Bug#855675: marked as done (hunspell-dict-ko: Fails to build from source, No module named 'lxml')

2017-02-21 Thread Debian Bug Tracking System
Your message dated Wed, 22 Feb 2017 07:33:29 + with message-id and subject line Bug#855675: fixed in hunspell-dict-ko 0.6.0-2 has caused the Debian Bug report #855675, regarding hunspell-dict-ko: Fails to build from source, No module named 'lxml' to be

Bug#704303: violates Debian Policy 2.3 Copyright considerations

2017-02-21 Thread Russ Allbery
"Pirate Praveen" writes: > On Sun, 19 Feb 2017 12:43:30 +0530 Pirate Praveen wrote: >> On Sun, 1 Jan 2017 16:55:52 +0500 Andrey Rahmatullin wrote: >>> Note that since Policy 3.9.9 MPL should be in common-licenses. >> Reassigning

Bug#855615: tachyon: not binNMU safe

2017-02-21 Thread Jerome BENOIT
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Dear James, thanks for your report. I am looking for reproducing the issue. So far, I cannot. Where can we get the binMMUed source material ? Cheers, Jerome On 20/02/17 23:42, James Cowgill wrote: > Source: tachyon > Version: 0.99~b6+dsx-7 >

Bug#855427: quicktun: Does not work

2017-02-21 Thread James Cloos
The upstream web site recommended using qt_private_key_file in interfaces. Your readme instead recommends qt_private_key. Switching to qt_private_key helped. But there is still the problem that only one tunnel can be used at a time. It would help were the readme to include mention that in

Bug#704303: violates Debian Policy 2.3 Copyright considerations

2017-02-21 Thread Pirate Praveen
On Sun, 19 Feb 2017 12:43:30 +0530 Pirate Praveen wrote: > On Sun, 1 Jan 2017 16:55:52 +0500 Andrey Rahmatullin > wrote: > > Note that since Policy 3.9.9 MPL should be in common-licenses. > > Reassigning to firefox, which also has the same issue. When is

Processed: upgrade severity

2017-02-21 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 855077 grave Bug #855077 [azure-cli] azure-cli: Running az command fails with error Severity set to 'grave' from 'important' > kthxbye Stopping processing here. Please contact me if you need assistance. -- 855077:

Bug#855275: marked as done (dot-forward: FTBFS: cannot read [...]/debian/dot-forward/usr/sbin/*)

2017-02-21 Thread Debian Bug Tracking System
Your message dated Wed, 22 Feb 2017 01:48:43 + with message-id and subject line Bug#855275: fixed in dot-forward 1:0.71-2.2 has caused the Debian Bug report #855275, regarding dot-forward: FTBFS: cannot read [...]/debian/dot-forward/usr/sbin/* to be marked

Bug#794856: fixed in opencv 3.0.0+dfsg-1~exp1

2017-02-21 Thread Nobuhiro Iwamatsu
Hi! Thanks for your work! You do not need delayed upload. Please go ahead. Best regards, Nobuhiro 2017-02-20 7:31 GMT+09:00 Jochen Sprickerhof : > Hi Nobuhiro, > > I've pushed a new OpenCV version excluding the Lenna images to delayed/5 > and the vcs. Please tell me, if I

Processed: Re: Bug#794856: fixed in opencv 3.0.0+dfsg-1~exp1

2017-02-21 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tags 794856 pending Bug #794856 {Done: Nobuhiro Iwamatsu } [src:opencv] opencv: non DFSG file in the source package Added tag(s) pending. > thanks Stopping processing here. Please contact me if you need assistance. --

Bug#760414: [ola] Source package includes non-source files without corresponding source

2017-02-21 Thread Wouter Verhelst
Hi Ben, Sorry for the late reply; I've been fighting a viral infection for the past week+ On Wed, Feb 15, 2017 at 12:21:53AM +1100, Ben Finney wrote: > Control: reassign -1 src:ola > Control: retitle -1 ola: Source package includes non-source files without > corresponding source > > On

Bug#850840: marked as done (raptor: Please don't release this package with Stretch: Abandoned and unused)

2017-02-21 Thread Debian Bug Tracking System
Your message dated Tue, 21 Feb 2017 22:16:17 + with message-id and subject line Bug#855192: Removed package(s) from unstable has caused the Debian Bug report #850840, regarding raptor: Please don't release this package with Stretch: Abandoned and unused

Processed: severity of 854295 is important

2017-02-21 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 854295 important Bug #854295 [brltty-espeak] brltty-espeak: crashes while emitting speech Severity set to 'important' from 'grave' > thanks Stopping processing here. Please contact me if you need assistance. -- 854295:

Processed: severity of 854295 is grave

2017-02-21 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 854295 grave Bug #854295 [brltty-espeak] brltty-espeak: crashes while emitting speech Severity set to 'grave' from 'important' > thanks Stopping processing here. Please contact me if you need assistance. -- 854295:

Bug#855689: jython.jar does not provide a Class-Path

2017-02-21 Thread Gilles Filippini
Hi Ole, On Tue, 21 Feb 2017 09:54:48 +0100 Ole Streicher wrote: > Package: jython > Version: 2.5.3-14 > Severity: serious > > There is no classpath for the dependencies of jython.jar defined in its > manifest: > > $ unzip -p /usr/share/java/jython.jar META-INF/MANIFEST.MF |

Bug#854341: libchado-perl: FTBFS: The following enviroment variables not detected: CHADO_DB_USERNAME

2017-02-21 Thread Santiago Vila
severity 854341 important thanks On Tue, Feb 21, 2017 at 06:25:05PM +0100, Andreas Tille wrote: > I'm tempted to set the severity to this bug to normal/minor. Could you > please try again whether we can even close it? I'm making this bug not RC in the meantime. My current theory is that this

Processed: Re: Bug#854341: libchado-perl: FTBFS: The following enviroment variables not detected: CHADO_DB_USERNAME

2017-02-21 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 854341 important Bug #854341 [src:libchado-perl] libchado-perl: FTBFS: The following enviroment variables not detected: CHADO_DB_USERNAME Severity set to 'important' from 'serious' > thanks Stopping processing here. Please contact me

Bug#854341: libchado-perl: FTBFS: The following enviroment variables not detected: CHADO_DB_USERNAME

2017-02-21 Thread Andreas Tille
Hi Chris,s I'm tempted to set the severity to this bug to normal/minor. Could you please try again whether we can even close it? Kind regards Andreas. On Thu, Feb 16, 2017 at 01:55:53AM +0100, Santiago Vila wrote: > Hi. > > It builds ok for me on eight different autobuilders, > using

Processed: bts

2017-02-21 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 851852 serious Bug #851852 [netdata] netdata: postfix/postdrop Read-only filesystem Severity set to 'serious' from 'normal' > thanks Stopping processing here. Please contact me if you need assistance. -- 851852:

Bug#855791: qemu: CVE-2017-2620: cirrus_bitblt_cputovideo does not check if memory region is safe

2017-02-21 Thread Salvatore Bonaccorso
Source: qemu Version: 1:2.8+dfsg-2 Severity: grave Tags: upstream security patch Hi, the following vulnerability was published for qemu. CVE-2017-2620[0]: display: cirrus: out-of-bounds access issue while in cirrus_bitblt_cputovideo If you fix the vulnerability please also make sure to include

Bug#855788: needrestart-dbus-session: Failed to setup environment correctly

2017-02-21 Thread Paul Wise
Package: needrestart-session Version: 0.3-3 Severity: serious When I login I noticed that I get this in my user systemd journal: Feb 19 21:29:18 chianamo needrestart-dbus-session[2355]: terminated Feb 19 21:29:18 chianamo needrestart-dbus-session[2355]:

Bug#855702: marked as done (python-signedjson: Python files are missing)

2017-02-21 Thread Debian Bug Tracking System
Your message dated Tue, 21 Feb 2017 14:51:11 + with message-id and subject line Bug#855702: fixed in python-signedjson 1.0.0-3 has caused the Debian Bug report #855702, regarding python-signedjson: Python files are missing to be marked as done. This means

Bug#855705: [Packaging] Bug#855705: munin-cgi-graph local file write vulnerability

2017-02-21 Thread Tomaž Šolc
On 21. 02. 2017 15:01, Holger Levsen wrote: > Did you check whether 2.0.6 is affected as well? 2.999.6? No, I did not check 2.0.6 or 2.999.6. Parameter handling seems to have been rewritten in 2.999.6. Looking at the source, it does not seem to be vulnerable to this specific problem:

Bug#853008: [debian-mysql] Bug#853008: Bug#853008: Bug#853008: mysql-server-5.7: purge could delete mariadb-server files with inadequate warning

2017-02-21 Thread Julian Gilbey
On Tue, Feb 21, 2017 at 02:10:22PM +0100, Lars Tangvald wrote: > On 02/21/2017 01:59 PM, Julian Gilbey wrote: > > On Tue, Feb 21, 2017 at 01:27:44PM +0100, Lars Tangvald wrote: > > > I've looked at it some more, and I'm hesitant about including such a big > > > patch for a pretty rare scenario,

Processed: Re: [Packaging] Bug#855705: munin-cgi-graph local file write vulnerability

2017-02-21 Thread Debian Bug Tracking System
Processing control commands: > forwarded -1 https://github.com/munin-monitoring/munin/issues/721 Bug #855705 [munin] munin-cgi-graph local file write vulnerability Set Bug forwarded-to-address to 'https://github.com/munin-monitoring/munin/issues/721'. > tags -1 + upstream Bug #855705 [munin]

Bug#855705: [Packaging] Bug#855705: munin-cgi-graph local file write vulnerability

2017-02-21 Thread Holger Levsen
control: forwarded -1 https://github.com/munin-monitoring/munin/issues/721 control: tags -1 + upstream Hi Tomaž, On Tue, Feb 21, 2017 at 02:42:26PM +0100, Tomaž Šolc wrote: > Munin package in Jessie has a local file write vulnerability when CGI graphs > are > enabled. Setting multiple

Bug#855705: munin-cgi-graph local file write vulnerability

2017-02-21 Thread Tomaž Šolc
Package: munin Version: 2.0.25-1 Severity: grave Tags: security patch Justification: user security hole Dear Maintainers, Munin package in Jessie has a local file write vulnerability when CGI graphs are enabled. Setting multiple "upper_limit" GET parameters allows overwriting any file accessible

Bug#855324: pdfsam fails to start

2017-02-21 Thread Emmanuel Bourg
Le 16/02/2017 à 23:18, Markus Koschany a écrit : > Given that pdfsam in Debian is pretty much > outdated it probably makes sense to remove it from Stretch. I'd also add that upstream provides its own .deb packages built with jdeb [1], and it's a leaf package. So I wouldn't mind removing it.

Bug#853008: [debian-mysql] Bug#853008: Bug#853008: Bug#853008: mysql-server-5.7: purge could delete mariadb-server files with inadequate warning

2017-02-21 Thread Lars Tangvald
On 02/21/2017 01:59 PM, Julian Gilbey wrote: On Tue, Feb 21, 2017 at 01:27:44PM +0100, Lars Tangvald wrote: I've looked at it some more, and I'm hesitant about including such a big patch for a pretty rare scenario, which in the worst case does ask the following: The /var/lib/mysql directory

Bug#853008: [debian-mysql] Bug#853008: Bug#853008: Bug#853008: mysql-server-5.7: purge could delete mariadb-server files with inadequate warning

2017-02-21 Thread Julian Gilbey
On Tue, Feb 21, 2017 at 01:27:44PM +0100, Lars Tangvald wrote: > I've looked at it some more, and I'm hesitant about including such a big > patch for a pretty rare scenario, which in the worst case does ask the > following: > The /var/lib/mysql directory which contains the MySQL databases is

Bug#855702: python-signedjson: Python files are missing

2017-02-21 Thread Federico Ceratto
Package: python-signedjson Version: 1.0.0-2 Severity: grave Justification: renders package unusable python-signedjson 1.0.0-2 contains no Python files. -- System Information: Debian Release: 9.0 APT prefers unstable APT policy: (600, 'unstable'), (500, 'stable') Architecture: amd64 (x86_64)

Bug#851060: libnids1.21: can't assemble TCP streams on armhf

2017-02-21 Thread James Cowgill
Hi, On Sun, 19 Feb 2017 23:18:24 +0100 Marcos Fouces wrote: > Hello Axel > > This compiler flag (-fno-strict-aliasing) is needed in libnids. You are > right. I will revert this change in dsniff. I added the other flag (-g) > in order to avoid creating an empty dbgsym

Bug#809669: unattended-upgrades: files got created under /var/ mountpoint

2017-02-21 Thread Scott Leggett
Hi Louis, On Wed, 15 Feb 2017 14:34:58 +0100 Louis Bouchard wrote: > Hello, > > I may be wrong, but this clearly shows that the Unattended Upgrades Shutdown > unit starts once the target Network is being brought down : I don't think the replacement unit I

Processed: Restore "affects" that was lost in the merge

2017-02-21 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > affects 852253 src:kryo-serializers Bug #852253 {Done: Markus Koschany } [libkryo-java] kryo-serializers: FTBFS (Cannot access central (https://repo.maven.apache.org/maven2) in offline mode) Bug #851037 {Done: Emmanuel Bourg

Processed: Second try, old bug was archived

2017-02-21 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > unarchive 851037 Bug #851037 {Done: Emmanuel Bourg } [libkryo-java] kryo-serializers: FTBFS: find: '/usr/share/maven-repo/org/codehaus/plexus/plexus-containers/*/*.jar': No such file or directory Unarchived Bug 851037 >

Bug#852253: kryo-serializers: FTBFS (Cannot access central (https://repo.maven.apache.org/maven2) in offline mode)

2017-02-21 Thread Santiago Vila
reassign 852253 libkryo-java affects 852253 src:kryo-serializers forcemerge 851037 852253 thanks On Mon, 23 Jan 2017, Emmanuel Bourg wrote: > I think this is a duplicate of #851037, it'll be fixed today once > libkryo-java/2.20-6 migrates to testing. It was an exact duplicate indeed (filed

Processed (with 1 error): Re: Bug#852253: kryo-serializers: FTBFS (Cannot access central (https://repo.maven.apache.org/maven2) in offline mode)

2017-02-21 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > reassign 852253 libkryo-java Bug #852253 {Done: Markus Koschany } [src:kryo-serializers] kryo-serializers: FTBFS (Cannot access central (https://repo.maven.apache.org/maven2) in offline mode) Bug reassigned from package

Bug#854335:

2017-02-21 Thread Aymeric Augustin
I answered the upstream bug report: https://github.com/aaugustin/websockets/issues/163#issuecomment-281292067 -- Aymeric.

Bug#855689: jython.jar does not provide a Class-Path

2017-02-21 Thread Ole Streicher
Package: jython Version: 2.5.3-14 Severity: serious There is no classpath for the dependencies of jython.jar defined in its manifest: $ unzip -p /usr/share/java/jython.jar META-INF/MANIFEST.MF | \ grep Class-Path $ This leads to the problem that dependent packages need to specify the

Bug#855671: chaussette: FTBFS: ConnectionError: HTTPConnectionPool(host='localhost', port=8080): Max retries exceeded with url: /

2017-02-21 Thread David Douard
Le 02/21/2017 à 04:44 AM, Chris Lamb a écrit : > Source: chaussette > Version: 1.3.0-1 > Severity: serious > Justification: fails to build from source > User: reproducible-bui...@lists.alioth.debian.org > Usertags: ftbfs > X-Debbugs-Cc: reproducible-b...@lists.alioth.debian.org > > Dear

Bug#855686: icedtea-web: FTBFS: configure: error: Package requirements (mozilla-plugin) were not met

2017-02-21 Thread Salvatore Bonaccorso
Source: icedtea-web Version: 1.5.3-1 Severity: serious Justification: FTBFS Hi While trying to look at #744343 and rebuild icedtea-web, I noticed it fails to build in jessie: checking for MOZILLA... no checking for MOZILLA... no configure: error: Package requirements (mozilla-plugin) were not

Processed: Bug#854851 marked as pending

2017-02-21 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tag 854851 pending Bug #854851 {Done: Roger Shimizu } [binaryornot] Please remove or replace lenna images Added tag(s) pending. > thanks Stopping processing here. Please contact me if you need assistance. -- 854851:

Bug#854851: marked as pending

2017-02-21 Thread Vincent Bernat
tag 854851 pending thanks Hello, Bug #854851 reported by you has been fixed in the Git repository. You can see the changelog below, and you can check the diff of the fix at: http://git.debian.org/?p=python-modules/packages/binaryornot.git;a=commitdiff;h=385c858 --- commit