Bug#858688: Bug#858691: O: flow-tools -- collects and processes NetFlow data

2017-11-13 Thread Bernhard Schmidt
Control: retitle 858688 ITA: fprobe -- export captured traffic to remote NetFlow Collector Control: retitle 858691 ITA: flow-tools -- collects and processes NetFlow data Control: owner 858688 be...@debian.org Control: owner 858691 be...@debian.org On Sat, Mar 25, 2017 at 10:53:34AM +0100, Tobias

Bug#882145: asterisk: pjsip show history causes segmentation fault

2017-11-20 Thread Bernhard Schmidt
Control: tags -1 + confirmed On Sun, Nov 19, 2017 at 04:59:30PM +0100, Benoit Panizzon wrote: Hi, > I could reproduce apparently two different segmentation faults by doing the > following: > > pjsip set history on > pjsip show history > > [8677620.301738] asterisk[24252]: segfault at 7fb6

Bug#598434: bind9: Improve detection and handling of recursive 'include' statements in configuration files

2018-03-22 Thread Bernhard Schmidt
Control: tags -1 upstream On Tue, Sep 28, 2010 at 11:15:28PM +0200, Javier Fernández-Sanguino Peña wrote: > Currently, bind9 does not try to take any precaution when handling 'include' > statements in the config files. It will happily accept even an include > statement in a file pointing to itsel

Bug#894000: [Pkg-dns-devel] Bug#894000: bind9rndc: connect failed: 127.0.0.1#953: connection refused

2018-03-25 Thread Bernhard Schmidt
Control: tags -1 moreinfo On 25.03.2018 11:04, Arthur Marsh wrote: Hi Arthur, > Package: bind9 > Version: 1:9.11.3+dfsg-1 > Severity: important > > Dear Maintainer, > > *** Reporter, please consider answering these questions, where appropriate *** > >* What led up to the situation? > > t

Bug#873798: chan_pjsip does not support TLSv1.1+

2018-04-04 Thread Bernhard Schmidt
Control: fixed -1 1:13.17.2~dfsg-2 On Thu, Aug 31, 2017 at 11:02:27AM +0200, Bernhard Schmidt wrote: Hi, > Source: asterisk > Version: 1:13.14.1~dfsg-2 > Severity: important > Tags: upstream > > chan_pjsip does not support TLSv1.1 and above. > > See upstream bug

Bug#873798: chan_pjsip does not support TLSv1.1+

2018-04-04 Thread Bernhard Schmidt
On Wed, Apr 04, 2018 at 09:03:56AM +0200, Bernhard Schmidt wrote: > > Source: asterisk > > Version: 1:13.14.1~dfsg-2 > > Severity: important > > Tags: upstream > > > > chan_pjsip does not support TLSv1.1 and above. > > > > See upstream bug >

Bug#888491: [Pkg-dns-devel] Bug#888491: bind9: Provide up to date db.root in stable Debian release

2018-04-06 Thread Bernhard Schmidt
Control: tags -1 patch On Wed, Jan 31, 2018 at 09:45:42PM -0500, Daniel Kahn Gillmor wrote: > > From my measurements (Zurich, Switzerland), all old addresses are still > > working, but new addresses are a bit faster in all cases. (by 10-20 ms > > compared to old addresses). > > shouldn't this da

Bug#818291: L-Root IPv6 address renumbering

2018-04-06 Thread Bernhard Schmidt
Control: fixed -1 2017020200 On Tue, Mar 15, 2016 at 12:52:24PM -0400, Simon Deziel wrote: > On March 23rd, L-Root will stop responding on the old IPv6. Only the new > IPv6 address will remain functional, see [1] for details. > > Regards, > Simon > > 1: http://seclists.org/nanog/2016/Mar/255 F

Bug#888484: clamav: Security release 0.99.3 available

2018-01-26 Thread Bernhard Schmidt
Control: tags -1 security Control: severity -1 grave On Fri, Jan 26, 2018 at 09:35:25AM +, Rob N wrote: > Package: clamav > Version: 0.99.2+dfsg-0+deb8u2 > Severity: important > > 0.99.3 has been released, see > http://blog.clamav.net/2018/01/clamav-0993-has-been-released.html. > > This fix

Bug#888512: clamav-daemon: Clamd suddenly eat up all file descriptors, 'Too many open files' error

2018-01-26 Thread Bernhard Schmidt
Control: tags -1 confirmed upstream > Today, in my servers (at least 3 servers), starting from circa 9.00 local > time (Europe/Rome) clamav stop working, like: This is an issue in daily.cld 24256+ (released around this morning). A workaround is described here: http://lists.clamav.net/pipermail/c

Bug#888511: Bug#888512: clamav-daemon: Clamd suddenly eat up all file descriptors, 'Too many open files' error

2018-01-26 Thread Bernhard Schmidt
Control: summary -1 Signatures broken -- Workaround: Add Vbs.Downloader.Generic-6431223-0 to /var/lib/clamav/local.ign2 and restart clamd > Today, in my servers (at least 3 servers), starting from circa 9.00 local > time (Europe/Rome) clamav stop working, like: This is an issue in daily.cld 2425

Bug#888512: clamav-daemon: Clamd suddenly eat up all file descriptors, 'Too many open files' error

2018-01-26 Thread Bernhard Schmidt
Am 26.01.2018 um 17:26 schrieb Marco Gaiarin: Hi Marco, > >> This is an issue in daily.cld 24256+ (released around this morning). > > I've searched extensively with google, but found nothing apart some old > similar trouble dated 2015 or later... sorry... It took me a lot of time to find reliab

Bug#888484: clamav: Security release 0.99.3 available

2018-01-26 Thread Bernhard Schmidt
Control: unfixed 888484 0.99.3~beta2+dfsg-1 Control: fixed 888511 0.99.3~beta2+dfsg-1 Hi >> >> We've have started seeing unexpected clamd crashes on a high-traffic mail >> system today, though I've been unable to isolate a test case. It's seems like >> too much of a coincidence that these crash

Bug#771885: closed by Jörg Frings-Fürst (reply to deb...@jff-webhosting.net) (Re: openvpn service script restarted, ignoring LSB header)

2017-10-09 Thread Bernhard Schmidt
Hi Harald, On 09.10.2017 07:30, Harald Dunkel wrote: > Sorry to say, but you missunderstood the problem: openvpn was > not supposed to be run in runlevel 2 in my setup. The run level > definition must not be ignored. > > About screen: I got locked out due to changed routing, not due > to a los

Bug#876979: openvpn@.service is missing network-online.target

2017-10-09 Thread Bernhard Schmidt
On 27.09.2017 12:05, Markus Kolb wrote: Hi Markus, > Package: openvpn > Version: 2.4.0-6+deb9u1 > Severity: normal > > Dear Maintainer, > > the provided openvpn@.service script is missing 2 lines: > After=syslog.target network-online.target > Wants=network-online.target > > Without these lines

Bug#876979: openvpn@.service is missing network-online.target

2017-10-09 Thread Bernhard Schmidt
Control: found -1 2.4.0-6 Control: fixed -1 2.4.3-4 On 09.10.2017 20:50, Bernhard Schmidt wrote: Hi, >> Package: openvpn >> Version: 2.4.0-6+deb9u1 >> Severity: normal >> >> Dear Maintainer, >> >> the provided openvpn@.service script is missi

Bug#861923: openvpn: arbitrary process limit

2017-10-09 Thread Bernhard Schmidt
On Fri, May 05, 2017 at 05:39:24PM -0400, Michael Stone wrote: Control: tags -1 unreproducible > Package: openvpn > Version: 2.4.0-4 > Severity: normal > > The systemd unit files for openvpn set LimitNPROC=10. This process limit > applies to all processes started by a particular unit, so (for ex

Bug#854612: openvpn: When an openvpn client is failing, it gets killed

2017-10-09 Thread Bernhard Schmidt
Control: fixed -1 2.4.3-1 Control: tags -1 upstream On Wed, Feb 08, 2017 at 06:12:01PM +0100, Serge Pouliquen wrote: Hi, > When an openvpn client is failing, it gets killed. > > openvpn 2.4 is arriving with a client folder '/etc/openvpn/client/' (and a > server folder). > So I put client files

Bug#808578: Acknowledgement (openvpn client adds wrong routes and blackholes a big chunk of networks)

2017-10-09 Thread Bernhard Schmidt
Control: tags -1 moreinfo On Mon, Dec 21, 2015 at 08:41:58AM +0100, tob...@systemsoft.se wrote: > On 2015-12-21 08:36, ow...@bugs.debian.org wrote: > > Thank you for filing a new Bug report with Debian. > > > > This is an automatically generated reply to let you know your message > > has been rec

Bug#874307: Correction

2017-10-09 Thread Bernhard Schmidt
Control: tags -1 unreproducible On Tue, Sep 05, 2017 at 10:04:05AM +0200, Daniel Haid wrote: > Actually, this only happens when using > "systemctl restart", not "systemctl start". I cannot reproduce this. Can you show "systemctl status openvpn-server@first.service" and "systemctl status openvpn-

Bug#792653: Probably related to CapabilityBoundingSet

2017-10-09 Thread Bernhard Schmidt
Control: tags -1 wontfix Control: summary -1 CapabilityBoundingSet prevents "Unprivileged mode", needs override On Fri, May 13, 2016 at 09:01:20AM -0400, Simon Deziel wrote: Hi, > Hi Jim, > > On 2016-05-13 08:19 AM, BARBER, Jim wrote: > > I tried Simon Deziel's technique first. > > I ran: syst

Bug#857169: furter investigation

2017-10-09 Thread Bernhard Schmidt
Control: tags -1 wontfix Hi Erik, first of all, thanks for your detailed analysis. > Mär 09 08:53:47 m2 systemd[1]: Started OpenVPN connection to client. <<< this > is what notifyhelper.sh does! > Mär 09 08:53:47 m2 systemd[1]: Mounting /home... > Mär 09 08:53:47 m2 openvpn[664]: Thu Mar 9 08

Bug#861923: openvpn: arbitrary process limit

2017-10-09 Thread Bernhard Schmidt
Control: tags -1 - unreproducible On 09.10.2017 22:45, Michael Stone wrote: Hi Michael, > On Mon, Oct 09, 2017 at 09:47:49PM +0200, Bernhard Schmidt wrote: >> I'm not exactly sure why it was chosen this low, but I cannot reproduce >> your issue. I think LimitNPROC=10 is

Bug#878109: openvpn@.service should not pull in network-online.target unconditionally

2017-10-09 Thread Bernhard Schmidt
Package: src:openvpn Version: 2.4.3-4 Severity: normal With https://anonscm.debian.org/git/collab-maint/openvpn.git/commit/?id=5fe7875501a2560542b462f9af5bb3346214147f openvpn@.service pulls in network-online.target (to keep in sync with the upstream openvpn-server@.service and openvpn-client@.

Bug#861923: openvpn: arbitrary process limit

2017-10-10 Thread Bernhard Schmidt
Am 10.10.2017 um 15:31 schrieb David Sommerseth: Hi David, > I did introduce LimitNPROC=10 to avoid a scenario where a faulty plug-in > or script hook would spawn too many processes and overload the system in > various ways. There are many reasons why this could happen, it could be > a local iss

Bug#725925: (no subject)

2017-10-11 Thread Bernhard Schmidt
Control: tags -1 moreinfo Control: fixed -1 1:13.0.0~dfsg-1 Hi, is this still happening in Jessie (11.13)? According to the upstream bug Asterisk 13 should not be affected, marking accordingly. Bernhard

Bug#725925: asterisk: Segfault on incoming SIP call with res_ldap

2017-10-11 Thread Bernhard Schmidt
Control: tags -1 moreinfo Control: fixed -1 1:13.0.0~dfsg-1 [ Resending with proper subject ] Hi, is this still happening in Jessie (11.13)? According to the upstream bug Asterisk 13 should not be affected, marking accordingly. Bernhard

Bug#877364: pjproject: source file licensed as BSD-4-clause and GPL-2+ effectively unlicensed

2017-10-12 Thread Bernhard Schmidt
Control: tags -1 upstream Control: forwarded -1 http://lists.pjsip.org/pipermail/pjsip_lists.pjsip.org/2017-October/020268.html Hi, > The file pjlib/src/pj/sock_linux_kernel.c is licensed as both > BSD-4-clause and GPL-2+. Not dual-licensed, but separately declared. > Those licenses are incompat

Bug#878843: util-linux: fsck on btrfs /home hangs, stalling boot

2017-10-16 Thread Bernhard Schmidt
Package: util-linux Version: 2.30.2-0.1 Severity: critical Justification: breaks the whole system Dear Maintainer, after upgrading src:util-linux from 2.29.2-5+b1 to 2.30.2-0.1 my system does not reach multiuser anymore. My /home is btrfs on a cryptsetup luks container. The password is queried,

Bug#878843: util-linux: fsck on btrfs /home hangs, stalling boot

2017-10-18 Thread Bernhard Schmidt
Am 17.10.2017 um 18:10 schrieb Michael Biebl: Hi Michael, > Bernhard, could you try to run a git bisect to find the relevant change > which broke fsck for you. > https://git.kernel.org/pub/scm/utils/util-linux/util-linux.git/log/disk-utils/fsck.c?h=stable/v2.30 > > There aren't that many changes

Bug#778720: bind9: hangs / crashes on mips after some time

2017-10-23 Thread Bernhard Schmidt
Control: fixed -1 1:9.10.6+dfsg-1 This has been fixed upstream --- 9.10.5b1 released --- [...] 4414. [bug] Corrected a bug in the MIPS implementation of isc_atomic_xadd(). [RT #41965] signature.asc Description: PGP signature

Bug#860225: bind9: CVE-2017-3137: A response packet can cause a resolver to terminate when processing an answer containing a CNAME or DNAME

2017-10-23 Thread Bernhard Schmidt
Control: fixed -1 bind9/1:9.10.6+dfsg-1 Fixed upstream --- 9.10.5rc2 released --- 4578. [security] Some chaining (CNAME or DNAME) responses to upstream queries could trigger assertion failures. (CVE-2017-3137)

Bug#866564: bind9: CVE-2017-3142 CVE-2017-3143

2017-10-23 Thread Bernhard Schmidt
Control: fixed -1 1:9.10.6+dfsg-1 Fixed upstream --- 9.10.6b1 released --- 4643. [security] An error in TSIG handling could permit unauthorized zone transfers or zone updates. (CVE-2017-3142) (CVE-2017-3143) [RT #45383] signature.a

Bug#890506: stretch-pu: package ntp/1:4.2.8p10+dfsg-3+deb9u2

2018-02-15 Thread Bernhard Schmidt
retch; urgency=medium + + * Cherry-pick patch from upstream to increase stack size. +Thanks to Frederic Endner-Dühr for testing (Closes: #887385) + * Add d/gbp.conf for stretch branch + + -- Bernhard Schmidt Thu, 15 Feb 2018 12:45:57 +0100 + ntp (1:4.2.8p10+dfsg-3+deb9u1) stretch; urgency=m

Bug#887385: Stretch Proposed Update request filed

2018-02-15 Thread Bernhard Schmidt
I have filed https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=890506 with the release team to get this fix into Stretch.

Bug#890605: src:libosmo-abis: FTBFS against standalone libortp 1.0.2

2018-02-16 Thread Bernhard Schmidt
Package: src:libosmo-abis Version: 0.3.2+20151106git86fc3c8 Severity: important Dear Maintainer, src:libosmo-abis in unstable FTBFSs against libortp-dev 1:1.0.2-0+exp2 currently in experimental. libortp-dev / libortp9 was built from src:linphone and is quite old. We are preparing an update of li

Bug#772812:

2017-10-24 Thread Bernhard Schmidt
Control: tags -1 + upstream Control: found -1 2.4.3-4 Control: forwarded -1 https://community.openvpn.net/openvpn/ticket/538 Hi Nikola, > The upstream bug (https://community.openvpn.net/openvpn/ticket/538) is > not fixed, and I can still reproduce this on Ubuntu 17.10 with openvpn > 2.4.3. Than

Bug#879826: seccomp: missing sysinfo call

2017-10-26 Thread Bernhard Schmidt
Package: apt Version: 1.6~alpha2 Severity: important sbuild/schroot in Debian stable, updating a sid chroot fails with a seccomp exception after apt has been upgraded to 1.6~alpha2 in the chroot root@BOTOX:~# sbuild-update -udar unstable unstable: Performing update. 0% [Working] Seccomp pre

Bug#879826: seccomp: missing sysinfo call

2017-10-26 Thread Bernhard Schmidt
On 26.10.2017 13:50, Julian Andres Klode wrote: Hi Julian, >> Package: apt >> Version: 1.6~alpha2 >> Severity: important >> >> sbuild/schroot in Debian stable, updating a sid chroot fails with a seccomp >> exception after apt has been upgraded to 1.6~alpha2 in the chroot >> >> root@BOTOX:~# sbuil

Bug#879826: seccomp: missing sysinfo call

2017-10-26 Thread Bernhard Schmidt
Hi, > I don't think you can get it that way, it's one of the subprocesses > started. You could let it dump core (ulimit -c unlimited) and then > run gdb core /usr/lib/apt/methods/http I guess. I always just use > systemd-coredump which collects all cores automatically and then > all I have to do i

Bug#880926: RFH: linphone -- SIP softphone - graphical client

2017-11-05 Thread Bernhard Schmidt
Package: wnpp Severity: normal Hi, although I'm not the maintainer of the current linphone package (and not a user anyway), I'm asking for help on behalf of the pkg-voip team. linphone in Debian is in a pretty bad shape, it has not seen an upstream release packaged for four years. There have be

Bug#880918: nfdump: New upstream release 1.6.16, fixing issues with netflows generated by recent Cisco firmwares

2017-11-05 Thread Bernhard Schmidt
Control: tags -1 pending On Sun, Nov 05, 2017 at 05:50:49PM +0100, Axel Beckert wrote: Hi, > Peter Haag has just released nfdump 1.6.16: Thanks, I've uploaded a new package. It needs to go through NEW because I switched to -dbgsym packages, will hopefully be in the archive soon. Bernhard sig

Bug#842363: nfdump: Wrong URL in debian/copyright, Homepage header and debian/copyright seem out of date

2017-11-05 Thread Bernhard Schmidt
On Fri, Sep 22, 2017 at 03:14:13PM +0200, Axel Beckert wrote: Hi Axel, > Since nfdump is under collab-maint, I've allowed myself to make these > changes in git and push the change into the unstable branch, so that > they will be fixed whenever the next upload happens. Thanks, uploaded with 1.6.1

Bug#862120: please enable ASA/NSEL/NEL event data processing

2017-11-05 Thread Bernhard Schmidt
Control: tags -1 pending On Mon, May 08, 2017 at 08:35:58PM +0200, Sven Hartge wrote: Hi Sven, > To be able to process Netflow-v9/IPFIX NAT events, for example sent by > Cisco ASA or ipt_NETFLOW, nfdump needs to be compiled with --enable-nsel. Will be in 1.6.16-1, currently in NEW. Bernhard

Bug#843602: WONTFIX, please use systemd overrides

2017-11-05 Thread Bernhard Schmidt
Control: tags 843602 wontfix Hi, nfdump is nowadays (since stretch, it was not part of jessie) started by a native systemd unit. #416501, #497446, #843602 The proper way to change configuration from the systemd units are overrides, i.e. to set a commandline parameter # systemctl edit nfdump.ser

Bug#644632: Patch needed

2017-11-05 Thread Bernhard Schmidt
Control: tags -1 help Since nfdump is now started in a systemd unit this needs to be implemented differently, preferably with a systemd generator and instances. Patches (tested, preferably upstreamable) are welcome. Bernhard signature.asc Description: PGP signature

Bug#877364: pjproject: source file licensed as BSD-4-clause and GPL-2+ effectively unlicensed

2017-11-06 Thread Bernhard Schmidt
On Thu, Oct 12, 2017 at 10:24:46AM +0200, Bernhard Schmidt wrote: Hi, > > The file pjlib/src/pj/sock_linux_kernel.c is licensed as both > > BSD-4-clause and GPL-2+. Not dual-licensed, but separately declared. > > Those licenses are incompatible, and therefore the licensing is

Bug#886984: asterisk: Version 15.2 available

2018-01-12 Thread Bernhard Schmidt
Am 12.01.2018 um 09:35 schrieb Matthias Urlichs: Hi Matthias, > Version 15.2 has just been released, while Debian's is still at 13. > Do you need help with packaging it, or what's the hold-up? When Asterisk is released with Debian it needs to be supported for at least three years (~2 years of st

Bug#890606: src:kopete: FTBFS against libmediastreamer 2.16

2018-05-06 Thread Bernhard Schmidt
Control: tags -1 help On Sat, Mar 10, 2018 at 10:51:30AM +0100, Pino Toscano wrote: Hi Pino, > (not sure why the bug email did not reach the team ML...) > > In data venerdì 16 febbraio 2018 17:28:12 CET, Bernhard Schmidt ha scritto: > > src:kopete in unstable FTBFSs against l

Bug#898084: Please migrate to libsrtp2 in Buster

2018-05-06 Thread Bernhard Schmidt
Package: src:kopete Version: 4:17.08.3-1 Severity: wishlist Hi, as already stated in #890606 we (pkg-voip-maintainers) would like to get rid of libsrtp0 for Buster. librtp0 (src:srtp) has not been updated for five years. The successor libsrtp2 has been released with Stretch and most users are alr

Bug#875604: Acknowledgement (stretch-pu: package asterisk/1:13.14.1~dfsg-2+deb9u2)

2017-09-23 Thread Bernhard Schmidt
Hi, Sorry to bug you again, but I would like to include this fix in an upcoming security upload for asterisk. Would it be possible to approve this asap, as I'm going on vacation tomorrow? Bernhard

Bug#854188: python-pjproject: fail to open sound device

2017-10-05 Thread Bernhard Schmidt
Control: tags -1 + moreinfo On Sat, Feb 04, 2017 at 08:50:42PM +0100, Eric Le Bras wrote: > Package: python-pjproject > Version: 2.5.5~dfsg-5 > Severity: important > > Dear Maintainer, > > Having installed python-project from testing on a stable Debian, I observed > that PJSIP could not open s

Bug#896184: conserver-server fails to restart on systemd reliably

2018-04-20 Thread Bernhard Schmidt
executable name instead of the pidfile (so it waits for all processes to finish) and changes restart to call stop/start directly. Bernhard >From ed868b4712faa8706fcac4c5c9c3cd8f105c4f49 Mon Sep 17 00:00:00 2001 From: Bernhard Schmidt Date: Fri, 20 Apr 2018 17:06:48 +0200 Subject: [PATCH] Make init.d

Bug#805445: More data points

2019-11-14 Thread Bernhard Schmidt
On Thu, Aug 16, 2018 at 12:41:39AM +0200, Bernhard Schmidt wrote: Hi, > I also see this issue on several stretch VMs. In network segments where > Router Advertisements are present but the machines have a gateway set > the systems are occasionally not reachable after a reboot (<1% of

Bug#928407: unblock: bind9/1:9.11.5.P4+dfsg-5

2019-05-03 Thread Bernhard Schmidt
:9.11.5.P4+dfsg-5) unstable; urgency=medium + + * AppArmor: Allow /var/tmp/krb5_* (owner-only) for Samba AD DLZ. +Thanks to Steven Monai (Closes: 928398) + + -- Bernhard Schmidt Fri, 03 May 2019 19:44:57 +0200 + +bind9 (1:9.11.5.P4+dfsg-4) unstable; urgency=medium + + [ Bernhard Schmidt

Bug#928168: ntp: Wrong path in apparmor profile for samba

2019-05-03 Thread Bernhard Schmidt
Am 01.05.19 um 09:56 schrieb L. van Belle: Hello Louis, @intrigeri: Could you please give me a hint? TL;DR: The path to the ntp_signd socket in the current AppArmor profile for ntp is wrong ( /{,var/}run/samba/ntp_signd/socket rw, but it is now in /var/lib/samba/ntp_signd ) . I'm trying to repro

Bug#925279: util-linux: in recent ia32/amd64 versions 'line' utility is missnig

2019-05-15 Thread Bernhard Schmidt
Control: found -1 2.29.2-2 > line utility from util-linix is missing in recent ia32/amd64 > versions. I believe, this utility cannot be easily replaced and is > not included in other debian package. Pleas consider to return this > utilty to util-linux packge. It has been dropped in 2.29.2-2

Bug#928712: Bug#928717: in normal builds local urresponsive flas are parsed to build process

2019-05-15 Thread Bernhard Schmidt
Control: severity 928717 normal Control: tags 928717 unreproducible Control: tags 928712 unreproducible Am 12.05.19 um 21:54 schrieb Juhani Numminen: Hi Juhani, hi Piccoro, thanks for reporting and triaging this bug. > With pbuilder, amd64 compiles fine for me. It seems that those PIE flags are

Bug#316549: time-daemon pseudopackage

2020-01-12 Thread Bernhard Schmidt
Control: affects -1 src:ntp Am 13.01.20 um 02:02 schrieb Michael Biebl: Hi Michael, On Fri, 1 Jul 2005 13:49:45 -0400 Justin Pryzby wrote: Package: chrony, ntp Severity: normal Only openntpd provides, conflicts, replaces: time-daemon. Seems all NTP clients (ntpsec, chrony, openntpd) aside

Bug#931630: ntp: Please include patch to fix build on m68k (alignment)

2020-03-10 Thread Bernhard Schmidt
On Mon, Jul 08, 2019 at 02:52:39PM +0200, John Paul Adrian Glaubitz wrote: Hi, > Due to its native alignment being 16 bits wide, m68k needs an additional > padding in the struct conf_restrict: This has supposedly been fixed in 4.2.8p14 (according to https://bugs.ntp.org/show_bug.cgi?id=3599 and

Bug#936558: Ping

2019-12-17 Thread Bernhard Schmidt
Pinging this bug to delay testing removal, the fix is in unstable but migration is currently blocked by several RC bugs in libxcrypt.

Bug#936558: Ping

2019-12-27 Thread Bernhard Schmidt
On Tue, Dec 17, 2019 at 10:44:42PM +0100, Bernhard Schmidt wrote: > Pinging this bug to delay testing removal, the fix is in unstable but > migration is currently blocked by several RC bugs in libxcrypt. And again. Hopefully this will be solved soon. Bernhard

Bug#942412: Does not build on platform other than i386/amd64

2019-10-15 Thread Bernhard Schmidt
Package: src:mariadb-connector-odbc Version: 3.1.4-1 Severity: minor Tags: upstream src:mariadb-connector-odbc fails to build on platforms other than i386/amd64 with -- Looking for floor -- Looking for floor - not found -- Looking for floor in m -- Looking for floor in m - found -- odbc_config i

Bug#917989: LD_DEBUG messages

2019-01-03 Thread Bernhard Schmidt
Am 2019-01-02 02:54, schrieb Troy Telford: Dear Troy, Below is the bottom stanza from LD_DEBUG, showing the linker error. I hope it’s helpful. Thanks for your debugging. I tried to reproduce this in a Buster container, but Asterisk started fine for me with the latest GnuTLS installed. Also

Bug#918130: Mail::SpamAssassin::Plugin::ASN reports wrong ASN for IPv6

2019-01-03 Thread Bernhard Schmidt
Package: spamassassin Version: 3.4.2-1 Severity: normal Tags: upstream ipv6 Hi, the Mail::SpamAssassin::Plugin::ASN reports the wrong source ASN for mails received over IPv6 X-Spam-ASN: AS3215 2.0.0.0/16 Received: from puck.nether.net (puck.nether.net [IPv6:2001:418:3f4::5]) This is caused by S

Bug#918136: RM: srtp/1.4.5~20130609~dfsg-2

2019-01-03 Thread Bernhard Schmidt
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: rm Hi, Please remove src:srtp from testing, it has been superseded by src:srtp2 and should not be released with buster. The appropriate RC bug has been filed for a long time now (#910292), but the

Bug#910292: transition: libsrtp0-rm

2019-01-03 Thread Bernhard Schmidt
Hi, > Considering that your rdep is indirectly kde-standard, you should imho > ask for removal from testing only once kopete is fixed… FTR, kopete is fixed and I've filed Bug#918136 for the removal of src:srtp from testing. Bernhard

Bug#786973: asterisk: Please build-depend on libosptk3-dev for Open Settlement Protocol support

2019-01-03 Thread Bernhard Schmidt
Control: tags -1 moreinfo > Quoting Jonas Smedegaard (2015-05-27 12:09:22) > > Asterisk has since long supported Open Settlement Protocol through the > > OSP Toolkit. Please build-depend on libosptk3-dev to enable that. > > Ah, I notice now the following in my test build: > > > checking osp/os

Bug#918239: Consider splitting local channels and/or snmp into seperate binary package

2019-01-04 Thread Bernhard Schmidt
Package: src:asterisk Severity: wishlist Filing this bug so I don't forget having looked at it ... asterisk-modules currently contains app_jack, chan_alsa, chan_console and chan_oss that offer a local audio channel (i.e. use asterisk as softphone with your microphone and your speaker attached to

Bug#918250: Facter: Could not process routing table entry: Expected a destination followed by key/value pairs

2019-01-04 Thread Bernhard Schmidt
Package: facter Version: 3.11.0-1.1 Severity: minor After upgrading a test-VM from Stretch to Buster the following error appears with every puppet run Warning: Facter: Could not process routing table entry: Expected a destination followed by key/value pairs, got 'default via fe80::1 dev ens18 me

Bug#918378: Wrong path to binary in systemd unit

2019-01-05 Thread Bernhard Schmidt
Package: qemu-guest-agent Version: 1:3.1+dfsg-2 Severity: important The systemd unit uses the wrong path to the binary (bin instead of sbin) and fails to start. Jan 4 18:29:33 opsvm systemd[607]: qemu-guest-agent.service: Executable /usr/bin/qemu-ga missing, skipping: No such file or directory

Bug#918543: ring build depends on libsrtp-dev that is not in buster

2019-01-07 Thread Bernhard Schmidt
Am 07.01.19 um 10:56 schrieb Adrian Bunk: > Source: ring > Version: 20180119.1.9e06f94~ds120181001.4.a99aaec~ds6-2 > Severity: serious > Tags: ftbfs > Control: block 910292 by -1 > > ring build depends on libsrtp-dev that is not in buster, > see #910292 for background. > According to the buildlo

Bug#942097: [ping] openvpn does not re-read CRLs on client connect in "capath" mode

2019-12-06 Thread Bernhard Schmidt
Control: tags -1 upstream Hi, Is there any chance that this bug will get fixed? Please file that bug upstream, nothing we as Debian maintainers can fix. Unless of course there is already a patch we just have to import. https://community.openvpn.net/openvpn/report Bernhard

Bug#884049: '?' in Title not properly escaped

2017-12-10 Thread Bernhard Schmidt
Package: abcde Version: 2.8.1-1 Severity: normal Hi, to test abcde I just tried to rip the first CD that lay around here, which happens to be an audio play of the popular German youth series 'Die drei ???'. It looks like abcde is improperly feeding the ??? to the shell, substituting the name of

Bug#884069: Kernel crash on boot on IBM BladeCenter HS22

2017-12-10 Thread Bernhard Schmidt
Control: severity -1 critical On Mon, Dec 11, 2017 at 09:14:27AM +0200, Rolandas Naujikas wrote: Hi, > Package: linux-image-3.16.0-4-amd64 > Version: 3.16.51-2 > > Loading Linux 3.16.0-4-amd64 ... > Loading initial ramdisk ... > [0.604128] general protection fault: [#1] SMP > [0.60

Bug#883938: Workaround available

2017-12-11 Thread Bernhard Schmidt
Control: summary -1 Seems two affect machines with more than one socket. Workaround: set maxcpus=1 on the kernel command line Hi, this seems to affect two-socket boxes. Workaround is to set maxcpus=1 on the kernel command line. Bernhard

Bug#883938: linux-image-3.16.0-4-amd64: Kernel panic on boot after upgrading to debian 8.10 kernel 3.16.51

2017-12-11 Thread Bernhard Schmidt
On Mon, Dec 11, 2017 at 09:23:45AM +0100, Salvatore Bonaccorso wrote: > The issue seems not present when rolling back to 3.16.48-1 (this is > one kernel version which was only present in jessie-proposed-update). > > Can someone confirm? If yes it has to be a change between 3.16.48-1 > and 3.16.51

Bug#883938: Bug #883938: linux-image-3.16.0-4-amd64: Kernel panic on boot after upgrading to debian 8.10 kernel 3.16.51

2017-12-11 Thread Bernhard Schmidt
Hi Karsten, Thanks for the test. Can you check whether numa=off on the kernel command line fixes this as well? Bernhard -- Diese Nachricht wurde von meinem Android-Mobiltelefon mit K-9 Mail gesendet.

Bug#884140: Kernel 3.16.51-2 general protection fault in sched_init_smp()

2017-12-11 Thread Bernhard Schmidt
Control: forcemerge 883938 -1 On Mon, Dec 11, 2017 at 03:50:20PM +0100, Damien Dejean wrote: Hi Damien, > Package: linux-image > Version: 3.16.0-4-amd64 > > Since the update from version 3.16.43 to 3.16.51-2 the kernel crashes > during the boot (Dell Inc. PowerEdge 2970 with 2 Quad-Core AMD > O

Bug#883938: RFT: Candidate fix for boot failure of Debian 8.10 on various x86 systems

2017-12-12 Thread Bernhard Schmidt
Am 12.12.2017 um 02:57 schrieb Ben Hutchings: Hi Ben, > Apologies for this regression. Salvatore Bonaccorso has tracked down > which change in 3.16-stable triggers the crash, and I identified some > related upstream changes which appear to fix it. An updated package is > available at: > > http

Bug#840714: bind9 FTCBFS: python3 dependency, missing --host flags, bad configure checks, etc

2017-12-13 Thread Bernhard Schmidt
Control: tags -1 + moreinfo > bind9 fails to cross build from source for lots of different reasons. It > starts out with trying to execute the host architecture python3 (which > is not installable as its postinst fails for too foreign architectures). > Then there are lots of fiddly things that go

Bug#820056: writeable file 'foo': already in use

2017-12-13 Thread Bernhard Schmidt
Control: tags -1 + upstream wontfix On Tue, Apr 05, 2016 at 12:06:54AM -0400, sacrificial-spam-addr...@horizon.com wrote: Hi, > Discussion of this issue can be found at > http://bind-users-forum.2342410.n4.nabble.com/Single-slave-zone-definition-for-two-view-cache-file-name-problem-td12.html >

Bug#593940: bind9utils: dnssec-{keygen,signzone} should not be in /usr/sbin

2017-12-13 Thread Bernhard Schmidt
Control: tags -1 + wontfix On Sun, Aug 22, 2010 at 03:41:49PM +0200, Philipp Kern wrote: Hi, > Package: bind9utils > Version: 1:9.7.1.dfsg.P2-2 > Severity: normal > > Why are dnssec-{keygen,signzone} in /usr/sbin? They are perfectly usable > from normal user accounts and zone signing actions a

Bug#863841: Enable systemd hardening options for named

2017-12-13 Thread Bernhard Schmidt
FTR, these are the "others" using (just as a reference, I think we can easily add more): Fedora/RHEL: https://src.fedoraproject.org/rpms/bind/blob/master/f/named.service PrivateTmp=true SLES: Unknown, but https://build.opensuse.org/package/revisions/network/bind sports a nice "Add back init scrip

Bug#593940: [Pkg-dns-devel] Bug#593940: Bug#593940: Bug#593940: bind9utils: dnssec-{keygen, signzone} should not be in /usr/sbin

2017-12-14 Thread Bernhard Schmidt
On 14.12.2017 09:34, Ondřej Surý wrote: Hi everyone, > I think that best course of action would be to wait till January and > fill an upstream issue in an upstream gitlab for BIND ;) > > I think this is reasonable, but what about we change this in an upstream > first and then backport the change

Bug#884838: www.debian.org: http://packages.debian.org/*/*/*/filelist out-of-date

2017-12-20 Thread Bernhard Schmidt
Package: www.debian.org Severity: normal Hi, we've received a report on pkg-dns-devel that bind9utils on amd64 does not contain the python3 modules http://lists.alioth.debian.org/pipermail/pkg-dns-devel/Week-of-Mon-20171218/002260.html I've verified the build log and the package in sid, these c

Bug#924551: startup script affects bind running inside a container

2019-07-07 Thread Bernhard Schmidt
Control: tags -1 + moreinfo Am 14.03.19 um 11:39 schrieb Harald Dunkel: Hi, > "/etc/init.d/bind9 stop" kills a named running in a LXC > container, if there is no named running on the host. Same > for "restart". Sample session (on the host): > > # ps -ef | grep named > opensmt+  234963    3421 

Bug#931262: Bug in ntp

2019-07-07 Thread Bernhard Schmidt
Control: tags -1 + moreinfo Am 29.06.19 um 17:41 schrieb Leandro Cunha: Hi, > Package: ntp > Version: 1: 4.2.8p12+dfsg-4 > It seems that the bug happened again in version 1: 4.2.8p12+dfsg-4 > because of the apparmor, checking in logs here. > > https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=8

Bug#931441: NTP under Buster always uses DHCP supplied server

2019-07-07 Thread Bernhard Schmidt
Control: tags -1 confirmed Am 05.07.19 um 04:03 schrieb Mark James: Hi Mark, > Clean install Buster and ntp. Edit /etc/init.d/ntp and change the two > references to /run/ntp.conf to point to my config file (/etc/ntp.conf) where > I remove the pool statements and add two server statements point

Bug#941011: asterisk: Silently failing on weak certificates with no debug messages

2019-10-04 Thread Bernhard Schmidt
Am 23.09.19 um 14:19 schrieb Anton Ivanov: Dear Anton, > Package: asterisk > Version: 1:16.2.1~dfsg-1+deb10u1 > Severity: minor > > Dear Maintainer, > > After an upgrade from stretch to buster, my asterisk installation lost tls > support. > > Debug provided minimal information - it was failin

Bug#941217: asterisk: pjsip show contacts displays double entries for each contact

2019-10-04 Thread Bernhard Schmidt
Control: tags -1 fixed-upstream Control: forwarded -1 https://issues.asterisk.org/jira/browse/ASTERISK-28228 > The normal behavior is to show each contact once, as the Asterisk > Development Team has already corrected in version 16.6.0-rc2 (res_pjsip: > fix more contacts of the same contact in "pj

Bug#930445: ITP: odbc-mariadb -- ODBC driver for MariaDB

2019-06-12 Thread Bernhard Schmidt
Package: wnpp Severity: wishlist Owner: Bernhard Schmidt * Package name: odbc-mariadb Version : 3.1.1 * URL : https://downloads.mariadb.org/connector-odbc/ * License : LGPL-v2.1 Programming Lang: C Description : ODBC driver for MariaDB This package

Bug#930445: [debian-mysql] Bug#930445: ITP: odbc-mariadb -- ODBC driver for MariaDB

2019-06-13 Thread Bernhard Schmidt
Am 13.06.19 um 10:58 schrieb Otto Kekäläinen: Hi Otto, > Great news! > > I created project and invited you to developer if you want to have it > group maintained under the MariaDB team : > https://salsa.debian.org/mariadb-team/mariadb-connector-odbc/ Thanks. I was trying to push, but remote: R

Bug#930445: [debian-mysql] Bug#930445: ITP: odbc-mariadb -- ODBC driver for MariaDB

2019-06-13 Thread Bernhard Schmidt
Am 13.06.19 um 12:12 schrieb Bernhard Schmidt: Hi, > Please either create the branch or (temporarily) upgrade my access level. You could also clone the repo at https://salsa.debian.org/berni/odbc-mariadb Bernhard

Bug#930445: [debian-mysql] Bug#930445: ITP: odbc-mariadb -- ODBC driver for MariaDB

2019-06-13 Thread Bernhard Schmidt
Hi, > Please try to push your next development here: > https://salsa.debian.org/mariadb-team/mariadb-connector-odbc Worked fine, including CI. I'll double-check d/copyright and then upload to NEW Bernhard

Bug#930445: Info received (Bug#930445: [debian-mysql] Bug#930445: ITP: odbc-mariadb -- ODBC driver for MariaDB)

2019-06-13 Thread Bernhard Schmidt
Control: tags -1 pending mariadb-connector-odbc is now in NEW https://ftp-master.debian.org/new/mariadb-connector-odbc_3.1.1-1.html

Bug#933634: FTBFS on armel, mips, mipsel, powerpc, sh4 due to atomics

2019-08-01 Thread Bernhard Schmidt
Package: src:freeradius Version: 3.0.19+dfsg-1 Severity: serious FreeRADIUS 3.0.19 FTBFSes on armel, mips, mipsel, powerpc and sh4 due to /usr/bin/ld: build/lib/.libs/libfreeradius-radius.so: undefined reference to `__atomic_compare_exchange_8' /usr/bin/ld: build/lib/.libs/libfreeradius-radius.s

Bug#932299: closed by Vincent Danjean (Bug#932299: fixed in owfs 3.2p3+dfsg1-3)

2019-08-05 Thread Bernhard Schmidt
On Thu, Jul 25, 2019 at 10:54:04AM +, Debian Bug Tracking System wrote: Hi Vincent, > This is an automatic notification regarding your Bug report > which was filed against the src:owfs package: > > #932299: owfs: FTBFS: relocation R_X86_64_32 against symbol `_Py_NoneStruct' > can not be use

Bug#918842: AppArmor profile lxc-containers not loaded on installation, leading to operation="change_profile" info="label not found"

2019-01-09 Thread Bernhard Schmidt
Package: lxc Version: 1:3.1.0-1 Severity: important Hi, I freshly installed lxc on my testing box and could not run a container with weird error messages root@BOTOX:/etc/apparmor.d# lxc-start autopkgtest-unstable-amd64 -F lxc-start: autopkgtest-unstable-amd64: lsm/lsm.c: lsm_process_label_set_a

Bug#918930: owncloud-client: owncloud client complains about being used with nextcloud server

2019-01-11 Thread Bernhard Schmidt
Control: severity -1 important On Thu, Jan 10, 2019 at 12:51:17PM -0500, Diane Trout wrote: > When launching the owncloud desktop application pointed to two nextcloud > servers versioned 13.0.4 and 15.0.0 the ownCloud client stopped with a warning > message and I had to manually unpause synchroni

<    3   4   5   6   7   8   9   10   >