Bug#772528: disabling SSL v3 support

2014-12-08 Thread Daniel Pocock
Package: libresiprocate-1.9 Version: 1.9.7-1 Severity: serious Tags: security Thanks to POODLE[1], CVE-2014-3566, many people want to disable SSL v3.0. The existing reSIProcate library code offers developers a choice between TLSv1_method() and SSLv23_method() Using TLSv1_method() disables the

Bug#772134: Kernel 3.2.0-4 failed to resume link

2014-12-08 Thread EpsiloN EpsiloN
Hi I have uploaded some core dump that I found on server. Here there are: http://www.megafileupload.com/en/file/586009/core-dumps-zip.html Regards Igor On Fri, Dec 5, 2014 at 2:06 PM, EpsiloN EpsiloN eps@gmail.com wrote: Package: src:linux Version: kernel: 3.2.0-4-686-pae Severity:

Bug#772325: [PATCH] utils,mbim-network: fix bashisms

2014-12-08 Thread Boris Egorov
See https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=772325 Signed-off-by: Boris Egorov ego...@linux.com --- utils/mbim-network.in | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/utils/mbim-network.in b/utils/mbim-network.in index e58a148..5ea8dd6 100755 ---

Bug#772487: SSL 3.0 and older ciphers selected in applications

2014-12-08 Thread Daniel Pocock
Hi all, I've made some changes to TLS code in reSIProcate - setting OpenSSL's SSL_OP_NO_SSLv3 by default when using SSLv23_method() - adding configuration options to override the options to SSL_CTX_set_options (as it is possible there will be some user with old VoIP hardware out there who

Bug#772487: unblock: resiprocate/1.9.8-1

2014-12-08 Thread Daniel Pocock
On 07/12/14 22:08, Ivo De Decker wrote: tags 772487 wontfix thanks Hi, On Sun, Dec 07, 2014 at 07:13:35PM +0100, Daniel Pocock wrote: The debdiff is about 900 lines but this includes a lot of comments as I've explained what I was doing throughout the security code and about 30% of

Bug#772529: apt-cacher-ng wants to install ed as dependancy

2014-12-08 Thread Olliver Schinagl
Package: apt-cacher-ng Version: 0.8.0-3 Severity: normal Dear Maintainer, apt-cacher-ng for some reason wants to install 'ed', the classic UNIX line editor. Any standard $EDITOR should be fine for the user and if the program depends on ed in its programming; then why not use the standard unix

Bug#771555: Processed: reassign 771555 to xul-ext-gnome-keyring

2014-12-08 Thread Ximin Luo
Control: tags -1 moreinfo unreproducible Control: severity -1 important Hi, Please give some more information on how to reproduce this. What version of iceweasel are you running? mozilla-gnome-keyring is known not to work for iceweasel 33 and above, see

Bug#772520: mjpegtools: yuvscaler is lost

2014-12-08 Thread Fabian Greffrath
Am Montag, den 08.12.2014, 05:14 +0100 schrieb diego: I'm using LiVES to create a clip but when I choose mjpegtools_encoder it says that yuvscaler was not found This was removed by Alessio in

Bug#772506: more tests

2014-12-08 Thread David Douard
A bit more investigations on this problem. In a fresh virtualenv (on a jessie box): (tst)root@ead8881e8ed5:/# pip install requests Downloading/unpacking requests Downloading requests-2.5.0-py2.py3-none-any.whl (464kB): 464kB downloaded Installing collected packages: requests Successfully

Bug#772530: ITP: libxml-treepuller-perl -- Pull interface to work with XML document fragments

2014-12-08 Thread Matanya Moses
Package: wnpp Severity: wishlist Owner: Matanya Moses mata...@foss.co.il * Package name: libxml-treepuller-perl Version : 0.1.3 Upstream Author : Tyler Riddle trid...@cpan.org * URL : http://search.cpan.org/~triddle/XML-TreePuller-0.1.3_01/lib/XML/TreePuller.pm *

Bug#772531: Webcal calendar from iCloud : wrong file format

2014-12-08 Thread Yvan Masson
Package: evolution Version: 3.12.9~git20141130.241663-1 Dear maintainers, When I try to add an iCloud calendar generated from iCal on Mac OSX, Evolution tells me that the received file format is wrong: In french, it is written Impossible de se connecter à « calendar_chosen_name » : Impossible

Bug#736605: ITA: graphviz -- rich set of graph drawing tools

2014-12-08 Thread Maxime Chatelle
retitle 736605 ITA: graphviz -- rich set of graph drawing tools owner 736605 ! quit Thanks for replying. I will take care of it. Regards, xakz -- Maxime Chatelle | 010 | | 001 |

Bug#772532: ITP: libxml-compacttree-perl -- builder of compact tree structures from XML documents

2014-12-08 Thread Matanya Moses
Package: wnpp Severity: wishlist Owner: Matanya Moses mata...@foss.co.il * Package name: libxml-compacttree-perl Version : 0.03 Upstream Author : Petr Pajas pa...@matfyz.cz * URL : http://search.cpan.org/~pajas/XML-CompactTree-0.03/CompactTree.pm * License :

Bug#772487: SSL 3.0 and older ciphers selected in applications

2014-12-08 Thread Adam D. Barratt
On Mon, 2014-12-08 at 09:16 +0100, Daniel Pocock wrote: [...] If it will help the release team, is there anybody from the security team who could review the changes in my debdiff? Note that debian-secur...@lists.debian.org is not a contact address for the security team. (Also I don't see

Bug#772487: SSL 3.0 and older ciphers selected in applications

2014-12-08 Thread Daniel Pocock
On 08/12/14 10:20, Adam D. Barratt wrote: On Mon, 2014-12-08 at 09:16 +0100, Daniel Pocock wrote: [...] If it will help the release team, is there anybody from the security team who could review the changes in my debdiff? Note that debian-secur...@lists.debian.org is not a contact address for

Bug#772534: man-pages-it: Please upgrade to new upstream version 3.64

2014-12-08 Thread Elena Grandi
Source: man-pages-it Version: 2.80-5 Severity: wishlist I've noticed that the version of the italian manpages currently in debian is quite old, being from 2008, while upstream has resumed doing frequent releases in 2014 and is currently on 3.64 (released on 25 May). Is there something that

Bug#772533: gitweb: UTF-8 repository names rendered incorrectly

2014-12-08 Thread Matthias Urlichs
Package: gitweb Version: 1:2.0.0-1 Severity: normal root@surf:/srv/git# ls|grep tsel rätsel.git root@surf:/srv/git# ls|grep tsel|xxd 000: 72c3 a474 7365 6c2e 6769 740ar..tsel.git. Despite this, and ?xml version=1.0 encoding=utf-8? in gitweb's HTML response. the actual page

Bug#772311: mew-beta-bin: bashism in /bin/sh script

2014-12-08 Thread Tatsuya Kinoshita
Control: forwarded 772311 https://github.com/kazu-yamamoto/Mew/pull/76 Control: forwarded 772312 https://github.com/kazu-yamamoto/Mew/pull/76 Control: tags 772311 + fixed-upstream Control: tags 772312 + fixed-upstream Will be fixed for jessie+1, stretch. Thanks, -- Tatsuya Kinoshita

Bug#772535: jerasure: please update Homepage

2014-12-08 Thread Dmitry Smirnov
Source: jerasure Version: 2.0.0-1 Severity: minor It looks like upstream moved project home page to http://web.eecs.utk.edu/~plank/plank/www/software.html so it would be nice to update package Homepage. Thanks. --- The great enemy of the truth is very often not the lie -- deliberate,

Bug#772520: mjpegtools: yuvscaler is lost

2014-12-08 Thread Alessio Treglia
On 8 Dec 2014 08:52, Fabian Greffrath fab...@greffrath.com wrote: Am Montag, den 08.12.2014, 05:14 +0100 schrieb diego: I'm using LiVES to create a clip but when I choose mjpegtools_encoder it says that yuvscaler was not found This was removed by Alessio in

Bug#772487: SSL 3.0 and older ciphers selected in applications

2014-12-08 Thread Kurt Roeckx
On Mon, Dec 08, 2014 at 09:16:45AM +0100, Daniel Pocock wrote: Hi all, I've made some changes to TLS code in reSIProcate - setting OpenSSL's SSL_OP_NO_SSLv3 by default when using SSLv23_method() This has no effect in jessie. SSLv2 and SSLv3 are disabled if you use the SSLv23_* methods.

Bug#772529: apt-cacher-ng wants to install ed as dependancy

2014-12-08 Thread Eduard Bloch
retitle 772529 Add internal pdiff patching without red severity 772529 wishlist thanks Hi, that's an interesting guess but you figured it wrong. Ed (actually red) is used to patch the index files following the pdiff mechanism. That said, I was never really happy with the current solution. I

Bug#772520: mjpegtools: yuvscaler is lost

2014-12-08 Thread Fabian Greffrath
Am Montag, den 08.12.2014, 09:58 + schrieb Alessio Treglia: Fabian, could you please fix it for me? Uploaded. - Fabian -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#772417: Re: Bug#772417: Re: Bug#772417: desktop-base: debian/copyright file needs to be updated

2014-12-08 Thread Francesco Poli
[Dear Aurélien, please reply to me and to the bug address, otherwise I can only see your replies on the mailing list web archives, which is unpractical, and your replies fail to show up on the bug log! Thanks!] On Mon, 08 Dec 2014 08:30:29 +0100 Aurélien COUDERC wrote: Le 08/12/2014 00:16,

Bug#772487: SSL 3.0 and older ciphers selected in applications

2014-12-08 Thread Daniel Pocock
On 08/12/14 11:12, Kurt Roeckx wrote: On Mon, Dec 08, 2014 at 09:16:45AM +0100, Daniel Pocock wrote: Hi all, I've made some changes to TLS code in reSIProcate - setting OpenSSL's SSL_OP_NO_SSLv3 by default when using SSLv23_method() This has no effect in jessie. SSLv2 and SSLv3 are

Bug#772506: more tests

2014-12-08 Thread Daniele Tricoli
Hello David, On Mon, 08 Dec 2014 09:45:05 +0100 David Douard david.dou...@logilab.fr wrote: A bit more investigations on this problem. Many thanks for the detailed report! I will forward upstream. pyasn1 is also the root of #766481. Since pep 466 Python 2 has Server Name Indication (also

Bug#772536: osmctools: osmupdate needs wget

2014-12-08 Thread Nelson A. de Oliveira
Package: osmctools Version: 0.3-1 Severity: normal Hi! osmupdate needs wget to download the change files but there isn't a Depends nor Recommends on it. At least a Recommends: wget should be included in the package. Thank you! Best regards, Nelson -- System Information: Debian Release:

Bug#757883: Patch for Loopback cfg support

2014-12-08 Thread adrian15
El 08/12/14 a las 00:09, jnqnfe escribió: I had a quick look over your patch. You're building it against live-build 3.x, but since it's a feature improvement not a critical bug in core functionality, I believe I'm right in saying that you must build against live-build 4.x, preferably the

Bug#761971: lxpanel: broken multi-display support(?)

2014-12-08 Thread Andriy Grytsenko
control: tags -1 fixed-upstream This issue is fixed in latest upstream version which is about to appear in the Debian experimental repository. You can try it from there. That version will not appear in the Debian Jessie because Jessie is already frozen so only release-critical changes

Bug#772538: shared-mime-info: Post-installation script fails with a segmentation fault

2014-12-08 Thread Emile den Tex
Package: shared-mime-info Version: 1.3-1 Severity: important Dear Maintainer, The postinstall script shared-mime-info causes a segfault on my desktop (64bit macbook air) with jessie/testing. The crash occurs when the script invokes: /usr/bin/update-mime-database.real /usr/share/mime Outcome:

Bug#639729: lxpanel: multitude icons squashed into one icon place of systray

2014-12-08 Thread Andriy Grytsenko
control: tags -1 fixed-upstream This issue is fixed in latest upstream version which is about to appear in the Debian experimental repository. You can try it from there. That version will not appear in the Debian Jessie because Jessie is already frozen so only release-critical changes are allowed

Bug#772537: ITP: libencode-zapcp1252-perl -- zap Windows Western gremlin characters

2014-12-08 Thread Jonas Smedegaard
Package: wnpp Severity: wishlist Owner: Jonas Smedegaard d...@jones.dk -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 * Package name: libencode-zapcp1252-perl Version : 0.33 Upstream Author : David E. Wheeler da...@justatheory.com * URL :

Bug#772487: SSL 3.0 and older ciphers selected in applications

2014-12-08 Thread Kurt Roeckx
On Mon, Dec 08, 2014 at 11:42:28AM +0100, Daniel Pocock wrote: On 08/12/14 11:12, Kurt Roeckx wrote: On Mon, Dec 08, 2014 at 09:16:45AM +0100, Daniel Pocock wrote: Hi all, I've made some changes to TLS code in reSIProcate - setting OpenSSL's SSL_OP_NO_SSLv3 by default when using

Bug#772520: mjpegtools: yuvscaler is lost

2014-12-08 Thread Alessio Treglia
On Mon, Dec 8, 2014 at 10:30 AM, Fabian Greffrath fab...@greffrath.com wrote: Am Montag, den 08.12.2014, 09:58 + schrieb Alessio Treglia: Fabian, could you please fix it for me? Uploaded. Thanks! I guess we should file an unblock request, this is a clear regression. What do you think

Bug#772520: mjpegtools: yuvscaler is lost

2014-12-08 Thread Fabian Greffrath
Am Montag, den 08.12.2014, 11:35 + schrieb Alessio Treglia: Thanks! I guess we should file an unblock request, this is a clear regression. What do you think about that? Yes, please! - Fabian -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of

Bug#772539: unblock: geda-gaf/1.8.2-5

2014-12-08 Thread أحمد المحمودي
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package geda-gaf Reason for the unblock: * Add bashims.diff patch to fix bashisms in some example scripts. (Closes: #772246) Debdiff attached. unblock

Bug#771098: libjavascriptcoregtk-3.0-0: webkit browsers unusable on 32-bit powerpc

2014-12-08 Thread Alberto Garcia
On Fri, Nov 28, 2014 at 12:32:06PM +, Paul Garlick wrote: Ok, thanks! Did you test the patch in 2.4.7 yourself? I can try to include it in the next release. Not yet. I am planning to test the next release as soon as it is available in testing. Did you have the chance to try this?

Bug#739099: vorbis-tools: ogg123 manpage inadequately documents -d option

2014-12-08 Thread Martin Steghöfer
Hi Paul! Martin Steghöfer wrote: [documentation examples skipped] I'm not sure what else you'd expect here. Especially your doubt about the format of the name-value pairs seems to be explained in the very first paragraph of the man page (-o option:value). Is the information not structured

Bug#772487: SSL 3.0 and older ciphers selected in applications

2014-12-08 Thread Daniel Pocock
On 08/12/14 12:36, Kurt Roeckx wrote: On Mon, Dec 08, 2014 at 11:42:28AM +0100, Daniel Pocock wrote: On 08/12/14 11:12, Kurt Roeckx wrote: On Mon, Dec 08, 2014 at 09:16:45AM +0100, Daniel Pocock wrote: Hi all, I've made some changes to TLS code in reSIProcate - setting OpenSSL's

Bug#772540: linux-image-3.16.0-4-amd64: kernel panic when nmap some ip on the link while wireshark capturing on the link

2014-12-08 Thread Zhang Jingqiang
Package: src:linux Version: 3.16.7-2 Severity: important Dear Maintainer, *** Reporter, please consider answering these questions, where appropriate *** * What led up to the situation? 1. Open wireshark-qt to capture on interface wlan0 (IP Address 192.168.1.xx) 2. Run 'nmap 192.168.1.xxx'.

Bug#772055: libgnutls-deb0-28:amd64: Certificate Status Request (OCSP stapling) check fails with mozilla.org

2014-12-08 Thread Andreas Metzler
Control: tags -1 fixed upstream On 2014-12-04 Alessandro Ghedini gh...@debian.org wrote: Package: libgnutls-deb0-28 Version: 3.3.8-5 Severity: normal Hi, I've been playing with GnuTLS OCSP stapling support, but I noticed that it seems to reject apparently valid responses (e.g. the

Bug#772541: InputTCPMaxSessions and MaxOpenFiles relation

2014-12-08 Thread Peter Viskup
Package: rsyslog Version: 5.8.11-3+deb7u2 Information reference: http://lists.adiscon.net/pipermail/rsyslog/2014-December/039173.html This bug is opened for reference. Email to rsyslog mailinglist sent. Source code maintainer should check whether newer versions have the proposed checks

Bug#772008: CVE request: mpfr: buffer overflow in mpfr_strtofr

2014-12-08 Thread Vasyl Kaigorodov
Hello, A buffer overflow was reported [1] in mpfr. This is due to incorrect GMP documentation for mpn_set_str about the size of a buffer (discussion is at [1]; first fix in the GMP documentation is at [2]). This bug is present in the MPFR versions from 2.1.0 (adding mpfr_strtofr) to this one, and

Bug#772538: Additional debug information and workaround

2014-12-08 Thread Den Toir
The segmentation fault occurs everytime when calling g_fprintf() in update-mime-database.c, first on line 3849. See the gdb output below (on a build with debugging symbols). Could this be related to libglib2 somehow not being fully configured yet when first installing shared-mime-info? I don't

Bug#772513: intel-microcode: dracut support for wheezy-backports

2014-12-08 Thread Henrique de Moraes Holschuh
On Sun, 07 Dec 2014, Kenyon Ralph wrote: As requested in https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=770761#32 I'm creating this bug report. The above wheezy-backports version of intel-microcode depends on initramfs-tools, which conflicts with dracut. I've switched back to the wheezy

Bug#772487: SSL 3.0 and older ciphers selected in applications

2014-12-08 Thread Kurt Roeckx
On Mon, Dec 08, 2014 at 01:20:39PM +0100, Daniel Pocock wrote: Just one other point: if somebody is trying sending the client hello using SSL v2 record layer but indicating support for TLS v1.0, should TLSv1_method or SSLv23_method accept that? I would expect that both should support that.

Bug#772325: accepted in upstream

2014-12-08 Thread Boris Egorov
My patch was accepted in upstream: https://bugs.freedesktop.org/show_bug.cgi?id=87093 -- Best regards, Boris Egorov -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#772542: libqt5webkit5: Incorrect rendering of soft hyphens

2014-12-08 Thread Kamil Jonca
Package: libqt5webkit5 Version: 5.3.2+dfsg-3 Severity: important Tags: upstream It looks like, it replaces soft hyphens into spaces. I think that it is related to https://bugreports.qt-project.org/browse/QTBUG-40912 which is marked as done in upstream. -- System Information: Debian Release:

Bug#772543: python-psutil: severak filehandle leaks

2014-12-08 Thread Marc Leeman
Package: python-psutil Version: 2.1.1-1+b1 Severity: important Tags: patch When using psutil to query system statistics, several function leak a file handle by returning without closing the file handle. When this is used on a regular basis, the system will fail with too many open file handles:

Bug#772487: SSL 3.0 and older ciphers selected in applications

2014-12-08 Thread Daniel Pocock
On 08/12/14 13:53, Kurt Roeckx wrote: On Mon, Dec 08, 2014 at 01:20:39PM +0100, Daniel Pocock wrote: Just one other point: if somebody is trying sending the client hello using SSL v2 record layer but indicating support for TLS v1.0, should TLSv1_method or SSLv23_method accept that? I would

Bug#772544: uwsgi start/sop/restrt one file

2014-12-08 Thread My Work
Package: uwsgi Version: 2.0.7-debian When i try restart/start/sop/status one of my application then uwsgi have do this with all my apllication. Can you help uwgi do this operation with one of my apllication? root@jessie:~# which uwsgi /usr/bin/uwsgi root@jessie:~# type uwsgi uwsgi is hashed

Bug#772545: Please update README.Debian, python 3.3 is gone

2014-12-08 Thread Jean-Michel Nirgal Vourgère
Package: python3 Version: 3.4.2-2 Severity: minor Hello /usr/share/doc/python3/README.Debian suggests I look at /usr/share/doc/python3.3/ that doesn't exists here. That should to be upgraded to 3.4, or maybe point at python3-doc package? Thank you for taking care of python. :) -- System

Bug#772546: syslinux-efi: syslinux.efi will not boot wheezy kernel via pxe

2014-12-08 Thread Johann Hartwig Hauschild
Package: syslinux-efi Version: 6.03+dfsg-2 Severity: normal Tags: upstream Dear Maintainer, *** Please consider answering these questions, where appropriate *** * What led up to the situation? + I am trying to install wheezy on a few machines using syslinux and EFI and booting the

Bug#681578: About i8kmon.conf

2014-12-08 Thread Vincas Dargis
Hello, I have also got tricked by documentation. It mentions /etc/default/i8kmon and /etc/i8kmon, while actually daemon uses /etc/i8kmon.conf ! Any progress in fixing this? Also, shouldn't there be a default /etc/i8kmon.conf created? It is not, at least in Wheezy i8kutils 1.33.

Bug#772548: ITP: libencoding-fixlatin-perl -- takes mixed encoding input and produces UTF-8 output

2014-12-08 Thread Jonas Smedegaard
Package: wnpp Severity: wishlist Owner: Jonas Smedegaard d...@jones.dk -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 * Package name: libencoding-fixlatin-perl Version : 1.04 Upstream Author : Grant McLean gra...@cpan.org * URL :

Bug#772549: gajim: No icon visible in gnome-shell system tray, even though gajim sits there (invisible)

2014-12-08 Thread Florian
Package: gajim Version: 0.16-1 Severity: normal See subject; an area corresponding to a normal icon is reserved and clickable in the gnome-shell system tray when gajim is running, but no actual icon is visible. thanks florian -- System Information: Debian Release: 8.0 APT prefers testing

Bug#767554: python-persistent and python-zodb: error when trying to install together

2014-12-08 Thread Barry Warsaw
On Dec 08, 2014, at 01:47 PM, Arnaud Fontaine wrote: Arnaud Fontaine wrote (26 Nov 2014 09:03:09 GMT) : Really sorry about that. FTR, I have not uploaded anything yet because the release team would prefer to avoid the Conflicts if possible and make python-zodb depends upon

Bug#771860: RFS: gnucheese/1.00-1

2014-12-08 Thread Vincent Legout
Hi Michel, Michel Van den Bergh michel.vandenbe...@uhasselt.be writes: I am looking for a sponsor for my package gnucheese I'd be glad to sponsor your package, but I have a few comments first. Could you please fix them and I'll upload gnucheese. - I can't download the tar.gz from your

Bug#772547: ITP: iva -- Assemble virus genomes lacking repeat sequences using Illumina read pairs

2014-12-08 Thread Jorge Soares
Package: wnpp Severity: wishlist Owner: Jorge Soares j.s.soa...@gmail.com * Package name: iva Version : 0.10.1 Upstream Author : Martin Hunt m...@sanger.ac.uk * URL : https://github.com/sanger-pathogens/iva * License : GPL3 Programming Lang: Python

Bug#766670: RC bug in stable and oldstable for getmail4

2014-12-08 Thread Osamu Aoki
Hi, On Thu, Dec 04, 2014 at 12:04:57PM +0100, Raphael Hertzog wrote: On Fri, 28 Nov 2014, Osamu Aoki wrote: Although I am not comfortable to package this way if I do it again (I inherited it and did not touch it back then.), I should do the same strange packaging style again considering

Bug#772550: ITP: libencoding-fixlatin-xs-perl -- XS implementation layer for Encoding::FixLatin

2014-12-08 Thread Jonas Smedegaard
Package: wnpp Severity: wishlist Owner: Jonas Smedegaard d...@jones.dk -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 * Package name: libencoding-fixlatin-xs-perl Version : 1.01 Upstream Author : Grant McLean gra...@cpan.org * URL :

Bug#772347: xbmc: bashism in /bin/sh script

2014-12-08 Thread Bálint Réczey
Control: severity -1 important Control: tags -1 confirmed pending Hi Raphael, Thank you for the bug report. 2014-12-06 15:34 GMT+01:00 Raphael Geissert atom...@gmail.com: Package: xbmc Severity: serious Version: 2:13.2+dfsg1-4 User: debian-rele...@lists.debian.org Usertags: goal-dash Hi,

Bug#772551: Suricata: missing library libhtp-0.5.12.so.1

2014-12-08 Thread Pedro Beja
Package: suricata Version: 2.0.4-1 Severity: normal Dear Pierre, I am openning this bug report about missing library that we talked on irc. # suricata suricata: error while loading shared libraries: libhtp-0.5.12.so.1: cannot open shared object file: No such file or directory the libhtp1

Bug#772552: xsnow: snowflakes leaves tracks of erased screen

2014-12-08 Thread alvaro rincon
Package: xsnow Version: 1:1.42-9 Severity: important Dear Maintainer, i installed xsnow and used by the first time the snowflakes fall down erasing the desktop under its trayectory , even erasing icons, santa is only visible when he passes near the edges of the screen and disspears near the

Bug#739497: reproducible.json now exists

2014-12-08 Thread Paul Wise
On Thu, 2014-11-27 at 09:32 +0100, Holger Levsen wrote: Remaining work: * get some review on the approach and action item text Thanks for the feedback, answers interleaved and proposals at the end. in reproducible build mode - what is that? Maybe better just to use fails to build

Bug#772553: unblock: dnssec-trigger/0.13~svn685-3

2014-12-08 Thread Ondřej Surý
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Please unblock package dnssec-trigger Just fixing unannounced MBF serious bug found by checkbashism script. $ diffstat

Bug#772192: alliance: bashism in /bin/sh script

2014-12-08 Thread Roland Stigge
Hi, thanks for the report! On 12/06/2014 01:04 AM, Raphael Geissert wrote: I've ran checkbashisms (from the 'devscripts' package) over the whole archive and I found that your package has a /bin/sh script that uses a bashism. checkbashisms' output: possible bashism in ./usr/bin/sea line

Bug#771092: libuuid1: moreinfo

2014-12-08 Thread Andreas Henriksson
Hello Niels Thykier. Thanks for following up on this bug report... On Mon, Dec 08, 2014 at 08:36:36AM +0100, Niels Thykier wrote: On Thu, 27 Nov 2014 12:32:08 +0100 Andreas Henriksson andr...@fatal.se wrote: Control: tags 771092 + moreinfo Just adding the passwd dependency would hide

Bug#772554: libsane: epson perfection 1260 no more supported

2014-12-08 Thread Leonardo Canducci
Package: libsane Version: 1.0.24-4 Severity: normal Dear Maintainer, my Epson Perfection 1260 no longer works on unstable (works fine on squeeze). syslog when plugged via USB: Dec 8 15:22:27 asbesto kernel: [ 3321.601370] usb 1-4.4: new full-speed USB device number 10 using xhci_hcd Dec 8

Bug#758455: RFA: bogofilter -- fast Bayesian spam filter (dummy package)

2014-12-08 Thread hpfn
On Sun, 9 Nov 2014 19:32:16 +0100 Mathieu Goulin mathieu.gou...@gadz.org wrote: Hi, I looking for help the debian project and I saw the bogofilter package in adoption list. I use bogofilter for a long time and i'm motivated to maintain the bogofilter package. Regard's Mathieu hi,

Bug#768094: me too

2014-12-08 Thread micah anderson
severity 768094 important tags 768094 patch thanks This is also happening to me. I can't update the database without it crashing. I thought I had a few malformed mp3s, so I moved several out of the way, which would cause it to work a little further and then crash again, but it quickly became

Bug#771610: pu: package iucode-tool/0.8.3-2

2014-12-08 Thread Adam D. Barratt
Control: tags -1 + pending On Mon, 2014-12-01 at 15:08 -0200, Henrique de Moraes Holschuh wrote: On Mon, 01 Dec 2014, Adam D. Barratt wrote: On 2014-11-30 23:49, Henrique de Moraes Holschuh wrote: I'd like to update the iucode-tool package in Debian stable with cherry-picked fixes from

Bug#766670: RC bug in stable and oldstable for getmail4

2014-12-08 Thread Raphael Hertzog
Hi, On Mon, 08 Dec 2014, Osamu Aoki wrote: Si I should change getmail4 (4.46.0-1~deb7u1) wheezy-security as: * Version: 4.46.0-1~deb6u1 change * target: squeeze-security change target is squeeze-lts in fact but there are no queues in front of that

Bug#772555: init-system-helpers: deb-systemd-helper does not respect systemd Preset files

2014-12-08 Thread Raphaël Hertzog
Package: init-system-helpers Version: 1.22 Severity: wishlist User: de...@kali.org Usertags: origin-kali Filing a bug following this IRC conversation: 15:32 * buxy finds out http://freedesktop.org/wiki/Software/systemd/Preset/ 15:32 buxy is this usable in Debian? 15:33 buxy looking at

Bug#772543: python-psutil: severak filehandle leaks

2014-12-08 Thread Sandro Tosi
Hi, thanks for the report! On Mon, Dec 8, 2014 at 1:28 PM, Marc Leeman marc.lee...@gmail.com wrote: When using psutil to query system statistics, several function leak a file handle by returning without closing the file handle. When this is used on a regular basis, the system will fail with

Bug#772556: unblock: fusionforge/5.3.2+20141104-2

2014-12-08 Thread beuc
Package: release.debian.org User: release.debian@packages.debian.org Usertags: unblock Severity: normal Please unblock package fusionforge which fixes RC #771619. Attached: - debdiff - diff fusionforge (5.3.2+20141104-2) unstable; urgency=medium * Start Debian-specific branch without

Bug#772557: libapparmor-dev 2.9.0-2 has unmarked conflict with apparmor-docs 2.8.0

2014-12-08 Thread Morten Hustveit
Package: apparmor Version: 2.9.0-2 Unpacking libapparmor-dev:amd64 (2.9.0-2) over (2.8.0-8) ... dpkg: error processing archive /var/cache/apt/archives/libapparmor-dev_2.9.0-2_amd64.deb (--unpack): trying to overwrite '/usr/share/man/man2/aa_getcon.2.gz', which is also in package apparmor-docs

Bug#772558: libcupt3-0: why chooses irrelevant dependency

2014-12-08 Thread James McCoy
Package: libcupt3-0 Version: 2.8.4 Severity: minor During today's upgrade I noticed install-info was going to be upgraded and I remembered that package was pretty much unneeded in most cases. I decided to check whether that was the case on my system: cupt why install-info cgdb

Bug#772473: xbindkeys-config: Insecure use of temporary files

2014-12-08 Thread Vasyl Kaigorodov
Hi Steve, Did you request a CVE for it already? The below sentence: This allows the corruption of any file the user has permission to write to. make me believe that the trust boundaries are not crossed here, thus I suppose it will be tracked as a secuirity hardening issue, and not a flaw.

Bug#772044: debian-installer: jessie beta2 ignores preseed url= boot parameter

2014-12-08 Thread Nicholas Robinson-Wall
Hi Philip, auto url=http://ip:port/jessie_amd64.cfg Just out of interest, are you using that as the whole kernel command line, or adding it to the end of the command line

Bug#772506: more tests

2014-12-08 Thread David Douard
On 12/08/2014 11:40 AM, Daniele Tricoli wrote: Hello David, On Mon, 08 Dec 2014 09:45:05 +0100 David Douard david.dou...@logilab.fr wrote: A bit more investigations on this problem. Many thanks for the detailed report! I will forward upstream. pyasn1 is also the root of #766481. Note

Bug#772506: more tests

2014-12-08 Thread David Douard
On 12/08/2014 12:57 PM, David Douard wrote: On 12/08/2014 11:40 AM, Daniele Tricoli wrote: Hello David, On Mon, 08 Dec 2014 09:45:05 +0100 David Douard david.dou...@logilab.fr wrote: A bit more investigations on this problem. Many thanks for the detailed report! I will forward upstream.

Bug#772559: unblock: webkitgtk/2.4.7-3

2014-12-08 Thread Alberto Garcia
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package webkitgtk This release contains several fixes cherry picked from the upstream stable branches. All of them solve either crashes or other important bugs: *

Bug#772560: debsources: please add a CA-signed SSL setup

2014-12-08 Thread Paul Wise
Package: qa.debian.org Severity: normal User: qa.debian@packages.debian.org Usertags: debsources Please add an SSL certificate signed by the CAs so that users visiting the site over SSL don't get warnings from their browsers. There are 3 CAs offering gratis certs, GlobalSign's offer seems the

Bug#772561: ITP: orthanc-imagej -- ImageJ plugin to import images from Orthanc

2014-12-08 Thread Sebastien Jodogne
Package: wnpp Severity: wishlist Owner: Sebastien Jodogne s.jodo...@gmail.com * Package name: orthanc-imagej Version : 1.0.0 Upstream Author : Sebastien Jodogne s.jodo...@gmail.com * URL : https://code.google.com/p/orthanc-imagej/ * License : GPL Programming

Bug#772562: evince: Crash on a PS file

2014-12-08 Thread Christophe Troestler
Package: evince Version: 3.14.1-1 Severity: normal Dear Maintainer, Evince crashes when trying to open http://www.netlib.org/lapack/lapackqref.ps Best, C. -- System Information: Debian Release: 8.0 APT prefers testing APT policy: (900, 'testing'), (400, 'unstable'), (300, 'stable'), (100,

Bug#772554: libsane: epson perfection 1260 no more supported

2014-12-08 Thread Leonardo Canducci
Oops! I tested the scanner on wheezy (stable), not squeeze. 2014-12-08 15:29 GMT+01:00 Leonardo Canducci leonardo.candu...@gmail.com: Package: libsane Version: 1.0.24-4 Severity: normal Dear Maintainer, my Epson Perfection 1260 no longer works on unstable (works fine on squeeze). syslog

Bug#771628: [Pkg-alsa-devel] Bug#771628: alsa-base: Please add ProtectSystem=yes to systemd service file

2014-12-08 Thread micah
Hello, Elimar Riesebieter riese...@lxtec.de writes: If you add the option ProtectSystem=yes to the service file, then the daemon will not have the ability to write to /usr. To be honest: Which daemon do you mean? I was looking at the different alsa daemons that have systemd files. There

Bug#772554:

2014-12-08 Thread Leonardo Canducci
I tested the scanner on wheezy (stable), not squeeze. -- Leonardo Canducci -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#771056: [hardening-discuss] Bug#771056: ICC stack protection false negative

2014-12-08 Thread Cornea, Alexandru
X-Debbugs-CC: kevin.b.sm...@intel.com Hello Kees, I am not part of the ICC team, I just observed the reported behavior. However, I got in touch with Kevin (CC'ed) from the ICC team, and he informed me that it uses a GCC style stack protection, so there should not be concerns of a weak

Bug#772563: librelp0: Segmentation fault when TCP keepalive is enable

2014-12-08 Thread Remi Palancher
Package: librelp0 Version: 1.2.7-2 Severity: important Tags: upstream patch Dear Maintainer, When TCP keepalive is enable in librelp0 and a new TCP connection is initialized, it fails systematically with a segmentation fault. This is particularly annoying when librelp0 is used through rsyslogd

Bug#772543: python-psutil: severak filehandle leaks

2014-12-08 Thread Marc Leeman
it seems those were addressed in https://github.com/giampaolo/psutil/commit/3760d9593524e553e9e012c6b63cd802e3b25a46 but it was not released in the last upstream version - asked upstream for clarification on when they will be released. I don't think the commit solves all the problems: when

Bug#772543: python-psutil: severak filehandle leaks

2014-12-08 Thread Sandro Tosi
control: forward -1 https://github.com/giampaolo/psutil/issues/556 On Mon, Dec 8, 2014 at 4:28 PM, Marc Leeman marc.lee...@gmail.com wrote: it seems those were addressed in https://github.com/giampaolo/psutil/commit/3760d9593524e553e9e012c6b63cd802e3b25a46 but it was not released in the last

Bug#772564: oar-node: Bad pid filename

2014-12-08 Thread Bruno Bzeznik
Package: oar-node Version: 2.5.4-1~bpo70+1 Severity: normal Dear Maintainer, Upgrade to 2.5.4 leaded to a bad filename for the storage of the pid of the oar-node sshd daemon: /var/run/.pid instead of: /var/run/oar-node.pid -- System Information: Debian Release: 7.7 APT prefers stable

Bug#745808: [Tts-project] Bug#745808: Bug#745808: speech-dispatcher: CVE-2014-1724

2014-12-08 Thread Salvatore Bonaccorso
Hi Luke, On Mon, Dec 08, 2014 at 08:57:39AM +1100, Luke Yelavich wrote: On Sat, Dec 06, 2014 at 04:18:22AM AEDT, Paul Gevers wrote: On 05-12-14 10:09, Paul Gevers wrote: On 04-12-14 23:41, Luke Yelavich wrote: These have been cherry-picked, and are in the git repo in the

Bug#772565: grub2: unable to access xfs with V5 superblocks

2014-12-08 Thread Sven Geggus
Package: grub2 Severity: normal Hello, looks like grub2 can not access xfs filesystems with V5 superblocks. Thes can be created using mkfs -m crc=1 and are probably the default in newer versions of xfsprogs. OpenSuSE seems to have a patch in its rpm available at

Bug#772566: unblock: sqlite3/3.8.7.2-1

2014-12-08 Thread Laszlo Boszormenyi (GCS)
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Hi Release Team, Please consider unblocking the current Sid version of SQLite3. It's one of the rare upstream immediate bugfix release. There's an RC bug filed against the source package

Bug#772567: brasero: Brasero ejects blank CD before even starting burning audio CD

2014-12-08 Thread Lorenzo
Package: brasero Version: 3.11.4-1 Severity: important Dear Maintainer, - Create new Audio project - Add wav files - Burn to blank CD - Brasero ejects the CD even before burning with the following error in the log: Checking session consistency (brasero_burn_check_session_consistency

Bug#752993: automake: configure does not parse variables to make foo.Po files

2014-12-08 Thread Jan Engelhardt
On Sat, 28 Jun 2014 18:38:16 +1000, Craig Small wrote in https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=752993 : $ cat Makefile.am AUTOMAKE_OPTIONS = subdir-objects bin_PROGRAMS = foo foo_SOURCES = foo.c lib/bar.c lib/bar.h $(top_srcdir)/lib/nothere.c The way I interpret the automake

Bug#772568: libsoxr: FTBFS on several architectures

2014-12-08 Thread Edmund Grimley Evans
Source: libsoxr Version: 0.1.1-1 I reported this to debian-arm a while ago: http://lists.debian.org/debian-arm/2014/11/msg00016.html I'm now reporting it as a bug because I have seen the same failure in a fresh chroot on amd64. The last part of the log is: The following tests FAILED: 1 -

  1   2   3   >