Bug#1053870: CVE-2023-42118: integer underflow in libspf2 resulting in RCE

2023-12-05 Thread Bert Van de Poel
out to Zero Day Initiative, but it seems they never got any clear and concrete response. I would suggest that Debian move ahead with this patch at least, or what is the common procedure in cases like this? Bert

Bug#1053870: CVE-2023-42118: integer underflow in libspf2 resulting in RCE

2023-10-18 Thread Bert Van de Poel
so, and Debian is lagging behind. This is even more serious considering exim is the default MTA on Debian, while many other distros opt for postfix. Kind regards, Bert Van de Poel On 18/10/2023 11:56, Salvatore Bonaccorso wrote: Hi, On Fri, Oct 13, 2023 at 12:05:19PM +0200, Bert Van de Poel

Bug#1053870: CVE-2023-42118: integer underflow in libspf2 resulting in RCE

2023-10-13 Thread Bert Van de Poel
Package: libspf2-2 Version: 1.2.10-7.1~deb11u1 Severity: critical Tags: security patch Justification: root security hole X-Debbugs-Cc: Debian Security Team As already outlined on https://security-tracker.debian.org/tracker/CVE-2023-42118 there's a known security issue in libspf2 found through

Bug#1037478: ca-certificates-java: Same for 20230620

2023-06-26 Thread bert
Package: ca-certificates-java Version: 20230620 Followup-For: Bug #1037478 X-Debbugs-Cc: b...@dismail.de Dear Maintainer, I saw this error in today's testing update to version 20230620. -- System Information: Debian Release: trixie/sid APT prefers testing APT policy: (500, 'testing'), (90,

Bug#1029342: Fwd: [request-tracker-maintainers] Bug#1026669: request-tracker5: FTBFS: can't locate java: No such file or directory

2023-01-25 Thread bert schulze
--- readlink -sf /etc/alternatives/jexec => /usr/lib/jvm/temurin-17-jdk-amd64/lib/jexec $ strace -e execve jexec 2>&1 |grep -E '(jexec|java)' execve("/usr/bin/jexec", ["jexec"], 0x7ffd110128b0 /* 59 vars */) = 0 can't locate java: No such file or directory > I'm cloning a separate bug about this. Yes, to be discussed further in #1029342 > Not sure why jexec is used here though. Just running /usr/bin/ckbuilder > works for me (but the request-tracker5 build fails later, presumably > due to a different bug.) see my TLDR above > -- > Niko Tyni nt...@debian.org BR bert schulze

Bug#1028638: Gajim crashes. Upstream denies responsability and bans users.

2023-01-23 Thread bert
Niccolo, I usually don't engage with stuff like this, but your behaviour is what makes open source development harder and often not fun. I hope you know that all posts in the Gajim MUC are public: https://conference.gajim.org:5281/muc_log/gajim/2023-01-19 You barged in there requesting help

Bug#1028192: gajim: Same for Gajim 1.6.1-2

2023-01-18 Thread bert
Package: gajim Version: 1.6.1-2 Followup-For: Bug #1028192 X-Debbugs-Cc: b...@dismail.de Dear Maintainer, I'm also still seeing this on Gajim 1.6.1-2. Here's my backtrace with debug symbols: (gdb) bt #0 _Unwind_GetRegionStart (context=0x0) at ../../../src/libgcc/unwind-dw2.c:384 #1

Bug#985991: libksgrd9: ksgrd_network_helper hogs CPU

2021-03-27 Thread Bert Schlumwig
Package: libksgrd9 Version: 4:5.20.5-1 Severity: grave Justification: renders package unusable X-Debbugs-Cc: funat...@posteo.de Dear Maintainer, when booting into a new KDE session, ksgrd_network_helper hogs 1 CPU-core completely. The first thing I have to do is to set this thing to STOP. This

Bug#930537: at fails to install and to be removed afterwards even with dpkg --force-all

2019-06-14 Thread Bert Schlumwig
Package: at Version: 3.1.23-1 Severity: grave Justification: renders package unusable at fails to install: E: at: »installiertes at-Skript des Paketes post-installation«-Unterprozess gab den Fehlerwert 1 zurück Vorbereitung zum Entpacken von .../archives/at_3.1.23-1_amd64.deb ... Entpacken von

Bug#912721: (no subject)

2018-11-03 Thread Bert
I can confirm the issue, however, I still get no sound after copying the .conf file from the source package to /usr/share/alsa/alsa.conf.d like Matthias suggested. Still investigating...

Bug#909818: firefox: Web Content is eating nearly 100% CPU, several of them

2018-10-04 Thread Bert
Same problem here, issue persists in 62.0.3-1 for me.

Bug#864565: chromium-shell: Couldn't mmap v8 natives data file, status code is 1

2017-07-07 Thread bert schulze
tag 864565 +patch thanks hi, the chromium-shell binary is not supposed to be installed in /usr/bin but rather /usr/lib/chromium. debian/chromium-shell.install pushes it into /usr/bin at the moment. The v8 natives file referred to is /usr/lib/chromium/natives_blob.bin, other than that

Bug#862576: etoys: Doesn't get beyond Squeak security key generation

2017-06-06 Thread Bert Freudenberg
@James: You can press alt-. (period) in Etoys to see what it's doing - this should also create a SqueakDebug.log file which you can attach. However, this sounds like a squeak-vm bug, not Etoys. @Adrian: Thanks for finding a work-around! ​CC'ing Dave Lewis, our ​VM guy ... ​- Bert -​ On Tue

Bug#837054: /usr/bin/weather: The service url required for functionality has changed

2016-09-26 Thread Bert Riding
Package: weather-util-data Version: 2.0-1 Followup-For: Bug #837054 Dear Maintainer, The files in /usr/share/weather-util provided by weather-util-data still contain the outdated URLs. -- System Information: Debian Release: stretch/sid APT prefers unstable APT policy: (500, 'unstable'),

Bug#622280: Does not start. libguile-srfi-srfi-13-14-v-1, message: file not found

2011-04-26 Thread Bert Riding
Package: gnucash Version: 1:2.4.5-1 Followup-For: Bug #622280 Installing guile-1.8-dev provides the needed libarary. -- System Information: Debian Release: wheezy/sid APT prefers stable-updates APT policy: (500, 'stable-updates'), (500, 'unstable'), (500, 'testing'), (500, 'stable'), (1,

Bug#622280: Does not start. libguile-srfi-srfi-13-14-v-1, message: file not found

2011-04-25 Thread Bert Riding
Package: gnucash Version: 1:2.4.5-1 Followup-For: Bug #622280 Correction to my previous report: For me guile-1.8-dev provided the missing library, but I think the original reporter would need guile-1.6-dev. -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject

Bug#567366: `memoryAllocate' implicitly converted to pointer

2010-01-30 Thread Bert Freudenberg
This might make it compile but upstream says it won't work. Better to disable that plugin altogether on 64 bit platforms: http://lists.squeak.org/pipermail/vm-dev/2010-January/003806.html - Bert - -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject

Bug#552907: squeak-vm: FTBFS: stdio.h:397:66: error: macro dprintf passed 3 arguments, but takes just 1

2010-01-25 Thread Bert Freudenberg
It's been fixed upstream half a year ago. - Bert - -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#563590: Fails to upgrade/install

2010-01-04 Thread Bert Schulze
Package: console-tools Version: 1:0.2.3dbs-67 Severity: normal Tags: patch Hello, same here, seems to be related to bash-4.1 which has a more strict handling of set -e output of aptitude: Setting up console-tools (1:0.2.3dbs-67) ... Setting console screen modes and fonts.

Bug#563426: localepurge: Incompatible with bash 4.1

2010-01-02 Thread Bert Schulze
Package: localepurge Version: 0.6.1 Severity: normal Tags: patch Hello, The problem merely is declaring variables in arithmetic mode here, just try it yourself with a little script like that --- #!/bin/bash set -e echo 123 ((3 2)) echo 3 2 ((false = 0)) ((true = 1)) echo not going to

Bug#563426: Incompatible with bash 4.1

2010-01-02 Thread Bert Schulze
Package: localepurge Version: 0.6.1 Severity: normal Tags: patch I'm sorry the previously posted patch didn't solve the whole Problem and i ran into another one. Initially you set globaltot=0 and in the spaceafter function you add the tot of each dir you process by using ((globaltot += tot)).

Bug#547708: java.lang.NoClassDefFoundError: org/apache/commons/compress/archivers/tar/TarInputStream

2009-09-24 Thread Bert Schulze
The libcommons-compress-java renamed the tar classes as follows: TarEntry.class - TarArchiveEntry.class TarInputStream.class - TarArchiveInputStream.class TarOutputStream.class - TarArchiveOutputStream.class The appended patch (bootchart_renamedtar.patch) for bootchart-0.10~svn407 and

Bug#524779: less not working right for normal files

2009-04-20 Thread Bert Riding
Package: less Version: 429-1 Severity: normal my .bashrc contains the suggested eval $(lesspipe) line. When this is commented out less behaves normally. When it is evaluated less only works for files types other than plain text, showing instead only the name of the file and END. Therefore this

Bug#519148: Seems to be fixed

2009-03-18 Thread Bert Riding
At least on i386 and amd64 archs this problem no longer exists for me, as of 2.2.6-3. Thanks very much. -- Bert Riding rerid...@xmission.com gnupg fingerprint: C0F6 E202 EFB3 F332 CAB0 85D4 A113 9F46 3C93 5A6E -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org

Bug#446039: more information

2007-10-09 Thread Bert Riding
Further experimentation using non-debianised versions of both the kernel and module source and builds seems to indicate that this problem is caused by an interaction between the 2.6.23 source and the madwifi source, and is not a problem with the debian madwifi-source package itself. -- Bert

Bug#428650: Upgrade fails: Tries to overwrite diversion of french man page

2007-06-14 Thread Bert Jan de Hoop
Had the same problem when upgrading to module-init-tools/3.3-pre11-3 After moving/removing /usr/share/man/fr/man5/modules.5.gz the package was at least installable with apt-get --fix-broken install Regards Bert Jan -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe

Bug#406465: Info received (Bug#406465: Info received (more details needed please (zone data)))

2007-03-01 Thread bert hubert
Your fix looks perfect for the interim, many thanks! On Thu, Mar 01, 2007 at 10:42:56AM +0100, Andreas Henriksson wrote: On Thu, Mar 01, 2007 at 12:29:48AM +0100, bert hubert wrote: I fail to reproduce the bug. PowerDNS does misparse the ( record, which is sad, and fixed in SVN (the fix

Bug#406465: Info received (more details needed please (zone data))

2007-02-28 Thread bert hubert
I am working on a fix now, and hope to release it within an hour. Bert On Fri, Feb 16, 2007 at 08:18:03PM +, Debian Bug Tracking System wrote: Thank you for the additional information you have supplied regarding this problem report. It has been forwarded to the package maintainer

Bug#406465: more details needed please (zone data)

2007-02-16 Thread bert hubert
Jeroen (and Bas I assume), Can you provide me with a copy of your problematic a-eskwadraat zone? Thanks -- http://www.PowerDNS.com Open source, database driven DNS Software http://netherlabs.nl Open and Closed source services -- To UNSUBSCRIBE, email to [EMAIL PROTECTED]

Bug#372082: xfwm4: many (most?) keybindings broken

2006-06-08 Thread Bert
Package: xfwm4 Version: 4.3.90.1-1 Severity: serious Justification: usability of package Ctl+Alt+arrow_keys doesn't cycle through workspaces KP_Del (not Alt_Del) deletes workspace KP_Ins (not alt_Ins) adds workspace (and so on) and to me, the most serious breakage is from Tab (not Alt_Tab) brings

Bug#372082: [Pkg-xfce-devel] Bug#372082: xfwm4: many (most?) keybindings broken

2006-06-08 Thread Bert Riding
On Thu, 8 Jun 2006 14:44:31 +0100 Simon Huggins [EMAIL PROTECTED] wrote: tags 372082 +unreproducible moreinfo thanks On Thu, Jun 08, 2006 at 01:35:40AM -0600, Bert wrote: Ctl+Alt+arrow_keys doesn't cycle through workspaces KP_Del (not Alt_Del) deletes workspace KP_Ins (not alt_Ins

Bug#372082: [Pkg-xfce-devel] Bug#372082: xfwm4: many (most?) keybindings broken

2006-06-08 Thread Bert Riding
On Thu, 8 Jun 2006 14:44:31 +0100 Simon Huggins [EMAIL PROTECTED] wrote: tags 372082 +unreproducible moreinfo thanks On Thu, Jun 08, 2006 at 01:35:40AM -0600, Bert wrote: Ctl+Alt+arrow_keys doesn't cycle through workspaces KP_Del (not Alt_Del) deletes workspace KP_Ins (not alt_Ins

Bug#360079: same with thunderbird?

2006-04-01 Thread Bert Verbeek
missed this because it isn't standard in the grub menu.lst anymore. I just installed it. The results will be reported. Kind regards, Bert Verbeek -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#360079: same with thunderbird?

2006-04-01 Thread Bert Verbeek
On Saturday 01 April 2006 10:54, Willi Mann wrote: Hi! Is this problem also reproduceable with thunderbird? Have you run memtest on your RAM? Just finished 6 passes of memtest86 on my PC, it reported zero errors on my RAM, so this is not the problem. Kind regards, Bert Verbeek

Bug#360079: firefox: User input freeze problem

2006-03-30 Thread Bert Verbeek
Package: firefox Version: 1.5.dfsg+1.5.0.1-3 Severity: grave Justification: renders package unusable I have a weird problem with firefox 1.0.7/1.5 for some time now. It makes the program totally unusable for me at the moment. The problem: Alphabetic/numeric keyboard entries are not arriving

Bug#337547: slib: 3a2-1 fails to install, Unbound variable: with-load-pathname

2005-11-04 Thread Bert
Package: slib Version: 3a1-5 Severity: grave Justification: renders package unusable Upgrade from 3a1-5 to 3a2-1 fails with Errors were encountered while processing: slib E: Sub-process /usr/bin/dpkg returned an error code (1) Ack! Something bad happened while installing packages. Trying to

Bug#330142: gnumeric DOES start fine on my config

2005-11-02 Thread Bert
what the apt-listbugs reports say. Thanks for a great program! Bert. -- System Information: Debian Release: testing/unstable APT prefers unstable APT policy: (500, 'unstable'), (500, 'testing') Architecture: i386 (i686) Kernel: Linux 2.6.14 Locale: LANG=en_US, LC_CTYPE=en_US (charmap=ISO-8859-1

Bug#326689: glabels: dies upon open or new

2005-09-04 Thread Bert
Package: glabels Version: 2.0.2-3 Severity: grave Justification: renders package unusable program dies when filename given on command line, or filename give to Open dialog, or New selected. Some error messages about no paper file found, no template files found, and after New selected from

Bug#320638: any clue on when this will be fixed? or workaround?

2005-07-31 Thread bert hubert
Thanks for the clarification - any idea on when this will be fixed? Is there a workaround? Thanks. -- http://www.PowerDNS.com Open source, database driven DNS Software http://netherlabs.nl Open and Closed source services -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with