Bug#608044: should support exporting sets of photos (events)

2017-06-04 Thread Jörg Frings-Fürst
Hello, no answer from upstream. So I close this 6 years old bug. CU Jörg -- New: GPG Fingerprint: 63E0 075F C8D4 3ABB 35AB  30EE 09F8 9F3C 8CA1 D25D GPG key (long) : 09F89F3C8CA1D25D GPG Key: 8CA1D25D CAcert Key S/N : 0E:D4:56 Old pgp Key: BE581B6E (revoked since 2014-12-31). Jörg

Bug#864104: garmin-plugin: Please stop Build-Depending on libgcrypt11-dev transition package

2017-06-04 Thread Andreas Metzler
Source: garmin-plugin Version: 0.3.23-1 Severity: normal garmin-plugin build-depends on libgcrypt11-dev. This is a transition package, please use libgcrypt20-dev instead. cu Andreas -- `What a good friend you are to him, Dr. Maturin. His other friends are so grateful to you.' `I sew his ears on

Bug#864103: freeipmi: Please stop Build-Depending on libgcrypt11-dev transition package

2017-06-04 Thread Andreas Metzler
Source: freeipmi Version: 1.4.11-1.1 Severity: normal freeipmi build-depends on libgcrypt11-dev. This is a transition package, please use libgcrypt20-dev instead. cu Andreas -- `What a good friend you are to him, Dr. Maturin. His other friends are so grateful to you.' `I sew his ears on from

Bug#864101: filetea: Please stop Build-Depending on libgcrypt11-dev transition package

2017-06-04 Thread Andreas Metzler
Source: filetea Version: 0.1.16-3 Severity: normal filetea build-depends on libgcrypt11-dev. This is a transition package, please use libgcrypt20-dev instead. cu Andreas -- `What a good friend you are to him, Dr. Maturin. His other friends are so grateful to you.' `I sew his ears on from time

Bug#864102: fis-gtm: Please stop Build-Depending on libgcrypt11-dev transition package

2017-06-04 Thread Andreas Metzler
Source: fis-gtm Version: 6.3-000A-1 Severity: normal fis-gtm build-depends on libgcrypt11-dev. This is a transition package, please use libgcrypt20-dev instead. cu Andreas -- `What a good friend you are to him, Dr. Maturin. His other friends are so grateful to you.' `I sew his ears on from time

Bug#864099: cupt: Please stop Build-Depending on libgcrypt11-dev transition package

2017-06-04 Thread Andreas Metzler
Source: cupt Version: 2.9.9 Severity: normal cupt build-depends on libgcrypt11-dev. This is a transition package, please use libgcrypt20-dev instead. cu Andreas -- `What a good friend you are to him, Dr. Maturin. His other friends are so grateful to you.' `I sew his ears on from time to time,

Bug#864100: event-dance: Please stop Build-Depending on libgcrypt11-dev transition package

2017-06-04 Thread Andreas Metzler
Source: event-dance Version: 0.1.28-4 Severity: normal event-dance build-depends on libgcrypt11-dev. This is a transition package, please use libgcrypt20-dev instead. cu Andreas -- `What a good friend you are to him, Dr. Maturin. His other friends are so grateful to you.' `I sew his ears on

Bug#864097: chntpw: Please stop Build-Depending on libgcrypt11-dev transition package

2017-06-04 Thread Andreas Metzler
Source: chntpw Version: 1.0-1 Severity: normal chntpw build-depends libgcrypt11-dev. This is a transition package, please use libgcrypt20-dev instead. cu Andreas -- `What a good friend you are to him, Dr. Maturin. His other friends are so grateful to you.' `I sew his ears on from time to time,

Bug#864098: clamz: Please stop Build-Depending on libgcrypt11-dev transition package

2017-06-04 Thread Andreas Metzler
Source: clamz Version: 0.5-2 Severity: normal clamz build-depends on libgcrypt11-dev. This is a transition package, please use libgcrypt20-dev instead. cu Andreas -- `What a good friend you are to him, Dr. Maturin. His other friends are so grateful to you.' `I sew his ears on from time to time,

Bug#864096: charybdis: Please stop Build-Depending on libgcrypt11-dev transition package

2017-06-04 Thread Andreas Metzler
Source: charybdis Version: 3.5.3-1 Severity: normal charybdis build-depends libgcrypt11-dev. This is a transition package, please use libgcrypt20-dev instead. cu Andreas -- `What a good friend you are to him, Dr. Maturin. His other friends are so grateful to you.' `I sew his ears on from time

Bug#864095: cadaver: Please stop Build-Depending on libgcrypt11-dev transition package

2017-06-04 Thread Andreas Metzler
Source: cadaver Version: 0.23.3-2 Severity: normal cadaver build-depends libgcrypt11-dev. This is a transition package, please use libgcrypt20-dev instead. cu Andreas -- `What a good friend you are to him, Dr. Maturin. His other friends are so grateful to you.' `I sew his ears on from time to

Bug#864094: aria2: Please stop Build-Depending on libgcrypt11-dev transition package

2017-06-04 Thread Andreas Metzler
Source: aria2 Version: 1.31.0-1 Severity: normal aria2 build-depends libgcrypt11-dev. This is a transition package, please use libgcrypt20-dev instead. cu Andreas -- `What a good friend you are to him, Dr. Maturin. His other friends are so grateful to you.' `I sew his ears on from time to time,

Bug#630196: Shotwell only publishes to cloud services Picasa, Facebook and Flickr

2017-06-04 Thread Jörg Frings-Fürst
Hello, no answer from upstream. So I close this 6 years old bug CU Jörg -- New: GPG Fingerprint: 63E0 075F C8D4 3ABB 35AB  30EE 09F8 9F3C 8CA1 D25D GPG key (long) : 09F89F3C8CA1D25D GPG Key: 8CA1D25D CAcert Key S/N : 0E:D4:56 Old pgp Key: BE581B6E (revoked since 2014-12-31). Jörg

Bug#864093: libotr: Please stop (Build-)Depending on libgcrypt11-dev transition package

2017-06-04 Thread Andreas Metzler
Source: libotr Version: 4.1.1-2 Severity: normal libotr build-depends and libotr5-dev depends on libgcrypt11-dev. This is a transition package, please use libgcrypt20-dev instead. cu Andreas -- `What a good friend you are to him, Dr. Maturin. His other friends are so grateful to you.' `I sew

Bug#862666: ansible: CVE-2017-7481: Security issue with lookup return not tainting the jinja2 environment

2017-06-04 Thread Moritz Mühlenhoff
On Mon, May 15, 2017 at 04:28:24PM +0200, Salvatore Bonaccorso wrote: > Source: ansible > Version: 2.2.1.0-2 > Severity: important > Tags: patch security upstream > > Hi, > > the following vulnerability was published for ansible. > > CVE-2017-7481[0]: > Security issue with lookup return not

Bug#758234: another nasty fallout of this requirement

2017-06-04 Thread Niels Thykier
On Tue, 06 Dec 2016 15:54:46 +0100 Ansgar Burchardt wrote: > On Sat, 2016-12-03 at 06:33 +0100, Adam Borowski wrote: > > And to actually fix the issues, instead of merely dropping the > > mention and > > thus making the dependencies last forever because of inertia, I urge > >

Bug#864091: unblock: ettercap (CVE)

2017-06-04 Thread Gianfranco Costamagna
Package: release.debian.org User: release.debian@packages.debian.org Usertags: unblock Hi Release Team Please unblock package ettercap, we fixed CVE 2017-8366 unblock ettercap/1:0.8.2-5 debdiff attached diff -Nru ettercap-0.8.2/debian/changelog ettercap-0.8.2/debian/changelog ---

Bug#864092: unblock: llvm-toolchain-3.8

2017-06-04 Thread Gianfranco Costamagna
Package: release.debian.org User: release.debian@packages.debian.org Usertags: unblock Hi Release Team Please unblock package llvm-toolchain-3.8, we fixed the Julia build (bad arm64 generated code), and also fixed a sanitizer hang on newer kernels (it is an upstream patch, it might be

Bug#863710: journald's most recent entries

2017-06-04 Thread defanor
> There were lots of changes regarding the journal between v215 and v232 > (which is the version in the upcoming stretch release). > > Would be great if you can try and reproduce the problem with that > version. If it still happens, this should be taken upstream. I've reproduced it with a shell

Bug#792307: closed by Brian Potkin <claremont...@gmail.com> (Re: Bug#863974: hplip should not require systemd)

2017-06-04 Thread Christian Mueller
Correct, sorry, I've been running without any systemd components for such a long time that I forgot the details. Either way, systemd components are currently pulled in and activated (logind-systemd). I don't have a good example for Linux off the top of my head because I've removed systemd a

Bug#863290: src:linux: no warning that btrfs RAID5/6 is buggered up

2017-06-04 Thread Svein Engelsgjerd
Package: src:linux Followup-For: Bug #863290 Dear Maintainer, I would like voice my concern as well. Btrfs RAID5/6 really needs a warning. These days most (if not all) of the problems you see with Btrfs is caused by the unstable features (https://btrfs.wiki.kernel.org/index.php/Status). RAID5/6

Bug#841925: latexmk 4.48 in Debian

2017-06-04 Thread Lucas Nussbaum
Hi, On 24/11/16 at 13:55 +0100, Willi Mann wrote: > Dear Ohura, > > I really would like to see latexmk 4.48 in stretch. It's obviously too late for stretch. But since I use latexmk rather intensively, I would be interested in co-maintaining if you are looking for help. Lucas

Bug#864090: CVE-2017-9409: the ReadMPCImage function in mpc.c allows attackers to cause a denial of service (memory leak) via a crafted file.

2017-06-04 Thread Bastien ROUCARIES
package: src:imagemagick Version: 8:6.9.7.4+dfsg-6 Severity: important Tags: security X-Debbugs-CC: t...@security.debian.org control: found -1 8:6.8.9.9-5+deb8u8 control: found -1 8:6.8.9.9-5+deb8u9 control: found -1 8:6.7.7.10-5+deb7u14 control: found -1 8:6.7.7.10-5+deb7u4 forwarded:

Bug#864087: CVE-2017-9405: the ReadICONImage function in icon.c:452 allows attackers to cause a denial of service (memory leak) via a crafted file.

2017-06-04 Thread Bastien ROUCARIES
package: src:imagemagick Version: 8:6.9.7.4+dfsg-6 Severity: important Tags: security X-Debbugs-CC: t...@security.debian.org control: found -1 8:6.8.9.9-5+deb8u8 control: found -1 8:6.7.7.10-5+deb7u13 control: found -1 8:6.7.7.10-5+deb7u4 forwarded:

Bug#864088: unblock (pre-approval): sqlite3/3.6.12-4

2017-06-04 Thread GCS
Package: release.debian.org User: release.debian@packages.debian.org Usertags: unblock Hi Release Team, I would like to upload a security related update for sqlite3. It contains: - Prevent a possible NULL pointer dereference in the OP_Found opcode that can follow an OOM error. Problem found

Bug#864089: CVE-2017-9407: the ReadPALMImage function in palm.c allows attackers to cause a denial of service (memory leak) via a crafted file.

2017-06-04 Thread Bastien ROUCARIES
package: src:imagemagick Version: 8:6.9.7.4+dfsg-6 Severity: important Tags: security X-Debbugs-CC: t...@security.debian.org control: found -1 8:6.8.9.9-5+deb8u8 control: found -1 8:6.8.9.9-5+deb8u9 control: found -1 8:6.7.7.10-5+deb7u14 control: found -1 8:6.7.7.10-5+deb7u4 forwarded:

Bug#862339: ITP: node-browserify-aes -- aes cipher in pure javascript

2017-06-04 Thread Bastien ROUCARIES
On Sat, Jun 3, 2017 at 6:13 PM, Pirate Praveen wrote: > On Sat, 27 May 2017 15:34:07 +0200 Bastien ROUCARIES > wrote: >> Moreover test suite fail > > Can you push your work to alioth, so others can have a look at the test > failure as well? > >

Bug#864086: libcommoncpp2: Unused (build-)dependencies: gnutls/gcrypt

2017-06-04 Thread Andreas Metzler
Source: libcommoncpp2 Version: 1.8.1-6.1 Severity: normal Tags: patch Hello, afaict libcommoncpp2's (build-)depencies on libgnutls28-dev | libgnutls-dev, libgcrypt11-dev | libgcrypt-dev are unused. The package is not built with --with-gnutls. cu Andreas -- `What a good friend you are to

Bug#856811: solved issue

2017-06-04 Thread Denis Prost
Problem was solved with : ln -s /usr/lib64/sane /usr/lib

Bug#864085: unblock: dnsmasq/2.76-5

2017-06-04 Thread ?
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package dnsmasq The dnsmasq package in testing has a serious problem when dns-root-data is installed, due to changes in the format of the dns-root-data files. The effect is

Bug#854727: Removal from stretch?

2017-06-04 Thread Moritz Muehlenhoff
Moritz Muehlenhoff wrote: > On Fri, Mar 24, 2017 at 07:41:03AM -0400, Scott Howard wrote: > > I was contacted by someone at SUSE that is working on fixing the security > > bugs - but even if successful, I don't know how good the quality will be or > > how much testing will be able to get done

Bug#864084: unblock: zabbix/1:3.0.7+dfsg-3

2017-06-04 Thread Dmitry Smirnov
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Affects: -1 zabbix X-Debbugs-CC: j...@debian.org Please unblock zabbix/1:3.0.7+dfsg-3 I would like to accommodate two attached diffs to Stretch please. One fixes defunctional UI (broken

Bug#792307: closed by Brian Potkin <claremont...@gmail.com> (Re: Bug#863974: hplip should not require systemd)

2017-06-04 Thread Simon McVittie
On Sat, 03 Jun 2017 at 22:50:58 +0200, Christian Mueller wrote: > (separate temp mount points for > each user) which, apart from the incredible clutter in the list of mounted > file systems, breaks my workflows (I need a single /tmp for all users). systemd-logind mounts a small tmpfs at

Bug#864077: tellico-doc: khelpcenter error 'Documentation not found'

2017-06-04 Thread Geert Stappers
Control: tags -1 confirmed On Sun, Jun 04, 2017 at 03:27:31PM +0930, David Nebauer wrote: > When invoking tellico help, khelpcenter open with the error message > 'Documentation not found'. This occurs whether help is invoked using the > tellico help menu, by pressing F1 in tellico, or directly

Bug#864083: unblock: libgcrypt20/1.7.6-2

2017-06-04 Thread Niels Thykier
Control: tags -1 confirmed d-i Andreas Metzler: > Package: release.debian.org > Severity: normal > User: release.debian@packages.debian.org > Usertags: unblock > > Please unblock package libgcrypt20, the upload features the following > changes: > * Refresh debian/upstream/signing-key.asc,

Bug#864083: unblock: libgcrypt20/1.7.6-2

2017-06-04 Thread Andreas Metzler
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package libgcrypt20, the upload features the following changes: * Refresh debian/upstream/signing-key.asc, key-expiry-dates bumped. * Pull two fixes from gcrypt 1.7.7 bugfix

Bug#864082: fontconfig: please make the cache files reproducible

2017-06-04 Thread Chris Lamb
Source: fontconfig Version: 2.12.1-0.1 Severity: wishlist Tags: patch User: reproducible-bui...@lists.alioth.debian.org Usertags: timestamps X-Debbugs-Cc: reproducible-b...@lists.alioth.debian.org Hi, Whilst working on the Reproducible Builds effort [0], we noticed that fontconfig generates

Bug#716982: note

2017-06-04 Thread Geert Stappers
Package gwenview has directory debian/tests $ ls -l ~/src/gwenview/debian/tests/ totaal 12 -rw-r--r-- 1 stappers stappers 204 jun 4 08:37 control -rwxr-xr-x 1 stappers stappers 391 jun 4 08:37 testsuite -rwxr-xr-x 1 stappers stappers 102 jun 4 08:37 testsuite.xsession $ cat

Bug#864080: openssl: libssl1.1-udeb is missing versioned dependency on libcrypto1.1-udeb

2017-06-04 Thread Niels Thykier
Package: openssl Version: 1.1.0e-2 Severity: serious Tags: d-i As noted in #863472: """ The libssl1.1-udeb package is broken, as it fails to depend on an appropriate version of libcrypto1.1-udeb, which means I've just successfully built a debian-installer against testing with this addition:

Bug#864079: ITP: backuppc-rsync -- rsync optimised for BackupPC backup utility

2017-06-04 Thread Ludovic Drolez
Package: wnpp Severity: wishlist Owner: Ludovic Drolez * Package name: backuppc-rsync Version : 3.0.9.7 Upstream Author : Craig Barratt * URL : https://github.com/backuppc/rsync-bpc * License : GPL

Bug#835127: tellico: Tellico always crashes at boot time

2017-06-04 Thread Andrej Mernik
Package: tellico Followup-For: Bug #835127 Dear Maintainer, I have installed version 3.0.2-1.1 from unstable on my Stretch install and the crashing seems to be gone for good. Best Regards, Andrej Mernik -- System Information: Debian Release: 9.0 APT prefers testing APT policy: (500,

Bug#863308: fixed in golang-1.7 1.7.6-1

2017-06-04 Thread Moritz Mühlenhoff
On Thu, Jun 01, 2017 at 10:05:07AM +, Michael Hudson-Doyle wrote: > Closes: 863308 > Changes: > golang-1.7 (1.7.6-1) unstable; urgency=medium > . >* New upstream release. (Closes: #863308) >* Remove d/patches/cl-29995--tzdata-2016g.patch, applied upstream. Are you planning to file

Bug#795657: libapache2-mod-nss: CVE-2015-3277: incorrect multi-keyword mode cipherstring parsing

2017-06-04 Thread Salvatore Bonaccorso
Hi, On Sun, Jun 04, 2017 at 08:26:19AM +0200, Moritz Mühlenhoff wrote: > On Sun, Aug 16, 2015 at 08:05:18AM +0200, Salvatore Bonaccorso wrote: > > Source: libapache2-mod-nss > > Version: 1.0.11-1 > > Severity: important > > Tags: security upstream > > > > Hi, > > > > the following vulnerability

Bug#864078: CVE-2017-9110 CVE-2017-9111 CVE-2017-9112 CVE-2017-9113 CVE-2017-9114 CVE-2017-9115 CVE-2017-9116 CVE-2017-9117

2017-06-04 Thread Moritz Muehlenhoff
Source: openexr Severity: grave Tags: security Please see http://www.openwall.com/lists/oss-security/2017/05/12/5 These were reported upstream at https://github.com/openexr/openexr/issues/232 Upstream fixes are linked in the github bug. Cheers, Moritz

Bug#539798: texlive: please suggest -doc packages

2017-06-04 Thread Chris Lamb
Hi Norbert, > You should maybe have taken a look at the systemd bug, where there is > definitely more to do. > > Thanks for your inactivity. It is disheartening (and somewhat unfair) that you have taken my non- involvement in a different bug that I have not seen before as evidence of

Bug#795657: libapache2-mod-nss: CVE-2015-3277: incorrect multi-keyword mode cipherstring parsing

2017-06-04 Thread Moritz Mühlenhoff
On Sun, Aug 16, 2015 at 08:05:18AM +0200, Salvatore Bonaccorso wrote: > Source: libapache2-mod-nss > Version: 1.0.11-1 > Severity: important > Tags: security upstream > > Hi, > > the following vulnerability was published for libapache2-mod-nss, > introduced with the update to 1.0.11. > >

Bug#853034: patches Re: unar: Fuzzer-generated crashing testcases for a dozen identified file formats

2017-06-04 Thread Julián Moreno Patiño
Hello YOSHINO Yoshihito, Thanks for your patches, I will look into it tomorrow afternoon (GMT-5). Kind regards, -- Julián Moreno Patiño Debian Developer  .''`. Debian GNU/{Linux,KfreeBSD} : :' : Free Operating Systems `. `'  http://debian.org/   `-   GPG Fingerprint: C2C8 904E 314C D8FA 041D

Bug#864067: unblock: plasma-workspace/5.8.6-2.1

2017-06-04 Thread Nobuhiro Iwamatsu
Hi, 2017-06-04 15:00 GMT+09:00 Niels Thykier : > Control: tags -1 confirmed moreinfo > > Nobuhiro Iwamatsu: >> Package: release.debian.org >> Severity: normal >> User: release.debian@packages.debian.org >> Usertags: unblock >> >> Hi, >> >> I want to upload a NMU of

Bug#859151: Bug#859271: thunderbird: Please add build support for m68k

2017-06-04 Thread Carsten Schoenert
Control: tags -1 pending Hello Adrian, On Thu, Jun 01, 2017 at 06:06:53PM +0200, John Paul Adrian Glaubitz wrote: > Hi Carsten! > > On 05/05/2017 11:47 AM, Carsten Schoenert wrote: > > Could you prepare new updates patches so we can add sparc64 support > > again? We probably need to upload more

Bug#864067: unblock: plasma-workspace/5.8.6-2.1

2017-06-04 Thread Niels Thykier
Control: tags -1 confirmed moreinfo Nobuhiro Iwamatsu: > Package: release.debian.org > Severity: normal > User: release.debian@packages.debian.org > Usertags: unblock > > Hi, > > I want to upload a NMU of plasma-workspace to unstable fixing an issue > where processing stopped in ksplashqml

Bug#864076: unblock: distro-info-data/0.36

2017-06-04 Thread Niels Thykier
Control: tags -1 confirmed moreinfo Stefano Rivera: > Package: release.debian.org > Severity: normal > User: release.debian@packages.debian.org > Usertags: unblock > > Please unblock package distro-info-data > > This is a pre-upload unblock request for distro-info-data, now that the >

Bug#864077: tellico-doc: khelpcenter error 'Documentation not found'

2017-06-04 Thread David Nebauer
Package: tellico-doc Version: 3.0.2-1.1 Severity: normal Dear Maintainer, When invoking tellico help, khelpcenter open with the error message 'Documentation not found'. This occurs whether help is invoked using the tellico help menu, by pressing F1 in tellico, or directly from a shell

<    1   2   3