Bug#984788: (pre-approval) unblock: octave/6.2.0-1

2021-03-08 Thread Sébastien Villemot
Hi Paul ! Le lundi 08 mars 2021 à 22:17 +0100, Paul Gevers a écrit : > On 08-03-2021 13:19, Sébastien Villemot wrote: > > This is a pre-approval request for unblocking package octave, version > > 6.2.0-1 > > > > Currently, bullseye contains a hand-crafted mercurial snapshot of octave. > >

Bug#933946: Request for review / upload for libtest-fitesque-rdf-perl

2021-03-08 Thread Ken Ibbotson
I have marked this package 'unstable' to signify that I believe it is ready to upload. Regards -- Ken Ibbotson E: k...@computer.org *"Reality is merely an illusion, albeit a very persistent one."* - Albert Einstein (1879-1955)

Bug#984853: elinks: compile with ECMAScript support

2021-03-08 Thread Jari Aalto
Package: elinks Version: 0.13.2-1+b1 Severity: wishlist Please compile the package with Javascript support -- System Information: Debian Release: bullseye/sid APT prefers testing APT policy: (500, 'testing') Architecture: amd64 (x86_64) Kernel: Linux 5.7.0-1-amd64 (SMP w/4 CPU threads)

Bug#984851: O: qalculate-gtk -- Powerful and easy to use desktop calculator

2021-03-08 Thread Vincent Legout
Package: wnpp Severity: normal I haven't been able to work on qalculate-gtk for way too long, my apologies for that, I'm orphaning the package. It should probably be updated with libqalculate. Thanks, Vincent

Bug#984850: O: libqalculate -- Powerful and easy to use desktop calculator

2021-03-08 Thread Vincent Legout
Package: wnpp Severity: normal I haven't been able to work on libqalculate for way too long, my apologies for that, I'm orphaning the package. It should probably be updated with qalculate-gtk. Thanks, Vincent

Bug#984849: dpkg-divert: too sensitive to order of command-line args

2021-03-08 Thread Ross Vandegrift
Package: dpkg Version: 1.20.7.1 Severity: wishlist X-Debbugs-Cc: rvandegr...@debian.org dpkg-divert is too sensitive to the order of the command line parameters. Since I only use it rarely, I almost always run into: # dpkg-divert --add /wooo --divert /yeah --rename dpkg-divert: warning:

Bug#979010: libqalculate20: crashes cantor due to symbol conflict with poppler

2021-03-08 Thread Vincent Legout
Hi, On Mon, Jan 4, 2021, at 1:53 PM, Norbert Preining wrote: > I would have been nice to get the latest qalculate into Debian, but so > close to initial freeze I don't feel really comfortable doing this. > Do you have any opinion on that? > There are not that many rdepends, actually only the gtk

Bug#984497: another fast-moving project

2021-03-08 Thread Geert Stappers
On Mon, Mar 08, 2021 at 07:59:37AM -0800, Dima Kogan wrote: > This particular project is fast-moving, so users of the package would at > best have a functional-yet-old version, and may think the software > sucks. *I* don't agree, and *I* think working with and using a distro is > still worth it.

Bug#984848: extrepo: default config uses broken url

2021-03-08 Thread Ross Vandegrift
Package: extrepo Version: 0.8 Severity: normal Hello, I tried extrepo, but ran into an error: $ sudo extrepo enable google_chrome Could not download index YAML file: 403 Forbidden file type or location at /usr/share/perl5/Debian/ExtRepo/Data.pm line 27. ...propagated at

Bug#982682: ansible: some syntax errors appear in the installation

2021-03-08 Thread Louis-Philippe Véronneau
I can confirm I can reproduce this bug. Had the same error message while upgrading to ansible 2.10.7-1 on a sid machine. -- ⢀⣴⠾⠻⢶⣦⠀ ⣾⠁⢠⠒⠀⣿⡁ Louis-Philippe Véronneau ⢿⡄⠘⠷⠚⠋ po...@debian.org / veronneau.org ⠈⠳⣄ OpenPGP_signature Description: OpenPGP digital signature

Bug#984847: ITP: ppmd -- PPMd compression/decompression library

2021-03-08 Thread Sandro Tosi
Package: wnpp Severity: wishlist X-Debbugs-Cc: debian-de...@lists.debian.org X-Debbugs-Cc: debian-pyt...@lists.debian.org Owner: Sandro Tosi * Package name: ppmd Version : 0.3.3 Upstream Author : miur...@linux.com * URL : https://github.com/miurahr/ppmd * License

Bug#983595: linux-image-5.10.0-3-amd64: [regression] Kernel panic on resume from sleep

2021-03-08 Thread Salvatore Bonaccorso
Control: tags -1 + pending Hi, On Sat, Mar 06, 2021 at 08:18:52PM +0100, Zbynek Michl wrote: > So really it was a bug in the alx driver - there was a wrong call order on > resume. > > Jakub Kicinski has fixed it in the vanilla kernel: >

Bug#984846: netcfg: Default hostname hardcoded in netcfg-common

2021-03-08 Thread Arnaud Rebillout
Package: netcfg Severity: normal Tags: d-i User: de...@kali.org Usertags: origin-kali Dear Maintainer, the default hostname "debian" is hardcoded in two places in the file netcfg-common.c: https://salsa.debian.org/installer-team/netcfg/-/blob/master/netcfg-common.c#L1043

Bug#984845: sofia-sip: reproducible builds: Embeds build path in binaries

2021-03-08 Thread Vagrant Cascadian
Source: sofia-sip Severity: normal Tags: patch User: reproducible-bui...@lists.alioth.debian.org Usertags: buildpath X-Debbugs-Cc: reproducible-b...@lists.alioth.debian.org The build path is embedded through various uses of __FILE__ in the sofia-sip code. The attached patch fixes this by setting

Bug#946645: tmux is killed under gnome3 regardless of KillUserProcesses=no

2021-03-08 Thread Russell Stuart
I have similar observations to chrysn after starting and detaching a tmux session with KillUserProcesses=no (the default): 1. If I do the process in Gnome-3 using gnome-terminal and I log out, wait for a bit and log in (60 seconds is what I used), the detached tmux session is gone. 2.

Bug#980364: sudo: segfault when /var/lib/sudo/lectured not writable

2021-03-08 Thread Frank Heckenbach
Hi Marc, > Is it ok for you if I close this bug? Sure. > > Most likely unrelated, but one thing I did notice when checking the > > code is that sudo_mkdir_parents might UB if path is an empty string, > > since it first does "char *slash = path; strchr (slash + 1, '/');". > > > > Now I don't

Bug#984844: bluez-firmware: 2.4 GHz WiFi is interfered by bluetooth on RPi4B

2021-03-08 Thread Ryutaroh Matsumoto
Package: bluez-firmware Version: 1.2-4 Severity: important Tags: upstream fixed-upstream sid bullseye X-Debbugs-Cc: debian-...@lists.debian.org Control: forwarded -1 https://github.com/RPi-Distro/firmware-nonfree/issues/8 Dear Maintainer, I have installed bluetooth 5.55-3 bluez 5.55-3

Bug#984756: beep: Trying to Increase Volume of PC-Speaker with "beep"

2021-03-08 Thread Hans Ulrich Niedermann
On Sun, 07 Mar 2021 17:26:23 -0800 Chime Hart wrote: > Package: beep > Version: 1.4.9-1+b1 > Severity: wishlist > > Dear Maintainer, I am the upstream maintainer of "beep", and I neither maintain any Debian packages nor am I a Debian user unless you count my Rasberry Pi's Raspbian. > Whether

Bug#984842: RFS: fbcat/0.5.1-1 [ITA] -- framebuffer grabber

2021-03-08 Thread Micheal Waltz
Package: sponsorship-requests Severity: normal Dear mentors, I am looking for a sponsor for my package "fbcat": * Package name: fbcat Version : 0.5.1-1 Upstream Author : Piotr Lewandowski , * URL : https://jwilk.net/software/fbcat * License : GPL-2 *

Bug#984841: global.h: fix a typo, "MST" instead of "MSG"

2021-03-08 Thread Bjarni Ingi Gislason
Source: nn Version: 6.7.3-14 Severity: normal Tags: patch Dear Maintainer, >From dc5b130e6ffd04f81ce7c6006895734ed4cb77af Mon Sep 17 00:00:00 2001 >From: Bjarni Ingi Gislason >Date: Tue, 9 Mar 2021 01:26:53 + >Subject: [PATCH] global.h: fix a typo, "MST" instead of "MSG" Signed-off-by:

Bug#984840: Some files: define a macro NDELAYED_MSG and use it for the size of the array "delayed_msg[]!

2021-03-08 Thread Bjarni Ingi Gislason
Source: nn Version: 6.7.3-14 Severity: normal Tags: patch Dear Maintainer, >From d66640fce092fd7cded61a4243e3ba2fa07abfbe Mon Sep 17 00:00:00 2001 >From: Bjarni Ingi Gislason >Date: Tue, 9 Mar 2021 00:43:16 + >Subject: [PATCH] Some files: define a macro NDELAYED_MSG and use it for the >

Bug#984833: firefox: users locked out of continuing to use Flash plugin after EOL

2021-03-08 Thread Pierre Ynard
Package: firefox Version: 85.0-1 Severity: normal Dear Maintainer, I hear that following the end of life of the Adobe Flash player at the end of 2020, Firefox, starting in version 85 released in January, now refuses to even load the Adobe Flash plugin at all, while explicitly and deliberately

Bug#984546: cpl-plugin-hawki-calib: move downloader package to contrib

2021-03-08 Thread Sean Whitton
Hello, On Mon 08 Mar 2021 at 04:55PM -07, Sean Whitton wrote: > On Thu 04 Mar 2021 at 09:00PM +01, Andreas Beckmann wrote: > >> cpl-plugin-hawki-calib is a downloader package and needs to be moved to >> contrib. All other cpl-plugin-*-calib packages are already in contrib. > > I just reached

Bug#984839: nntp.c: Use strchr() instead of index(); add feature_test_macros

2021-03-08 Thread Bjarni Ingi Gislason
Source: nn Version: 6.7.3-14 Severity: normal Tags: patch Dear Maintainer, >From 4acca3d0ca72bb50c0fedbff1a59d49872789958 Mon Sep 17 00:00:00 2001 >From: Bjarni Ingi Gislason >Date: Mon, 8 Mar 2021 23:06:25 + >Subject: [PATCH] nntp.c: Use strchr() instead of index(); add >

Bug#984546: cpl-plugin-hawki-calib: move downloader package to contrib

2021-03-08 Thread Sean Whitton
Hello, On Thu 04 Mar 2021 at 09:00PM +01, Andreas Beckmann wrote: > cpl-plugin-hawki-calib is a downloader package and needs to be moved to > contrib. All other cpl-plugin-*-calib packages are already in contrib. I just reached this package during NEW processing. Could we get a release team

Bug#984838: libboost1.74-dev: depends on libstdc++-dev provided by multiple packages

2021-03-08 Thread Andreas Beckmann
Package: libboost1.74-dev Version: 1.74.0-8 Severity: serious Tags: patch User: debian...@lists.debian.org Usertags: piuparts libstdc++-dev is not a good virtual package to depend upon, since it is provided by multiple packages: bullseye# apt-get install libstdc++-dev Reading package lists...

Bug#984828: gitlab: code tree not rendered (circling circle instead)

2021-03-08 Thread Mike Gabriel
Package: gitlab Version: 13.7.8+ds1-1~fto10+1 Severity: serious Hi Praveen, here comes the other issue I am facing. Occurred with 13.7.7 and also occurs with 13.7.8: When I open a Git repository on my GitLab instance, I see a circling circle where the code files/dirs should actually be.

Bug#984837: unblock: gsoap/2.8.104-3

2021-03-08 Thread Mattias Ellert
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock I have submitted an update for the gsoap package, back-porting several fixes for CVEs from upstream. It fixes the RC bug: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=983596 Due to

Bug#983071: unblock: xz-utils/5.2.5-1.1

2021-03-08 Thread Sebastian Andrzej Siewior
On 2021-03-08 18:54:22 [+0100], Paul Gevers wrote: > Hi, Hi, > Please upload to unstable. As said, we'll let it age a bit there. Thanks, uploaded. > Paul Sebastian

Bug#984826: tigervnc-standalone-server: Unable to init server: Could not connect: Connection refused

2021-03-08 Thread Joachim Falk
Am 8. März 2021 23:30:11 MEZ schrieb Matthias Klein : >Am Mon, 8 Mar 2021 22:44:37 +0100 >schrieb Joachim Falk : > >> Hi Matthias, >> >> I tried to replicate the problem, but could start the mate desktop >> just fine. I will attache my configuration. I used > >Hi Joachim, > >Thanks a lot for your

Bug#984826: tigervnc-standalone-server: Unable to init server: Could not connect: Connection refused

2021-03-08 Thread Matthias Klein
Am Mon, 8 Mar 2021 22:44:37 +0100 schrieb Joachim Falk : > Hi Matthias, > > I tried to replicate the problem, but could start the mate desktop > just fine. I will attache my configuration. I used Hi Joachim, Thanks a lot for your help! > Can you try to start something simpler to determine

Bug#983918: buster-pu: package libbsd/0.9.1-2

2021-03-08 Thread Adam D. Barratt
I somehow missed that libbsd produces a udeb when I was processing stable-new, so CCing KiBi and -boot now. Regards, Adam On Wed, 2021-03-03 at 12:05 +0100, Gianfranco Costamagna wrote: > Package: release.debian.org > User: release.debian@packages.debian.org > Usertags: pu > Tags: buster >

Bug#973248: [Pkg-puppet-devel] Bug#973248: Deprecation warning in Ruby 2.7: $SAFE will become a normal global variable in Ruby 3.0

2021-03-08 Thread Georg Faerber
Hi, On 21-03-08 20:46:54, Thomas Goirand wrote: > The patch is super small and looks clean. I also am very annoyed by > this problem and would like it to be fixed. I'm not sure I can be the > voice of all of the team, but I would say: please go ahead with NMU + > dealing with the release team.

Bug#984501: unblock: libqb/2.0.3-1

2021-03-08 Thread Sebastian Ramacher
Control: tags -1 confirmed On 2021-03-04 11:59:35 +0100, Ferenc Wágner wrote: > Package: release.debian.org > Severity: normal > User: release.debian@packages.debian.org > Usertags: unblock > > Please unblock package libqb > > Dear Release Team, > > Upstream made a new minor release of

Bug#984836: logiops: Plase also ship TESTED.md

2021-03-08 Thread Norbert Kiesel
Package: logiops Version: 0.2.2-1 Severity: normal X-Debbugs-Cc: n...@iname.com Dear Maintainer, README.md mentions TESTED.md, but that is missing from the documentation. Please ship that as well. -- System Information: Debian Release: bullseye/sid APT prefers unstable APT policy: (500,

Bug#984826: tigervnc-standalone-server: Unable to init server: Could not connect: Connection refused

2021-03-08 Thread Joachim Falk
Hi Matthias, I tried to replicate the problem, but could start the mate desktop just fine. I will attache my configuration. I used apt install mate-core and used the default configuration in /etc/tigervnc. Moreover, I have [bash joachim@xerstin:~]$ ls -la ~/.vnc/ drwxrwxr-x 2 joachim

Bug#984835: /usr/sbin/pam-auth-update: allow comments in pam-config files

2021-03-08 Thread Martin Schurz
Package: libpam-runtime Version: 1.3.1-5 Severity: wishlist File: /usr/sbin/pam-auth-update Tags: patch Dear Maintainer, we are shipping some custom pam-configs with our automation, for clarity we want to include comments in these files. Currently this is not supported and leeds to perl warning

Bug#984788: (pre-approval) unblock: octave/6.2.0-1

2021-03-08 Thread Paul Gevers
Control: tags -1 confirmed Hi Sébastien, On 08-03-2021 13:19, Sébastien Villemot wrote: > This is a pre-approval request for unblocking package octave, version 6.2.0-1 > > Currently, bullseye contains a hand-crafted mercurial snapshot of octave. > Uploading a snapshot was made necessary because

Bug#982661: mame: Crash on startup

2021-03-08 Thread Celelibi
It still crashes, indeed. Best regards, Celelibi Le Sun, Mar 07, 2021 at 05:00:07PM +0100, Bernhard Übelacker a écrit : > Hello Celelibi, > does this happen with current version > in testing 0.228+dfsg.1-1, too? > > Kind regards, > Bernhard

Bug#984834: unblock firmware-nonfree 20210208-3 upload

2021-03-08 Thread maximilian attems
Package: release.debian.org Thanks please unblock firmware-nonfree 20210208-3 it is the version that has the relevant firmware packages for the targeted version of linux in bullseye. It will need a small amount of fixes on top that are preprared in git and will be uploaded as soon it has

Bug#983466: Is a mesa-bug

2021-03-08 Thread Gert van de Kraats
because wayland itself needs 2 fence registers for 2 momitors  i and X11 only 1. A trace without using wayland shows the 15th register is used without giving any problem: Feb 24 20:10:59 debian systemd[1270]: Started GNOME Shell on X11. Feb 24 20:11:29 debian gnome-shell[1505]:

Bug#983775: libgrokj2k: Baseline violation on amd64/i386

2021-03-08 Thread Aaron Boxer
Hi Adrian, Thanks very much for the bug report. I will make these changes. So, is it not possible to enable AVX2 acceleration for this package ? Regards, Aaron On Mon, Mar 1, 2021 at 12:21 PM Adrian Bunk wrote: > Source: libgrokj2k > Version: 7.6.6-1 > Severity: serious > Tags: patch > > >

Bug#984828: gitlab: code tree not rendered (circling circle instead)

2021-03-08 Thread Pirate Praveen
On 2021, മാർച്ച് 9 12:56:44 AM IST, Mike Gabriel wrote: >Package: gitlab >Version: 13.7.8+ds1-1~fto10+1 >Severity: serious > >Hi Praveen, > >here comes the other issue I am facing. Occurred with 13.7.7 and also >occurs with 13.7.8: > >When I open a Git repository on my GitLab instance, I

Bug#984831: bugs.debian.org: should not emit semicolon as query param separator

2021-03-08 Thread Phil Morrell
Package: bugs.debian.org Severity: wishlist Hi, As reported on #debian-til, python can no longer parse bugs.d.o URLs correctly out of the box. The change was backported as a security update to 3.6+ so also affects buster. https://bugs.python.org/issue42967 > Changed in version 3.10: Added

Bug#984832: has generally unnecessary dependency on python

2021-03-08 Thread Joey Hess
Package: etckeeper Version: 1.18.16-1 Severity: normal I have systems that would not have python installed except etckeeper depends on it. The dependency is for brz if I understand correctly. However, etckeeper does not use brz by default, and its dependencies let the user choose their vcs

Bug#922744: Bug#976462: tech-ctte: Should dbgsym files be compressed via objcopy --compress-debug-section or not?

2021-03-08 Thread Sam Hartman
Hi. Thanks for your reply. The links to bugs you included add much needed detail to this discussion. > "Matthias" == Matthias Klose writes: Matthias> as pre-processing. So we know since about three years Matthias> that dwz doesn't support compressed debug symbols. Your

Bug#976462: tech-ctte: Should dbgsym files be compressed via objcopy --compress-debug-section or not?

2021-03-08 Thread Elana Hashman
On 2021-03-06 11:11, Jakub Wilk wrote: * Elana Hashman , 2021-02-17, 11:06: Would you be able to research some representative slice of popular packages that would be affected by the policy change (at least 10) and share the on-disk sizes with compression vs. without? Not exactly what you

Bug#922744: Bug#976462: tech-ctte: Should dbgsym files be compressed via objcopy --compress-debug-section or not?

2021-03-08 Thread Matthias Klose
On 3/8/21 6:27 PM, Sam Hartman wrote: >> "Matthias" == Matthias Klose writes: > > Matthias> Maybe you should be more specific about "those who can't > Matthias> use" uncompressed debug info in the first place. > > So, you've argued that the disk savings are not significant inside a

Bug#984830: Update pdfarranger to 1.7.0

2021-03-08 Thread Amr Ibrahim
Package: pdfarranger Please update pdfarranger to 1.7.0. https://github.com/pdfarranger/pdfarranger/releases 1.7.0     Allow to edit Keywords, Subjects and dates in document info (#237, #283)     Ctrl+click now remove a single page from the selection (#197)     Allow selection of odd or

Bug#982274: usr.lib.libreoffice.program.soffice.bin: temporary files are not allowed due to length change

2021-03-08 Thread Rene Engelhard
Hi, for avoidance of doubt... Am 08.03.21 um 20:51 schrieb Rene Engelhard: >> type=AVC msg=audit(1615225628.771:1363): apparmor="DENIED" >> operation="mknod" profile="libreoffice-soffice" >> name="/home/vincas/Dokumentai/lu4638vdjw1.tmp" pid=4638 >> comm="soffice.bin" requested_mask="c"

Bug#984811: ITP: openbgpd -- Free, functional, and secure implementation of the BGP-4 protocol.

2021-03-08 Thread Job Snijders
Dear Julien, > Description : Free, functional, and secure implementation of the > BGP-4 protocol. > > the above short description has 3 useless words in it, I suggest you drop > them. > > If it wasn't free it wouldn't be in Debian; if it wasn't functional why > would anyone release or

Bug#983918: libbsd 0.9.1-2+deb10u1 flagged for acceptance

2021-03-08 Thread Adam D Barratt
package release.debian.org tags 983918 = buster pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian buster. Thanks for your contribution! Upload details == Package: libbsd Version: 0.9.1-2+deb10u1

Bug#983113: ruby-mechanize 2.7.6-1+deb10u1 flagged for acceptance

2021-03-08 Thread Adam D Barratt
package release.debian.org tags 983113 = buster pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian buster. Thanks for your contribution! Upload details == Package: ruby-mechanize Version:

Bug#981686: linux-image-5.10.0-3-amd64: Streaming video over NFSv3 broken since upgrade to 5.10.12

2021-03-08 Thread Salvatore Bonaccorso
Source: linux Source-Version: 5.10.19-1 Hi, On Sat, Mar 06, 2021 at 11:08:18AM +1100, Geoff wrote: > Package: linux-image-5.10.20-xanmod1 > Followup-For: Bug #981686 > X-Debbugs-Cc: unit...@bigpond.com > > NFSv3 issue is fixed upstream in 5.10.15 so this bug can be closed. Thanks for reporting

Bug#984811: ITP: openbgpd -- Free, functional, and secure implementation of the BGP-4 protocol.

2021-03-08 Thread Job Snijders
Package: wnpp Severity: wishlist Owner: Job Snijders X-Debbugs-Cc: debian-de...@lists.debian.org * Package name: openbgpd Version : 6.8p1 Upstream Author : OpenBSD tech mailing list * URL : http://www.openbgpd.org/ * License : ISC Programming Lang: C

Bug#984829: batik: CVE-2020-11987

2021-03-08 Thread Salvatore Bonaccorso
Source: batik Version: 1.12-4 Severity: important Tags: security upstream X-Debbugs-Cc: car...@debian.org, Debian Security Team The following vulnerability was published for batik. CVE-2020-11987[0]: | Apache Batik 1.13 is vulnerable to server-side request forgery, caused | by improper input

Bug#984709: yubikey-luks: Stop exposing challenge in process list

2021-03-08 Thread Christian Kastner
On 08.03.21 20:26, Markus Frosch wrote: > Thanks for reporting, haven't been following upstream for a while since I > don't > use the package actively anymore. Admittedly, this particular information was somewhat buried. > Due to lack of time, I'll upload a minimal patch for now. Feel free to

Bug#984820: jags: Wrong homepage

2021-03-08 Thread Dirk Eddelbuettel
On 8 March 2021 at 20:05, Davide Prina wrote: | Package: jags | Version: 4.3.0-3 | Severity: normal | | I have see that the project homepage do not respond anymore: | http://www-fis.iarc.fr/~martyn/software/jags/ Good catch. Martyn Plummer no longer works there but is now at Warwick. I'll

Bug#973248: [Pkg-puppet-devel] Bug#973248: Deprecation warning in Ruby 2.7: $SAFE will become a normal global variable in Ruby 3.0

2021-03-08 Thread Thomas Goirand
On 3/8/21 8:50 AM, intrigeri wrote: > Control: tag -1 + patch > Control: severity -1 important > > Hi, > > Miquel van Smoorenburg (2020-10-27): >> I get this warning on a puppet run: >> >> /usr/lib/ruby/vendor_ruby/puppet/file_system/uniquefile.rb:126: warning: >> $SAFE will become a normal

Bug#984810: courier-authlib: authtest can access user data information from normal users accoun

2021-03-08 Thread PICCORO McKAY Lenz
El lun, 8 de mar. de 2021 a la(s) 14:56, Markus Wanner (mar...@bluegap.ch) escribió: > not very different from a `cat /etc/passwd`). but we can use the tool to parse brute force attacks in combination with authpasswd tool that is also another case of! so an important update for oldstable, stable

Bug#984709: yubikey-luks: Stop exposing challenge in process list

2021-03-08 Thread Markus Frosch
Hi Christian, On Sun, 2021-03-07 at 15:44 +0100, Christian Kastner wrote: > Looking at the upstream yubikey-luks repository, I noticed what seems to > be an important recent fix, namely for the password (used as the yubikey > challenge) being exposed in the process list: > >   

Bug#984810: [courier-users] any request using authtest are normal

2021-03-08 Thread PICCORO McKAY Lenz
thanks for clarifications Alessadro. but it seems easy if we look from the socket directory access, but .. > The socket file is srwxrwxrwx root root in both cases, but the parent > directory > on the locally built server is: > drwxr-x--- courier courier authdaemon > whilst on the Debian server

Bug#984827: jansi-native: Wrong homepage + possible new version

2021-03-08 Thread Davide Prina
Source: jansi-native Version: 1.2.3-1 Severity: normal I have see that the project homepage do not respond anymore: http://jansi.fusesource.org/ I think that the homepage is now: https://fusesource.github.io/jansi/ I see that jansi-native is marked as deprecated and is now part of jansi

Bug#984826: tigervnc-standalone-server: Unable to init server: Could not connect: Connection refused

2021-03-08 Thread Matthias Klein
Package: tigervnc-standalone-server Version: 1.11.0+dfsg-1 Severity: important Dear Maintainer, since the update to version 1.11 the vncserver does not start anymore. Until prior to the update, the server worked with MATE. My ~/.xstartup file contains the following: unset SESSION_MANAGER unset

Bug#984824: dh-python: pybuild needs to support toml (PEP517/PEP518) builds with no setup.py

2021-03-08 Thread Drew Parsons
Package: dh-python Version: 4.20201102+nmu1 Severity: important Increasingly upstream packages have been moving to the PEP518 build format, for which a pyproject.toml file is provided, and no setup.py pybuild fails to handle such packages. In some cases a trivial setup.py can be patched in, or

Bug#984825: packaging-tutorial: [INTL:nl] Dutch translation for the packaging-tutorial package's documentation

2021-03-08 Thread Frans Spiesschaert
Package: packaging-tutorial Severity: wishlist Tags: l10n patch Dear Maintainer, Please find attached the updated Dutch po file for the packaging-tutorial package. It has been submitted for review to the debian-l10n-dutch mailing list. Please add it to your next package

Bug#984823: pam: [INTL:nl] Dutch translation of debconf messages

2021-03-08 Thread Frans Spiesschaert
Package: pam Severity: wishlist Tags: l10n patch Dear Maintainer, Please find attached the updated Dutch translation of pam debconf messages. It has been submitted for review to the debian-l10n-dutch mailing list. Please add it to your next package revision. It should be put

Bug#984822: jalview: [INTL:nl] Dutch translation of debconf messages

2021-03-08 Thread Frans Spiesschaert
Package: jalview Severity: wishlist Tags: l10n patch Dear Maintainer, Please find attached the Dutch translation of jalview debconf messages. It has been submitted for review to the debian-l10n-dutch mailing list. Please add it to your next package revision. It should be put

Bug#984821: put-dns: [INTL:nl] Dutch translation of debconf messages

2021-03-08 Thread Frans Spiesschaert
Package: put-dns Severity: wishlist Tags: l10n patch Dear Maintainer, Please find attached the Dutch translation of put-dns debconf messages. It has been submitted for review to the debian-l10n-dutch mailing list. Please add it to your next package revision. It should be put

Bug#984820: jags: Wrong homepage

2021-03-08 Thread Davide Prina
Package: jags Version: 4.3.0-3 Severity: normal I have see that the project homepage do not respond anymore: http://www-fis.iarc.fr/~martyn/software/jags/ I think that the homepage is now: http://mcmc-jags.sourceforge.net/ https://sourceforge.net/projects/mcmc-jags/ Ciao Davide Note: this is

Bug#984819: jackson-annotations: Wrong homepage + new version

2021-03-08 Thread Davide Prina
Source: jackson-annotations Version: 2.12.1-1 Severity: normal I have see that the project homepage do not respond anymore: http://wiki.fasterxml.com/JacksonHome I think that the homepage is now: source: https://github.com/FasterXML/jackson-annotations home?:

Bug#984810: courier-authlib: authtest can access user data information from normal users accoun

2021-03-08 Thread Markus Wanner
Control: tags -1 + confirmed Control: severity -1 important On 08.03.21 16:50, PICCORO McKAY Lenz wrote: Currently as normal user, it can be accessed to users database if we setup mysql, postgres or sqlite, inclusively ldap setups.. i mean, a limited account can query users mail data to made

Bug#984818: courier-authdaemon init script is not idempotent

2021-03-08 Thread Markus Wanner
Package: courier-authlib Version: 0.71.1-1 The (sysv) init script for courier-authdaemon exits with an error in case of an attempt to start an already started or stop an already stopped service. This clearly breaks the postrm script.

Bug#983198: torbrowser-launcher: launcher does not detect torbrowser as installed on non-EN user session

2021-03-08 Thread Imre Jonk
Hi Marcelo, I can reproduce the issue, and your patch works for me. Thanks for the effort! I hope that the maintainer of torbrowser-launcher can find the time to upload a new version. Cheers, Imre signature.asc Description: This is a digitally signed message part

Bug#982796: avahi 0.7-4+deb10u1 flagged for acceptance

2021-03-08 Thread Adam D Barratt
package release.debian.org tags 982796 = buster pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian buster. Thanks for your contribution! Upload details == Package: avahi Version: 0.7-4+deb10u1

Bug#984799: scilab-full-bin for armhf and i386

2021-03-08 Thread Alexis PM
Package: scilab-full-bin Version: 6.1.0+dfsg1-7 Severity: wishlist In Debian 11 Bullseye (current testing) and Sid, scilab-full-bin is not available for armhf and i386, but in Debian 10 Buster is avaible. Perhaps this is due to the limited number of architectures supported by libjogl2-java:

Bug#982737: gnome-autoar: CVE-2020-36241

2021-03-08 Thread Salvatore Bonaccorso
Hi Sebastien, On Mon, Mar 08, 2021 at 01:28:51PM +0100, Sebastien Bacher wrote: > Hey there > > Le 06/03/2021 à 20:46, Salvatore Bonaccorso a écrit : > > Probably as well on your radar already, but there is as well a > > regression fix needed for it as per > > > >

Bug#983533: Fix for #983533, fix session startup of RDP session in vinagre's RDP plugin

2021-03-08 Thread Mike Gabriel
Hi Simon, On Mo 08 Mär 2021 14:01:41 CET, Simon McVittie wrote: On Fri, 26 Feb 2021 at 09:44:34 +, Mike Gabriel wrote: I have done more tests with vinagre. I have attached a .debdiff that fixes Vinagre's connection initialization and gives me a working RDP session. I suspect you might

Bug#984817: Hardcoded program names in arptables-legacy-save and arptables-legacy-restore scripts

2021-03-08 Thread Arkadiusz Dykiel
Package: arptables Version: 0.0.4+snapshot20181021-4 Severity: important Dear Maintainer, /usr/sbin/arptables-legacy-save and /usr/sbin/arptables-legacy-restore have hard reference in scprits to my $tool = "/usr/sbin/arptables"; It makes them unusable for legacy as /usr/sbin/arptables is a

Bug#982274: usr.lib.libreoffice.program.soffice.bin: temporary files are not allowed due to length change

2021-03-08 Thread Vincas Dargis
Control: reopen -1 I see this bug marked as Done but I just got denial today: type=AVC msg=audit(1615225628.771:1363): apparmor="DENIED" operation="mknod" profile="libreoffice-soffice" name="/home/vincas/Dokumentai/lu4638vdjw1.tmp" pid=4638 comm="soffice.bin" requested_mask="c" denied_mask="c"

Bug#984816: busybox resume fails to resume with swap file after hibernation

2021-03-08 Thread Sven Mueller
Package: busybox-static Version: 1:1.30.1-6 Hi. I wasn't able to figure out all the details yet and likely won't get to that in the next few weeks. However, I tried getting hibernation to work on a machine with only a swap file. This failed miserably (machine appeared to hibernate properly, but

Bug#983071: unblock: xz-utils/5.2.5-1.1

2021-03-08 Thread Paul Gevers
Control: tags -1 confirmed Hi, On 04-03-2021 12:32, Paul Gevers wrote: > What I *think* we're going to do is accept the package in unstable, but > have it age a bit in unstable before unblocking (which is going to > happen automatically due to the hard freeze). Please upload to unstable. As

Bug#984802: [Pkg-fonts-devel] Bug#984802: conflicts: lcdf-typetools

2021-03-08 Thread Jonas Smedegaard
Quoting Samuel Thibault (2021-03-08 18:00:31) > Jonas Smedegaard, le lun. 08 mars 2021 17:36:53 +0100, a ecrit: > > Quoting Samuel Thibault (2021-03-08 16:12:37) > > > Gürkan Myczko, le lun. 08 mars 2021 15:44:52 +0100, a ecrit: > > > > Package: otf-trace > > > > Version: 1.12.5+dfsg-7 > > > >

Bug#983695: ibus-anthy: does not work out of the box on the GNOME desktop

2021-03-08 Thread Gunnar Hjalmarsson
On 2021-03-08 17:19, Shengjing Zhu wrote: Hi, On Sun, Feb 28, 2021 at 11:12 PM YOSHINO Yoshihito wrote: Package: ibus-anthy Version: 1.5.11-2 Severity: important Tags: patch Dear Maintainer, On the GNOME desktop, manual set-up in GNOME Settings is required in order to make ibus-anthy to

Bug#982381: MainThread s3ql.umount.blocking_umount: Flushing cache...

2021-03-08 Thread Nat
Not sure if that's trio issue but after installing newer version from pip to get it running, umounting gets stuck at 2021-03-08 17:41:16.739 2857 DEBUG    MainThread s3ql.umount.blocking_umount: Flushing cache... And only thing that helps is kill -9 of mount process and fixing it with

Bug#976462: tech-ctte: Should dbgsym files be compressed via objcopy --compress-debug-section or not?

2021-03-08 Thread Sam Hartman
> "Matthias" == Matthias Klose writes: Matthias> Maybe you should be more specific about "those who can't Matthias> use" uncompressed debug info in the first place. So, you've argued that the disk savings are not significant inside a package, because packages are themselves

Bug#984794: calamares: use eatmydata to speed up last installation step (60remove-live-packages)

2021-03-08 Thread ValdikSS
Package: calamares Version: 3.2.36-1 Severity: wishlist Dear Maintainer, Upon installation of Debian 10.8.0 using live ISO with Calamares, the step of live packages removal from target file system may take up to 30 minutes on old HDD due to excessive fsync()'s caused by dpkg. With eatmydata

Bug#984802: [Pkg-fonts-devel] Bug#984802: conflicts: lcdf-typetools

2021-03-08 Thread Samuel Thibault
Jonas Smedegaard, le lun. 08 mars 2021 17:36:53 +0100, a ecrit: > Quoting Samuel Thibault (2021-03-08 16:12:37) > > Gürkan Myczko, le lun. 08 mars 2021 15:44:52 +0100, a ecrit: > > > Package: otf-trace > > > Version: 1.12.5+dfsg-7 > > > Severity: serious > > > Justification: Sounds like a serious

Bug#984815: ITP: libbiosoup-dev -- C++ header-only support library for bioinformatics tools

2021-03-08 Thread Michael R. Crusoe
Package: wnpp Severity: wishlist X-Debbugs-Cc: cru...@debian.org Subject: ITP: libbiosoup-dev -- C++ header-only support library for bioinformatics tools Package: wnpp Owner: Michael R. Crusoe Severity: wishlist * Package name: libbiosoup-dev Version : 0.10.0 Upstream Author :

Bug#984814: fbless: search is broken

2021-03-08 Thread Stepan Golosunov
Package: fbless Version: 0.2.3-4 Severity: normal After upgrade of fbless from 0.2.3-3 to 0.2.3-4 search is no longer working. anything always ends with Traceback (most recent call last): File "/usr/bin/fbless", line 23, in MainWindow().main_loop() File

Bug#984792: eatmydata-udeb: finish-install.d/13eatmydata-udeb executes earlier than 60remove-live-packages on live ISO

2021-03-08 Thread ValdikSS
Package: eatmydata-udeb Version: 105-7 Severity: normal Tags: d-i Dear Maintainer, /usr/lib/finish-install.d/60remove-live-packages file is executed after disablng eatmydata-udeb on live iso file, which slows down live packages removing process dramatically. Consider increasing execution

Bug#984792: eatmydata-udeb: finish-install.d/13eatmydata-udeb executes earlier than 60remove-live-packages on live ISO

2021-03-08 Thread Mattia Rizzolo
On Mon, Mar 08, 2021 at 03:45:31PM +0300, ValdikSS wrote: > /usr/lib/finish-install.d/60remove-live-packages file is executed after > disablng eatmydata-udeb on live iso file, which slows down live packages > removing process dramatically. > Consider increasing execution order of eatmydata-udeb

Bug#984791: eatmydata-udeb: udeb included in Debian ISO, but eatmydata and libeatmydata1 are not

2021-03-08 Thread ValdikSS
Package: eatmydata-udeb Version: 105-7 Severity: normal Tags: d-i Dear Maintainer, eatmydata-udeb is included in Debian ISO files but can't be used as eatmydata and libeatmydata1 are missing in ISO pool on any ISO I've tested (CD/DVD, regular/live). Without the library eatmydata-udeb does

Bug#984802: [Pkg-fonts-devel] Bug#984802: conflicts: lcdf-typetools

2021-03-08 Thread Jonas Smedegaard
Quoting Samuel Thibault (2021-03-08 16:12:37) > Gürkan Myczko, le lun. 08 mars 2021 15:44:52 +0100, a ecrit: > > Package: otf-trace > > Version: 1.12.5+dfsg-7 > > Severity: serious > > Justification: Sounds like a serious violation of ?10.1 > > Well, yes. The base issue is that OTF stands both

Bug#984497: weasels and doves

2021-03-08 Thread Andrius Merkys
Hi, On 2021-03-08 15:44, Albert van der Horst wrote: > I don't see the problem here. If there is a bug in an old version supplied > with Debian, the bug report lands with Debian. Not necessary. Many users cannot tell whether a bug is caused by upstream code or Debian packaging. Many users do

Bug#968498: fbless cant open files

2021-03-08 Thread Stepan Golosunov
control: severity -1 important control: tags -1 patch On Sun, Aug 16, 2020 at 02:58:30PM +0300, Alexander Inyukhin wrote: > Package: fbless > Version: 0.2.3-4 > Severity: normal > > fbless failed to open files with exception > > Traceback (most recent call last): > File "/usr/bin/fbless",

Bug#983695: ibus-anthy: does not work out of the box on the GNOME desktop

2021-03-08 Thread Shengjing Zhu
Hi, On Sun, Feb 28, 2021 at 11:12 PM YOSHINO Yoshihito wrote: > > Package: ibus-anthy > Version: 1.5.11-2 > Severity: important > Tags: patch > > Dear Maintainer, > > On the GNOME desktop, manual set-up in GNOME Settings is required > in order to make ibus-anthy to work. > > I have prepared an

Bug#984811: ITP: openbgpd -- Free, functional, and secure implementation of the BGP-4 protocol.

2021-03-08 Thread Julien Cristau
On Mon, Mar 08, 2021 at 05:13:35PM +0100, Job Snijders wrote: > Dear Julien, > > > >   Description     : Free, functional, and secure implementation of the > BGP-4 protocol. > > the above short description has 3 useless words in it, I suggest you drop > them. > > If it

Bug#983849: [Pkg-mailman-hackers] Bug#983849: Executable mailman-web does not exist

2021-03-08 Thread Jonas Meurer
Hey Ÿnérant, Am 08.03.21 um 16:44 schrieb Ÿnérant: Mailman-web is providing an entrypoint for its management, called mailman-web: https://gitlab.com/mailman/mailman-web/-/blob/master/setup.cfg#L34 This is also appearing in its documentation: https://docs.mailman3.org/en/latest/config-web.html

Bug#984811: ITP: openbgpd -- Free, functional, and secure implementation of the BGP-4 protocol.

2021-03-08 Thread Julien Cristau
On Mon, Mar 08, 2021 at 04:51:14PM +0100, Job Snijders wrote: > Package: wnpp > Severity: wishlist > Owner: Job Snijders > X-Debbugs-Cc: debian-de...@lists.debian.org > > * Package name: openbgpd > Version : 6.8p1 > Upstream Author : OpenBSD tech mailing list > * URL

  1   2   >