[Bug 2059352] Re: paramiko 2.12.0-2ubuntu4 fails autopkgtests on all architectures

2024-05-15 Thread Chris Coulson
** Changed in: paramiko (Ubuntu) Status: New => Triaged ** Changed in: paramiko (Ubuntu) Importance: Undecided => Low -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2059352 Title:

[Bug 2059352] Re: paramiko 2.12.0-2ubuntu4 fails autopkgtests on all architectures

2024-05-15 Thread Chris Coulson
This isn't time_t related and looks like it's fixed by https://github.com/paramiko/paramiko/commit/d71046151d9904df467ff72709585cde39cdd4ca ** Tags removed: time-t -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 1966306] [NEW] Update to 98.0.2

2022-03-24 Thread Chris Coulson
Public bug reported: https://www.mozilla.org/en-US/firefox/98.0.2/releasenotes/ ** Affects: firefox (Ubuntu) Importance: Undecided Status: Fix Released ** Changed in: firefox (Ubuntu) Status: New => Fix Released -- You received this bug notification because you are a

[Bug 1955433] [NEW] Update to 95.0.1

2021-12-20 Thread Chris Coulson
Public bug reported: See https://www.mozilla.org/en-US/firefox/95.0.1/releasenotes/ ** Affects: firefox (Ubuntu) Importance: Undecided Status: Fix Released ** Changed in: firefox (Ubuntu) Status: New => Fix Released -- You received this bug notification because you are a

[Bug 1938678] Re: [intel] [tgl-h][iotg] [hwe-tpm] Ubuntu Core hangs during bootup on TGL-H

2021-10-19 Thread Chris Coulson
From the TCG log supplied in comment #43: $ ./tcglog-dump --alg sha256 --verbose --pcrs 7 ~/Downloads/binary_bios_measurements 7 a62bd67b2cc295976651b354468c0047f8d1547d25056ded5952aaf5991762a3 EV_EFI_ACTION [ UEFI Debug Mode ] 7

[Bug 1941496] [NEW] Update to 91.0.2

2021-08-25 Thread Chris Coulson
Public bug reported: See https://www.mozilla.org/en-US/firefox/91.0.2/releasenotes/ ** Affects: firefox (Ubuntu) Importance: Undecided Status: Fix Released ** Changed in: firefox (Ubuntu) Status: New => Fix Released -- You received this bug notification because you are a

[Bug 1938678] Re: [intel] [tgl-h][iotg] [hwe-tpm] Ubuntu Core hangs during bootup on TGL-H

2021-08-20 Thread Chris Coulson
Helps if I add the file ** Attachment added: "binary_bios_measurements.txt" https://bugs.launchpad.net/intel/+bug/1938678/+attachment/5519435/+files/binary_bios_measurements.txt -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 1938678] Re: [intel] [tgl-h][iotg] [hwe-tpm] Ubuntu Core hangs during bootup on TGL-H

2021-08-20 Thread Chris Coulson
Thanks. The issue is that the firmware provides a debugger which breaks the PCR calculations. I'm not sure whether it's actually desirable to fix this or detect it and provide a better error message given that the ability to attach a debugger defeats any protections offered by full- disk

[Bug 1938678] Re: [intel] [tgl-h][iotg] [hwe-tpm] Ubuntu Core hangs during bootup on TGL-H

2021-08-20 Thread Chris Coulson
Can I see the event log from this device after booting with secure boot on please? (/sys/kernel/security/tpm0/binary_bios_measurements) -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1938678 Title:

[Bug 1938678] Re: [intel] [tgl-h][iotg] [hwe-tpm] Ubuntu Core hangs during bootup on TGL-H

2021-08-19 Thread Chris Coulson
@ethan.hsieh That error message is unexpected, but it doesn't matter too much anyway - there's no support at all for computing PCR digests for systems that boot kernels that are verified with a MOK. The only way to test kernels signed with non-production keys is to take control of the device's

[Bug 1938678] Re: [intel] [tgl-h][iotg] [hwe-tpm] Ubuntu Core hangs during bootup on TGL-H

2021-08-18 Thread Chris Coulson
Both https://github.com/canonical/go- tpm2/commit/96eb110220ece5922dc7b691422fff12735f1880 and https://github.com/snapcore/secboot/pull/166 are intended to resolve the issue in this bug report. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to

[Bug 1938678] Re: [intel] [tgl-h][iotg] [hwe-tpm] Ubuntu Core hangs during bootup on TGL-H

2021-08-17 Thread Chris Coulson
I've not read every comment in detail, but I think there is a bit of misunderstanding about what the firmware options discussed here actually do. Disabling the SM3_256 PCR bank will stop the firmware measuring events to the TPM using SM3_256 and will omit SM3_256 digests from the event log. I

[Bug 1871471] Re: flash end of life soon, suggest remove from hirsute and also handle stable releases

2021-01-14 Thread Chris Coulson
I'm not sure why this has been assigned to me - adobe-flashplugin has never existed in hirsute ** Changed in: adobe-flashplugin (Ubuntu Hirsute) Assignee: Chris Coulson (chrisccoulson) => (unassigned) -- You received this bug notification because you are a member of Ubuntu Bugs, wh

[Bug 1903197] [NEW] Update to 82.0.2

2020-11-05 Thread Chris Coulson
Public bug reported: See https://www.mozilla.org/en-US/firefox/82.0.2/releasenotes/ ** Affects: firefox (Ubuntu) Importance: Undecided Status: Fix Released ** Changed in: firefox (Ubuntu) Status: New => Fix Released -- You received this bug notification because you are a

[Bug 1900032] [NEW] Update to 81.0.2

2020-10-15 Thread Chris Coulson
Public bug reported: See https://www.mozilla.org/en-US/firefox/81.0.2/releasenotes/ ** Affects: firefox (Ubuntu) Importance: Undecided Status: Fix Released ** Changed in: firefox (Ubuntu) Status: New => Fix Released -- You received this bug notification because you are a

[Bug 1854362] Re: [MIR] ceph-iscsi, tcmu, python-configshell-fb, python-rtslib-fb, urwid, targetcli-fb

2020-08-11 Thread Chris Coulson
I reviewed ceph-iscsi 3.4-0ubuntu2 as checked into focal. This shouldn't be considered a full audit but rather a quick gauge of maintainability. ceph-iscsi is a set of tools for managing LIO gateways for Ceph. It consists of 2 services providing REST APIs - one for obtaining gateway node

[Bug 1887576] [NEW] Update to 78.0.2

2020-07-14 Thread Chris Coulson
Public bug reported: See https://www.mozilla.org/en-US/firefox/78.0.2/releasenotes/ ** Affects: firefox (Ubuntu) Importance: Undecided Status: Fix Released ** Changed in: firefox (Ubuntu) Status: New => Fix Released -- You received this bug notification because you are a

[Bug 1851311] Re: loopback command hangs in 2.04 under UEFI

2020-07-10 Thread Chris Coulson
*** This bug is a duplicate of bug 1878541 *** https://bugs.launchpad.net/bugs/1878541 I suspect this is a duplicate of bug 1878541 ** This bug has been marked a duplicate of bug 1878541 Grub fails to load kernel from squashfs if mem < 1500mb -- You received this bug notification

[Bug 1880197] Re: mokmanager is signed using ephemeral key, instead of Vendor Key

2020-05-22 Thread Chris Coulson
This isn't really any different to how kernel module signing is handled though - is there any real benefit to adding the extra step of signing mmx64.efi (and fbx64.efi) with the vendor key, other than not having to keep shimx64.efi, mmx64.efi and fbx64.efi in sync if you're testing a local build?

[Bug 1879290] Re: pc: no message on the screen for ~30s on fast HW

2020-05-21 Thread Chris Coulson
And, "console=ttyS0" on it's own is particularly bad because it seems to default to a baud rate of 9600 (at least, setting it to 115200 on my NUC improved things considerably, but the boot is still slower than without the serial console option). Add that to the fact that the kernel is quite noisy

[Bug 1878541] Re: Grub fails to load kernel from squashfs if mem < 1500mb

2020-05-20 Thread Chris Coulson
Hi Colin, I wouldn't mind hearing your thoughts on the previous comment. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1878541 Title: Grub fails to load kernel from squashfs if mem < 1500mb To

[Bug 1878541] Re: Grub fails to load kernel from squashfs if mem < 1500mb

2020-05-20 Thread Chris Coulson
I did a bit of digging on this, and it seems to happen because the grub verifier module reads in to memory the entire contents of any file that is opened via grub_file_open without the GRUB_FILE_TYPE_SKIP_SIGNATURE flag or any file which doesn't have a type of GRUB_FILE_TYPE_SIGNATURE or

[Bug 1879290] Re: pc: no message on the screen for ~30s on fast HW

2020-05-19 Thread Chris Coulson
This delay appears to be occurring because grub passes "console=ttyS0" on the commandline. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1879290 Title: pc: no message on the screen for ~30s on fast

[Bug 1878723] Re: Kernel panic when used with upstart after 0.11-4ubuntu2.1 update

2020-05-15 Thread Chris Coulson
The updated packages just revert the security fixes which resolves this immediate issue. Keeping the bug open though because we still want to resolve the underlying issue so that we can republish an update with the security fixes in it ** Changed in: json-c (Ubuntu) Status: Fix Released =>

[Bug 1878251] [NEW] Update to 76.0.1

2020-05-12 Thread Chris Coulson
Public bug reported: https://www.mozilla.org/en-US/firefox/76.0.1/releasenotes/ ** Affects: firefox (Ubuntu) Importance: Undecided Status: Fix Released ** Changed in: firefox (Ubuntu) Status: New => Fix Released -- You received this bug notification because you are a

[Bug 1854362] Re: [MIR] ceph-iscsi, tcmu, python-configshell-fb, python-rtslib-fb, urwid, targetcli-fb

2020-03-26 Thread Chris Coulson
See https://github.com/open-iscsi/tcmu-runner/issues/582 for the dbus- policy-without-send-destination lintian warning. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1854362 Title: [MIR]

[Bug 1854362] Re: [MIR] ceph-iscsi, tcmu, python-configshell-fb, python-rtslib-fb, urwid, targetcli-fb

2020-03-26 Thread Chris Coulson
I reviewed tcmu 1.5.2-5build1 as checked into focal. This shouldn't be considered a full audit but rather a quick gauge of maintainability. tcmu is the userspace side of the kernel's LIO TCM in userspace backstore, which allows backstores for LIO (the kernel's SCSI target) to live outside of the

[Bug 1864852] [NEW] Update to 73.0.1

2020-02-26 Thread Chris Coulson
Public bug reported: See https://www.mozilla.org/en-US/firefox/73.0.1/releasenotes/ ** Affects: firefox (Ubuntu) Importance: Undecided Status: Fix Released ** Changed in: firefox (Ubuntu) Status: New => Fix Released -- You received this bug notification because you are a

[Bug 1856424] Re: please add smbios module to the signed grub2 images

2020-02-20 Thread Chris Coulson
Hi, I've given this module a quick review - it looks ok for including in the EFI image. I only have one small note on the while loop in grub_smbios_match_structure, which I made because I thought it looked a bit suspicious: while (ptr < table_end && ptr[1] >= 4 /* Valid structures

[Bug 1861555] Re: Move window behaviour is broken because of a change in tmux

2020-02-01 Thread Chris Coulson
** Also affects: byobu (Ubuntu Focal) Importance: Undecided Status: New -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1861555 Title: Move window behaviour is broken because of a change in

[Bug 1861555] [NEW] Move window behaviour is broken because of a change in tmux

2020-02-01 Thread Chris Coulson
Public bug reported: tmux 3.0a contains a change to the swap-window command which alters its behaviour in focal compared to previous releases - see https://github.com/tmux/tmux/commit/39c55d5b6fcafd9476528ebc1064192c90f559a4 for more context. The consequence of this is that the "move window"

[Bug 1861003] Re: firefox package vulnerable

2020-01-29 Thread Chris Coulson
Hi, There were no advisories published for the 72.0.2 release. It's a bug fix release. ** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 1838796] Re: TPM event log does not contain events measured after ExitBootServices

2020-01-15 Thread Chris Coulson
Ok, I think that the truncated log issue with kernel version 5.0.0-37 is a bug in tpm1_bios_measurements_next() which is fixed by https://lore.kernel.org/patchwork/patch/1031236/, although I've not verified that this is the case. -- You received this bug notification because you are a member of

[Bug 1838796] Re: TPM event log does not contain events measured after ExitBootServices

2020-01-15 Thread Chris Coulson
I just noticed I didn't respond to the question in comment 16. The tool I'm using is https://github.com/chrisccoulson/tcglog-parser -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1838796 Title: TPM

[Bug 1838796] Re: TPM event log does not contain events measured after ExitBootServices

2020-01-15 Thread Chris Coulson
Hi, In response to your queries: 1) With kernel version 5.0.0-37, I can confirm that the event log provided by the kernel is inconsistent with the TPM for PCR7 in a VM that's running OVMF. This is because of the opposite problem - in this case, the last event is missing from the log exported by

[Bug 1838796] Re: TPM event log does not contain events measured after ExitBootServices

2020-01-06 Thread Chris Coulson
I think the reason for your issue is that the final 2 events extended to PCR7 are recorded twice in the log, most likely because the test kernel from comment 12 doesn't contain https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=166a2809d65b282272c474835ec22c882a39ca1b I

[Bug 1838712] Re: TPM event log does not contain kernel validation key

2019-12-05 Thread Chris Coulson
Shim measuring duplicate EV_EFI_VARIABLE_AUTHORITY events (one for GRUB and one for the kernel) when both executables are verified with the same certificate is actually a bug - although there should be an EV_EFI_BOOT_SERVICES_APPLICATION event for each executable, there should only be a single

[Bug 1838796] Re: TPM event log does not contain events measured after ExitBootServices

2019-12-04 Thread Chris Coulson
I briefly tested the kernels and I'm seeing that the log is consistent with the PCR values in the TPM. May I ask what tool it is you're using in those screenshots so that I can try it? -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 1851445] [NEW] Update to 70.0.1

2019-11-05 Thread Chris Coulson
Public bug reported: https://www.mozilla.org/en-US/firefox/70.0.1/releasenotes/ ** Affects: firefox (Ubuntu) Importance: Undecided Status: Fix Released ** Changed in: firefox (Ubuntu) Status: New => Fix Released -- You received this bug notification because you are a

[Bug 1847458] Re: EFI chainloader no longer uses shim lock protocol

2019-10-09 Thread Chris Coulson
** Summary changed: - EFI chainloader no longer uses shim lock API + EFI chainloader no longer uses shim lock protocol -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1847458 Title: EFI chainloader

[Bug 1847458] [NEW] EFI chainloader no longer uses shim lock API

2019-10-09 Thread Chris Coulson
Public bug reported: GRUB versions pre-eoan contain modifications to the EFI chainloader command (grub-core/loader/efi/chainloader.c) which allow a chainloaded bootloader to be verified using the shim lock EFI protocol (which validates an image against signatures enrolled in the UEFI db, MOK db

[Bug 1847354] [NEW] Update to 69.0.2

2019-10-08 Thread Chris Coulson
Public bug reported: https://www.mozilla.org/en-US/firefox/69.0.2/releasenotes/ ** Affects: firefox (Ubuntu) Importance: Undecided Status: Fix Released ** Changed in: firefox (Ubuntu) Status: New => Fix Released -- You received this bug notification because you are a

[Bug 1842651] Re: Regression: after Uprade from udev_237-3ubuntu10.25 to udev_237-3ubuntu10.26 network interfaces don't get renamed by 70-persistent-network.rules

2019-09-09 Thread Chris Coulson
I've uploaded the changes that were sponsored to proposed to https://launchpad.net/~ubuntu-security-proposed/+archive/ubuntu/ppa. Please reject the packages that are currently in the unapproved queue. -- You received this bug notification because you are a member of Ubuntu Bugs, which is

[Bug 1842651] Re: Regression: after Uprade from udev_237-3ubuntu10.25 to udev_237-3ubuntu10.26 network interfaces don't get renamed by 70-persistent-network.rules

2019-09-06 Thread Chris Coulson
Rather than going through -proposed, it needs to go via one of our security PPAs (which are built without -updates) and then copied across, which is something I can do. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 1842651] Re: Regression: after Uprade from udev_237-3ubuntu10.25 to udev_237-3ubuntu10.26 network interfaces don't get renamed by 70-persistent-network.rules

2019-09-05 Thread Chris Coulson
If this change is being reverted, it needs to be done via the security pocket rather than proposed, as Tuesday's security update was based on the version with this regression. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 1799974] Re: [MIR] gupnp

2019-08-19 Thread Chris Coulson
. - No configuration files. - No fs capabilities. Security team ACK for promoting gupnp to main, although I'd like someone to take a look at the issue I mentioned with the subscribe() handler. ** Changed in: gupnp (Ubuntu) Assignee: Chris Coulson (chrisccoulson) => (unassigned) -- You received this

[Bug 1799974] Re: [MIR] gupnp

2019-08-17 Thread Chris Coulson
** Changed in: gupnp (Ubuntu) Assignee: Ubuntu Security Team (ubuntu-security) => Chris Coulson (chrisccoulson) -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1799974 Title: [MIR] gu

[Bug 1799977] Re: [MIR] gssdp

2019-08-16 Thread Chris Coulson
** Changed in: gssdp (Ubuntu) Assignee: Ubuntu Security Team (ubuntu-security) => (unassigned) -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1799977 Title: [MIR] gssdp To manage notifications

[Bug 1799977] Re: [MIR] gssdp

2019-08-16 Thread Chris Coulson
I reviewed gssdp 1.2.0-1 as checked in to eoan. This isn't a full security audit, but rather a quick gauge of maintainability. - gsspd is a gobject based library for using SSDP (Simple Service Discovery Protocol), and is required by rygel. - gssdp is part of the GNOME project. - It doesn't see a

[Bug 1799977] Re: [MIR] gssdp

2019-08-14 Thread Chris Coulson
This one could do with a quick review from the security team. ** Changed in: gssdp (Ubuntu) Assignee: (unassigned) => Ubuntu Security Team (ubuntu-security) -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 1799974] Re: [MIR] gupnp

2019-08-14 Thread Chris Coulson
This one could do with a quick review from the security team. ** Changed in: gupnp (Ubuntu) Assignee: (unassigned) => Ubuntu Security Team (ubuntu-security) -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 1786489] Re: [MIR] rygel

2019-08-14 Thread Chris Coulson
I reviewed rygel 0.36.2-5ubuntu1 as checked in to eoan. This isn't a full security audit, but rather a quick gauge of maintainability. - rygel is a UPnP AV media server, allowing audio and video to be shared with other devices. It can also operate as a media renderer which can be controlled by

[Bug 1837941] [NEW] Update to 68.0.1

2019-07-25 Thread Chris Coulson
Public bug reported: See https://www.mozilla.org/en-US/firefox/68.0.1/releasenotes/ ** Affects: firefox (Ubuntu) Importance: Undecided Status: Fix Released ** Changed in: firefox (Ubuntu) Status: New => Fix Released -- You received this bug notification because you are a

[Bug 1832907] [NEW] Update to 67.0.2

2019-06-14 Thread Chris Coulson
Public bug reported: https://www.mozilla.org/en-US/firefox/67.0.2/releasenotes/ ** Affects: firefox (Ubuntu) Importance: Undecided Status: Fix Released ** Changed in: firefox (Ubuntu) Status: New => Fix Released -- You received this bug notification because you are a

[Bug 1820206] Re: [MIR] mailman-suite as dependency of mailman3

2019-04-28 Thread Chris Coulson
I reviewed mailman-suite 0+20180916-7 as checked in to eoan. This isn't a full security audit, but rather a quick gauge of maintainability. - mailman-suite is a Django web application which provides the Mailman3 Postorius web interface and the HyperKitty mailinglist archiver. The package

[Bug 1825051] [NEW] Update to 66.0.3

2019-04-16 Thread Chris Coulson
Public bug reported: https://www.mozilla.org/en-US/firefox/66.0.3/releasenotes/ ** Affects: firefox (Ubuntu) Importance: Undecided Status: Fix Released ** Changed in: firefox (Ubuntu) Status: New => Fix Released -- You received this bug notification because you are a

[Bug 1821250] Re: Drop setuid bit from /bin/ntfs-3g

2019-04-03 Thread Chris Coulson
** Tags removed: verification-needed verification-needed-bionic verification-needed-cosmic verification-needed-xenial ** Tags added: verification-done verification-done-bionic verification-done-cosmic verification-done-xenial -- You received this bug notification because you are a member of

[Bug 1822185] [NEW] Update to 66.0.2

2019-03-28 Thread Chris Coulson
Public bug reported: https://www.mozilla.org/en-US/firefox/66.0.2/releasenotes/ ** Affects: firefox (Ubuntu) Importance: Undecided Status: Fix Released ** Changed in: firefox (Ubuntu) Status: New => Fix Released -- You received this bug notification because you are a

[Bug 1821250] Re: Drop setuid bit from /bin/ntfs-3g

2019-03-28 Thread Chris Coulson
Note that the security team intends to copy these updates to the security pockets after the SRU verification has been completed. ** Description changed: /bin/ntfs-3g has been installed as setuid-root since xenial, but this is discouraged upstream (see

[Bug 1821250] [NEW] Drop setuid bit from /bin/ntfs-3g

2019-03-21 Thread Chris Coulson
users to mount NTFS image files can change the permissions of /bin/ntfs-3g using dpkg-statoverride. ** Affects: ntfs-3g (Ubuntu) Importance: Undecided Assignee: Chris Coulson (chrisccoulson) Status: Fix Released ** Affects: ntfs-3g (Ubuntu Xenial) Importance: Undecided

[Bug 1804847] Re: systemd=229-4ubuntu21.8 use of fchownat failes on some systems (openvz)

2018-11-27 Thread Chris Coulson
The issue is that O_PATH doesn't work from these containers: 2025 11:00:08 openat(4, "run", O_RDONLY|O_NOFOLLOW|O_CLOEXEC|O_PATH) = -1 ELOOP (Too many levels of symbolic links) Apparently, O_PATH was added in 2.6.39, so this makes sense now. -- You received this bug notification because you

[Bug 1804847] Re: systemd=229-4ubuntu21.8 use of fchownat failes on some systems (openvz)

2018-11-27 Thread Chris Coulson
We're just going to publish a revert of the CVE-2018-6954 fixes for 16.04 before investigating this further. As far as I can tell, this shouldn't be an issue in bionic where MIN_KERNEL_SUPPORTED is 3.2 in glibc. ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-6954 -- You

[Bug 1804847] Re: systemd=229-4ubuntu21.8 use of fchownat failes on some systems (openvz)

2018-11-27 Thread Chris Coulson
** Changed in: systemd (Ubuntu) Assignee: (unassigned) => Chris Coulson (chrisccoulson) -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1804847 Title: systemd=229-4ubuntu21.8 use of fchow

[Bug 1804881] [NEW] Update to 63.0.3

2018-11-23 Thread Chris Coulson
Public bug reported: Placeholder for USN. See https://www.mozilla.org/en- US/firefox/63.0.3/releasenotes/ ** Affects: firefox (Ubuntu) Importance: Undecided Status: Fix Released ** Changed in: firefox (Ubuntu) Status: New => Fix Released -- You received this bug

[Bug 1797945] Re: Lightning incompatible with Thunderbird 60.2.1

2018-10-17 Thread Chris Coulson
There is an updated lightning package in the archive, but there isn't a compatible version of lightning on addons.thunderbird.net for users who have installed it from there as opposed to installing the one in the archive. There's not really anything we can do about that, other than advise you to

[Bug 1742743] Re: [MIR] woff2

2018-09-26 Thread Chris Coulson
I reviewed woff2 1.0.2-1 as checked in to cosmic. This isn't a full security audit, but rather a quick gauge of maintainability. - woff2 is a library for decompressing WOFF2 font files to TTF, and is an implementation of the W3C spec (https://www.w3.org/TR/WOFF2/). - No CVEs in our database. -

[Bug 1791789] Re: FF62 upgrade : search engines override, french dictionnary and language pack lost.

2018-09-13 Thread Chris Coulson
This should be fixed now. Some of you may still have duplicate Amazon engines enabled after the upgrade (a US one and a locale-specific one). You can remove the duplicate one manually, but we may push out a further update to do this automatically if we can come up with a way to do that which isn't

[Bug 1791789] Re: FF62 upgrade : search engines override, french dictionnary and language pack lost.

2018-09-11 Thread Chris Coulson
And the dictionary problem is a regression from https://hg.mozilla.org /mozilla-central/rev/8810007550b1 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1791789 Title: FF62 upgrade : search engines

[Bug 1791789] Re: FF62 upgrade : search engines override, french dictionnary and language pack lost.

2018-09-11 Thread Chris Coulson
Our custom search engines reappearing between search engine cache rebuilds is not a new issue, but it's being made worse by a new bug (https://bugzilla.mozilla.org/show_bug.cgi?id=1489820) which is causing a cache rebuild to happen on every restart rather than after app upgrades (and is also

[Bug 1791789] Re: FF62 upgrade : search engines override, french dictionnary and language pack lost.

2018-09-11 Thread Chris Coulson
** Changed in: firefox (Ubuntu) Assignee: (unassigned) => Chris Coulson (chrisccoulson) -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1791789 Title: FF62 upgrade : search engines overr

[Bug 1791789] Re: FF62 upgrade : search engines override, french dictionnary and language pack lost.

2018-09-11 Thread Chris Coulson
** Changed in: firefox (Ubuntu) Importance: Undecided => Critical -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1791789 Title: FF62 upgrade : search engines override, french dictionnary and

[Bug 1781009] [NEW] Update to 61.0.1

2018-07-10 Thread Chris Coulson
Public bug reported: https://www.mozilla.org/en-US/firefox/61.0.1/releasenotes/ ** Affects: firefox (Ubuntu) Importance: Undecided Status: New -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 1772115] [NEW] Update to 60.0.1

2018-05-18 Thread Chris Coulson
Public bug reported: See https://www.mozilla.org/en-US/firefox/60.0.1/releasenotes/ ** Affects: firefox (Ubuntu) Importance: Undecided Status: Fix Released ** Changed in: firefox (Ubuntu) Status: New => Fix Released -- You received this bug notification because you are a

[Bug 1576432] Re: gdb crashes when trying to start a debugging session

2018-05-01 Thread Chris Coulson
This occurs when gdb sets breakpoints on various probe events in the dynamic loader. The probe event locations are exported from ld.so as SDT markers, but gdb needs to know whether ARM or Thumb instructions are being exported at each marker so that it can insert the appropriate breakpoint

[Bug 1576432] Re: gdb crashes when trying to start a debugging session

2018-05-01 Thread Chris Coulson
(Note, I looked at this because it was breaking rustc tests on armhf. The workaround is the same - install libc6-dbg to make the crash go away) -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1576432

[Bug 1753772] Re: PID reuse race with Policykit check

2018-04-13 Thread Chris Coulson
** Changed in: screen-resolution-extra (Ubuntu) Status: New => Fix Released ** Information type changed from Private Security to Public Security -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 1758107] Re: Firefox: View > Toolbars is Missing "Bookmarks Toolbar"

2018-04-04 Thread Chris Coulson
** No longer affects: libdbusmenu (Ubuntu) -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1758107 Title: Firefox: View > Toolbars is Missing "Bookmarks Toolbar" To manage notifications about this

[Bug 1758107] Re: Firefox: View > Toolbars is Missing "Bookmarks Toolbar"

2018-04-04 Thread Chris Coulson
Thanks, but I fixed and (attempted to) prepared updates for this yesterday, although the builds failed because I missed some files out of the updated patch -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 1728547] Re: SRU: Add support for keeping the dGPU on in power saving mode

2018-02-22 Thread Chris Coulson
This has been marked verification-done for xenial for a while now - is there anything preventing it from being published to xenial-updates? I'm aware of bug 1731873 as well, but this change was reverted in xenial- proposed and is not in the current version (1:0.4.17.6) -- You received this bug

[Bug 1731873] Re: Backport amdgpu-pro support

2018-02-22 Thread Chris Coulson
Changing xenial back to triaged as this change got reverted in a subsequent upload ** Changed in: ubuntu-drivers-common (Ubuntu Xenial) Status: Fix Committed => Triaged ** Tags removed: verification-needed-xenial -- You received this bug notification because you are a member of Ubuntu

[Bug 1749025] [NEW] Update to 58.0.2

2018-02-12 Thread Chris Coulson
Public bug reported: https://www.mozilla.org/en-US/firefox/58.0.2/releasenotes/ ** Affects: firefox (Ubuntu) Importance: Undecided Status: Fix Released ** Changed in: firefox (Ubuntu) Status: New => Fix Released -- You received this bug notification because you are a

[Bug 1741048] [NEW] Update to 57.0.3

2018-01-03 Thread Chris Coulson
Public bug reported: Update to 57.0.3 ** Affects: firefox (Ubuntu) Importance: Undecided Status: New -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1741048 Title: Update to 57.0.3

[Bug 1735801] [NEW] Update to 57.0.1

2017-12-01 Thread Chris Coulson
Public bug reported: 57.0.1 fixes various regressions, as well as a fix for https://bugzilla.mozilla.org/show_bug.cgi?id=1419941 ** Affects: firefox (Ubuntu) Importance: Undecided Status: Fix Released ** Changed in: firefox (Ubuntu) Status: New => Fix Released -- You

[Bug 1722343] Re: Mozilla website tells me Firefox is out of date on new 17.10 install

2017-12-01 Thread Chris Coulson
Closing, as this shouldn't be an issue now ** Changed in: firefox (Ubuntu) Status: New => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1722343 Title: Mozilla website tells me

[Bug 1733970] Re: Google search suggestions do not work due to erroneous URL

2017-11-23 Thread Chris Coulson
igh ** Changed in: firefox (Ubuntu) Status: New => Fix Committed ** Changed in: firefox (Ubuntu) Assignee: (unassigned) => Chris Coulson (chrisccoulson) -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.laun

[Bug 1729850] Re: artful openssl FTBFS on armhf

2017-11-06 Thread Chris Coulson
This is a deliberate change in binutils-2.29, which changes how the ADR instruction works with Thumb function symbols: https://sourceware.org/git/gitweb.cgi?p=binutils- gdb.git;a=commit;h=52a86f843b6dee1de9977293da9786649b146b05 There are some changes in openssl which work around this:

[Bug 1729850] Re: artful openssl FTBFS on armhf

2017-11-04 Thread Chris Coulson
I also verified that with this workaround for the first instruction, the non-NEON path passes the test, by removing this block from sha256-armv4.S: #if __ARM_MAX_ARCH__>=7 && !defined(__KERNEL__) ldr r12,.LOPENSSL_armcap ldr r12,[r3,r12]@ OPENSSL_armcap_P

[Bug 1729850] Re: artful openssl FTBFS on armhf

2017-11-04 Thread Chris Coulson
On the broken build, the first thing to notice is that when entering sha256_block_data_order, we are running in Thumb mode, as bit 5 of the status register is set: (gdb) info registers r0 0x4b7558 4945240 r1 0x4b7580

[Bug 1729850] Re: artful openssl FTBFS on armhf

2017-11-04 Thread Chris Coulson
Continuing debugging the broken build, if we look at the first few instructions of sha256_block_data_order: 0x004160c0 <+0>: subwr3, pc, #3 0x004160c4 <+4>: ldr.w r12, [pc, #-36] ; 0x4160a4 0x004160c8 <+8>: ldr.w r12, [r3, r12] This looks similar to before - the

[Bug 1729850] Re: artful openssl FTBFS on armhf

2017-11-04 Thread Chris Coulson
The incorrect instruction at the start of sha256_block_data_order comes from the ADR pseudo-instruction in sha256-armv4.S: .global sha256_block_data_order .type sha256_block_data_order,%function sha256_block_data_order: #if __ARM_ARCH__<7 sub r3,pc,#8@

[Bug 1729850] Re: artful openssl FTBFS on armhf

2017-11-04 Thread Chris Coulson
I stepped through 2 builds side-by-side in gdb - one good build built with gcc 7.1, and one bad build, built with gcc 7.2. I managed to narrow it down to a bug in sha256_block_data_order. One of the first differences I spotted was that the good build branches almost immediately to a NEON code

[Bug 1729850] Re: artful openssl FTBFS on armhf

2017-11-04 Thread Chris Coulson
Changing the start of sha256_block_data_order in sha256-armv4.S to avoid the use of the ADR pseudo-instruction like this: global sha256_block_data_order .type sha256_block_data_order,%function sha256_block_data_order: #ifdef __thumb2__ sub r3,pc,#4@

[Bug 1725238] Re: Clicking snap:// urls doesn't work

2017-10-20 Thread Chris Coulson
** Bug watch added: Mozilla Bugzilla #1382323 https://bugzilla.mozilla.org/show_bug.cgi?id=1382323 ** Also affects: firefox via https://bugzilla.mozilla.org/show_bug.cgi?id=1382323 Importance: Unknown Status: Unknown -- You received this bug notification because you are a member

[Bug 1722496] Re: firefox-local-* are not webextension and don't work on Firefox 57

2017-10-11 Thread Chris Coulson
** No longer affects: firefox-extensions ** Also affects: firefox (Ubuntu) Importance: Undecided Status: New ** No longer affects: firefox-l10n ** No longer affects: firefox ** No longer affects: ubuntu-translations ** Changed in: firefox (Ubuntu) Status: New => Invalid --

[Bug 1713486] Re: Incompatibility issues with Thunderbird 52+

2017-10-09 Thread Chris Coulson
Note, the Debian bug was reported against 1.8.2, and the issues listed there don't apply to the version (1.9.7) in Ubuntu. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1713486 Title:

[Bug 1722289] Re: Purging Firefox & the likes, does not purge mozilla dirs.

2017-10-09 Thread Chris Coulson
The package manager does not touch stuff in your home directory. The behaviour described here is because firefox was run with sudo, which breaks permissions in your Firefox profile and prevents it from running correctly as non-root ** Changed in: firefox (Ubuntu) Status: Incomplete =>

[Bug 1713486] Re: Incompatibility issues with Thunderbird 52+

2017-10-09 Thread Chris Coulson
Can you please describe what actually doesn't work? Enigmail gets tested when we do Thunderbird updates, and it's updated when required. The current version appears to be working just fine. ** Changed in: enigmail (Ubuntu) Status: Triaged => Incomplete -- You received this bug

[Bug 1720908] Re: Firefox cannot load Flash because of libxul broken dependency

2017-10-05 Thread Chris Coulson
The context menu crash is a separate issue and I've submitted a fix upstream for that. I'll make sure it's fixed in the next release we publish -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1720908

[Bug 1721189] Re: Thunderbird 1:52.4.0+build1-0ubuntu1 broken user interface

2017-10-04 Thread Chris Coulson
Not reproducing that here. What addons do you have installed? -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1721189 Title: Thunderbird 1:52.4.0+build1-0ubuntu1 broken user interface To manage

[Bug 1718448] Re: Firefox builds use nonstandard locale codes

2017-09-21 Thread Chris Coulson
I should point out, the difference between Ubuntu and Mozilla builds is that Mozilla provide locale-specific builds of Firefox and "general.useragent.locale" is defined as part of the build. Ubuntu provides a single Firefox build and "general.useragent.locale" is provided by language packs, which

  1   2   3   4   5   6   7   8   9   10   >