Bug#972189: sympa: CVE-2020-10936 regression - removal of needed environment variables

2020-11-06 Thread Sylvain Beucler
Hi, From what I understand the FCGI wrapper was used as CGI through e.g. fcgiwrap, and upstream recommended to switch to fcgi-spawn following https://sympa-community.github.io/manual/install/configure-http-server-spawnfcgi.html Carsten agreed and suggested we add a note about this in the

Bug#973767: dolfin FTBFS: The MPI_Comm_rank() function was called before MPI_INIT was invoked.

2020-11-06 Thread Drew Parsons
Source: dolfin Followup-For: Bug #973767 Yeah, I'm more certain SLEPc is the problem. In the new release they abolishing SLEPc.pc, renaming it slepc.pc. Since pkg-config is case-sensitive, the unexpected change is causing problems. Notice how the reported error is only with dolfin64. Because

Bug#954271: libsys-sigaction-perl: arm64 autopkgtest time out

2020-11-06 Thread Adrian Bunk
Control: forwarded -1 https://github.com/labaxter/sys-sigaction/issues/2 Control: tags -1 buster bullseye sid On Thu, Apr 23, 2020 at 10:06:47PM +0300, Niko Tyni wrote: > On Thu, Mar 19, 2020 at 03:20:34PM +0100, Paul Gevers wrote: > > Source: libsys-sigaction-perl > > Version: 0.23-1 > >

Bug#973890: RM: tty-server/0.0~git20201105.50b9367+ds-1

2020-11-06 Thread Adam D. Barratt
Control: tags -1 + moreinfo On Fri, 2020-11-06 at 21:26 +, Francisco Vilmar Cardoso Ruviaro wrote: > Please, remove the tty-server from testing because it was deprecated > by tty-proxy. That will happen automatically once the package is removed from unstable. Is there a reason that testing

Bug#973333: lintian.d.o: please add a symlink/redirect to the most recent version

2020-11-06 Thread Felix Lechner
Hi Pierre-Elliott, On Fri, Nov 6, 2020 at 5:20 AM Pierre-Elliott Bécue wrote: > > A technical project consisting of people who may have opinions, even > some based on non-very-technical aspects. There are no "non-technical" aspects in my effort to provide the best possible service, aside from

Bug#973889: raptor2: CVE-2017-18926

2020-11-06 Thread Salvatore Bonaccorso
Source: raptor2 Version: 2.0.14-1 Severity: grave Tags: security upstream Justification: user security hole X-Debbugs-Cc: car...@debian.org, Debian Security Team Hi, The following vulnerability was published for raptor2. CVE-2017-18926[0]: | raptor_xml_writer_start_element_common in

Bug#973889: raptor2: diff for NMU version 2.0.14-1.1

2020-11-06 Thread Salvatore Bonaccorso
Control: tags 973889 + patch Control: tags 973889 + pending Dear maintainer, I've prepared an NMU for raptor2 (versioned as 2.0.14-1.1) and uploaded it to DELAYED/2. Please feel free to tell me if I should delay it longer. Regards, Salvatore diff -Nru raptor2-2.0.14/debian/changelog

Bug#973333: lintian.d.o: please add a symlink/redirect to the most recent version

2020-11-06 Thread Pierre-Elliott Bécue
Hi Felix, Le vendredi 06 novembre 2020 à 14:01:22-0800, Felix Lechner a écrit : > Hi Pierre-Elliott, > > On Fri, Nov 6, 2020 at 5:20 AM Pierre-Elliott Bécue wrote: > > > > A technical project consisting of people who may have opinions, even > > some based on non-very-technical aspects. > >

Bug#963509: prospector: Version 1.3.1 now available

2020-11-06 Thread Rogério Brito
Package: prospector Version: 1.1.7-2 Followup-For: Bug #963509 X-Debbugs-Cc: team+pyt...@tracker.debian.org, locutusofb...@debian.org, mat...@debian.org, czc...@debian.org Hi. There is a new version of prospector upstream at https://pypi.org/project/prospector/ that is supposed to fix all

Bug#973822: ITP: dosbox-staging -- DOSBox Staging is a full x86 CPU emulator (independent of host architecture), capable of running DOS programs that require real or protected mode.

2020-11-06 Thread Ben Hutchings
On Fri, 2020-11-06 at 17:55 +0100, David Heidelberg wrote: > Hello Ben, > > I asked about possibility of changing name and the final reply is [1]. > > Quoting dreamer: > Right now, we are fighting to convince users (and developers) to move > on from using a myriad of tiny DOSBox forks (link -

Bug#973884: make-dfsg: fix for extraordinarily-long command lines (#688601) has gone missing

2020-11-06 Thread Mike Crowe
Source: make-dfsg Severity: normal Dear Maintainer, https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=688601 was fixed back in 2014 by applying a patch (dgit:407e2fb3130d4540482a04987222dead70936122) and this fix worked well for us for several years. Unfortunately, this change appears to have

Bug#964497: Info received (ITP: python-jsonrpc-server -- JSON-RPC is a stateless, light-weight remote procedure call (RPC) protocol)

2020-11-06 Thread Pablo Mestre
El 11/1/20 a las 3:33 PM, Otto Kekäläinen escribió: > Hello Pablo! > > Please also check that your watchfile is a working one. Now it fails with: > > ± gbp import-orig --uscan --no-interactive --verbose > gbp:debug: ['git', 'rev-parse', '--show-cdup'] > gbp:debug: ['git', 'rev-parse',

Bug#973880: krb5: CVE-2020-28196

2020-11-06 Thread Sam Hartman
Thanks for the note. I've been meaning to do a much needed krb5 update and this definitely pushes it up the priority stack. I'll work on this over the weekend.

Bug#973886: xserver-xorg-video-nouveau: Suspend to ram is not working with GeForce 210

2020-11-06 Thread Goran Delcev
Package: xserver-xorg-video-nouveau Version: 1:1.0.16-1 Severity: normal X-Debbugs-Cc: barney67...@gmail.com Dear Maintainer, *** Reporter, please consider answering these questions, where appropriate *** I have Installed bullseye (clean install). After installation I have installed firmware

Bug#971704: gnome-shell-pomodoro: diff for NMU version 0.18.0-0.1

2020-11-06 Thread Joseph Herlant
Thanks for doing that. I unfortunately haven't taken any time for opensource since the beginning of this COVID madness. Feel free to push it now. It's totally fine with me. Thanks Joseph

Bug#973657: src:rust-onig: autopkgtest uses enormous amount (> 25 GB) of disk space

2020-11-06 Thread Paul Gevers
Hi Paride, Thanks for the quick fix. On 06-11-2020 09:38, Paride Legovini wrote: > I'm [ ... ] unsure on why the > autopkgtest started misbehaving, given that 5.0.0-3 was uploaded back in > April 2020. That's because I only recently reported the issue. I had blocked your package already for a

Bug#963320: libtgvoip: FTBFS: AttributeError: module 'string' has no attribute 'maketrans'

2020-11-06 Thread Xavier
Le 06/11/2020 à 19:08, Nicholas Guriev a écrit : > On Thu, 2020-11-05 at 06:27 +0100, Xavier wrote: >> I'm unable to reproduce the bug: libtgvoip build works fine here. Could >> you verify that the bug still exists? >> >> Cheers, >> Xavier > > Xavier, which version of the libtgvoip package did

Bug#973492: abseil: Please consider explicitly enable -latomic with armel build

2020-11-06 Thread Benjamin Barenblat
On Tuesday, November 3, 2020, at 10:27 AM -0500, Benjamin Barenblat wrote: > [...] the CMake support files that get installed with libabsl-dev should > probably specify -latomic on armel [...]. I think a single patch might > be able to do both of these [...] It turns out Abseil upstream doesn’t

Bug#963320: libtgvoip: FTBFS: AttributeError: module 'string' has no attribute 'maketrans'

2020-11-06 Thread Nicholas Guriev
On Fri, 2020-11-06 at 22:06 +0100, Xavier wrote: > sorry, I launched a full rebuild in unstable and didn't see this change. > However I don't understand this error (I'm not Python dev), code is: > >  try: >    # maketrans moved to str in python3. >    _maketrans = string.maketrans >  except

Bug#973698: g++-10: regresson in 10.2.0-16: internal compiler error: in tsubst_decl, at cp/pt.c:14666

2020-11-06 Thread Michael R. Crusoe
Thanks for making the issue upstream with the minimal example! I just built with gcc-snapshot 1:20201023-1 and now I get a build error: https://github.com/seqan/seqan3/issues/2236#issuecomment-723232918 On Fri, 6 Nov 2020 at 17:13, Matthias Klose wrote: > Control: forwarded -1

Bug#973887: alsa-utils: alsamixer default Sound Card hangs (high CPU usage) with `pulseaudio --kill`

2020-11-06 Thread rv
Package: alsa-utils Version: 1.2.3-1 Severity: normal X-Debbugs-Cc: riveravaldezm...@gmail.com Dear Maintainer, * What led up to the situation? AFAICT, last system update (yesterday). * What exactly did you do (or not do) that was effective (or ineffective)? With alsamixer running

Bug#973570: fzf: keybinding files should be installed under /etc

2020-11-06 Thread Jai Flack
On Sun, 01 Nov 2020 23:56:28 + yacoob wrote: > Right now the example keybindings for different shells > (/usr/share/doc/fzf/examples/key-bindings.*) are placed under > /usr/share/doc. This is all fine and good, except for cases where you're using > a slimed down file (eg. debian-slim image

Bug#972905: some more information

2020-11-06 Thread Mahashakti89
Hi, Only provisory way out of this: I fetched last version of sane-backends, compiled and installed in /usr/local and it works now. Regards -- Lumière de tous les chakras ! ⚡⚡⚡藍 藍藍

Bug#973877: tcpdump: CVE-2020-8037

2020-11-06 Thread Salvatore Bonaccorso
Hi Romain, On Fri, Nov 06, 2020 at 07:01:46PM +0100, Romain Francoise wrote: > Hi, > > On Fri, Nov 6, 2020 at 1:48 PM Salvatore Bonaccorso wrote: > > The following vulnerability was published for tcpdump. > > > > CVE-2020-8037[0]: > > | The ppp decapsulator in tcpdump 4.9.3 can be convinced to

Bug#973002: Any hint what needs to be done to finalize tensorflow?

2020-11-06 Thread Andreas Tille
On Thu, Nov 05, 2020 at 03:32:17AM +, Mo Zhou wrote: > I'm not sure what packages are exactly missing from Debian, but this > directory is worth being checked, I think: > https://github.com/tensorflow/tensorflow/tree/master/third_party > Some of them are meanwhile PyTorch dependencies, so this

Bug#964497: Info received (ITP: python-jsonrpc-server -- JSON-RPC is a stateless, light-weight remote procedure call (RPC) protocol)

2020-11-06 Thread Otto Kekäläinen
Thanks! I will update the changelog and upload current https://salsa.debian.org/python-team/packages/python-jsonrpc-server/-/commits/debian/master unless Boyuan or Jochen have something more to add/review about the packaging.

Bug#973890: RM: tty-server/0.0~git20201105.50b9367+ds-1

2020-11-06 Thread Francisco Vilmar Cardoso Ruviaro
Hello Adam, On 2020-11-06 21:38, Adam D. Barratt wrote: > That will happen automatically once the package is removed from > unstable. > Ohh Sorry, I thought I should open a bug to remove from testing as well. > Is there a reason that testing removal can't / shouldn't just wait for > that? >

Bug#964195: guacamole-client: CVE-2020-9497 and CVE-2020-9498

2020-11-06 Thread Markus Koschany
Control: tags -1 patch Hi, I'm attaching my patch for Stretch to this bug report. Since the versions in Stretch and unstable are identical, it should work there too. However I don't intend to NMU guacamole-server because I believe a new upstream version should be packaged instead.

Bug#973892: consul: CVE-2020-25201

2020-11-06 Thread Salvatore Bonaccorso
Source: consul Version: 1.7.4+dfsg1-1 Severity: important Tags: security upstream Forwarded: https://github.com/hashicorp/consul/pull/9024 X-Debbugs-Cc: car...@debian.org, Debian Security Team Hi, The following vulnerability was published for consul. I'm not particularly familiar with consul,

Bug#973888: RFS: tinydyndns/0.4.2.debian1-2 [QA] -- pop-before-dyndns service using djbdns

2020-11-06 Thread Baptiste Beauplat
Package: sponsorship-requests Severity: normal Dear mentors, I am looking for a sponsor for my package "tinydyndns": * Package name: tinydyndns Version : 0.4.2.debian1-2 Upstream Author : Gerrit Pape * URL : http://smarden.org/tinydyndns/ * License :

Bug#944372: Backtrace

2020-11-06 Thread Jochen Betz
Hi still experience the same issue. To me it seems that it has problems parsing/handling the mail file in /var/mail/USERNAME. As long as it is empty, it does not fail. As soon as it contains something... segfault! The following is a stack trace I could gather: [Thread debugging using

Bug#973891: RM: tty-server -- ROM; no longer maintained

2020-11-06 Thread Francisco Vilmar Cardoso Ruviaro
Package: ftp.debian.org Severity: normal User: ftp.debian@packages.debian.org Usertags: remove Dear FTP Masters, Please, remove the tty-server from unstable because it was deprecated by tty-proxy. [0]

Bug#973890: RM: tty-server/0.0~git20201105.50b9367+ds-1

2020-11-06 Thread Francisco Vilmar Cardoso Ruviaro
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: rm Dear Release Team, Please, remove the tty-server from testing because it was deprecated by tty-proxy. [0]

Bug#963320: libtgvoip: FTBFS: AttributeError: module 'string' has no attribute 'maketrans'

2020-11-06 Thread Xavier
Le 06/11/2020 à 22:23, Nicholas Guriev a écrit : > On Fri, 2020-11-06 at 22:06 +0100, Xavier wrote: >> sorry, I launched a full rebuild in unstable and didn't see this change. >> However I don't understand this error (I'm not Python dev), code is: >> >>  try: >>    # maketrans moved to str in

Bug#973893: Traducción: es_AR: Preferencias: "Bloquear ventanas emergentesu"

2020-11-06 Thread rv
Package: epiphany-browser Version: 3.38.1-1 Severity: minor X-Debbugs-Cc: riveravaldezm...@gmail.com Hi, dear Maintainer, there's a misspelled word in this Spanish translation: Preferencias: General: "Bloquear ventanas emergentesu" That las 'u' shouldn't be there. Best regards! -- System

Bug#954170: Help: Test suite failures (Was: ITP: anndata -- Annotated gene by sample numpy matrix)

2020-11-06 Thread Diane Trout
On Fri, 2020-11-06 at 08:23 +0100, Andreas Tille wrote: > Dear Diane, > > would you mind pushing your patch to the Git repository? I mean its > your ITP and you are Uploader - so I hesitate to push your very own > patch on behalf of you. ;-) > > Thanks a lot for your helpful hints and

<    1   2