Bug#780772: [drupal7] Security update for drupla7 & drupal6

2015-03-18 Thread Ingo Juergensmann
Package: drupal7 Version: 7.32-1+deb8u1 Severity: serious Tags: security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org --- Please enter the report below this line. --- Hi! https://www.drupal.org/drupal-7.35 says: >Drupal 7.35 and Drupal 6.35, maintenance releases which contain fixes

Bug#780020: [UDD] bugs.cgi: YAML contains raw HTML and "ruby objects"

2015-03-18 Thread Niels Thykier
On 2015-03-18 18:38, Lucas Nussbaum wrote: > Hi Niels, > > bugs.cgi started as a huge amount of spaghetti code, and is slightly > become better. > > [...] > > For last_modified, I've added a new 'last_modified_string' field that > shows the date as text. Should be easily parsable by about everyt

Bug#750999: qa.debian.org: I would be usefull have a comment field in dmd

2015-03-18 Thread Lucas Nussbaum
On 19/03/15 at 12:51 +0800, Paul Wise wrote: > On Thu, Mar 19, 2015 at 1:37 AM, Lucas Nussbaum wrote: > > > I wonder if there are external services that could serve as data stores > > for the comments? Something like disqus, but simpler. > > I think it would be best to store the data in UDD or an

Bug#780555: apt-cacher-ng: Use with Fedora Rawhide is problematic

2015-03-18 Thread Carlos Maddela
On 19/03/15 05:56, Eduard Bloch wrote: > Control: tags 780555 +upstream > > Hallo, > * Carlos Maddela [Mon, Mar 16 2015, 12:21:54PM]: > >> Using apt-cacher-ng to cache RPMs from Fedora Rawhide eventually results >> in packages that cannot be verified, because it would seem that Fedora >> allows t

Bug#780771: php5-curl: libcurl no more sends client certificate during mutual TLS authentication

2015-03-18 Thread root
Package: php5-curl Version: 5.4.38-0+deb7u1 Severity: normal Dear Maintainer, I upgraded today from 5.4.36 to 5.4.38 and the mutual authentication that I have coded with the curl php module is no more working : the client certificate is no more sent to the server. Here is the code to reproduce

Bug#780770: The show_damage option does not show spell damage

2015-03-18 Thread Josh Triplett
Package: angband Version: 1:3.5.1-2 Severity: normal The show_damage option shows the damage done by melee or ranged attacks, but not the damage done by spells. - Josh Triplett -- System Information: Debian Release: 8.0 APT prefers unstable APT policy: (500, 'unstable'), (1, 'experimental')

Bug#750999: qa.debian.org: I would be usefull have a comment field in dmd

2015-03-18 Thread Paul Wise
On Thu, Mar 19, 2015 at 1:37 AM, Lucas Nussbaum wrote: > I wonder if there are external services that could serve as data stores > for the comments? Something like disqus, but simpler. I think it would be best to store the data in UDD or another Debian service. -- bye, pabs https://wiki.debian

Bug#780675: systemd: segfault in systemd when running systemctl daemon-reload

2015-03-18 Thread Michael Biebl
Am 18.03.2015 um 19:01 schrieb Michael Biebl: > Control: fixed -1 219-4 > > Am 18.03.2015 um 18:00 schrieb Michael Biebl: >> Thanks for sharing the contents of the file. I can confirm the crash and >> we have enough information now to debug this issue properly. >> Marking the bug accordingly. > >

Bug#780705: udev: floating net device number on devices with ro rootfs

2015-03-18 Thread Michael Biebl
Am 19.03.2015 um 04:34 schrieb You-Sheng Yang: > On Wed, 18 Mar 2015 18:46:00 +0100 Michael Biebl wrote: >> Dear You-Sheng Yang, >> >> first of all, the bug report was filed against the wrong package. The >> package dealing with the network renaming is udev. Therefore reassigning >> to udev. > >

Bug#780241: [NETWORKING #LVG-179-41238]: Re: mirror submission for debian.mirror.digitalpacific.com.au

2015-03-18 Thread Networking
Hi Donald, Thanks for the response! > It is wiser to sync from a more or less local mirror than over great distance, especially if cost is an issue. However you can change your upstream as needs or failures arise. > The most important thing is the mirror is current within the totality of the arc

Bug#780754: README.html screenshot

2015-03-18 Thread ian_bruce
> See attached screenshot.

Bug#780769: debian-installer: monolithic images miss crypto components

2015-03-18 Thread Cyril Brulebois
Package: debian-installer Version: 20130613+deb7u2 20150107 Severity: normal Toying around with monolithic images made me (re?)discover that crypto components are missing there. The reason seems to be their priority (optional), meaning they don't get automatically picked up in the pkg-lists/standa

Bug#780705: udev: floating net device number on devices with ro rootfs

2015-03-18 Thread You-Sheng Yang
On Wed, 18 Mar 2015 18:46:00 +0100 Michael Biebl wrote: > Dear You-Sheng Yang, > > first of all, the bug report was filed against the wrong package. The > package dealing with the network renaming is udev. Therefore reassigning > to udev. Sorry, I thought it had to be filed under its source pack

Bug#778500: iputils-ping: reconfiguring with setcap leaves the binary suid

2015-03-18 Thread Noah Meyerhans
tags 778500 + pending thanks On Sun, Feb 15, 2015 at 11:33:54PM +0100, Trek wrote: > I have installed iputils-ping without having setcap, so the /bin/ping* > binaries where suid root > > thanks to the warning message, I have installed libcap2-bin and then ran > dpkg-reconfigure on iputils-ping, b

Bug#780721: iputils: Please raise libcap2-bin from Recommends to Depends

2015-03-18 Thread Noah Meyerhans
On Wed, Mar 18, 2015 at 12:12:48PM +0100, John Paul Adrian Glaubitz wrote: > The new version of iputils in Jessie uses capabilities instead of set-uid > to gain the necessary priviliges to send ICMP requests. While this is a > great improvement with regards to security, it currently may lead to > r

Bug#780768: network-manager: build up of dhcp*.lease files in /var/lib/NetworkManager: have hundreds, expect 2

2015-03-18 Thread Joshua
Package: network-manager Version: 0.9.10.0-6 Severity: normal Dear Maintainer, *** Reporter, please consider answering these questions, where appropriate *** * What led up to the situation? Trying to debug malfunctioning internet. * What exactly did you do (or not do) that was effective

Bug#779075: unblock: partman-target/94

2015-03-18 Thread Cyril Brulebois
Cyril Brulebois (2015-02-27): > Control: tag -1 moreinfo > > Since I'd like to perform some more tests with that one, tagging this > bug report moreinfo to make sure this version doesn't get accidentally > hinted into jessie too soon. No good news for the time being, see: https://bugs.debian.o

Bug#780767: linux-image-3.2.0-4-amd64: snd_hda crash on boot

2015-03-18 Thread richard jasmin
Package: src:linux Version: 3.2.65-1+deb7u2 Severity: important Dear Maintainer, snd_hda crashes on boot sometimes. HDA codec fails to init othertimes. -- Package-specific info: ** Version: Linux version 3.2.0-4-amd64 (debian-ker...@lists.debian.org) (gcc version 4.6.3 (Debian 4.6.3-14) ) #1 S

Bug#780766: ITP: memtailor -- C++ library of special purpose memory allocators

2015-03-18 Thread Torrance, Douglas
Package: wnpp Severity: wishlist Owner: Doug Torrance * Package name: memtailor Version : 1.0 Upstream Author : Bjarke Hammersholt Roune * URL : https://github.com/broune/memtailor * License : BSD-3-clause Programming Lang: C++ Description : C++ librar

Bug#780765: syslinux fixes for Chromebooks

2015-03-18 Thread Steve Langasek
Package: syslinux Version: 3:6.03+dfsg-5 Severity: normal Tags: patch User: ubuntu-de...@lists.ubuntu.com Usertags: origin-ubuntu vivid ubuntu-patch Hi Daniel, In Ubuntu, my attention was recently called to a problem with syslinux 6.03 not booting correctly on Chromebooks. To fix this problem, I

Bug#780241: [NETWORKING #LVG-179-41238]: Re: mirror submission for debian.mirror.digitalpacific.com.au

2015-03-18 Thread Networking
Hi Donald, We was syncing the archive from mirror.aarnet.edu.au -- looking at their trace directory, it's all there too: http://mirror.aarnet.edu.au/pub/debian/project/trace/ The only reason why we sync from there is as because it's local to Sydney, AU.. where as the official AU mirror is in Wes

Bug#780764: php5-curl: Cookie header not send on request

2015-03-18 Thread Carlos C Soto
Package: php5-curl Version: 5.4.38-0+deb7u1 Severity: important Dear PHP Maintainers, When setting a curl CURLOPT_COOKIEFILE and CURLOPT_COOKIEJAR the Cookie header is not set after receive a Set-Cookie from the server. This error was not present in wheezy 5.4.36-0+deb7u3 and is not present on

Bug#778874: terminator: Moving between terminals buggy

2015-03-18 Thread Julián Moreno Patiño
forwarded 778874 https://bugs.launchpad.net/bugs/1433810 thanks Hello Martin, Thanks for it, I'll check it. Kind regards, -- Julián Moreno Patiño Debian Developer .''`. Debian GNU/{Linux,KfreeBSD} : :' : Free Operating Systems `. `' http://debian.org/ `- GPG Fingerprint: C2C8 904E 314C D

Bug#773097: mate-notification-daemon: this is still an issue with the latest 1.8.2-1 re; eased to experimental.

2015-03-18 Thread shirish शिरीष
at bottom :- On 3/18/15, Alessandro Barbieri wrote: > I commented exec in kde.notify.service because knotif was running > disabled kwin and rebooted > neiter knotify4 nor mate-notification are running > > and i can't run it > > /usr/lib/mate-notification-daemon/mate-notification-daemon > > **

Bug#750837: ITP: moarvm -- virtual machine for Rakudo Perl 6 and NQP

2015-03-18 Thread Daniel Dehennin
gregor herrmann writes: > Yay, great! > > Looks like the ITP bug can be tagged pending :) The new 2015.03 is out, this will permit to drop the patch ;-) Regards. -- Daniel Dehennin Récupérer ma clef GPG: gpg --recv-keys 0xCC1E9E5B7A6FE2DF Fingerprint: 3E69 014E 5C23 50E8 9ED6 2AAD CC1E 9E5B

Bug#780719: unblock: flightgear/3.0.0-5

2015-03-18 Thread Rebecca N. Palmer
On 18/03/15 21:32, Markus Wanner wrote: On 03/18/2015 09:09 PM, Adam D. Barratt wrote: ++write_allowed_paths.push_back("/tmp/*.xml"); Is that really intended? (Both the hardcoding of /tmp/ rather than using something respecting TMPDIR and being allowed to write any ".xml" there.) It certa

Bug#429606: must ~/.mailcap be a plain file with only one link?

2015-03-18 Thread Thomas Dickey
On Tue, Mar 17, 2015 at 05:03:27PM +0100, Denis Briand wrote: > tags 429606 moreinfo > severity 429606 minor > thanks > > > Hello, > Is this issue fixed on 2.8.9dev4 version? > regards Well - note my response pointing out that the issue with symbolic links was by design. There was no followup f

Bug#746967: buildd.debian.org: d-i daily builds happen with unsigned code from alioth

2015-03-18 Thread Aurelien Jarno
On 2014-12-28 13:34, Philipp Kern wrote: > On Thu, Sep 11, 2014 at 10:49:06PM +0200, Aurelien Jarno wrote: > > If we choose this solution, here is a quick and dirty patch against > > di-autobuild to do that. It's basically changing the hardcoded paths > > and call to schroot. There is probably more

Bug#750863: Please include package contents information

2015-03-18 Thread josh
On Wed, Mar 18, 2015 at 10:28:46PM +0100, Lucas Nussbaum wrote: > On 18/03/15 at 13:21 -0700, j...@joshtriplett.org wrote: > > On Wed, Mar 18, 2015 at 08:14:20PM +0100, Ralf Treinen wrote: > > > On Wed, Mar 18, 2015 at 10:59:35AM -0700, j...@joshtriplett.org wrote: > > > > And I'd like to search fo

Bug#780733: fai-client: SSH login on installing client not possible as devpts is not mounted

2015-03-18 Thread John Paul Adrian Glaubitz
On 03/18/2015 10:57 PM, Thomas Lange wrote: > Yes, you are right. The code is wrong. I will fix this. Thank you! > But this is not an important bug, only a normal one. Sure, feel free to downgrade it. I usually just want to keep from people shooting themselves into the foot which is why I though

Bug#761815: fixed in partman-target 94

2015-03-18 Thread Cyril Brulebois
Hi, Christian Perrier (2015-01-26): > partman-target (94) unstable; urgency=medium > . >[ Steve McIntyre ] >* Don't add entries for random USB media to /etc/fstab, they're not > useful. Closes: #761815 I'd like to know how that was tested. Using libvirt, importing mini.iso as a US

Bug#780733: fai-client: SSH login on installing client not possible as devpts is not mounted

2015-03-18 Thread Thomas Lange
> On Wed, 18 Mar 2015 22:45:16 +0100, John Paul Adrian Glaubitz > said: > In any case, I'd still argue it's a bug simply because the condition for > the mount command for devpts is flawed. Why should devpts be mounted if > it's already mounted? That doesn't really make any se

Bug#780763: nut install won't complete because of service start check

2015-03-18 Thread Josh Stompro
Package: nut Version: 2.7.2-3 Severity: important Dear Maintainer, When installing nut, nut-server, nut-ipmi, nut-snmp I get the following errors. The problem seems to be that there is an install time check to see if the nut services start, but the servies are set to not start by default, unti

Bug#780733: fai-client: SSH login on installing client not possible as devpts is not mounted

2015-03-18 Thread John Paul Adrian Glaubitz
On 03/18/2015 10:42 PM, Thomas Lange wrote: > root@xfcehost:~# mount|grep pts > devpts on /dev/pts type devpts > (rw,nosuid,noexec,relatime,mode=600,ptmxmode=000) > devpts on /target/dev/pts type devpts (rw,relatime,mode=600,ptmxmode=000) This is how it worked on Wheezy, yes. > Are you using dra

Bug#780733: fai-client: SSH login on installing client not possible as devpts is not mounted

2015-03-18 Thread Thomas Lange
> On Wed, 18 Mar 2015 17:07:27 +0100, John Paul Adrian Glaubitz > said: > Logging into the system while it is being installed. I cannot confirm this bug. Using jessie inside the NFSROOT and fai 4.3.2 and dracut 040+1-1 and doing a PXE boot of the install client I managed to log in v

Bug#780719: unblock: flightgear/3.0.0-5

2015-03-18 Thread Markus Wanner
On 03/18/2015 09:09 PM, Adam D. Barratt wrote: > Well, not really. A debdiff from which you'd filtered the patch was > attached, as was the patch. I'm not convinced that actually provided any > benefit over simply providing the unfiltered debdiff. I personally always have trouble reading nested di

Bug#780762: unblock: debsums/2.0.53

2015-03-18 Thread Axel Beckert
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package debsums/2.0.53 Release 2.0.53 of debsums fixes https://bugs.debian.org/773136 which has been upped to RC recently and Niels has acked that I should go on with a fix o

Bug#750863: Please include package contents information

2015-03-18 Thread Lucas Nussbaum
On 18/03/15 at 13:21 -0700, j...@joshtriplett.org wrote: > On Wed, Mar 18, 2015 at 08:14:20PM +0100, Ralf Treinen wrote: > > On Wed, Mar 18, 2015 at 10:59:35AM -0700, j...@joshtriplett.org wrote: > > > And I'd like to search for things like filename conflicts and compare > > > them to package metad

Bug#780102: libjbcrypt-java: CVE-2015-0886

2015-03-18 Thread Moritz Mühlenhoff
On Mon, Mar 09, 2015 at 03:00:27PM +0100, Emmanuel Bourg wrote: > Thank you for the report Moritz. > > According to the Bugzilla report the issue happens when BCrypt.gensalt() > is called with the value 31. jenkins is the only package using this > library and it calls this method with no parameter

Bug#780748: Invalid URL

2015-03-18 Thread Florian Bruhin
Hi, I just had to update the upstream fix as I accidentally made a mistake which means it didn't compile. Please ignore the "raw patch" link above, and instead use the codereview link[1] which links to the newest version. Sorry for the inconveniences! [1] https://codereview.qt-project.org/#/c/1

Bug#780680: libpam-modules: pam_userdb.so depends on a library in /usr

2015-03-18 Thread Steve Langasek
Control: reassign -1 libdb5.3 On Wed, Mar 18, 2015 at 08:58:50PM +0100, Ansgar Burchardt wrote: > severity 780680 normal > thanks > Adam Heath writes: > > A library in /lib shouldn't depend on a library in /usr/lib. However, > > pam_userdb.so has such an issue. > Arguably pam_userdb.so is not a

Bug#726062: update

2015-03-18 Thread Scott Howard
Hello, An update on this bug to add due support to the arduino package: the arduino sam support relies on CMSIS, which is not DFSG free (you are only allowed to use it with ARM development) SAM support will end up in non-free as a package arduino-hardware-sam, and will probably not land until afte

Bug#761963: security-tracker: consolidate vulnerable/fixed per release in overviews

2015-03-18 Thread Moritz Mühlenhoff
On Wed, Sep 17, 2014 at 09:10:39AM +, Thijs Kinkhorst wrote: > Package: security-tracker > Severity: wishlist > > Hi, > > In the overview per-package, the tracker currently shows for each CVE > name about seven columns: squeeze, squeeze-security, squeeze-lts, wheezy, > wheezy-security, jessi

Bug#743474: And another new upstream version is out...

2015-03-18 Thread Jens Reinsberger
Hello again, a few days ago upstream released 3.8.0. Any chance to package it? I even consider to help maintain it in the future if some mentoring is provided. Regards, Jens -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact

Bug#780706: arduino: Request for Arduino IDE 1.6.1 package

2015-03-18 Thread Scott Howard
On Wed, Mar 18, 2015 at 1:23 AM, Martin Stoufer wrote: > I am having a miserable time getting the current 1.5.2 unstable release to > patch properly > for 1.6.0 release on my Raspberry Pi (jessie/main). Is it all possible to get > this in the pipeline (and even skip 1.5.2 release?) Hello - the

Bug#780761: debbindiff fails noisily when run over perversely recursive input files

2015-03-18 Thread Daniel Kahn Gillmor
Package: debbindiff Version: 9 Severity: wishlist I'm attaching two ugly fake little .debs that look roughly the same from the outside. they each ship only one file in data.tar.gz, which is r.zip. in both cases, r.zip is a nasty file that unpacks to show another file, r.zip, which happens to be

Bug#780284: nss-pam-ldapd: Descriptions do not explain why to use this over lib{pam, nss}-ldap

2015-03-18 Thread Arthur de Jong
Control: tags -1 + help On Wed, 2015-03-11 at 12:23 -0400, Samuel Bronson wrote: > The descriptions of your binary packages do not describe the key > advantage that your modules provide over the "reference" > implementation, which is summarized by one of your users thus: > > libnss-ldapd is a f

Bug#780760: Filter "due.before" with relative dates stopped working

2015-03-18 Thread Yuri D'Elia
Package: taskwarrior Version: 2.4.1+dfsg-3 Severity: normal Starting with taskwarrior 2.4, the filter "due.before" doesn't seem to work correctly with relative dates anymore. $ task add due:7d test Created task 1. $ task list due.before:7d No matches. $ task list ID Age D DueDescription

Bug#780759: ldd.fakechroot : wrong path of the elf loader

2015-03-18 Thread jhcha54008
Package: fakechroot Version: 2.17.2-1 Tags: patch Dear maintainer, It seems that ldd.fakechroot outputs a wrong path of the elf loader on alpha, i.e. /lib64/ld-linux.so.2 instead of the correct path /lib/ld-linux.so.2 : $ ldd minimal/root/bin/ls libselinux.so.1 => /lib/alpha-linux-gnu/l

Bug#780719: unblock: flightgear/3.0.0-5

2015-03-18 Thread Adam D. Barratt
Control: tags -1 + moreinfo On Wed, 2015-03-18 at 11:50 +0100, Markus Wanner wrote: > please unblock the package flightgear-3.0.0-5 as recently uploaded to > unstable. It fixes a security issue by disallowing nasal scripts to > access or modify files, see #780712. I kept the packaging changes as >

Bug#750863: Please include package contents information

2015-03-18 Thread josh
On Wed, Mar 18, 2015 at 08:14:20PM +0100, Ralf Treinen wrote: > On Wed, Mar 18, 2015 at 10:59:35AM -0700, j...@joshtriplett.org wrote: > > And I'd like to search for things like filename conflicts and compare > > them to package metadata; for instance, do packages that ship the same > > filename co

Bug#780170: Please, update compatibility.js symlink

2015-03-18 Thread Johannes Schauer
Hi David, Quoting David Prévot (2015-03-18 21:05:11) > > I’d like to get rid of the compatibility symlinks introduced in pdf.js > > 1.0.21+dfsg-1, and thus encourage you to change the > > /usr/share/pdf2htmlEX/compatibility.js symlink so it points to > > /usr/share/javascript/pdf/web/compatibility

Bug#542899: manpages for os-prober

2015-03-18 Thread Miguel Figueiredo
Hello all, in attachment proposal for manpages for os-prober based on it's documentation. Please review and improve. Feel free to use it. -- Melhores cumprimentos/Best regards, Miguel Figueiredo .\" Manpage for os-prober. .\" Contact debian-b...@lists.debian.org for improvements. .TH os-pro

Bug#780170: Please, update compatibility.js symlink

2015-03-18 Thread David Prévot
Control: affects -1 libjs-pdf Hi Johannes, On Mon, Mar 09, 2015 at 09:36:42PM -0400, David Prévot wrote: > Package: pdf2htmlex > I’d like to get rid of the compatibility symlinks introduced in pdf.js > 1.0.21+dfsg-1, and thus encourage you to change the > /usr/share/pdf2htmlEX/compatibility.js s

Bug#780758: pcmanfm: hangs while copying files

2015-03-18 Thread Timothy M Dowd
Package: pcmanfm Version: 1.2.3-1.1 Severity: normal Dear Maintainer, *** Reporter, please consider answering these questions, where appropriate *** * What led up to the situation? I was copying my home folder to an external hard drive that is windows formatted It would copy small amounts of

Bug#780680: libpam-modules: pam_userdb.so depends on a library in /usr

2015-03-18 Thread Ansgar Burchardt
severity 780680 normal thanks Hi, Adam Heath writes: > A library in /lib shouldn't depend on a library in /usr/lib. However, > pam_userdb.so has such an issue. Arguably pam_userdb.so is not a library, but a plugin. So I don't think this is a release critical bug or even a real bug at all, but I

Bug#780757: gnome-disk-utility: Cannot create encrypted Ext4 partition on removable flash drive

2015-03-18 Thread Svjatoslav Agejenko
Package: gnome-disk-utility Version: 3.12.1-1+b1 Severity: normal Dear Maintainer, Steps to reproduce the problem: 1. Insert flash drive 2. Start gnome disk utility 3. Using gnome disk utility unmount automounted partitions on inserted flash drive 4. Delete partitions on inserted flash drive 5.

Bug#780756: libzip: CVE-2015-2331: ZIP integer overflow

2015-03-18 Thread Salvatore Bonaccorso
Source: libzip Version: 0.11.2-1 Severity: grave Tags: security upstream Justification: user security hole Hi, the following vulnerability was published for libzip. CVE-2015-2331[0]: ZIP Integer Overflow The issue was originally reported to php5 for the embedded (modified) copy of libzip there,

Bug#780755: release-notes: please mention availability of the Debian Games Blend

2015-03-18 Thread Markus Koschany
Package: release-notes Severity: normal Tags: patch Hello, please consider to apply the attached patch to Jessie's release notes and mention the availability of the Debian Games Blend. https://tracker.debian.org/pkg/debian-games For the first time this blend allows gamers and game developers to

Bug#780754: ruby-rmagick: README.html is defective

2015-03-18 Thread Ian Bruce
Package: ruby-rmagick Version: 2.13.2-4+b1 Severity: normal There's clearly something wrong with the README.html documentation file for this package. See attached screenshot. -- System Information: Debian Release: 7.1 APT prefers testing APT policy: (990, 'testing'), (500, 'stable-updates')

Bug#780753: clementine: Remove me from Uploaders

2015-03-18 Thread Lisandro Damián Nicanor Pérez Meyer
Source: clementine Severity: wishlist Hi Thomas! I'm barely using clementine nowadays and I really didn't like upstream's attitude, so please remove me from Uploaders on the next upload. Thanks! -- System Information: Debian Release: 8.0 APT prefers unstable APT policy: (990, 'unstable'), (

Bug#780752: FTBFS related : Hang and Error

2015-03-18 Thread Jeffrin Jose
Package: glib2.0 Version: 2.0-2.42.1 There seems to be two problems... 1. Hangup ---x--x--xx # Start of gdbus tests ok 1 /gdbus/message-serialize-basic PASS: gdbus-serialization 1 /gdbus/message-serialize-basic ok 2

Bug#780751: mono: CVE-2015-2318 CVE-2015-2319 CVE-2015-2320

2015-03-18 Thread Salvatore Bonaccorso
Source: mono Version: 3.2.8+dfsg-9 Severity: grave Tags: security upstream fixed-upstream the following vulnerabilities were published for mono. CVE-2015-2318[0]: SKIP-TLS issue CVE-2015-2319[1]: FREAK issue CVE-2015-2320[2]: Remove the client-side SSLv2 fallback If you fix the vulnerabilities

Bug#780749: glib: FTBFS related : Hang and Error

2015-03-18 Thread Jeffrin Jose
Package: glib2.0Version: 2.0-2.42.1 There seems to be two problems... 1. Hangup ---x--x--xx # Start of gdbus tests ok 1 /gdbus/message-serialize-basic PASS: gdbus-serialization 1 /gdbus/message-serialize-basic ok 2 /g

Bug#780750: vips should build depend on libgsf-1-dev

2015-03-18 Thread Jay Berkenbilt
Package: vips Version: 7.42.1-1 Severity: normal See https://github.com/lovell/sharp/pull/173#issuecomment-76177598 Github user lovell says: "I think libgsf-1-dev should be added as a mandatory dependency of lipvips-dev given libgsf-1-114 is a mandatory dependency of libvips38." -- To UNSUBSCR

Bug#771485: Processed: jessie

2015-03-18 Thread Holger Levsen
Hi, On Montag, 9. März 2015, Cyril Brulebois wrote: > Well, what happened in #757413 doesn't fill me with joy indeed. And > now the same happens with these bug reports a few hours after that… about #771617: I often setup LVM inside encrypted partitions on wheezy, so I was fairly sure this bug do

Bug#750863: Please include package contents information

2015-03-18 Thread Ralf Treinen
On Wed, Mar 18, 2015 at 10:59:35AM -0700, j...@joshtriplett.org wrote: > And I'd like to search for things like filename conflicts and compare > them to package metadata; for instance, do packages that ship the same > filename conflict or not, and do the versions of the conflict match the > versio

Bug#780748: libqt5webkit5: QtWebKit logs visited URLs to WebpageIcons.db in private browsing mode

2015-03-18 Thread Florian Bruhin
Package: libqt5webkit5 Version: 5.3.2+dfsg-3 Severity: important Tags: upstream patch security Dear Maintainer, I've just submitted a change[1] to QtWebKit upstream to prevent it recording visited URLs to its favicon database (WebpageIcons.db) while using private browsing mode. The change has be

Bug#780555: apt-cacher-ng: Use with Fedora Rawhide is problematic

2015-03-18 Thread Eduard Bloch
Control: tags 780555 +upstream Hallo, * Carlos Maddela [Mon, Mar 16 2015, 12:21:54PM]: > Using apt-cacher-ng to cache RPMs from Fedora Rawhide eventually results > in packages that cannot be verified, because it would seem that Fedora > allows them to be rebuilt without incrementing the version n

Bug#765379: gcc-4.7 should not ship with jessie

2015-03-18 Thread Stefan Bühler
Hi, this was a bad one; gcc-4.9-base from jessie breaks gcc-4.7-base from wheezy, so you had to update gcc-4.7-base to jessie/unstable for a stable/testing mix as soon as some package required gcc-4.9-base from testing. For now using gcc-4.7-base from unstable seems to work; wheezy/jessie mix is

Bug#778380: Progress on package update

2015-03-18 Thread Dr. Torge Szczepanek
Hi! I have already updated the package to the lastest release, which is working fine in production on Jessie (not based on git-buildpackage until now). I am also willing to help out on the package, since we will need this in production. Ilya is there any progress on your side? I would also like

Bug#765577: netboot install writes duplicates to 70-persistent-net.rules

2015-03-18 Thread Michael Biebl
Am 18.03.2015 um 18:52 schrieb Michael Biebl: > Am 18.03.2015 um 18:15 schrieb Faidon Liambotis: >> Another less arbitrary/racy workaround I suggesed was a grep near the >> top of write_net_rules' write_rule() function. Since write_rule() >> operates under a lock, this would completely eliminate a

Bug#780591: ltsp-client-builder fails when installing Debian Edu combined server in virtualbox environment

2015-03-18 Thread Wolfgang Schweer
On Tue, Mar 17, 2015 at 10:00:08PM +0100, Wolfgang Schweer wrote: > On Tue, Mar 17, 2015 at 07:25:11PM +0100, Petter Reinholdtsen wrote: > > > > > if [ "$USE_CDROM" != "false" ] && [ ! -f /target/media/cdrom/.disk/info > > > ]; then > > > chroot /target mount /media/cdrom > > > log "mount

Bug#765577: (no subject)

2015-03-18 Thread Faidon Liambotis
On Wed, Mar 18, 2015 at 06:52:14PM +0100, Michael Biebl wrote: > I'm with Marco here. Before adding any workarounds, we need to > understand what the underlying problem is. Otherwise we are adding cruft > which nobody understands anymore a few years from now. > > Since I can't reproduce the issue

Bug#773097: mate-notification-daemon: this is still an issue with the latest 1.8.2-1 re; eased to experimental.

2015-03-18 Thread Alessandro Barbieri
On Tue, 17 Mar 2015 00:54:17 +0530 =?UTF-8?B?c2hpcmlzaCDgpLbgpL/gpLDgpYDgpLc=?= wrote: > > Is it possible that you are actually seeing notifications from another > > notification-daemon provider, e.g., notify-osd (XFCE), > > notification-daemon (GNOMEv3), etc.? > > > > Check output of ps aux |

Bug#780675: systemd: segfault in systemd when running systemctl daemon-reload

2015-03-18 Thread Michael Biebl
Am 18.03.2015 um 16:29 schrieb Robert Pumphrey: > #!/bin/bash > ### BEGIN INIT INFO > # Provides: iptables > # Required-Start:$network $remote_fs $syslog > # Required-Stop: $network $remote_fs $syslog > # Should-Start: iptables > # Default-Start: 2 3 4 5 > # Default-Stop:

Bug#780746: libreoffice-impress: Need youtube resolutions and aspect ratios.

2015-03-18 Thread Paul Elliott
Package: libreoffice-impress Version: 1:4.3.3-2 Severity: wishlist Dear Maintainer, Slide show can be used to create youtube videos. To better support this functionality there should be an option to set slide show resolution, of the output window, to one of the prefered youtube resolutions and a

Bug#780747: reportbug: -o option is ignored on first run after fresh install

2015-03-18 Thread Brian Julin
Package: reportbug Version: 6.6.3 Severity: normal Dear Maintainer, To file a previous bug report I invoked: reportbug --email 'bju...@clarku.edu' -o cust/sensible.bug.txt The -o option was supposed to prevent the use of email by the reportbug tool and instead generate the file that I could em

Bug#780675: systemd: segfault in systemd when running systemctl daemon-reload

2015-03-18 Thread Michael Biebl
Control: fixed -1 219-4 Am 18.03.2015 um 18:00 schrieb Michael Biebl: > Thanks for sharing the contents of the file. I can confirm the crash and > we have enough information now to debug this issue properly. > Marking the bug accordingly. Can't reproduce the issue with the version from experiment

Bug#750863: Please include package contents information

2015-03-18 Thread josh
On Wed, Mar 18, 2015 at 06:36:02PM +0100, Lucas Nussbaum wrote: > On 07/06/14 at 11:10 -0700, Josh Triplett wrote: > > Package: qa.debian.org > > Severity: wishlist > > User: qa.debian@packages.debian.org > > > > It'd be quite handy to have package contents information in UDD. > > > > Columns

Bug#780745: root-system: FTBFS on mips64el - Explicitly required Kerberos5 dependencies not fulfilled

2015-03-18 Thread James Cowgill
Source: root-system Version: 5.34.19+dfsg-1.2 Severity: important Tags: patch Hi, root-system FTBFS on mips64el with the error: > Checking for krb5.h ... /usr/include > Checking for krb5.h redirect ... /usr/include/krb5/krb5.h > Checking for krb5_c_valid_cksumtype in krb5.h ... yes > Checking for

Bug#765577: (no subject)

2015-03-18 Thread Michael Biebl
Am 18.03.2015 um 18:15 schrieb Faidon Liambotis: > Another less arbitrary/racy workaround I suggesed was a grep near the > top of write_net_rules' write_rule() function. Since write_rule() > operates under a lock, this would completely eliminate any kind of race > here. I pitched this to Marco but

Bug#780744: miro: should Recommend: libavahi-compat-libdnssd1

2015-03-18 Thread Shawn Landden
Package: miro Version: 6.0-1 Severity: normal When starting miro without libavahi-compat-libdnssd1 installed it pops up a warning that it should be installed to maximize functionality. Thus there should be a recommendation on this library. -- System Information: Debian Release: 8.0 APT prefer

Bug#780633: f3: please include f3detect and f3fix

2015-03-18 Thread Michal Suchanek
Package: f3 Version: 5.0-1 Followup-For: Bug #780633 Hello, Attaching patch. I tested the experimental tools when built from the source locally but not the packaged version. Thanks -- System Information: Debian Release: 8.0 APT prefers testing APT policy: (910, 'testing'), (900, 'stable'),

Bug#750999: qa.debian.org: I would be usefull have a comment field in dmd

2015-03-18 Thread Lucas Nussbaum
On 15/07/14 at 11:12 +0200, Leo Iannacone wrote: > Try to go to a page with a TODO list, mine[0] for instance, and to run > the attached JS code in a browser console just to see what I mean... > > Obviously this code works only for localStorage, which means only the > user can see his own comments

Bug#780020: [UDD] bugs.cgi: YAML contains raw HTML and "ruby objects"

2015-03-18 Thread Lucas Nussbaum
Hi Niels, bugs.cgi started as a huge amount of spaghetti code, and is slightly become better. On 08/03/15 at 10:36 +0100, Niels Thykier wrote: > Package: qa.debian.org > Severity: minor > > Hi, > > The generated YAML contains raw HTML and Ruby specific objects, example > (from the query in [1])

Bug#750863: Please include package contents information

2015-03-18 Thread Lucas Nussbaum
On 07/06/14 at 11:10 -0700, Josh Triplett wrote: > Package: qa.debian.org > Severity: wishlist > User: qa.debian@packages.debian.org > > It'd be quite handy to have package contents information in UDD. > > Columns, in addition to a unique package ID foreign-keyed to the > packages table: > >

Bug#780241: mirror submission for debian.mirror.digitalpacific.com.au

2015-03-18 Thread Donald Norwood
Control: tag -1 +moreinfo Hi, Thank you for mirroring Debian. A quick question and comment for you to address please. Your trace directories indicate multiple upstream sources while you list only one, could you please clarify this? The archive should be listed as /debian/. On Wed, 11 Mar 2

Bug#780743: fitscut: Package description possibly missing a piece

2015-03-18 Thread Beatrice Torracca
Package: fitscut Severity: minor Hi, the first sentence of the package description currently reads: «fitscut is designed to FITS, PNG, and JPEG output types are supported.» and it is not very clear. Seeing the description of the tool on its web page[1] I strongly suspect that there is a piece mi

Bug#765577: (no subject)

2015-03-18 Thread Faidon Liambotis
severity 765577 serious thanks On Wed, Feb 25, 2015 at 03:24:08PM +, Filippo Giunchedi wrote: > FWIW we're running into the same bug with jessie installer, passing > 'debug' at boot apparently is enough to not trigger the race with good > success rate. Filippo and I both work for the Wikimedi

Bug#780742: sensible-utils: Please install .desktop files for editor and pager

2015-03-18 Thread Brian S. Julin
Package: sensible-utils Version: 0.0.9 Severity: wishlist It would be handy if sensible-editor and sensible-pager appeared as defined applications so that they might be used from "Open With" dialogues in file and web browsers for those times when you would prefer a terminal-based editor or pager b

Bug#779142: mirror submission for mirror.uta.edu.ec

2015-03-18 Thread Donald Norwood
Control: tag -1 +moreinfo Hi Ernesto, Your copy of the archive has not been updated since: 2015-Feb-24 18:02:31 Please correct the update cycle and report back when you can. On Tue, 24 Feb 2015 19:37:28 + "Ernesto Perez Estevez" wrote: > Package: mirrors > Severity: wishlist > > Submiss

Bug#780741: redland-bindings: please support python3

2015-03-18 Thread Diane Trout
Source: redland-bindings Severity: wishlist Tags: patch Dear Maintainer, It would be nice to have python3 compatible packages for librdf. There's only a few minor changes to the build process to build the library. Diane Trout -- System Information: Debian Release: 8.0 APT prefers stable-up

Bug#780728: systemd: fsck checks root partition and superblock is rewritten on every boot

2015-03-18 Thread Michael Biebl
Am 18.03.2015 um 17:51 schrieb Michael Biebl: > See the initramfs-tools changelog. Or specificially /usr/share/doc/initramfs-tools/NEWS.Debian.gz resp. http://anonscm.debian.org/cgit/kernel/initramfs-tools.git/tree/debian/NEWS#n1 -- Why is it that all of the instruments seeking intelligent life

Bug#780740: debian-edu-config: 099-mount-cdrom script should be removed to avoid possible conflicts with ltsp-client-builder.udeb

2015-03-18 Thread Wolfgang Schweer
Package: debian-edu-config Version: 1.817 Severity: important Tags: patch The script share/ltsp/plugins/ltsp-build-client/Debian-custom/099-mount-cdrom has been used to replace the related Debian/099-mount-cdrom from ltsp. This script has been removed in jessie, cdrom mounting ensured by ltsp-c

Bug#748223: UDD: DMD - "uscan returned an error" while fixed in PTS

2015-03-18 Thread Lucas Nussbaum
On 15/05/14 at 14:11 +0200, Leo Iannacone wrote: > Package: qa.debian.org > Severity: normal > > Dear Maintainer, > there is some problem with watch checks. > > It this dmd query: > > http://udd.debian.org/dmd/?email1=&email2=&email3=&packages=node-jsconfig+node-jsdom+node-postgres+pdf.js+rainbo

Bug#780675: systemd: segfault in systemd when running systemctl daemon-reload

2015-03-18 Thread Michael Biebl
Control: tags -1 = confirmed Control: severity -1 serious Am 18.03.2015 um 16:29 schrieb Robert Pumphrey: > 2. put the following into /etc/init.d/firewall > #!/bin/bash > ### BEGIN INIT INFO > # Provides: iptables > # Required-Start:$network $remote_fs $syslog > # Required-Stop:

Bug#748223: [ol...@debian.org: UDD's DEHS reimplementation, FTP upstreams and GPG signature checking]

2015-03-18 Thread Lucas Nussbaum
retitle 748223 UDD: uscan doesn't understand pgpsigurlmangle thanks On 20/05/14 at 07:47 +0200, Lucas Nussbaum wrote: > UDD's DEHS reimplementation seems to fail for two distinct usecases: FTP > connections that need active mode are failing (for instance a lot of the KDE > team watch files are fai

Bug#173851: lynx: asks me about cookie again when wanting to see source

2015-03-18 Thread Denis Briand
Yes I have tried with google. I hit "\" to see source and I hit "\" again to come back to the google main page. It works fine here, he doesn't ask me again about cookie. Is it the good way to reproduce it? regards Denis Briand signature.asc Description: Digital signature

Bug#779142: mirror submission for mirror.uta.edu.ec

2015-03-18 Thread Ernesto Pérez Estévez
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 On 18/03/15 11:05, Donald Norwood wrote: > Control: tag -1 +moreinfo > > > > Hi Ernesto, > > Your copy of the archive has not been updated since: 2015-Feb-24 > 18:02:31 > > Please correct the update cycle and report back when you can. hi we ha

  1   2   3   >