Bug#987113: ruby-librarian: autopkgtest failure: times out everywhere

2021-04-17 Thread Paul Gevers
Source: ruby-librarian Version: 0.6.4-2 X-Debbugs-CC: debian...@lists.debian.org Severity: serious User: debian...@lists.debian.org Usertags: fails-always timeout Dear maintainers, Your package has an autopkgtest, great. However it fails. Worse, since 0.6.4-2 it times out on the ci.d.n

Bug#986637: fixed in speedtest-cli 2.1.3-1

2021-04-17 Thread Paul Gevers
Hi, On Mon, 12 Apr 2021 13:08:04 + Debian FTP Masters wrote: >* Upgrade to debhelper-compat (=13) With this reverted [1], it can be unblocked. Paul [1] https://release.debian.org/bullseye/FAQ.html section "I bumped the debhelper compat level, why is it rejected?" OpenPGP_signature

Bug#950761: marked as done (ipmitool: CVE-2020-5208)

2021-04-17 Thread Debian Bug Tracking System
Your message dated Sat, 17 Apr 2021 19:17:08 + with message-id and subject line Bug#950761: fixed in ipmitool 1.8.18-6+deb10u1 has caused the Debian Bug report #950761, regarding ipmitool: CVE-2020-5208 to be marked as done. This means that you claim that the problem has been dealt with. If

Processed: tagging 986814

2021-04-17 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tags 986814 + unreproducible Bug #986814 {Done: Lucas Nussbaum } [cloud.debian.org] Latest vagrant Buster libvirt image not found Added tag(s) unreproducible. > thanks Stopping processing here. Please contact me if you need assistance. --

Bug#986814: Latest vagrant Buster libvirt image not found

2021-04-17 Thread Emmanuel Kasper
Le 12/04/2021 à 13:14, Christopher Huhn a écrit : > Package: cloud.debian.org > Severity: serious > > The latest Buster libvirt image for vagrant gives me a 404, `vagrant box > update` fails. > > λ > curl >

Processed: bug 987095 is forwarded to https://github.com/graphviz-perl/Graph/issues/20, tagging 987095

2021-04-17 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > forwarded 987095 https://github.com/graphviz-perl/Graph/issues/20 Bug #987095 [libgraph-perl] transitive_closure corrupted results, after vertex deleted Set Bug forwarded-to-address to 'https://github.com/graphviz-perl/Graph/issues/20'. > tags

Bug#986806: CVE-2021-28965

2021-04-17 Thread Pirate Praveen
On Sat, Apr 17, 2021 at 10:16 pm, Utkarsh Gupta wrote: Makes sense. Probably the time to RM ruby-rexml from the archive is *now*? Requested removal from archive in #987101

Processed: RM: ruby-rexml -- ROM; duplicate package, included in libruby2.7

2021-04-17 Thread Debian Bug Tracking System
Processing control commands: > block 986806 by -1 Bug #986806 {Done: Pirate Praveen } [ruby-rexml] CVE-2021-28965 986806 was not blocked by any bugs. 986806 was not blocking any bugs. Added blocking bug(s) of 986806: 987101 -- 986806: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=986806

Bug#986806: CVE-2021-28965

2021-04-17 Thread Utkarsh Gupta
Hi Praveen, On Fri, Apr 16, 2021 at 3:24 PM Pirate Praveen wrote: > I think the separate package was introduced by mistake without seeing > the copy embedded in ruby. I think the right way is to fix this in ruby > and remove this separate package. But I'd like someone from ruby team > to confirm

Bug#986701: marked as done (mosquitto: CVE-2021-28166)

2021-04-17 Thread Debian Bug Tracking System
Your message dated Sat, 17 Apr 2021 16:27:13 + with message-id and subject line Bug#986701: fixed in mosquitto 2.0.10-1 has caused the Debian Bug report #986701, regarding mosquitto: CVE-2021-28166 to be marked as done. This means that you claim that the problem has been dealt with. If this

Bug#986518: marked as done (starjava-topcat: FTBFS: [javadoc] javadoc: error - invalid flag: -Xdoclint:none)

2021-04-17 Thread Debian Bug Tracking System
Your message dated Sat, 17 Apr 2021 14:18:05 + with message-id and subject line Bug#986518: fixed in ant 1.10.9-4 has caused the Debian Bug report #986518, regarding starjava-topcat: FTBFS: [javadoc] javadoc: error - invalid flag: -Xdoclint:none to be marked as done. This means that you

Bug#986521: marked as done (starjava-ttools: FTBFS: [javadoc] javadoc: error - invalid flag: -Xdoclint:none)

2021-04-17 Thread Debian Bug Tracking System
Your message dated Sat, 17 Apr 2021 14:18:05 + with message-id and subject line Bug#986518: fixed in ant 1.10.9-4 has caused the Debian Bug report #986518, regarding starjava-ttools: FTBFS: [javadoc] javadoc: error - invalid flag: -Xdoclint:none to be marked as done. This means that you

Bug#978674: python3-build: Fails to work unless pip is installed

2021-04-17 Thread Peter Pentchev
On Fri, Mar 26, 2021 at 07:32:47PM -0400, Sergio Durigan Junior wrote: > Control: severity -1 serious > Control: tags -1 + help > > On Sunday, January 17 2021, Martina Ferrari wrote: > > > On 17/01/2021 01:06, Sergio Durigan Junior wrote: > > > >> Thanks for the bug report, Martina. > >> Yeah,

Processed: Bug#986518 marked as pending in ant

2021-04-17 Thread Debian Bug Tracking System
Processing control commands: > tag -1 pending Bug #986518 [ant] starjava-topcat: FTBFS: [javadoc] javadoc: error - invalid flag: -Xdoclint:none Bug #986521 [ant] starjava-ttools: FTBFS: [javadoc] javadoc: error - invalid flag: -Xdoclint:none Added tag(s) pending. Added tag(s) pending. --

Bug#986518: marked as pending in ant

2021-04-17 Thread Emmanuel Bourg
Control: tag -1 pending Hello, Bug #986518 in ant reported by you has been fixed in the Git repository and is awaiting an upload. You can see the commit message below and you can check the diff of the fix at:

Bug#986806: CVE-2021-28965

2021-04-17 Thread Antonio Terceiro
On Fri, Apr 16, 2021 at 03:22:24PM +0530, Pirate Praveen wrote: > On Mon, 12 Apr 2021 12:05:29 +0200 Moritz Muehlenhoff > wrote: > > https://www.ruby-lang.org/en/news/2021/04/05/xml-round-trip-vulnerability-in-rexml-cve-2021-28965/ > > > > Why is there a separate package duplicating rexml from

Bug#987095: transitive_closure corrupted results, after vertex deleted

2021-04-17 Thread Dominique Dumont
I've created a bug upstream: https://github.com/graphviz-perl/Graph/issues/20 All the best

Bug#987095: transitive_closure corrupted results, after vertex deleted

2021-04-17 Thread Dominique Dumont
Hi On Sat, 17 Apr 2021 12:59:40 +0100 Ian Jackson <> The correct output, as seen on buster: > > input: A-NOTA,B-A,B-NOTA > output: A-A,A-NOTA,B-A,B-B,B-NOTA,NOTA-NOTA > output: A-NOTA,B-A,B-NOTA,NOTA-NOTA I've bisected this regression to: 3ded9c7a25bf190fda5add1a13ed4f9b54082db7 is the

Bug#987095: transitive_closure corrupted results, after vertex deleted

2021-04-17 Thread Ian Jackson
Package: libgraph-perl Version: 1:0.9716-1 Severity: grave The attached script, which tests the transitive closure function, prints this output on testing: input: A-NOTA,B-A,B-NOTA Use of uninitialized value $_ in exists at /usr/share/perl5/Graph.pm line 362. Use of uninitialized value $_ in

Bug#987065: wordpress: CVE-2021-29450: Authenticated disclosure of password-protected posts and pages

2021-04-17 Thread Salvatore Bonaccorso
Hi, On Sat, Apr 17, 2021 at 09:22:09PM +1000, Craig Small wrote: > Yeah I realised there wasn't PHP 8 in Debian anywhere yet but referencing > it is worthwhile otherwise months later someone might ask me about it and > I'll go, hmm I think we fixed that. Ack. > Buster will have a debdiff to

Processed: unarchiving 980428, found 980428 in 1:1.10.6+submodules+notgz-1.1+deb10u1 ...

2021-04-17 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > unarchive 980428 Bug #980428 {Done: Ondřej Surý } [php-pear] Disallow symlinks to out-of-path filenames (CVE-2020-36193) Unarchived Bug 980428 > found 980428 1:1.10.6+submodules+notgz-1.1+deb10u1 Bug #980428 {Done: Ondřej Surý } [php-pear]

Bug#987065: wordpress: CVE-2021-29450: Authenticated disclosure of password-protected posts and pages

2021-04-17 Thread Craig Small
Yeah I realised there wasn't PHP 8 in Debian anywhere yet but referencing it is worthwhile otherwise months later someone might ask me about it and I'll go, hmm I think we fixed that. Buster will have a debdiff to review very soon. Bullseye I have asked for the version in Sid to be unblocked in

Bug#986854: marked as done (elpa-helm: does not ship helm-global-bindings.el)

2021-04-17 Thread Debian Bug Tracking System
Your message dated Sat, 17 Apr 2021 10:48:21 + with message-id and subject line Bug#986854: fixed in helm 3.7.0-2 has caused the Debian Bug report #986854, regarding elpa-helm: does not ship helm-global-bindings.el to be marked as done. This means that you claim that the problem has been

Bug#985517: marked as done (lxpanel-dev: broken symlink: /usr/lib/x86_64-linux-gnu/lxpanel/liblxpanel.so -> liblxpanel.so.0.0.0)

2021-04-17 Thread Debian Bug Tracking System
Your message dated Sat, 17 Apr 2021 10:48:27 + with message-id and subject line Bug#985517: fixed in lxpanel 0.10.1-2 has caused the Debian Bug report #985517, regarding lxpanel-dev: broken symlink: /usr/lib/x86_64-linux-gnu/lxpanel/liblxpanel.so -> liblxpanel.so.0.0.0 to be marked as done.

Bug#986726: marked as done (boxer-data: autopkgtest regressionin testing)

2021-04-17 Thread Debian Bug Tracking System
Your message dated Sat, 17 Apr 2021 09:03:22 + with message-id and subject line Bug#986726: fixed in boxer-data 10.8.22 has caused the Debian Bug report #986726, regarding boxer-data: autopkgtest regressionin testing to be marked as done. This means that you claim that the problem has been

Bug#983653: marked as done (task-japanese-gnome-desktop: no Japanese input method available out of the box)

2021-04-17 Thread Debian Bug Tracking System
Your message dated Sat, 17 Apr 2021 08:10:17 + with message-id and subject line Bug#983653: fixed in tasksel 3.66 has caused the Debian Bug report #983653, regarding task-japanese-gnome-desktop: no Japanese input method available out of the box to be marked as done. This means that you

Bug#941624: marked as done (Recommending ibus breaks fcitx)

2021-04-17 Thread Debian Bug Tracking System
Your message dated Sat, 17 Apr 2021 08:10:17 + with message-id and subject line Bug#941624: fixed in tasksel 3.66 has caused the Debian Bug report #941624, regarding Recommending ibus breaks fcitx to be marked as done. This means that you claim that the problem has been dealt with. If this

Bug#987065: wordpress: CVE-2021-29450: Authenticated disclosure of password-protected posts and pages

2021-04-17 Thread Salvatore Bonaccorso
Hi Craig, On Sat, Apr 17, 2021 at 08:32:35AM +1000, Craig Small wrote: > Should CVE-2021-29447 [1] be also listed against this bug? I'll be putting > it in the changelog. I choosed to explicitly cover only CVE-2021-29450 with this bug because CVE-2021-29447 while fixed as well with 5.7.1, is

Bug#983533: [vinagre] black screen when launching RDP session

2021-04-17 Thread Andreas Tille
Hi, I realised that on one hand there is a patch for this package but no according upload and on the other hand there is the option that the package can be removed without affecting other packages. Any progress on this? Kind regards Andreas. -- http://fam-tille.de