[Bug 1195189] [NEW] tomcat7-instance-create instances not compatible with Eclipse

2013-06-27 Thread David Edwards
Public bug reported:

If you create a private instance of Tomcat 6 using the tomcat6-instance-
create script, it can be used as a Tomcat 6 server in Eclipse by
creating a new server runtime environment that has its installation
directory set to be your private instance directory.

However, the same is not true for tomcat7-instance-create; Eclipse
cannot find the files normally in lib/, bootstrap.jar, and
catalina.policy.

There was a bug raised for Tomcat 6
(https://bugs.launchpad.net/ubuntu/+source/tomcat6/+bug/297675) which
was fixed by a patch that sets up the missing files in the private
instance.  It would be ideal if the same could be done for Tomcat 7.

See also:
http://askubuntu.com/questions/313103/cannot-start-tomcat-after-installing-a-private-instance

** Affects: tomcat7 (Ubuntu)
 Importance: Undecided
 Status: New

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to tomcat7 in Ubuntu.
https://bugs.launchpad.net/bugs/1195189

Title:
  tomcat7-instance-create instances not compatible with Eclipse

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/tomcat7/+bug/1195189/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1005440] Re: Could not load host key: /etc/ssh/ssh_host_ecdsa_key when connecting

2013-06-27 Thread Jeroen Pulles
A simple `dpkg-reconfigure openssh-server` also does the trick:

root@host:/# dpkg-reconfigure openssh-server
Creating SSH2 ECDSA key; this may take some time ...
Restarting OpenBSD Secure Shell server: sshd.

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openssh in Ubuntu.
https://bugs.launchpad.net/bugs/1005440

Title:
  Could not load host key: /etc/ssh/ssh_host_ecdsa_key when connecting

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openssh/+bug/1005440/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 988397] Re: Autofs does not clean up /proc/mounts when stopped

2013-06-27 Thread Launchpad Bug Tracker
Status changed to 'Confirmed' because the bug affects multiple users.

** Changed in: autofs5 (Ubuntu)
   Status: New = Confirmed

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to autofs5 in Ubuntu.
https://bugs.launchpad.net/bugs/988397

Title:
  Autofs does not clean up /proc/mounts when stopped

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/autofs5/+bug/988397/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1194914] Re: ipxe FTBFS : bp cannot be used in asm here

2013-06-27 Thread Robin Smidsrød
The fix mentioned by Dave above does work.

Michael Brown, the committer of the patch, has mentioned on the iPXE
community channels that this might actually be a GCC bug/regression and
that the patch is just a workaround.

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to ipxe in Ubuntu.
https://bugs.launchpad.net/bugs/1194914

Title:
  ipxe FTBFS  : bp cannot be used in asm here

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/ipxe/+bug/1194914/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Blueprint servercloud-s-server-app-banner-updates] Server Application Banner Updates

2013-06-27 Thread Yolanda Robla
Blueprint changed by Yolanda Robla:

Work items changed:
  Work items:
  [yolanda.robla] Check, enable, and test apache2: DONE
  [yolanda.robla] Check, enable, and test bind9: DONE
  [yolanda.robla] Check, enable, and test dovecot (imapd): DONE
  [yolanda.robla] Check, enable, and test dovecot (pop3d): DONE
  [yolanda.robla] Check, enable, and test exim4: DONE
  [yolanda.robla] Check, enable, and test mysql-server: DONE
- Check, enable, and test postgresql: DONE
- Check, enable, and test openldap: TODO
- Check, enable, and test openssh: TODO
+ [yolanda.robla] Check, enable, and test postgresql: DONE
+ [yolanda.robla] Check, enable, and test openldap: TODO
+ [yolanda.robla] Check, enable, and test openssh: TODO
  Check, enable, and test openstack: TODO
  [yolanda] Check, enable, and test postfix: DONE
  Check, enable, and test squid: TODO
  Check, enable, and test tomcat7: TODO
  [yolanda] Check, enable, and test nginx: DONE
  [yolanda] Check, enable, and test python-django: DONE
  Check, enable, and test memcached: TODO
  Check, enable, and test couchdb: TODO
  Check, enable, and test nodejs: TODO

-- 
Server Application Banner Updates
https://blueprints.launchpad.net/ubuntu/+spec/servercloud-s-server-app-banner-updates

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Blueprint servercloud-s-server-app-banner-updates] Server Application Banner Updates

2013-06-27 Thread Yolanda Robla
Blueprint changed by Yolanda Robla:

Work items changed:
  Work items:
  [yolanda.robla] Check, enable, and test apache2: DONE
  [yolanda.robla] Check, enable, and test bind9: DONE
  [yolanda.robla] Check, enable, and test dovecot (imapd): DONE
  [yolanda.robla] Check, enable, and test dovecot (pop3d): DONE
  [yolanda.robla] Check, enable, and test exim4: DONE
  [yolanda.robla] Check, enable, and test mysql-server: DONE
- Check, enable, and test postgresql: TODO
+ Check, enable, and test postgresql: DONE
  Check, enable, and test openldap: TODO
  Check, enable, and test openssh: TODO
  Check, enable, and test openstack: TODO
  [yolanda] Check, enable, and test postfix: DONE
  Check, enable, and test squid: TODO
  Check, enable, and test tomcat7: TODO
  [yolanda] Check, enable, and test nginx: DONE
  [yolanda] Check, enable, and test python-django: DONE
  Check, enable, and test memcached: TODO
  Check, enable, and test couchdb: TODO
  Check, enable, and test nodejs: TODO

-- 
Server Application Banner Updates
https://blueprints.launchpad.net/ubuntu/+spec/servercloud-s-server-app-banner-updates

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 362427] Re: Public key ssh auth doesn't work with my Encrypted Home Directory

2013-06-27 Thread Pieter
The password you log in with, is used to decrypt/unwrap the key used to
decrypt the ecryptfs.

Would there not be a way of using the ssh secret key, used for login with ssh 
to also unlock/unwrap the ecryptfs ?
Probably something that would have to be added to sshd.

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openssh in Ubuntu.
https://bugs.launchpad.net/bugs/362427

Title:
  Public key ssh auth doesn't work with my Encrypted Home Directory

To manage notifications about this bug go to:
https://bugs.launchpad.net/ecryptfs/+bug/362427/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Blueprint servercloud-s-server-app-banner-updates] Server Application Banner Updates

2013-06-27 Thread Yolanda Robla
Blueprint changed by Yolanda Robla:

Work items changed:
  Work items:
  [yolanda.robla] Check, enable, and test apache2: DONE
  [yolanda.robla] Check, enable, and test bind9: DONE
  [yolanda.robla] Check, enable, and test dovecot (imapd): DONE
  [yolanda.robla] Check, enable, and test dovecot (pop3d): DONE
  [yolanda.robla] Check, enable, and test exim4: DONE
  [yolanda.robla] Check, enable, and test mysql-server: DONE
  [yolanda.robla] Check, enable, and test postgresql: DONE
  [yolanda.robla] Check, enable, and test openldap: TODO
- [yolanda.robla] Check, enable, and test openssh: TODO
+ [yolanda.robla] Check, enable, and test openssh: DONE
  Check, enable, and test openstack: TODO
  [yolanda] Check, enable, and test postfix: DONE
  Check, enable, and test squid: TODO
  Check, enable, and test tomcat7: TODO
  [yolanda] Check, enable, and test nginx: DONE
  [yolanda] Check, enable, and test python-django: DONE
  Check, enable, and test memcached: TODO
  Check, enable, and test couchdb: TODO
  Check, enable, and test nodejs: TODO

-- 
Server Application Banner Updates
https://blueprints.launchpad.net/ubuntu/+spec/servercloud-s-server-app-banner-updates

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1180777] Re: Windows 7 VM freeze on Ubuntu 12.04 KVM

2013-06-27 Thread Serge Hallyn
Hi,

(You probably knkow this, but to explain my request, the RDP connection
goes over the VM's virtual network card to talk directly to the VM.
Provided you have only a single VM running, 'gvncviewer localhost:0' (or
the equivalent with ssh port forwarding if you can't run X on the host)
talks to the kvm process.)

Could you please start the VM, run RDP until it hangs, then connect with
vnc and use the windows network admin commands to see what windows
thinks is going on?  I.e. does it think it is still connected to a
network?  If not, can you simply reconnect, or do you have to restart
the driver, or do you have to restart the VM altogether?

I'm pretty sure htis is a bug in the qemu nic emulation, but am not sure
where to begin diagnosing.

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to qemu-kvm in Ubuntu.
https://bugs.launchpad.net/bugs/1180777

Title:
  Windows 7 VM freeze on Ubuntu 12.04 KVM

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/qemu-kvm/+bug/1180777/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1195342] Re: Please add real distribution instead of hardcoded Debian one

2013-06-27 Thread Yolanda Robla
Patch to show the distribution

** Patch added: openssh_distribution.patch
   
https://bugs.launchpad.net/ubuntu/+source/openssh/+bug/1195342/+attachment/3716085/+files/openssh_distribution.patch

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openssh in Ubuntu.
https://bugs.launchpad.net/bugs/1195342

Title:
  Please add real distribution instead of hardcoded Debian one

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openssh/+bug/1195342/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1195342] [NEW] Please add real distribution instead of hardcoded Debian one

2013-06-27 Thread Yolanda Robla
Public bug reported:

Related to:
https://blueprints.launchpad.net/ubuntu/+spec/servercloud-s-server-app-banner-updates

We need to show the Ubuntu distribution, instead of showing the Debian
one, for the Ubuntu packages.

** Affects: openssh (Ubuntu)
 Importance: Low
 Assignee: Colin Watson (cjwatson)
 Status: Fix Committed

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openssh in Ubuntu.
https://bugs.launchpad.net/bugs/1195342

Title:
  Please add real distribution instead of hardcoded Debian one

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openssh/+bug/1195342/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1181777] Re: kvm: freeze a guest with a NIC PCI passthrough

2013-06-27 Thread Serge Hallyn
Unfortunately I don't have any hardware to reproduce this with.

Could you please:

1. Attach /var/log/libvirt/qemu/w.log

2. Try running this vm with kvm by hand as per 
http://www.linux-kvm.org/page/How_to_assign_devices_with_VT-d_in_KVM ?
 (i.e. the kvm command in step 6, something like kvm ... -device 
pci-assign,host=xx:yy.z)

** Changed in: qemu-kvm (Ubuntu)
   Status: New = Incomplete

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to qemu-kvm in Ubuntu.
https://bugs.launchpad.net/bugs/1181777

Title:
  kvm: freeze a guest with a NIC PCI passthrough

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/qemu-kvm/+bug/1181777/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1195342] Re: Please add real distribution instead of hardcoded Debian one

2013-06-27 Thread Colin Watson
Applied, thanks.

** Changed in: openssh (Ubuntu)
   Importance: Undecided = Low

** Changed in: openssh (Ubuntu)
   Status: New = Fix Committed

** Changed in: openssh (Ubuntu)
 Assignee: (unassigned) = Colin Watson (cjwatson)

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openssh in Ubuntu.
https://bugs.launchpad.net/bugs/1195342

Title:
  Please add real distribution instead of hardcoded Debian one

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openssh/+bug/1195342/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1003296] Re: lightdm crashed with SIGSEGV in _pam_winbind_change_pwd() when password is expiring

2013-06-27 Thread Bryan Quigley
** Description changed:

  My precise client is member of a Windows Domain. A domain user can login
  using samba/winbind without problem in tty and via lightdm if the user
  password is ok.
  
  If the password is expiring a domain user logs in correctly via TTY,
  with a message Your password is expiring in 10 days. if tries with
  lightdm the user gets the message Your password is expiring in 10
  days, but then returns to the username request.
  
  On /var/log/syslog i get:
  
  May 23 08:50:52 tv52605 kernel: [ 1046.645230] lightdm[2415]: segfault
  at 0 ip b73d976a sp bfd66fa8 error 4 in libc-2.15.so[b729c000+19f000]
  
  for each time the user tries to login with the domain user credentials.
  
  Expected behaviour:
  
  the user sees the message  Your password is expiring in 10 days, then
  logs in (like gdm in ubuntu 10.04 does).
  
  I attach the crash file i found in /var/crash/ (that i'm unable to send
  via apport-bug tue to same strange bug)
+ 
+ [Impact]
+ 
+  * This bug makes users unable to login via the LightDM interface when
+ their password is close to expiring.
+ 
+  * This upload just checks for a null reference so that LightDM won't
+ crash on it.
+ 
+ [Test Case]
+ 
+  * Set up Active Directory (not tested with Samba AD)
+  * Have user passwords to expire after a certain time
+  * Wait until they would be alerted for this, note crash on login
+ 
+ [Regression Potential]
+ 
+  * It is has been upstream for a while now and has been tested by several 
users.  It is also already fixing in Ubuntu Raring+
+  * There might be a better way to handle the null pointer?

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to samba in Ubuntu.
https://bugs.launchpad.net/bugs/1003296

Title:
  lightdm crashed with SIGSEGV in _pam_winbind_change_pwd() when
  password is expiring

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/samba/+bug/1003296/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1195342] Re: Please add real distribution instead of hardcoded Debian one

2013-06-27 Thread Ubuntu Foundations Team Bug Bot
The attachment openssh_distribution.patch seems to be a debdiff.  The
ubuntu-sponsors team has been subscribed to the bug report so that they
can review and hopefully sponsor the debdiff.  If the attachment isn't a
patch, please remove the patch flag from the attachment, remove the
patch tag, and if you are member of the ~ubuntu-sponsors, unsubscribe
the team.

[This is an automated message performed by a Launchpad user owned by
~brian-murray, for any issue please contact him.]

** Tags added: patch

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openssh in Ubuntu.
https://bugs.launchpad.net/bugs/1195342

Title:
  Please add real distribution instead of hardcoded Debian one

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openssh/+bug/1195342/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 962046] Re: EC2 metadata retrieval fails with spaces in a resource name

2013-06-27 Thread Brian Murray
Hello Juerg, or anyone else affected,

Accepted python-boto into raring-proposed. The package will build now
and be available at http://launchpad.net/ubuntu/+source/python-
boto/2.3.0-1ubuntu0.13.04.1 in a few hours, and then in the -proposed
repository.

Please help us by testing this new package.  See
https://wiki.ubuntu.com/Testing/EnableProposed for documentation how to
enable and use -proposed.  Your feedback will aid us getting this update
out to other Ubuntu users.

If this package fixes the bug for you, please add a comment to this bug,
mentioning the version of the package you tested, and change the tag
from verification-needed to verification-done. If it does not fix the
bug for you, please add a comment stating that, and change the tag to
verification-failed.  In either case, details of your testing will help
us make a better decision.

Further information regarding the verification process can be found at
https://wiki.ubuntu.com/QATeam/PerformingSRUVerification .  Thank you in
advance!

** Changed in: python-boto (Ubuntu Raring)
   Status: In Progress = Fix Committed

** Tags added: verification-needed

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to python-boto in Ubuntu.
https://bugs.launchpad.net/bugs/962046

Title:
  EC2 metadata retrieval fails with spaces in a resource name

To manage notifications about this bug go to:
https://bugs.launchpad.net/cloud-init/+bug/962046/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 962046] Please test proposed package

2013-06-27 Thread Brian Murray
Hello Juerg, or anyone else affected,

Accepted python-boto into precise-proposed. The package will build now
and be available at http://launchpad.net/ubuntu/+source/python-
boto/2.2.2-0ubuntu3 in a few hours, and then in the -proposed
repository.

Please help us by testing this new package.  See
https://wiki.ubuntu.com/Testing/EnableProposed for documentation how to
enable and use -proposed.  Your feedback will aid us getting this update
out to other Ubuntu users.

If this package fixes the bug for you, please add a comment to this bug,
mentioning the version of the package you tested, and change the tag
from verification-needed to verification-done. If it does not fix the
bug for you, please add a comment stating that, and change the tag to
verification-failed.  In either case, details of your testing will help
us make a better decision.

Further information regarding the verification process can be found at
https://wiki.ubuntu.com/QATeam/PerformingSRUVerification .  Thank you in
advance!

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to python-boto in Ubuntu.
https://bugs.launchpad.net/bugs/962046

Title:
  EC2 metadata retrieval fails with spaces in a resource name

To manage notifications about this bug go to:
https://bugs.launchpad.net/cloud-init/+bug/962046/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 962046] Re: EC2 metadata retrieval fails with spaces in a resource name

2013-06-27 Thread Brian Murray
Hello Juerg, or anyone else affected,

Accepted python-boto into quantal-proposed. The package will build now
and be available at http://launchpad.net/ubuntu/+source/python-
boto/2.3.0-1ubuntu0.12.10.1 in a few hours, and then in the -proposed
repository.

Please help us by testing this new package.  See
https://wiki.ubuntu.com/Testing/EnableProposed for documentation how to
enable and use -proposed.  Your feedback will aid us getting this update
out to other Ubuntu users.

If this package fixes the bug for you, please add a comment to this bug,
mentioning the version of the package you tested, and change the tag
from verification-needed to verification-done. If it does not fix the
bug for you, please add a comment stating that, and change the tag to
verification-failed.  In either case, details of your testing will help
us make a better decision.

Further information regarding the verification process can be found at
https://wiki.ubuntu.com/QATeam/PerformingSRUVerification .  Thank you in
advance!

** Changed in: python-boto (Ubuntu Quantal)
   Status: In Progress = Fix Committed

** Changed in: python-boto (Ubuntu Precise)
   Status: In Progress = Fix Committed

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to python-boto in Ubuntu.
https://bugs.launchpad.net/bugs/962046

Title:
  EC2 metadata retrieval fails with spaces in a resource name

To manage notifications about this bug go to:
https://bugs.launchpad.net/cloud-init/+bug/962046/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 900391] Re: IE9 on Windows 7 cannot download files to samba 3.5.11 share

2013-06-27 Thread Adolfo Jayme Barrientos
** Changed in: samba (Ubuntu Oneiric)
   Status: Triaged = Won't Fix

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is a bug assignee.
https://bugs.launchpad.net/bugs/900391

Title:
  IE9 on Windows 7 cannot download files to samba 3.5.11 share

To manage notifications about this bug go to:
https://bugs.launchpad.net/samba/+bug/900391/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 962046] Re: EC2 metadata retrieval fails with spaces in a resource name

2013-06-27 Thread Launchpad Bug Tracker
** Branch linked: lp:~ubuntu-branches/ubuntu/precise/python-boto
/precise-proposed

** Branch linked: lp:~ubuntu-branches/ubuntu/quantal/python-boto
/quantal-proposed

** Branch linked: lp:~ubuntu-branches/ubuntu/raring/python-boto/raring-
proposed

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to python-boto in Ubuntu.
https://bugs.launchpad.net/bugs/962046

Title:
  EC2 metadata retrieval fails with spaces in a resource name

To manage notifications about this bug go to:
https://bugs.launchpad.net/cloud-init/+bug/962046/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 362427] Re: Public key ssh auth doesn't work with my Encrypted Home Directory

2013-06-27 Thread Seth Arnold
Pieter, the private key is never made available in any form to the sshd
server. The server only has access to the public portion of the key in
~/.ssh/authorized_keys. You would probably not want a file on the
filesystem to serve as the secret key for your encrypted directory, as
that defeats the point of encrypting the directory in the first place.

Thanks

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openssh in Ubuntu.
https://bugs.launchpad.net/bugs/362427

Title:
  Public key ssh auth doesn't work with my Encrypted Home Directory

To manage notifications about this bug go to:
https://bugs.launchpad.net/ecryptfs/+bug/362427/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1194166] Re: [SRU] Ceph 0.56.6 point release update

2013-06-27 Thread Brian Murray
Hello James, or anyone else affected,

Accepted ceph into raring-proposed. The package will build now and be
available at http://launchpad.net/ubuntu/+source/ceph/0.56.6-0ubuntu1 in
a few hours, and then in the -proposed repository.

Please help us by testing this new package.  See
https://wiki.ubuntu.com/Testing/EnableProposed for documentation how to
enable and use -proposed.  Your feedback will aid us getting this update
out to other Ubuntu users.

If this package fixes the bug for you, please add a comment to this bug,
mentioning the version of the package you tested, and change the tag
from verification-needed to verification-done. If it does not fix the
bug for you, please add a comment stating that, and change the tag to
verification-failed.  In either case, details of your testing will help
us make a better decision.

Further information regarding the verification process can be found at
https://wiki.ubuntu.com/QATeam/PerformingSRUVerification .  Thank you in
advance!

** Changed in: ceph (Ubuntu Raring)
   Status: In Progress = Fix Committed

** Tags added: verification-needed

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to ceph in Ubuntu.
https://bugs.launchpad.net/bugs/1194166

Title:
  [SRU] Ceph 0.56.6 point release update

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/ceph/+bug/1194166/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1189926] Re: data corruption in storage attached to VM using KVM

2013-06-27 Thread Serge Hallyn
Setting verification-failed to indicate we'd like 1.0+noroms-0ubuntu14.9
dropped.  1.0+noroms-0ubuntu14.10 is in Unapproved, and has the better
fix.

** Tags removed: verification-needed
** Tags added: verification-failed

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to qemu-kvm in Ubuntu.
https://bugs.launchpad.net/bugs/1189926

Title:
  data corruption in storage attached to VM using KVM

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/qemu-kvm/+bug/1189926/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1194166] Re: [SRU] Ceph 0.56.6 point release update

2013-06-27 Thread Launchpad Bug Tracker
** Branch linked: lp:ubuntu/raring-proposed/ceph

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to ceph in Ubuntu.
https://bugs.launchpad.net/bugs/1194166

Title:
  [SRU] Ceph 0.56.6 point release update

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/ceph/+bug/1194166/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1004775] Re: NetworkManager restarts dnsmasq and adds host route on every IPv6 route lookup

2013-06-27 Thread Brian Murray
Hello Steve, or anyone else affected,

Accepted network-manager into precise-proposed. The package will build
now and be available at http://launchpad.net/ubuntu/+source/network-
manager/0.9.4.0-0ubuntu4.3 in a few hours, and then in the -proposed
repository.

Please help us by testing this new package.  See
https://wiki.ubuntu.com/Testing/EnableProposed for documentation how to
enable and use -proposed.  Your feedback will aid us getting this update
out to other Ubuntu users.

If this package fixes the bug for you, please add a comment to this bug,
mentioning the version of the package you tested, and change the tag
from verification-needed to verification-done. If it does not fix the
bug for you, please add a comment stating that, and change the tag to
verification-failed.  In either case, details of your testing will help
us make a better decision.

Further information regarding the verification process can be found at
https://wiki.ubuntu.com/QATeam/PerformingSRUVerification .  Thank you in
advance!

** Changed in: network-manager (Ubuntu Precise)
   Status: In Progress = Fix Committed

** Tags added: verification-needed

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to dnsmasq in Ubuntu.
https://bugs.launchpad.net/bugs/1004775

Title:
  NetworkManager restarts dnsmasq and adds host route on every IPv6
  route lookup

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/dnsmasq/+bug/1004775/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1174148] Re: Can't build a raring VM

2013-06-27 Thread Brian Murray
@Will - the version number you mentioned, 0.12.4+bzr477-0ubuntu3, is no
the one needing SRU verification.  Was that a typo?

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to vm-builder in Ubuntu.
https://bugs.launchpad.net/bugs/1174148

Title:
  Can't build a raring VM

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/vm-builder/+bug/1174148/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1185908] Update Released

2013-06-27 Thread Brian Murray
The verification of this Stable Release Update has completed
successfully and the package has now been released to -updates.
Subsequently, the Ubuntu Stable Release Updates Team is being
unsubscribed and will not receive messages about this bug report.  In
the event that you encounter a regression using the package from
-updates please report a new bug using ubuntu-bug and tag the bug report
regression-update so we can easily find any regresssions.

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openldap in Ubuntu.
https://bugs.launchpad.net/bugs/1185908

Title:
  slapd: slapcat output truncated every now and then

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openldap/+bug/1185908/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1185908] Re: slapd: slapcat output truncated every now and then

2013-06-27 Thread Launchpad Bug Tracker
This bug was fixed in the package openldap - 2.4.31-1ubuntu2.1

---
openldap (2.4.31-1ubuntu2.1) raring-proposed; urgency=low

  * Avoid deadlocks in back-bdb that truncate slapcat output (LP: #1185908):
- d/patches/bdb-deadlock.patch: Patch copied from Debian #673038
 -- Ryan Tandy rta...@sd63.bc.ca   Tue, 04 Jun 2013 09:18:48 -0700

** Changed in: openldap (Ubuntu Raring)
   Status: Fix Committed = Fix Released

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openldap in Ubuntu.
https://bugs.launchpad.net/bugs/1185908

Title:
  slapd: slapcat output truncated every now and then

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openldap/+bug/1185908/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1185908] Re: slapd: slapcat output truncated every now and then

2013-06-27 Thread Launchpad Bug Tracker
This bug was fixed in the package openldap - 2.4.28-1.1ubuntu4.3

---
openldap (2.4.28-1.1ubuntu4.3) precise-proposed; urgency=low

  * Avoid deadlocks in back-bdb that truncate slapcat output (LP: #1185908):
- d/patches/bdb-deadlock.patch: Patch copied from Debian #673038
 -- Ryan Tandy rta...@sd63.bc.ca   Tue, 04 Jun 2013 09:00:09 -0700

** Changed in: openldap (Ubuntu Precise)
   Status: Fix Committed = Fix Released

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openldap in Ubuntu.
https://bugs.launchpad.net/bugs/1185908

Title:
  slapd: slapcat output truncated every now and then

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openldap/+bug/1185908/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Blueprint servercloud-s-ceph] Ceph activities for Saucy

2013-06-27 Thread James Page
Blueprint changed by James Page:

Work items changed:
  Work items for ubuntu-13.06:
  [james-page] Enable google-perftools on armhf: DONE
  [james-page] Upload cuttlefish (0.61.2) to saucy: DONE
  [james-page] Upload cuttlefish to the havana cloud archive: DONE
  [james-page] Upload cuttlefish (0.61.3) to saucy: DONE
  [james-page] Upload cuttlefish (0.61.3) to the havana cloud archive: DONE
  [james-page] Upload cuttlefish (0.61.4) to saucy: DONE
  [james-page] Upload cuttlefish (0.61.4) to the havana cloud archive: DONE
  [james-page] Bobtail 0.56.6 point release to raring: INPROGRESS
  [james-page] Bobtail 0.56.6 point release to grizzly cloud archive: TODO
  
  Work items for ubuntu-13.07:
  [james-page] Upload dumpling - 4 weeks to saucy: TODO
  [james-page] Upload dumpling - 2 weeks to saucy: TODO
  
  Work items for ubuntu-13.08:
  [james-page] Upload dumpling to saucy: TODO
  [james-page] Upload dumpling to the havana cloud archive: TODO
  [james-page] Write dep8 tests for ceph: TODO
  Review upstream patches for mod_fastcgi: TODO
  Review/test ceph RADOS with mod_fcgid: TODO
  Identify use-cases for ceph performance scenarios: TODO
  [james-page] Update ceph charms to support cuttlefish features: TODO
- ceph-deploy packaging: INPROGRESS
+ ceph-deploy packaging: DONE
  
  Work items for ubuntu-13.10:
  [james-page] Regular multi-node ceph testing in the lab: INPROGRESS
  [james-page] Implement more in-depth testing of Ceph to support SRU's: TODO
  Ceph teuthology tests for deploying with Juju: TODO
  Ability to use upstream packages in Juju charms: TODO
  
  Work items:
  [a.rosales] status.u.c test work item: INPROGRESS

-- 
Ceph activities for Saucy
https://blueprints.launchpad.net/ubuntu/+spec/servercloud-s-ceph

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1045986] Re: Ubuntu AppArmor policy is too lenient with shell scripts

2013-06-27 Thread Launchpad Bug Tracker
This bug was fixed in the package chromium-browser -
28.0.1500.52-0ubuntu1.12.10.2

---
chromium-browser (28.0.1500.52-0ubuntu1.12.10.2) quantal-security; urgency=low

  [Chad MILLER]
  * New stable release 28.0.1500.52
  * New stable release 28.0.1500.45
  * New stable release 27.0.1453.110:
- CVE-2013-2855: Memory corruption in dev tools API.
- CVE-2013-2856: Use-after-free in input handling.
- CVE-2013-2857: Use-after-free in image handling.
- CVE-2013-2858: Use-after-free in HTML5 Audio.
- CVE-2013-2859: Cross-origin namespace pollution.
- CVE-2013-2860: Use-after-free with workers accessing database APIs.
- CVE-2013-2861: Use-after-free with SVG.
- CVE-2013-2862: Memory corruption in Skia GPU handling.
- CVE-2013-2863: Memory corruption in SSL socket handling.
- CVE-2013-2864: Bad free in PDF viewer.
  * New stable release 27.0.1453.93:
- CVE-2013-2837: Use-after-free in SVG.
- CVE-2013-2838: Out-of-bounds read in v8.
- CVE-2013-2839: Bad cast in clipboard handling.
- CVE-2013-2840: Use-after-free in media loader.
- CVE-2013-2841: Use-after-free in Pepper resource handling.
- CVE-2013-2842: Use-after-free in widget handling.
- CVE-2013-2843: Use-after-free in speech handling.
- CVE-2013-2844: Use-after-free in style resolution.
- CVE-2013-2845: Memory safety issues in Web Audio.
- CVE-2013-2846: Use-after-free in media loader.
- CVE-2013-2847: Use-after-free race condition with workers.
- CVE-2013-2848: Possible data extraction with XSS Auditor.
- CVE-2013-2849: Possible XSS with drag+drop or copy+paste.
  * Drop unneeded patches,
  safe-browsing-sigbus.patch
  dont-assume-cross-compile-on-arm.patch
  struct-siginfo.patch
  ld-memory-32bit.patch
  dlopen_sonamed_gl.patch
  * Temporarily disable webapps patches.
  * Update arm-neon patch, format-flag patch, search-credit patch,
title-bar-system-default patch.
  * Make get-orig-source nicer.  Package tarball contents from upstream
correctly.
  * Reenable dyn-linking of major components of chromium for 32-bit machines.
Fix a libdir path bug in debian/chromium-browser.sh.in .
  * No longer try to use system libraries. Generally, Security Team would
hate bundled libraries because they provide a wide liability, but
Chromium Project is pretty good about maintaining their bundled-source
libraries. We can not pull cr-required lib versions forward in older
Ubuntus, and we can't guarantee all the distro versions of libraries work
with chromium-browser. The default security policy might be worse. Bundled
libraries is less work overall.
  * Exclude included XDG files even if they are built.
  * Use NEON instructions on ARM, optionally. This might use run-time checks
for hardware capability, but even if it doesn't we can add it later.
  * Clean up difference checks in debian/rules that make sure that all files
that the build makes are used in packages, and no longer hide any, and no
longer consider it an error if some are unused.  Treat it as a warning,
not a fatality.
  * Use legible shell instead of make-generated shell in setting the rpath
in rules.
  * Add new build-dep, chrpath.

  [Chris Coulson]
  * debian/rules: Disable tcmalloc on all component builds, not just on
arm builds.

chromium-browser (26.0.1410.63-0ubuntu0.12.10.3) quantal-security;
urgency=low

  * Work around SEGV on ARMHF that's caused by tcmalloc.

chromium-browser (26.0.1410.63-0ubuntu0.12.10.2) quantal-security;
urgency=low

  * Work arround missing Apparmour feature. Set environment explicitly
to disallow breaking out of apparmor protection. (LP: #1045986)
  * Use more system libraries, libxml, libjpeg, bzip2, libxslt, flac,
libevent, protobuf, speex, xdg_utils, yasm, but not a few others -- in
particular,
  - libpng causes render hangs,
  - sqlite causes link failures.
Updating debian/rules, and dropping the removed ones from debian/control .
  * debian/rules:
- Use actual original upstream tarball.  No SVN snapshots, no gclient.
- Rip out compiler-targeting.  All versions should work.
- Always use sandbox.  It shouldn't be an option.  Nothing works without it
  any more.
  * Drop build-dep on subversion.  Not required with pristing orig.tar
get-original-source.
  * Simpify debian/rules and use the built-in parameter for telling GYP config
to include debug symbols.
  * Include upstream patch debian/patches/ld-memory-32bit.patch that makes
32 bit machines more likely to use BDF linker and include parameters
that make it more memory efficient.
  * GCC doesn't allow -Wno-format with hardening -Werror=format-security .
Add debian/patches/format-flag.patch .
  * Since we're Depending on xdg-settings, don't try to install one from
upstream.  Change debian/chromium-browser.install .
  * Invert sense of a quantal+ test so that we don't have to track 

[Bug 1045986] Re: Ubuntu AppArmor policy is too lenient with shell scripts

2013-06-27 Thread Launchpad Bug Tracker
This bug was fixed in the package chromium-browser -
28.0.1500.52-0ubuntu1.13.04.2

---
chromium-browser (28.0.1500.52-0ubuntu1.13.04.2) raring-security; urgency=low

  [Chad MILLER]
  * New stable release 28.0.1500.52
  * New stable release 28.0.1500.45
  * New stable release 27.0.1453.110:
- CVE-2013-2855: Memory corruption in dev tools API.
- CVE-2013-2856: Use-after-free in input handling.
- CVE-2013-2857: Use-after-free in image handling.
- CVE-2013-2858: Use-after-free in HTML5 Audio.
- CVE-2013-2859: Cross-origin namespace pollution.
- CVE-2013-2860: Use-after-free with workers accessing database APIs.
- CVE-2013-2861: Use-after-free with SVG.
- CVE-2013-2862: Memory corruption in Skia GPU handling.
- CVE-2013-2863: Memory corruption in SSL socket handling.
- CVE-2013-2864: Bad free in PDF viewer.
  * New stable release 27.0.1453.93:
- CVE-2013-2837: Use-after-free in SVG.
- CVE-2013-2838: Out-of-bounds read in v8.
- CVE-2013-2839: Bad cast in clipboard handling.
- CVE-2013-2840: Use-after-free in media loader.
- CVE-2013-2841: Use-after-free in Pepper resource handling.
- CVE-2013-2842: Use-after-free in widget handling.
- CVE-2013-2843: Use-after-free in speech handling.
- CVE-2013-2844: Use-after-free in style resolution.
- CVE-2013-2845: Memory safety issues in Web Audio.
- CVE-2013-2846: Use-after-free in media loader.
- CVE-2013-2847: Use-after-free race condition with workers.
- CVE-2013-2848: Possible data extraction with XSS Auditor.
- CVE-2013-2849: Possible XSS with drag+drop or copy+paste.
  * Drop unneeded patches,
  safe-browsing-sigbus.patch
  dont-assume-cross-compile-on-arm.patch
  struct-siginfo.patch
  ld-memory-32bit.patch
  dlopen_sonamed_gl.patch
  * Temporarily disable webapps patches.
  * Update arm-neon patch, format-flag patch, search-credit patch,
title-bar-system-default patch.
  * Make get-orig-source nicer.  Package tarball contents from upstream
correctly.
  * Reenable dyn-linking of major components of chromium for 32-bit machines.
Fix a libdir path bug in debian/chromium-browser.sh.in .
  * No longer try to use system libraries. Generally, Security Team would
hate bundled libraries because they provide a wide liability, but
Chromium Project is pretty good about maintaining their bundled-source
libraries. We can not pull cr-required lib versions forward in older
Ubuntus, and we can't guarantee all the distro versions of libraries work
with chromium-browser. The default security policy might be worse. Bundled
libraries is less work overall.
  * Exclude included XDG files even if they are built.
  * Use NEON instructions on ARM, optionally. This might use run-time checks
for hardware capability, but even if it doesn't we can add it later.
  * Clean up difference checks in debian/rules that make sure that all files
that the build makes are used in packages, and no longer hide any, and no
longer consider it an error if some are unused.  Treat it as a warning,
not a fatality.
  * Use legible shell instead of make-generated shell in setting the rpath
in rules.
  * Add new build-dep, chrpath.

  [Chris Coulson]
  * debian/rules: Disable tcmalloc on all component builds, not just on
arm builds.

chromium-browser (26.0.1410.63-0ubuntu2.13.04.2) raring-security;
urgency=low

  * Work around SEGV on ARMHF that's caused by tcmalloc.

chromium-browser (26.0.1410.63-0ubuntu2.13.04.1) raring-security;
urgency=low

  * Work arround missing Apparmour feature. Set environment explicitly
to disallow breaking out of apparmor protection. (LP: #1045986)
  * Use more system libraries, libxml, libjpeg, bzip2, libxslt, flac,
libevent, protobuf, speex, xdg_utils, yasm, but not a few others -- in
particular,
  - libpng causes render hangs,
  - sqlite causes link failures.
Updating debian/rules, and dropping the removed ones from debian/control .
  * debian/rules:
- Use actual original upstream tarball.  No SVN snapshots, no gclient.
- Rip out compiler-targeting.  All versions should work.
- Always use sandbox.  It shouldn't be an option.  Nothing works without it
  any more.
  * Drop build-dep on subversion.  Not required with pristing orig.tar
get-original-source.
  * Simpify debian/rules and use the built-in parameter for telling GYP config
to include debug symbols.
  * Include upstream patch debian/patches/ld-memory-32bit.patch that makes
32 bit machines more likely to use BDF linker and include parameters
that make it more memory efficient.
  * GCC doesn't allow -Wno-format with hardening -Werror=format-security .
Add debian/patches/format-flag.patch .
  * Since we're Depending on xdg-settings, don't try to install one from
upstream.  Change debian/chromium-browser.install .
  * Invert sense of a quantal+ test so that we don't have to track 

[Bug 1045986] Re: Ubuntu AppArmor policy is too lenient with shell scripts

2013-06-27 Thread Launchpad Bug Tracker
This bug was fixed in the package chromium-browser -
28.0.1500.52-0ubuntu1.12.04.2

---
chromium-browser (28.0.1500.52-0ubuntu1.12.04.2) precise-security; urgency=low

  [Chad MILLER]
  * New stable release 28.0.1500.52
  * New stable release 28.0.1500.45
  * New stable release 27.0.1453.110:
- CVE-2013-2855: Memory corruption in dev tools API.
- CVE-2013-2856: Use-after-free in input handling.
- CVE-2013-2857: Use-after-free in image handling.
- CVE-2013-2858: Use-after-free in HTML5 Audio.
- CVE-2013-2859: Cross-origin namespace pollution.
- CVE-2013-2860: Use-after-free with workers accessing database APIs.
- CVE-2013-2861: Use-after-free with SVG.
- CVE-2013-2862: Memory corruption in Skia GPU handling.
- CVE-2013-2863: Memory corruption in SSL socket handling.
- CVE-2013-2864: Bad free in PDF viewer.
  * New stable release 27.0.1453.93:
- CVE-2013-2837: Use-after-free in SVG.
- CVE-2013-2838: Out-of-bounds read in v8.
- CVE-2013-2839: Bad cast in clipboard handling.
- CVE-2013-2840: Use-after-free in media loader.
- CVE-2013-2841: Use-after-free in Pepper resource handling.
- CVE-2013-2842: Use-after-free in widget handling.
- CVE-2013-2843: Use-after-free in speech handling.
- CVE-2013-2844: Use-after-free in style resolution.
- CVE-2013-2845: Memory safety issues in Web Audio.
- CVE-2013-2846: Use-after-free in media loader.
- CVE-2013-2847: Use-after-free race condition with workers.
- CVE-2013-2848: Possible data extraction with XSS Auditor.
- CVE-2013-2849: Possible XSS with drag+drop or copy+paste.
  * Drop unneeded patches,
  safe-browsing-sigbus.patch
  dont-assume-cross-compile-on-arm.patch
  struct-siginfo.patch
  ld-memory-32bit.patch
  dlopen_sonamed_gl.patch
  * Update arm-neon patch, format-flag patch, search-credit patch,
title-bar-system-default patch.
  * Make get-orig-source nicer.  Package tarball contents from upstream
correctly.
  * Reenable dyn-linking of major components of chromium for 32-bit machines.
Fix a libdir path bug in debian/chromium-browser.sh.in .
  * No longer try to use system libraries. Generally, Security Team would
hate bundled libraries because they provide a wide liability, but
Chromium Project is pretty good about maintaining their bundled-source
libraries. We can not pull cr-required lib versions forward in older
Ubuntus, and we can't guarantee all the distro versions of libraries work
with chromium-browser. The default security policy might be worse. Bundled
libraries is less work overall.
  * Exclude included XDG files even if they are built.
  * Use NEON instructions on ARM, optionally. This might use run-time checks
for hardware capability, but even if it doesn't we can add it later.
  * Clean up difference checks in debian/rules that make sure that all files
that the build makes are used in packages, and no longer hide any, and no
longer consider it an error if some are unused.  Treat it as a warning,
not a fatality.
  * Use legible shell instead of make-generated shell in setting the rpath
in rules.
  * Add new build-dep, chrpath.

  [Chris Coulson]
  * debian/rules: Disable tcmalloc on all component builds, not just on
arm builds.

chromium-browser (26.0.1410.63-0ubuntu0.12.04.3) precise-security;
urgency=low

  * Work around SEGV on ARMHF that's caused by tcmalloc.

chromium-browser (26.0.1410.63-0ubuntu0.12.04.2) precise-security;
urgency=low

  * Work arround missing Apparmour feature. Set environment explicitly
to disallow breaking out of apparmor protection. (LP: #1045986)
  * Use more system libraries, libxml, libjpeg, bzip2, libxslt, flac,
libevent, protobuf, speex, xdg_utils, yasm, but not a few others -- in
particular,
  - libpng causes render hangs,
  - sqlite causes link failures.
Updating debian/rules, and dropping the removed ones from debian/control .
  * debian/rules:
- Use actual original upstream tarball.  No SVN snapshots, no gclient.
- Rip out compiler-targeting.  All versions should work.
- Always use sandbox.  It shouldn't be an option.  Nothing works without it
  any more.
  * Drop build-dep on subversion.  Not required with pristing orig.tar
get-original-source.
  * Simpify debian/rules and use the built-in parameter for telling GYP config
to include debug symbols.
  * Include upstream patch debian/patches/ld-memory-32bit.patch that makes
32 bit machines more likely to use BDF linker and include parameters
that make it more memory efficient.
  * GCC doesn't allow -Wno-format with hardening -Werror=format-security .
Add debian/patches/format-flag.patch .
  * Since we're Depending on xdg-settings, don't try to install one from
upstream.  Change debian/chromium-browser.install .
  * Invert sense of a quantal+ test so that we don't have to track things
forever.  Name things we know 

[Bug 1124384] Re: Configuration reload clears event that others jobs may be waiting on

2013-06-27 Thread Steve Langasek
Hello Ben, or anyone else affected,

Accepted upstart into raring-proposed. The package will build now and be
available at http://launchpad.net/ubuntu/+source/upstart/1.8-0ubuntu1.1
in a few hours, and then in the -proposed repository.

Please help us by testing this new package.  See
https://wiki.ubuntu.com/Testing/EnableProposed for documentation how to
enable and use -proposed.  Your feedback will aid us getting this update
out to other Ubuntu users.

If this package fixes the bug for you, please add a comment to this bug,
mentioning the version of the package you tested, and change the tag
from verification-needed to verification-done. If it does not fix the
bug for you, please add a comment stating that, and change the tag to
verification-failed.  In either case, details of your testing will help
us make a better decision.

Further information regarding the verification process can be found at
https://wiki.ubuntu.com/QATeam/PerformingSRUVerification .  Thank you in
advance!

** Changed in: upstart (Ubuntu Raring)
   Status: Confirmed = Fix Committed

** Tags added: verification-needed

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to cloud-init in Ubuntu.
https://bugs.launchpad.net/bugs/1124384

Title:
  Configuration reload clears event that others jobs may be waiting on

To manage notifications about this bug go to:
https://bugs.launchpad.net/cloud-init/+bug/1124384/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1031680] Re: check_apt always report 0 critical updates

2013-06-27 Thread Francois Trahan
not knowing about security updates are a security issue; changed the but
type

** Information type changed from Public to Public Security

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is a bug assignee.
https://bugs.launchpad.net/bugs/1031680

Title:
  check_apt always report 0 critical updates

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/nagios-plugins/+bug/1031680/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1195524] [NEW] race condition / transient failure to provision

2013-06-27 Thread Scott Moser
Public bug reported:

when starting instances on azure, there is  a fair chance (seems more
likely for some users thanothers) that the instance will fail to reach
provisioned state.

I do not have a a good guess as to why this is.

ProblemType: Bug
DistroRelease: Ubuntu 13.04
Package: walinuxagent 1.3.2-0ubuntu1
ProcVersionSignature: Ubuntu 3.8.0-25.37-generic 3.8.13
Uname: Linux 3.8.0-25-generic x86_64
ApportVersion: 2.9.2-0ubuntu8.1
Architecture: amd64
Date: Fri Jun 28 01:29:25 2013
MarkForUpload: True
ProcEnviron:
 TERM=screen
 PATH=(custom, no user)
 LANG=en_US.UTF-8
 SHELL=/bin/bash
SourcePackage: walinuxagent
UpgradeStatus: No upgrade log present (probably fresh install)

** Affects: walinuxagent (Ubuntu)
 Importance: Undecided
 Status: New


** Tags: amd64 apport-bug raring uec-images

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to walinuxagent in Ubuntu.
https://bugs.launchpad.net/bugs/1195524

Title:
  race condition / transient failure to provision

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/walinuxagent/+bug/1195524/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1195524] Re: race condition / transient failure to provision

2013-06-27 Thread Scott Moser
as I'm trying to debug this instance that failed for me, and then came up after 
a 'vm restart', there is no indication that / was ever mounted RW the first 
time.  Ie, there is no evidence in /var/log of *anything* having run.
cloud-init starts on mounted MOUNTPOINT=/
and logs pretty much immediately to /var/log/cloud-init.log
but there is no timestamps other than this boot.

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to walinuxagent in Ubuntu.
https://bugs.launchpad.net/bugs/1195524

Title:
  race condition / transient failure to provision

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/walinuxagent/+bug/1195524/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1195524] Re: race condition / transient failure to provision

2013-06-27 Thread Scott Moser
given my previous comment, i would have suspected that there was disk or kernel 
failure.
however, ssh-keyscan seemed to indicate ssh was running:
$ ssh-keyscan us-west-1.cloudapp.net 
# us-west-1.cloudapp.net SSH-2.0-OpenSSH_6.1p1 Debian-4
Connection closed by 137.135.115.232

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to walinuxagent in Ubuntu.
https://bugs.launchpad.net/bugs/1195524

Title:
  race condition / transient failure to provision

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/walinuxagent/+bug/1195524/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1195529] [NEW] walinux-agent might be run during build process

2013-06-27 Thread Scott Moser
Public bug reported:

Hi, it seems that walinux-agent may be run during the build process.  I
suspect this because when I got into an instance that was restarted and
came up after showoing bug 1195524, I saw timestamps in
/var/log/walinux.

Heres an example:
2013/06/21 04:33:47 WARNING:Moved 
/lib/udev/rules.d/75-persistent-net-generator.rules - 
/var/lib/waagent/75-persistent-net-generator.rules
2013/06/21 04:33:47 Configured SSH client probing to keep connections alive.
2013/06/21 12:57:41 Windows Azure Linux Agent Version: WALinuxAgent-1.3.2
2013/06/21 12:57:41 Linux Distribution Detected  : Ubuntu
2013/06/21 12:57:41 IPv4 address: 10.241.22.114
2013/06/21 12:57:41 MAC  address: 00:15:5D:51:95:17

The first entries in cloud-init.log are in the 12:57 time frame.
so i suspect that is the actual boot time and the other entries were 
install-time logs.

Thats less than ideal, and would also likely indicate that it was
probably shutdown possibly while doing something.

** Affects: walinuxagent (Ubuntu)
 Importance: Undecided
 Status: New


** Tags: azure cloud-images cloud-images-build

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to walinuxagent in Ubuntu.
https://bugs.launchpad.net/bugs/1195529

Title:
  walinux-agent might be run during build process

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/walinuxagent/+bug/1195529/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1195529] Re: walinux-agent might be run during build process

2013-06-27 Thread Scott Moser
the solution here is to block jobs from running on 'apt-get install'.
the build process for cloud-images does this.

the way to prevent is to put something like this in /usr/sbin/policy-
rc.d (taken from VMBuilder/plugins/ubuntu/templates/nostart-policy-
rc.d.tmpl )

while true; do
case $1 in
-*) shift ;;
makedev) exit 0 ;;
x11-common) exit 0 ;;
*) exit 101 ;;
esac
done


and make that executable.


** Tags added: azure cloud-images cloud-images-build

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to walinuxagent in Ubuntu.
https://bugs.launchpad.net/bugs/1195529

Title:
  walinux-agent might be run during build process

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/walinuxagent/+bug/1195529/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


Re: [Bug 1195524] Re: race condition / transient failure to provision

2013-06-27 Thread David Medberry
You can get kdump working in Azure (not that you really need it for this)
with the attached patch.

Ref: http://support.microsoft.com/kb/2858695


On Thu, Jun 27, 2013 at 8:01 PM, Scott Moser smo...@ubuntu.com wrote:

 given my previous comment, i would have suspected that there was disk or
 kernel failure.
 however, ssh-keyscan seemed to indicate ssh was running:
 $ ssh-keyscan us-west-1.cloudapp.net
 # us-west-1.cloudapp.net SSH-2.0-OpenSSH_6.1p1 Debian-4
 Connection closed by 137.135.115.232

 --
 You received this bug notification because you are a member of Canonical
 Microsoft Azure Collaboration, which is subscribed to walinuxagent in
 Ubuntu.
 Matching subscriptions: walinxuagnet bugs
 https://bugs.launchpad.net/bugs/1195524

 Title:
   race condition / transient failure to provision

 To manage notifications about this bug go to:

 https://bugs.launchpad.net/ubuntu/+source/walinuxagent/+bug/1195524/+subscriptions



-- 
-dave


** Attachment added: blacklist.hyperv.kdump.patch
   
https://bugs.launchpad.net/bugs/1195524/+attachment/3716552/+files/blacklist.hyperv.kdump.patch

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to walinuxagent in Ubuntu.
https://bugs.launchpad.net/bugs/1195524

Title:
  race condition / transient failure to provision

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/walinuxagent/+bug/1195524/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1195342] Re: Please add real distribution instead of hardcoded Debian one

2013-06-27 Thread Launchpad Bug Tracker
This bug was fixed in the package openssh - 1:6.2p2-5

---
openssh (1:6.2p2-5) unstable; urgency=low


  [ Colin Watson ]
  * Document consequences of ssh-agent being setgid in ssh-agent(1); see
#711623.
  * Use 'set -e' rather than '#! /bin/sh -e' in maintainer scripts and
ssh-argv0.

  [ Yolanda Robla ]
  * debian/rules: Include real distribution in SSH_EXTRAVERSION instead of
hardcoding Debian (LP: #1195342).

 -- Colin Watson cjwat...@debian.org  Thu, 27 Jun 2013 15:24:14 +0100

** Changed in: openssh (Ubuntu)
   Status: Fix Committed = Fix Released

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openssh in Ubuntu.
https://bugs.launchpad.net/bugs/1195342

Title:
  Please add real distribution instead of hardcoded Debian one

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openssh/+bug/1195342/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs