Bug#986675: unblock: puppet/5.5.22-2

2021-04-09 Thread Thomas Goirand
5 DDs) appreciate if the patch could be included in Bullseye, and probably the DSA team (who's using puppet a lot) will appreciate it as well. Debdiff attached (it's a *very* small patch). Please unblock puppet/5.5.22-2. Cheers, Thomas Goirand (zigo) diff -Nru puppet-5.5.22/debian/changelog

Bug#986199: unblock: python-oslo.cache/2.6.2-1

2021-03-31 Thread Thomas Goirand
. The relevant part of upstream code is just this: +if dogpile.__version__ >= '1.1.2': +_backend_choices.append('dogpile.cache.pymemcache') the rest of the debdiff is just distraction. Please unblock python-oslo.cache/2.6.2-1. Cheers, Thomas Goirand (zigo) diff -Nru python-oslo.cache-2.6.1/deb

Bug#986198: unblock: python-oslo.messaging/12.5.2-1

2021-03-31 Thread Thomas Goirand
the .py upstream source code change is relevant to read in the attached debdiff (the rest of is upstream CI configuration). Please unblock python-oslo.messaging/12.5.2-1. Cheers, Thomas Goirand (zigo) diff -Nru python-oslo.messaging-12.5.1/debian/changelog python-oslo.messaging-12.5.2/debian

Bug#986158: unblock: python-oslo.serialization/4.0.2-1

2021-03-30 Thread Thomas Goirand
@@ -1,3 +1,9 @@ +python-oslo.serialization (4.0.2-1) unstable; urgency=medium + + * New upstream release. + + -- Thomas Goirand Tue, 30 Mar 2021 16:51:52 +0200 + python-oslo.serialization (4.0.1-2) unstable; urgency=medium * Uploading to unstable. diff -Nru python-oslo.serialization-4.0.1

Bug#986146: unblock: rabbitmq-server/3.8.9-2

2021-03-30 Thread Thomas Goirand
: #947873). + * Use logrotate daily instead of weekly, and do not override the number of +logs, so we don't keep too much of them. + * Do not use a sharedscripts, as rabbitmq-server detects the log rotation +by itself (LP: #1921425). + + -- Thomas Goirand Fri, 26 Mar 2021 14:24:52 +0100

Bug#986138: unblock: octavia/7.1.0-2

2021-03-30 Thread Thomas Goirand
also includes a slightly modified uwsgi configuration file to improve performances of the octavia-api (though I don't think this is very controvertial). Please unblock octavia/7.1.0-2 to fix the agent. Cheers, Thomas Goirand (zigo)

Bug#983110: buster-pu: package ipmitool/1.8.18-6 (CVE-2020-5208)

2021-03-27 Thread Thomas Goirand
On 3/26/21 9:24 AM, Salvatore Bonaccorso wrote: > Hi Thomas, > > On Wed, Mar 17, 2021 at 07:01:35PM +, Adam D. Barratt wrote: >> Control: tags -1 + confirmed >> >> On Sat, 2021-02-20 at 22:43 +0100, Thomas Goirand wrote: >>> On 2/19/21 8:38 PM, Sal

Bug#985885: unblock: ceph/14.2.18-1 (CVE-2020-27839)

2021-03-25 Thread Thomas Goirand
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package ceph This is the point release of the 14.2.x series from upstream, which includes a fix for CVE-2020-27839 (XSS in the dashboard). I didn't even atempted to build a

Bug#985818: unblock: swift/2.26.0-9

2021-03-24 Thread Thomas Goirand
uction, so it seems to do the trick. Note that thanks to uwsgi, the performances is still ok. Debdiff attached. Sorry that it had to be a follow-up to this bug. Cheers, Thomas Goirand (zigo) diff -Nru swift-2.26.0/debian/changelog swift-2.26.0/debian/changelog --- swift-2.26.0/debian/changelog

Bug#985818: unblock: swift/2.26.0-9

2021-03-24 Thread Thomas Goirand
attached. Please unblock swift/2.26.0-9 Cheers, Thomas Goirand (zigo) diff -Nru swift-2.26.0/debian/changelog swift-2.26.0/debian/changelog --- swift-2.26.0/debian/changelog 2021-02-23 14:11:16.0 +0100 +++ swift-2.26.0/debian/changelog 2021-03-24 10:12:53.0 +0100 @@ -1,3

Bug#985789: unblock: openstack-debian-images/1.58

2021-03-23 Thread Thomas Goirand
se unblock openstack-debian-images/1.58 Cheers, Thomas Goirand (zigo) diff -Nru openstack-debian-images-1.57/build-openstack-debian-image openstack-debian-images-1.58/build-openstack-debian-image --- openstack-debian-images-1.57/build-openstack-debian-image 2021-02-19 14:41:23.0 +0100 +++

Bug#985431: unblock: cloudkitty/13.0.0-5

2021-03-18 Thread Thomas Goirand
, and therefore, it makes it impossible to rate customers. The patch simply disables the rating role feature, and every project/tenant in the deployment gets rated by cloudkitty. unblock cloudkitty/13.0.0-5 Cheers, Thomas Goirand (zigo) Description: Rate everyone The Keystone fetcher looks

Bug#985430: unblock: ceilometer/1:15.0.0-1->1:15.0.0-3

2021-03-18 Thread Thomas Goirand
the copy of the file from /usr/share). So this is mostly cosmetic, but I still think it's important. Debdiff attached. Cheers, Thomas Goirand (zigo) diff --git a/debian/changelog b/debian/changelog index 2bb3032e0..42289490c 100644 --- a/debian/changelog +++ b/debian/changelog @@ -1,3 +1,19

Bug#985206: unblock: puppet-module-puppetlabs-rabbitmq/8.5.0-6

2021-03-14 Thread Thomas Goirand
well explained above) also contains a patch refresh (un-fuzz line numbers), due to the change of the original patch, but no other change. Let me know if you still require a debdiff despite the (IMO) complete explanation above. So, please unblock puppet-module-puppetlabs-rabbitmq/8.5.0-6 to get the correct version detection in. Cheers, Thomas Goirand (zigo)

Bug#983110: buster-pu: package ipmitool/1.8.18-6 (CVE-2020-5208)

2021-02-20 Thread Thomas Goirand
g. I'll rebuild accordingly when I get the go-head from Adam or Julien. Cheers, Thomas Goirand (zigo)

Bug#983110: buster-pu: package ipmitool/1.8.18-6 (CVE-2020-5208)

2021-02-19 Thread Thomas Goirand
(Closes: #950761). + + -- Thomas Goirand Fri, 19 Feb 2021 11:30:06 +0100 + ipmitool (1.8.18-6) unstable; urgency=medium * debian/changelog: diff -Nru ipmitool-1.8.18/debian/patches/CVE-2020-5208_1_Fix_buffer_overflow_vulnerabilities.patch ipmitool-1.8.18/debian/patche

Re: Issues in OpenStack packages right now

2021-01-23 Thread Thomas Goirand
On 1/23/21 9:38 AM, Paul Gevers wrote: > Hi Thomas, > > On 23-01-2021 01:26, Thomas Goirand wrote: >> So I'm well aware that everything should have been working and been >> tested at this point in time, though all I'm asking is a bit (in >> advance) understan

Issues in OpenStack packages right now

2021-01-22 Thread Thomas Goirand
were kind of broken). So I'm well aware that everything should have been working and been tested at this point in time, though all I'm asking is a bit (in advance) understanding for the late fix which are probably coming. Your thoughts are very much welcome, Cheers, Thomas Goirand (zigo)

Bug#947351: buster-pu: package cloud-init/20.2-2+deb10u1

2020-07-02 Thread Thomas Goirand
cloud running the Buster release of OpenStack: Rocky), and it all works well. I haven't seen any problems in the cloud-init logs. I didn't run the official backport: I just did my own backport, then took the Debian official OpenStack raw image, mounted it, and upgraded cloud-init in the mounted chroot. I then recompressed the image into qcow2 and started. All went well... Cheers, Thomas Goirand (zigo)

Bug#961833: buster-pu: package openstack-debian-images/1.36

2020-06-08 Thread Thomas Goirand
On 5/30/20 2:10 AM, Thomas Goirand wrote: > Package: release.debian.org > Severity: normal > Tags: buster > User: release.debian@packages.debian.org > Usertags: pu > > Dear release team, > > tl;dr: if not using a DHCP to boot VMs, cloud-init would get the DNS >

Bug#961833: buster-pu: package openstack-debian-images/1.36

2020-05-29 Thread Thomas Goirand
ice to fix this (by adding the resolvconf package in the default OpenStack image, which implies fixing the openstack-debian-images in Buster). Your thoughts? Cheers, Thomas Goirand (zigo) >From 5a386303ba1ab60acd062c800d6bc16223483c08 Mon Sep 17 00:00:00 2001 From: Thomas Goirand Date: Sat, 30 M

Bug#944099: CVE-2019-14433 / OSSA-2019-003: buster-pu: package nova/2:18.1.0-6 -> 18.1.0-6+deb10u1

2020-04-26 Thread Thomas Goirand
On 4/26/20 5:06 PM, Julien Cristau wrote: > On Sun, Nov 24, 2019 at 10:06:51AM +0100, Thomas Goirand wrote: >> On 11/23/19 6:09 PM, Julien Cristau wrote: >>> Control: tag -1 moreinfo >>> >>> On Mon, Nov 04, 2019 at 11:53:52AM +0100, Thomas Goirand wrote: >>

Bug#948333: buster-pu: package frr/6.0.2-2

2020-04-26 Thread Thomas Goirand
On 4/26/20 4:06 PM, Adam D. Barratt wrote: > Control: tags -1 -moreinfo +confirmed > > On Sun, 2020-04-26 at 13:11 +0200, Thomas Goirand wrote: >> On 4/25/20 9:05 PM, Adam D. Barratt wrote: >>> Control: tags -1 + moreinfo >>> >>> On Tue, 2020-01-07 at 14

Bug#947142: buster-pu: package python-oslo.utils/3.36.4-2 CVE-2019-3866

2020-04-26 Thread Thomas Goirand
On 4/25/20 9:45 PM, Adam D. Barratt wrote: > Control: tags -1 + confirmed > > Apologies for the delay. > > On Sat, 2019-12-21 at 22:13 +0100, Thomas Goirand wrote: >> I'd like to update python-oslo.utils in Buster to address CVE-2019- >> 3866. >> It wasn't pos

Bug#948333: buster-pu: package frr/6.0.2-2

2020-04-26 Thread Thomas Goirand
On 4/25/20 9:05 PM, Adam D. Barratt wrote: > Control: tags -1 + moreinfo > > On Tue, 2020-01-07 at 14:05 +0100, Thomas Goirand wrote: >> On 1/7/20 2:01 PM, Thomas Goirand wrote: >>> As per the issue described here: >>> https://github.com/FRRouting/frr/issu

Bug#954269: buster-pu: package manila/1:7.0.0-1 CVE-2020-9543

2020-03-19 Thread Thomas Goirand
because guessing such an UUID isn't practical, and an operator would likely notice if one is attempting to brute-force. I still think it deserves patching Buster. Debdiff attached. Cheers, Thomas Goirand (zigo) diff -Nru manila-7.0.0/debian/changelog manila-7.0.0/debian/changelog --- manila-7.0.0

Bug#953246: buster-pu: package openvswitch/2.10.0+2018.08.28+git.8ca7c82b7d+ds1-12+deb10u1

2020-03-06 Thread Thomas Goirand
On 3/6/20 8:20 PM, Adam D. Barratt wrote: > Control: tags -1 + confimred > > On Fri, 2020-03-06 at 14:15 +0100, Thomas Goirand wrote: >> We experienced (in production) a bug in OVS which lead to ovs- >> vswitchd being killed, leading to network downtime in our Ope

Bug#953246: buster-pu: package openvswitch/2.10.0+2018.08.28+git.8ca7c82b7d+ds1-12+deb10u1

2020-03-06 Thread Thomas Goirand
is the fix. I wish to upload this update to Buster. On top of this upstream fix, a small typo fix in ifupdown.sh. Please let me upload openvswitch/2.10.0+2018.08.28+git.8ca7c82b7d+ds1-12+deb10u2 Cheers, Thomas Goirand (zigo) diff -Nru openvswitch-2.10.0+2018.08.28+git.8ca7c82b7d+ds1/debian/changelog

Bug#948333: buster-pu: package frr/6.0.2-2

2020-01-07 Thread Thomas Goirand
On 1/7/20 2:01 PM, Thomas Goirand wrote: > Package: release.debian.org > Severity: normal > Tags: buster > User: release.debian@packages.debian.org > Usertags: pu > > Dear release team, > > As per the issue described here: > https://github.com/FRRouting/frr/issu

Bug#948333: buster-pu: package frr/6.0.2-2

2020-01-07 Thread Thomas Goirand
the resulting debdiff, and opened the bug against the frr package itself. Please allow me to upload this fix to Buster, Cheers, Thomas Goirand (zigo) diff -Nru frr-6.0.2/debian/changelog frr-6.0.2/debian/changelog --- frr-6.0.2/debian/changelog 2019-02-04 22:16:07.0 +0100 +++ frr-6.0.2

Bug#945592: New debdiff

2019-12-31 Thread Thomas Goirand
Hi, Please find the new debdiff for this change, which is already in Sid/Testing. We still need to test this, I hope Kevko will be able to the upgrade tests. Cheers, Thomas Goirand (zigo) diff -Nru horizon-14.0.2/debian/changelog horizon-14.0.2/debian/changelog --- horizon-14.0.2/debian

Bug#947351: buster-pu: package cloud-init/18.3-6

2019-12-25 Thread Thomas Goirand
view, manually testing all of the above would be enough to make sure we don't upload a broken cloud-init to Buster. Note that this setup looks like already working under Testing right now. Best regards, Thomas Goirand (zigo)

Bug#947146: buster-pu: package python-mistral-lib/1.0.0-1 CVE-2019-3866

2019-12-22 Thread Thomas Goirand
On 12/21/19 11:34 PM, Salvatore Bonaccorso wrote: > Hi Thomas > > [Disclaimer: not part of the stable release managers, so this reply is > not authoritative] > > Thanks for handling CVE-2019-3866 for unstable and buster. > > On Sat, Dec 21, 2019 at 11:12:17PM +01

Bug#947146: buster-pu: package python-mistral-lib/1.0.0-1 CVE-2019-3866

2019-12-21 Thread Thomas Goirand
-lib/ Please allow me to upload: python-mistral-lib/1.0.0-1+deb10u1. Cheers, Thomas Goirand (zigo) diff -Nru python-mistral-lib-1.0.0/debian/changelog python-mistral-lib-1.0.0/debian/changelog --- python-mistral-lib-1.0.0/debian/changelog 2018-09-04 00:06:52.0 +0200 +++ python-mistral

Bug#947142: #947142: buster-pu: package python-oslo.utils/3.36.4-2 CVE-2019-3866 - https://bugs.debian.org/947142

2019-12-21 Thread Thomas Goirand
FYI, for reference, the package is built and available here: http://shade.infomaniak.ch/buster-pu/python-oslo.utils/

Bug#947142: buster-pu: package python-oslo.utils/3.36.4-2 CVE-2019-3866

2019-12-21 Thread Thomas Goirand
the Debian perspective (ie: .gitreview, or upstream CI related). Please find, attached to this bug, the debdiff for the udpate. Please allow me to upload: python-oslo.utils/3.36.4+2019.11.15.git.c49a426b66-1+deb10u1 Cheers, Thomas Goirand (zigo) diff -Nru python-oslo.utils-3.36.4/debian/changelog

Bug#944594: buster-pu: package heat/1:11.0.0-6

2019-11-24 Thread Thomas Goirand
On 11/23/19 6:36 PM, Julien Cristau wrote: > Control: tag -1 moreinfo > > On Tue, Nov 12, 2019 at 11:12:17AM +0100, Thomas Goirand wrote: >> I'd like to update heat in Buster to permit safe upgrades, as the current >> version may remove the heat domain password. Att

Bug#944099: CVE-2019-14433 / OSSA-2019-003: buster-pu: package nova/2:18.1.0-6 -> 18.1.0-6+deb10u1

2019-11-24 Thread Thomas Goirand
On 11/23/19 6:09 PM, Julien Cristau wrote: > Control: tag -1 moreinfo > > On Mon, Nov 04, 2019 at 11:53:52AM +0100, Thomas Goirand wrote: >> We would like to update Nova in Buster for 2 reasons. First, there's >> OSSA-2019-003 / CVE-2019-14433 which we would like to f

Bug#944099: New debdiff for this update

2019-11-18 Thread Thomas Goirand
the point release 10.2 ... :/ Cheers, Thomas Goirand (zigo) diff -Nru nova-18.1.0/debian/changelog nova-18.1.0/debian/changelog --- nova-18.1.0/debian/changelog2019-05-29 14:56:05.0 +0200 +++ nova-18.1.0/debian/changelog2019-11-18 13:30:25.0 +0100 @@ -1,3 +1,19

Bug#944594: buster-pu: package heat/1:11.0.0-6

2019-11-12 Thread Thomas Goirand
for this fix. Note that I've tested the upgrade in production. Cheers, Thomas Goirand (zigo) diff -Nru heat-11.0.0/debian/changelog heat-11.0.0/debian/changelog --- heat-11.0.0/debian/changelog2019-03-01 15:35:44.0 +0100 +++ heat-11.0.0/debian/changelog2019-11-12 10:52:30.0

Bug#943667: buster-pu: package python-oslo.messaging/8.1.3-1 -> 8.1.4-1+deb10u1

2019-11-10 Thread Thomas Goirand
On 11/9/19 2:38 PM, Adam D. Barratt wrote: > Control: tags -1 + confirmed > > On Sun, 2019-10-27 at 18:10 +0100, Thomas Goirand wrote: >> I'd like to upgrade oslo.messaging to version 8.1.4-1+deb10u1. >> Indeed, in versin 8.1.3, when a Rabbitmq server configured through

Bug#942102: Adding this other patch

2019-11-10 Thread Thomas Goirand
, and that I've been using such a fix in production already, so it's been tested extensively. Cheers, Thomas Goirand (zigo) >From 2dda54a0519e9d17c0c2262a6701529c479031ce Mon Sep 17 00:00:00 2001 From: Thomas Goirand Date: Mon, 14 Oct 2019 02:15:35 +0200 Subject: [PATCH 1340/1345] *

Bug#941901: buster-pu: package octavia/3.0.0-3

2019-11-10 Thread Thomas Goirand
On 11/9/19 2:31 PM, Adam D. Barratt wrote: > Control: tags -1 + confirmed > > On Mon, 2019-10-07 at 14:35 +0200, Thomas Goirand wrote: >> Since Buster was frozen, I worked quite a long time on Octavia, and >> was >> able to make the octavia-agent work properly, as wel

Bug#944099: CVE-2019-14433 / OSSA-2019-003: buster-pu: package nova/2:18.1.0-6 -> 18.1.0-6+deb10u1

2019-11-04 Thread Thomas Goirand
mode, upgrading Nova can lead to some configuration changes, which is an RC bug. The attached debdiff fixes both of the issues, and has been tested in production, and is also available in Sid/Bullseye (so it's safe to use). Please allow us to upload this fix to Buster. Cheers, Thomas Goirand

Bug#943667: buster-pu: package python-oslo.messaging/8.1.3-1 -> 8.1.4-1+deb10u1

2019-10-27 Thread Thomas Goirand
rabbit node (and as a consequence, turning off the service there). Attached is the debdiff for this change, Please allow me to upgrade oslo.messaging in Buster, Cheers, Thomas Goirand (zigo) diff -Nru python-oslo.messaging-8.1.3/debian/changelog python-oslo.messaging-8.1.4/debian/changelog --- python

Bug#942524: buster-pu: package graphite-web/1.1.4-3 CVE-2017-18638

2019-10-17 Thread Thomas Goirand
s: CVE-2017-18638) + + [ Thomas Goirand ] + * Avoid hourly error in cron with no whisper db (Closes: #940554). Thanks to +Alexandre Rossi for the patch. + + -- Thomas Goirand Thu, 17 Oct 2019 05:47:35 +0530 + graphite-web (1.1.4-3) unstable; urgency=medium * Fix shebang of /usr/bin/g

Bug#941901: buster-pu: package octavia/3.0.0-3, fix for CVE-2019-17134

2019-10-11 Thread Thomas Goirand
On 10/7/19 2:35 PM, Thomas Goirand wrote: > Package: release.debian.org > Severity: normal > Tags: buster > User: release.debian@packages.debian.org > Usertags: pu > > Dear release team, > > Since Buster was frozen, I worked quite a long time on Octavia, and was

Bug#941901: buster-pu: package octavia/3.0.0-3

2019-10-07 Thread Thomas Goirand
. Next up, I hope to be able to provide a Debian image for Octavia through the official cdimage.debian.org repo. I'll do that through Testing first. Cheers, Thomas Goirand (zigo) [1] If you don't know what Octavia is, it is haproxy as a service, with a base virtual machine image containing Haproxy

Bug#931766: buster-pu: package openvswitch/2.10.0+2018.08.28+git.8ca7c82b7d+ds1-12+deb10u1 - new debdiff

2019-07-29 Thread Thomas Goirand
Closes: #931104). + + -- Thomas Goirand Mon, 24 Jun 2019 08:53:33 +0200 + openvswitch (2.10.0+2018.08.28+git.8ca7c82b7d+ds1-12) unstable; urgency=medium * Add --may-exist in debian/ifupdown.sh as per upstream commit. Without it, diff -Nru openvswitch-2.10.0+2018.08.28+git.8ca7c82b7d+ds1/debian/c

Bug#931766: buster-pu: package openvswitch/2.10.0+2018.08.28+git.8ca7c82b7d+ds1-12+deb10u1 - new debdiff

2019-07-10 Thread Thomas Goirand
On 7/10/19 9:32 AM, Thomas Goirand wrote: > Package: release.debian.org > Severity: normal > Tags: buster > User: release.debian@packages.debian.org > Usertags: pu > > Hi, > > Please allow me to fixup OVS's missing python3-six dependency, and add > support for

Bug#931766: buster-pu: package openvswitch/2.10.0+2018.08.28+git.8ca7c82b7d+ds1-13

2019-07-10 Thread Thomas Goirand
of doc on how to set things up in /etc/network/interfaces. Cheers, Thomas Goirand (zigo) diff -Nru openvswitch-2.10.0+2018.08.28+git.8ca7c82b7d+ds1/debian/changelog openvswitch-2.10.0+2018.08.28+git.8ca7c82b7d+ds1/debian/changelog --- openvswitch-2.10.0+2018.08.28+git.8ca7c82b7d+ds1/debian

Bug#931616: buster-pu: package puppet-module-cinder/13.1.0-3+deb10u1

2019-07-08 Thread Thomas Goirand
f attached. Cheers, Thomas Goirand (zigo) diff -Nru puppet-module-cinder-13.1.0/debian/changelog puppet-module-cinder-13.1.0/debian/changelog --- puppet-module-cinder-13.1.0/debian/changelog2018-11-28 15:58:01.0 +0100 +++ puppet-module-cinder-13.1.0/debian/changelog2019-07

Bug#931615: buster-pu: package python-autobahn/17.10.1+dfsg1-3+deb10u1

2019-07-08 Thread Thomas Goirand
Package: release.debian.org Severity: normal Tags: buster User: release.debian@packages.debian.org Usertags: pu Hi, Please accept the update of python-autobahn fixing a problem in the (build-)dependencies. Debdiff attached. Cheers, Thomas Goirand (zigo) diff -Nru python-autobahn-17.10.1

Bug#931608: buster-pu: package cloudkitty/8.0.0-4

2019-07-08 Thread Thomas Goirand
Package: release.debian.org Severity: normal Tags: buster User: release.debian@packages.debian.org Usertags: pu Hi, The attached debdiff fixes the FTBS. Details are in the relevant bugs (as per the debian/changelog). Please allow me to upload the fix to Buster. Cheers, Thomas Goirand (zigo

Bug#931606: buster-pu: package cloudkitty/8.0.0-4+deb10u1

2019-07-08 Thread Thomas Goirand
Package: release.debian.org Severity: normal Tags: stretch User: release.debian@packages.debian.org Usertags: pu Hi, Cloudkitty FTBFS is fixed with the attached debdiff. Please allow me to upload this to Buster. Cheers, Thomas Goirand (zigo) diff -Nru cloudkitty-8.0.0/debian/changelog

Bug#931603: buster-pu: package puppet-module-cinder/13.1.0-3+deb10u1

2019-07-08 Thread Thomas Goirand
On 7/8/19 9:37 AM, Thomas Goirand wrote: > Package: release.debian.org > Severity: normal > Tags: stretch > User: release.debian@packages.debian.org > Usertags: pu > > Hi, > > While puppet-module-cinder works well if using the LVM backend, I discovered > that

Bug#931603: stretch-pu: package puppet-module-cinder/13.1.0-3+deb10u1

2019-07-08 Thread Thomas Goirand
is gone...). The attached debdiff fixes it. Please allow me to upload this fix to Buster. Cheers, Thomas Goirand (zigo) diff -Nru puppet-module-cinder-13.1.0/debian/changelog puppet-module-cinder-13.1.0/debian/changelog --- puppet-module-cinder-13.1.0/debian/changelog2018-11-28 15:58

Re: mandatory source uploads (was: Bits from the Release Team: ride like the wind, Bullseye!)

2019-07-07 Thread Thomas Goirand
am does this way, and that's really not the best way to do things. (If I missed the discussion, then IMO it wasn't advertised enough, which has the same effect.) I very much salute the source-only enforcement, but I really don't think this was thought through completely. Cheers, Thomas Goirand (zigo)

Bug#931220: unblock: cloudkitty/8.0.0-5

2019-06-28 Thread Thomas Goirand
://review.opendev.org/#/c/668120/1/cloudkitty/storage/v1/sqlalchemy/__init__.py It's a simple one-liner... Cheers, Thomas Goirand (zigo) unblock cloudkitty/8.0.0-5

Bug#930670: unblock: rabbitmq-server/3.7.8-5

2019-06-19 Thread Thomas Goirand
On 6/19/19 6:47 AM, Paul Gevers wrote: > Hi Thomas, > > On 18-06-2019 09:42, Thomas Goirand wrote: >> This last Debian release adds the packaging of rabbitmq-diagnostic in >> /usr/sbin, which is a very useful tool. It'd be a diss-service to our >> users to not have it i

Bug#930670: unblock: rabbitmq-server/3.7.8-5

2019-06-18 Thread Thomas Goirand
-service to our users to not have it in Buster, and I don't think this is controvertial at all. Not counting the removal of debian/gbp.conf (which we don't use anymore), the attached debdiff is a one-liner. unblock rabbitmq-server/3.7.8-5 Cheers, Thomas Goirand (zigo) diff -Nru rabbitmq-server-3.7.8

Bug#930058: unblock: puppet/5.5.10-3

2019-06-17 Thread Thomas Goirand
On 6/17/19 7:41 AM, Jonathan Wiltshire wrote: > On Mon, Jun 17, 2019 at 12:59:10AM +0200, Thomas Goirand wrote: >> I don't think people read more the NEWS than the changelog. > > I'm not sure how you arrive at that conclusion, but here's a consideration: > it's my company's po

Bug#930058: unblock: puppet/5.5.10-3

2019-06-16 Thread Thomas Goirand
On 6/15/19 7:54 PM, Paul Gevers wrote: > Control: tags -1 moreinfo > > Hi Thomas, > > On 06-06-2019 10:36, Thomas Goirand wrote: >> Version 5.5.10-3 adds a tiny cron.daily job which cleans-up the >> /var/lib/puppet/reports folder to avoid that a puppet-master >>

Bug#930357: stretch-pu: package miniupnpd/1.8.20140523-4.1+deb9u2 CVE-2019-12107, CVE-2019-12108, CVE-2019-12109, CVE-2019-12110

2019-06-11 Thread Thomas Goirand
: http://sid.gplhost.com/stretch-proposed-updates/miniupnpd/ Cheers, Thomas Goirand (zigo) diff -Nru miniupnpd-1.8.20140523/debian/changelog miniupnpd-1.8.20140523/debian/changelog --- miniupnpd-1.8.20140523/debian/changelog 2018-02-07 12:18:50.0 +0100 +++ miniupnpd-1.8.20140523

Bug#930110: unblock: graphite-web/1.1.4-3

2019-06-07 Thread Thomas Goirand
=medium + + * Fix shebang of /usr/bin/graphite-manage. (Closes: #925240) + + -- Thomas Goirand Fri, 07 Jun 2019 09:39:24 +0200 + graphite-web (1.1.4-2) unstable; urgency=medium * Fix README to suggest installation of libapache2-mod-wsgi-py3, and added diff -Nru graphite-web-1.1.4/debian

Bug#930058: unblock: puppet/5.5.10-3

2019-06-06 Thread Thomas Goirand
+that is older than 30 days to avoid filling-up a puppet-master hard drive +until it's full (Closes: #930033). + + -- Thomas Goirand Thu, 06 Jun 2019 10:24:27 +0200 + puppet (5.5.10-2) unstable; urgency=medium * Make sure oj does not use BigDecimals on data load (Closes: #923976) diff -Nru

Bug#929734: unblock: nova/18.1.0-6

2019-06-03 Thread Thomas Goirand
On 5/29/19 9:49 PM, Thomas Goirand wrote: > Package: release.debian.org > Severity: normal > User: release.debian@packages.debian.org > Usertags: unblock > > Dear release team, > Please unblock package nova 18.1.0-6. > > During normal operation, it may happen

Bug#929321: Update for SQLAlchemy to address CVE-2019-7164 CVE-2019-7548

2019-05-30 Thread Thomas Goirand
this email to you today: to ask you to please test your application with SQLAlchemy 1.2.18+ds1-2 ASAP, to address any potential unforecast issue before the Buster release. Details about the discussion can be seen here in the Debian bug #929321. Best regards, Thomas Goirand (zigo)

Bug#929321: unblock: sqlalchemy/1.2.18+ds1-2 (CVE-2019-7164 CVE-2019-7548)

2019-05-29 Thread Thomas Goirand
(upstream for SQLAlchemy). On 5/28/19 8:59 PM, Paul Gevers wrote: > Control: tags -1 moreinfo confirmed > > Hi Zigo, > > On Tue, 21 May 2019 17:50:28 +0200 Thomas Goirand wrote: >> Note that it may (or not) break some reverse dependencies, though according >> to upstr

Bug#929734: unblock: nova/18.1.0-6

2019-05-29 Thread Thomas Goirand
be hard to get into the full details of how Nova works. Though please trust me, this is an important patch that really needs to be in Buster, and I have tested this patch with success in production. Cheers, Thomas Goirand (zigo) unblock nova/18.1.0-6 diff -Nru nova-18.1.0/debian/changelog nova

Bug#929321: unblock: sqlalchemy/1.2.18+ds1-2 (CVE-2019-7164 CVE-2019-7548)

2019-05-21 Thread Thomas Goirand
, Thomas Goirand (zigo) diff -Nru sqlalchemy-1.2.18+ds1/debian/changelog sqlalchemy-1.2.18+ds1/debian/changelog --- sqlalchemy-1.2.18+ds1/debian/changelog 2019-02-25 00:01:50.0 +0100 +++ sqlalchemy-1.2.18+ds1/debian/changelog 2019-05-21 16:23:35.0 +0200 @@ -1,3 +1,11

Bug#929120: unblock: python-amqp/2.4.0-2

2019-05-17 Thread Thomas Goirand
, Cheers, Thomas Goirand (zigo) unblock python-amqp/2.4.0-2 diff -Nru python-amqp-2.4.0/debian/changelog python-amqp-2.4.0/debian/changelog --- python-amqp-2.4.0/debian/changelog 2019-01-22 15:29:00.0 +0100 +++ python-amqp-2.4.0/debian/changelog 2019-05-17 14:26:02.0 +0200 @@ -1,3

Bug#929119: unblock: python-oslo.messaging/8.1.3-1

2019-05-17 Thread Thomas Goirand
like this to reach Buster, and so would any OpenStack on Debian user. Debdiff attached. Cheers, Thomas Goirand (zigo) unblock python-oslo.messaging/8.1.3-1 diff -Nru python-oslo.messaging-8.1.2/debian/changelog python-oslo.messaging-8.1.3/debian/changelog --- python-oslo.messaging-8.1.2/debian

Bug#928649: unblock: ipset/6.38-1.2

2019-05-08 Thread Thomas Goirand
-1.2 Cheers, Thomas Goirand (zigo) diff -Nru ipset-6.38/debian/changelog ipset-6.38/debian/changelog --- ipset-6.38/debian/changelog 2018-09-01 19:28:18.0 +0200 +++ ipset-6.38/debian/changelog 2019-05-06 10:55:51.0 +0200 @@ -1,3 +1,18 @@ +ipset (6.38-1.2) unstable; urgency=medium

Bug#927107: unblock: openvswitch/2.10.0+2018.08.28+git.8ca7c82b7d+ds1-12

2019-04-15 Thread Thomas Goirand
). + + -- Thomas Goirand Sun, 14 Apr 2019 00:25:19 +0200 + openvswitch (2.10.0+2018.08.28+git.8ca7c82b7d+ds1-11) unstable; urgency=medium * Removes network.service from openvswitch-switch.service to avoid a diff -Nru openvswitch-2.10.0+2018.08.28+git.8ca7c82b7d+ds1/debian/ifupdown.sh openvswitch-2.10.0

Bug#926230: unblock: openstack-cluster-installer/21

2019-04-02 Thread Thomas Goirand
/debian/buster The 8 commits are from 5th of March up to now. Please unblock openstack-cluster-installer/21. Cheers, Thomas Goirand (zigo) diff -Nru openstack-cluster-installer-20/debian/changelog openstack-cluster-installer-21/debian/changelog --- openstack-cluster-installer-20/debian/changelog

Bug#926177: unblock: puppet-module-swift/13.1.0-4

2019-04-01 Thread Thomas Goirand
ax mistake (missing closing single quote at the end of the string). This last upload fixes it. I've atteched the (one liner) debdiff. Please unblock puppet-module-swift/13.1.0-4 Cheers, Thomas Goirand (zigo) diff -Nru puppet-module-swift-13.1.0/debian/changelog puppet-module-swift-13.1.0/debian

Bug#926052: unblock: python-pip/18.1-5

2019-03-30 Thread Thomas Goirand
hrough. Please unblock python-pip/18.1-5. Cheers, Thomas Goirand (zigo) diff -Nru python-pip-18.1/debian/changelog python-pip-18.1/debian/changelog --- python-pip-18.1/debian/changelog2019-01-03 17:38:22.0 +0100 +++ python-pip-18.1/debian/changelog2019-03-30 21:10:13.0 +0

Bug#926050: stretch-pu: package python-pip/9.0.1-2+deb9u1

2019-03-30 Thread Thomas Goirand
exceptions from the vendored requests module, and the way Debian de-embbed requests. The patch is pretty short (2 lines are changed). Debdiff is attached. Please allow me to upload python-pip/9.0.1-2+deb9u1 to stretch PU. Cheers, Thomas Goirand (zigo) diff -Nru python-pip-9.0.1/debian/changelog

Bug#924465: unblock: openipmi/2.0.25-2.1

2019-03-27 Thread Thomas Goirand
On 3/13/19 10:23 AM, Thomas Goirand wrote: > Package: release.debian.org > Severity: normal > User: release.debian@packages.debian.org > Usertags: unblock > > Dear release team, > > I've been using OpenIPMI's ipmi_sim, which simulates IPMI on a KVM virtual > machi

Bug#925501: unblock: horizon/14.0.2-3

2019-03-25 Thread Thomas Goirand
: python-app-catalog-ui, python-designate-dashboard, python-ironic-ui, python-murano-dashboard, python-zaqar-ui (Closes: #925226). Thanks a lot to Andreas Beckmann for his report, patch and tests. -- Thomas Goirand Mon, 25 Mar 2019 21:44:52 +0100 So, according to Andreas and his

Bug#924975: unblock: sphinxcontrib-programoutput/0.11-3.1

2019-03-19 Thread Thomas Goirand
: sphinxcontrib-programoutput is used by python{3,}-ddt, which in its turn is used by so many OpenStack packages. So indirectly, nearly all of OpenStack needs this package to migrate to Buster. Cheers, Thomas Goirand (zigo)

Bug#924544: unblock: CVE-2019-9735: neutron/13.0.2-13

2019-03-14 Thread Thomas Goirand
for the compatibility with SQLAlchemy 1.3.1, which Piotr would like to upload and see migrate to Buster. Debdiff is attached. Please unblock neutron/13.0.2-13 ASAP to fix this CVE bug. Cheers, Thomas Goirand (zigo) diff -Nru neutron-13.0.2/debian/changelog neutron-13.0.2/debian/changelog --- neutron-13.0.2

Bug#924466: unblock: python3-ldappool/2.3.1-1 and Keystone 2:14.0.1-2

2019-03-13 Thread Thomas Goirand
a patch to Keystone. This fix has been carefully tested by the reporter of the problem. Please unblock both package python3-ldappool/2.3.1-1 and Keystone/2:14.0.1-2 to migrate to Buster. Cheers, Thomas Goirand (zigo)

Bug#924465: unblock: pre-approval for openipmi/2.0.25-2 patch

2019-03-13 Thread Thomas Goirand
. In #923873, I proposed a fix to this, which is simply: -#define MAX_CONFIG_LINE 1024 +#define MAX_CONFIG_LINE 10240 in lanserv/OpenIPMI/serv.h, increasing the maximum command line to 10K instead of the original 1K. Would the release team be ok to accept such a fix in Buster? Cheers, Thomas Goirand (zigo)

Bug#923323: stretch-pu: CVE-2018-1000872: package python-pykmip/0.5.0-4

2019-02-26 Thread Thomas Goirand
is attached. The resulting package is here: http://sid.gplhost.com/stretch-proposed-updates/python-pykmip/ Please allow me to upload python-pykmip/0.5.0-4+deb9u1 to Stretch-proposed. Cheers, Thomas Goirand (zigo) diff -Nru python-pykmip-0.5.0/debian/changelog python-pykmip-0.5.0/debian/changelog

Relaxed updates for one more month needed for openstack-cluster-installer (aka: OCI)

2019-01-31 Thread Thomas Goirand
would be ok to give me one more month to finish adding a few features (mostly, network setup related) in OCI before declaring it to be frozen for Buster as well. Please let me know your thoughts, Cheers, Thomas Goirand (zigo)

Re: Proposal: Repository for fast-paced package backports

2018-12-31 Thread Thomas Goirand
On 12/30/18 8:02 AM, Pirate Praveen wrote: > On 12/28/18 11:06 AM, Thomas Goirand wrote: >>> If you know how to start with a new service at >>> {volatile,fastpaced,whatever}.debian.net without having to reinvent the >>> wheel for acceptign uploads, gettin

Re: Proposal: Repository for fast-paced package backports

2018-12-30 Thread Thomas Goirand
ime being. If you can't get a VM on the Debian infra, get in touch with me, and I'll get one (sponsored) for you. Cheers, Thomas Goirand (zigo)

Re: Proposal: Repository for fast-paced package backports

2018-12-27 Thread Thomas Goirand
ectivity to almost everywhere). Setting-up a repository isn't hard. And for a start, I don't think you really need a buildd network, just amd64 is ok-ish. > If you know how to start with a new service at > {volatile,fastpaced,whatever}.debian.net without having to reinvent the > wheel for

Re: Proposal: Repository for fast-paced package backports

2018-12-27 Thread Thomas Goirand
that you do an attempt external to Debian first, then we see how it goes... How about "fastlane.debian.net" or something? Use that on your own server, and we see what happens, no? > Thus, > please let us discuss this in a well-founded, argumentative manner > instead of just ruling it out from the start. Last time I write it: Alex has *not* ruled it out. Cheers, Thomas Goirand (zigo)

Bug#913801: stretch-pu: package mistral/3.0.0-4 CVE-2018-16849: std.ssh action may disclose presence of arbitrary files

2018-12-03 Thread Thomas Goirand
On 12/3/18 8:17 AM, Julien Cristau wrote: > Control: tag -1 confirmed > > On Thu, Nov 15, 2018 at 02:07:01PM +0100, Thomas Goirand wrote: >> diff --git a/debian/changelog b/debian/changelog >> index b2ce8602..06234034 100644 >> --- a/debian/changelog >> +++ b/

Re: Is using experimental distribution for shelter during freeze useful?

2018-11-27 Thread Thomas Goirand
're probably too close from the freeze already, and this would probably also need some work on the release team and/or FTP master side. If you want this to happen, maybe you should get in touch with both teams directly and do the work *after* buster is released? Anyway, they would tell... Cheers, Thomas Goirand (zigo)

Bug#913801: stretch-pu: package mistral/3.0.0-4 CVE-2018-16849: std.ssh action may disclose presence of arbitrary files

2018-11-15 Thread Thomas Goirand
: std.ssh action may disclose presence of arbitrary files, applied upstream patch: remove extra information from std.ssh action. (Closes: #912714). Debdiff is attached. Please allow me to upload the fix to Stretch. Cheers, Thomas Goirand (zigo) diff --git a/debian/changelog b/debian/changelog

Bug#902688: stretch-pu: package openstack-debian-images/1.20~deb9u1

2018-06-29 Thread Thomas Goirand
ed-updates/openstack-debian-images/ Cheers, Thomas Goirand (zigo) diff -Nru openstack-debian-images-1.20~deb9u1/build-openstack-debian-image openstack-debian-images-1.20~deb9u2/build-openstack-debian-image --- openstack-debian-images-1.20~deb9u1/build-openstack-debian-image 2017-06-23 17:02:30

Bug#902683: stretch-pu: package python-proliantutils/2.1.11-2

2018-06-29 Thread Thomas Goirand
to this bug report. Trivially, it replaces 1.1.1.1 by a never reachable IP address in the test suite. This update package will fix #902241. The resulting built package is here: http://sid.gplhost.com/stretch-proposed-updates/proliantutils/ Cheers, Thomas Goirand (zigo) diff -Nru python-proliantutils

Bug#897772: Package is ready for binNMUs

2018-05-08 Thread Thomas Goirand
] * litecoind [amd64 arm64 armel armhf i386 mips64el mipsel ppc64el] * megaglest * transmission-cli * transmission-daemon * transmission-gtk * transmission-qt * warzone2100 Cheers, Thomas Goirand (zigo)

Bug#897772: transition: miniupnpc

2018-05-04 Thread Thomas Goirand
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: transition Hi there! We've uploaded miniupnpc to Experimental, and my sponsoree said he attempted a rebuild against all the reverse dependencies listed here:

Re: Please reject infomaniak-modsecurity-config

2018-03-14 Thread Thomas Goirand
On 03/14/2018 12:25 PM, Thomas Goirand wrote: > Hi, > > Sorry, I did a dput to Debian instead of my company's reprepro. Please > reject the package and sorry for the noise. > > Cheers, > > Thomas Goirand (zigo) Discard this, it was auto-rejected amyway! :) Sorry for th

Please reject infomaniak-modsecurity-config

2018-03-14 Thread Thomas Goirand
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, Sorry, I did a dput to Debian instead of my company's reprepro. Please reject the package and sorry for the noise. Cheers, Thomas Goirand (zigo) -BEGIN PGP SIGNATURE- iQIzBAEBCAAdFiEEtKCq/KhshgVdBnYUq1PlA1hod6YFAlqpBpcACgkQq1PlA1ho

<    1   2   3   4   5   6   >