Bug#988224: unblock: mapserver/7.6.2-2 (pre-approval)

2021-05-07 Thread Bas Couwenberg
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package mapserver to fix CVE-2021-32062 as reported in #988208. [ Reason ] Fix security issue. [ Impact ] Unfixed security issue. [ Tests ] Upstream CI. [ Risks ] Low,

Bug#988208: CVE-2021-32062

2021-05-07 Thread Sebastiaan Couwenberg
On 5/7/21 9:14 PM, Moritz Muehlenhoff wrote: > Patch for branch-7-6: > https://github.com/mapserver/mapserver/commit/927ac97cb9ece305306b5ab2b5600d3afe8c1732 > That does not apply cleanly on 7.6.2 in bullseye, due to the changes in:

Bug#988223: unblock: golang-golang-x-net/1:0.0+git20210119.5f4716e+dfsg-3

2021-05-07 Thread Shengjing Zhu
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock X-Debbugs-Cc: z...@debian.org Please unblock package golang-golang-x-net [ Reason ] Same as #988210, backport patch for CVE-2021-31525 net/http: ReadRequest can stack overflow due to

Bug#932377: ITP: dvc -- Version Control System for Machine Learning Projects

2021-05-07 Thread M. Zhou
On Fri, 2021-05-07 at 11:33 -0600, Anthony Fok wrote: > > Mo (lumin), I saw that you came pretty far in packaging DVC (dvc.org) > at > >     https://salsa.debian.org/deeplearning-team/dvc > > Would you be so kind as to continue your work and upload dvc into > Debian proper? > I'm very

Bug#988222: unblock: plasma-workspace/4:5.20.5-6

2021-05-07 Thread Patrick Franz
Hi, sorry, the correct link for the bug report is https://bugs.debian.org/ cgi-bin/bugreport.cgi?bug=988098. -- Med vänliga hälsningar Patrick Franz

Bug#988222: unblock: plasma-workspace/4:5.20.5-6

2021-05-07 Thread Patrick Franz
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock X-Debbugs-Cc: patfr...@gmail.com Please unblock package plasma-workspace [ Reason ] This release fixes an RC-critical bug. See bug report at [1]. [ Impact ] A lot of files are moved from

Bug#988221: xterm: uses unescaped backslashes in manpage example

2021-05-07 Thread Thorsten Glaser
Package: xterm Version: 366-1 Severity: minor Tags: upstream X-Debbugs-Cc: t...@mirbsd.de The manual page includes example commands such as… printf '\033]2;Hello world!\033\' … which use unescaped backslashes at the end of the command. In general this works… $ printf '\' | hd

Bug#988219: meson: Move package into unstable

2021-05-07 Thread Andrea Pappacoda
Package: meson Version: 0.58.0-1 Severity: wishlist Since Meson 0.57.1 Meson has been only packaged for experimental, even if it seems that there isn't a good reason for it. Could it please be moved to unstable? This also makes updated version unavailable for Ubuntu. Thanks :) -- System

Bug#988220: aptitude: documentation improvements

2021-05-07 Thread Christoph Anton Mitterer
Source: aptitude Version: 0.8.13-3 Severity: wishlist Hey. I was looking through the documentation, specifically the part about search strings and may have found some ambiguities or things that would benefit from more clarification: 1) Searching for strings Mentiones that most patterns are

Bug#988218: Regression: clamdscan segfaults with --fdpass --multipass and ExcludePath in clamd.conf

2021-05-07 Thread Timo Sigurdsson
Sorry, I just saw that I mangled the option names in the subject. It should have been: Regression: clamdscan segfaults with --fdpass --multiscan and ExcludePath in clamd.conf Thanks!

Bug#988218: Regression: clamdscan segfaults with --fdpass --multipass and ExcludePath in clamd.conf

2021-05-07 Thread Timo Sigurdsson
Package: clamav Version: 0.103.2+dfsg-0+deb10u1 Severity: important Dear Maintainer, since the latest upgrade to 0.103.2+dfsg-0+deb10u1 clamdscan segfaults immediately when called with both --fdpass and --multiscan and when the ExcludePath option is used in clamd.conf. Ubuntu was hit by the same

Bug#975490: u-boot-sunxi: Booting the system got stuck after "Starting kernel ..."

2021-05-07 Thread Vagrant Cascadian
Control: clone 975490 -1 Control: retitle -1 bootefi causes boot failure with boot.scr Control: tags -1 + fixed-upstream Control: tags -1 + patch Control: severity -1 important On 2021-04-16, Bastian Germann wrote: > On a Lamobo R1, I can verify 2021.01 versions not to boot with a > default

Bug#987749: RFP: KWeather -- weather app for Plasma Mobile and Desktop

2021-05-07 Thread Transparent Wing
Understood. Well, all of the info you mentioned is available in the link I posted (https://invent.kde.org/plasma-mobile/kweather) Should I copy and paste here? De: Andrei POPESCU Enviadas: Terça-feira, 04 de Mai de 2021 02:40 Para: Transparent Wing Cc:

Bug#982249: mpv-0.33 upgrade

2021-05-07 Thread Christopher McKenzie
So I ran into an actual issue that needs 0.33 The mp command of "playlist-play-index" in order to programmatically index a playlist has no previous equivalency (other than perhaps incrementally rolling around - but it's not the same) and I had put it in some lua script that then borked at me

Bug#975490: u-boot-sunxi: Booting the system got stuck after "Starting kernel ..."

2021-05-07 Thread Bastian Germann
On Fri, 16 Apr 2021 17:06:37 +0200 Bastian Germann wrote: > The issue is fixed in 2021.04 (experimental) which has the same default environment as 2021.01. The upstream commit that fixed this is https://github.com/u-boot/u-boot/commit/82d01f04facef1276cede067efd02d2a731ffe83 It applies

Bug#988210: [pre-approval] unblock: golang-1.15/1.15.9-2

2021-05-07 Thread Sebastian Ramacher
Control: tags -1 moreinfo confirmed On 2021-05-08 03:15:49 +0800, Shengjing Zhu wrote: > Package: release.debian.org > Severity: normal > User: release.debian@packages.debian.org > Usertags: unblock > X-Debbugs-Cc: z...@debian.org > > Please unblock package golang-1.15 > > [ Reason ] >

Bug#988216: unblock: lacme/0.8.0-2

2021-05-07 Thread Guilhem Moulin
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Dear Release Team, Please unblock package lacme/0.8.0-2: [ Reason ] As of lacme 0.8.0-1 dedicated system users _lacme-* are created at install time and removed on purge. The later was

Bug#988210: [pre-approval] unblock: golang-1.15/1.15.9-2

2021-05-07 Thread Shengjing Zhu
On Sat, May 8, 2021 at 3:18 AM Shengjing Zhu wrote: [...] > Due to the static link of Go packages, and the out of date built-using > thing, it needs another round of rebuild of all Go packages before > bullseye release. Regarding to rebuild Go packages, I think it's easier if we do it before

Bug#988215: CVE-2021-3500

2021-05-07 Thread Moritz Muehlenhoff
Source: djvulibre Severity: important Tags: security X-Debbugs-Cc: Debian Security Team Not many details yet, but this was assigned CVE-2021-3500: https://bugzilla.redhat.com/show_bug.cgi?id=1943685 Cheers, Moritz

Bug#988214: CVE-2021-22885 CVE-2021-22902 CVE-2021-22904

2021-05-07 Thread Moritz Muehlenhoff
Package: rails Severity: grave Tags: security X-Debbugs-Cc: Debian Security Team CVE-2021-22904: https://github.com/rails/rails/commit/d861fa8ade353390c4419b53a6c6b41f3005b1f2 (v6.0.3.7) CVE-2021-22902: Fixed by: https://github.com/rails/rails/commit/446afbd15360a347c923ca775b21a286dcb5297a

Bug#988213: CVE-2020-24344

2021-05-07 Thread Moritz Muehlenhoff
Package: iotjs Severity: important Tags: security X-Debbugs-Cc: Debian Security Team This was assigned CVE-2020-24344: https://github.com/jerryscript-project/jerryscript/issues/3976 https://github.com/jerryscript-project/jerryscript/commit/841d536fce1ce29267cdf0ea12be4026e1c35d3a Cheers,

Bug#988212: cups: add support for HP Laser MFP 137fnw

2021-05-07 Thread Mr. T
Package: cups Version: 2.3.3op2-3 Severity: normal X-Debbugs-Cc: t...@treaki.tk hi folks, its not the newesd printer i have but its the newest debian, on debian 10 i had quite a hazzle to install drivers, but now on testing it shouldnt be to difficult to integrate the drivers that you can

Bug#988211: CVE-2021-30473

2021-05-07 Thread Moritz Muehlenhoff
Source: aom Severity: important Tags: security X-Debbugs-Cc: Debian Security Team CVE-2021-30473: | aom_image.c in libaom in AOMedia before 2021-04-07 frees memory that is not located on the heap. Unfortunately https://bugs.chromium.org/p/aomedia/issues/detail?id=2998 is private, but the fix

Bug#988210: [pre-approval] unblock: golang-1.15/1.15.9-2

2021-05-07 Thread Shengjing Zhu
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock X-Debbugs-Cc: z...@debian.org Please unblock package golang-1.15 [ Reason ] Backport patch for CVE-2021-31525 net/http: ReadRequest can stack overflow due to recursion with very large

Bug#988209: CVE-2021-31879

2021-05-07 Thread Moritz Muehlenhoff
Package: wget Version: 1.21-1+b1 Severity: important Tags: security X-Debbugs-Cc: Debian Security Team This was assigned CVE-2021-31879: https://mail.gnu.org/archive/html/bug-wget/2021-02/msg2.html Cheers, Moritz

Bug#988208: CVE-2021-32062

2021-05-07 Thread Moritz Muehlenhoff
Source: mapserver Severity: grave Tags: security X-Debbugs-Cc: Debian Security Team CVE-2021-32062: https://github.com/mapserver/mapserver/issues/6313 https://github.com/MapServer/MapServer/pull/6314 Patch for branch-7-6:

Bug#988207: linux-image-5.10.0-6-amd64: Multiple CDC devices does not work after migration Buster->Bullseye

2021-05-07 Thread Andrii Beregovenko
Package: src:linux Version: 5.10.28-1 Severity: important X-Debbugs-Cc: j...@jet.kiev.ua Dear Maintainer, Recently I've upgraded from stable to upcoming stable. The default kernel has been updated from 4.19 to 5.10 as well. Immediatelly I discovered my builtin 3G modem stoped working. Also

Bug#988206: webkit2gtk: Experimental support for webrtc

2021-05-07 Thread Pirate Praveen
On Fri, 07 May 2021 23:02:00 +0530 Pirate Praveen wrote: > We probably need to install some files in the gstreamer package. on a sid schroot, dpkg-buildpackage could start the build, but later failed with FAILED:

Bug#988147: [Debian-med-packaging] Bug#988147: psychopy: unhandled symlink to directory conversion: /usr/share/doc/psychopy/examples

2021-05-07 Thread Étienne Mollier
Control: tag -1 pending Hi Andreas, Andreas Beckmann, on 2021-05-06 19:01:37 +0200: > This was observed on the following upgrade paths: > > stretch -> buster (which had no psychopy package, thus keeping the > stretch version installed) -> bullseye Thanks for testing the

Bug#988183: gemma ftbfs on buster, newer version builds fine one bullseye

2021-05-07 Thread Steffen Möller
Would a regular backport be the way to go?

Bug#988199: Suggests: mintest-server should be minetest-server

2021-05-07 Thread James Valleroy
Package: fbx-all Version: 2 Severity: normal X-Debbugs-Cc: jvalle...@mailbox.org -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Dear Maintainer, fbx-all suggests mintest-server, which does not exist. It should be minetest-server instead. - -- System Information: Debian Release: bullseye/sid

Bug#988178: Newer ypbind-mt package also affected

2021-05-07 Thread Brian Morris
Yes, I have not specifically tested this situation with a newer distro install but I looked at the nis init script which appears to have been moved to the ypbind-mt package, and the invocation of start-stop-daemon for starting ypbind does not pass --pidfile. -Brian

Bug#987839: apt-listbugs: daily cleanup runs hourly

2021-05-07 Thread Francesco Poli
On Tue, 4 May 2021 21:41:03 -0700 Ross Boylan wrote: [...] > On Mon, May 3, 2021 at 2:24 PM Francesco Poli > wrote: [...] > > I would be grateful, if you could find out why. > > I am asking you, since you seem to be more knowledgeable about logcheck > > than me. > > This strikes me as

Bug#932377: ITP: dvc -- Version Control System for Machine Learning Projects

2021-05-07 Thread Anthony Fok
Control: reopen -1 I believe this bug was closed in error. Despite the identical proposed Debian package name, this is in fact NOT a duplicate of https://bugs.debian.org/496930 as they are entirely different and unrelated software. #496930: http://bzr.xsteve.at/dvc Emacs front-end to

Bug#988205: bluez "forgets" device after hibernate/resume

2021-05-07 Thread arne anka
Package: bluez Version: 5.55-3 Severity: normal Dear Maintainer, frequently after hibernating and resuming my computer, BlueZ has forgotten the headset i use daily. Other devices, some I haven't used in months, still are listed upon # bluetoothctl devices After # service bluetooth restart the

Bug#988099: It works, the default is just wront

2021-05-07 Thread Jürgen Richtsfeld
I just found that if I put "--collector.diskstats" in the ARGS of /etc/default/prometheus-node-exporter and restart the service it works. I didn't try this i in the first row as the documentation says that this is default enabled anyways (so the bug basically just is, that the description about

Bug#988204: apparmor: AppArmor container behavior inappropriate under WSL

2021-05-07 Thread Alistair Young
Package: apparmor Version: 2.13.6-10 Severity: normal Tags: patch X-Debbugs-Cc: ava...@arkane-systems.net Dear Maintainer, There is an issue with the apparmor package not functioning appropriately when installed on Debian running under the Windows Subsystem for Linux. Specifically,

Bug#988100: mmdebstrap: squashfs image lack security capabilities (e.g. for /bin/ping)

2021-05-07 Thread Benjamin Drung
Hi, Am Freitag, den 07.05.2021, 08:23 +0200 schrieb Johannes Schauer Marin Rodrigues: > Control: reopen -1 > > Quoting Benjamin Drung (2021-05-06 15:41:53) > > Am Mittwoch, den 05.05.2021, 20:46 +0200 schrieb Jonas Smedegaard: > > > Quoting Johannes Schauer Marin Rodrigues (2021-05-05 19:37:16)

Bug#975441: x264 silently disables gpac support with gpac 1.0.1

2021-05-07 Thread Christopher Wellons
Package: x264 Version: 2:0.160.3011+gitcde9a93-2+b2 Followup-For: Bug #975441 I can confirm that the upstream patch works. When applied, MP4 support is restored in my build. I've attached the tested, refreshed patch. commit 7c2004b58c26da661618262c9c06b73ad3a9ff6c Author: A. David Date: Thu

Bug#988195: wine-development: starting wine-development failed due to wrong prefix

2021-05-07 Thread agn
Package: wine-development Version: 5.9-1 Severity: grave Justification: renders package unusable X-Debbugs-Cc: a...@disroot.org After updated wine-development to 5.9-1, I executed finecfg and get this message: wine: chdir to /tmp/.wine-1000/server-804-8010e5 : No such file or directory I have

Bug#988203: libubootenv: Build for linux-any

2021-05-07 Thread Bastian Germann
Source: libubootenv Severity: wishlist The binary packages that are built for "Architecture: any" should be built for linux-any. The package has at least one linux-specific import.

Bug#496930: RFP: emacs-dvc -- Emacs front-end to distributed version control systems

2021-05-07 Thread Anthony Fok
Control: retitle -1 RFP: emacs-dvc -- Emacs front-end to distributed version control systems This package is more appropriately named emacs-dvc, especially now in 2021. Gna! was shutdown in 2017 (see [1] https://en.wikipedia.org/wiki/Gna! ) so http://download.gna.org/dvc is no more.

Bug#988202: ftp.debian.org: metadata.ftp-master.debian.org has many files that are 403 Forbidden

2021-05-07 Thread Hans-Christoph Steiner
Package: ftp.debian.org Severity: normal When doing some work surverying licenses in Debian, I found these errors: 404 Client Error: Not Found: https://metadata.ftp-master.debian.org/changelogs/main/p/php-psr-log/php-psr- log_1.0.0-2_copyright 403 Client Error: Forbidden:

Bug#988201: Please install examples and patch doas.conf(5)

2021-05-07 Thread Ryan Kavanagh
Package: doas Version: 6.8.1-2 Severity: wishlist X-Debbugs-Cc: r...@debian.org The FILES section of doas.conf(5) mentions /etc/examples/doas.conf Example configuration file. but these are absent. Could you please install the example configuration file(s) in the usual location (see policy

Bug#987976: mediawiki: autopkgtests are missing restrictions and dependencies

2021-05-07 Thread Tobias Wiese
Hi, On 21-05-06 14:30:54, Kunal Mehta wrote: > I assume that since you marked this as minor it isn't > important to get in for bullseye? Yes I don't necessarily need this in bullseye. Tobias -- Tobias Wiese PGP KEY: https://tobiaswiese.com/pgp.asc PGP FPR:

Bug#984956: me too

2021-05-07 Thread Vassilis Virvilis
Ok I think I made some headway but I would welcome some insight from somebody more knowledgeable I think the problem is a potential mixup of the internal vs the external pmix library in openmpi. In my setup the call to ` rc = PMIx_Get(, key, pinfo, sz, ); ` at ext3x_client.c:656 fills the pval

Bug#988198: connman: Update to version 1.39 for security patches

2021-05-07 Thread adubois
Source: connman Version: <1.39 Severity: normal Dear Maintainer, CVEs have been released against connman <1.39: https://cve.mitre.org/cgi- bin/cvename.cgi?name=CVE-2021-26675 and https://cve.mitre.org/cgi- bin/cvename.cgi?name=CVE-2021-26676. Will the package be upgraded with these fixes? --

Bug#988197: patch for samba which fixes legacy printing support

2021-05-07 Thread Mateusz Mikołajczyk
Package: samba Version: 4.9.5+dfsg-5+deb10u1 I was testing samba with an really old DOS client. it turns out that ever since samba 3.2.0 there was an upstream change that broke this legacy printing support. It was already merged upstream but the patch is super tiny - a one liner:

Bug#988196: xserver-xspice: if Xspice use --vdagent, "/usr/bin/Xspice", line 277, NameError: name 'temp_dir' is not defined

2021-05-07 Thread Gerald Suen
Package: xserver-xspice Version: 0.1.5+git20200331-1 Severity: normal Dear Maintainer, Xspice --port 5900 --disable-ticketing --xorg Xorg :3.0 --vdagent Traceback (most recent call last): File "/usr/bin/Xspice", line 277, in if not temp_dir: NameError: name 'temp_dir' is not defined This

Bug#943398: Closing this bug (BTS maintenance for src:linux bugs)

2021-05-07 Thread Bernhard Übelacker
Hello, just for the record. Upstream seems to have fixed this in [1] which is included in kernel v5.8 and later. Kind regards, Bernhard [1] https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/tools/perf/ui/browsers/hists.c?id=d61cbb859b45fdb6b4997f2d51834fae41af0e94

Bug#988194: node-got: package.json files not installed for some nodejs packages

2021-05-07 Thread Ariel D'Alessandro
Package: node-got Version: 11.8.1+~cs53.13.17-1 Severity: normal Dear Maintainer, Recent versions (>=0.9.57) of pkg-js-tools are ignoring entries from each node package's .npmignore. This is the behaviour since the .npmignore feature was fixed:

Bug#987951: klaus/httpauth.py

2021-05-07 Thread Wessel Dankers
Hi, Thanks for patching the lines I mentioned. Unfortunately that patch was only meant to highlight the problem area, not as a comprehensive solution. In particular, the new version now references a nonexistent variable 'PY2'. This is partially my fault for tagging the bug report 'patch'.

Bug#988191: ionos-1 proxy causes lots of temporary build failures by being slow to respond

2021-05-07 Thread Holger Levsen
On Fri, May 07, 2021 at 01:50:04PM +0200, Helmut Grohne wrote: > I'm unsure what you mean here precisely. Do you mean adding a separate > squid on ionos9 used by only ionos9 yes, that. > If the proxy is only used locally, adding another cpu is unnecessary as > the times when the proxy is being

Bug#988191: ionos-1 proxy causes lots of temporary build failures by being slow to respond

2021-05-07 Thread Helmut Grohne
Hi Holger, On Fri, May 07, 2021 at 11:32:21AM +, Holger Levsen wrote: > as a simple fix: we could install squid on your node (ionos9?) and a another > cpu for it? (and 4gb ram or such) I'm unsure what you mean here precisely. Do you mean adding a separate squid on ionos9 used by only ionos9

Bug#988193: unblock: deepin-terminal/5.0.0+ds1-3

2021-05-07 Thread Arun Kumar Pariyar
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock X-Debbugs-Cc: pkg-deepin-de...@lists.alioth.debian.org Please unblock package deepin-terminal [ Reason ] Cherry-picked patch is included that fixes FTBFS RC bug #987933 and an old normal

Bug#988191: ionos-1 proxy causes lots of temporary build failures by being slow to respond

2021-05-07 Thread Holger Levsen
On Fri, May 07, 2021 at 12:52:52PM +0200, Helmut Grohne wrote: > The proxy running on ionos-1 is frequently overloaded and slow to > respond. This frequently results in apt or mmdebstrap failing to > download packages and makes a lot of jobs fail. For rebootstrap it seems > to roughly kill 1/3 of

Bug#988192: unblock: debian-cd/3.1.34

2021-05-07 Thread Holger Levsen
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package debian-cd 3.1.34 as that's the version currently in use on cdimage.debian.org to build bullseye images. The changes are straightforward, trivial, tested and been in

Bug#988052: dpkg-cross: does not convert path to dynamic loader in linker scripts

2021-05-07 Thread Helmut Grohne
Control: tags -1 + patch On Wed, May 05, 2021 at 03:16:05PM +0200, Helmut Grohne wrote: > As a minimally invasive solution (until we understand why multiarch is > handled differently here), I propose handling the dynamic loader > specially and fixing it up regardless of whether the package is >

Bug#988115: erlang-p1-xmpp: Crashs with Ejabberd 21.01

2021-05-07 Thread Philipp Huebner
Hi there Am 06.05.21 um 00:49 schrieb pitchum: > This problem has been reported upstream in [3524] but the fix will be > available > in ejabberd 21.04. As a workaround I have backported the [patch] from > erlang-xmpp 1.5.3 and it has been working fine for a few weeks now. > > Could you also

Bug#988191: ionos-1 proxy causes lots of temporary build failures by being slow to respond

2021-05-07 Thread Helmut Grohne
Package: jenkins.debian.org Severity: important The proxy running on ionos-1 is frequently overloaded and slow to respond. This frequently results in apt or mmdebstrap failing to download packages and makes a lot of jobs fail. For rebootstrap it seems to roughly kill 1/3 of all jobs. As such the

Bug#988188: Maybe fix it for Bullseye?

2021-05-07 Thread Thomas Goirand
Hi, I did a quick check for what's in Experimental, and it doesn't feel like it's a lot of work to get things done. I've attached the debdiff for a typical Horizon plugin, here Designate, in the Experimental version (but the fix will be similar in Unstable), as well as the debdiff for Horizon.

Bug#987994: diffoscope: crash when comparing two ZIP files

2021-05-07 Thread Chris Lamb
forwarded 987994 https://salsa.debian.org/reproducible-builds/diffoscope/-/issues/254 thanks I've forwarded this upstream here: https://salsa.debian.org/reproducible-builds/diffoscope/-/issues/254 Regards, -- ,''`. : :' : Chris Lamb `. `'` la...@debian.org /

Bug#988180: installation-reports: Bullseye RC 1 Installer Success

2021-05-07 Thread Jaycee Santos
Package: installation-reports Severity: normal X-Debbugs-Cc: jlsan...@protonmail.com Boot method: USB Image version: https://cdimage.debian.org/cdimage/bullseye_di_rc1/amd64/iso- cd/debian-bullseye-DI-rc1-amd64-netinst.iso Date: Fri, 07 May 2021 04:54:20 + Machine: (Custom Built) AMD Ryzen

Bug#970253: CVE-2020-15469

2021-05-07 Thread Moritz Muehlenhoff
On Fri, May 07, 2021 at 11:59:33AM +0300, Michael Tokarev wrote: > 06.05.2021 20:51, Moritz Mühlenhoff wrote: > > Am Sun, Sep 13, 2020 at 10:42:36PM +0200 schrieb Moritz Muehlenhoff: > > > Package: qemu > > > Severity: important > > > Tags: security > > > X-Debbugs-Cc: Debian Security Team > > >

Bug#988190: unblock: diaspora-installer/0.7.14.0+debian2

2021-05-07 Thread Pirate Praveen
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package diaspora-installer [ Reason ] This fixes rc bug #986286 [ Impact ] This is a grave bug and diaspora-installer installation itself breaks. [ Tests ] Manually

Bug#988178: Newer ypbind-mt package also affected

2021-05-07 Thread Francesco P. Lovergine
On Fri, May 07, 2021 at 12:28:24AM +, Brian Morris wrote: I also looked at the source of the newer ypbind-mt package in the Testing branch and it appears to have the same issue. Hi I guess you are talking about the init script still provided? -- Francesco P. Lovergine

Bug#988177: [Aptitude-devel] Bug#988177: aptitude: character encoding issues within the manual

2021-05-07 Thread Axel Beckert
Control: tag -1 + confirmed Dear Christoph, Christoph Anton Mitterer wrote: > When opening the manual from within aptitude, I always see character > encoding issues (just within the manual, the rest of aptitude is > fine). Good catch! As devleoper you barely look into the manual yourself. And

Bug#988083: unblock: micro-evtd/3.4-6

2021-05-07 Thread Emilio Pozuelo Monfort
On 05/05/2021 07:26, Ryan Tandy wrote: Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package micro-evtd [ Reason ] One-line patch to fix FTBFS (#987631). Also taking the opportunity to update the Maintainer field; I

Bug#970253: CVE-2020-15469

2021-05-07 Thread Michael Tokarev
06.05.2021 20:51, Moritz Mühlenhoff wrote: Am Sun, Sep 13, 2020 at 10:42:36PM +0200 schrieb Moritz Muehlenhoff: Package: qemu Severity: important Tags: security X-Debbugs-Cc: Debian Security Team Not fixed upstream yet at this point: https://www.openwall.com/lists/oss-security/2020/07/02/1

Bug#988188: Ignoring but #987904 for Bullseye: horizon plugin packaging design mistake

2021-05-07 Thread Thomas Goirand
Package: release.debian.org Severity: normal Hi, I need to discuss with the release team what to do in order to address this bug: https://bugs.debian.org/987904 What happens is that each Horizon plugin is installing a bunch of python files under /etc/openstack-dashboard/enable. When an Horizon

Bug#985681: linux-cpupower: Fix Pkg Power tracking on Zen

2021-05-07 Thread Salvatore Bonaccorso
Hi, On Fri, May 07, 2021 at 10:47:56AM +0200, Christian Kastner wrote: > Hi, > > On 05.05.21 23:04, Salvatore Bonaccorso wrote: > > This has now been fixed upstream with > > https://git.kernel.org/linus/301b1d3a9104f4f3a8ab4171cf88d0f55d632b41 > > Great :-) > > > I'm going probably to

Bug#985681: linux-cpupower: Fix Pkg Power tracking on Zen

2021-05-07 Thread Christian Kastner
Hi, On 05.05.21 23:04, Salvatore Bonaccorso wrote: > This has now been fixed upstream with > https://git.kernel.org/linus/301b1d3a9104f4f3a8ab4171cf88d0f55d632b41 Great :-) > I'm going probably to cherry-pick the commit, but in case you can/want > to double check (again I know, but there was

Bug#988187: RFS: dmidecode/3.3-2 -- SMBIOS/DMI table decoder

2021-05-07 Thread Jörg Frings-Fürst
Package: sponsorship-requests Severity: normal Dear mentors, I am looking for a sponsor for my package "dmidecode": Package name: dmidecode Version : 3.3-2 Upstream Author : dmidecode-de...@nongnu.org URL : https://nongnu.org/dmidecode/ License :

Bug#988185: unblock (pre-approval): gnome-settings-daemon/3.38.2-1

2021-05-07 Thread Emilio Pozuelo Monfort
Control: tags -1 confirmed On 07/05/2021 10:38, Simon McVittie wrote: Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock X-Debbugs-Cc: debian-gtk-gn...@lists.debian.org I'd like permission to upload a new upstream stable release of

Bug#988184: unblock: gnome-desktop3/3.38.5-2

2021-05-07 Thread Emilio Pozuelo Monfort
Control: tags -1 confirmed On 07/05/2021 10:33, Simon McVittie wrote: Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock X-Debbugs-Cc: debian-gtk-gn...@lists.debian.org I'd like to update gnome-desktop3 in bullseye. [ Reason ] Fix bad

Bug#988186: unblock: qemu/1:5.2+dfsg-10

2021-05-07 Thread Michael Tokarev
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package qemu The version in unstable contains just 2 (or 4 when counting repeated ones) CVE fixes both taken from upstream stable. It took me 20 days to realize the package

Bug#987952: apg: security concerns in apg

2021-05-07 Thread Marc Haber
On Tue, May 04, 2021 at 03:17:10AM +0200, Christoph Anton Mitterer wrote: > On Mon, 2021-05-03 at 11:49 +0200, Marc Haber wrote: > > apg is dead upstream. We can either pull the package (forcing people > > back to pwgen, which probably has comparable issues) or document the > > issues away. > > I

Bug#988185: unblock (pre-approval): gnome-settings-daemon/3.38.2-1

2021-05-07 Thread Simon McVittie
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock X-Debbugs-Cc: debian-gtk-gn...@lists.debian.org I'd like permission to upload a new upstream stable release of gnome-settings-daemon. We already have most of its changes applied via

Bug#988184: unblock: gnome-desktop3/3.38.5-2

2021-05-07 Thread Simon McVittie
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock X-Debbugs-Cc: debian-gtk-gn...@lists.debian.org I'd like to update gnome-desktop3 in bullseye. [ Reason ] Fix bad UI for keyboard layouts in gnome-control-center, caused by a regression in

Bug#987362: jupyter-qtconsole: failst to start on missing dependency

2021-05-07 Thread Emilian Nowak
On 23-04-2021, at 22:40:28 Chris Hofstaedtler wrote: > > pkg_resources.VersionConflict: (qtconsole 4.7.6 (/usr/lib/python3/dist- > > packages), Requirement.parse('qtconsole==5.0.2')) > [..] > > ii python3-qtconsole 4.7.6-1 > > This combination does not add up, and indeed I cannot reproduce

Bug#988183: gemma FTBFS on i386 in buster

2021-05-07 Thread Adrian Bunk
Source: gemma Version: 0.98.1+dfsg-1 Severity: serious Tags: ftbfs Control: close -1 0.98.4+dfsg-3 https://tests.reproducible-builds.org/debian/rb-pkg/buster/i386/gemma.html ... ./bin/unittests-gemma Mismatch coordinates (1,0)0:3! This example computes real matrix C=alpha*A*B+beta*C using

Bug#988182: RFP: openswitcher -- Open Switcher is a control application for the Blackmagic Design ATEM video switchers.

2021-05-07 Thread Mark Van den Borre
Package: wnpp Severity: wishlist * Package name: openswitcher Version : git Upstream Author : Martijn Braam * URL : https://openswitcher.org/ * License : GPLv3 Programming Lang: Python Description : Open Switcher is a control application for the

Bug#988131: falkon does not gain focus when called from external applications

2021-05-07 Thread Ritesh Raj Sarraf
On Fri, 2021-05-07 at 12:57 +0530, Ritesh Raj Sarraf wrote: > > I has something to do with xcb, in general. > > On another machine running KDE + Wayland, the default falkon process > gives the following, when called externally. > > Please register the custom scheme 'clementine-itms' via >

Bug#988181: julia FTBFS on i386 in buster

2021-05-07 Thread Adrian Bunk
Source: julia Version: 1.0.3+dfsg-4 Severity: serious Tags: ftbfs Control: close -1 1.5.3+dfsg-3 https://tests.reproducible-builds.org/debian/rb-pkg/buster/i386/julia.html ... signal (11): Segmentation fault signal (11): Segmentation fault in expression starting at

Bug#988131: falkon does not gain focus when called from external applications

2021-05-07 Thread Ritesh Raj Sarraf
On Thu, 2021-05-06 at 19:30 +0530, Ritesh Raj Sarraf wrote: > On Thu, 2021-05-06 at 18:44 +0530, Ritesh Raj Sarraf wrote: > > On Thu, 2021-05-06 at 13:34 +0200, Georges Khaznadar wrote: > > > Dear Ritesh, > > > > > > I tried to reproduce the bug you are describing, without success. > > > > > >

Bug#988100: mmdebstrap: squashfs image lack security capabilities (e.g. for /bin/ping)

2021-05-07 Thread Johannes Schauer Marin Rodrigues
Control: reopen -1 Quoting Benjamin Drung (2021-05-06 15:41:53) > Am Mittwoch, den 05.05.2021, 20:46 +0200 schrieb Jonas Smedegaard: > > Quoting Johannes Schauer Marin Rodrigues (2021-05-05 19:37:16) > > > > > The patch should probably look something like this: > > > > > > @@ -5461,10 +5461,8

Bug#988013: mini.iso fails to load grub.cfg (UEFI)

2021-05-07 Thread Andrei POPESCU
On Jo, 06 mai 21, 23:55:07, Cyril Brulebois wrote: > Steve McIntyre (2021-05-06): > > Hmmm, odd. I've not touched that at all. But maybe it's part of the > > debug that kibi is doing with fonts etc. atm... > > I certainly didn't touch anything yet: unless otherwise specified, my > testing