Bug#1004268: libextractor 1.8-2+deb10u1 flagged for acceptance

2022-03-05 Thread Adam D Barratt
package release.debian.org tags 1004268 = buster pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian buster. Thanks for your contribution! Upload details == Package: libextractor Version: 1.8-2+deb1

Bug#1006525: mailman 2.1.29-1+deb10u5 flagged for acceptance

2022-03-05 Thread Adam D Barratt
package release.debian.org tags 1006525 = buster pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian buster. Thanks for your contribution! Upload details == Package: mailman Version: 2.1.29-1+deb10u

Bug#1005218: spip 3.2.4-1+deb10u6 flagged for acceptance

2022-03-05 Thread Adam D Barratt
package release.debian.org tags 1005218 = buster pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian buster. Thanks for your contribution! Upload details == Package: spip Version: 3.2.4-1+deb10u6 E

11.3 and 10.12 planning

2022-03-06 Thread Adam D. Barratt
Hi, As you may have noticed, we're a bit overdue now for both 11.3 and the penultimate buster point release, 10.12. Some potential dates: - March 19th (means freezing next weekend, so not ideal) - March 26th - April 2nd - April 9th (For personal reasons, I'd rather avoid that last weekend, and

Re: debian-archive-keyring, update for stretch, problem

2022-03-12 Thread Adam D. Barratt
Hi, FWIW, I haven't touched d-a-k for a few years now, nor have I seen your package, so I'm largely guessing based on your provided text below. On Sat, 2022-03-12 at 21:52 +0100, Anton Gladky wrote: > I followed the README.maintainer. Added my key into team/members. > But then, when I just refres

Bug#1006187: bullseye-pu: package espeakup/0.80-20+deb11u1

2022-03-14 Thread Adam D. Barratt
Control: tags -1 + confirmed d-i On Sun, 2022-02-20 at 21:35 +0100, Samuel Thibault wrote: > Users have reported that when they are building large packages in > parallel, or generally loading the system a bit, the espeakup screen > reader becomes very laggy. This is because espeakup gets scheduled

Bug#1006192: bullseye-pu: package espeak-ng/1.50+dfsg-7+deb11u1

2022-03-14 Thread Adam D. Barratt
Control: tags -1 + confirmed d-i On Mon, 2022-02-21 at 00:07 +0100, Samuel Thibault wrote: > People have reported that when they work on the linux console with > the > espeakup screen reader, if they e.g. cat a long file, and the reader > starts speaking it, and the user presses some key to interr

Bug#1006165: bullseye-pu: package tasksel/3.68+deb11u1

2022-03-14 Thread Adam D. Barratt
Control: tags -1 + confirmed d-i On Sun, 2022-02-20 at 11:01 +0100, Holger Wansing wrote: > I would like to do a little update to tasksel, to make tasksel > install > CUPS for all desktop tasks. > In the past (buster and before), it was like this as well, via a > different > approach: there was a

Upcoming stable point release (11.3)

2022-03-14 Thread Adam D. Barratt
Hi, The next point release for "bullseye" (11.3) is scheduled for Saturday, March 26th. Processing of new uploads into bullseye-proposed-updates will be frozen during the preceding weekend. Regards, Adam

Upcoming oldstable point release (10.12)

2022-03-14 Thread Adam D. Barratt
Hi, The next point release for "buster" (10.12) is scheduled for Saturday, March 26th. Processing of new uploads into buster-proposed-updates will be frozen during the preceding weekend. Regards, Adam

Bug#1005694: gtk+3.0 3.24.24-4+deb11u1 flagged for acceptance

2022-03-14 Thread Adam D Barratt
package release.debian.org tags 1005694 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: gtk+3.0 Version: 3.24.24-4+d

Bug#1006916: freerdp2 2.3.0+dfsg1-2+deb11u1 flagged for acceptance

2022-03-14 Thread Adam D Barratt
package release.debian.org tags 1006916 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: freerdp2 Version: 2.3.0+dfsg

Bug#1007001: gtk+3.0 3.24.24-4+deb11u2 flagged for acceptance

2022-03-14 Thread Adam D Barratt
package release.debian.org tags 1007001 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: gtk+3.0 Version: 3.24.24-4+d

Bug#1000342: mariadb-10.5 10.5.13-0+deb11u1 flagged for acceptance

2022-03-14 Thread Adam D Barratt
package release.debian.org tags 1000342 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: mariadb-10.5 Version: 10.5.1

Bug#1000342: mariadb-10.5 10.5.15-0+deb11u1 flagged for acceptance

2022-03-14 Thread Adam D Barratt
package release.debian.org tags 1000342 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: mariadb-10.5 Version: 10.5.1

Bug#1005949: bullseye-pu: package glibc/2.31-13+deb11u3

2022-03-15 Thread Adam D. Barratt
Control: tags -1 + confirmed d-i On Thu, 2022-02-17 at 23:15 +0100, Aurelien Jarno wrote: > There are multiple fixes in this upload: > - 4 security bugs > - a fix to avoid preinst script failure when running on kernel x.y.z > with z > 255. > - a fix to avoid changes to /etc/nsswitch.conf to be

Bug#1006010: bullseye-pu: package php-crypt-gpg/1.6.4-2+deb11u1

2022-03-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Fri, 2022-02-18 at 22:47 +0100, Guilhem Moulin wrote: > CVE-2022-24953: Crypt_GPG <1.6.7 does not prevent additional options > in > GPG calls, which presents a risk for certain environments and GPG > versions. > Please go ahead; thanks. Regards, Adam

Bug#1006215: bullseye-pu: package node-prismjs/1.23.0+dfsg-1+deb11u1

2022-03-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Thu, 2022-02-24 at 06:41 +0100, Yadd wrote: +node-prismjs (1.23.0+dfsg-1+deb11u2) bullseye; urgency=medium + + * Command Line: Escape markup in command line output +(Closes: CVE-2022-23647) + * Fix also minified files (Really closes: CVE-2021-3801) Please go

Bug#1006316: bullseye-pu: package libapache2-mod-auth-openidc/2.4.9-1

2022-03-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Wed, 2022-02-23 at 12:21 +0100, Moritz Schlarb wrote: > I kindly ask you to allow version 2.4.9.4 of the aforementioned > package to be included in proposed-updates to fix CVE-2021-39191 > and the regression mentioned in #891224#49ff. > > I would prefer to just b

Bug#1006371: bullseye-pu: package lemonldap-ng/2.0.11+ds-4+deb11u1

2022-03-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Thu, 2022-02-24 at 15:44 +0100, Yadd wrote: > lemonldap-ng is vulnerable to password bypass (impact critical) in a > very > unlikely setup (probability very low). CVE-2021-40874 > > [ Impact ] > In such configuration, a remote lemonldap-ng system that queries the >

Bug#1006493: bullseye-pu: htmldoc/1.9.11-4+deb11u2

2022-03-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sat, 2022-02-26 at 10:55 +, Thorsten Alteholz wrote: > The attached debdiff for htmldoc fixes CVE-2022-0534 in Bullseye. > Please go ahead. Regards, Adam

Bug#1006522: bullseye-pu: package djbdns/1:1.05-13+deb11u1

2022-03-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sat, 2022-02-26 at 20:11 +0200, Peter Pentchev wrote: > See #996807 for more information; in short, the tinydns server > program may stop responding to DNS queries because it has > reached the process data size limit. The reason is that recent > versions of glibc ap

Bug#1006768: bullseye-pu: package golang-1.15/1.15.15-1~deb11u4

2022-03-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Fri, 2022-03-04 at 22:37 +0800, Shengjing Zhu wrote: > Backport patch for CVE-2022-24921. > > [ Impact ] > > CVE-2022-24921: > regexp: stack exhaustion compiling deeply nested expressions > > This is bug in standard library. > Please go ahead. Regards, Adam

Bug#1006796: bullseye-pu: package galera-3 25.3.36-0+deb11u1

2022-03-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Fri, 2022-03-04 at 23:05 -0800, Otto Kekäläinen wrote: > galera-3 (25.3.36-0+deb11u1) bullseye; urgency=medium > > * New upstream version 25.3.36. Includes multiple bug fixes, see > > https://github.com/codership/documentation/blob/master/release-notes/relea

Bug#1006797: bullseye-pu: package galera-3 26.4.11-0+deb11u1

2022-03-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Fri, 2022-03-04 at 23:05 -0800, Otto Kekäläinen wrote: > galera-4 (26.4.11-0+deb11u1) bullseye; urgency=medium > > * New upstream release 26.4.11. Includes multiple bug fixes, see > > https://github.com/codership/documentation/blob/master/release-notes/relea

Bug#1003526: Update to close CVE-2022-0536

2022-03-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sat, 2022-02-12 at 12:25 +0100, Yadd wrote: > Hi, > > here is a new debdiff to close also CVE-2022-0536 > Please go ahead. Regards, Adam

Bug#1003133: bullseye-pu: package glx-alternatives/1.2.1~deb11u1

2022-03-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Tue, 2022-01-04 at 18:24 +0100, Andreas Beckmann wrote: > I'd like to update src:glx-alternatives in bullseye/contrib to the > version currently in sid. It contains one bugfix: There was a time > span between setting up the diversions (glx-diversions.postinst) and >

Bug#1003173: bullseye-pu: package nvidia-cuda-toolkit/11.2.2-3+deb11u1

2022-03-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Wed, 2022-01-05 at 16:57 +0100, Andreas Beckmann wrote: > I'd like to update nvidia-cuda-toolkit in bullseye/non-free in order > to > disable the non-functional python3 support in cuda-gdb. This causes > segmentation faults if libpython2.7.so.1 is available on the

Bug#1001639: bullseye-pu: package python-hbmqtt/0.9.6-1+deb11u1

2022-03-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Mon, 2021-12-13 at 15:38 +0100, Helmut Grohne wrote: > python3-hbmqtt can be used for connecting to a mqtt broker or for > running a mqtt broker. I guess that the former is more widespread. > The > version of python3-hbmqtt cannot connect to a broker at all. > > [

Bug#1002012: [pre-approval] bullseye-pu: package sysvinit/2.96-7

2022-03-15 Thread Adam D. Barratt
Control: tags -1 + confirmed On Mon, 2021-12-20 at 10:50 +, Mark Hindley wrote: > - Fix #1001795: backport upstream fix for parsing shutdown argument > '+0' that >was released in version 2.98. Version 3.00-1 is already present > in sid and >bookworm. > > - Update documentation

Bug#1000341: mariadb-10.3 10.3.34-0+deb10u1 flagged for acceptance

2022-03-16 Thread Adam D Barratt
package release.debian.org tags 1000341 = buster pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian buster. Thanks for your contribution! Upload details == Package: mariadb-10.3 Version: 10.3.34-0+

Bug#1002012: sysvinit 2.96-7+deb11u1 flagged for acceptance

2022-03-16 Thread Adam D Barratt
package release.debian.org tags 1002012 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: sysvinit Version: 2.96-7+deb

Bug#1003133: glx-alternatives 1.2.1~deb11u1 flagged for acceptance

2022-03-16 Thread Adam D Barratt
package release.debian.org tags 1003133 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: glx-alternatives Version: 1.

Bug#1005868: bible-kjv 4.34+deb11u1 flagged for acceptance

2022-03-16 Thread Adam D Barratt
package release.debian.org tags 1005868 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: bible-kjv Version: 4.34+deb1

Bug#1003173: nvidia-cuda-toolkit 11.2.2-3+deb11u1 flagged for acceptance

2022-03-16 Thread Adam D Barratt
package release.debian.org tags 1003173 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: nvidia-cuda-toolkit Version:

Bug#1006010: php-crypt-gpg 1.6.4-2+deb11u1 flagged for acceptance

2022-03-16 Thread Adam D Barratt
package release.debian.org tags 1006010 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: php-crypt-gpg Version: 1.6.4

Bug#1003526: node-follow-redirects 1.13.1-1+deb11u1 flagged for acceptance

2022-03-16 Thread Adam D Barratt
package release.debian.org tags 1003526 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: node-follow-redirects Versio

Bug#1006768: golang-1.15 1.15.15-1~deb11u4 flagged for acceptance

2022-03-16 Thread Adam D Barratt
package release.debian.org tags 1006768 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: golang-1.15 Version: 1.15.15

Bug#1006371: lemonldap-ng 2.0.11+ds-4+deb11u1 flagged for acceptance

2022-03-16 Thread Adam D Barratt
package release.debian.org tags 1006371 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: lemonldap-ng Version: 2.0.11

Bug#1006752: epiphany-browser 3.38.2-1+deb11u2 flagged for acceptance

2022-03-16 Thread Adam D Barratt
package release.debian.org tags 1006752 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: epiphany-browser Version: 3.

Bug#1006215: node-prismjs 1.23.0+dfsg-1+deb11u2 flagged for acceptance

2022-03-16 Thread Adam D Barratt
package release.debian.org tags 1006215 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: node-prismjs Version: 1.23.0

Bug#1006796: galera-3 25.3.36-0+deb11u1 flagged for acceptance

2022-03-16 Thread Adam D Barratt
package release.debian.org tags 1006796 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: galera-3 Version: 25.3.36-0+

Bug#1006883: python-pip 20.3.4-4+deb11u1 flagged for acceptance

2022-03-16 Thread Adam D Barratt
package release.debian.org tags 1006883 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: python-pip Version: 20.3.4-4

Bug#1006797: galera-4 26.4.11-0+deb11u1 flagged for acceptance

2022-03-16 Thread Adam D Barratt
package release.debian.org tags 1006797 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: galera-4 Version: 26.4.11-0+

Bug#1006905: ostree 2020.8-2+deb11u1 flagged for acceptance

2022-03-16 Thread Adam D Barratt
package release.debian.org tags 1006905 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: ostree Version: 2020.8-2+deb

Bug#1004452: bullseye-pu: package gnupg2/2.2.27-2+deb11u1

2022-03-17 Thread Adam D. Barratt
On Sat, 2022-02-19 at 22:24 -0500, Daniel Kahn Gillmor wrote: > On Sat 2022-02-19 17:09:21 +0000, Adam D. Barratt wrote: > > Control: tags -1 + confirmed d-i > > [...] > > That looks fine to me, but will need a d-i ack as the package > > builds a > > ud

Bug#1005949: bullseye-pu: package glibc/2.31-13+deb11u3

2022-03-17 Thread Adam D. Barratt
On Tue, 2022-03-15 at 20:33 +, Adam D. Barratt wrote: > Control: tags -1 + confirmed d-i > > On Thu, 2022-02-17 at 23:15 +0100, Aurelien Jarno wrote: > > There are multiple fixes in this upload: > > - 4 security bugs > > - a fix to avoid preinst script failure when

Bug#1007746: buster-pu: package glibc/2.28-10+deb10u1

2022-03-17 Thread Adam D. Barratt
Control: tags -1 + confirmed d-i On Wed, 2022-03-16 at 00:50 +0100, Aurelien Jarno wrote: > A big part of the changes have been in the buster git branch for many > months, but I failed to submit the package for a point release up to > now. What triggered me to look at it again is breakage in the p

Bug#1007261: bullseye-pu: wolfssl/4.6.0-3_4.6.0+p1-1.debdiff updated

2022-03-17 Thread Adam D. Barratt
Control: tags -1 + moreinfo On Wed, 2022-03-16 at 15:39 -0700, Felix Lechner wrote: > wolfssl (4.6.0+p1-1) bullseye; urgency=medium > That's a non-standard version for a stable update. What version do upstream regard this as? (The conventional version string would be 4.6.0-3+deb11u1.) > * St

Bug#1007261: bullseye-pu: wolfssl/4.6.0-3_4.6.0+p1-1.debdiff updated

2022-03-17 Thread Adam D. Barratt
Control: tags -1 -moreinfo +confirmed On Thu, 2022-03-17 at 11:03 -0700, Felix Lechner wrote: > Hi, > > On Thu, Mar 17, 2022 at 10:56 AM Adam D. Barratt > wrote: > > That's a non-standard version for a stable update. What version do > > upstream regard this as? &g

Bug#1007714: bullseye-pu: package openssh/1:8.4p1-5+deb11u1

2022-03-17 Thread Adam D. Barratt
Control: tags -1 + confirmed d-i On Tue, 2022-03-15 at 15:20 +, Colin Watson wrote: > OpenSSH in stable breaks on 32-bit architectures (at least armhf, > reportedly also i386) after upgrading libc6 to the version in > bookworm, > due to changes in its system call interface that affect OpenSSH'

Bug#1004452: bullseye-pu: package gnupg2/2.2.27-2+deb11u1

2022-03-18 Thread Adam D. Barratt
On Thu, 2022-03-17 at 19:29 -0400, Daniel Kahn Gillmor wrote: > On Thu 2022-03-17 17:49:04 +0000, Adam D. Barratt wrote: > > On Sat, 2022-02-19 at 22:24 -0500, Daniel Kahn Gillmor wrote: > > > On Sat 2022-02-19 17:09:21 +0000, Adam D. Barratt wrote: > > > > Co

Bug#1003484: bullseye-pu: package openssl/1.1.1m-0+deb11u1

2022-03-18 Thread Adam D. Barratt
On Wed, 2022-03-09 at 08:45 +0100, Sebastian Andrzej Siewior wrote: > On 2022-02-19 17:57:25 [+], Adam D. Barratt wrote: > > Feel free to upload; we'll wait for the d-i ack before accepting > > the > > package into p-u. > > There will be the release of 1

Bug#1002912: buster-pu: package graphicsmagick/1.4+really1.3.35-1~deb10u2

2022-03-18 Thread Adam D. Barratt
Control: tags -1 + confirmed On Fri, 2021-12-31 at 17:02 +0100, László Böszörményi wrote: > There's a low priority security issue (CVE-2020-12672: heap-based > buffer overflow in ReadMNGImage in coders/png.c) in GraphicsMagick in > Buster. > Thorsten Alteholz backported the fix for this package ve

Bug#1006377: buster-pu: package lemonldap-ng/2.0.2+ds-7+deb10u7

2022-03-18 Thread Adam D. Barratt
Control: tags -1 + confirmed On Thu, 2022-02-24 at 16:36 +0100, Yadd wrote: > lemonldap-ng is vulnerable to password bypass (impact critical) in a > very > unlikely setup (probability very low). CVE-2021-40874 > > [ Impact ] > In such configuration, a remote lemonldap-ng system that queries the >

Bug#1006182: buster-pu: package qtbase-opensource-src/5.11.3+dfsg1-1+deb10u5

2022-03-18 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sun, 2022-02-20 at 21:13 +0300, Dmitry Shachnev wrote: > One of our users requested a new upload to fix this bug: > https://bugs.debian.org/1001082. > > [ Impact ] > This bug causes various applications to segfault on exit. > Please go ahead; thanks. Regards, A

Bug#1006417: buster-pu: package php-illuminate-database/5.7.27-1+deb10u1

2022-03-18 Thread Adam D. Barratt
Control: tags -1 + confirmed On Fri, 2022-02-25 at 07:34 +0100, Thorsten Glaser wrote: > These are two security-related backports by the new maintainer > of these binary packages for bullseye and up. I’ve been asked > to do this via the upcoming point release by the security team. > Please go ah

Bug#1006494: buster-pu: htmldoc/1.9.3-1+deb10u3

2022-03-18 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sat, 2022-02-26 at 10:54 +, Thorsten Alteholz wrote: > The attached debdiff for htmldoc fixes CVE-2022-0534, CVE-2021-43579 > and > CVE-2021-40985 in Buster. These CVEs are marked as uninportant by > the > security team, yet they are bugs. CVE-2021-43579 even

Bug#1007747: bullseye-pu: package chrony/4.0-8+deb11u2

2022-03-18 Thread Adam D. Barratt
Control: tags -1 + confirmed On Wed, 2022-03-16 at 01:05 +0100, Vincent Blut wrote: > The AppArmor profile for chronyd does not include a rule to read the > chronyd > configuration file generated by the timemaster program. > > [ Impact ] > Without the proposed fix, users must override the Apparmo

Bug#1007745: buster-pu: package chrony/3.4-4+deb10u2

2022-03-18 Thread Adam D. Barratt
Control: tags -1 + confirmed On Wed, 2022-03-16 at 00:28 +0100, Vincent Blut wrote: > The AppArmor profile for chronyd does not include a rule to read the > chronyd > configuration file generated by the timemaster program. > > [ Impact ] > Without the proposed fix, users must override the Apparmo

Bug#1006182: buster-pu: package qtbase-opensource-src/5.11.3+dfsg1-1+deb10u5

2022-03-18 Thread Adam D. Barratt
On Fri, 2022-03-18 at 12:24 +0100, Emilio Pozuelo Monfort wrote: > On 18/03/2022 11:48, Adam D. Barratt wrote: > > Control: tags -1 + confirmed > > > > On Sun, 2022-02-20 at 21:13 +0300, Dmitry Shachnev wrote: > > > One of our users requested a new uploa

Bug#1003484: bullseye-pu: package openssl/1.1.1m-0+deb11u1

2022-03-18 Thread Adam D. Barratt
On Fri, 2022-03-18 at 14:12 +0100, Sebastian Andrzej Siewior wrote: > On 2022-03-18 09:21:50 [+], Adam D. Barratt wrote: > > Apologies if the status here got confused - based on the above, I > > was > > assuming that in the absence of a negative response you would >

Bug#1000355: bullseye-pu: package nano/5.4-2+deb11u1

2022-03-18 Thread Adam D. Barratt
Control: tags -1 + d-i The changes are probably beneficial to the use of nano-udeb as well, but in any case tagging and CCing for inforamation. On Fri, 2022-03-18 at 18:15 +0100, Julien Cristau wrote: > Control: tag -1 confirmed > > On Mon, Nov 22, 2021 at 01:29:56AM +0100, Jordi Mallach wrote:

Bug#1006447: RM: evenement/3.0.1-2.1, php-cocur-slugify/4.0.0-2, php-defuse-php-encryption/2.2.1-1.1, php-dflydev-fig-cookies/2.0.0-1.1, php-embed/3.3.9-1.1, php-fabiang-sasl/1.0.1-1, php-markdown/1.8

2022-03-18 Thread Adam D. Barratt
On Fri, 2022-02-25 at 17:47 +0100, Thorsten Glaser wrote: > these are otherwise unused r-deps for movim, which did not make the > release. They were also just removed from unstable, since the movim > packaging project was abandoned (I asked the other team maintainers > and there’s no interest in co

Bug#1004056: libsdl1.2 1.2.15+dfsg2-6~deb10u1 flagged for acceptance

2022-03-18 Thread Adam D Barratt
package release.debian.org tags 1004056 = buster pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian buster. Thanks for your contribution! Upload details == Package: libsdl1.2 Version: 1.2.15+dfsg2-

Bug#1007745: chrony 3.4-4+deb10u2 flagged for acceptance

2022-03-18 Thread Adam D Barratt
package release.debian.org tags 1007745 = buster pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian buster. Thanks for your contribution! Upload details == Package: chrony Version: 3.4-4+deb10u2 E

Bug#1006142: beads 1.1.18+dfsg-3+b1 flagged for acceptance

2022-03-18 Thread Adam D Barratt
package release.debian.org tags 1006142 = buster pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian buster. Thanks for your contribution! Upload details == Package: beads Version: 1.1.18+dfsg-3+b1

Bug#1007746: glibc 2.28-10+deb10u1 flagged for acceptance

2022-03-18 Thread Adam D Barratt
package release.debian.org tags 1007746 = buster pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian buster. Thanks for your contribution! Upload details == Package: glibc Version: 2.28-10+deb10u1

Bug#1005949: glibc 2.31-13+deb11u3 flagged for acceptance

2022-03-19 Thread Adam D Barratt
package release.debian.org tags 1005949 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: glibc Version: 2.31-13+deb11

Bug#1002563: gbonds 2.0.3-16+deb11u1 flagged for acceptance

2022-03-19 Thread Adam D Barratt
package release.debian.org tags 1002563 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: gbonds Version: 2.0.3-16+deb

Bug#1006187: espeakup 0.80-20+deb11u1 flagged for acceptance

2022-03-19 Thread Adam D Barratt
package release.debian.org tags 1006187 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: espeakup Version: 0.80-20+de

Bug#1006446: libgdal-grass 3.2.2-1+b1 flagged for acceptance

2022-03-19 Thread Adam D Barratt
package release.debian.org tags 1006446 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: libgdal-grass Version: 3.2.2

Bug#1006192: espeak-ng 1.50+dfsg-7+deb11u1 flagged for acceptance

2022-03-19 Thread Adam D Barratt
package release.debian.org tags 1006192 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: espeak-ng Version: 1.50+dfsg

Bug#1006522: djbdns 1.05-13+deb11u1 flagged for acceptance

2022-03-19 Thread Adam D Barratt
package release.debian.org tags 1006522 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: djbdns Version: 1.05-13+deb1

Bug#1007747: chrony 4.0-8+deb11u2 flagged for acceptance

2022-03-19 Thread Adam D Barratt
package release.debian.org tags 1007747 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: chrony Version: 4.0-8+deb11u

Bug#1007920: flac 1.3.3-2+deb11u1 flagged for acceptance

2022-03-19 Thread Adam D Barratt
package release.debian.org tags 1007920 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: flac Version: 1.3.3-2+deb11u

Bug#1006165: tasksel 3.68+deb11u1 flagged for acceptance

2022-03-19 Thread Adam D Barratt
package release.debian.org tags 1006165 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: tasksel Version: 3.68+deb11u

Bug#1007261: wolfssl 4.6.0+p1-0+deb11u1 flagged for acceptance

2022-03-19 Thread Adam D Barratt
package release.debian.org tags 1007261 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: wolfssl Version: 4.6.0+p1-0+

Bug#1007878: libxml2 2.9.10+dfsg-6.7+deb11u1 flagged for acceptance

2022-03-19 Thread Adam D Barratt
package release.debian.org tags 1007878 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: libxml2 Version: 2.9.10+dfsg

Bug#1007909: mujs 1.1.0-1+deb11u1 flagged for acceptance

2022-03-19 Thread Adam D Barratt
package release.debian.org tags 1007909 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: mujs Version: 1.1.0-1+deb11u

Bug#995748: buster-pu: package vim/2:8.1.0875-5+deb10u1

2022-03-19 Thread Adam D. Barratt
On Sat, 2021-12-25 at 10:53 -0500, James McCoy wrote: > On Sat, Dec 25, 2021 at 11:41:29AM +0000, Adam D. Barratt wrote: [...] > > Unfortunately the builds failed everywhere with a test suite issue: > > My apologies. I uploaded with an additional patch for another issue > (#99

Bug#1003484: openssl 1.1.1m-0+deb11u1 flagged for acceptance

2022-03-19 Thread Adam D Barratt
package release.debian.org tags 1003484 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: openssl Version: 1.1.1m-0+de

Bug#1003484: openssl 1.1.1n-0+deb11u1 flagged for acceptance

2022-03-19 Thread Adam D Barratt
package release.debian.org tags 1003484 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: openssl Version: 1.1.1n-0+de

Bug#1004741: mpich 3.4.1-5~deb11u1 flagged for acceptance

2022-03-19 Thread Adam D Barratt
package release.debian.org tags 1004741 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: mpich Version: 3.4.1-5~deb11

Bug#1004452: gnupg2 2.2.27-2+deb11u1 flagged for acceptance

2022-03-19 Thread Adam D Barratt
package release.debian.org tags 1004452 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: gnupg2 Version: 2.2.27-2+deb

Bug#1006417: php-illuminate-database 5.7.27-1+deb10u1 flagged for acceptance

2022-03-19 Thread Adam D Barratt
package release.debian.org tags 1006417 = buster pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian buster. Thanks for your contribution! Upload details == Package: php-illuminate-database Version:

Bug#1006377: lemonldap-ng 2.0.2+ds-7+deb10u7 flagged for acceptance

2022-03-19 Thread Adam D Barratt
package release.debian.org tags 1006377 = buster pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian buster. Thanks for your contribution! Upload details == Package: lemonldap-ng Version: 2.0.2+ds-7

Bug#1006493: htmldoc 1.9.11-4+deb11u2 flagged for acceptance

2022-03-19 Thread Adam D Barratt
package release.debian.org tags 1006493 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: htmldoc Version: 1.9.11-4+de

Bug#1007879: libxml2 2.9.4+dfsg1-7+deb10u3 flagged for acceptance

2022-03-19 Thread Adam D Barratt
package release.debian.org tags 1007879 = buster pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian buster. Thanks for your contribution! Upload details == Package: libxml2 Version: 2.9.4+dfsg1-7+d

Bug#1006494: htmldoc 1.9.3-1+deb10u3 flagged for acceptance

2022-03-19 Thread Adam D Barratt
package release.debian.org tags 1006494 = buster pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian buster. Thanks for your contribution! Upload details == Package: htmldoc Version: 1.9.3-1+deb10u3

Bug#959469: openssl 1.1.1n-0+deb10u1 flagged for acceptance

2022-03-19 Thread Adam D Barratt
package release.debian.org tags 959469 = buster pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian buster. Thanks for your contribution! Upload details == Package: openssl Version: 1.1.1n-0+deb10u1

Bug#1007249: bullseye-pu: package apache2/2.4.53-1~deb11u1

2022-03-19 Thread Adam D. Barratt
Control: tags -1 + confirmed For reference, this mail did not make it to debian-release, most likely due to the size of the attachments. In such cases, you may wish to follow-up to the original mail with a small response so that it is more visible to people following the list rather than the BTS.

Bug#1007262: bullseye-pu: package cups-filters/1.28.7-1+deb11u1

2022-03-19 Thread Adam D. Barratt
Control: tags -1 + confirmed On Mon, 2022-03-14 at 23:03 +, Thorsten Alteholz wrote: > As written in #1006183 [1] and #1005813 [2], the Debian Edu team has > a > somewhat strange handling of config files. In order to make their > life a > bit easier, they asked to add another file entry to t

Bug#1007762: bullseye-pu: package nginx/1.18.0-6.1

2022-03-19 Thread Adam D. Barratt
Control: tags -1 + confirmed On Wed, 2022-03-16 at 12:28 +0100, Jan Mojzis wrote: > Current version of nginx currently shipped in Debian 11 > segfaults when libnginx-mod-http-lua is loaded and > init_worker_by_lua* is used. > > [ Reason ] > There is a bug in the libnginx-mod-http-lua module. > In

Bug#1007938: buster-pu: package cups/2.2.10-6+deb10u5

2022-03-19 Thread Adam D. Barratt
Control: tags -1 + confirmed On Fri, 2022-03-18 at 22:55 +, Thorsten Alteholz wrote: > The attached debdiff for cups fixes CVE-2020-10001 in Buster. This > CVE has > been marked as no-dsa by the security team. > Please go ahead. Regards, Adam

Bug#1007948: buster-pu: package phpliteadmin/1.9.7.1-2+deb10u1

2022-03-19 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sat, 2022-03-19 at 10:18 +0300, Nicholas Guriev wrote: > Salvatore Bonaccorso on the Security Team suggested me to fix a > revealed > XSS vulnerability trough the upcoming point release. The issue has > got > the assigned number CVE-2021-46709. The proposed fix is a

Bug#1006551: bullseye-pu: package tiff/4.2.0-1+deb11u1

2022-03-19 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sun, 2022-02-27 at 18:01 +0100, László Böszörményi wrote: > A security update of tiff for issues not warrant a DSA but still > would > be good to have fixed. > Work done by Thorsten Alteholz that I've double checked. Debdiff is > attached. > Please go ahead. Rega

Bug#998390: buster-pu: package ruby-activeldap/5.2.2-2+deb10u1

2022-03-19 Thread Adam D. Barratt
Control: tags -1 + confirmed On Wed, 2021-11-03 at 15:19 +0100, Daniel Leidert wrote: > There is an open bug report about ruby-activeldap missing a > dependency on > ruby-builder. This issue is only present in Buster and the fix is > quite easy. > Please go ahead; sorry for the delay. Regards,

Bug#1006550: buster-pu: package tiff/4.1.0+git191117-2~deb10u4

2022-03-19 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sun, 2022-02-27 at 18:01 +0100, László Böszörményi wrote: > A security update of tiff for issues not warrant a DSA but still > would > be good to have fixed. > Please go ahead; thanks. Regards, Adam

Bug#1003293: buster-pu: package postfix/3.4.14-0+deb10u1

2022-03-19 Thread Adam D. Barratt
Control: tags -1 + confirmed On Fri, 2022-01-07 at 13:01 -0500, Scott Kitterman wrote: > This is similar to #1003261 for bullseye, although there are fewer > Debian specific changes because most weren't applicable to or would > have > been more invasive for buster. > > I've put together my usual

<    2   3   4   5   6   7   8   9   10   11   >