Bug#778668: suricata and libhtp-dev: error when trying to install together

2015-02-18 Thread Ralf Treinen
Package: libhtp-dev,suricata Version: libhtp-dev/0.5.15-1 Version: suricata/2.0.6-1 Severity: serious User: trei...@debian.org Usertags: edos-file-overwrite Date: 2015-02-18 Architecture: amd64 Distribution: sid Hi, automatic installation tests of packages that share a file and at the same time

Bug#759530: libc-bin: ldconfig breaks a system

2015-02-18 Thread Niels Thykier
Hi, Could this bug be caused by a corrupt aux-cache[1] (possibly, in addition to a corrupt ld.so.cache)? A bit of google searching suggests that a broken aux-cache can cause ldconfig to seg. fault. With the ld.so.cache itself being corrupt (or sufficiently outdated?), both ldconfig and most

Bug#778669: mediatomb allows anyone to browse and export the whole filesystem

2015-02-18 Thread Olivier Le Thanh Duong
Package: mediatomb-daemon Version: 0.12.1-4 Severity: grave Tag: security This is a regression of the bug that was fixed in #580120, but somehow the patch applied got revert. Anyone can list and download all the file accessible to the mediatomb user via the daemon web interface, which is binded

Processed (with 1 errors): unarchiving 580120, reopening 580120, found 580120 in 0.12.0~svn2018-6 ..., found 580120 in 0.12.1-4

2015-02-18 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: unarchive 580120 reopen 580120 Bug #580120 {Done: Alexander Reichle-Schmehl toli...@debian.org} [mediatomb] mediatomb allows anyone to browse and export the whole filesystem 'reopen' may be inappropriate when a bug has been closed with a

Bug#778302: MATE: Default file browser for Places submenu indeterministically set to applications that are not Caja

2015-02-18 Thread Philipp Pilhofer
Am 13.02.2015 um 12:48 schrieb Mike Gabriel: Happy about opinions and feedback. Thanks! I have been installing two laptops with vanilla mate + jessie, and found more similar issues. I don't know if it's worth opening new threads for each. For example, I did install vim and now plain text

Bug#778374: [php-maint] Bug#778374: Bug#778374: [pkg-horde] Bug#778374: php5 5.6.5 fully breaks Horde packages in Debian jessie

2015-02-18 Thread Ondřej Surý
On Tue, Feb 17, 2015, at 20:52, David Prévot wrote: P.-S.: getting in touch with the people running ci.d.n may be worth it to help track possible regressions in the future (by running a specific instance of tests with a new PHP version before uploading it to stable). Thanks for the tip, that

Processed: unarchiving 580120

2015-02-18 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: unarchive 580120 Bug #580120 {Done: Alexander Reichle-Schmehl toli...@debian.org} [mediatomb] mediatomb allows anyone to browse and export the whole filesystem Unarchived Bug 580120 thanks Stopping processing here. Please contact me if you need

Bug#778674: apt-p2p: fails to start (throws exception)

2015-02-18 Thread Tomasz Buchert
Package: apt-p2p Version: 0.1.7 Severity: grave Justification: renders package unusable Hi, I wanted to test apt-p2p and noticed that it won't even start: [ ~ ] $ sudo apt-p2p [sudo] password for toma: 2015-02-18 11:47:31+0100 [-] Log opened. 2015-02-18 11:47:31+0100 [-] Loading config files:

Bug#778668: marked as done (suricata and libhtp-dev: error when trying to install together)

2015-02-18 Thread Debian Bug Tracking System
Your message dated Wed, 18 Feb 2015 10:33:38 + with message-id e1yo1wo-0008ru...@franck.debian.org and subject line Bug#778668: fixed in suricata 2.0.6-2 has caused the Debian Bug report #778668, regarding suricata and libhtp-dev: error when trying to install together to be marked as done.

Bug#778695: wheezy - jessie: no gdm3 prompt, dependency loops and broken initrd

2015-02-18 Thread Antoine Beaupré
Package: upgrade-reports Severity: grave This is the third jessie upgrade I perform from jessie. The previous one was documented in #774314. It seems that the dependency loop problems are still there, and there were so many problems with the upgrade that I don't believe it would be right to

Bug#778699: Vidalia should not be part of Jessie

2015-02-18 Thread intrigeri
Package: vidalia Version: 0.2.21-5 Severity: serious Vidalia has been dead upstream for years, and has a crapload of bugs nobody will ever fix. The Tor Project is currently actively removing any reference to Vidalia from their website. We're not even sure if it's in good shape in Jessie, e.g.

Bug#778697: libparted2: error on opening with regard to RAID member devices

2015-02-18 Thread jnqnfe
Package: libparted2 Severity: grave With a 'fake RAID' RAID0 device constructed using motherboard firmware, which has a GPT partitioning table setup using fdisk (gparted failed me - see #778683), opening gparted now results in errors in relation to the RAID member disks. Specifically, I firstly

Bug#778697: libparted2: error on opening with regard to RAID member devices

2015-02-18 Thread jnqnfe
These errors actually disappeared after a reboot :/ ... I guess that means I should have refreshed something, or fdisk should have refreshed something, and thus this can be closed? -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble?

Processed: user debian-secur...@lists.debian.org, usertagging 777722 ...

2015-02-18 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: user debian-secur...@lists.debian.org Setting user to debian-secur...@lists.debian.org (was car...@debian.org). usertags 22 + tracked Usertags were: tracked. Usertags are now: tracked. retitle 22 xdg-open: CVE-2015-1877: command

Bug#776137: sudo: fails to switch between sudo and sudo-ldap: chown: cannot access '/etc/sudoers': No such file or directory

2015-02-18 Thread Christian Kastner
Hi, On 2015-02-07 01:02, Christian Kastner wrote: I've looked into this now, and I believe that the --compare-versions issue and the chown/chmod issue is all there is to this bug. I have attached a new debdiff (v2) with fixes for both. I have tested this patch in a number of combinations,

Bug#778697: marked as done (libparted2: error on opening with regard to RAID member devices)

2015-02-18 Thread Debian Bug Tracking System
Your message dated Wed, 18 Feb 2015 14:17:36 -0500 with message-id 54e4e550.1060...@ubuntu.com and subject line Re: Bug#778697: libparted2: error on opening with regard to RAID member devices has caused the Debian Bug report #778697, regarding libparted2: error on opening with regard to RAID

Bug#778655: doxygen: Doxygen should not enable markdown by default

2015-02-18 Thread Helmut Grohne
Control: tags -1 + moreinfo Hi Ron, Duplicating a bit of our discussion here for keeping track of it. On Wed, Feb 18, 2015 at 09:58:25AM +1030, Ron wrote: So doxygen 1.8 added support for interpreting markdown, and it does this in all normal comment blocks before applying the normal doxygen

Bug#768945: marked as done (busybox lzo implementation suffers from CVE-2014-4607 flaw)

2015-02-18 Thread Debian Bug Tracking System
Your message dated Wed, 18 Feb 2015 21:20:16 + with message-id e1yoc2a-0002t9...@franck.debian.org and subject line Bug#768945: fixed in busybox 1:1.22.0-9+deb8u1 has caused the Debian Bug report #768945, regarding busybox lzo implementation suffers from CVE-2014-4607 flaw to be marked as

Bug#776137: sudo: fails to switch between sudo and sudo-ldap: chown: cannot access '/etc/sudoers': No such file or directory

2015-02-18 Thread Bdale Garbee
Christian Kastner deb...@kvr.at writes: Bdale, once such a confirmation (or another fix) is in, how would you like to proceed? I could help with the RT communication again Sure. I'm willing to merge a patch and do uploads, but need to know which path they want me to use since the sudo in

Bug#778712: libparted2: Breakage of RAID GPT header

2015-02-18 Thread Phillip Susi
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 2/18/2015 4:05 PM, jnqnfe wrote: Background = I have a 'fake-raid' RAID0 array, created from two HDDs using my motherboard firmware. This is not used for root, just data. FYI, unless you have to dual boot with windows, you

Processed: Re: Bug#778655: doxygen: Doxygen should not enable markdown by default

2015-02-18 Thread Debian Bug Tracking System
Processing control commands: tags -1 + moreinfo Bug #778655 [doxygen] doxygen: Doxygen should not enable markdown by default Added tag(s) moreinfo. -- 778655: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=778655 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems -- To

Bug#778712: libparted2: Breakage of RAID GPT header

2015-02-18 Thread jnqnfe
Package: libparted2 Version: 3.2-6 Severity: grave libparted2 breaks my RAID GPT header! There appears to be a disagreement between parted and fdisk as to the correct size. fdisk is happy after creating a GPT partition table, but parted is not and seems to be forcibly applying what it believes

Bug#776137: sudo: fails to switch between sudo and sudo-ldap: chown: cannot access '/etc/sudoers': No such file or directory

2015-02-18 Thread Christian Kastner
On 2015-02-18 22:32, Bdale Garbee wrote: Christian Kastner deb...@kvr.at writes: Bdale, once such a confirmation (or another fix) is in, how would you like to proceed? I could help with the RT communication again Sure. I'm willing to merge a patch and do uploads, but need to know which

Bug#778712: libparted2: Breakage of RAID GPT header

2015-02-18 Thread jnqnfe
On Wed, 2015-02-18 at 16:35 -0500, Phillip Susi wrote: On 2/18/2015 4:05 PM, jnqnfe wrote: Background = I have a 'fake-raid' RAID0 array, created from two HDDs using my motherboard firmware. This is not used for root, just data. FYI, unless you have to dual boot with

Bug#778733: marked as done (bind9: CVE-2015-1349 named crash)

2015-02-18 Thread Debian Bug Tracking System
Your message dated Thu, 19 Feb 2015 04:33:42 + with message-id e1yoio2-0004pk...@franck.debian.org and subject line Bug#778733: fixed in bind9 1:9.9.5.dfsg-9 has caused the Debian Bug report #778733, regarding bind9: CVE-2015-1349 named crash to be marked as done. This means that you claim

Processed: tagging 778375

2015-02-18 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: tags 778375 + patch Bug #778375 [apt-transport-https] apt-transport-https: segfaults Added tag(s) patch. thanks Stopping processing here. Please contact me if you need assistance. -- 778375:

Processed: tagging 778375

2015-02-18 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: tags 778375 - unreproducible Bug #778375 [apt-transport-https] apt-transport-https: segfaults Removed tag(s) unreproducible. thanks Stopping processing here. Please contact me if you need assistance. -- 778375:

Bug#777341: marked as done (qtbase-opensource-src: libopenvg1-mesa-dev is no longer built by mesa)

2015-02-18 Thread Debian Bug Tracking System
Your message dated Thu, 19 Feb 2015 04:20:19 + with message-id e1yoib5-0002ia...@franck.debian.org and subject line Bug#777341: fixed in qtbase-opensource-src 5.4.0+dfsg-5 has caused the Debian Bug report #777341, regarding qtbase-opensource-src: libopenvg1-mesa-dev is no longer built by mesa

Processed: Re: Bug#776816: Acknowledgement (firmware-realtek: fails to connect after a few suspends (or some uptime?))

2015-02-18 Thread Debian Bug Tracking System
Processing control commands: severity -1 grave Bug #776816 [firmware-realtek] firmware-realtek: fails to connect after a few suspends (or some uptime?) Severity set to 'grave' from 'normal' fixed -1 0.36+wheezy.1 Bug #776816 [firmware-realtek] firmware-realtek: fails to connect after a few

Processed: user debian-secur...@lists.debian.org, usertagging 778733, tagging 778733 ...

2015-02-18 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: user debian-secur...@lists.debian.org Setting user to debian-secur...@lists.debian.org (was car...@debian.org). usertags 778733 + tracked There were no usertags set. Usertags are now: tracked. tags 778733 + upstream fixed-upstream Bug #778733

Bug#778712: libparted2: Breakage of RAID GPT header

2015-02-18 Thread Phillip Susi
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 02/18/2015 05:15 PM, jnqnfe wrote: Then you need to only manipulate md126 and ignore sdb and sdc. Most of what you seem to be reporting involves looking directly at the individual disks, which you must not do as that will present a

Processed: Re: Bug#760998: Acknowledgement (network-manager: auto restarts)

2015-02-18 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: severity 760998 serious Bug #760998 [network-manager] network-manager: auto restarts Severity set to 'serious' from 'normal' thanks Stopping processing here. Please contact me if you need assistance. -- 760998:

Processed: tagging 778674

2015-02-18 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: tags 778674 + confirmed Bug #778674 [apt-p2p] apt-p2p: fails to start (throws exception) Added tag(s) confirmed. thanks Stopping processing here. Please contact me if you need assistance. -- 778674:

Processed: tagging 778669

2015-02-18 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: tags 778669 + security Bug #778669 [mediatomb-daemon] mediatomb allows anyone to browse and export the whole filesystem Added tag(s) security. thanks Stopping processing here. Please contact me if you need assistance. -- 778669:

Processed: found 777722 in 1.0.2+cvs20100307-2

2015-02-18 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: found 22 1.0.2+cvs20100307-2 Bug #22 [xdg-utils] xdg-open: another command injection vulnerability Marked as found in versions xdg-utils/1.0.2+cvs20100307-2. thanks Stopping processing here. Please contact me if you need assistance. --

Bug#777722: xdg-open: another command injection vulnerability

2015-02-18 Thread Salvatore Bonaccorso
Hi, On Wed, Feb 11, 2015 at 11:10:24PM +0100, Jiri Horner wrote: Problem is caused by name collision in local variables, which are apparently not very local in this case (maybe also dash problem?) Just an additional comment on this: It looks actually as intended that the initial value is

Bug#778642: [Pkg-xfce-devel] Bug#778642: xfce4-power-manager-plugins: Serious memory leak in libxfce4powermanager.so

2015-02-18 Thread Yves-Alexis Perez
control: severity -1 import control: tag -1 unreproducible moreinfo On mar., 2015-02-17 at 13:28 -0600, John Goerzen wrote: Package: xfce4-power-manager-plugins Version: 1.4.1-1 Severity: critical This package has caused my system to hang on multiple occasions. Right now, I am seeing

Processed (with 1 errors): Re: [Pkg-xfce-devel] Bug#778642: xfce4-power-manager-plugins: Serious memory leak in libxfce4powermanager.so

2015-02-18 Thread Debian Bug Tracking System
Processing control commands: severity -1 import Severity level `import' is not known. Recognized are: critical, grave, serious, important, normal, minor, wishlist, fixed. tag -1 unreproducible moreinfo Bug #778642 [xfce4-power-manager-plugins] xfce4-power-manager-plugins: Serious memory leak

Bug#778654: marked as done (FTBFS on various architectures, test-sigbus and test-utf8 failures)

2015-02-18 Thread Debian Bug Tracking System
Your message dated Wed, 18 Feb 2015 15:20:07 + with message-id e1yo6q3-0001aa...@franck.debian.org and subject line Bug#778654: fixed in systemd 219-2 has caused the Debian Bug report #778654, regarding FTBFS on various architectures, test-sigbus and test-utf8 failures to be marked as done.

Processed: severity of 778642 is important

2015-02-18 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: severity 778642 important Bug #778642 [xfce4-power-manager-plugins] xfce4-power-manager-plugins: Serious memory leak in libxfce4powermanager.so Severity set to 'important' from 'critical' thanks Stopping processing here. Please contact me if

Processed: notfound 777581 in 1:3.5-9, found 777581 in 1:3.6~+rc2-2, notfound 777582 in 1:3.5-9 ...

2015-02-18 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: notfound 777581 1:3.5-9 Bug #777581 [python-clang-3.6,python-clang-3.7] python-clang-3.7 and python-clang-3.6: error when trying to install together There is no source info for the package 'python-clang-3.6' at version '1:3.5-9' with

Bug#763148: Prevent migration to jessie

2015-02-18 Thread Paul Elliott
Just to see what the fuss was about, and because I wanted to use ffmpeg, I grabbed the unstable source and tried to build with sbuild -d testing. I got an undefied dependancy on libx265-dev. Sure enough I checked debian packages and libx265-dev is in unstable but not testing. I am testing,

Bug#776913: marked as done (flightgear-data-all: new upstream version needed by flightgear/experimental)

2015-02-18 Thread Debian Bug Tracking System
Your message dated Wed, 18 Feb 2015 23:25:24 + with message-id e1yodzg-0002kl...@franck.debian.org and subject line Bug#776913: fixed in flightgear-data 3.4.0+dfsg-0~exp1 has caused the Debian Bug report #776913, regarding flightgear-data-all: new upstream version needed by

Bug#763148: Prevent migration to jessie

2015-02-18 Thread Timothy Gu
Hi Paul, It's more like the other way around. Because it is determined that ffmpeg won't get into Jessie, we make no effort of making it work on Jessie. You can however try cloning the source repo and manually disabling x265 support, and it should work (assuming all other dependencies are

Bug#778626: marked as done (broadcom-sta-dkms: Module build ... was skipped)

2015-02-18 Thread Debian Bug Tracking System
Your message dated Thu, 19 Feb 2015 07:38:03 +0400 with message-id 4523495.uRMXBuOhti@yack and subject line Close has caused the Debian Bug report #778626, regarding broadcom-sta-dkms: Module build ... was skipped to be marked as done. This means that you claim that the problem has been dealt

Bug#778733: bind9: CVE-2015-1349 named crash

2015-02-18 Thread Michael Gilbert
package: src:bind9 severity: serious tags: security A new security issue was disclosed for bind9: https://security-tracker.debian.org/tracker/CVE-2015-1349 -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact

Bug#777722: xdg-open: another command injection vulnerability

2015-02-18 Thread Michael Gilbert
On Wed, Feb 18, 2015 at 9:13 AM, Salvatore Bonaccorso wrote: Hi, On Wed, Feb 11, 2015 at 11:10:24PM +0100, Jiri Horner wrote: Problem is caused by name collision in local variables, which are apparently not very local in this case (maybe also dash problem?) Just an additional comment on