[Touch-packages] [Bug 2017786] Re: update script in ubuntu-meta not handling germinate or specified versions

2023-04-28 Thread Joshua Peisach
** Changed in: ubuntucinnamon-meta (Ubuntu) Assignee: (unassigned) => Joshua Peisach (itzswirlz) -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to ubuntu-meta in Ubuntu. https://bugs.launchpad.net/bugs/2017786 Ti

[Touch-packages] [Bug 1987560] Re: don't switch Ubuntu libtimezonemap to libsoup3

2022-08-24 Thread Joshua Peisach
Should I get in touch with an archive admin? -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to libtimezonemap in Ubuntu. https://bugs.launchpad.net/bugs/1987560 Title: don't switch Ubuntu libtimezonemap to libsoup3 Status

[Touch-packages] [Bug 1982898] Re: CVE-2021-46829: Buffer overwrite in io-gif-animation.c composite_frame() in gdk-pixbuf

2022-07-27 Thread Joshua Peisach
I can confirm for myself now aswell that I am experiencing issues. Some applications, most of them listed above in one way or another can be found to properly be unable to handle these images. Gdk-pixbuf still crashes but no longer is a buffer overwrite. Technically a win - but the key issue is

[Touch-packages] [Bug 1982898] Re: CVE-2021-46829: Buffer overwrite in io-gif-animation.c composite_frame() in gdk-pixbuf

2022-07-27 Thread Joshua Peisach
** Attachment added: "Eye of MATE Crash" https://bugs.launchpad.net/ubuntu/+source/gdk-pixbuf/+bug/1982898/+attachment/5605633/+files/EOMCrash.tar.gz ** Description changed: [Impact]  * A buffer overwrite exists in gdk-pixbuf's thumbnailer.  * The GIF loader runs out of memory

[Touch-packages] [Bug 1982898] Re: CVE-2021-46829: Buffer overwrite in io-gif-animation.c composite_frame() in gdk-pixbuf

2022-07-27 Thread Joshua Peisach
** Attachment added: "Nautilus crash" https://bugs.launchpad.net/ubuntu/+source/gdk-pixbuf/+bug/1982898/+attachment/5605632/+files/NautilusCrash.tar.gz -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to gdk-pixbuf in Ubuntu.

[Touch-packages] [Bug 1982898] Re: CVE-2021-46829: Buffer overwrite in io-gif-animation.c composite_frame() in gdk-pixbuf

2022-07-27 Thread Joshua Peisach
Hmm… check Jammy/Kinetic. Can you send me the crash file/syslog? Some apps I think have proper handling of bad files while others don’t. For example, EOG can detect its a bad file. -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is

[Touch-packages] [Bug 1982898] Re: CVE-2021-46829: Buffer overwrite in io-gif-animation.c composite_frame() in gdk-pixbuf

2022-07-26 Thread Joshua Peisach
** Description changed: [Impact] - * A buffer overwrite exists in gdk-pixbuf's thumbnailer. +  * A buffer overwrite exists in gdk-pixbuf's thumbnailer. - * The GIF loader runs out of memory with specifically crafted files +  * The GIF loader runs out of memory with specifically crafted

[Touch-packages] [Bug 1982898] Re: CVE-2021-46829: Buffer overwrite in io-gif-animation.c composite_frame() in gdk-pixbuf

2022-07-26 Thread Joshua Peisach
** Description changed: - There is a buffer overwrite in gdk-pixbuf. I will eventually create a - whole SRU document with how to reproduce and all, but I'll just say it - is a nasty one. Opening it on my old iMac from about 2007/2009 in Nemo - causes the entire system to run out of memory. (With

[Touch-packages] [Bug 1982898] Re: CVE-2021-46829: Buffer overwrite in io-gif-animation.c composite_frame() in gdk-pixbuf

2022-07-26 Thread Joshua Peisach
Here's proposal focal patch - I noticed some whitespaces but those are in the code and not introduced by me. ** Patch added: "Proposed focal patch" https://bugs.launchpad.net/ubuntu/+source/gdk-pixbuf/+bug/1982898/+attachment/5605438/+files/gdk-pixbuf_2.40.0+dfsg-3ubuntu0.3.debdiff **

[Touch-packages] [Bug 1982898] Re: CVE-2021-46829: Buffer overwrite in io-gif-animation.c composite_frame() in gdk-pixbuf

2022-07-26 Thread Joshua Peisach
PCManFM crashed to this. that's my last POC - I'm going to create the patch ** Attachment added: "pcmanfmcrash.tar.gz" https://bugs.launchpad.net/ubuntu/+source/gdk-pixbuf/+bug/1982898/+attachment/5605437/+files/pcmanfmcrash.tar.gz -- You received this bug notification because you are a

[Touch-packages] [Bug 1982898] Re: CVE-2021-46829: Buffer overwrite in io-gif-animation.c composite_frame() in gdk-pixbuf

2022-07-26 Thread Joshua Peisach
Thunar, which uses tumbler for thumbnailing, produced a crash. ** Attachment added: "Tumbler (xfce thumbnailer crash)" https://bugs.launchpad.net/ubuntu/+source/gdk-pixbuf/+bug/1982898/+attachment/5605436/+files/libgdkpixbufloader-gif-crash.tar.gz -- You received this bug notification

[Touch-packages] [Bug 1982898] Re: CVE-2021-46829: Buffer overwrite in io-gif-animation.c composite_frame() in gdk-pixbuf

2022-07-26 Thread Joshua Peisach
Here is what it did to my iMac. ** Attachment added: "OldiMacSyslog" https://bugs.launchpad.net/ubuntu/+source/gdk-pixbuf/+bug/1982898/+attachment/5605435/+files/OldiMacSyslog ** Changed in: gdk-pixbuf (Ubuntu) Assignee: (unassigned) => Joshua Peisach (itzswirlz) ** Tags r

[Touch-packages] [Bug 1982898] [NEW] CVE-2021-46829: Buffer overwrite in io-gif-animation.c composite_frame() in gdk-pixbuf

2022-07-26 Thread Joshua Peisach
: Installed on 2021-11-24 (244 days ago) InstallationMedia: ubuntucinnamonremix "@BASECODENAME" (20210826) SourcePackage: gdk-pixbuf UpgradeStatus: No upgrade log present (probably fresh install) ** Affects: gdk-pixbuf (Ubuntu) Importance: Undecided Assignee: Joshua Peisach

[Touch-packages] [Bug 1972115] Re: ubuntu-bug exits after dialog instead of sending data

2022-06-03 Thread Joshua Peisach
This even happened to me on Focal (latest update) when reporting the gthumb CVE I found. I manually uploaded the crash dump, separated the big apport file and put it up. Maybe a server issue -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is

[Touch-packages] [Bug 1955859] [NEW] ubuntu-core on jammy daily: apt-key has no access to /dev/null

2021-12-27 Thread Joshua Peisach
Public bug reported: Ubuntu Jammy Core - Smoke test fails. One of the issues that I believe may be the primary issue is that apt- key has no access to /dev/null. root@Joshua-PC:/# apt-get update Ign:1 http://archive.ubuntu.com/ubuntu jammy-updates InRelease Ign:2

[Touch-packages] [Bug 1923517] [NEW] tracker-store crashed with signal 5

2021-04-12 Thread Joshua Peisach
Public bug reported: This happens with g_listenv jpeisach@Joshua-PCTest ~/D/xreader-2.8.3 (master)> addr2line -e /usr/lib/x86_64-linux-gnu/libglib-2.0.so.0.6800.0 3F3A7 -fCi g_listenv ??:? ProblemType: Crash DistroRelease: Ubuntu 21.04 Package: tracker 2.3.6-2 ProcVersionSignature: Ubuntu

[Touch-packages] [Bug 1919255] [NEW] tracker-store crashed with signal 5

2021-03-15 Thread Joshua Peisach
Public bug reported: This just happened... ProblemType: Crash DistroRelease: Ubuntu 21.04 Package: tracker 2.3.6-2 ProcVersionSignature: Ubuntu 5.10.0-14.15-generic 5.10.11 Uname: Linux 5.10.0-14-generic x86_64 ApportVersion: 2.20.11-0ubuntu60 Architecture: amd64 CasperMD5CheckResult: unknown

[Touch-packages] [Bug 1918186] [NEW] tracker-store crashed with signal 5 in g_printerr()

2021-03-08 Thread Joshua Peisach
Public bug reported: Just happened, didn't really do anything. ProblemType: Crash DistroRelease: Ubuntu 21.04 Package: tracker 2.3.6-2 ProcVersionSignature: Ubuntu 5.10.0-14.15-generic 5.10.11 Uname: Linux 5.10.0-14-generic x86_64 ApportVersion: 2.20.11-0ubuntu59 Architecture: amd64

[Touch-packages] [Bug 1030022] Re: Port from legacy Xlib to modern XCB

2020-07-15 Thread Joshua Peisach
It looks like this was already changed more recently in 2019/2020 with 4.4 - 4.6 ** Changed in: muffin (Ubuntu) Status: New => Fix Released -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to cairo in Ubuntu.

[Touch-packages] [Bug 1860826] Re: pam_unix(sudo:auth): Couldn't open /etc/securetty: No such file or directory

2020-05-17 Thread Joshua Peisach
I would say there is probably a missing dependency-/etc/securetty doesn't exist in Ubuntu and looks like it could be a typo. -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to pam in Ubuntu.

[Touch-packages] [Bug 1870856] [NEW] Changing Icons does not automatically change on desktop

2020-04-04 Thread Joshua Peisach
Public bug reported: Ubuntu Desktop: Please note first that I had cinnamon-remix installed-I was bored so I installed Ubuntu and Ubuntu Budgie desktops, along with gnome-tweaks and gnome-shell. I was changing the icons using GNOME Tweak Tool. In nautilus, the changes automatically would apply.