[Bug 1945795] Re: krb5: Fail to build against OpenSSL 3.0

2021-11-30 Thread Marc Deslauriers
Oh! Right, I didn't notice it was just an extra changelog entry for the ppa. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1945795 Title: krb5: Fail to build against OpenSSL 3.0 To manage notificat

[Bug 1945795] Re: krb5: Fail to build against OpenSSL 3.0

2021-11-30 Thread Marc Deslauriers
Hi, thanks for preparing the package, but to be sponsored the debian/changelog needs a better description than "PPA upload". Could you please update it with an appropriate changelog including the patch name, what the patch does, and a LP tag to this bug? Thanks! -- You received this bug notifica

[Bug 1950363] Re: Nov 2021 security update tracking bug

2021-11-30 Thread Marc Deslauriers
That is correct, samba 4.7.6 in bionic is not vulnerable to CVE-2021-23192. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1950363 Title: Nov 2021 security update tracking bug To manage notification

[Bug 1952531] Re: samba: Access Time of File is set to far future: Access: 30828-09-14 04:48:05.477580700 +0200

2021-11-29 Thread Marc Deslauriers
** Bug watch added: Debian Bug tracker #998355 https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=998355 ** Also affects: samba via https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=998355 Importance: Unknown Status: Unknown -- You received this bug notification because you are a

[Bug 1952187] Re: backup command raises FileNotFoundError

2021-11-25 Thread Marc Deslauriers
** Bug watch added: Samba Bugzilla #14918 https://bugzilla.samba.org/show_bug.cgi?id=14918 ** Also affects: samba via https://bugzilla.samba.org/show_bug.cgi?id=14918 Importance: Unknown Status: Unknown -- You received this bug notification because you are a member of Ubuntu Bugs

[Bug 1950363] Re: Nov 2021 security update tracking bug

2021-11-24 Thread Marc Deslauriers
In case we end up having to update bionic to a more recent samba, I've stuck the update package and dependencies in my ppa here: https://launchpad.net/~mdeslaur/+archive/ubuntu/testing/+packages The current plan is to use the update in comment #5. -- You received this bug notification because y

[Bug 1950363] Re: Nov 2021 security update tracking bug

2021-11-23 Thread Marc Deslauriers
There is an updated Samba package for bionic in the security team PPA here: https://launchpad.net/~ubuntu-security- proposed/+archive/ubuntu/ppa/+packages It contains fixes for CVE-2016-2124, CVE-2020-25717, CVE-2020-25722 and CVE-2021-3671 which appear to be the most severe issues. Upstream has

[Bug 1945086] Re: nautilus crashed with SIGSEGV in delete_outdated_error_traps().

2021-11-23 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 1944788] Re: URI defined for connectivity check is relative to search domain

2021-11-23 Thread Marc Deslauriers
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1944788 Title: URI defined for connectivity check is relative to search domain To manage no

[Bug 1945542] Re: mouse starts going up and has a laggy response

2021-11-23 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 1945388] Re: opening application steals focus from authenticate window

2021-11-23 Thread Marc Deslauriers
** Package changed: ubuntu => gnome-shell (Ubuntu) ** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1945388 Title: opening application steal

[Bug 1945679] Re: character duplicates and log duplicates OS icons and unattended update last night. that was me. i guess. 18.0 > 20.0 upgrade.

2021-11-23 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 1945978] Re: [BOHL-WXX9, Realtek ALC256, Speaker, Internal] Underruns, dropouts or crackling sound

2021-11-23 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 1948533] Re: any dns defined in network-manager doesnt go in openvpn tunnel (leaks on gnome/mate/xubuntu only in 21.10)

2021-11-23 Thread Marc Deslauriers
If you look into the openvpn configuration file that Network Manager creates for your connection in /etc/NetworkManager/system-connections, could you please paste the [ipv4] and [ipv6] sections? ** No longer affects: ubuntu ** Changed in: network-manager (Ubuntu) Status: New => Incomplete

[Bug 1948552] Re: libboost program_options cmake file causes error when used

2021-11-23 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 1948714] Re: After reboot, the password set at install time doesn't work.

2021-11-23 Thread Marc Deslauriers
** Information type changed from Public Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1948714 Title: After reboot, the password set at install time doesn't work. To manage notifi

[Bug 1948712]

2021-11-23 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. Since the package referred to in this bug is in universe or multiverse, it is community maintained. If you are able, I suggest coordinating with upstream and posting a debdiff for this issue. When a debdiff is availabl

[Bug 1949094]

2021-11-23 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. Since the package referred to in this bug is in universe or multiverse, it is community maintained. If you are able, I suggest coordinating with upstream and posting a debdiff for this issue. When a debdiff is availabl

[Bug 1948937] Re: WebKitGTK Multiple Arbitrary Code Execution Vulnerabilities

2021-11-23 Thread Marc Deslauriers
This was fixed in the following update: https://ubuntu.com/security/notices/USN-5127-1 ** Information type changed from Private Security to Public Security ** Changed in: webkitgtk (Ubuntu) Status: New => Fix Released -- You received this bug notification because you are a member of Ubu

[Bug 1949225] Re: screen lock is not working on suspend

2021-11-23 Thread Marc Deslauriers
** Package changed: ubuntu => gnome-shell (Ubuntu) ** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1949225 Title: screen lock is not workin

[Bug 1950035] Re: suspend does not lock in 20.04

2021-11-23 Thread Marc Deslauriers
** Package changed: linux (Ubuntu) => gnome-shell (Ubuntu) ** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1950035 Title: suspend does not

[Bug 1950079] Re: failure to transfer data from the media, video does not start in firefox

2021-11-23 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 1950090] Re: package lvm2 2.03.07-1ubuntu1 failed to install/upgrade: installed lvm2 package post-installation script subprocess returned error exit status 1

2021-11-23 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 1950103] Re: virtualbox-guest-dkms 6.1.16-dfsg-6~ubuntu1.20.04.1: virtualbox-guest kernel module failed to build

2021-11-23 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 1950192] Re: Software Updater ends with the message: Failed to download package files

2021-11-23 Thread Marc Deslauriers
Thanks for your comments. This does not appear to be a bug report and we are closing it. We appreciate the difficulties you are facing, but it would make more sense to raise your question in the support tracker. Please visit https://answers.launchpad.net/ubuntu/+addquestion ** Information type cha

[Bug 1950140] Re: ubuntu mate 22.04 installer crashed

2021-11-23 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 1950193]

2021-11-23 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. Since the package referred to in this bug is in universe or multiverse, it is community maintained. If you are able, I suggest coordinating with upstream and posting a debdiff for this issue. When a debdiff is availabl

[Bug 1950788] Re: I can't update or even install new software. Most likely some missing files in the system root.

2021-11-23 Thread Marc Deslauriers
Thanks for your comments. This does not appear to be a bug report and we are closing it. We appreciate the difficulties you are facing, but it would make more sense to raise your question in the support tracker. Please visit https://answers.launchpad.net/ubuntu/+addquestion ** Information type cha

[Bug 1950870] Re: virtualbox-dkms 6.1.26-dfsg-3~ubuntu1.20.04.2: virtualbox kernel module failed to build

2021-11-23 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 1950869] Re: virtualbox-dkms 6.1.26-dfsg-3~ubuntu1.20.04.2: virtualbox kernel module failed to build

2021-11-23 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 1951098] Re: security issue!

2021-11-23 Thread Marc Deslauriers
** Package changed: ubuntu => gnome-shell (Ubuntu) ** Summary changed: - security issue! + When screen is locked the top bar with apps shows ** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subsc

[Bug 1951172] Re: package tex-common 6.13 failed to install/upgrade: installed tex-common package post-installation script subprocess returned error exit status 1

2021-11-23 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 1951303] Re: package systemd 245.4-4ubuntu3.13 failed to install/upgrade: package is in a very bad inconsistent state; you should reinstall it before attempting configuration

2021-11-23 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 1951452] Re: i dont know

2021-11-23 Thread Marc Deslauriers
Thank you for using Ubuntu and taking the time to report a bug. Your report should contain, at a minimum, the following information so we can better find the source of the bug and work to resolve it. Submitting the bug about the proper source package is essential. For help see https://wiki.ubuntu.

[Bug 1951520] Re: CFSSL Disable TLS 1.0 / 1.1

2021-11-23 Thread Marc Deslauriers
** Information type changed from Private Security to Public ** Changed in: golang-github-cloudflare-cfssl (Ubuntu) Importance: Undecided => Wishlist -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/19

[Bug 1951748] Re: freecad-python3 crashed with SIGSEGV in QObject::destroyed()

2021-11-23 Thread Marc Deslauriers
** Attachment removed: "CoreDump.gz" https://bugs.launchpad.net/ubuntu/+source/freecad/+bug/1951748/+attachment/5542454/+files/CoreDump.gz ** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subsc

[Bug 1951904] Re: package mysql-server-8.0 8.0.27-0ubuntu0.20.04.1 failed to install/upgrade: installed mysql-server-8.0 package post-installation script 서브프로세스가 오류 종료 상태 1를 반환했습니다

2021-11-23 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 1951490] Re: Can't print after update to 4.13

2021-11-23 Thread Marc Deslauriers
** Bug watch added: Samba Bugzilla #14867 https://bugzilla.samba.org/show_bug.cgi?id=14867 ** Also affects: samba via https://bugzilla.samba.org/show_bug.cgi?id=14867 Importance: Unknown Status: Unknown -- You received this bug notification because you are a member of Ubuntu Bugs

[Bug 1946578] Re: Update for CVE-2021-41133

2021-11-19 Thread Marc Deslauriers
ACK on the debdiffs, I've uploaded them with a slight changelog formatting change, and I've specified a specific version for the libseccomp Build-Depends on bionic and focal. I've build the packages, along with the required libseccomp updates in the following PPA: https://launchpad.net/~ubuntu-se

[Bug 1946578] Re: Update for CVE-2021-41133

2021-11-18 Thread Marc Deslauriers
@alex Do you think we can do a no-change rebuild of libseccomp into bionic-security and focal-security? Are there any dependencies we need to rebuild too? -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/

[Bug 1951277] Re: samba panics on client reboot

2021-11-18 Thread Marc Deslauriers
** Bug watch added: Samba Bugzilla #14910 https://bugzilla.samba.org/show_bug.cgi?id=14910 ** Also affects: samba via https://bugzilla.samba.org/show_bug.cgi?id=14910 Importance: Unknown Status: Unknown -- You received this bug notification because you are a member of Ubuntu Bugs

[Bug 1339518] Re: sudo config file specifies group "admin" that doesn't exist in system

2021-11-18 Thread Marc Deslauriers
Older releases of Ubuntu used a group called "admin" instead of "sudo" which is the name Debian chose later on. We need to maintain the "admin" group rights in our sudoers file for people upgrading from earlier Ubuntu releases. If we remove it, they will no longer have sudo rights after upgrading.

[Bug 1950363] Re: Nov 2021 security update tracking bug

2021-11-11 Thread Marc Deslauriers
Fixing this issue on Ubuntu 18.04 LTS is going to be problematic. The backport to 4.10 of the patchset to fix most of the CVEs contains 686 commits. Backporting that to bionic's 4.7.6 may not be feasible. The main issue with updating bionic to 4.13.14 is the lack of support for python 2.7. I have

[Bug 1950626] Re: Version 2:4.13.5+dfsg-2ubuntu3 uploaded to Impish, released to Jammy

2021-11-11 Thread Marc Deslauriers
A security update for Impish was just released which bumped samba to a whole new version. I don't think this is necessary anymore. https://ubuntu.com/security/notices/USN-5142-1 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://

[Bug 1950363] [NEW] Nov 2021 security update tracking bug

2021-11-09 Thread Marc Deslauriers
vulnerability. https://www.samba.org/samba/security/CVE-2021-23192.html ** Affects: samba (Ubuntu) Importance: Undecided Assignee: Marc Deslauriers (mdeslaur) Status: In Progress ** Affects: samba (Ubuntu Bionic) Importance: Undecided Status: New

[Bug 1943842] Re: rustc 1.53 and cargo 0.54 required by firefox 94

2021-11-01 Thread Marc Deslauriers
Just FYI, I may use cmake-mozilla to build webkit2gtk too since the newer version also requires a newer cmake... -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1943842 Title: rustc 1.53 and cargo 0.5

[Bug 1947994] Re: MySQL Server Multiple Vulnerabilities

2021-10-25 Thread Marc Deslauriers
https://ubuntu.com/security/notices/USN-5123-1 ** Changed in: mysql-5.7 (Ubuntu) Status: New => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to the bug report. https://bugs.launchpad.net/bugs/1947994 Title: MySQL Server

[Bug 1948657] Re: Oct 2021 security update tracking bug

2021-10-25 Thread Marc Deslauriers
** Changed in: apport (Ubuntu) Status: New => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1948657 Title: Oct 2021 security update tracking bug To manage notifications about th

[Bug 1948657] [NEW] Oct 2021 security update tracking bug

2021-10-25 Thread Marc Deslauriers
*** This bug is a security vulnerability *** Public security bug reported: This is the tracking bug for the October 2021 security udpdate. ** Affects: apport (Ubuntu) Importance: Undecided Status: New -- You received this bug notification because you are a member of Ubuntu Bugs,

[Bug 1945311] Re: Fix for CVE-2021-40438 breaks existing configs

2021-09-28 Thread Marc Deslauriers
** Changed in: apache2 (Ubuntu Impish) Status: Confirmed => Fix Committed -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1945311 Title: Fix for CVE-2021-40438 breaks existing configs To manag

[Bug 1945311] Re: Fix for CVE-2021-40438 breaks existing configs

2021-09-28 Thread Marc Deslauriers
The updates are currently building in the security team PPA here, in case someone wants to try them before they are published: https://launchpad.net/~ubuntu-security- proposed/+archive/ubuntu/ppa/+packages -- You received this bug notification because you are a member of Ubuntu Bugs, which is su

[Bug 1945311] Re: Fix for CVE-2021-40438 breaks existing configs

2021-09-28 Thread Marc Deslauriers
** Changed in: apache2 (Ubuntu Bionic) Importance: Undecided => High ** Changed in: apache2 (Ubuntu Focal) Importance: Undecided => High ** Changed in: apache2 (Ubuntu Hirsute) Importance: Undecided => High ** Changed in: apache2 (Ubuntu Impish) Importance: Undecided => High -- You

[Bug 1945311] Re: Fix for CVE-2021-40438 breaks existing configs

2021-09-28 Thread Marc Deslauriers
Assignee: (unassigned) => Marc Deslauriers (mdeslaur) ** Changed in: apache2 (Ubuntu Focal) Assignee: (unassigned) => Marc Deslauriers (mdeslaur) ** Changed in: apache2 (Ubuntu Hirsute) Assignee: (unassigned) => Marc Deslauriers (mdeslaur) ** Changed in: apache2 (Ubuntu Imp

[Bug 1945311] Re: Fix for CVE-2021-40438 breaks existing configs

2021-09-28 Thread Marc Deslauriers
Here are the 2.4.x backports: https://github.com/apache/httpd/commit/6e768a811c59ca6a0769b72681aaef381823339f https://github.com/apache/httpd/commit/81a8b0133b46c4cf7dfc4b5476ad46eb34aa0a5c I will prepare updates that add those commits and will release them likely today. -- You received this bu

[Bug 1944481] Re: Distrust "DST Root CA X3"

2021-09-23 Thread Marc Deslauriers
** Changed in: ca-certificates (Ubuntu Impish) Status: New => Fix Committed ** Changed in: ca-certificates (Ubuntu Trusty) Status: New => Fix Released ** Changed in: ca-certificates (Ubuntu Xenial) Status: New => Fix Released -- You received this bug notification because yo

[Bug 1912050] Re: Use after free in libgetdata v0.10.0 may lead to arbitrary code execution

2021-09-23 Thread Marc Deslauriers
** Changed in: libgetdata (Ubuntu) Status: New => Confirmed -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1912050 Title: Use after free in libgetdata v0.10.0 may lead to arbitrary code exec

[Bug 1923273] Re: buffer-overflow on libcaca-0.99.beta20/export.c export_tga, export_troff

2021-09-23 Thread Marc Deslauriers
** Changed in: libcaca (Ubuntu) Status: New => Confirmed -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to the bug report. https://bugs.launchpad.net/bugs/1923273 Title: buffer-overflow on libcaca-0.99.beta20/export.c export_tga, exp

[Bug 1933832] Re: Path traversal leads to arbitrary file read

2021-09-23 Thread Marc Deslauriers
** Changed in: openjdk-13 (Ubuntu) Status: New => Won't Fix ** Changed in: openjdk-14 (Ubuntu) Status: New => Won't Fix ** Changed in: openjdk-15 (Ubuntu) Status: New => Won't Fix ** Changed in: openjdk-16 (Ubuntu) Status: New => Won't Fix ** Changed in: openjdk-17 (

[Bug 1939870] Re: The package fail2ban is vulnerable to arbitrary command execution via CVE-2021-32749.

2021-09-23 Thread Marc Deslauriers
** Changed in: fail2ban (Ubuntu) Status: New => Confirmed -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1939870 Title: The package fail2ban is vulnerable to arbitrary command execution via

[Bug 1942542] Re: gedit causes loss of extended attributes (xattrs)

2021-09-23 Thread Marc Deslauriers
** Also affects: gedit via https://gitlab.gnome.org/GNOME/gedit/-/issues/464 Importance: Unknown Status: Unknown ** Changed in: gedit (Ubuntu) Status: New => Confirmed -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to the bu

[Bug 1943734] Re: package lxd (not installed) failed to install/upgrade: il sottoprocesso nuovo pacchetto lxd script pre-installation ha restituito lo stato di errore 1

2021-09-23 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 1943757] Re: package publicfile-installer 0.14 failed to install/upgrade: il sottoprocesso installato pacchetto publicfile-installer script post-installation ha restituito lo stato di errore 1

2021-09-23 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 1943760] Re: package radioclk 1.0.pristine-2 failed to install/upgrade: il sottoprocesso installato pacchetto radioclk script post-installation ha restituito lo stato di errore 1

2021-09-23 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 1943758] Re: package shim-signed 1.40.7+15.4-0ubuntu9 failed to install/upgrade: il sottoprocesso installato pacchetto shim-signed script post-installation ha restituito lo stato di errore 7

2021-09-23 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 1944090] Re: package libmpeg2encpp-2.1-0:amd64 1:2.1.0+debian-6build1 failed to install/upgrade: package is in a very bad inconsistent state; you should reinstall it before attempting configurat

2021-09-23 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 1944385] Re: REGRESSION: After GRUB update, 32-bit Ubuntu is no more bootable

2021-09-23 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 1944505] Re: package mysql-server-8.0 8.0.26-0ubuntu0.20.04.2 failed to install/upgrade: installed mysql-server-8.0 package post-installation script subprocess returned error exit status 1

2021-09-23 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 1944464] Re: gnome-screensaver locked screen leaks text to underlying windows

2021-09-23 Thread Marc Deslauriers
** Information type changed from Private Security to Public Security ** Changed in: gnome-screensaver (Ubuntu) Status: New => Triaged -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1944464 Titl

[Bug 1944703] Re: grub error

2021-09-23 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 1944481] Re: Distrust "DST Root CA X3"

2021-09-23 Thread Marc Deslauriers
) Assignee: (unassigned) => Marc Deslauriers (mdeslaur) ** Changed in: ca-certificates (Ubuntu Focal) Assignee: (unassigned) => Marc Deslauriers (mdeslaur) ** Changed in: ca-certificates (Ubuntu Hirsute) Assignee: (unassigned) => Marc Deslauriers (mdeslaur) ** Changed in: ca-cer

[Bug 1944120] [NEW] Regression in USN-5079-1

2021-09-20 Thread Marc Deslauriers
*** This bug is a security vulnerability *** Public security bug reported: USN-5079-1 introduced a regression in bionic: https://ubuntuforums.org/showthread.php?t=2467177 Focal+ appear to work as intended. ** Affects: curl (Ubuntu) Importance: Undecided Status: New -- You recei

[Bug 1933832] Re: Path traversal leads to arbitrary file read

2021-09-16 Thread Marc Deslauriers
** Information type changed from Private Security to Public Security -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1933832 Title: Path traversal leads to arbitrary file read To manage notifications

[Bug 1934308] Re: Arbitrary file read in general hook (ubuntu.py)

2021-09-16 Thread Marc Deslauriers
** Information type changed from Private Security to Public Security -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1934308 Title: Arbitrary file read in general hook (ubuntu.py) To manage notificat

[Bug 1940656] Re: Potential use after free bugs in 1.1.1

2021-09-14 Thread Marc Deslauriers
I'd rather these go through the SRU process first, and they will get picked up automatically next time we do an openssl security update. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1940656 Title:

[Bug 1940314] Re: Aug 2021 security update

2021-09-07 Thread Marc Deslauriers
** Changed in: haproxy (Ubuntu Impish) Status: Fix Committed => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1940314 Title: Aug 2021 security update To manage notifications abo

[Bug 1928648] Re: expiring trust anchor compatibility issue

2021-09-07 Thread Marc Deslauriers
The backported patches in comments #1 and #2 look reasonable to me. +1 from the security team. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1928648 Title: expiring trust anchor compatibility issue

[Bug 1921518] Re: OpenSSL "double free" error

2021-08-25 Thread Marc Deslauriers
No, they do not include the fixes from this bug. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1921518 Title: OpenSSL "double free" error To manage notifications about this bug go to: https://bugs.

[Bug 1934040] Re: openssl s_client's '-ssl2' & '-ssl3' options gone, prematurely!

2021-08-24 Thread Marc Deslauriers
Thanks for reporting this issue, but we disabled SSLv3 in 2015 in Ubuntu 16.04 LTS. There is absolutely no chance we will be enabling it again. ** Changed in: openssl (Ubuntu) Status: New => Won't Fix -- You received this bug notification because you are a member of Ubuntu Bugs, which is

[Bug 1940314] Re: Aug 2021 security update

2021-08-18 Thread Marc Deslauriers
** Changed in: haproxy (Ubuntu Impish) Status: New => Fix Committed -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1940314 Title: Aug 2021 security update To manage notifications about this b

[Bug 1940314] Re: Aug 2021 security update

2021-08-17 Thread Marc Deslauriers
** Changed in: haproxy (Ubuntu Focal) Status: In Progress => Fix Released ** Changed in: haproxy (Ubuntu Hirsute) Status: In Progress => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad

[Bug 1940314] [NEW] Aug 2021 security update

2021-08-17 Thread Marc Deslauriers
(Ubuntu Focal) Importance: Medium Assignee: Marc Deslauriers (mdeslaur) Status: In Progress ** Affects: haproxy (Ubuntu Hirsute) Importance: Medium Assignee: Marc Deslauriers (mdeslaur) Status: In Progress ** Affects: haproxy (Ubuntu Impish) Importance

[Bug 1939898] Re: Unnatended postgresql-12 upgrade caused MAAS internal error

2021-08-13 Thread Marc Deslauriers
I suspect the MAAS snap has embedded some postgresql components while relying on some other components from the system, and this mismatch is causing the issue loading the newer shared library... -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to

[Bug 1934501] Re: CVE-2018-15473 patch introduce user enumeration vulnerability

2021-08-12 Thread Marc Deslauriers
Here's the debconf bug report: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=223683 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1934501 Title: CVE-2018-15473 patch introduce user enumeration

[Bug 1934501] Re: CVE-2018-15473 patch introduce user enumeration vulnerability

2021-08-12 Thread Marc Deslauriers
This isn't specific to the openssh update. Debian packages use tools such as debconf that need to write to /tmp to function correctly. ** Bug watch added: Debian Bug tracker #223683 https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=223683 -- You received this bug notification because you are

[Bug 1934501] Re: CVE-2018-15473 patch introduce user enumeration vulnerability

2021-08-12 Thread Marc Deslauriers
** Information type changed from Private Security to Public Security -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1934501 Title: CVE-2018-15473 patch introduce user enumeration vulnerability To ma

[Bug 1923527]

2021-08-10 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. Since the package referred to in this bug is in universe or multiverse, it is community maintained. If you are able, I suggest coordinating with upstream and posting a debdiff for this issue. When a debdiff is availabl

[Bug 1935076] Re: ubuntu-bug sends huge amounts of internal data to public bugs without asking for permission

2021-08-10 Thread Marc Deslauriers
** Information type changed from Private Security to Public Security ** Changed in: apport (Ubuntu) Status: Incomplete => Confirmed ** Changed in: apport (Ubuntu) Importance: Undecided => Wishlist -- You received this bug notification because you are a member of Ubuntu Bugs, which is

[Bug 1933811] Re: ayatana-indicator-printers-service crashed with SIGSEGV in __GI_____strtol_l_internal()

2021-08-10 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 1933764] Re: slow rendering with nvidia geforce gtx 1650

2021-08-10 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 1935690] Re: Lock Screen Failure - Desktop Contents Momentarily Visible

2021-08-10 Thread Marc Deslauriers
** Package changed: unity (Ubuntu) => gnome-shell (Ubuntu) ** Changed in: gnome-shell (Ubuntu) Status: New => Triaged -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1935690 Title: Lock Screen

[Bug 1937883] Re: ssh-agent Shielded Private Key Extraction

2021-08-10 Thread Marc Deslauriers
** Changed in: openssh (Ubuntu) Status: New => Confirmed -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1937883 Title: ssh-agent Shielded Private Key Extraction To manage notifications about

[Bug 1939281]

2021-08-10 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. Since the package referred to in this bug is in universe or multiverse, it is community maintained. If you are able, I suggest coordinating with upstream and posting a debdiff for this issue. When a debdiff is availabl

[Bug 1938730] Re: GPSD time will jump back 1024 weeks at after week=2180 (23-October-2021)

2021-08-05 Thread Marc Deslauriers
I have uploaded new packages to the PPA that enables the test suite and adds updated binary tests. Thanks! -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1938730 Title: GPSD time will jump back 1024

[Bug 1938730] Re: GPSD time will jump back 1024 weeks at after week=2180 (23-October-2021)

2021-08-05 Thread Marc Deslauriers
Thanks for the hints bzed. Thanks for the tests paride. I am currently working on enabling the test suite during build on focal and re-enabling the binary tests on focal and hirsute. I'll have updated packages in the PPA soon. -- You received this bug notification because you are a member of Ubu

[Bug 1938730] Re: GPSD time will jump back 1024 weeks at after week=2180 (23-October-2021)

2021-08-04 Thread Marc Deslauriers
I have uploaded packages for focal and hirsute to the security team PPA here: https://launchpad.net/~ubuntu-security- proposed/+archive/ubuntu/ppa/+packages I'd appreciate it if someone could test them. Thanks! -- You received this bug notification because you are a member of Ubuntu Bugs, which

[Bug 1938730] Re: GPSD time will jump back 1024 weeks at after week=2180 (23-October-2021)

2021-08-04 Thread Marc Deslauriers
Upstream patch: https://gitlab.com/gpsd/gpsd/-/commit/7f30d88d04dc62b8bd6265ad1d09d72d220f97f6 Debian patch: https://salsa.debian.org/debian-gps-team/pkg-gpsd/-/commit/2df40c7640dcbc5cbc48969bec44932623ef243b https://salsa.debian.org/debian-gps-team/pkg-gpsd/-/commit/c6af361ae1ba59dc8d3ac8783faa

[Bug 1938013] Re: 4.15.0-151 is freezing various CPUs

2021-07-28 Thread Marc Deslauriers
> A test kernel is available here: https://kernel.ubuntu.com/~juergh/lp1938013/ I found a laptop running bionic. Updated to the newest archive kernel and rebooted. Hit the regression immediately, dmesg would show kernel errors right after the wlan0 lines. With the test kernel, I've been running f

[Bug 1937286] Re: containerd depends on unreleased docker19 package in focal

2021-07-26 Thread Marc Deslauriers
** Changed in: containerd (Ubuntu Bionic) Status: In Progress => Invalid ** Changed in: containerd (Ubuntu Focal) Status: In Progress => Invalid -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/

[Bug 1937286] Re: containerd depends on unreleased docker19 package in focal

2021-07-23 Thread Marc Deslauriers
ker.io (Ubuntu Bionic) Status: New => In Progress ** Changed in: docker.io (Ubuntu Bionic) Assignee: (unassigned) => Marc Deslauriers (mdeslaur) ** Changed in: docker.io (Ubuntu Focal) Status: New => In Progress ** Changed in: docker.io (Ubuntu Focal) Assign

[Bug 1937286] Re: containerd depends on unreleased docker19 package in focal

2021-07-23 Thread Marc Deslauriers
> Invalid ** Changed in: containerd (Ubuntu Impish) Status: Incomplete => Invalid ** Changed in: containerd (Ubuntu Bionic) Assignee: (unassigned) => Marc Deslauriers (mdeslaur) ** Changed in: containerd (Ubuntu Focal) Assignee: (unassigned) => Marc Deslauriers (mdeslaur)

<    1   2   3   4   5   6   7   8   9   10   >