Bug#988217: marked as pending in u-boot

2021-05-21 Thread Vagrant Cascadian
Control: tag -1 pending Hello, Bug #988217 in u-boot reported by you has been fixed in the Git repository and is awaiting an upload. You can see the commit message below and you can check the diff of the fix at:

Processed: Bug#988217 marked as pending in u-boot

2021-05-21 Thread Debian Bug Tracking System
Processing control commands: > tag -1 pending Bug #988217 [u-boot-sunxi] bootefi causes boot failure with boot.scr Added tag(s) pending. -- 988217: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=988217 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems

Processed: turns out this API violation is by design

2021-05-21 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 988027 important Bug #988027 [libklibc-dev] klibc: sigsetjmp ignores second argument, siglongjmp always restores signals Severity set to 'important' from 'serious' > tags 988027 + upstream Bug #988027 [libklibc-dev] klibc: sigsetjmp

Bug#943425: [klibc] #943425 [s390x] setjmp/longjmp do not save/restore all registers in use

2021-05-21 Thread Thorsten Glaser
Hello Ben, any chance to upload at least the patch for s390x? This affects a release architrecture, so I’d NMU this if necessary, so we have it fixed in bullseye. Thanks, //mirabilos -- “Having a smoking section in a restaurant is like having a peeing section in a swimming pool.”

Processed: Re: Bug#987816: dask.distributed: FTBFS due to a build-time test failure

2021-05-21 Thread Debian Bug Tracking System
Processing control commands: > tag -1 + unreproducible Bug #987816 [src:dask.distributed] dask.distributed: FTBFS due to a build-time test failure Added tag(s) unreproducible. > forwarded -1 https://github.com/dask/distributed/issues/4839 Bug #987816 [src:dask.distributed] dask.distributed:

Bug#987816: dask.distributed: FTBFS due to a build-time test failure

2021-05-21 Thread Stefano Rivera
Control: tag -1 + unreproducible Control: forwarded -1 https://github.com/dask/distributed/issues/4839 Hi Andrej (2021.04.30_05:27:41_-0400) > While rebuilding your package for Apertis, I found that it fails to > build because a few of the build-time tests fail. I rebuilt the package > in Debian

Processed: tagging 988942, tagging 988943, bug 988943 is forwarded to https://github.com/gin-gonic/gin/pull/2474 ...

2021-05-21 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tags 988942 + upstream Bug #988942 [golang-github-containers-image] CVE-2021-20291 Added tag(s) upstream. > tags 988943 + upstream Bug #988943 [src:golang-github-gin-gonic-gin] CVE-2020-28483 Added tag(s) upstream. > forwarded 988943

Bug#988102: marked as done (python-libnacl: failing in tests on 32 bit systems)

2021-05-21 Thread Debian Bug Tracking System
Your message dated Fri, 21 May 2021 21:04:23 + with message-id and subject line Bug#988102: fixed in python-libnacl 1.7.2-3 has caused the Debian Bug report #988102, regarding python-libnacl: failing in tests on 32 bit systems to be marked as done. This means that you claim that the problem

Processed: Bug#988102 marked as pending in python-libnacl

2021-05-21 Thread Debian Bug Tracking System
Processing control commands: > tag -1 pending Bug #988102 [python-libnacl] python-libnacl: failing in tests on 32 bit systems Added tag(s) pending. -- 988102: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=988102 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems

Bug#988102: marked as pending in python-libnacl

2021-05-21 Thread Stefano Rivera
Control: tag -1 pending Hello, Bug #988102 in python-libnacl reported by you has been fixed in the Git repository and is awaiting an upload. You can see the commit message below and you can check the diff of the fix at:

Bug#988480: marked as done (pydantic: CVE-2021-29510)

2021-05-21 Thread Debian Bug Tracking System
Your message dated Fri, 21 May 2021 20:21:01 + with message-id and subject line Bug#988480: fixed in pydantic 1.7.4-1 has caused the Debian Bug report #988480, regarding pydantic: CVE-2021-29510 to be marked as done. This means that you claim that the problem has been dealt with. If this is

Processed: Re: Processed (with 1 error): Re: Bug#987686: webkit2gtk breaks balsa autopkgtest: xwd: error: No window with name Balsa exists!

2021-05-21 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 987686 important Bug #987686 [src:balsa] balsa autopkgtest fails with xdg-desktop-portal-gtk Severity set to 'important' from 'serious' > thanks Stopping processing here. Please contact me if you need assistance. -- 987686:

Processed (with 1 error): Re: Bug#987686: webkit2gtk breaks balsa autopkgtest: xwd: error: No window with name Balsa exists!

2021-05-21 Thread Debian Bug Tracking System
Processing control commands: > tags -1 important Unknown tag/s: important. Recognized are: patch wontfix moreinfo unreproducible help security upstream pending confirmed ipv6 lfs d-i l10n newcomer a11y ftbfs fixed-upstream fixed fixed-in-experimental sid experimental potato woody sarge

Bug#987686: webkit2gtk breaks balsa autopkgtest: xwd: error: No window with name Balsa exists!

2021-05-21 Thread Paul Gevers
Control: tags -1 important Control: retitle -1 balsa autopkgtest fails with xdg-desktop-portal-gtk Hi On 21-05-2021 21:43, Alberto Garcia wrote: > In any case I would definitely reduce the severity of the bug, I just > didn't want to do it on behalf of the original reporter :) Oh, with the

Bug#988950: CVE-2020-26892 CVE-2020-26521

2021-05-21 Thread Moritz Muehlenhoff
Source: golang-github-nats-io-jwt Severity: grave Tags: security X-Debbugs-Cc: Debian Security Team https://advisories.nats.io/CVE/CVE-2020-26892.txt https://advisories.nats.io/CVE/CVE-2020-26521.txt Cheers, Moritz

Bug#987686: webkit2gtk breaks balsa autopkgtest: xwd: error: No window with name Balsa exists!

2021-05-21 Thread Alberto Garcia
On Fri, May 21, 2021 at 09:28:02PM +0200, Paul Gevers wrote: > > In webkit2gtk 2.32.1-1 the dependency on xdg-desktop-portal-gtk was > > downgraded to a recommendation so the test no longer fails. > > balsa is close to autoremoval from bullseye because of this issue. > Should

Bug#988945: CVE-2019-25009

2021-05-21 Thread Moritz Muehlenhoff
Source: rust-http Severity: grave Tags: security X-Debbugs-Cc: Debian Security Team CVE-2019-25009: https://rustsec.org/advisories/RUSTSEC-2019-0034.html https://github.com/hyperium/http/commit/82d53dbdfdb1ffbeb0323200a0bbd30b5f895fa7

Bug#988944: CVE-2020-7692

2021-05-21 Thread Moritz Muehlenhoff
Source: google-oauth-client-java Severity: grave Tags: security X-Debbugs-Cc: Debian Security Team CVE-2020-7692: https://snyk.io/vuln/SNYK-JAVA-COMGOOGLEOAUTHCLIENT-575276 https://github.com/googleapis/google-oauth-java-client/issues/469

Bug#987547: debspawn: diff for NMU version 0.4.1-1.1

2021-05-21 Thread Stefano Rivera
Control: tags 987547 + pending Dear maintainer, I've prepared an NMU for debspawn (versioned as 0.4.1-1.1) and uploaded it to DELAYED/2. Please feel free to tell me if I should delay it longer. Regards. SR diff -Nru debspawn-0.4.1/debian/changelog debspawn-0.4.1/debian/changelog ---

Processed: debspawn: diff for NMU version 0.4.1-1.1

2021-05-21 Thread Debian Bug Tracking System
Processing control commands: > tags 987547 + pending Bug #987547 [debspawn] missing dependency on dpkg-dev Added tag(s) pending. -- 987547: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=987547 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems

Bug#987686: webkit2gtk breaks balsa autopkgtest: xwd: error: No window with name Balsa exists!

2021-05-21 Thread Paul Gevers
Hi Alberto, On 11-05-2021 21:03, Alberto Garcia wrote: > On Tue, Apr 27, 2021 at 11:27:32PM +0200, Alberto Garcia wrote: > >> Nothing to do with webkit actually. The test launches Balsa, waits >> for two seconds and then takes a screenshot of the window. The bug >> happens because when

Bug#987646: marked as done (eclipse-titan: Frequent parallel FTBFS)

2021-05-21 Thread Debian Bug Tracking System
Your message dated Fri, 21 May 2021 19:18:29 + with message-id and subject line Bug#987646: fixed in eclipse-titan 7.2.0-1.1 has caused the Debian Bug report #987646, regarding eclipse-titan: Frequent parallel FTBFS to be marked as done. This means that you claim that the problem has been

Bug#988940: gnome-shell-extension-redshift: Is this package obsolete?

2021-05-21 Thread Adrian Bunk
Package: gnome-shell-extension-redshift Version: 3.20.1-2.1 Severity: serious https://extensions.gnome.org/extension/685/redshift/ Deprecation notice: As of GNOME 3.24, there is native support for night light mode in your display settings. This extension is not required or reccomended anymore.

Processed: severity of 986603 is important

2021-05-21 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 986603 important Bug #986603 [courier-mlm] courier-MLM : it runs as root ? or we must manually set up as coureir user? Severity set to 'important' from 'grave' > thanks Stopping processing here. Please contact me if you need

Bug#987646: eclipse-titan: diff for NMU version 7.2.0-1.1

2021-05-21 Thread Stefano Rivera
Control: tags 987646 + patch Dear maintainer, I've prepared an NMU for eclipse-titan (versioned as 7.2.0-1.1). The diff is attached to this message. Regards. SR diff -Nru eclipse-titan-7.2.0/debian/changelog eclipse-titan-7.2.0/debian/changelog --- eclipse-titan-7.2.0/debian/changelog

Processed: eclipse-titan: diff for NMU version 7.2.0-1.1

2021-05-21 Thread Debian Bug Tracking System
Processing control commands: > tags 987646 + patch Bug #987646 [src:eclipse-titan] eclipse-titan: Frequent parallel FTBFS Added tag(s) patch. -- 987646: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=987646 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems

Bug#978166: marked as done (whipper: Missing dependency on flac)

2021-05-21 Thread Debian Bug Tracking System
Your message dated Fri, 21 May 2021 18:48:33 + with message-id and subject line Bug#978166: fixed in whipper 0.9.0-7 has caused the Debian Bug report #978166, regarding whipper: Missing dependency on flac to be marked as done. This means that you claim that the problem has been dealt with.

Bug#978166: Updated package

2021-05-21 Thread Stefano Rivera
Hi eloy (2021.05.08_05:58:59_-0400) > There's updated package released in salsa.debian.org > https://salsa.debian.org/debian/whipper/-/tree/debian/0.9.0-7 but I > have problems with uploading it into ftp debian.org. Until I resolve > problems with uploading someone can take build from there and

Bug#988109: buster-pu: package mqtt-client/1.14-1

2021-05-21 Thread Abhijith PA
Package: release.debian.org Severity: normal Tags: buster User: release.debian@packages.debian.org Usertags: pu X-Debbugs-Cc: a...@debian.org Hello Stable release team, I would like to update mqtt-client in buster for fixing CVE-2019-0222. It is fixed in stretch, bullseye and sid. Right now

Bug#988141: marked as done (impacket: CVE-2021-31800)

2021-05-21 Thread Debian Bug Tracking System
Your message dated Fri, 21 May 2021 17:18:32 + with message-id and subject line Bug#988141: fixed in impacket 0.9.22-2 has caused the Debian Bug report #988141, regarding impacket: CVE-2021-31800 to be marked as done. This means that you claim that the problem has been dealt with. If this is

Bug#984490: marked as done (test-archive.t fails in the autopkg tests)

2021-05-21 Thread Debian Bug Tracking System
Your message dated Fri, 21 May 2021 17:18:40 + with message-id and subject line Bug#986514: fixed in mercurial 5.6.1-3 has caused the Debian Bug report #986514, regarding test-archive.t fails in the autopkg tests to be marked as done. This means that you claim that the problem has been dealt

Bug#988885: CVE-2021-31323 CVE-2021-31322 CVE-2021-31321 CVE-2021-31320 CVE-2021-31319 CVE-2021-31318 CVE-2021-31317 CVE-2021-31315

2021-05-21 Thread Nicholas Guriev
Hello! Thank you for pointing out these CVEs. I investigated deeper into the issues and reviewed the code as of 0.1+dfsg-1 version of the package. Luckily, most of these issues are not related to rlottie as currently packaged in Debian. Below are some of my notes. They do not imply 100%

Processed: Bug#988141 marked as pending in impacket

2021-05-21 Thread Debian Bug Tracking System
Processing control commands: > tag -1 pending Bug #988141 [src:impacket] impacket: CVE-2021-31800 Added tag(s) pending. -- 988141: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=988141 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems

Bug#988141: marked as pending in impacket

2021-05-21 Thread Stefano Rivera
Control: tag -1 pending Hello, Bug #988141 in impacket reported by you has been fixed in the Git repository and is awaiting an upload. You can see the commit message below and you can check the diff of the fix at:

Bug#988853: marked as done (spip: broken symlink: /usr/share/spip/prive/javascript/js.cookie.js -> ../../../../lib/nodejs/js-cookie/src/js.cookie.js)

2021-05-21 Thread Debian Bug Tracking System
Your message dated Fri, 21 May 2021 17:03:25 + with message-id and subject line Bug#988853: fixed in spip 3.2.11-3 has caused the Debian Bug report #988853, regarding spip: broken symlink: /usr/share/spip/prive/javascript/js.cookie.js -> ../../../../lib/nodejs/js-cookie/src/js.cookie.js to

Bug#986514: marked as pending in mercurial

2021-05-21 Thread Stefano Rivera
Control: tag -1 pending Hello, Bug #986514 in mercurial reported by you has been fixed in the Git repository and is awaiting an upload. You can see the commit message below and you can check the diff of the fix at:

Processed: Bug#986514 marked as pending in mercurial

2021-05-21 Thread Debian Bug Tracking System
Processing control commands: > tag -1 pending Bug #986514 [src:mercurial] mercurial: FTBFS: dh_auto_test: error: make -j4 check PYTHON=python3.9 "TESTFLAGS=--verbose --timeout 1440 --jobs 4 --blacklist /<>/debian/mercurial.test_blacklist" returned exit code 2 Bug #984490 [src:mercurial]

Bug#988929: jverein: broken symlinks: /usr/share/jameica/plugins/jverein/lib/*-*.jar -> ../../../../java/*.jar

2021-05-21 Thread Andreas Beckmann
Package: jverein Version: 2.8.18+git20200921.6212a59+dfsg-3 Severity: serious User: debian...@lists.debian.org Usertags: piuparts Hi, during a test with piuparts I noticed your package ships (or creates) a broken symlink. >From the attached log (scroll to the bottom...): 1m38.1s ERROR: FAIL:

Processed: forcibly merging 986514 984490

2021-05-21 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > forcemerge 986514 984490 Bug #986514 [src:mercurial] mercurial: FTBFS: dh_auto_test: error: make -j4 check PYTHON=python3.9 "TESTFLAGS=--verbose --timeout 1440 --jobs 4 --blacklist /<>/debian/mercurial.test_blacklist" returned exit code 2 Bug

Bug#966233: marked as done (pyyaml: CVE-2020-14343)

2021-05-21 Thread Debian Bug Tracking System
Your message dated Fri, 21 May 2021 15:43:47 + with message-id and subject line Bug#966233: fixed in pyyaml 5.3.1-4 has caused the Debian Bug report #966233, regarding pyyaml: CVE-2020-14343 to be marked as done. This means that you claim that the problem has been dealt with. If this is not

Processed: Bug#966233 marked as pending in pyyaml

2021-05-21 Thread Debian Bug Tracking System
Processing control commands: > tag -1 pending Bug #966233 [src:pyyaml] pyyaml: CVE-2020-14343 Added tag(s) pending. -- 966233: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=966233 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems

Bug#966233: marked as pending in pyyaml

2021-05-21 Thread Stefano Rivera
Control: tag -1 pending Hello, Bug #966233 in pyyaml reported by you has been fixed in the Git repository and is awaiting an upload. You can see the commit message below and you can check the diff of the fix at:

Processed: reopening 988763, severity of 988763 is important

2021-05-21 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > reopen 988763 Bug #988763 {Done: Ryan Kavanagh } [rxvt-unicode] rxvt-unicode: CVE-2021-33477: (potential remote) code execution via ESC G Q Bug reopened Ignoring request to alter fixed versions of bug #988763 to the same values previously set >

Processed: limit source to spip, tagging 988853

2021-05-21 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > limit source spip Limiting to bugs with field 'source' containing at least one of 'spip' Limit currently set to 'source':'spip' > tags 988853 + pending Bug #988853 [spip] spip: broken symlink: /usr/share/spip/prive/javascript/js.cookie.js ->

Bug#985220: marked as done (velocity: CVE-2020-13936)

2021-05-21 Thread Debian Bug Tracking System
Your message dated Fri, 21 May 2021 14:47:09 + with message-id and subject line Bug#985220: fixed in velocity 1.7-5+deb10u1 has caused the Debian Bug report #985220, regarding velocity: CVE-2020-13936 to be marked as done. This means that you claim that the problem has been dealt with. If

Bug#964274: marked as done (ruby-websocket-extensions: CVE-2020-7663)

2021-05-21 Thread Debian Bug Tracking System
Your message dated Fri, 21 May 2021 14:47:09 + with message-id and subject line Bug#964274: fixed in ruby-websocket-extensions 0.1.2-1+deb10u1 has caused the Debian Bug report #964274, regarding ruby-websocket-extensions: CVE-2020-7663 to be marked as done. This means that you claim that the

Bug#988763: rxvt-unicode: Remote(?) code execution via ESC G Q

2021-05-21 Thread Paul Szabo
Dear Ryan, I just wrote: Curious that you do not consider this a bug: similar things were fixed in other terminal emulators like xterm, so people could "safely" view (i.e. cat or grep) any files, e.g. root perusing syslog. I guess I should have given examples or references. Some that come

Processed: severity of 987856 is serious

2021-05-21 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 987856 serious Bug #987856 {Done: Nobuhiro Iwamatsu } [src:lz4] lz4: CVE-2021-3520 Severity set to 'serious' from 'important' > thanks Stopping processing here. Please contact me if you need assistance. -- 987856:

Bug#981876: marked as done (gdpc: flaky autopkgtest on ppc64el)

2021-05-21 Thread Debian Bug Tracking System
Your message dated Fri, 21 May 2021 12:33:25 + with message-id and subject line Bug#981876: fixed in gdpc 2.2.5-14 has caused the Debian Bug report #981876, regarding gdpc: flaky autopkgtest on ppc64el to be marked as done. This means that you claim that the problem has been dealt with. If

Bug#988917: pg-partman: CVE-2021-33204

2021-05-21 Thread Salvatore Bonaccorso
Source: pg-partman Version: 4.4.1-1 Severity: grave Tags: security upstream X-Debbugs-Cc: car...@debian.org, Debian Security Team Hi, The following vulnerability was published for pg-partman. CVE-2021-33204[0]: | In the pg_partman (aka PG Partition Manager) extension before 4.5.1 | for

Bug#988763: rxvt-unicode: Remote(?) code execution via ESC G Q

2021-05-21 Thread Paul Szabo
Dear Ryan, Curious that you do not consider this a bug: similar things were fixed in other terminal emulators like xterm, so people could "safely" view (i.e. cat or grep) any files, e.g. root perusing syslog. Looking at the further message on FullDisclosure:

Processed: severity of 988874 is normal

2021-05-21 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 988874 normal Bug #988874 {Done: David Bremner } [darktable] darktable: broken symlinks: /usr/share/darktable/js/*.js -> ../../javascript/*/*.js Severity set to 'normal' from 'serious' > thanks Stopping processing here. Please contact

Bug#982758: webext-browserpass: Failed to install on upgrade to bullseye

2021-05-21 Thread Axel Beckert
Hi Michael, Michael Meskes wrote: > I'm with Daniel on this one as I cannot reproduce it either: > > Preparing to unpack .../webext-browserpass_3.7.2-1+b1_amd64.deb ... > Unpacking webext-browserpass (3.7.2-1+b1) over (2.0.22-2) ... Indeed. Using a clean Sid chroot, installing

Bug#988881: marked as done (r-cran-rcdklibs: broken symlinks: /usr/lib/R/site-library/rcdklibs/cont/{gettext,libintl}.jar)

2021-05-21 Thread Debian Bug Tracking System
Your message dated Fri, 21 May 2021 10:05:02 + with message-id and subject line Bug#91: fixed in r-cran-rcdklibs 2.3+dfsg-8 has caused the Debian Bug report #91, regarding r-cran-rcdklibs: broken symlinks: /usr/lib/R/site-library/rcdklibs/cont/{gettext,libintl}.jar to be marked as

Processed: Re: Bug#988816: fwupd: cannot install with fwupd-amd64-signed

2021-05-21 Thread Debian Bug Tracking System
Processing control commands: > reassign -1 fwupd-amd64-signed Bug #988816 [fwupd] fwupd: cannot install with fwupd-amd64-signed Bug reassigned from package 'fwupd' to 'fwupd-amd64-signed'. No longer marked as found in versions fwupd/1.5.7-3. Ignoring request to alter fixed versions of bug #988816

Bug#988909: lintian-brush: autopkgtest failure and FTBFS

2021-05-21 Thread Graham Inggs
Source: lintian-brush Version: 0.99 Severity: serious Tags: ftbfs X-Debbugs-CC: debian...@lists.debian.org User: debian...@lists.debian.org Usertags: needs-update Hi Maintainer Sometime between 2021-03-30 and 2021-04-06, lintian-brush's autopkgtests started to fail in testing [1]. I've copied

Processed: Re: pipx broken with python 3.9

2021-05-21 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + patch Bug #976146 [pipx] pipx broken with python 3.9 Added tag(s) patch. -- 976146: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=976146 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems

Bug#976146: pipx broken with python 3.9

2021-05-21 Thread Matthias Klose
Control: tags -1 + patch I was just pointed at this issue , didn't realize the compatibility with Python 3.9. I updated to the current upstream version, which seems to work fine with 3.9. Packaging proposal at https://launchpad.net/ubuntu/+source/python-pipx/0.16.2.1-0ubuntu3 This also drops

Bug#982758: webext-browserpass: Failed to install on upgrade to bullseye

2021-05-21 Thread Michael Meskes
Hi all, > Preparing to unpack .../370-webext-browserpass_3.7.2-1+b1_amd64.deb ... > Unpacking webext-browserpass (3.7.2-1+b1) over (2.0.22-2) ... > dpkg: error processing archive > /tmp/apt-dpkg-install-VKYulC/370-webext-browserpass_3.7.2-1+b1_amd64.deb > (--unpack): >unable to open

Bug#988330: libbusiness-us-usps-webtools-perl Buster update

2021-05-21 Thread Yadd
Hi, I prepared an update for Buster (branch = buster). Please review Cheers, Yadd