Bug#1010684: Boot parameter to specify directory of filesystem.squashfs (other than /boot)

2022-05-09 Thread Stefan Baur
Hello Ben, Am 10.05.22 um 00:56 schrieb Ben Westover: >> >> mentions "findiso" and "fromiso" as well as "live-media|bootfrom" and >> "live-media-path". [...] >> Using the live-media*-Parameters should make it possible to

Bug#1010733: linux-image-5.10.0-13-amd64: see Bug 215079 no sound after dist-upgrade - Thinkpad specific

2022-05-09 Thread Salvatore Bonaccorso
Control: tags -1 + moreinfo Hi On Sun, May 08, 2022 at 01:39:13PM -0400, william wrote: > Package: src:linux > Version: 5.10.106-1 > Severity: important > X-Debbugs-Cc: piob...@mindspring.com > > Dear Maintainer, > > > >* What led up to the situation? > did an "apt-get dist-upgrade" from

Bug#1010657: google-oauth-client-java: CVE-2021-22573 - IdTokenVerifier does not verify the signature of ID Token

2022-05-09 Thread tony mancill
On Fri, May 06, 2022 at 09:46:24AM +0100, Neil Williams wrote: > Source: google-oauth-client-java > Version: 1.28.0-2 > Severity: grave > Tags: security > Justification: user security hole > > Hi, > > The following vulnerability was published for google-oauth-client-java. > > CVE-2021-22573[0]:

Bug#1010793: globus-gass-copy-progs: GSIFTP uploads fail with globus_l_ftp_control_send_cmd_cb: gss_init_sec_context failed to generate output token

2022-05-09 Thread Christoph Anton Mitterer
Package: globus-gass-copy-progs Version: 10.10-1 Severity: important Hey. Since a while now, uploads with globus-url-copy fail. $ globus-url-copy -p 1 -vb -dbg file:///bin/bash gsiftp://lcg-lrz-ftp.grid.lrz.de/pnfs/lrz-muenchen.de/data/atlas/ Source: file:///bin/ Dest:

Bug#1010686: golang-github-boltdb-bolt: ftbfs issue on riscv64 arch

2022-05-09 Thread Bo YU
Source: golang-github-boltdb-bolt Followup-For: Bug #1010686 X-Debbugs-Cc: debian-ri...@lists.debian.org, debian...@lists.debian.org These package's upstream had switched to bbolt: * golang-github-blevesearch-bleve * influxdb * golang-github-hashicorp-raft-boltdb So can these packages

Bug#1010792: RFS: psi-notify/1.2.1-2 [ITP] -- Alert when your machine is becoming oversaturated

2022-05-09 Thread Michel Alexandre Salim
Package: sponsorship-requests Severity: wishlist Dear mentors, I am looking for a sponsor for my package "psi-notify": * Package name: psi-notify Version : 1.2.1-2 Upstream Author : Chris Down * URL : https://github.com/cdown/psi-notify * License : MIT

Bug#1010791: RFS: distrobox/1.2.15-2 [ITP] -- Another tool for containerized command line environments on Linux

2022-05-09 Thread Michel Alexandre Salim
Package: sponsorship-requests Severity: wishlist Dear mentors, I am looking for a sponsor for my package "distrobox": * Package name: distrobox Version : 1.2.15-2 Upstream Author : Luca Di Maio * URL : https://distrobox.privatedns.org/ * License :

Bug#1010790: xgammon: reproducible-builds: embedded build paths in /usr/games/xgammon

2022-05-09 Thread Vagrant Cascadian
Source: xgammon Severity: normal Tags: patch User: reproducible-bui...@lists.alioth.debian.org Usertags: buildpath X-Debbugs-Cc: reproducible-b...@lists.alioth.debian.org The build path is embedded in /usr/games/xgammon:

Bug#986320: Stronger advice on when to use native packages

2022-05-09 Thread Jonathan Nieder
Hi, Russ Allbery wrote: > Currently, Debian Policy is silent on when it's appropriate to use a > native package, but there may be a project consensus aganist using > native packages when the software has an existence outside of Debian. I agree about this (modulo the bits discussed elsewhere in

Bug#1010789: xarclock: reproducible-builds: embedded build paths in /usr/bin/xarclock

2022-05-09 Thread Vagrant Cascadian
Source: xarclock Severity: normal Tags: patch User: reproducible-bui...@lists.alioth.debian.org Usertags: buildpath X-Debbugs-Cc: reproducible-b...@lists.alioth.debian.org The build path is embedded in /usr/bin/xarclock:

Bug#1010778: ITP: psi-notify -- Alert when your machine is becoming over-saturated

2022-05-09 Thread Michel Alexandre Salim
On Tue, May 10, 2022 at 08:42:43AM +0800, Paul Wise wrote: > On Mon, 2022-05-09 at 21:14 +, Michel Alexandre Salim wrote: > > > I plan to maintain this myself - I'm new to Debian packaging, this is my > > second package (currently also working on getting distrobox > > sponsored) > > I need

Bug#1010755: qbs: FTBFS on riscv64

2022-05-09 Thread Lisandro Damián Nicanor Pérez Meyer
Hi! On Mon, 9 May 2022 at 11:51, John Paul Adrian Glaubitz wrote: > > Hi Bo! > > On 5/9/22 16:27, Bo YU wrote: > s error just means that the symbols file(s) have to be updated, see [1]. > >> > > Before I filed the bug, I realized the ftbfs issue might be with the > > symbols file as you point. >

Bug#1010714: sane-pixma: sane can't find scanner

2022-05-09 Thread Alexandre Lymberopoulos
Hi, Jörg! I appreciate your promptness and will to help. Thanks again! Best, Alexandre On May 09 2022, Jörg Frings-Fürst wrote: > tags 1010714 - moreinfo > thanks > > Hello Alexandre, > > glad I could help you. > > CU > Jörg > > > > -- > New: > GPG Fingerprint: 63E0 075F C8D4 3ABB 35AB

Bug#1010788: spades: Mismatch correction / --careful mode broken by Debian patch

2022-05-09 Thread Carl Suster
Package: spades Version: 3.15.4+dfsg-1 Severity: normal Dear Maintainer, Using spades with the --careful flag triggers the following error: Traceback (most recent call last): File "/usr/libexec/spades/spades.py", line 683, in main(sys.argv) File

Bug#1010778: ITP: psi-notify -- Alert when your machine is becoming over-saturated

2022-05-09 Thread Paul Wise
On Mon, 2022-05-09 at 21:14 +, Michel Alexandre Salim wrote: > I plan to maintain this myself - I'm new to Debian packaging, this is my > second package (currently also working on getting distrobox > sponsored) I need this, so I will be happy to sponsor you. Once the package is ready, please

Bug#783396: python3-irc: New upstream version 20.0.0

2022-05-09 Thread Ben Finney
Control: block -1 by 1010782 1010783 1010784 Control: noowner 1010782 Control: noowner 1010783 Control: noowner 1010784 -- \ “Compulsory unification of opinion achieves only the unanimity | `\of the graveyard.” —Justice Roberts in 319 U.S. 624 (1943) | _o__)

Bug#783396: python3-irc: new upstream version depends on more unpackaged Python libraries

2022-05-09 Thread Ben Finney
Control: submitter 1010782 ! Control: submitter 1010783 ! Control: submitter 1010784 ! On 10-May-2022, Ben Finney wrote: > I am creating new WNPP bug reports for the dependencies that are not > yet in Debian. -- \ “My girlfriend has a queen sized bed; I have a court jester | `\

Bug#1010787: sgml-base-doc: reproducible builds: Build date embedded in documentation

2022-05-09 Thread Vagrant Cascadian
Source: sgml-base-doc Severity: normal Tags: patch User: reproducible-bui...@lists.alioth.debian.org Usertags: timestamps X-Debbugs-Cc: reproducible-b...@lists.alioth.debian.org The build date is embedded in various documentation:

Bug#783396: python3-irc: New upstream version 20.0.0

2022-05-09 Thread Ben Finney
Control: block -1 1010782 1010783 1010784 Control: summary 1010782 Upstream source for this package is published at https://pypi.org/project/jaraco.logging/ Control: outlook 1010782 Control: summary 1010783 Upstream source for this package is published at https://pypi.org/project/jaraco.stream/

Bug#1006245: libwebsockets: FTBFS with OpenSSL 3.0

2022-05-09 Thread Bastian Germann
Upstream's changelog says in v4.2.0: "prepared for openssl v3 compatibility, for main function and GENCRYPTO" So please import that or a later version.

Bug#1010786: RFP: swugenerator -- Generates SWU update packages for SWUpdate

2022-05-09 Thread Bastian Germann
Package: wnpp Severity: wishlist * Package name: swugenerator Upstream Author : Stefano Babic * URL : https://github.com/sbabic/swugenerator * License : GPL-3 Programming Lang: Python Description : Generates SWU update packages for SWUpdate Debian has the

Bug#1010785: gdome2: reproducible-builds: embedded build paths libgdome.so.*

2022-05-09 Thread Vagrant Cascadian
Source: gdome2 Severity: normal Tags: patch User: reproducible-bui...@lists.alioth.debian.org Usertags: buildpath X-Debbugs-Cc: reproducible-b...@lists.alioth.debian.org The build path is embedded in /usr/lib/libgdome.so.0.8.1:

Bug#783396: python3-irc: new upstream version depends on more unpackaged Python libraries

2022-05-09 Thread Ben Finney
Control: outlook -1 0 Control: retitle -1 python-irc: New upstream version 20.0.0 Control: clone -1 -2 Control: retitle -2 RFP: python3-jaraco.logging -- Functions to integrate argparse with logging — Python 3 Control: reassign -2 wnpp Control: clone -1 -3 Control: retitle -3 RFP:

Bug#1010781: ragel: reproducible-builds: embedded build paths in /usr/bin/ragel

2022-05-09 Thread Vagrant Cascadian
Source: ragel Severity: normal Tags: patch User: reproducible-bui...@lists.alioth.debian.org Usertags: buildpath X-Debbugs-Cc: reproducible-b...@lists.alioth.debian.org The build path is embedded in /usr/bin/ragel:

Bug#1010780: htop: markup of deleted executables not updated on change of color scheme

2022-05-09 Thread Kacper Gutowski
Package: htop Version: 3.2.0-1 Severity: minor Recently htop started to highlight processes with deleted executables or libraries with a color which depends on the color scheme (red and yellow in the Default one). Also the command name is highlighted with a color when merged exe/comm/cmdline

Bug#1010684: Boot parameter to specify directory of filesystem.squashfs (other than /boot)

2022-05-09 Thread Ben Westover
Hello Stefan, mentions "findiso" and "fromiso" as well as "live-media|bootfrom" and "live-media-path". Yeah, I read the manpage right before making this bug. One way is to stuff your squashfs into an ISO image (nothing

Bug#1010779: ITP: ros2-rcutils -- C Utilities and Data Structures for ROS 2

2022-05-09 Thread Timo Röhling
Package: wnpp Severity: wishlist X-Debbugs-Cc: roehl...@debian.org -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Subject: ITP: ros2-rcutils -- C Utilities and Data Structures for ROS 2 Package: wnpp Owner: Timo Röhling Severity: wishlist X-Debbugs-CC: debian-de...@lists.debian.org * Package

Bug#1010177: Realtek r8168 8.050.0

2022-05-09 Thread Ian Hastie
As of 2022/04/28 there is a new version 8.050.0 of the r8168 driver available from Realtek. It compiles and works with 5.17 of Linux.

Bug#1010778: ITP: psi-notify -- Alert when your machine is becoming over-saturated

2022-05-09 Thread Michel Alexandre Salim
Package: wnpp Severity: wishlist Owner: Michel Alexandre Salim X-Debbugs-Cc: debian-de...@lists.debian.org, mic...@michel-slm.name * Package name: psi-notify Version : 1.2.1 Upstream Author : Chris Down * URL : https://github.com/cdown/psi-notify * License :

Bug#1010777: RFP: qflipper -- application for updating Flipper Zero firmware

2022-05-09 Thread Francois Marier
Package: wnpp Severity: wishlist * Package name: qflipper Version : 1.0.2 Upstream Author : Georgii Surkov * URL : https://github.com/flipperdevices/qFlipper * License : GPL-3.0 Programming Lang: C++ Description : application for updating Flipper Zero

Bug#1010776: zbarcam-gtk: please provide .desktop entry for zbarcam-gtk

2022-05-09 Thread Agathe Porte
Package: zbarcam-gtk Version: 0.23.92-4+b2 Severity: normal Tags: upstream X-Debbugs-Cc: deb...@microjoe.org Dear Maintainer, When installing graphical software like zbarcam-gtk, one is expected to be able to find it using their favourite desktop environment. This is usually done with the help

Bug#1010775: wpasupplicant 2:2.10-8~bpo11+1 in bullseye-backports creates an unmet dependency issue with network-manager 1.30.0-2 in bullseye

2022-05-09 Thread Miga
Package: wpasupplicant Version: 2:2.10-8~bpo11+1 Hello, The version of wpasupplicant (2:2.10-8~bpo11+1) in bullseye-backports is incompatible with network-manager (currently 1.30.0-2 in bullseye, no backports package available) which creates an unmet dependency issue when trying to

Bug#1010771: suricata: recieve erros after adding rule list

2022-05-09 Thread Sascha Steinbiss
Hi, [...] 9/5/2022 -- 14:20:21 - -- [ERRCODE: SC_ERR_INVALID_SIGNATURE(39)] - Complete IP space negated. Rule address range is NIL. Probably have a !any or an address range that supplies a NULL address range This seems to indicate that in the rule below, the expression

Bug#1010376: RFS: rinetd/0.73-0.1 [NMU] [ITA] -- Internet TCP/UDP redirection server

2022-05-09 Thread Helmar Gerloni
Upload #3 is now on Mentors: * Non-maintainer upload. * New upstream release (Closes: #1010732). * Added systemd service file debian/rinetd.service. * Added debian/watch. * debian/rules: CHANGES renamed to CHANGES.md. * debian/docs: README renamed to README.md. * debian/init: Added

Bug#1010774: uif: [INTL:nl] Dutch translation of debconf messages

2022-05-09 Thread Frans Spiesschaert
Package: uif Severity: wishlist Tags: l10n patch Dear Maintainer, Please find attached the updated Dutch translation of uif debconf messages. It has been submitted for review to the debian-l10n-dutch mailing list. Please add it to your next package revision. It should be put

Bug#1010773: iperf3: [INTL:nl] Dutch translation of debconf messages

2022-05-09 Thread Frans Spiesschaert
Package: iperf3 Severity: wishlist Tags: l10n patch Dear Maintainer, Please find attached the Dutch translation of iperf3 debconf messages. It has been submitted for review to the debian-l10n-dutch mailing list. Please add it to your next package revision. It should be put as

Bug#1010772: partman-hfs: [INTL:nl] Dutch translation of debconf messages

2022-05-09 Thread Frans Spiesschaert
Package: partman-hfs Severity: wishlist Tags: l10n patch Dear Maintainer, Please find attached the Dutch translation of partman-hfs debconf messages. It has been submitted for review to the debian-l10n-dutch mailing list. Please add it to your next package revision. It should

Bug#1010771: suricata: recieve erros after adding rule list

2022-05-09 Thread Tim McConnell
Package: suricata Version: 1:6.0.5-2 Severity: grave Justification: renders package unusable X-Debbugs-Cc: tmcconnell...@gmail.com Dear Maintainer, What led up to the situation? Followed the instructions from suricata.readthedocs.io to add rules for the IDS What exactly did you do (or not do)

Bug#881910: ITA: libcdio-paranoia -- library to read and control digital audio CDs (was: Bug#881910: O: libcdio and libcdio-paranoia)

2022-05-09 Thread Bastian Germann
Control: retitle -1 O: libcdio-paranoia -- library to read and control digital audio CDs Control: noowner -1 On Thu, 5 May 2022 18:30:08 -0300 "Gabriel F. T. Gomes" wrote: Oh, I'm deeply sorry for not replying to this and for sitting on the ITA. Please feel free to take the ITA. I'm very

Bug#1010770: admesh: CVE-2018-25033

2022-05-09 Thread Salvatore Bonaccorso
Source: admesh Version: 0.98.4-1 Severity: important Tags: security upstream Forwarded: https://github.com/admesh/admesh/issues/28 X-Debbugs-Cc: car...@debian.org, Debian Security Team Hi, The following vulnerability was published for admesh. CVE-2018-25033[0]: | ADMesh through 0.98.4 has a

Bug#1010642: RFS: streamlink/4.0.1-1 -- CLI for extracting video streams from various websites to a video player

2022-05-09 Thread Alexis Murzeau
Control: tags -1 - moreinfo Hi, Thanks for your review :) Le 07/05/2022 à 18:59, Jeroen Ploemen a écrit : > Control: tags -1 moreinfo > > On Thu, 5 May 2022 23:34:43 +0200 > Alexis Murzeau wrote: > >> I am looking for a sponsor for my package streamlink for a new > > hi Alexis, > > the

Bug#991328: NGINX patch for CVE pending in Salsa

2022-05-09 Thread Salvatore Bonaccorso
Hi Thomas, On Wed, May 04, 2022 at 04:07:32PM -0400, Thomas Ward wrote: > Control: tags -1 + pending > > Looks like, at first glance the patchset applies properly in 1.20.2 (3-line > offset but no fuzz) as is.  I've pushed this into Salsa so it's pending in > UNRELEASED 1.20.2-2 at the moment in

Bug#1010768: ITP: click-option-group -- Extension for Python click adding option groups

2022-05-09 Thread Sebastien Badia
Package: wnpp Severity: wishlist Owner: Sebastien Badia X-Debbugs-Cc: debian-de...@lists.debian.org * Package name: click-option-group Version : 0.5.3 Upstream Author : Eugene Prilepin * URL : https://github.com/click-contrib/click-option-group * License :

Bug#1008585: linux-image-5.10.0-13-amd64: "clocksource:" log spam after 5.10.103-1 update

2022-05-09 Thread Vincas Dargis
2022-04-24 12:20, Salvatore Bonaccorso rašė: Would you be able to test the current kernel from unstable so we can confirm it's fixed in 5.17.3-1? I am not sure if I want to install kernel from unstable into production machine.. :) . I believe I'll wait for Bullseye backport to see if it

Bug#1010767: ITP: coquelicot -- Coq library for real analysis

2022-05-09 Thread Julien Puydt
Package: wnpp Severity: wishlist Owner: Julien Puydt X-Debbugs-Cc: debian-ocaml-ma...@lists.debian.org, jpu...@debian.org * Package name: coquelicot Version : 3.2.0 Upstream Author : S.Boldo, C.Lelay and G.Melquiond * URL : https://coquelicot.saclay.inria.fr/ *

Bug#1010376: RFS: rinetd/0.73-0.1 [NMU] [ITA] -- Internet TCP/UDP redirection server

2022-05-09 Thread Bastian Germann
On Fri, 29 Apr 2022 22:55:25 +0200 Helmar Gerloni wrote: rinetd (0.73-0.1) unstable; urgency=medium . * Non-maintainer upload. * New upstream release (...). * Added systemd service file debian/rinetd.service. ExecReload calls kill, so you have to add Depends: procps. * Added

Bug#1010214: 1010214

2022-05-09 Thread Jeroen Ploemen
Looks like it's a change in paramiko triggering this, that needs work in libcloud (and possibly others) to restore compatibility. See these upstream issues: https://github.com/paramiko/paramiko/issues/1961 https://github.com/apache/libcloud/pull/1685 pgp2e4K2m_X3S.pgp Description: OpenPGP

Bug#1010764: openafs-modules-dkms: module fails to build for kernel 5.17.0-1-amd64

2022-05-09 Thread Kai-Martin Knaak
Package: openafs-modules-dkms Version: 1.8.8.1-2 Severity: important Dear Maintainer, * What led up to the situation? - regular apt upgrade on testing * What exactly did you do that was effective? - switch to kernel 5.16.0-6-amd64 The module built fine for this slightly older

Bug#1010762: Acknowledgement (ITP: prometheus-systemd-exporter -- Prometheus Exporter for systemd unit metrics)

2022-05-09 Thread Antoine Beaupré
I tweaked the dh-golang output a little and dumped the result here: https://salsa.debian.org/go-team/packages/systemd-exporter/ I'm stuck on this error: dh binary --builddirectory=_build --buildsystem=golang --with=golang debian/rules binary dh_update_autotools_config

Bug#1010763: extrace: New upstream version 0.9 available

2022-05-09 Thread Michael Prokop
Package: extrace Version: 0.7-2 Severity: wishlist Hi, a new upstream version v0.9 is available since 2022-01-19, see https://git.vuxu.org/extrace/log/ + https://github.com/leahneukirchen/extrace/tags Thanks for maintaining extrace in Debian! :) regards -mika-

Bug#1010762: ITP: prometheus-systemd-exporter -- Prometheus Exporter for systemd unit metrics

2022-05-09 Thread Antoine Beaupre
Package: wnpp Severity: wishlist X-Debbugs-Cc: debian...@lists.debian.org * Package name: prometheus-systemd-exporter Version : 0.4.0 Upstream Author : Povilas Versockas * URL : https://github.com/povilasv/systemd_exporter * License

Bug#1010761: mirror submission for mr.heru.id

2022-05-09 Thread Heru Nugroho
Package: mirrors Severity: wishlist User: mirr...@packages.debian.org Usertags: mirror-submission Submission-Type: new Site: mr.heru.id Type: leaf Archive-architecture: ALL amd64 arm64 armel armhf hurd-i386 i386 kfreebsd-amd64 kfreebsd-i386 mips mips64el mipsel powerpc ppc64el s390x

Bug#1010755: qbs: FTBFS on riscv64

2022-05-09 Thread John Paul Adrian Glaubitz
Hi Bo! On 5/9/22 16:27, Bo YU wrote: s error just means that the symbols file(s) have to be updated, see [1]. >> > Before I filed the bug, I realized the ftbfs issue might be with the > symbols file as you point. > `apt source qbs` and the debian/symbols file has the symbols: > ``` >

Bug#1010345: This also affects ansible-galaxy collection install

2022-05-09 Thread Matthias Weiss
I can confirm this bug on an up to date Debian "bookworm" installation: ansible-galaxy-vvvcollectioninstallcommunity.general [DEPRECATION WARNING]: Setting verbosity before the arg sub command is deprecated, set the verbosity after the sub command. This feature will be removed from

Bug#1010671: libsdl2-ttf-dev: CVE-2022-27470 - Arbitrary memory overwrite loading glyphs and rendering text

2022-05-09 Thread Moritz Muehlenhoff
On Mon, May 09, 2022 at 12:59:42PM +0100, Simon McVittie wrote: > If I'm understanding the issue correctly, it's only a problem if a user > of SDL_ttf is using an untrusted TTF font file, which is a relatively > unusual thing to do: normally games either rely on system fonts, or bundle > a font in

Bug#1010755: qbs: FTBFS on riscv64

2022-05-09 Thread Bo YU
Hi John, On Mon, May 9, 2022 at 9:22 PM John Paul Adrian Glaubitz wrote: > > Hello Bo! > > On 5/9/22 11:52, Bo YU wrote: > > ``` > > ... > > dpkg-gensymbols: error: some symbols or patterns disappeared in the symbols > > file: see diff output below > > dpkg-gensymbols: warning:

Bug#1000991: Progress check

2022-05-09 Thread Osamu Aoki
Hi, As of Version 2.92: > Package: debian-reference > Version: 2.89 > Severity: normal > > For the record why some contents are changed, I list here the reason > and motivation behind updates. > > ~~~ > FTP is not used by Debian nor Linux

Bug#1010755: qbs: FTBFS on riscv64

2022-05-09 Thread John Paul Adrian Glaubitz
Hello Bo! On 5/9/22 11:52, Bo YU wrote: > ``` > ... > dpkg-gensymbols: error: some symbols or patterns disappeared in the symbols > file: see diff output below > dpkg-gensymbols: warning: debian/libqbscore1.22/DEBIAN/symbols doesn't match > completely debian/libqbscore1.22.symbols > ---

Bug#1010760: minetest: Floating point serialization error on x86

2022-05-09 Thread Nils Dagsson Moskopp
Package: minetest Version: 5.3.0+repack-2.1+deb11u1 Severity: normal Tags: patch upstream X-Debbugs-Cc: nils+debian-report...@dieweltistgarnichtso.net Dear Maintainer, Minetest in versions lower than 5.5.0 is being miscompiled by GCC on x86. To verify this bug, run Minetest using “minetest

Bug#1010759: minetest: item count unreadable due to error in rectangle drawing code

2022-05-09 Thread Nils Dagsson Moskopp
Package: minetest Version: 5.3.0+repack-2.1+deb11u1 Severity: normal Tags: patch upstream X-Debbugs-Cc: nils+debian-report...@dieweltistgarnichtso.net Dear Maintainer, due to faulty drawing code, the item count has no background rectangle. To quote the person who discovered the issue & has fixed

Bug#1010671: libsdl2-ttf-dev: CVE-2022-27470 - Arbitrary memory overwrite loading glyphs and rendering text

2022-05-09 Thread Simon McVittie
On Fri, 06 May 2022 at 15:25:00 +0100, Neil Williams wrote: > CVE-2022-27470[0]: > | SDL_ttf v2.0.18 and below was discovered to contain an arbitrary > | memory write via the function TTF_RenderText_Solid(). This > | vulnerability is triggered via a crafted TTF file. Does the security team intend

Bug#1010729: dcmtk: Default path to DICOM dictionaries is wrong

2022-05-09 Thread Andreas Tille
Mathieu, could you have a look? Its your patch that is setting this PATH. Am Sun, May 08, 2022 at 04:31:38PM +0200 schrieb Jacek Kawa: > Package: dcmtk > Version: 3.6.7-1 > Severity: normal > > Default path to DICOM dictionaries encoded in binaries is wrong, e.g.: > > storescu -aet ME -aec

Bug#1010418: Fixed loop

2022-05-09 Thread Sergio Costas
Ok, I modified the loop. Now it will gracefully fail if get_user_name() returns something that isn't in /etc/passwd: boolfound = false; unowned Posix.Passwdpasswd; Posix.setpwent(); while(null!= (passwd = Posix.getpwent())) { if(passwd.pw_name == GLib.Environment.get_user_name()) { found =

Bug#1010684: Boot parameter to specify directory of filesystem.squashfs (other than /boot)

2022-05-09 Thread Stefan Baur
Am 07.05.22 um 04:37 schrieb Ben Westover: > Package: live-boot > Severity: wishlist > Tags: upstream > X-Debbugs-Cc: kwestover...@gmail.com > > Hello, > > I have made a multiboot USB using SYSLINUX. For distributions that use > dracut, I can specify the rd.live.dir boot parameter to change the

Bug#1010578: osmo-mgw: FTBFS if systemd is in build environment

2022-05-09 Thread Gianfranco Costamagna
control: severity -1 serious Hello, I think not being able to build a package in a "normal" environment is considered RC G. On Wed, 4 May 2022 13:44:15 -0600 Dan Bungert wrote: Package: osmo-mgw Version: 1.9.0+dfsg1-3 Severity: normal User: ubuntu-de...@lists.ubuntu.com Usertags:

Bug#1010756: davfs2: should allow non-root users to mount a davfs file system (like sshfs)

2022-05-09 Thread Vincent Lefevre
Package: davfs2 Version: 1.6.1-1 Severity: normal Tags: upstream When I installed davfs2, a dialog box said that it needed to be setuid to allow non-root users to mount a davfs file system. Moreover, mount.davfs also needs an entry in /etc/fstab, otherwise one gets an error "no entry for ...

Bug#742880: closed by Georges Khaznadar (Closing this bug report)

2022-05-09 Thread Christopher Odenbach
Hi, the two bugs #990026 and #742880 do address similar issues, but my bug focusses on a different issue: the return-path. With #990026 it is now possible to use MAILFROM to use arbitrary sender addresses in crontabs, if the crontab user is allowed to do so (by default this is only root).

Bug#1010755: qbs: FTBFS on riscv64

2022-05-09 Thread Bo YU
Package: qbs Version: 1.22.1-1 Severity: normal User: debian-ri...@lists.debian.org Usertags: riscv64 X-Debbugs-Cc: debian-ri...@lists.debian.org, risc...@buildd.debian.org Dear Maintainer, It is odd that the build fails on riscv64 arch from buildd: ``` ... dpkg-gensymbols: error: some symbols

Bug#1010754: unblock: spyder/5.3.0+dfsg1-7 and unblock: spyder-unittest/0.5.0-3

2022-05-09 Thread Julian Gilbey
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package spyder and spyder-unittest (If this isn't the correct Usertags to use, please forgive me - I couldn't figure out a better one.) [ Reason ] The binary packages of

Bug#1010632: slurm-wlm: CVE-2022-29502

2022-05-09 Thread Jörg Behrmann
Package: slurm-wlm Version: 20.11.7+really20.11.4-2 Followup-For: Bug #1010632 This bug is is also present in the package version released in bullseye and fixed in upstream version 20.11.9. bullseye should definitely receive this update. -- System Information: Debian Release: 11.3 APT

Bug#1010749: Followup: sage-jupyter cannot connect to kernel using locale de_DE@euro

2022-05-09 Thread e220509
Dear Maintainer, a Jupyter notebook using locale de_DE@euro starts, but cannot connect to a kernel. The relevant output of sage on the console might be the following: - [I 10:38:33.392 NotebookApp] Creating new notebook in [I 10:38:36.209 NotebookApp] Kernel started:

Bug#1005212: Calamares installer fails at partitioning disks

2022-05-09 Thread Jonathan Carter
Hi, can you please shed some more details on what your partitioning looked like? How did you set up your partitions, did you intend or specify for /dev/sda9 to be used, or was it the auto-partitioner? I'll need some more information on how to re-produce this bug in order to file it upstream

Bug#1010753: grub-common: missing strings in .mo files

2022-05-09 Thread Wenbin Lv
Package: grub-common Version: 2.06-2 Severity: minor Tags: l10n Some strings present in the .po files do not exist in the .mo files installed by grub-common. For example, if you run "grub-mkconfig --help" under a zh_CN locale, you'll find that the translation is incomplete, but translation of

Bug#947078: git-buildpackage: Need to make gbp clone pseudo protocols confgirable

2022-05-09 Thread Nicolas Boulenguez
Package: git-buildpackage Followup-For: Bug #947078 Hello. It is better to fix this for all tools using git, for example by setting a rewriting rule in ~/.config/git/config. [url "g...@salsa.debian.org:debian/"] insteadOf = https://salsa.debian.org/debian/

Bug#1010750: scripts: add -v shortcut for --verbose where it has been forgotten

2022-05-09 Thread Nicolas Boulenguez
Package: git-buildpackage Version: 0.9.22 Severity: minor Tags: patch Hello. All is in the title :-) >From 2285339165dc490eee23d2849c5f6bcbb3c23d89 Mon Sep 17 00:00:00 2001 From: Nicolas Boulenguez Date: Sun, 8 May 2022 16:48:29 +0200 Subject: [PATCH 1/3] scripts: add -v shortcut for --verbose

Bug#1010751: clone: handle -b optional branch specification in VCS-Git

2022-05-09 Thread Nicolas Boulenguez
Package: git-buildpackage Version: 0.9.22 Severity: wishlist Tags: patch Hello. https://www.debian.org/doc/debian-policy/ch-controlfields.html#version-control-system-vcs-fields allows the VCS-Git to specify a branch and a relative path inside a given repository. # gbp clone vcs-git:pcscada

Bug#1010749: sagemath: crash on startup with locale de_DE@euro

2022-05-09 Thread Elmar
Package: sagemath Version: 9.5-4 Severity: normal X-Debbugs-Cc: e220...@wolke7.net Dear Maintainer, sage crashes on startup from a terminal with locale de_DE@euro: > sage SageMath version 9.5, Release Date: 2022-01-30 Speicherzugriffsfehler

Bug#1010748: uclibc: CVE-2021-27419 - integer overflow in both malloc and memalign implementations

2022-05-09 Thread Neil Williams
Source: uclibc Version: 1.0.35-1 Severity: important Tags: security X-Debbugs-Cc: codeh...@debian.org, Debian Security Team Hi, The following vulnerability was published for uclibc. CVE-2021-27419[0]: | uClibc-ng versions prior to 1.0.37 are vulnerable to integer wrap- | around in functions

Bug#1010747: Unusable with current python version

2022-05-09 Thread Yuri D'Elia
Package: shiboken2 Version: 5.15.2-2+b2 Severity: grave shiboken2 cannot currently be used to build any package due to #1008849. I'm reporting this again as a grave bug, since while #1008849 might be intended to address the underlying issue, it's important to note that the _current_ package is

Bug#1010746: ITP: docker-squash -- Squashing helps with organizing docker images in logical layers

2022-05-09 Thread Sascha Girrulat
Package: wnpp Severity: wishlist Owner: Sascha Girrulat X-Debbugs-Cc: debian-de...@lists.debian.org * Package name: docker-squash Version : 1.0.9 Upstream Author : Marek Goldmann * URL : https://github.com/goldmann/docker-squash * License : MIT Programming

Bug#1010715: Please close - bug caused elsewhere

2022-05-09 Thread Jeremy Davis
This bug is caused elsewhere and is NOT related to the kernel. Please close this (I'm not sure how to close bugs?). Apologies on the noise. Regards, Jeremy OpenPGP_signature Description: OpenPGP digital signature

Bug#1010619: rsyslog: CVE-2022-24903: Potential heap buffer overflow in TCP syslog server (receiver) components

2022-05-09 Thread Rainer Gerhards
note: 8.2204.1 is 8..2204.0 with just the fix cherry-picked. No other changes. Rainer El sáb, 7 may 2022 a las 14:48, Salvatore Bonaccorso () escribió: > > Hi Michael, > > [looping in the sec-team for completeness] > > On Thu, May 05, 2022 at 10:19:38PM +0200, Michael Biebl wrote: > > Am

Bug#1010418: Proposed bugfix

2022-05-09 Thread Sergio Costas
Mmm... But can "get_user_name" return something that isn't in /etc/passwd? Anyway, testing for NULL is a good idea. El 9/5/22 a las 1:18, Barak A. Pearlmutter escribió: I don't understand this code in that patch: + while (true) { +

Bug#870302: pavucontrol: High CPU usage

2022-05-09 Thread Vincent Lefevre
Control: found -1 5.0-2 Control: tags -1 upstream Control: forwarded -1 https://gitlab.freedesktop.org/pulseaudio/pavucontrol/-/issues/73 Deselecting the "Show volume meters" option at the bottom of the Configuration tab avoids the issue. But with it being selected, the high CPU usage occurs

Bug#1010745: usb-storage: kernel taks hung when copying data via USB SATA adapter from external SSD with bad blocks

2022-05-09 Thread Vincas Dargis
Package: src:linux Version: 5.16.12-1~bpo11+1 Severity: normal Dear Maintainer, It seems we can't use Linux for cloning drive data from faulty drives (with bad blocks) using USB SATA adapters. I wanted to clone data from this old SSD: ``` Device Model: LITEONIT LCM-128M3S 2.5" 7mm 128GB