Processed: Re: FTBFS: failing test: FAIL: test for each member equality

2015-04-03 Thread Debian Bug Tracking System
Processing control commands: tags -1 patch sid Bug #781543 [src:python-debian] FTBFS: failing test: FAIL: test for each member equality Added tag(s) sid and patch. -- 781543: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=781543 Debian Bug Tracking System Contact ow...@bugs.debian.org with

Bug#781543: FTBFS: failing test: FAIL: test for each member equality

2015-04-03 Thread Dmitry Shachnev
Control: tags -1 patch sid Hi, On Mon, 30 Mar 2015 21:22:47 +0200, Salvatore Bonaccorso wrote: Traceback (most recent call last): File /«PKGBUILDDIR»/tests/test_debfile.py, line 64, in test_getmember self.assertEqual(m.owner, mstat[stat.ST_UID]) AssertionError: 0 != 1000 This is

Processed: user debian-secur...@lists.debian.org, usertagging 781806 ..., found 781806 in 0.9.0-2 ...

2015-04-03 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: user debian-secur...@lists.debian.org Setting user to debian-secur...@lists.debian.org (was car...@debian.org). usertags 781806 + tracked There were no usertags set. Usertags are now: tracked. retitle 781806 das-watchdog: CVE-2015-2831: Buffer

Bug#781806: CVE-2015-2831

2015-04-03 Thread Moritz Muehlenhoff
Package: das-watchdog Severity: grave Tags: security Hi, this has been assigned CVE-2015-2831: http://www.openwall.com/lists/oss-security/2015/04/01/8 Cheers, Moritz -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact

Bug#781839: CVE-2015-2774

2015-04-03 Thread Moritz Muehlenhoff
Source: erlang Severity: grave Tags: security (Feel free to downgrade the severity, I don't have a full picture of Erlang's SSL implementation) This has been assigned CVE-2015-2774: http://openwall.com/lists/oss-security/2015/03/27/9 Fix is here:

Bug#781228: marked as done (freexl: Multiple vulnerabilitities)

2015-04-03 Thread Debian Bug Tracking System
Your message dated Fri, 03 Apr 2015 18:17:05 + with message-id e1ye69r-0004dx...@franck.debian.org and subject line Bug#781228: fixed in freexl 1.0.0b-1+deb7u1 has caused the Debian Bug report #781228, regarding freexl: Multiple vulnerabilitities to be marked as done. This means that you

Bug#774358: libxml2: CVE-2014-3660 patch makes installation-guide FTBFS

2015-04-03 Thread Cyril Brulebois
Hi people, (adding debian-boot@ for reference.) Samuel Thibault sthiba...@debian.org (2015-03-26): Samuel Thibault, le Thu 26 Mar 2015 02:17:01 +0100, a écrit : Control: found -1 2.8.0+dfsg1-7+wheezy3 This is still an issue in stable, the proposed patch was not applied there, and thus

Bug#781858: apt: dangling pointer crash

2015-04-03 Thread Chris Bainbridge
Package: apt Version: 1.0.9.7 Severity: serious Dear Maintainer, The apt source includes in apt-pkg/acquire-item.cc: // FIXME: this points to a c++ string that goes out of scope Mode = decompProg.c_str(); } Mode is a char ptr decompProg is a std::string When decompProg goes

Bug#780940: DevSlp

2015-04-03 Thread Víctor Cana Benítez
Dear Mr. Niels Thykier, ¿How can I know if I have a DevSlp disk? When I enter hdparm -I /dev/sda it doesn't show anything containing DevSleep nor Devslp. Thank you very much for your valuable help. Best regards. -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a

Bug#780940: DevSlp

2015-04-03 Thread Víctor Cana Benítez
To complement my previous message, I have ran hdparm -I /dev/sda with the hdparm version from Jessie's repository. According to this patch http://sourceforge.net/p/hdparm/patches/35/ that is supposedly included in Jessie's hdparm package, it should show an output about DevSlp when the device

Bug#769351: docker.io: statically linked against libc6 without a Built-Using: field

2015-04-03 Thread Felipe Sateler
Package: src:docker.io Followup-For: Bug #769351 Control: tags -1 patch Hi, please find attached a patch implementing this, stealing from the patch at [1] implementing same thing for gdb-avr. I have used libc-dev-bin because libc-dev is a virtual package, libcN-dev has a different N in different

Processed: Re: docker.io: statically linked against libc6 without a Built-Using: field

2015-04-03 Thread Debian Bug Tracking System
Processing control commands: tags -1 patch Bug #769351 [src:docker.io] docker.io: statically linked against libc6 without a Built-Using: field Added tag(s) patch. -- 769351: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=769351 Debian Bug Tracking System Contact ow...@bugs.debian.org with

Bug#781863: docker.io: release cycle is too fast for stable

2015-04-03 Thread Felipe Sateler
Package: docker.io Version: 1.3.3~dfsg1-2 Severity: serious Quoting from bug #781554: After talking with Docker upstream, I've decided that the best course of action to ensure users get a working version of Docker is to strip this from jessie and maintain it in jessie-backports, keeping that

Bug#758086: CVE-2014-3577 Apache HttpComponents hostname verification bypass

2015-04-03 Thread Markus Koschany
Some more information about this issue. TL;DR this is actually CVE-2014-3577. Debian's package is not affected by CVE-2012-6153. I recommend to fix this bug by applying the debdiff from my last e-mail. We currently apply the 06_fix_CVE-2012-5783.patch [1]. Now I am sure that this patch fixes two

Processed: cloning 781554, reopening -1, retitle -1 to docker.io: release cycle is too fast for stable ...

2015-04-03 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: clone 781554 -1 Bug #781554 {Done: Adam D. Barratt a...@adam-barratt.org.uk} [release.debian.org] RM: docker.io -- RoM; release cycle is too fast for stable Bug 781554 cloned as bug 781865 reopen -1 Bug #781865 {Done: Adam D. Barratt

Processed: your mail

2015-04-03 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: tag 781652 + pending Bug #781652 [python3-llfuse-dbg] python3-llfuse-dbg: fails to upgrade from 'testing' - trying to overwrite /usr/lib/python3/dist-packages/llfuse/capi.cpython-34dm-x86_64-linux-gnu.so Added tag(s) pending. thanks Stopping

Bug#781504: marked as done (Segmentation fault after pack ioctl unpack)

2015-04-03 Thread Debian Bug Tracking System
Your message dated Fri, 03 Apr 2015 22:48:55 + with message-id e1yeaov-00026p...@franck.debian.org and subject line Bug#781504: fixed in ruby2.1 2.1.5-2 has caused the Debian Bug report #781504, regarding Segmentation fault after pack ioctl unpack to be marked as done. This means that you

Bug#779255: qemubuilder: unable to build anything; can't find .DSC file

2015-04-03 Thread gregor herrmann
On Fri, 03 Apr 2015 17:29:30 +0200, Axel Beckert wrote: I've tried to have a look into the issue and started with trying to reproduce it. But I fail to even create a base.qemu with it: # qemubuilder --create forking: mke2fs -q -F -j -m1 -O sparse_super /var/cache/pbuilder/base.qemu

Processed: Re: Bug#758086: CVE-2014-3577 Apache HttpComponents hostname verification bypass

2015-04-03 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: retitle 758086 CVE-2014-3577 Apache HttpComponents hostname verification bypass Bug #758086 [commons-httpclient] CVE-2012-6153: Apache HttpComponents client: Hostname verification susceptible to MITM attack Changed Bug title to 'CVE-2014-3577

Bug#769716: marked as done (iceweasel: downloads Cisco's OpenH264 video codec)

2015-04-03 Thread Debian Bug Tracking System
Your message dated Sat, 04 Apr 2015 03:41:06 + with message-id e1yeexg-0008js...@franck.debian.org and subject line Bug#769716: fixed in iceweasel 37.0.1-1 has caused the Debian Bug report #769716, regarding iceweasel: downloads Cisco's OpenH264 video codec to be marked as done. This means

Bug#781839: CVE-2015-2774

2015-04-03 Thread Sergei Golovan
Hi Moritz! I'm not an expert in SSL, so I can't really say if it's a real threat. But i think I'd better prepare a patched package for jessie. Should I do it for wheezy also? (Note, that we decided not to bother disabling SSLv3 for the erlang-ssl currently in wheezy.) On Fri, Apr 3, 2015 at

Bug#781863: marked as done (docker.io: release cycle is too fast for stable)

2015-04-03 Thread Debian Bug Tracking System
Your message dated Fri, 3 Apr 2015 20:28:22 -0400 with message-id 20150404002822.ga28...@leliel.pault.ag and subject line Re: Bug#781863: docker.io: release cycle is too fast for stable has caused the Debian Bug report #781863, regarding docker.io: release cycle is too fast for stable to be marked

Bug#781875: beignet: kernels don't seem to run

2015-04-03 Thread Giuseppe Bilotta
Package: beignet-opencl-icd Version: 1.0.2-1 Severity: grave Tags: upstream Since version 1.0.1 beignet has been able to recognitze the hardware on my machine 00:02.0 VGA compatible controller [0300]: Intel Corporation 4th Gen Core Processor Integrated Graphics Controller [8086:0416] (rev 06)

Bug#779255: qemubuilder: unable to build anything; can't find .DSC file

2015-04-03 Thread Axel Beckert
Hi, Niels Thykier wrote: On Thu, 26 Feb 2015 10:20:31 +1100 Dmitry Smirnov only...@debian.org wrote: After upgrade to Jessie quemubuilder stopped working for me on all architectures: unstable images successfully install dependencies on --build mypkg_1.0-1.dsc but then fail as follows:

Bug#781543: marked as done (FTBFS: failing test: FAIL: test for each member equality)

2015-04-03 Thread Debian Bug Tracking System
Your message dated Fri, 03 Apr 2015 15:36:24 + with message-id e1ye3dw-0002uf...@franck.debian.org and subject line Bug#781543: fixed in python-debian 0.1.26 has caused the Debian Bug report #781543, regarding FTBFS: failing test: FAIL: test for each member equality to be marked as done. This