Bug#923972: openvpn: OpenVPN 2.4.7 incompatible with OpenSSL 1.1.1a due to TLS 1.3

2019-03-07 Thread Bernhard Schmidt
Control: tags -1 moreinfo Am 07.03.19 um 19:46 schrieb Matthew Horan: Hi Matthew, > The version of OpenVPN in Debian buster (2.4.7) seems to be incompatible > with the version of OpenSSL (1.1.1a) in Debian buster. This seems to be > due to TLS 1.3 support in OpenSSL 1.1.1, which OpenVPN 2.4.7 do

Bug#923984: dnssec-keymgr immediately inactivates/deletes old keys

2019-03-07 Thread Bernhard Schmidt
Package: bind9utils Version: 1:9.11.2+dfsg-1 Severity: important Tags: upstream This is a copy of my upstream bugreport at https://gitlab.isc.org/isc-projects/bind9/issues/117 in order to get the fix into Buster When you run dnssec-keymgr with keys that are older (Activation Time further in the p

Bug#923034: O: freeradius -- high-performance and highly configurable RADIUS server

2019-03-10 Thread Bernhard Schmidt
[CCing the ML, might see a bit more traction there] On Sat, Feb 23, 2019 at 11:13:14AM +0100, Michael Stapelberg wrote: > I am orphaning this package effective immediately. I have never personally > used > FreeRADIUS, and only stepped in to help when I saw the package was in bad > shape. A few

Bug#908595: krb5-subdomain and ms-subdomain update policy rules ineffective

2019-03-10 Thread Bernhard Schmidt
Control: severity -1 important Control: tags -1 + wontfix Control: tags -1 - patch Hi Dominik, > I discovered the following security bug in bind9 a few weeks ago, and > responsibly disclosed it to the ISC security officer. Unfortunately, until > today they did not acknowledge it is a security iss

Bug#921266: Could this simple typo be the reason: "ream" <-> "realm"?

2019-03-10 Thread Bernhard Schmidt
Control: severity -1 important Control: tags -1 moreinfo Hi Alf, > I now tried to collect debug info with the cli-version - it crashes the > same way with segfault: > > linphonec -d 5 -l linphone-debug > > the last lines in the debug output after password enty and before crash are: > > Authent

Bug#924538: unblock: asterisk/1:16.2.1~dfsg-1

2019-03-14 Thread Bernhard Schmidt
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package asterisk It's a new upstream patch release fixing a security issue (Bug#923690). Other than that it only contains a change in the Jenkins CI configuration (not releva

Bug#920533: asterisk: on upgrade from 13.23.1 to 16.1.1 RTP streams get misdirected to NAT devices

2019-01-29 Thread Bernhard Schmidt
Hi James, thanks. Have you raised this issue with upstream somehow? I know chan_sip is deprecated, but I doubt a bug this severe would be undetected for that long. I'll try to whip together a test for this (my test installation is using chan_pjsip and IPv6). Bernhard

Bug#916405: vmdb2 (called from autopkgtest-build-qemu) fails to unmount loop

2018-12-13 Thread Bernhard Schmidt
Package: vmdb2 Version: 0.13.2-2 Severity: important Hi, building a new autopkgtest image with autopkgtest-build-qemu (which uses vmdb2) fails with the following error root@BOTOX:/var/lib/schroot/btrfs# autopkgtest-build-qemu unstable /var/lib/schroot/btrfs/autopkgtest-sid-vmdb2.img http://deb

Bug#916407: Image built by autopkgtest-build-qemu does not work

2018-12-13 Thread Bernhard Schmidt
Package: autopkgtest Version: 5.7 Severity: normal File: /usr/bin/autopkgtest-virt-qemu Hi, I'm probably doing some very stupid error. I'm using autopkgtest-virt-qemu to run autopkgtest on src:asterisk. I previously had an image provided by vmdebootstrap that works just fine, but needs some upda

Bug#901246: closed by Bernhard Schmidt (Re: linphone-nogtk depends on X and OpenGL)

2018-12-22 Thread Bernhard Schmidt
Am 20.12.18 um 09:31 schrieb Pali Rohár: Hi Pali, >> This was indeed quite bad in 3.6.1 which was present in stretch. >> >> In 3.12 the situation has improved a lot. It is not perfect yet, since >> linphone depends on libmediastreamer-voip10, which in turn depends on a >> lot of media libraries t

Bug#917481: Please test Asterisk 16.1 (for Buster) in experimental

2018-12-27 Thread Bernhard Schmidt
Source: asterisk Severity: wishlist Tags: help Hi, filing a wishlist bug with the tag "help" to maybe have it listed in how-can-i-help. Asterisk 16.1.0 has been uploaded to experimental a few days ago. Other than being the bump to the next LTS release train it also includes an embedded and renam

Bug#935200: buster-pu: package asterisk/1:16.2.1~dfsg-1+deb10u1

2019-08-20 Thread Bernhard Schmidt
n_sip (Closes: #931981) + * d/gbp.conf: Update for Buster branch + + -- Bernhard Schmidt Tue, 20 Aug 2019 22:31:36 +0200 + asterisk (1:16.2.1~dfsg-1) unstable; urgency=medium * New upstream version 16.2.1~dfsg diff -Nru asterisk-16.2.1~dfsg/debian/gbp.conf asterisk-16.2.1~dfsg/debian/gbp

Bug#935200: buster-pu: package asterisk/1:16.2.1~dfsg-1+deb10u1

2019-08-21 Thread Bernhard Schmidt
Hi Adam, Am 20.08.19 um 22:54 schrieb Adam D. Barratt: > Control: tags -1 + confirmed > > On Tue, 2019-08-20 at 22:37 +0200, Bernhard Schmidt wrote: >> I'd like to update asterisk with a fix for two minor CVEs that have >> been deemed >> no-dsa. Exactly t

Bug#942412: Does not build on platform other than i386/amd64

2022-01-28 Thread Bernhard Schmidt
Hi, > What's the status of this bug? > > There is a proposed patch attached to it, could you please apply it and > upload? Thanks for reminding me. 3.1.15-1 has been uploaded, which fixes build on other 32 bit platforms upstream. It is still broken on 64 bit platforms. After that I have pushed

Bug#942412: Does not build on platform other than i386/amd64

2022-01-28 Thread Bernhard Schmidt
On 28/01/22 12:23 PM, Bernhard Schmidt wrote: > After that I have pushed Yangfl's patch to our git repo and Salsa CI > looks happy, at least crossbuilding on arm64 appears to work. Since the > patch introduces the use of pkg-config I'm not sure what upstream's take > wo

Bug#983985: bctoolbox: ftbfs with GCC-11

2022-01-30 Thread Bernhard Schmidt
Hi, bctoolbox 5.0.37 builds perfectly with mbedtls 2.28.0-0.1 here, I will test with 2.28.0-0.2 ASAP. 4.4.13-3 (just uploaded) builds fine against mbedtls 2.28.0-0.2 in experimental, so go ahead and sorry for the delay. Bernhard

Bug#893058: ITP: libdecaf -- implementation of Montgomery and Edwards elliptic curve cryptography

2022-01-30 Thread Bernhard Schmidt
On 15/03/18 11:06 PM, Christopher Hoskin wrote: Hi Christopher, > Package: wnpp > Severity: wishlist > Owner: Christopher Hoskin > > * Package name: libdecaf > Version : 0.9.4 > Upstream Author : Cryptography Research, Inc. > * URL : http://ed448goldilocks.sourceforg

Bug#987202: Terminal output

2021-04-20 Thread Bernhard Schmidt
Control: tags -1 + moreinfo Dear Patrick, thanks for reporting this bug. > 2021-04-19 16:34:29 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)> > 2021-04-19 16:34:29 PUSH: Received control message: 'PUSH_REPLY,ping > 10,ping-restart 60,dhcp-option DNS 192.168.XXX.XXX,dhcp-option DNS > 192.168.

Bug#987380: CVE-2020-15078: Authentication bypass with deferred authentication

2021-04-22 Thread Bernhard Schmidt
Source: openvpn Severity: important Tags: security Forwarded: https://community.openvpn.net/openvpn/wiki/CVE-2020-15078 X-Debbugs-Cc: Debian Security Team Overview OpenVPN 2.5.1 and earlier versions allows a remote attackers to bypass authentication and access control channel data on servers con

Bug#966294: Fwd: Processed: Re: #966294: asterisk: memory leak with PJSIP channel

2021-04-28 Thread Bernhard Schmidt
Forgot to Cc the bug ... Hi Chris, hrm, Jose reported this issue appearing with the stable release only (16.16.1 from his (back then) private backport fixing it), you tagged the bug as still found in 16.16.1, and I cannot see this issue at all. Unfortunately I don't know what to do with this bug

Bug#987731: buster-pu: package openvpn/2.4.7-1

2021-04-28 Thread Bernhard Schmidt
+(Closes: #987380) + * Cherry-Pick upstream fix to increase TCP socket backlog (Closes: #968942) + + -- Bernhard Schmidt Wed, 28 Apr 2021 16:48:07 +0200 + openvpn (2.4.7-1) unstable; urgency=medium [ Bernhard Schmidt ] diff -Nru openvpn-2.4.7/debian/patches/CVE-2020-11810.patch openvpn-2.4.7

Bug#987814: unblock: openvpn/2.5.1-2

2021-04-30 Thread Bernhard Schmidt
200 @@ -1,3 +1,11 @@ +openvpn (2.5.1-2) unstable; urgency=high + + * Cherry-Pick 3 (+ 1 predependency) patches from upstream to fix +authentication bypass with deferred authentication +(CVE-2020-15078) (Closes: #987380) + + -- Bernhard Schmidt Wed, 28 Apr 2021 14:41:58 +0200 + openvpn (

Bug#897878: ucommon: diff for NMU version 7.0.0-12.1

2018-08-12 Thread Bernhard Schmidt
On 12.08.2018 19:20, Adrian Bunk wrote: > Control: tags 897878 + patch > Control: tags 897878 + pending > Control: tags 898502 + pending > > Dear maintainer, > > I've prepared an NMU for ucommon (versioned as 7.0.0-12.1) and uploaded > it to DELAYED/15. Please feel free to tell me if I should ca

Bug#897878: ucommon: diff for NMU version 7.0.0-12.1

2018-08-12 Thread Bernhard Schmidt
Control: reopen -1 Control: notfixed -1 7.0.0-13 On 13.08.2018 00:05, Bernhard Schmidt wrote: > On 12.08.2018 19:20, Adrian Bunk wrote: >> Control: tags 897878 + patch >> Control: tags 897878 + pending >> Control: tags 898502 + pending >> >> Dear maintainer, >&

Bug#905392: Does a generator need to take care of overrides in /etc?

2018-08-13 Thread Bernhard Schmidt
Hi, on src:openvpn we have recently gotten a bug report about local modifications of the openvpn@.service file in /etc being ignored when the instance is started by the systemd generator, because the generator unconditionally links to the file in /lib/systemd and does not check for the presence of

Bug#903933: openvpn cannot read config files outside /etc/openvpn when systemd is used

2018-08-13 Thread Bernhard Schmidt
On 09.08.2018 16:09, Alex wrote: Hi Alex, > I edited the file (and the setting seems to be a possible cause), but it > still not works. I run openvpn still via /etc/default/openvpn AUTOSTART= > instead of using vpn@openvpn style services. Possibly there is another > service in between, which rest

Bug#906202: dh-apparmor should check syntax of AppArmor policy

2018-08-15 Thread Bernhard Schmidt
Package: dh-apparmor Severity: wishlist Hi, I'm not sure whether this is possible. If not feel free to close. There have been multiple occasions (and I have been the cause of at least one of them) where a syntactically wrong AppArmor policy (missing comma at EOL) caused an RC bug. It would be gr

Bug#805445: More data points

2018-08-15 Thread Bernhard Schmidt
On Sat, Mar 26, 2016 at 04:17:44PM +0100, Martin Mares wrote: Hi, I also see this issue on several stretch VMs. In network segments where Router Advertisements are present but the machines have a gateway set the systems are occasionally not reachable after a reboot (<1% of the cases I'd say, tota

Bug#805445: Info received (Bug#805445: More data points)

2018-08-16 Thread Bernhard Schmidt
And here is a journal log of the problem happening. Aug 15 07:36:43 badwlrz-tljss1 ifup[575]: RTNETLINK answers: File exists Aug 15 07:36:43 badwlrz-tljss1 ifup[575]: ifup: failed to bring up eth0 Aug 15 07:36:43 badwlrz-tljss1 systemd[1]: networking.service: Main process exited, code=exited, stat

Bug#905392: Does a generator need to take care of overrides in /etc?

2018-08-23 Thread Bernhard Schmidt
Control: clone 905392 -1 Control: reassign -1 systemd Control: found -1 239-7 Control: retitle -1 systemd: generator needs to resolve override in /etc Control: forward -1 https://github.com/systemd/systemd/issues/9921 > Would probably be a good idea to raise this on the upstream mailing list. Don

Bug#908286: Buster: Drop ifupdown-hooks from ntpdate?

2018-09-07 Thread Bernhard Schmidt
Package: ntpdate Severity: normal Hi Kurt (and everyone else in the BTS), I've been going through the open bugs in the BTS again and have come to the conclusion that the whole ifupdown triggering mechanism included in the ntpdate package is a bug mess we're unlikely to get sorted out. It needs to

Bug#823533: allow to skip ntpdate on ifup

2018-09-07 Thread Bernhard Schmidt
Hi Christian, >> I'm therefor proposing a complete rewrite >> >> - new package sntp-hooks >> - depends on sntp, ships hooks for ifupdown and possibly others (like >> NetworkManager or systemd-network or whatever Ubuntu is doing now) >> - executes the actual sntp synchronisation non-blockin

Bug#913529: stretch-pu: package openvpn/2.4.0-6+deb9u3

2018-12-03 Thread Bernhard Schmidt
Am 03.12.18 um 08:17 schrieb Julien Cristau: > Control: tag -1 confirmed > > On Sun, Nov 11, 2018 at 10:30:54PM +0100, Bernhard Schmidt wrote: >> diff -Nru openvpn-2.4.0/debian/changelog openvpn-2.4.0/debian/changelog >> --- openvpn-2.4.0/debian/changelog 2017-07-18 22:

Bug#913529: stretch-pu: package openvpn/2.4.0-6+deb9u3

2018-11-11 Thread Bernhard Schmidt
AD Decrypt error: cipher +final failed" errors (Closes: #909430, #910937) + + -- Bernhard Schmidt Sun, 14 Oct 2018 22:55:44 +0200 + openvpn (2.4.0-6+deb9u2) stretch; urgency=medium * Fix broken reconnect on connection loss due to wrong push digest calculation. diff -Nru openv

Bug#909689: asterisk: autopkgtest regression

2018-11-12 Thread Bernhard Schmidt
Control: severity -1 important Am 05.11.18 um 23:33 schrieb Bernhard Schmidt: Hi, >> this is where asterisk is actually segfaulting (not during the >> testsuite, but when collecting the results). I haven't managed to pull >> the backtrace from the autopkgtest worker yet

Bug#913614: gnupg2 fails with "cannot open '/dev/tty': No such device or address"

2018-11-13 Thread Bernhard Schmidt
Hi, confirmed, I see this as well after the point release. Passing "--no-tty" to gpg works around this issue. Bernhard

Bug#909465: Similiar issue when upgrading samba - fixed by mapping BUILTIN\Guests to nobody group

2018-11-13 Thread Bernhard Schmidt
Control: notfound -1 2:4.9.1+nmu-1~deb9 Control: found -1 2:4.9.1+dfsg-2 Control: tags -1 - d-i Control: severity -1 important Control: retitle -1 smbd fails to start in 2:4.9.1+dfsg-2, "failed to setup guest info." On Sun, Nov 11, 2018 at 09:48:51AM +0100, Javier Fernandez-Sanguino wrote: Dear

Bug#883185: systemd-networkd: physical port in bridge stuck in "configuring", failing systemd-networkd-wait-online.service

2018-11-20 Thread Bernhard Schmidt
Am 17.11.18 um 22:51 schrieb Michael Biebl: Hi Michael, >> Package: systemd >> Version: 235-3 >> Severity: normal >> >> Hi, >> >> after upgrading from Stretch to Buster the physical interface in my bridge >> is stuck in "configuring", causing systemd-networkd-wait-online to stall >> and eventuall

Bug#913609: bpfcc FTBFS on amd64: No such file or directory: 'bcc-0.7.0'

2018-11-26 Thread Bernhard Schmidt
On Tue, Nov 13, 2018 at 12:05:05AM +0200, Adrian Bunk wrote: Hi, > Source: bpfcc > Version: 0.7.0-1 > Severity: serious > Tags: ftbfs > > https://tests.reproducible-builds.org/debian/rb-pkg/unstable/amd64/bpfcc.html > > ... > removing 'bcc-0.7.0' (and everything under it) > removing 'bcc-0.7.0'

Bug#913609: bpfcc FTBFS on amd64: No such file or directory: 'bcc-0.7.0'

2018-11-27 Thread Bernhard Schmidt
On Mon, Nov 26, 2018 at 03:46:17PM +0100, Bernhard Schmidt wrote: > > Source: bpfcc > > Version: 0.7.0-1 > > Severity: serious > > Tags: ftbfs > > > > https://tests.reproducible-builds.org/debian/rb-pkg/unstable/amd64/bpfcc.html > > > > ... &

Bug#909689: asterisk: autopkgtest regression

2018-11-05 Thread Bernhard Schmidt
Hi, > I don't know how much time I'll have to check on this in the next days. > Raising severity to block testing migration for now. Okay, I tried to have a look at this and I have to admit I'm a bit confused. First, I do see a failing unittest in MY autopkgtest qemu instance that is not visible

Bug#909689: asterisk: autopkgtest regression

2018-11-05 Thread Bernhard Schmidt
Hi, > > this is where asterisk is actually segfaulting (not during the > testsuite, but when collecting the results). I haven't managed to pull > the backtrace from the autopkgtest worker yet. Backtrace: #0 ___fprintf_chk (fp=fp@entry=0x0, flag=flag@entry=1, format=format@entry=0x555981d58a08

Bug#909689: asterisk: autopkgtest regression

2018-09-26 Thread Bernhard Schmidt
Am 26.09.18 um 20:48 schrieb Paul Gevers: Hi Paul, > With a recent upload of asterisk the autopkgtest of asterisk fails in > testing when that autopkgtest is run with the binary packages of > asterisk from unstable. It passes when run with only packages from > testing. In tabular form: >

Bug#909689: asterisk: autopkgtest regression

2018-09-26 Thread Bernhard Schmidt
Control: severity -1 serious Am 26.09.18 um 21:51 schrieb Bernhard Schmidt: > Am 26.09.18 um 20:48 schrieb Paul Gevers: > > Hi Paul, > >> With a recent upload of asterisk the autopkgtest of asterisk fails in >> testing when that autopkgtest is run with the binary pack

Bug#890606: Experimental patch

2018-10-03 Thread Bernhard Schmidt
On Mon, Aug 13, 2018 at 06:03:19PM -0700, Felix Lechner wrote: Hi Felix, > Attached please find an experimental patch for Debian version 4:17.08.3-1. > > Unfortunately, I cannot test it. Both this version as well as version > 4:18.04.2-1 from experimental fail to build on my Debian testing > sys

Bug#884247: Debian Bug #884247 - linphone with upnp 1.8 - patch.

2018-10-03 Thread Bernhard Schmidt
On Mon, Feb 05, 2018 at 08:08:32PM +0100, Sebastian Ramacher wrote: > > Here's a patch so that linphone 3.12.0 can be build with libupnp 1.8.3. > Thanks for the patch. Forwarding to the bug tracker. Okay, I'm confused now ... I just wanted to state that we can currently only apply this patch in

Bug#884635: transition: libupnp

2018-10-03 Thread Bernhard Schmidt
Hi, Niels Thykier wrote: > Before this transition can start, we will need a solution for amule, > djmount, gmrender-resurrect and linphone (which is either RM or upload > with a fix). > > Removing all of them leads to the following collateral damage[1]: > > """ > Checking reverse dependencies...

Bug#884635: transition: libupnp

2018-10-04 Thread Bernhard Schmidt
In gmane.linux.debian.devel.release, Uwe Kleine-König wrote: >> Finally, linphone, I did not understand how it uses libupnp since it >> does not seem to call libupnp functions. Or I cloned the wrong repo :) > I remember I looked into linphone once and didn't understand it either. As already state

Bug#884247: Debian Bug #884247 - linphone with upnp 1.8 - patch.

2018-10-04 Thread Bernhard Schmidt
Control: fixed -1 3.12.0-1 Am 04.10.18 um 00:53 schrieb Bernhard Schmidt: > Same for src:linphone in experimental, there is a lot of code > referencing UPNP but I don't think CMake is ever going to touch it. I asked upstream and they confirmed. > I do confirm UPNP’s code is almos

Bug#910292: transition: libsrtp0-rm

2018-10-04 Thread Bernhard Schmidt
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: transition Hi, on behalf of Jonas I'm filing a transition bug to track removal of the old libsrtp0 from Debian. src:srtp has built libsrtp0 and libsrtp0-dev. It is several years out of date. The s

Bug#910300: check libsrtp build dependency

2018-10-04 Thread Bernhard Schmidt
Package: src:qtwebengine-opensource-src Version: 5.11.1+dfsg-5 Severity: normal Hi, you are currently build-depending on libsrtp-dev, which is a virtual package provided by src:srtp. We would like to get rid of that package in favour of src:libsrtp2. According to the latest build log your build

Bug#910301: RM: asterisk [hurd-i386] -- ROM; Does not build anymore

2018-10-04 Thread Bernhard Schmidt
Package: ftp.debian.org Severity: normal Hi, please remove asterisk on hurd-i386 from unstable (and all reverse dependencies). It does not build anymore and is very unlikely to get fixed. Checking reverse dependencies... # Broken Depends: asterisk-espeak: asterisk-espeak asterisk-flite: asterisk

Bug#910292: transition: libsrtp0-rm

2018-10-04 Thread Bernhard Schmidt
Control: reassign -1 src:srtp Control: severity -1 serious Control: retitle -1 Do not release srtp 1.x with Buster Hi Mattia, thanks for your response! > On Thu, Oct 04, 2018 at 04:16:50PM +0200, Bernhard Schmidt wrote: >> on behalf of Jonas I'm filing a transition bug to track

Bug#910339: RM: srtp/experimental -- ROM; outdated, superseded by src:libsrtp2

2018-10-04 Thread Bernhard Schmidt
Package: ftp.debian.org Severity: normal Hi, on behalf of Jonas Smedegaard I'm asking to RM src:srtp from experimental. It is a left-over from a failed transition attempt a few years ago. The whole src:srtp has been superseded by src:libsrtp2. We will try to remove src:srtp from Buster as well.

Bug#910339: RM: srtp/experimental -- ROM; outdated, superseded by src:libsrtp2

2018-10-04 Thread Bernhard Schmidt
Am 05.10.18 um 00:02 schrieb Bernhard Schmidt: > mediastreamer2 was an accident and is already fixed in unstable s/unstable/experimental/

Bug#890606: Patch for kopete 18.04.2-1 in experimental

2018-10-10 Thread Bernhard Schmidt
Am 09.10.2018 um 00:52 schrieb Felix Lechner: >> However the patched source does not build against the old versions >> anymore. Can this be fixed? Otherwise we cannot do the transition with a >> binNMU. > > Bernhard, > > Please try the attached patch. It builds here both with the old and the > ne

Bug#884635: transition: libupnp

2018-10-10 Thread Bernhard Schmidt
On Thu, Oct 04, 2018 at 11:34:45AM +0200, Bernhard Schmidt wrote: > >> Finally, linphone, I did not understand how it uses libupnp since it > >> does not seem to call libupnp functions. Or I cloned the wrong repo :) > > I remember I looked into linphone once and did

Bug#891620: Transition of linphone

2018-10-10 Thread Bernhard Schmidt
Am 02.10.2018 um 18:04 schrieb Emilio Pozuelo Monfort: Hi, > You are making things way too complicated just to avoid patching one rdep. The > solution here is to propose a good patch for kopete (there's already one patch > proposed upstream but it's not clear if it's good - if it is, then explain

Bug#891620: Transition of linphone

2018-10-10 Thread Bernhard Schmidt
Hi, Am 10.10.18 um 19:34 schrieb Emilio Pozuelo Monfort: > Control: block -1 with 890606 > Control: tags -1 = confirmed > > On 10/10/2018 12:53, Bernhard Schmidt wrote: >> Am 02.10.2018 um 18:04 schrieb Emilio Pozuelo Monfort: >> >> Hi, >> >>> You

Bug#898084: Please migrate to libsrtp2 in Buster

2018-10-11 Thread Bernhard Schmidt
Control: tags -1 patch Control: forward -1 https://bugs.kde.org/show_bug.cgi?id=399678 On Sun, May 06, 2018 at 11:55:14PM +0200, Bernhard Schmidt wrote: > I haven't seen any upstream work on this and it seems to be entangled with the > mediastreamer2 FTBFS (also in libjingle). I&#x

Bug#908483: fixed upstream

2018-09-12 Thread Bernhard Schmidt
Control: tags -1 fixed-upstream This is fixed in ZFS/SPL 0.7.10 https://github.com/zfsonlinux/zfs/releases/tag/zfs-0.7.10 There are at least two patches to ZFS and one to SPL, it is probably easier to import the new version.

Bug#908780: Unittest test-decodenetnum fails

2018-09-13 Thread Bernhard Schmidt
Package: ntp Version: 1:4.2.8p12+dfsg-1 Severity: minor Tags: upstream Forwarded: http://bugs.ntp.org/show_bug.cgi?id=3531 make check fails with FAIL: test-decodenetnum === decodenetnum.c:42:test_IPv4AddressOnly:FAIL: Expected TRUE Was FALSE decodenetnum.c:57:test_IPv4Address

Bug#644632: Patch needed

2018-09-14 Thread Bernhard Schmidt
Am 14.09.18 um 21:44 schrieb Christoph Biedl: Hi, >> Since nfdump is now started in a systemd unit this needs to be >> implemented differently, preferably with a systemd generator and >> instances. Patches (tested, preferably upstreamable) are welcome. > > Still interested? I came into a simila

Bug#891620: Transition of linphone

2018-09-17 Thread Bernhard Schmidt
Am 15.09.2018 um 12:06 schrieb Dr. Tobias Quathamer: Hi, > For kopete, we create a new source package and split off the > mediastreamer (and ortp) libraries from the old linphone package. We could do this, but I'd argue that we cannot support the old old old linphone for yet another release cycl

Bug#890034: Backport of Perc 740/840 for Stretch

2018-09-20 Thread Bernhard Schmidt
On Fri, Sep 14, 2018 at 12:37:40PM +0200, Moritz Muehlenhoff wrote: > I've pulled a number of upstream commits for the megaraid_sas driver which add > support for the Perc 740/840 RAID controllers to the Stretch kernel. > > Successfully tested with a H840 on a current Dell PowerEdge R440 and I've

Bug#902899: [Pkg-clamav-devel] Bug#902899: clamd: yara_exec.c:177: yr_execute_code: Assertion `sp == 0' failed in stable update

2018-07-05 Thread Bernhard Schmidt
On 04.07.2018 14:00, Sebastian Andrzej Siewior wrote: Hi Sebastian, > On 2018-07-03 09:04:21 [+0200], Bernhard Schmidt wrote: >> Jul 03 07:30:24 mail clamd[21927]: LibClamAV Error: yyerror(): >> /var/lib/clamav/antidebug_antivm.yar line 544 undefined identifier "pe"

Bug#902899: clamd: yara_exec.c:177: yr_execute_code: Assertion `sp == 0' failed in stable update

2018-07-05 Thread Bernhard Schmidt
On 05.07.2018 23:44, Sebastian Andrzej Siewior wrote: Hi Sebastian, > I suggest you remove the offending file. I have no other recommendation. I totally agree and I have already done this. I have filed a bug because I assume this will hit at least some people on the next Stretch point release ha

Bug#903495: /usr/bin/plasmashell: when opening application menu and type random text pasmashell crashes and screen goes black..

2018-07-18 Thread Bernhard Schmidt
On Tue, Jul 10, 2018 at 08:44:37PM +0200, André Verwijs wrote: Hi Andre, > Package: plasma-workspace > Version: 4:5.13.2-1 > Severity: important > File: /usr/bin/plasmashell > > Dear Maintainer, > > when opening application menu and type random text in search plasmashell > crashes and screen g

Bug#903607: pjproject: FTBFS due to d-devlibdeps errors

2018-07-19 Thread Bernhard Schmidt
Control: tags -1 moreinfo On 11.07.2018 22:06, Sebastian Ramacher wrote: Hi Sebastian, > Source: pjproject > Version: 2.7.2~dfsg-2 > Severity: serious > Justification: fails to build from source (but built successfully in the past) > Tags: ftbfs > > pjproject currently fails to build: > | d-dev

Bug#903607: pjproject: FTBFS due to d-devlibdeps errors

2018-07-22 Thread Bernhard Schmidt
Control: severity -1 important > I cannot reproduce this locally (using sbuild) and -3 just uploaded > built fine on the autobuilders. Downgrading severity as it has built fine on all architectures, feel free to reopen/upgrade if you still see this. Bernhard

Bug#890506: stretch-pu: package ntp/1:4.2.8p10+dfsg-3+deb9u2

2018-02-24 Thread Bernhard Schmidt
On 23.02.2018 18:44, Adam D. Barratt wrote: Hi Adam, > On Thu, 2018-02-15 at 12:55 +0100, Bernhard Schmidt wrote: >> I'd like to update ntp in Stretch to fix Bug#887385. There have been >> numerous >> reports about ntpd segfaulting with the libc6 update from >> st

Bug#891481: stretch-pu: package pjproject/2.5.5~dfsg-6+deb9u1

2018-02-25 Thread Bernhard Schmidt
Package: release.debian.org Severity: normal Tags: stretch User: release.debian@packages.debian.org Usertags: pu Hi, I'd like to ask for a SRM approval to include a non-security fix for an important bug in the pjproject package into the next security upload. In #881362 Joachim Förster report

Bug#887385: [pkg-ntp-maintainers] Bug#887385: Stretch Proposed Update request filed

2018-02-25 Thread Bernhard Schmidt
On 15.02.2018 13:03, Bernhard Schmidt wrote: Hi, > I have filed https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=890506 > with the release team to get this fix into Stretch. Updated package is available in stretch-proposed-updates now and should be part of the 9.4 point release, schedul

Bug#891500: RFA: t38modem -- T.38 Fax over IP pseudo modem

2018-02-26 Thread Bernhard Schmidt
Package: wnpp Severity: normal Hi, on behalf of the Debian VoIP team I request an adopter for the t38modem package. The package description is: From your fax application view point it's a fax modem pool. From IP network view point it's a H.323 endpoint with T.38 fax support. From your view po

Bug#891509: O: gnugk -- OpenH323 Gatekeeper - The GNU Gatekeeper

2018-02-26 Thread Bernhard Schmidt
Package: wnpp Severity: normal Hi, on behalf of the pkg-voip team I intend to orphan the gnugk package. Upstream is still active, but the Debian packaging has been stuck for several years now and probably not useful anymore. It is affected by RC bugs of the also unmaintained rdeps ptlib and h32

Bug#891508: RM: openam -- ROM; unmaintained, unused

2018-02-26 Thread Bernhard Schmidt
Package: ftp.debian.org Severity: normal Hi, on behalf of the Debian VoIP team I request removal of src:openam from unstable. It is not maintained, has almost no users, and a call for maintainers on the team mailinglist did not result in any takers. Bernhard

Bug#891510: O: h323plus

2018-02-26 Thread Bernhard Schmidt
Package: wnpp Severity: normal Hi, on behalf of the Debian VoIP team I intent to orphan the package h323plus. It is a reverse dependency of - gnugk (orphaned in #891509) - openam (RM requested in #891508) The version currently in Debian has been released 6 years ago. Upstream still appears to

Bug#891620: transition: linphone

2018-02-27 Thread Bernhard Schmidt
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: transition Hi, please be gentle, first time library migration :-) We would like to schedule a transition to get from the current, really really old linphone to a newer one. The old src:linphone us

Bug#891675: RM: libccaudio2 -- ROM; outdated, unmaintained, no rdeps

2018-02-27 Thread Bernhard Schmidt
Package: ftp.debian.org Severity: normal Hi, on behalf of the Debian VoIP team I'm requesting the removal of src:libccaudio2 from the archive. It does not have any rdeps within Debian and has not been properly maintained for years. Best Regards, Bernhard

Bug#891676: RM: libccscript3 -- ROM; outdated, unmaintained, no rdeps

2018-02-27 Thread Bernhard Schmidt
Package: ftp.debian.org Severity: normal Hi, on behalf of the Debian VoIP team I'm requesting removal of src:libccscript3 from the archive. It does not have any rdeps within Debian and has not been properly maintained for years. Best Regards, Bernhard

Bug#891678: O: libcommoncpp2

2018-02-27 Thread Bernhard Schmidt
Package: wnpp Severity: normal Hi, on behalf of the Debian VoIP team I'm orphaning src:libcommoncpp2 . It has not been properly maintained for several years. There are a few rdeps in the archive outside of the VoIP team Checking reverse dependencies... # Broken Depends: clamfs: clamfs [amd64 ar

Bug#693587: bind9: stop resolving

2020-01-16 Thread Bernhard Schmidt
On Wed, Dec 11, 2019 at 12:54:23AM +0100, Marco d'Itri wrote: > Control: forwarded -1 https://gitlab.isc.org/isc-projects/bind9/issues/1483 > > On Nov 24, Ondřej Surý wrote: > > > could you please fill an upstream issue? > Done. > > I will also add that I have found a workaround: sending SIGSTO

Bug#1006519: Already fixed in 2.6.0~git20220510+dco-1 in experimental

2022-05-20 Thread Bernhard Schmidt
Hi Michael, Am 19.05.22 um 16:03 schrieb Michael Biebl: On Sun, 15 May 2022 16:02:48 +0300 Adrian Bunk wrote: Version: 2.6.0~git20220510+dco-1 openvpn (2.6.0~git20220510+dco-1) experimental; urgency=medium ...   * Build against OpenSSL 3.0  -- Bernhard Schmidt   Fri, 13 May 2022 00:01:35

Bug#1011138: Workaround for bug #1011138

2022-05-20 Thread Bernhard Schmidt
Control: reassign -1 libssl-dev 3.0.3-4 Control: affects -1 kmail On 19/05/22 01:35 PM, Hopea Jonne wrote: > Uninstalling libssl-dev helped, for some reason libssl-dev also ships with a > libssl.so binary which may or may not be of same version as other ones. I don't think this is the reason, l

Bug#1011335: libssl3: using SSL is not possible in Kmail with the update to OpenSSL3

2022-05-20 Thread Bernhard Schmidt
Hi, > On my computer the system installed is a Debian Sid AMD64 and I use Kmail to > receive or send messages, for 4 days I could not receive or send messages > using > Kmail. > When sending a message I had and I have the following error: transport > interrupted TLS initialization failed. > When

Bug#1011372: openvpn 2.6 fails to communicate due to auth errors

2022-05-22 Thread Bernhard Schmidt
Hi Antti, > Upgrading to openvpn 2.6 breaks communication in a tunnel I'm using. > Downgrading back to openvpn 2.5 fixes the problem. > > Openvpn brings up the tunnel interface but cannot receive data. Syslog > reports auth algo inconsistency when initializing and auth errors when > receiving tra

Bug#1008015: Bugfix might break some setups

2022-05-23 Thread Bernhard Schmidt
Hi, this is definitely not an issue with the fix for Bug#1008015, which was a very minor security bugfix targeted for You are running unstable, therefor you have been upgraded to OpenVPN 2.6 and OpenSSL 3.0. Could you please file a new bug about this with as much information as available a

Bug#1011473: 2.5 clients cannot connect to a 2.6 server

2022-05-25 Thread Bernhard Schmidt
Control: tags -1 moreinfo Hi Wolfgang, openvpn 2.5.6 with openssl 1.1 seem unable to establish a connection to a sid openvpn-server upgraded to 2.6.0~git20220518+dco-1. I checked the configs. They work if both sides are 2.5.6 or both sides are 2.6 with openssl 3. I also see the following w

Bug#1011473: 2.5 clients cannot connect to a 2.6 server

2022-05-25 Thread Bernhard Schmidt
Am 25.05.22 um 13:39 schrieb Wolfgang Walter: Hi, Could you please check the release notes at https://github.com/OpenVPN/openvpn/blob/dco/Changes.rst  for relevant changes and post logs/redacted config to this bug? I read them and I found nothing problematic. There is no problem with a 2.5.

Bug#976070: openvpn fails with iproute option

2022-08-12 Thread Bernhard Schmidt
On 29/11/20 11:05 AM, Glennie Vignarajah wrote: > In order to use openvpn with non root priviliges, iproute is need as > state in openvpn's howto document [1]. By default, iproute is disabled > on compile time and needs to enabled with ``--enable-iproute2``. Upstream has now added the option for

Bug#908559: openvpn: Openvpn cannot run /sbin/ip if started from systemd

2022-08-12 Thread Bernhard Schmidt
Version: 2.5.0-1 > The openvpn systemd unit cannot start because it cannot call the /sbin/ip > script. If I run the same script by hand it starts, so the problem should be > in the system unit file. I have been using the same config file for a while > (~8-10 years) and changed nothing, it happened

Bug#989218: openvpn: the lack of down update-resolv-conf script

2022-08-12 Thread Bernhard Schmidt
On 29/05/21 04:14 AM, sergio wrote: > resolv.conf left configured after tunnel down due to lack of down script No, the Debian supplied script is supposed to be used for both --- $ head /etc/openvpn/update-resolv-conf #!/bin/bash # # Parses DHCP options from openvpn to update resolv.conf # To us

Bug#1017379: nm-openvpn: capng_change_id() failed applying capabilities: Operation not permitted (errno=1)

2022-08-15 Thread Bernhard Schmidt
Control: severity -1 serious Control: forwarded -1 https://sourceforge.net/p/openvpn/mailman/message/37693662/ Control: tags -1 confirmed upstream On 15/08/22 09:36 AM, Benjamin Eikel wrote: > Aug 15 09:24:46 myhostname nm-openvpn[11804]: capng_change_id() failed > applying capabilities: Operat

Bug#1012059: bind9: autopkgtest regression on amd64 and armhf: connection refused

2022-06-26 Thread Bernhard Schmidt
Control: tags -1 pending Hi, With a recent upload of bind9 the autopkgtest of bind9 fails in testing on amd64 and armhf when that autopkgtest is run with the binary packages of bind9 from unstable. It passes when run with only packages from testing. In tabular form: I have had a brief look a

Bug#1012059: bind9: autopkgtest regression on amd64 and armhf: connection refused

2022-06-26 Thread Bernhard Schmidt
Control: tags -1 pending Hi, With a recent upload of bind9 the autopkgtest of bind9 fails in testing on amd64 and armhf when that autopkgtest is run with the binary packages of bind9 from unstable. It passes when run with only packages from testing. In tabular form: I have had a brief look a

Bug#1014133: asterisk: Asterisk fails to build from source

2022-07-01 Thread Bernhard Schmidt
Control: severity -1 important Control: found -1 1:16.16.1~dfsg-1 Control: fixed -1 1:16.16.1~dfsg+~2.10-1 Hi Ralf, I am not very familiar with asterisk as packaged for Bullseye - only know that it was pretty unusually done. Maybe try build in a pristine build-environment. What do you mean by

Bug#1014376: openvpn: Using unreleased version with backwards incompatible changes is not a good idea

2022-07-06 Thread Bernhard Schmidt
Am 05.07.22 um 09:23 schrieb Raphaël Hertzog: as Kali is based on Debian testing, our users started to experience the git snapshot of OpenVPN that you uploaded. Unfortunately, we got multiple reports that their VPN break because many VPN services ship .opvn files that rely on --cipher. At the s

Bug#1012567: openvpn --mktun --dev-type tap --dev tap2 fails

2022-07-06 Thread Bernhard Schmidt
Control: forward -1 https://sourceforge.net/p/openvpn/mailman/message/37665283/ Control: tags -1 upstream Hi Wolfgang, > Since 2.6.0~git20220518+dco-2 the following command fails: > > openvpn --mktun --dev-type tap --dev tap2 > > with > > Assertion failed at dco_linux.c:442 (tt-type == DEV_TYP

Bug#1006519: openvpn: FTBFS with OpenSSL 3.0

2022-02-28 Thread Bernhard Schmidt
Control: tags -1 + confirmed upstream OpenSSL 3.0 compatibility is part of OpenVPN 2.6, which is supposed to be released next month. See https://community.openvpn.net/openvpn/wiki/StatusOfOpenvpn26 . If you want to feel free to push this transition ahead, I can either live with temporary rem

Bug#987927: bind9: unreasonable resource use and slow startup with lots of IP addresses

2022-07-22 Thread Bernhard Schmidt
On 11/05/21 02:30 PM, Ondřej Surý wrote: > Control: forwarded -1 > https://gitlab.isc.org/isc-projects/bind9/-/merge_requests/5012 > > Hi, > > coincidentally, I’ve been working (well, experimenting would be better word) > with > reducing the contention in the memory allocator and the first patc

<    4   5   6   7   8   9   10   >