merker dijo [Fri, Feb 10, 2017 at 09:36:33PM +0100]: > (...) but this doesn't work in your case as we currently > only disable the clobbering for /dev/mmcblk0 while your SD card > shows up as /dev/mmcblk1. I am not 100% sure about that, but

Bug#854822: installation-report: U-boot not correctly installed when partitioning with "Guided - use entire disk"

2017-02-10 Thread Gunnar Wolf
Please note that the provided "hardware-summary" was taken from the second (successful) install. I mention this due to: > (...) > == > Installer hardware-summary: > == > (...) > df: Filesystem

Bug#854822: installation-report: U-boot not correctly installed when partitioning with "Guided - use entire disk"

2017-02-10 Thread Gunnar Wolf
Package: installation-reports Version: 2.62 Severity: important Tags: d-i -- Package-specific info: Boot method: SD card Image version: https://d-i.debian.org/daily-images/armhf/daily/hd-media/SD-card-images/firmware.MX6_Cubox-i.img.gz

Bug#851306: ITP: freebayes -- Bayesian haplotype-based polymorphism discovery and genotyping

2017-01-15 Thread Gunnar Wolf
Scott Kitterman dijo [Sun, Jan 15, 2017 at 04:34:40PM +]: > >> "freebayes" seems like a very generic name for something specific to > >such a > >> narrow field. Maybe freebayes-genetic-variance or some such instead. > > > >I fully agree with your generic name consideration. The software is

Bug#841133: ruby-gruff: FTBFS: Tests hang after segmentation fault

2016-11-28 Thread Gunnar Wolf
Package: ruby-gruff Version: 0.6.0-1 Followup-For: Bug #841133 This bug does not only happen at build time, it makes Gruff completely unusable :-( $ irb >> require 'gruff' => true >> g=Gruff::Bar.new '100x100' /usr/lib/ruby/vendor_ruby/gruff/base.rb:968: [BUG] Segmentation fault at

Bug#846063: RM: collabtive -- RoQA; orphaned; RC-buggy

2016-11-28 Thread Gunnar Wolf
Ondřej Surý dijo [Mon, Nov 28, 2016 at 10:16:04AM +0100]: > Dear ftp-masters, > > the collabtive package has been orphaned, it is RC-buggy and it is > blocking src:php5 removal from unstable. > > While collabtive 3.0 has support for PHP 7.0, nobody has stepped up > and updated the package to

Bug#841441: graphviz: Dies dumping memory map when specifying nodesep or minlen

2016-10-20 Thread Gunnar Wolf
Package: graphviz Version: 2.38.0-15+b1 Severity: normal While working with a reasonably simple graph, Graphviz dies if I specify an «edge[minlen=3]» or higher, or if instead of it I specify a «nodesep=6» or higher. I'm attaching the graph in question; with minlen ≤ 2 it works correctly. The

Bug#834974: Installation Report: Stretch Alpha 7 on Cubox-i4pro

2016-09-02 Thread Gunnar Wolf
tags 834974 + confirmed thanks Martin Michlmayr dijo [Mon, Aug 29, 2016 at 07:49:48PM -0700]: > The log suggests that flash-kernel was installed successfully, i.e. > that a u-boot boot script was generated correctly. > > I don't know anything about this device so unfortunately I cannot help >

Bug#835125: jqueryui: Wrong licensing information: Licensed under MIT, *not* GPL-2

2016-08-22 Thread Gunnar Wolf
Source: jqueryui Version: 1.10.1+dfsg Severity: serious Justification: Policy 2.3 The package's debian/copyright mentions all of the contents as being licensed udner "GPL-2 or MIT", but they are exclusively licensed under the MIT: $ grep -ri 'gnu' . --exclude-dir=debian Binary file

Bug#833999: debian-keyring: Typo in keyids

2016-08-11 Thread Gunnar Wolf
tags 833999 + pending thanks Jochen Sprickerhof dijo [Thu, Aug 11, 2016 at 11:55:44AM +0200]: > sed -is 's/0x17FBDCBFD9928FF4 Jochen Sprickerhof <6350>/0x17FBDCBFD9928FF4 > Jochen Sprickerhof /' keyids Thanks, Jochen! This is fixed in our working tree, will be included in the next keyring

Bug#833306: debian-keyring: duplicated key 0xAFA51BD6CDE573CB

2016-08-04 Thread Gunnar Wolf
Alessandro Ghedini dijo [Thu, Aug 04, 2016 at 08:19:14PM +0100]: > On Tue, Aug 02, 2016 at 06:52:39PM +0100, Alessandro Ghedini wrote: > > and when building the keyrings from the git repository it appears four > > times: > > Actually, the two additional keys are there due to the fact that I had

Bug#828027: drupal7: Should depend on php-xml

2016-07-25 Thread Gunnar Wolf
Jeremy Bicha dijo [Thu, Jun 23, 2016 at 10:41:28PM -0400]: > Package: drupal7 > Version: 7.44-1 > Severity: important > > Originally reported at https://launchpad.net/bugs/1595788 (there's a > screenshot there too). Thank you very much, and excuse me for the time it took to fix this — DebConf

Bug#826270: gnupg: Defaults to using insecure short key IDs (32 bits)

2016-07-25 Thread Gunnar Wolf
Heinrich Schuchardt dijo [Mon, Jul 25, 2016 at 08:52:49PM +0200]: > Dear maintainer, > > the problem is solved in the git head of gnupg. > > Please, upgrade the package in stretch to a current version. > > Experimental has package gnupg (2.1.14-1). > Sid and Strech have gnupg (1.4.20-6). Great

Bug#831365: ITP: lepton -- tool to compress JPEGs losslessly

2016-07-17 Thread Gunnar Wolf
ChangZhuo Chen dijo [Fri, Jul 15, 2016 at 09:20:06AM +0800]: > Package: wnpp > Severity: wishlist > Owner: "ChangZhuo Chen (陳昌倬)" > > * Package name: lepton > Version : 1.0 > Upstream Author : Copyright (c) 2016 Dropbox, Inc. > * URL :

Bug#826971: calibre: Exceptions at startup; dies if launched from a terminal which is then closed

2016-06-10 Thread Gunnar Wolf
Package: calibre Version: 2.55.0+dfsg-1 Severity: normal When Calibre first starts, it throws two exceptions, but continues loading and works correctly. They appear practically as the same time as the Calibre splash screen. The exceptions are: Traceback (most recent call last): File

Bug#826273: [pkg-gnupg-maint] Bug#826273: gnupg2: Defaults to using insecure short key IDs (32 bits)

2016-06-03 Thread Gunnar Wolf
Daniel Kahn Gillmor dijo [Fri, Jun 03, 2016 at 05:06:43PM -0400]: > So i'd actually be happier with "keyid-format none" or "keyid format > fingerprint" [1] than with "keyid-format long" but i agree that "long" > or "0xlong" is still superior to the current situation. Umh... There's something

Bug#826273: gnupg2: Defaults to using insecure short key IDs (32 bits)

2016-06-03 Thread Gunnar Wolf
Package: gnupg2 Version: 2.1.11-7 Severity: normal Tags: security GnuPG2 defaults to returning short key IDs when listing keys. Short key IDs are quite vulnerable to collisions, and their use should be strongly discouraged. I wrote the following with a progression of attacks; this is all

Bug#826270: gnupg: Defaults to using insecure short key IDs (32 bits)

2016-06-03 Thread Gunnar Wolf
Package: gnupg Version: 1.4.20-6 Severity: normal GnuPG defaults to returning short key IDs when listing keys. Short key IDs are quite vulnerable to collisions, and their use should be strongly discouraged. I wrote the following with a progression of attacks; this is all well-known for years.

Bug#823853: lintian: False positive for source-is-missing on misc/farbtastic/farbtastic.js

2016-05-09 Thread Gunnar Wolf
Jakub Wilk dijo [Mon, May 09, 2016 at 09:16:43PM +0200]: > >Oh, right! > > > >Fixed it in the repository; > > Shall we close this bug? It can be closed. It could also be made into a more general "be less picky" wishlist. Your call :)

Bug#823853: lintian: False positive for source-is-missing on misc/farbtastic/farbtastic.js

2016-05-09 Thread Gunnar Wolf
Jakub Wilk dijo [Mon, May 09, 2016 at 07:07:07PM +0200]: > Apparently Lintian expects the source to be in: > > debian/missing-sources/misc/farbtastic/farbtastic.js > > (Note the "misc" part.) Oh, right! Fixed it in the repository; I'm not doing an update just because of this issue, will

Bug#823854: lintian: Incorrectly identified as minified Javascript ("source-is-missing")

2016-05-09 Thread Gunnar Wolf
Package: lintian Version: 2.5.43 Severity: normal Lintian presents the following error when building Drupal7: E: drupal7 source: source-is-missing themes/bartik/color/preview.js line length is 311 characters (>256) However, IMO just the line length should not trigger this bug. Case in point,

Bug#823853: lintian: False positive for source-is-missing on misc/farbtastic/farbtastic.js

2016-05-09 Thread Gunnar Wolf
Package: lintian Version: 2.5.43 Severity: normal Lintian erroneously identifies misc/farbtastic/farbtastic.js for a "source-is-missing" message. The file shipped by upstream *is* minified: https://anonscm.debian.org/cgit/collab-maint/drupal7.git/tree/misc/farbtastic/farbtastic.js However,

Bug#821482: drupal7: PHP 7.0 Transition ← Help requested!

2016-05-05 Thread Gunnar Wolf
tag 821482 + confirmed upstream patch pending thanks Hi, I'm contacting pkg-php-maint as recommendad by Ondřej's original mass bug filing, hopefully avoiding the removal of Drupal7 from Debian. As it is now, at version 7.43, Drupal7 is *not* PHP7-clean, and it is documented with bugs in the

Bug#819663: O: collabtive

2016-03-31 Thread Gunnar Wolf
Package: wnpp Severity: normal Collabtive is a very nice and simple, calendar- and project-based group collaboration tool. The package description reads: Description: Web-based project management software This package is intended for small to medium-sized businesses and

Bug#818111: noise in the noise source package creation step

2016-03-19 Thread Gunnar Wolf
Holger Levsen dijo [Wed, Mar 16, 2016 at 01:20:29PM -0400]: > Hi Gunnar, > > in https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=818111#10 you > wrote: > > > However, even with this, the package is *not yet* built reproducibly: > > There is still a source of noise for the source package

Bug#818111: noise in the noise source package creation step

2016-03-19 Thread Gunnar Wolf
> are you using dpkg from our reproducible repository or the one from > debian sid? if the latter, this explains… Oh, you tricky, you...! I am just a happy pure Sid user.

Bug#818111: debian-keyring: please make the build reproducible (locale, fileordering)

2016-03-13 Thread Gunnar Wolf
severity 818111 minor tag 818111 + patch pending confirmed thanks Satyam Zode dijo [Mon, Mar 14, 2016 at 12:54:50AM +0530]: > While working on the “reproducible builds” effort [1], we have noticed > that debian-keyring could not be built reproducibly. > > The attached patch fix the order of

Bug#817923: binfmt-support: Installation stuck, dpkg does not get to finish

2016-03-11 Thread Gunnar Wolf
notfound 817923 2.1.6-1 found 817923 2.1.5-2 kthxbye Hmmm... By killing or skipping the "update-binfmts" invocations, I was finally able to update my system. Part of this update brought in the 2.1.6-1 release of binfmt-support. It now works correctly. I leave this bug open as it might still bite

Bug#817923: binfmt-support: Installation stuck, dpkg does not get to finish

2016-03-11 Thread Gunnar Wolf
reassign 817923 binfmt-support thanks After commenting out the call to update-binfmts in my system (that is, modifying /var/lib/dpkg/info/python3.5-minimal.postinst to skip the call, even though I am fully aware it is not a recommended way to solve issues), I saw this same issue happening with

Bug#817923: python3.5-minimal: Installation stuck, dpkg does not get to finish

2016-03-11 Thread Gunnar Wolf
Package: python3.5-minimal Version: 3.5.1-7 Severity: normal When updating a long-due Sid system, dpkg processes away until it gets stuck at this package: (...) Setting up libllvm3.7:amd64 (1:3.7.1-2) ... Setting up libcupsppdc1:amd64 (2.1.3-3) ... Setting up python3.5-minimal

Bug#816417: dh-make-drupal: Please drop libruby dependency

2016-03-01 Thread Gunnar Wolf
Christian Hofstaedtler dijo [Tue, Mar 01, 2016 at 07:30:19PM +0100]: > Package: dh-make-drupal > Version: 2.1-1 > Severity: normal > > Gunnar, > > please drop Depends: libruby from dh-make-drupal. > We are planning to remove the libruby metapackage; dh-make-drupal > is the only user of it. I

Bug#815923: [drupal7] SA-CORE-2016-001 for drupal6 & drupal7

2016-02-28 Thread Gunnar Wolf
Gunnar Wolf dijo [Thu, Feb 25, 2016 at 03:54:04PM -0600]: > Yes, I'm aware! For sure, I'll work on it! > > I am overwhelmed by work. I'll try to work on it on Sunday, but if not > possible, I will do it on Tuesday. > > If somebody else can fill up for me meanwhile, NMUs are

Bug#815923: [drupal7] SA-CORE-2016-001 for drupal6 & drupal7

2016-02-25 Thread Gunnar Wolf
Ingo Juergensmann dijo [Thu, Feb 25, 2016 at 07:55:34PM +0100]: > Package: drupal7 > Version: 7.41-1 > Severity: normal > Tags: security > X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org > > --- Please enter the report below this line. --- > > Hi! > > There's a critical issue in

Bug#776188: qbzr: autopkgtest fails since 2015-01-01

2016-01-25 Thread Gunnar Wolf
Dmitry Shachnev dijo [Mon, Jan 25, 2016 at 04:08:19PM +0300]: > > qbzr autopkgtest fails on both ci.debian.net [1] and jenkins.qa.ubuntu.com > > [2] > > since recently. > > > > [...] > > > > On both servers, it is clear that the test succeeded in 2014, but started > > failing in 2015 (maybe due

Bug#805762: armory: Click-wrap dialogue appears on first use of package

2016-01-22 Thread Gunnar Wolf
Riley Baird dijo [Sun, Nov 22, 2015 at 05:53:01PM +1100]: > Package: armory > Version: 0.92.3-1+b1 > Severity: normal > > Upon starting armory from the CLI, I get a notice which requires me to tick a > box saying "I agree to all the terms of the license above" before I can use > the > software.

Bug#756305: drupal8: changing from ITP to RFP

2015-12-27 Thread Gunnar Wolf
retitle 756305 ITP: drupal8 -- fully-featured content management framework owner 756305 ! thanks > A long time ago, you expressed interest in packaging drupal8. Unfortunately, > it seems that it did not happen. In Debian, we try not to keep ITP bugs open > for a too long time, as it might cause

Bug#808775: ckeditor: Please update to newer version

2015-12-22 Thread Gunnar Wolf
Package: ckeditor Version: 4.4.4+dfsg1-3 Severity: normal Tags: security Please upgrade ckeditor to a newer release; several new releases have appeared, some of them fixing security-related issues, particularly 4.4.6 and 4.4.8, but many more fixing lots of other issues. Latest release, 4.5.6,

Bug#805035: ITP: pidgin-gpg -- OpenPGP plugin for Pidgin

2015-11-13 Thread Gunnar Wolf
Paulo Roberto Alves de Oliveira (aka kretcheu) dijo [Fri, Nov 13, 2015 at 02:03:05PM -0200]: > * Package name: pidgin-gpg > Version : 0.9 > Upstream Author : Alexander.Murauer. > * URL : https://github.com/segler-alex/Pidgin-GPG > * License

Bug#803396: [Debian-rtc-admin] Bug#803396: options for developers who don't want to use debian.org XMPP

2015-11-10 Thread Gunnar Wolf
Rhonda: > Of course people could be concerned about that forward bot (which > could even take care of replying) be facilitated as sort of a MITM > attack pattern, so it might make sense to have people run such a bot > themself on some host they trust. > > Not so sure about how this would work if

Bug#804725: rtc.debian.org: Provide some information regarding account usage

2015-11-10 Thread Gunnar Wolf
Package: rtc.debian.org Severity: normal Hi, Given that all DDs now have several @rtc.debian.org communication options (at least, SIP and XMPP), it should be useful to give some indication as to whether said accounts are used at all — This bug can be seen as complementing #803396, as I see two

Bug#796397: libreoffice-writer: renders incomplete pages when scrolling upwards with keyboard

2015-10-29 Thread Gunnar Wolf
Sorry, wrong BTS control syntax :-P Besides, you already marked it as found in the version I currently have installed. Will update when I update to the current version.

Bug#796397: libreoffice-writer: renders incomplete pages when scrolling upwards with keyboard

2015-10-29 Thread Gunnar Wolf
Control: fixed -1 libreoffice-writer/1:5.0.3~rc1-2 > Can you try to reproduce this in the current LibreOffice Writer from > ‘sid’ and/or ‘jessie’? If the same behaviour occurs, please set this > bug report's ‘found’ field for that version, otherwise the ‘fixed’ > field if you find the behaviour

Bug#797084: dch: Update to correctly recognize the named -security suites

2015-08-27 Thread Gunnar Wolf
Package: devscripts Version: 2.15.8 Severity: normal When performing a security upload, I asked dch to mark the target distribution as jessie-security, but got: $ dch -D jessie-security dch warning: Recognised distributions are: unstable, testing, stable, oldstable, experimental,

Bug#796243: SA-CORE-2015-003 -- please also fix for backports...

2015-08-20 Thread Gunnar Wolf
Already under way :) I have already prepared 7.32-1+deb8u5 including this fix, it's waiting for approval by the stable security team. I have also uploaded 7.39-1~bpo8+1 to jessie-backports. As for SA-CORE-2015-002, it was fixed in 7.32-1+deb8u4, which is currently part of jessie-security (and

Bug#794875: appstream-dep11: Inconsistent capitalization (typo) in package description

2015-08-07 Thread Gunnar Wolf
Source: appstream-dep11 Version: 0.1.0-1 Severity: minor Tags: patch Very simple typo, you wrote that it can create an HTMl report. Patch follows: --- a/debian/control +++ b/debian/control @@ -43,7 +43,7 @@ Description: Tools to generate and validate DEP-11 AppStream metadata DEP-11 is

Bug#785618: [rt.debian.org #5802] Account for Fabian Greffrath

2015-05-18 Thread Gunnar Wolf
Fabian Greffrath dijo [Mon, May 18, 2015 at 03:33:37PM +0200]: Am Montag, den 18.05.2015, 15:06 +0200 schrieb Fabian Greffrath: Some 17 hours, maybe. But I was so nervous... ;) No, wait a moment. I have just seen that the key has been moved from the DM keyring to the DD keyring on May 10,

<    1   2   3   4   5   6   7   8   9   10   >