On Fri, Aug 06, 2021 at 08:08:45AM +0200, Salvatore Bonaccorso wrote:
> Hi,
>
> On Thu, Aug 05, 2021 at 11:49:41AM +0200, Moritz Mühlenhoff wrote:
> > Am Thu, Aug 05, 2021 at 09:19:14AM + schrieb Debian FTP Masters:
> > > Source: otrs2
> > > Source-Version: 6.0.32-6
> > > Done: Patrick
Hi,
On Fri, Aug 06, 2021 at 09:11:12AM +0200, Moritz Muehlenhoff wrote:
> On Fri, Aug 06, 2021 at 08:08:45AM +0200, Salvatore Bonaccorso wrote:
> > Hi,
> >
> > On Thu, Aug 05, 2021 at 11:49:41AM +0200, Moritz Mühlenhoff wrote:
> > > Am Thu, Aug 05, 2021 at 09:19:14AM + schrieb Debian FTP
Package: ifenslave
Version: 2.12
Problem while trying to bring up bond0 or any bonding interface.
ifup[933]: No iface stanza found for master bond0
The root cause is ifenslave shipped with a script, referring to ifstate command
which is not present.
Script:/etc/network/if-pre-up.d/ifenslave
HI Paul,
On Fri, Aug 06, 2021 at 08:40:24AM +0200, Paul Gevers wrote:
> Hi Christopher,
>
> On 02-08-2021 13:33, Christoph Martin wrote:
> > Please unblock package libapache2-mod-auth-openidc
> >
> > currently the version 2.4.4.1-2 of libapache2-mod-auth-openidc is in
> > testing/bullseye .
On 05/08/2021 22:47, Daniel Schepler wrote:
On Mon, Aug 2, 2021 at 10:45 PM Shachar Shemesh wrote:
Can you run fakeroot-ng with "-l" and attach the generated log file?
Here's the log from the run where make fails.
The expected happened:
3331985: Unknown syscall 435(NONE)
3331985: Unknown
Hi Christopher,
On 02-08-2021 13:33, Christoph Martin wrote:
> Please unblock package libapache2-mod-auth-openidc
>
> currently the version 2.4.4.1-2 of libapache2-mod-auth-openidc is in
> testing/bullseye . Some days ago four CVE security bugs were published
> which are fixed in version 2.4.9 .
Hi,
On Thu, Aug 05, 2021 at 11:49:41AM +0200, Moritz Mühlenhoff wrote:
> Am Thu, Aug 05, 2021 at 09:19:14AM + schrieb Debian FTP Masters:
> > Source: otrs2
> > Source-Version: 6.0.32-6
> > Done: Patrick Matthäi
> >
> > We believe that the bug you reported is fixed in the latest version of
>
On Thu, Aug 05, 2021 at 10:21:30PM +0200, Michael Banck wrote:
> I've run "dracut --no-kernel" in a minimal lxc container, once with
> pkg-config and once without and then diffoscope'd the two generated
> initrds. Most of what diffoscope complains about are timestamp
> differences in directories
On Fri, Aug 06, 2021 at 05:08:40PM +0900, Mike Hommey wrote:
> Package: snapshot.debian.org
> Followup-For: Bug #960304
>
> Dear Maintainer,
>
> We're hitting this problem regularly on Mozilla CI (from using dget),
> and what is probably a variant of this bug with apt, which fails with,
> for
should be caused by:
- https://bugs.debian.org/897653
if you upgrade tar to buster version 1.30+dfsg-6 or later, it should
be resolved.
--
Roger Shimizu, GMT +9 Tokyo
PGP/GPG: 4096R/6C6ACD6417B3ACB1
Followup-For: Bug #969611
node-setimmediate has Suggests: libjs-mocha (>= 3), but that package no
longer exists after stretch.
A possible replacement is the virtual, versioned node-mocha (= 8.2.1)
provided by mocha (8.2.1+ds1+~cs29.4.27-3) which ships
/usr/share/nodejs/mocha/lib/mocha.js
Package: src:asterisk
Severity: serious
Tags: security upstream patch
https://downloads.asterisk.org/pub/security/AST-2021-009.html
Summary:pjproject/pjsip: crash when SSL socket destroyed during
handshake
Nature of Advisory: Denial of service
Susceptibility: Remote
Package: mokutil
Version: 0.4.0-1
Severity: normal
Tags: patch
Usertags: origin-ubuntu impish ubuntu-patch
Dear maintainer,
building mokutil for RISC-V only requires debian/control to be adjusted.
See Ubuntu package mokutil 0.4.0-1ubuntu1.
U-Boot already supports booting via UEFI on RISC-V
control: reassign -1 cross-toolchain-base-ports-46
control: tag -1 + patch
control: tag -1 - moreinfo
control: tag -1 - unreproducible
On 2021-08-05 18:59, Aurelien Jarno wrote:
> control: tag -1 + moreinfo
> control: tag -1 + unreproducible
>
> On 2021-08-04 19:03, Matthias Klose wrote:
> >
Package: libjs-bootstrap4
Version: 4.5.2+dfsg1-7
Severity: serious
User: debian...@lists.debian.org
Usertags: piuparts
Hi,
during a test with piuparts I noticed your package ships (or creates)
a broken symlink.
>From the attached log (scroll to the bottom...):
0m13.9s ERROR: FAIL: Broken
Package: python3-icecream
Version: 2.0.0-1
Severity: wishlist
Hi,
please package the newer upstream release 2.1.1.
Thanks,
Petr
-- System Information:
Debian Release: 11.0
APT prefers stable-updates
Architecture: amd64 (x86_64)
Foreign Architectures: i386
Versions of packages
On 06/08/2021 02:47, Ross Vandegrift wrote:
Hi Chris,
On Thu, Jul 29, 2021 at 10:24:22AM +0100, Chris Boot wrote:
In the sudoers file there is a duplicate includedir
statement; at the end of the file you will find the following contents:
"""
# See sudoers(5) for more information on "@include"
Hi,
I see that power-profiles-daemon has been in experimental for a while?
Is there any particular reason why we should not close this ITP?
Thanks a lot for packaging this piece of software, can't wait to try
it once GNOME 41 lands in sid with the corresponding GNOME Shell UI
bits :)
Hi,
I've restructured openscap pacakge to fix Bug#990183 and make it
better, upload to https://salsa.debian.org/henrich/openscap
I'll upload it to experimental with delay-10, if you want to cancel
it, don't hestitate.
--
Regards,
Hideki Yamane henrich @ debian.org/iijmio-mail.jp
Package: wnpp
Severity: wishlist
Owner: clay stan
X-Debbugs-Cc: debian-de...@lists.debian.org
* Package name: rust-liboverdrop
Version : 0.0.2
Upstream Author : overdrop
* URL : https://github.com/overdrop/liboverdrop-rs
License : MIT or Apache-2.0
Hi Paul,
Thanks for your reply.
On 21-08-06 08:32:20, Paul Gevers wrote:
> It's too late for changes like this one.
Is this due to mat2 being a key package?
Besides, would this potentially accepted in 11.1?
Cheers,
Georg
Package: isc-dhcp
Version: 4.4.1-2.3
Severity: normal
Report that 4.4.1-2.3 is missing from git:
https://qa.debian.org/cgi-bin/vcswatch?package=isc-dhcp
upstream/4.4.1 tag missing
https://salsa.debian.org/dhcp-team/isc-dhcp/-/tags so gbp build will report
an error trying to build master.
Hi Paul,
hi Salvatore,
Am 06.08.21 um 09:32 schrieb Salvatore Bonaccorso:
>>
>> It's *very* late in the freeze so I need an answer *real soon*. You
>> didn't tell us how you tested the package, how upstream tested the
>> changes and how you *judge* the changes between bullseye and sid. I
>> can't
Source: linux
Severity: normal
Dear Maintainer,
*** Reporter, please consider answering these questions, where
appropriate ***
* What led up to the situation?
I have installed Debian 11 (debian installer RC3) on a PC having a
Nvidia GeForce 8500 GT as main graphics card.
The graphicall
Package: release.debian.org
Severity: normal
User: release.debian@packages.debian.org
Usertags: unblock
Please unblock package munge
[ Reason ]
* Cherry-pick upstream patch to allow to upgrade from buster to bullseye
[ Impact ]
Remove some minor tests to fix kfreebsd builds and a useless
Package: snapshot.debian.org
Followup-For: Bug #960304
Dear Maintainer,
We're hitting this problem regularly on Mozilla CI (from using dget),
and what is probably a variant of this bug with apt, which fails with,
for example:
[task 2021-08-05T21:27:09.094Z] Err:187
Package: openssh-server
Version: 1:8.4p1-5ubuntu2
Severity: serious
X-Debbugs-Cc: j...@debian.org
seccomp filters are currently setup to kill the process
#define SECCOMP_FILTER_FAIL SECCOMP_RET_KILL
/* Default deny */
BPF_STMT(BPF_RET+BPF_K, SECCOMP_FILTER_FAIL),
this means
Package: python3-pdfminer
Version: 20200726-1
Severity: normal
python3-crypto was removed from bullseye in January 2021, and from unstable
in July 2021. The removal bug https://bugs.debian.org/979318 says it is
no longer maintained upstream and has been superseded by pycryptodome.
Note that
Source: libopenobex
Version: 1.7.2-1
Severity: minor
Tags: patch
User: reproducible-bui...@lists.alioth.debian.org
X-Debbugs-Cc: reproducible-b...@lists.alioth.debian.org
Hi,
It looks like libopenobex is missing an *optional* dependency on
graphviz to generate a documentation, leading to a large
Package: desktop-base
Version: 11.0.3
Followup-For: Bug #954093
Dear Maintainer,
I've just installed a PC with KDE Plasma desktop task using the Debian 11
installer RC3 and this bug is still present.
My computer is all HomeWorld-themed except the desktop wallpaper (I got the
"Shells" one).
I
Package: wnpp
Severity: wishlist
X-Debbugs-Cc: ekilachk...@gmail.com
* Package name: virtualbox-completion
Version : 6.1.22
Upstream Author : Roman Dobosz
* URL : https://github.com/gryf/vboxmanage-bash-completion
* License : BSD-3-Clause
Programming Lang:
I also filed an upstream bug on this:
https://github.com/chardet/chardet/issues/231
Source: xuxen-eu-spell
Version: 0.5.20151110-5
Severity: normal
Dear Maintainer,
New uptream version is avaliable, see here http://xuxen.eus/eu/deskargatu .
Direct link: http://xuxen.eus/static/hunspell/xuxen_5.1_hunspell.zip
Package: debian-installer
Severity: important
https://www.debian.org/releases/bullseye//amd64/ch03s04.en.html says this
should be supported.
But when using 512 MB of memory in text mode (which triggers low memory mode),
or even 1024 MB of memory, makes it be stuck.
Using multi-arch image for
Source: chardet
Version: 4.0.0-1
During licensing checks of the "chardet" sources, we identified
problematic files in tests/. In general, tests/README.txt states:
[...]
These test feeds were downloaded from random sites while I was
developing the Universal Encoding Detector. Each feed is
Source: postfix
Version: postinst fails if /e/resolv.conf search domain starts with a "."
Severity: normal
X-Debbugs-Cc: par...@debian.org
Dear Postfix maintainers,
When the /etc/resolv.conf search domain considered by postfix.postinst
to configure postfix as an "Internet site" (the default
Great catch! Shouldn't the script also take care of unmounting these
> if it's the one who mounted them, though? (It makes the logic a bit
> more complex, but seems like the "right" solution to me.)
>
> I've also added Rod explicitly to CC here, since this is really an
> upstream rEFInd bug (and
Control: tags -1 + patch
I submitted this MP with a fix:
https://salsa.debian.org/postfix-team/postfix-dev/-/merge_requests/12
Cheers!
Paride
Package: golang-github-google-martian-dev
Version: 2.1.0+git20181219.d0b5ad3-3
Severity: normal
Hi,
I need to update another package[1] that requires github.com/google/martian/v3
I'll prepare a release on debian/experimental branch on salsa for a team
upload to experimental so I can go on with
On Fri, 6 Aug 2021 at 06:42, Marc Leeman wrote:
> I am using refind with an netinst installer. Since bullseye this seems
> broken because sysfs/efivarfs is no longer mounted by default in the
> target and efibootmgr fails
>
> I've tested this patch on my side (simply trying to mount sys/efivarfs
Package: refind
Version: 0.12.0-2~televic11+3
Severity: normal
Dear Maintainer,
I am using refind with an netinst installer. Since bullseye this seems
broken because sysfs/efivarfs is no longer mounted by default in the
target and efibootmgr fails
I've tested this patch on my side (simply
> On Fri, 6 Aug 2021 12:34:13 +0200, Dominik George
> said:
> If Thomas consents, I would make the change in experimental as well
> and we will see how it works out. I do not see any reason not to
> demote pkg-config.
Go for it.
--
viele Grüße Thomas
Hi Maintainer
This change was recently adopted in Ubuntu, along with the attached
patch to update crontab(5) manpage to match the new behaviour.
Regards
Graham
Description: Update crontab(5) manpage to match new behaviour
Bug-Debian: https://bugs.debian.org/688716
Bug-Ubuntu:
Source: klibc
Severity: wishlist
Tags: patch
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA256
Hi,
Please consider including the attached machine-readable copyright file.
I tried to make it as precise as I can based on the information in the
source and accompanying text files; improve it as you
I'm attaching the dmesg and lspci output for the case they are useful.
Kind regards
--
Laura Arjona Reina
https://wiki.debian.org/LauraArjona
Sent with K-9 mail[0.00] Linux version 5.10.0-8-amd64 (debian-ker...@lists.debian.org)
(gcc-10 (Debian 10.2.1-6) 10.2.1 20210110, GNU ld (GNU
Source: apt-setup
Version: 1:0.166
Severity: wishlist
Tags: d-i
X-Debbugs-Cc: car...@debian.org
Dear Debian Install System Team,
When installing bullseye with the current RC3 I noticed that while the
debconf menu suggests (and has selected) to add release updates suites
($codename-updates) to
Package: golang-google-cloud-dev
Version: 0.56.0-1
Severity: normal
Hi,
I am working on packaging github.com/smallstep/certificates which
depends on v0.86 of this package.
I would prepare an updated version for team upload to experimental so that I
can go on with packaging.
Please let me
Hello,
On Thu, Aug 05, 2021 at 05:26:09PM +, Diederik de Haas wrote:
> At
> https://salsa.debian.org/raspi-team/image-specs/-/issues/7#note_206349
> it was reported that CPU frequency scaling was enabled for armhf and
> arm64, but not for armel. I (and others) have been able to confirm that.
Hi,
Laura Arjona Reina (2021-08-06):
> Package: desktop-base
> Version: 11.0.3
> Followup-For: Bug #954093
>
> Dear Maintainer,
>
> I've just installed a PC with KDE Plasma desktop task using the Debian
> 11 installer RC3 and this bug is still present.
>
> My computer is all HomeWorld-themed
Source: cython
Severity: wishlist
X-Debbugs-Cc: step...@jadevine.org.uk
Dear Maintainer,
The current packaged version of Cython is 0.29.14 which was released
in November 2019. Since then there have been 10 bug fix releases with
the latest being 0.29.24 which came out in July 2021. I would so
David Bremner writes:
> As a workaround, I noticed that setting the main ethernet interface to
> "auto" instead of "allow-hotplug" seems to fix the problem. By way of
> confirmation, on a different (virtual) machine changing the "auto" to
> "allow-hotplog" on the main ethernet interface causes
Hi,
On vrijdag 6 augustus 2021 15:14:26 CEST Uwe Kleine-König wrote:
> On Thu, Aug 05, 2021 at 05:26:09PM +, Diederik de Haas wrote:
> > https://salsa.debian.org/raspi-team/image-specs/-/issues/7#note_206349
> >
> > So I build my own kernel with the following patch:
> >
Hi Erich,
Thanks for your report.
> 1. This upstream patch should be included in the package:
>
> https://git.gnu.org.ua/wikitrans.git/commit/?id=c785e3ad767b12a13ae75a3513ec88a4d1144210
Sure. It will be included when new version is released.
> 2. A wrong variable name is used here:
> File
Hi Georg,
On 06-08-2021 11:07, Georg Faerber wrote:
>
> On 21-08-06 08:32:20, Paul Gevers wrote:
>> It's too late for changes like this one.
>
> Is this due to mat2 being a key package?
That's part of the equation, yes.
> Besides, would this potentially accepted in 11.1?
I won't speak for
Hi Paul,
On 21-08-06 14:07:00, Paul Gevers wrote:
> That's part of the equation, yes.
Thanks for clarifying.
> I won't speak for SRM, but I would expect so.
Thanks!
> Tip: reportbug from bullseye has a better template for unblock and p-u
> bugs than buster. Please be verbose on impact, tests
Package: texlive-binaries
Version: 2018.20181218.49446-1
Severity: minor
Dear Maintainer,
Description of the '--output-directory' option in the man pages
of etex, pdftex, aleph and mf contains:
<...> in directory first, the along the normal <...>
instead of
<...> in directory first, then
Package: release-notes
I would like to add a paragraph to the release-notes, describing a bit the
new "install-firmware" mechanism via modalias, with a link to the new doc
in the installation-guide, for those who experience problems.
Please find a patch attached.
(Additionally, I updated some
Just for the record, there is an upstream issue #1794 [1] related to
this.
[1] https://github.com/svaarala/duktape/issues/1794
[2] https://github.com/svaarala/duktape/pull/2375
Hi,
On Fri, Aug 06, 2021 at 05:14:32PM +, Thorsten Glaser
wrote in
https://lists.nongnu.org/archive/html/lynx-dev/2021-08/msg0.html:
> this affects both OpenSSL and Debian’s nonGNUtls builds:
>
> lynx https://user:pass@host/
>
> … will lead to…
>
> SSL
>
Axel Beckert dixit:
>This is more severe than it initially looked like: Due to TLS Server
>Name Indication (SNI) the hostname as parsed by Lynx (i.e with
>"user:pass@" included) is sent in _clear_ text over the wire even
I *ALWAYS* SAID SNI IS A SHIT THING ONLY USED AS BAD EXCUSE FOR NAT
BY
>Axel Beckert dixit:
>>IMHO this nevertheless needs a CVE-ID.
I wonder… perhaps the use of SNI, both in the TLSv1.3 standard
and in some TLSv1.2 implementations, should receive CVEs as well?
It certainly ought to be disabled by default. Perhaps add some
environment variable to enable SNI in the
Hi Karl,
"Karl O. Pinc" writes:
>
> As long a your messing about with the documentation
> attached is a 1 page (or 2 if you want to keep reading)
> doc on getting started with emacs. If you feel it would
> be helpful to include (somewhere), please do.
>
> I'll license it in the public domain,
Package: lynx
Version: 2.9.0dev.8-1
Severity: important
Tags: upstream, confirmed
Control: forwarded -1
https://lists.nongnu.org/archive/html/lynx-dev/2021-08/msg0.html
Control: found -1 2.8.9dev1-2+deb8u1
Control: found -1 2.8.9dev11-1
Control: found -1 2.8.9rel.1-3
Control: found -1
Hello again
I formerly said that my desktop was all Homeworld-themed except the
wallpaper, but I just found out that the lockscreen also had the
"Shells" background instead of the proposed Homeworld image for
lockscreen.
I'm not sure if Plymouth is also well integrated or not because this
Package: www.debian.org
Some muscle memory from a long time ago kicked in, and I browsed to
backports.org instead of to backports.debian.org.
backports.org now seems to serve the Debian homepage, and in the process
triggers the browser's invalid certificate error, because the
certificate is
Package: dbconfig-common
Version: 2.0.19
Severity: important
User: debian...@lists.debian.org
Usertags: piuparts
Control: affects -1 + pdns-backend-sqlite
Hi,
during a test with piuparts I noticed your package causes
pdns-backend-sqlite (which may still be around from wheezy which was the
last
Package: python3-openstackclient
Version: 5.4.0-4
Severity: normal
Dear maintainers,
When installing python3-openstackclient, the python-openstackclient-doc
package is not installed. This results in /usr/bin/openstack not having
a man page by default and isn't great UX.
Would it be possible to
Package: user-mode-linux
Version: 5.10um3
Severity: normal
File: /usr/bin/linux.uml
Observed behaviour:
$ linux.uml
Core dump limits :
soft - 0
hard - NONE
Checking that ptrace can change system call numbers...OK
Checking syscall emulation patch for ptrace...OK
Checking advanced
Package: putty-tools
Version: 0.75-3
Severity: normal
File: /usr/bin/psusan
psusan(1) suggests this:
And the setup script uml-psusan.sh might look like this:
#!/bin/bash
# Set up vital pseudo-filesystems
mount -t proc none /proc
mount -t devpts none /dev/pts
Source: golang-1.15
Version: 1.15.9-6
Severity: important
Tags: security upstream
Forwarded: https://github.com/golang/go/issues/46866
X-Debbugs-Cc: car...@debian.org, Debian Security Team
Hi,
The following vulnerability was published for golang-1.15.
CVE-2021-36221[0]:
| net/http: panic due
Control: reopen 991705
Control: retitle 991705 exiv2: CVE-2021-29457
Control: found 991705 0.27.3-3
Control: found 991705 0.25-4
Control: forwarded 991705 https://github.com/Exiv2/exiv2/issues/1529
Control: retitle 987277 CVE-2021-29458
Control: forwarded 987277
Control: found -1 5.10um3
I repro'd this on sid, but I ran reportbug in my buster environment.
I forgot to change the version in the report.
--
Ian JacksonThese opinions are my own.
Pronouns: they/he. If I emailed you from @fyvzl.net or @evade.org.uk,
that is a private address which
Package: user-mode-linux
Version: 5.10um3
Severity: minor
File: /usr/bin/linux.uml
Observed behaviour:
(build)root@zealot:/home/ian# stty -a; bwrap --dev-bind / / --tmpfs /dev/shm
linux.uml init=/bin/date; stty -a
speed 38400 baud; rows 90; columns 127; line = 0;
intr = ^C; quit = ^\; erase =
Package: user-mode-linux
Version: 4.19-1um-1+deb10u1+b1
Severity: normal
File: /usr/bin/linux.uml
Tags: upstream
CCing putty@p.d.o because this makes the user-mode-linux example in
the psusan manpage not work.
Steps to reproduce:
Put the attached scripts "psusan-uml" and "psusan-uml-inside"
Package: bash
Version: 5.1-3
Severity: important
File: /bin/bash
Tags: security
Observed behaviour:
$ env - bash -c 'echo $PATH'
/usr/local/bin:/usr/local/sbin:/usr/bin:/usr/sbin:/bin:/sbin:.
$
Expected behaviour:
$ env - bash -c 'echo $PATH'
Control: title -1 /usr/bin/linux.uml: consoles do not work if they are ready
for reading at startup
--
Ian JacksonThese opinions are my own.
Pronouns: they/he. If I emailed you from @fyvzl.net or @evade.org.uk,
that is a private address which bypasses my fierce spamfilter.
Source: gpac
Version: 1.0.1+dfsg1-4
Severity: important
Tags: security upstream
Forwarded: https://github.com/gpac/gpac/issues/1842
X-Debbugs-Cc: car...@debian.org, Debian Security Team
Hi,
The following vulnerability was published for gpac.
CVE-2021-36584[0]:
| An issue was discovered in GPAC
Package: lintian
Version: 2.104.0
Severity: wishlist
Dear maintainers,
There is currently code in lib/Lintian/Check/Fields/Maintainer/Team.pm
to check if a team-maintained package ends up in the wrong team.
It would be nice if it were possible to issue another tag when a
team-maintained package
Package: reportbug
Version: 7.10.3
Severity: wishlist
Dear Maintainer,
* What led up to the situation?
$ reportbug src:gtk4
* What exactly did you do (or not do) that was effective (or
ineffective)?
I would like to report a «bug» that affect both libgtk-4-bin and libgtk-4-1
Package: pinentry-gnome3
Version: 1.1.0-4
Severity: wishlist
Tags: newcomer
Dear Maintainer,
Hitting ENTER not with equal result as clicking "OK" icon when using for
example gpg may cause unnecessary (?) paranoia
-- System Information:
Debian Release: 11.0
APT prefers testing
APT policy:
Package: libgtk-4-1
Version: 4.3.1+ds-2
Severity: minor
Dear Maintainer,
I do not know if it is a consequence to solve #985418, but with this update I
got the following on my system:
$ apt-file search /usr/share/doc/@SHARED_PKG@
libgtk-4-1: /usr/share/doc/@SHARED_PKG@/@NEWS@
libgtk-4-1:
Control: forcemerge 781367 991959
Hi Ian,
On Fri, Aug 06, 2021 at 06:39:21PM +0100, Ian Jackson wrote:
> Package: bash
> Version: 5.1-3
> Severity: important
> File: /bin/bash
> Tags: security
>
> Observed behaviour:
>
> $ env - bash -c 'echo $PATH'
>
Package: hunspell-an
Version: 0.2-4
Severity: normal
The current package shows a Firefox extension as Homepage (and probably
upstream). This is not a very good upstream. The Aragonese dictionary is
unmaintained (no updates since 2011) and it has no real upstream. It would be
best to use
Package: firmware-brcm80211
Version: 20210315-3
Severity: important
Tags: security
X-Debbugs-Cc: Debian Security Team
A whole bunch of wifi (protocol-level) security flaws were published
here: https://www.fragattacks.com/
Cypress (AKA Infineon), who maintains some of the broadcom firmware
Hi Salvatore,
> CVE-2021-3639[0]:
> | Prevent redirect to URLs that begin with '///'
I have a fixed package prepared and tested for sid but can only upload
this next week when I return from holiday.
I consider this (open redirect in general) a minor issue so I don't think
it's needed to
Package: piuparts
Version: 1.1.4
Severity: important
User: ubuntu-de...@lists.ubuntu.com
Usertags: origin-ubuntu impish
Dear Maintainer,
The attached patch will fix a FTBFS with golang-1.16.
This bug report was also filed in Ubuntu and can be found at
http://launchpad.net/bugs/1939171
The
Control: tag -1 + patch
Hi,
Quoting fulvio ciriaco (2021-07-24 17:24:37)
> steps to reproduce:
> 1. select new -> campaign
> 2. move the mouse to select the campaign
> vcmi aborts immediately with the following message:
>
> Initializing VCMI_Lib: 313 ms
> Screen handler: 8 ms
> Main graphics:
Control: Tags -1 + unreproducible
Hello,
Witold Baryluk, le ven. 06 août 2021 16:29:50 +0200, a ecrit:
> https://www.debian.org/releases/bullseye//amd64/ch03s04.en.html says this
> should be supported.
Yes, that should be working, and does work in my tests.
> Using multi-arch image for
Hi Shengjing,
On 06-08-2021 22:01, Shengjing Zhu wrote:
> Should we fix it before the bullseye release?
No, at least not in 11.0.
Paul
OpenPGP_signature
Description: OpenPGP digital signature
I also tested building the patch with golang-1.15 and it also succeeded.
--
Brian Murray
Package: src:linux
Version: 4.19.194-3
Control: affects -1 src:xen
SSIA. Previous versions of 4.19 had no issues (4.19.181-1 according to
notes), but this cropped up with 4.19.194-3 (-1 and -2 weren't tested).
When a Xen domain 0 tries to reboot or powerdown the computer, it hangs
with the
Hi,
On Sat, Aug 7, 2021 at 1:51 AM Salvatore Bonaccorso wrote:
>
> Source: golang-1.15
> Version: 1.15.9-6
> Severity: important
> Tags: security upstream
> Forwarded: https://github.com/golang/go/issues/46866
> X-Debbugs-Cc: car...@debian.org, Debian Security Team
>
>
> Hi,
>
> The following
On Thu, Aug 05, 2021 at 01:42:03AM +0200, Thorsten Glaser wrote:
> Package: popularity-contest
> Version: 1.71
> Severity: normal
> X-Debbugs-Cc: t...@mirbsd.de
>
> When SUBMITURLS has an https URL (or one not with http:// anyway,
> see /usr/share/popularity-contest/popcon-upload line 38 for why,
Package: release.debian.org
Severity: normal
User: release.debian@packages.debian.org
Usertags: unblock
X-Debbugs-Cc: 991...@bugs.debian.org
Please unblock package twitter-bootstrap4
[ Reason ]
4.5.2+dfsg1-7 changes missed some .map files (scss-to-css). This version
reinstall them (RC bug
Hi,
On 06-08-2021 21:52, Holger Wansing wrote:
> I would like to add a paragraph to the release-notes, describing a bit the
> new "install-firmware" mechanism via modalias, with a link to the new doc
> in the installation-guide, for those who experience problems.
>
> Please find a patch
Package: release.debian.org
Severity: normal
User: release.debian@packages.debian.org
Usertags: unblock
X-Debbugs-Cc: 969...@bugs.debian.org
Please unblock package node-setimmediate
[ Reason ]
node-setimmediate is RC-buggy (#969611):
* broken symlinks in node-setimmediate documentation
*
96 matches
Mail list logo