Bug#774918: cups-pdf, copyright file missing: postinst script ?

2015-01-09 Thread Hugo Lefeuvre
Hi, The problem seems to be that an old version of cups-pdf (maybe 2.6.1-6) was using directories for its documentation (especially d/copyright) and that a new version of the package asked debian/rules to use symlinks instead of installing the same documentation twice: override_dh_installdocs:

Bug#774972: libedit-dev: fails to upgrade from 'sid' - trying to overwrite /usr/share/man/man3/editline.3.gz

2015-01-09 Thread Andreas Beckmann
Package: libedit-dev Version: 3.1-20141030-1~exp1 Severity: serious User: debian...@lists.debian.org Usertags: piuparts Hi, during a test with piuparts I noticed your package fails to upgrade from 'sid' to 'experimental'. It installed fine in 'sid', then the upgrade to 'experimental' fails

Bug#774973: ruby-fog-voxel: fails to upgrade from 'sid' - trying to overwrite /usr/lib/ruby/vendor_ruby/fog/voxel/compute.rb

2015-01-09 Thread Andreas Beckmann
Package: ruby-fog-voxel Version: 0.0.1-1 Severity: serious User: debian...@lists.debian.org Usertags: piuparts Hi, during a test with piuparts I noticed your package fails to upgrade from 'sid' to 'experimental'. It installed fine in 'sid', then the upgrade to 'experimental' fails because it

Bug#774969: ruby-fog,ruby-fog-xml: error when trying to install together

2015-01-09 Thread Andreas Beckmann
Package: ruby-fog,ruby-fog-xml Version: 1.24.0-2 Severity: serious User: trei...@debian.org Usertags: edos-file-overwrite Control: found -1 0.1.1-1 Architecture: amd64 Distribution: experimental Hi, automatic installation tests of packages that share a file and at the same time do not conflict

Processed: ruby-fog,ruby-fog-xml: error when trying to install together

2015-01-09 Thread Debian Bug Tracking System
Processing control commands: found -1 0.1.1-1 Bug #774969 [ruby-fog,ruby-fog-xml] ruby-fog,ruby-fog-xml: error when trying to install together There is no source info for the package 'ruby-fog' at version '0.1.1-1' with architecture '' Marked as found in versions ruby-fog-xml/0.1.1-1. --

Bug#766795: afterstep binnmu related issues

2015-01-09 Thread Niels Thykier
On 2015-01-08 22:23, peter green wrote: unmerge 766795 reassign 766795 afterstep tags 766795 -wontfix -patch -jessie-ignore retitle 766795 afterstep not binnmu safe thanks. Niels Thykier wrote: Hi Robert, Simon and Axel, [...] The story so-far as I understand it * I discovered

Bug#774924: apt: Jessie version cannot find upgrade path (but Wheezy version can)

2015-01-09 Thread Niels Thykier
Package: apt Version: 1.0.9.5 Severity: serious Hi, Based on the latest reports from jenkins.debian.net, it seems that Jessie's version of APT cannot fully complete the dist-upgrade while Wheezy's version can. Compare [1] with [2]. The difference is that in [2] we upgrade dpkg and APT alone

Bug#774883: remove pmud from jessie

2015-01-09 Thread Michael Schmitz
On 09/01/15 20:50, Mathieu Malaterre wrote: Control: severity -1 grave See 774883#12 (Thanks Ben !) The package has been non-functional for the last three releases. Do not ship on jessie. The apm_bios device workaround was only relevant for Xfree, its lack does not affect functionality of

Processed: Re: remove pmud from jessie

2015-01-09 Thread Debian Bug Tracking System
Processing control commands: severity -1 important Bug #774883 [pmud] # CONFIG_PMAC_APM_EMU is not set anymore Severity set to 'important' from 'grave' -- 774883: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=774883 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems --

Bug#774883: remove pmud from jessie

2015-01-09 Thread Mathieu Malaterre
Control: severity -1 important On Fri, Jan 9, 2015 at 9:38 AM, Michael Schmitz schmitz...@gmail.com wrote: On 09/01/15 20:50, Mathieu Malaterre wrote: Control: severity -1 grave See 774883#12 (Thanks Ben !) The package has been non-functional for the last three releases. Do not ship on

Processed: debhelper: support --link-doc arch:all = arch:any (was: Re: debhelper: Dependency added by dh_installdocs --link-doc breaks binary-only NMUs)

2015-01-09 Thread Debian Bug Tracking System
Processing control commands: severity 766711 wishlist Bug #766711 [debhelper] debhelper: Dependency added by dh_installdocs --link-doc breaks binary-only NMUs Severity set to 'wishlist' from 'serious' retitle 766711 support --link-doc arch:all = arch:any Bug #766711 [debhelper] debhelper:

Bug#766711: debhelper: support --link-doc arch:all = arch:any (was: Re: debhelper: Dependency added by dh_installdocs --link-doc breaks binary-only NMUs)

2015-01-09 Thread Niels Thykier
Control: severity 766711 wishlist Control: retitle 766711 support --link-doc arch:all = arch:any On 2015-01-08 23:19, Robert Luberda wrote: reopen 766711 block 766711 by 767839 thanks I have taken the liberty of marking the bug as wontfix (read: cantfix) and closing it. I'm re-opening

Bug#690278: libgtk-3-0: Breaks gtk3-engines-unico

2015-01-09 Thread Ragnarok
Another engines also still out of jessie do you known if these engines will migrated to jessie? -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#767630: birdfont: depends on libgit2-dev which is unavailable on kfreebsd and s390x

2015-01-09 Thread Hideki Yamane
Hi, All recent uploads of birdfont build-depend on libgit2-dev, which is unavailable on kfreebsd and s390x. As birdfont built fine before on these architectures, this prevents migration to testing. This probably means the you need to request the removal from unstable of the binaries on

Bug#774844: xfonts-traditional: fails to upgrade from 'wheezy': Can't locate File/Find.pm in @INC

2015-01-09 Thread Niko Tyni
On Thu, Jan 08, 2015 at 04:12:05PM +, Ian Jackson wrote: Andreas Beckmann writes (Bug#774844: xfonts-traditional: fails to upgrade from 'wheezy': Can't locate File/Find.pm in @INC): Since File/Find.pm moved to perl-base, [...] I think that the current dependency structure would permit:

Bug#758883: check-mk: CVE info

2015-01-09 Thread Matt Taggart
I did some research on #758883: 1) CVE-2014-5338 was fixed in 1.2.5i4 with this commit http://git.mathias-kettner.de/git/?p=check_mk.git;a=commit;h=076468b10e660abde6c459a4aa3ce8e07722 The actions.py change should work as is. The htmllib.py part of the patch needs some minor adjusting but

Bug#742689: check-mk: more CVE info

2015-01-09 Thread Matt Taggart
I am looking at the CVEs in #742689. The URL listed http://packetstormsecurity.com/files/125850/DTC-A-20140324-002.txt lists 7 problems, but claims that upstream 1.2.2p3 (in sid) fixed 5 of them. The remaining 2 are: 5) Missing CSRF (Cross-Site Request Forgery) token allows execution of

Processed: Re: Bug#774213: zope2.13: import zope.security._proxy - SystemError: dynamic module not initialized properly

2015-01-09 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: reopen 774213 Bug #774213 {Done: Barry Warsaw ba...@debian.org} [zope2.13] zope2.13: import zope.security._proxy - SystemError: dynamic module not initialized properly Bug reopened Ignoring request to alter fixed versions of bug #774213 to the

Bug#774213: zope2.13: import zope.security._proxy - SystemError: dynamic module not initialized properly

2015-01-09 Thread Kirill Smelkov
reopen 774213 thanks On Wed, Jan 07, 2015 at 01:08:33PM -0500, Barry Warsaw wrote: On Dec 30, 2014, at 02:32 PM, Kirill Smelkov wrote: Package: zope2.13 Version: 2.13.22-1 Severity: grave Justification: renders package unusable With zope2.13 I've tried to create a (user) instance and

Bug#774748: #774748: ruby-redcloth: CVE-2012-6684

2015-01-09 Thread Christian Hofstaedtler
AFAICT there is no publicly available patch, and upstream is more or less dead. Redmine's patched redcloth3 looks very different from the current redcloth 4.x sources, so I have my doubts if forward porting this is feasible. Suggestions welcome. -- ,''`. Christian Hofstaedtler

Bug#774788: [PKG-Openstack-devel] Bug#774788: neutron-metadata-agent overwrites config on update

2015-01-09 Thread Thomas Goirand
On 01/09/2015 03:13 PM, Benedikt Trefzer wrote: Hi Thomas Well the commit http://anonscm.debian.org/cgit/openstack/neutron.git/commit/?id=5c17e246c7e1ed00a7f58ba1be98ab0185d25b81 mentioned does definitly not solve the bug. Though if I understand it correctly, this patch also means, that

Bug#775005: [macchanger] MAC randomization doesn't generate a random MAC

2015-01-09 Thread Maximilian Engelhardt
Package: macchanger Version: 1.7.0-3.2 Severity: grave Trying to randomize the MAC address of an interface toggles between two MAC addresses instead of setting a random MAC address. See the following example: $ macchanger -A wlan8 Current MAC: 00:05:01:98:56:c3 (CISCO SYSTEMS, INC.) Permanent

Bug#767028: ovirt-guest-agent: fails to install

2015-01-09 Thread GCS
On Sun, Nov 16, 2014 at 5:13 PM, Holger Levsen hol...@layer-acht.org wrote: On Sonntag, 16. November 2014, László Böszörményi (GCS) wrote: Sure, it doesn't install on hosts and it'll be fixed. As the package name reveals, it's an oVirt agent for _guests_ and not meant for hosts. so what?

Bug#774437: ovirt-guest-agent: fails in preinst due to hardcoded uid and gid values

2015-01-09 Thread GCS
On Fri, Jan 2, 2015 at 8:33 PM, Cameron Norman camerontnor...@gmail.com wrote: It hardcodes them as 175. The uid was not taken, but the gid was so the package installation failed. Funnily enough, I was trying to fix #767028 at the time. Can you confirm that #767028 happens due to udevadm

Bug#766795: afterstep binnmu related issues

2015-01-09 Thread Robert Luberda
Niels Thykier writes: * I discovered that afterstep was uninstallable and not binnmu safe and filed a bug. Yes, Peter discovered that afterstep 2.2.12+b2 was uninstallable indeed. * The maintainer of the afterstep package blamed debhelper and reassigned and merged my bug. Yes, as there

Processed: Re: Bug#774954: ha: directory traversal vulnerabilities

2015-01-09 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: package ha Limiting to bugs with field 'package' containing at least one of 'ha' Limit currently set to 'package':'ha' severity 774954 grave Bug #774954 [ha] ha: directory traversal vulnerabilities Severity set to 'grave' from 'normal' tag

Bug#774954: Fwd: Re: Bug#774954: ha: directory traversal vulnerabilities

2015-01-09 Thread Mikhail Gusarov
package ha severity 774954 grave tag 774954 +help thanks ha is susceptible to directory traversal vulnerabilities. While extracting an archive, it will happily use absolute and relative paths taken from the archive. This can be exploited by a malicious archive to write files outside the

Bug#774952: marked as done (heat-common: fails to install: subprocess installed post-installation script returned error exit status 10)

2015-01-09 Thread Debian Bug Tracking System
Your message dated Fri, 09 Jan 2015 22:48:34 + with message-id e1y9im6-eq...@franck.debian.org and subject line Bug#774952: fixed in heat 2014.1.3-6 has caused the Debian Bug report #774952, regarding heat-common: fails to install: subprocess installed post-installation script returned

Bug#774437: ovirt-guest-agent: fails in preinst due to hardcoded uid and gid values

2015-01-09 Thread Cameron Norman
On Fri, Jan 9, 2015 at 12:03 PM, László Böszörményi (GCS) g...@debian.org wrote: On Fri, Jan 2, 2015 at 8:33 PM, Cameron Norman camerontnor...@gmail.com wrote: It hardcodes them as 175. The uid was not taken, but the gid was so the package installation failed. Funnily enough, I was trying to

Processed (with 2 errors): user debian...@lists.debian.org, affects 774889, affects 771755, unarchiving 767561 ...

2015-01-09 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: user debian...@lists.debian.org Setting user to debian...@lists.debian.org (was a...@debian.org). affects 774889 + xfswitch-plugin Bug #774889 [gdm3] gdm3: fails to upgrade squeeze - wheezy - jessie - trying to overwrite

Processed: retitle 758883 to check-mk: CVE-2014-5338 CVE-2014-5339 CVE-2014-5340

2015-01-09 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: retitle 758883 check-mk: CVE-2014-5338 CVE-2014-5339 CVE-2014-5340 Bug #758883 [src:check-mk] check-mk: CVE-2014-5339 CVE-2014-5340 Changed Bug title to 'check-mk: CVE-2014-5338 CVE-2014-5339 CVE-2014-5340' from 'check-mk: CVE-2014-5339

Bug#774592: marked as done (evolution-mapi: FTBFS: missing dependency on libebook1.2-dev)

2015-01-09 Thread Debian Bug Tracking System
Your message dated Fri, 09 Jan 2015 21:20:20 + with message-id e1y9gyi-0005tw...@franck.debian.org and subject line Bug#774592: fixed in evolution-mapi 3.12.7-2 has caused the Debian Bug report #774592, regarding evolution-mapi: FTBFS: missing dependency on libebook1.2-dev to be marked as

Bug#773846: marked as done (exiv2: CVE-2014-9449: buffer overflow in RiffVideo::infoTagsHandler)

2015-01-09 Thread Debian Bug Tracking System
Your message dated Fri, 09 Jan 2015 21:20:33 + with message-id e1y9gyv-0005w1...@franck.debian.org and subject line Bug#773846: fixed in exiv2 0.24-4.1 has caused the Debian Bug report #773846, regarding exiv2: CVE-2014-9449: buffer overflow in RiffVideo::infoTagsHandler to be marked as done.

Bug#774998: Kerberos login to SSH based session broker non-functional

2015-01-09 Thread Mike Gabriel
Package: x2goclient Severity: grave Version: 4.0.3.1-2 Tags: patch Hi, we (X2Go upstream) just discovered a severe breakage in X2Go Client. The SSH GSSAPI code obviously had never been tested with an SSH session broker. When starting X2Go Client with the below command x2goclient

Bug#774938: marked as done (fte-terminal, fte-xwindow: unhandled symlink to directory conversion: /usr/share/doc/PACKAGE)

2015-01-09 Thread Debian Bug Tracking System
Your message dated Fri, 09 Jan 2015 11:33:25 + with message-id e1y9xoj-0001jq...@franck.debian.org and subject line Bug#774938: fixed in fte 0.50.2b6-2 has caused the Debian Bug report #774938, regarding fte-terminal, fte-xwindow: unhandled symlink to directory conversion:

Processed: Re: Bug#771071: [cyrus-imapd-2.4] Missing separator breaks configure parameters

2015-01-09 Thread Debian Bug Tracking System
Processing control commands: notfound -1 cyrus-imapd-2.4/2.4.16-4 Bug #771071 {Done: Ondřej Surý ond...@debian.org} [cyrus-imapd-2.4] [cyrus-imapd-2.4] Missing separator breaks configure parameters No longer marked as found in versions cyrus-imapd-2.4/2.4.16-4. notfound -1

Bug#771071: [cyrus-imapd-2.4] Missing separator breaks configure parameters

2015-01-09 Thread Andreas Beckmann
Control: notfound -1 cyrus-imapd-2.4/2.4.16-4 Control: notfound -1 cyrus-imapd-2.4/2.4.16-4+deb7u2 On 2015-01-09 12:35, Ondřej Surý wrote: you have marked this bug as found in cyrus-imapd-2.4/2.4.16-4, cyrus-imapd-2.4/2.4.16-4+deb7u2. I have checked the source package and the bug is not

Bug#774951: fatal error: magick/MagickCore.h: No such file or directory

2015-01-09 Thread Mathieu Malaterre
Package: libmagickcore-dev Version: 8:6.8.9.9-3 Severity: grave Sorry about the severity at this point in the freeze, but I think something went wrong with the `/usr/include/ImageMagick` symlink. Eg. On wheezy (see attached file): $ gcc -I/usr/include/ImageMagick t.c - ok ! On jessie: $ gcc

Bug#774952: heat-common: fails to install: subprocess installed post-installation script returned error exit status 10

2015-01-09 Thread Andreas Beckmann
Package: heat-common Version: 2014.1.3-5 Severity: serious User: debian...@lists.debian.org Usertags: piuparts Hi, during a test with piuparts I noticed your package failed to install. As per definition of the release team this makes the package too buggy for a release, thus the severity. From

Bug#774788: [PKG-Openstack-devel] Bug#774788: neutron-metadata-agent overwrites config on update

2015-01-09 Thread Benedikt Trefzer
Hi Thomas Well the commit http://anonscm.debian.org/cgit/openstack/neutron.git/commit/?id=5c17e246c7e1ed00a7f58ba1be98ab0185d25b81 mentioned does definitly not solve the bug. Though if I understand it correctly, this patch also means, that if installation is made interactivly, the user is

Bug#774854: fex Vcs-Browser URL

2015-01-09 Thread Andreas Beckmann
Hi Kilian, while checking the pending patch I noticed the wrong Vcs-Browser URL in fex, it should be http://anonscm.debian.org/cgit/collab-maint/fex.git Since git/master already has a new upstream version, the fix for #774854 needs to be picked into a jessie

Bug#774919: nettle-dbg: copyright file missing after upgrade (policy 12.5)

2015-01-09 Thread Magnus Holmgren
fredagen den 9 januari 2015 13.58.28 skrev Helmut Grohne: On Fri, Jan 09, 2015 at 04:24:45AM +0100, Andreas Beckmann wrote: 1m7.4s ERROR: WARN: Inadequate results from running adequate! nettle-dbg: missing-copyright-file /usr/share/doc/nettle-dbg/copyright This likely is an

Bug#774919: nettle-dbg: copyright file missing after upgrade (policy 12.5)

2015-01-09 Thread Helmut Grohne
On Fri, Jan 09, 2015 at 04:24:45AM +0100, Andreas Beckmann wrote: 1m7.4s ERROR: WARN: Inadequate results from running adequate! nettle-dbg: missing-copyright-file /usr/share/doc/nettle-dbg/copyright This likely is an unintended(!) conversion from directory to symlink. I believe that this is a

Processed: jessie

2015-01-09 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: tags 774366 + sid jessie Bug #774366 [ploader] ploader: Fails to log in with Can't locate object method ParseDate via package Wx::DateTime Added tag(s) sid and jessie. tags 774873 + sid jessie Bug #774873 [openjdk-7-jre-headless] Circular

Bug#774951: marked as done (fatal error: magick/MagickCore.h: No such file or directory)

2015-01-09 Thread Debian Bug Tracking System
Your message dated Fri, 9 Jan 2015 13:52:56 +0100 with message-id CA+7wUswBgyqtokGGsz9NkgrKzQwFiqiA8796Fq=sxbvvuyd...@mail.gmail.com and subject line has caused the Debian Bug report #774951, regarding fatal error: magick/MagickCore.h: No such file or directory to be marked as done. This means

Bug#774873: Dependencies are not always configured before the depending package, since 9ee62ec

2015-01-09 Thread Iain Lane
reassign 774873 openjdk-7-jre-headless retitle 774873 Circular dependency in java-headless packages thanks Hey, On Thu, Jan 08, 2015 at 05:27:54PM +0100, Guillem Jover wrote: […] The problem here is that there's a dependency cycle and dpkg breaks it now in a different place due to the change

Processed: Re: Bug#774873: Dependencies are not always configured before the depending package, since 9ee62ec

2015-01-09 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: reassign 774873 openjdk-7-jre-headless Bug #774873 [dpkg] Dependencies are not always configured before the depending package, since 9ee62ec Bug reassigned from package 'dpkg' to 'openjdk-7-jre-headless'. No longer marked as found in versions

Bug#774938: fte-terminal, fte-xwindow: unhandled symlink to directory conversion: /usr/share/doc/PACKAGE

2015-01-09 Thread Andreas Beckmann
Package: fte-terminal,fte-xwindow Version: 0.50.2b6-1 Severity: serious User: debian...@lists.debian.org Usertags: piuparts Hi, an upgrade test with piuparts revealed that your package installs files over existing symlinks and possibly overwrites files owned by other packages. This usually means

Bug#774924: apt: Jessie version cannot find upgrade path (but Wheezy version can)

2015-01-09 Thread David Kalnischkies
On Fri, Jan 09, 2015 at 09:01:00AM +0100, Niels Thykier wrote: In the dpkg + APT first run[2], APT ends up concluding that login should be removed and aborts as it refuses the uninstall an essential package. In the regular run[1], the login package is (eventually) upgraded without any

Processed: wheezy-ignore

2015-01-09 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: tags 766795 + wheezy-ignore Bug #766795 [debhelper] afterstep not binnmu safe Added tag(s) wheezy-ignore. # as discussed on #-release End of message, stopping processing here. Please contact me if you need assistance. -- 766795: