Bug#953614: buster-pu: package dojo/1.14.2+dfsg1-1+deb10u2

2020-03-10 Thread Xavier Guimard
Package: release.debian.org Severity: normal Tags: buster User: release.debian@packages.debian.org Usertags: pu Hi, 2 new vulnerabilities have been published for dojo: prototype pollutions. I imported the 2 upstream fixes here. Cheers, Xavier diff --git a/debian/changelog b/debian/changelog

Bug#953569:

2020-03-10 Thread Daniel Kahn Gillmor
On Wed 2020-03-11 03:50:00 +, Ben Hutchings wrote: > If some of the packages providing a virtual package are explicitly > installed, and some auto-installed, it could reasonably auto-remove the > latter group (though I don't think it does). But if all of them are > auto-installed, which will

Bug#953569:

2020-03-10 Thread Daniel Kahn Gillmor
On Tue 2020-03-10 22:23:18 -0600, Jason A. Donenfeld wrote: > https://data.zx2c4.com/wireguard-5.5.8-20a586ec4f5acf195f71caea55c5a33c574078cb69712da591467ffc08dd8b72.zip Thanks, Jason! > - A user is on stock Debian and runs `apt install wireguard`: only > wireguard-tools is pulled in. > - A user

Bug#953613: boinc-manager: boincmgr doesn't connect when the -n option is specified

2020-03-10 Thread Russell Coker
Package: boinc-manager Version: 7.16.5+dfsg-1 Severity: normal The command "boincmgr -g 31416 -n localhost -e /etc/boinc-client" used to connect to the server on localhost when it started, but now it doesn't do so. Version 7.16.5+dfsg-1exp1 also has this problem. -- System Information: Debian

Bug#953569:

2020-03-10 Thread Jason A. Donenfeld
On Tue, Mar 10, 2020 at 8:52 PM Ben Hutchings wrote: > > On Tue, 2020-03-10 at 17:02 -0600, Jason A. Donenfeld wrote: > > Please coordinate with me for doing this. Actually, if this sounds > > interesting to you, I'll backport it myself, along with the missing > > crypto/ bits, and send you a git

Bug#953612: pcmanfm windows stays in foreground after deleting a file

2020-03-10 Thread jfp
Package: pcmanfm Version: 1.3.1-1+b1 Severity: normal Tags: upstream Dear Maintainer, Issue is as follows: - delete a file in pcmanfm - switch to another program - other program windows get highlighted as current "focus" window but pcmanfm stays in the foregound. In fact pcmanfm stays in front

Bug#953569:

2020-03-10 Thread Ben Hutchings
On Tue, 2020-03-10 at 23:31 -0400, Daniel Kahn Gillmor wrote: > Thanks to Ben and Jason for following up here. > > On Wed 2020-03-11 02:52:43 +, Ben Hutchings wrote: > > We definitely can't add a Provides on "real" kernel packages, because > > this breaks auto-removal of old packages. > >

Bug#953569:

2020-03-10 Thread Daniel Kahn Gillmor
Thanks to Ben and Jason for following up here. On Wed 2020-03-11 02:52:43 +, Ben Hutchings wrote: > We definitely can't add a Provides on "real" kernel packages, because > this breaks auto-removal of old packages. I'm not sure i understand this. by "real" kernel packages i think you mean

Bug#924040: #924040 ITP: archivebox -- open source self-hosted web archive

2020-03-10 Thread Dmitry Smirnov
Dear colleagues, I mourn loss of Scrapbook and ArchiveBox appears to be a viable alternative. I've noticed this ITP but since there are no signs of initial packaging I took the liberty of making a first draft: https://salsa.debian.org/debian/archivebox Let's work together on it, shall we? I

Bug#953611: wesnoth-1.14-tools: needs Recommends: imagemagick

2020-03-10 Thread Trent W. Buck
Package: wesnoth-1.14-tools Version: 1:1.14.5-1 Severity: wishlist When I do this: /usr/share/games/wesnoth/1.14/data/tools/wesnoth_addon_manager --html tmp I get an initial prelude of normal stuff: Opening socket to add-ons.wesnoth.org:15014 for 1.14.x Connected as 42.

Bug#922724: Lots of security issues

2020-03-10 Thread Dmitry Smirnov
On Wednesday, 20 February 2019 8:28:26 AM AEDT Moritz Muehlenhoff wrote: > We should generally restrict the level of security support to something > sensible. A video surveillance systems is obviously something > that only should be exposed to trusted parties anyway, so I'd suggest > we treat

Bug#953569:

2020-03-10 Thread Ben Hutchings
On Tue, 2020-03-10 at 17:02 -0600, Jason A. Donenfeld wrote: > Please coordinate with me for doing this. Actually, if this sounds > interesting to you, I'll backport it myself, along with the missing > crypto/ bits, and send you a git bundle of patches for 5.5. > > In other words, just say "yes

Bug#823597: npm: If npm is updated with npm install npm -g, /usr/share/npm/npmrc is lost

2020-03-10 Thread Jonathan Rubenstein
Maybe the Debian npm package should disallow updating itself, many other Debian packages disable self-update functions of packages. Fixing this bug would be great, though. However it's done.

Bug#953610: spambayes: should this package be removed?

2020-03-10 Thread Sandro Tosi
Package: spambayes Severity: serious Hello, i believe spambayes should be removed from debian: * python2-only and upstream shows no progress in porting to python3 * low popcon * no reverse dependencies * blocks python2 removal effort in Debian. if i dont hear back within a week with a good

Bug#953609: bley: should this package be removed?

2020-03-10 Thread Sandro Tosi
Package: bley Severity: serious Hello, i believe bley should be removed from Debian: * python2-only * no reverse dependencies * extremely low popcon * 3 RC bugs already pending * last upstream release in 2014 (ok, upstream and DD coincide) if i dont hear back within a week with a good reason to

Bug#951387: Please accept https://salsa.debian.org/installer-team/console-setup/merge_requests/3

2020-03-10 Thread Nicholas D Steeves
Hi Adrian, John Paul Adrian Glaubitz writes: > On 3/9/20 10:33 PM, Nicholas D Steeves wrote: >>> Hi, why such simple patch isn't accepted - 3 weeks already passed... >>> >> >> Don't feel bad! Here's one I've been waiting three years for (tested >> with custom install media in a VM): >> >>

Bug#953608: nm.debian.org: Some data belonging to legacy processes is no longer shown on the site

2020-03-10 Thread Judit Foglszinger
Package: nm.debian.org Severity: minor Some data belonging to legacy processes is no longer shown on the site - Mailbox view (https://nm.debian.org/legacy/display-mail-archive/$PNR) doesn't show any mails - On the process page (https://nm.debian.org/legacy/process/$PNR) -- "Personal

Bug#953604: vile: Mismatched source format vs source version

2020-03-10 Thread Brendan O'Dea
On Wed, Mar 11, 2020 at 12:57:59AM +0100, Guillem Jover wrote: >From the historical data in snapshot.debian.org, this would appear as >the build was done with a missing orig so dpkg-source considered it a >native format? Thanks for the report, and the pointer to the possible cause. Indeed, this

Bug#953603: [Tts-project] Bug#953603: festlex-oald: Mismatched source format vs source version

2020-03-10 Thread Samuel Thibault
Control: tags -1 + pending Hello, Guillem Jover, le mer. 11 mars 2020 00:53:36 +0100, a ecrit: > From the historical data in snapshot.debian.org, this would appear as > the build was done with a missing orig so dpkg-source considered it a > native format? It seems that's what happened indeed.

Bug#953086: (no subject)

2020-03-10 Thread Matthew Smith
Exactly the same issue. Had to apt-get download the samba packages and --ignore-depends. -- Matt Smith

Bug#947990: Two gdcm bugs fixed in Git

2020-03-10 Thread peter green
... The following packages have unmet dependencies: python3-vtk7 : Depends: python3 (< 3.8) but 3.8.2-1 is to be installed Unable to resolve dependencies! Giving up... ... This was a result of the python 3.8 transition, vtk7 has now been rebuilt on most architectures (mips is still building)

Bug#953607: mgetty: Mismatched source format vs source version

2020-03-10 Thread Guillem Jover
Source: mgetty Version: 1.2.1-1 Severity: important User: debian-d...@lists.debian.org Usertags: dpkg-mismatch-source-vs-version-format Hi! This package uses a native source format, with a non-native version, which is rather confusing and subverts the semantics of both the source and version

Bug#953606: wmxres: Mismatched source format vs source version

2020-03-10 Thread Guillem Jover
Source: wmxres Version: 1.2-10.1 Severity: important User: debian-d...@lists.debian.org Usertags: dpkg-mismatch-source-vs-version-format Hi! This package uses a native source format, with a non-native version, which is rather confusing and subverts the semantics of both the source and version

Bug#953605: vmfs-tools: Mismatched source format vs source version

2020-03-10 Thread Guillem Jover
Source: vmfs-tools Version: 0.2.5-1 Severity: important User: debian-d...@lists.debian.org Usertags: dpkg-mismatch-source-vs-version-format Hi! This package uses a native source format, with a non-native version, which is rather confusing and subverts the semantics of both the source and version

Bug#953604: vile: Mismatched source format vs source version

2020-03-10 Thread Guillem Jover
Source: vile Version: 9.8t-3 Severity: important User: debian-d...@lists.debian.org Usertags: dpkg-mismatch-source-vs-version-format Hi! This package uses a native source format, with a non-native version, which is rather confusing and subverts the semantics of both the source and version

Bug#953603: festlex-oald: Mismatched source format vs source version

2020-03-10 Thread Guillem Jover
Source: festlex-oald Version: 2.4-2 Severity: important User: debian-d...@lists.debian.org Usertags: dpkg-mismatch-source-vs-version-format Hi! This package uses a native source format, with a non-native version, which is rather confusing and subverts the semantics of both the source and version

Bug#953602: sec: Mismatched source format vs source version

2020-03-10 Thread Guillem Jover
Source: sec Version: 2.8.2-1 Severity: important User: debian-d...@lists.debian.org Usertags: dpkg-mismatch-source-vs-version-format Hi! This package uses a native source format, with a non-native version, which is rather confusing and subverts the semantics of both the source and version

Bug#953601: mailsync: Mismatched source format vs source version

2020-03-10 Thread Guillem Jover
Source: mailsync Version: 5.2.2-3.1 Severity: important User: debian-d...@lists.debian.org Usertags: dpkg-mismatch-source-vs-version-format Hi! This package uses a native source format, with a non-native version, which is rather confusing and subverts the semantics of both the source and version

Bug#953600: hp-ppd: Mismatched source format vs source version

2020-03-10 Thread Guillem Jover
Source: hp-ppd Version: 0.9-0.3 Severity: important User: debian-d...@lists.debian.org Usertags: dpkg-mismatch-source-vs-version-format Hi! This package uses a native source format, with a non-native version, which is rather confusing and subverts the semantics of both the source and version

Bug#953599: aspell-cs: Mismatched source format vs source version

2020-03-10 Thread Guillem Jover
Source: aspell-cs Version: 0.51.0-1 Severity: important User: debian-d...@lists.debian.org Usertags: dpkg-mismatch-source-vs-version-format Hi! This package uses a native source format, with a non-native version, which is rather confusing and subverts the semantics of both the source and version

Bug#953598: focalinux: Mismatched source format vs source version

2020-03-10 Thread Guillem Jover
Source: focalinux Version: 2010-09-3 Severity: important User: debian-d...@lists.debian.org Usertags: dpkg-mismatch-source-vs-version-format Hi! This package uses a native source format, with a non-native version, which is rather confusing and subverts the semantics of both the source and

Bug#953561: mupdf: only displays first page of a PDF

2020-03-10 Thread Kan-Ru Chen
Hi, On Wed, Mar 11, 2020, at 1:18 AM, Thorsten Glaser wrote: > Package: mupdf > Version: 1.16.1+ds1-1 > Severity: grave > Justification: renders package unusable > > mupdf only displays the first page of any PDF now, despite > showing 1/2 in the title bar. > I can partially reproduce this on

Bug#953597: dpkg-cross: Mismatched source format vs source version

2020-03-10 Thread Guillem Jover
Source: dpkg-cross Version: 2.6.15-3 Severity: important User: debian-d...@lists.debian.org Usertags: dpkg-mismatch-source-vs-version-format Hi! This package uses a native source format, with a non-native version, which is rather confusing and subverts the semantics of both the source and

Bug#953596: dhcp-helper: Mismatched source format vs source version

2020-03-10 Thread Guillem Jover
Source: dhcp-helper Version: 1.2-1 Severity: important User: debian-d...@lists.debian.org Usertags: dpkg-mismatch-source-vs-version-format Hi! This package uses a native source format, with a non-native version, which is rather confusing and subverts the semantics of both the source and version

Bug#953588: debootstrap: fails for mirrors without translations

2020-03-10 Thread Johannes Schauer
Control: block 953592 by -1 On Tue, 10 Mar 2020 23:04:03 +0100 Johannes 'josch' Schauer wrote: > recent debootstrap fails silently if the given mirror does not contain > translations. this breaks the autopkgtest of mmdebstrap, thus adding the blocking bug. It seems that even creating an

Bug#953595: cramfsswap: Mismatched source format vs source version

2020-03-10 Thread Guillem Jover
Source: cramfsswap Version: 1.4.1-1.1 Severity: important Hi! This package uses a native source format, with a non-native version, which is rather confusing and subverts the semantics of both the source and version formats. This currently produces a lintian error, and with dpkg-dev 1.20.1 it

Bug#952355: minlog: FTBFS: pdflatex error

2020-03-10 Thread Andreas Beckmann
Control: tag -1 unreproducible Control: close -1 On Sun, 23 Feb 2020 14:48:21 +0100 Lucas Nussbaum wrote: > Source: minlog > Version: 4.0.99.20100221-6 > Usertags: ftbfs-20200222 ftbfs-bullseye > > pdflatex mpcref.tex >> /dev/null > > make[2]: *** [Makefile:19: mpcref.pdf] Error 1 I cannot

Bug#953594: debootstrap: not anymore possible to do stable debootstrap from snapshot.d.o

2020-03-10 Thread Johannes 'josch' Schauer
Package: debootstrap Version: 1.0.121 Severity: normal Hi, when I debootstrap a stable release from snapshot.d.o, the security mirror gets added to the sources.list and an upgrade is performed. There is no option to prevent this from happening. This means that I cannot anymore create a chroot of

Bug#899425: O: gkremldk -- mldonkey plugin for gkrellm2

2020-03-10 Thread Guillem Jover
Control: retitle -1 RM: gkremldk -- RoQA; dead upstream, unmaintained, bogus source format Control: reassign -1 ftp.debian.org Hi! I was about to NMU this package to fix its source format not matching its version format, then I noticed that upstream has just disappeared.

Bug#953569:

2020-03-10 Thread Jason A. Donenfeld
Please coordinate with me for doing this. Actually, if this sounds interesting to you, I'll backport it myself, along with the missing crypto/ bits, and send you a git bundle of patches for 5.5. In other words, just say "yes please", and I'll supply the rest. Then you can apply this to your tree

Bug#953593: debootstrap: --no-check-gpg and --keyring options not working with Debian stable chroots

2020-03-10 Thread Johannes 'josch' Schauer
Package: debootstrap Version: 1.0.121 Severity: normal Hi, the --keyring and --no-check-gpg options do not seem to be passed on to "apt-get update". When I try to debootstrap with these options I get in my debootstrap.log: Ign:1 http://127.0.0.1:8000/debian stable InRelease Hit:2

Bug#953523: ITP: filetype.py -- Small module to infer binary file types via signature

2020-03-10 Thread Eriberto
Em ter., 10 de mar. de 2020 às 17:52, Scott Kitterman escreveu: > > It's ok. Python policy only addresses binary package name. > > Scott K Ok, thanks!

Bug#953589: smartlist: Use salsa (and Vcs-* fields, and gbp, and DEP-14) for smartlist debian packaging

2020-03-10 Thread Santiago Vila
On Tue, Mar 10, 2020 at 06:21:34PM -0400, Daniel Kahn Gillmor wrote: > Package: src:smartlist > Version: 3.15-25 > Severity: wishlist > X-Debbugs-Cc: Santiago Vila , sanv...@debian.org > > Santiago, I see that you've been responsible for smartlist in debian, > and i noticed that the debian

Bug#644757: Removing ocaml-book?

2020-03-10 Thread Guillem Jover
Control: reassign -1 ftp.debian.org Control: retitle -1 RM: ocaml-book -- RoQA: unmaintained, partial, non-free, bogus source format On Sat, 2014-01-25 at 23:38:19 +0200, Adrian Bunk wrote: > since ocaml-book is: > - orphaned since 2011 and > - in non-free and > - a small subset of what a user

Bug#953592: mmdebstrap: autopkgtest fails

2020-03-10 Thread Johannes 'josch' Schauer
Package: mmdebstrap Version: 0.6.0-4 Severity: normal mmdebstrap compares its output to debootstrap in its autopkgtest. But currently, debootstrap fails to create a stable chroot for mirrors without translations enabled. This breaks the autopkgtest of mmdebstrap. -- System Information: Debian

Bug#953591: bash: colors should be enabled by default (force_color_prompt)

2020-03-10 Thread Cameron Tacklind
Package: bash Version: 5.0-4ubuntu1 Severity: minor Tags: a11y Dear Maintainer, It is now 2020 and colors on a terminal are generally very well supported. That colors are not enabled by default does not make sense to me. When a terminal does not support colors, I've rarely, if ever, had that

Bug#953590: libplacebo21: Upload to unstable, please

2020-03-10 Thread Sebastian Ramacher
Control: tags -1 + wontfix On 2020-03-10 23:39:42, Daniel Vacek wrote: > Package: libplacebo21 > Version: 1.21.0+dfsg1-1 > Severity: wishlist > > Latest version of mpv media player could use libplacebo >= 1.18 to enable > the Vulkan based video renderer. It would be nice to have this option as >

Bug#953554: Please permit Debian revisions with 1.0 native packages

2020-03-10 Thread Felix Lechner
Hi Ian, On Tue, Mar 10, 2020 at 7:51 AM Ian Jackson wrote: > > I am packaging a small program for which I am the upstream. It does > not make sense to use a complicated source format; 1.0 native is > perfect. I too would like to see versions decoupled from the native/non-native question, but I

Bug#953590: libplacebo21: Upload to unstable, please

2020-03-10 Thread Daniel Vacek
Package: libplacebo21 Version: 1.21.0+dfsg1-1 Severity: wishlist Latest version of mpv media player could use libplacebo >= 1.18 to enable the Vulkan based video renderer. It would be nice to have this option as an alternative to the OpenGL based one. I am not sure why libplacebo was not updated

Bug#953589: smartlist: Use salsa (and Vcs-* fields, and gbp, and DEP-14) for smartlist debian packaging

2020-03-10 Thread Daniel Kahn Gillmor
Package: src:smartlist Version: 3.15-25 Severity: wishlist X-Debbugs-Cc: Santiago Vila , sanv...@debian.org Santiago, I see that you've been responsible for smartlist in debian, and i noticed that the debian packaging for it it wasn't in any sort of VCS that i could find via the usual methods. I

Bug#951709: /boot should get a bigger share of disk in default installation

2020-03-10 Thread Julien Cristau
On Tue, Mar 10, 2020 at 09:50:07PM +0100, Holger Wansing wrote: > Hi, > > Ben Hutchings wrote: > > On Thu, 2020-02-20 at 18:50 +0530, Pirate Praveen wrote: > > > Package: debian-installer > > > Version: 20190702+deb10u3 > > > Severity: important > > > > > > With initrd around 60+ MBs, 236 MB

Bug#953588: debootstrap: fails for mirrors without translations

2020-03-10 Thread Johannes 'josch' Schauer
Package: debootstrap Version: 1.0.121 Severity: normal Hi, recent debootstrap fails silently if the given mirror does not contain translations. From debootstrap.log: Ign:1 http://127.0.0.1/debian stable InRelease Hit:2 http://127.0.0.1/debian stable Release Ign:4 http://127.0.0.1/debian

Bug#953389: [Pkg-zsh-devel] Processed: Fwd: [zsh:code] New commit [0d7f88] by Romain Porte

2020-03-10 Thread Daniel Shahaf
Debian Bug Tracking System wrote on Tue, 10 Mar 2020 15:48 +00:00: > Processing commands for cont...@bugs.debian.org: > > tag 953389 fixed-upstream > Bug #953389 [zsh-common] zsh-common: completion for dscverify is missing > Added tag(s) fixed-upstream. The upstream commit hash was recorded in

Bug#936629: gnukhata-core-engine: Python2 removal in sid/bullseye

2020-03-10 Thread Moritz Mühlenhoff
On Fri, Aug 30, 2019 at 07:19:09AM +, Matthias Klose wrote: > Package: src:gnukhata-core-engine > Version: 2.6.1-3 > Severity: normal > Tags: sid bullseye > User: debian-pyt...@lists.debian.org > Usertags: py2removal > > Python2 becomes end-of-live upstream, and Debian aims to remove >

Bug#936216: bley: Python2 removal in sid/bullseye

2020-03-10 Thread Moritz Mühlenhoff
On Fri, Aug 30, 2019 at 07:11:48AM +, Matthias Klose wrote: > Package: src:bley > Version: 2.0.0-2 > Severity: normal > Tags: sid bullseye > User: debian-pyt...@lists.debian.org > Usertags: py2removal > > Python2 becomes end-of-live upstream, and Debian aims to remove > Python2 from the

Bug#953586: RM: twextpy -- RoQA; Depends on Python 2

2020-03-10 Thread Moritz Muehlenhoff
Package: ftp.debian.org Severity: normal Please remove twextpy. It depends on Python 2. It's only reverse dependency (calendarserver) was recently removed. Cheers, Moritz

Bug#953587: dojo: CVE-2020-5259

2020-03-10 Thread Salvatore Bonaccorso
Source: dojo Version: 1.15.2+dfsg1-1 Severity: important Tags: security upstream Hi, The following vulnerability was published for dojo. CVE-2020-5259[0]: | In affected versions of dojox (NPM package), the jqMix method is | vulnerable to Prototype Pollution. Prototype Pollution refers to the |

Bug#953584: libsbml: FTBFS on mipsel

2020-03-10 Thread Ivo De Decker
package: src:libsbml version: 5.18.0+dfsg-1 severity: serious tags: ftbfs Hi, The latest upload of libsbml to unstable fails on mipsel: https://buildd.debian.org/status/package.php?p=libsbml Cheers, Ivo

Bug#953585: dojo: CVE-2020-5258

2020-03-10 Thread Salvatore Bonaccorso
Source: dojo Version: 1.15.2+dfsg1-1 Severity: important Tags: security upstream Hi, The following vulnerability was published for dojo. CVE-2020-5258[0]: | In affected versions of dojo (NPM package), the deepCopy method is | vulnerable to Prototype Pollution. Prototype Pollution refers to the

Bug#953583: gthumb: Please package new upstream version (3.9.1)

2020-03-10 Thread Boyuan Yang
Source: gthumb Severity: important Version: 3:3.8.0-2.1 X-Debbugs-CC: h...@debian.org Dear Debian gthumb maintainer, The upstream developer of gthumb has released a new version (v3.9.1). Please consider packaging it in Debian. -- Regards, Boyuan Yang signature.asc Description: This is a

Bug#953582: imap-dl: update documentation to be less about getmail

2020-03-10 Thread Daniel Kahn Gillmor
Package: mailscripts Version: 0.18-1 Severity: wishlist Control: tags -1 + patch X-debbugs-cc: Antoine Beaupré imap-dl's documentation was written from where i was coming from when i wrote imap-dl. Some new users have found it recently and wondered why they needed to refer to getmail

Bug#886870: ldapvi FTCBFS: uses the build architecture pkg-config

2020-03-10 Thread Sudip Mukherjee
I have tried to cross-build on arm64 with the attached patch but it fails with the error: Package glib-2.0 was not found in the pkg-config search path. Perhaps you should add the directory containing `glib-2.0.pc' to the PKG_CONFIG_PATH environment variable No package 'glib-2.0' found Package

Bug#953527: [apt] colour highlighted error/warn labels

2020-03-10 Thread jnqnfe
On Tue, 2020-03-10 at 21:10 +0100, Julian Andres Klode wrote: > Control: severity -1 wishlist > Control: tag -1 confirmed > > On Tue, Mar 10, 2020 at 06:13:28AM +, jnq...@gmail.com wrote: > > Package: src:apt > > Version: 2.0.0 > > > > Please add red/yellow colour highlighting to the 'E'/'W'

Bug#953554: Please permit Debian revisions with 1.0 native packages

2020-03-10 Thread Guillem Jover
Hi! [ I was pointed out to this bug, so chiming in. :) ] On Tue, 2020-03-10 at 14:47:12 +, Ian Jackson wrote: > Package: lintian > Version: 2.55.0 > I am packaging a small program for which I am the upstream. It does > not make sense to use a complicated source format; 1.0 native is >

Bug#953554: Please permit Debian revisions with 1.0 native packages

2020-03-10 Thread Chris Lamb
Mattia Rizzolo wrote: > In my opinion your statements here doesn't make any sense: using a > Debian revision when you are not relying on a single upstream tarball > (i.e., non-native) really is going against the implied meaning of a > Debian revision: something that is not supposed to change

Bug#947936: chrony: Does (still) not start properly on boot on buster

2020-03-10 Thread Vincent Blut
Control: tags -1 pending Santiago, Michael, does that changelog entry about this issue feels clear to you? https://salsa.debian.org/debian/chrony/-/blob/master/debian/changelog On 2020-01-02T13:38+0100, Santiago Vila wrote: Package: chrony Version: 3.4-4 Severity: important Dear

Bug#953581: manila: CVE-2020-9543: Unprivileged users can retrieve, use and manipulate share networks

2020-03-10 Thread Salvatore Bonaccorso
Source: manila Version: 1:9.0.0-3 Severity: important Tags: security upstream Forwarded: https://bugs.launchpad.net/manila/+bug/1861485 Control: found -1 1:7.0.0-1 Control: found -1 1:3.0.0-5 Hi, The following vulnerability was published for manila. CVE-2020-9543[0]: Unprivileged users can

Bug#953547: RFS: libusb3380/0.0.1+git20190125.c83d1e9-1 [ITP] -- USB3380 abstraction layer for libusb: development

2020-03-10 Thread Sepi Gair
Hello, Christoph, I fixed both issues. On Tue, 2020-03-10 at 17:44 +0100, Christoph Berg wrote: > Hi Sepi, > > there's a missing copyright attribution: > > ./cmake_modules/Findlibusb-1.0.cmake: > # Adapted from cmake-modules Google Code project > # > # Copyright (c) 2006 Andreas Schneider >

Bug#953523: ITP: filetype.py -- Small module to infer binary file types via signature

2020-03-10 Thread Scott Kitterman
It's ok. Python policy only addresses binary package name. Scott K

Bug#953580: Wishlist: pushing xorg-server into buster-backports repo

2020-03-10 Thread Luna Vermilion
Package: xorg-server Version: 2:1.20.7-4 Severity: wishlist Dear Developers, Noticing that the package xorg-server 2:1.20.7-3 has been in the testing repo for around a month. I wonder if it is possible to get it pushed into the buster-backports repo. To be more specific, the feature I am

Bug#951709: /boot should get a bigger share of disk in default installation

2020-03-10 Thread Holger Wansing
Hi, Ben Hutchings wrote: > On Thu, 2020-02-20 at 18:50 +0530, Pirate Praveen wrote: > > Package: debian-installer > > Version: 20190702+deb10u3 > > Severity: important > > > > With initrd around 60+ MBs, 236 MB /boot in a 300 GB hard disk can hold > > only 2 versions of the kernels at the same

Bug#953578: libarchive: CVE-2019-20509

2020-03-10 Thread Salvatore Bonaccorso
Source: libarchive Version: 3.4.0-1 Severity: important Tags: security upstream Forwarded: https://github.com/libarchive/libarchive/issues/1284 Hi, The following vulnerability was published for libarchive. CVE-2019-20509[0]: | archive_read_support_format_lha.c in libarchive before 3.4.1 does

Bug#953579: ITP: vir2-p2v -- Convert a physical machine to use KVM

2020-03-10 Thread Hilko Bengen
Package: wnpp Owner: Hilko Bengen Severity: wishlist * Package name: virt-p2v Version : 1.42.0 Upstream Author : Red Hat Inc. * URL or Web page : https://libguestfs.org/ * License : GPL2+ Description : Convert a physical machine to use KVM As of version 1.42.0,

Bug#953577: pam-geoip: Breaks Git over SSH with error message from libgeoip

2020-03-10 Thread Michael Fladischer
Source: pam-geoip Severity: normal -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Dear Maintainer, I installed libpam-geoip and use it with the GeoIp databases from the package geoip-database. This results in a nasty error message written to stdout: Invalid database type GeoIP Country

Bug#953576: dovecot: flaky arm64 autopkgtest: debian/tests/usage/00_setup exited with return code 75

2020-03-10 Thread Paul Gevers
Source: dovecot Version: 1:2.3.7.2-1 Severity: serious Tags: sid bullseye X-Debbugs-CC: debian...@lists.debian.org User: debian...@lists.debian.org Usertags: flaky Dear maintainer(s), With a recent upload of gcc-10 to unstable, the autopkgtest of dovecot failed on arm64 in testing when that

Bug#896463: autopkgtest-build-lxc times out waiting for network-online.target

2020-03-10 Thread Paul Gevers
Hi all, On 06-03-2020 12:35, wf...@niif.hu wrote: > On Mon, 2 Jul 2018 12:10:34 +0200 Paul Gevers wrote: >>> Maybe an alternate solution could be designed by installing a systemd >>> service in the guest to run the setup-testbed and customize scripts >>> without requiring these lxc-attach

Bug#953527: [apt] colour highlighted error/warn labels

2020-03-10 Thread Julian Andres Klode
Control: severity -1 wishlist Control: tag -1 confirmed On Tue, Mar 10, 2020 at 06:13:28AM +, jnq...@gmail.com wrote: > Package: src:apt > Version: 2.0.0 > > Please add red/yellow colour highlighting to the 'E'/'W' prefixex > respectively output for errors/warnings respectively. (UX

Bug#953575: dgit infrastructure issue (possible resource exhaustion)

2020-03-10 Thread peter green
Package: dgit Hi. I just ran into the following error: ['dgit', 'import-dsc', '/build/workingrepo/pool/main/g/gtk+3.0/gtk+3.0_3.24.14-1.dsc', '+workingbranch'] Dgit metadata in .dsc: specified git info (debian) dgit: import-dsc of .dsc with Dgit field, using git hash .dsc names distro

Bug#953574: ITP: python-pysol-cards -- Deal PySol FC Cards

2020-03-10 Thread Juhani Numminen
Package: wnpp Severity: wishlist Owner: Juhani Numminen * Package name: python-pysol-cards Version : 0.8.8 Upstream Author : Shlomi Fish * URL : https://github.com/shlomif/pysol_cards * License : Expat Programming Lang: Python Description : Deal PySol

Bug#951679: [gedit] sh syntax highlighting bug

2020-03-10 Thread jnqnfe
control: fixed 3.36.0-1 I no longer experience this with gedit 3.36 I reported it upstream earlier ([1]), which I've left open in case they want to still address the bug in gtksourceview 3.24, but no longer affects me as gedit 3.36 uses gtksourceview v4 which does not suffer from it (and has

Bug#953573: file-roller: Error when starting file-roller

2020-03-10 Thread Simon McVittie
On Tue, 10 Mar 2020 at 21:27:57 +0200, Andoru wrote: > > $ file-roller > > file-roller: symbol lookup error: file-roller: undefined symbol: > > archive_write_add_filter_zstd That symbol should be available since libarchive 3.3.3. Do you have a non-system copy of libarchive.so.13, perhaps in

Bug#953542: Cross-Check with arch linux version

2020-03-10 Thread Lukas F. Hartmann
So I downloaded a similar build, 73.0-1 for Arch Linux arm64 and replaced /usr/lib/firefox on my Debian sid installation with the respective contents of that build. And it works. So my guess is that it's something with the Debian build. The build I tried is "firefox-73.0-1-aarch64.pkg.tar.xz"

Bug#953551: apt: trouble with "singular" packages from experimental

2020-03-10 Thread Julian Andres Klode
On Tue, Mar 10, 2020 at 02:43:25PM +0100, Laurent Bonnaud wrote: > Package: apt > Version: 2.0.0 > Severity: normal > > > Dear Maintainer, > >* What led up to the situation? > > Those packages are installed on my system: > > ii libsingular4m1:amd64

Bug#953573: file-roller: Error when starting file-roller

2020-03-10 Thread Andoru
Package: file-roller Version: 3.36.0-1 For a week now I've been unable to start file-roller. There have been a few upgrades in the last few days, but this error persists. Here's what I get when I start file-roller from the terminal: > $ file-roller > file-roller: symbol lookup error:

Bug#953571: src:nspr: please package recent version 4.25

2020-03-10 Thread Carsten Schoenert
Package: src:nspr Severity: wishlist Hello Mike, could you please consider to package the most recent version 4.25 of NSPR? I'm working on the current beta versions for Thunderbird and this is requiring the most recent version of NSPR. Regards Carsten -- System Information: Debian Release:

Bug#953572: ditaa: should depend on default-jre-headless (not default-jre or default-jdk)

2020-03-10 Thread Jonas Smedegaard
Package: ditaa Version: 0.10+ds1-1.2 Severity: important -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 - From the long description, ditaa seems to not be tied to development nor X11. Please check if possible for this package to depend on default-jre-headless and not default-jre or

Bug#953570: gnupg2: Please make autopkgtests cross-test-friendly

2020-03-10 Thread Steve Langasek
Package: gnupg2 Version: 2.2.19-3 Severity: minor Tags: patch User: ubuntu-de...@lists.ubuntu.com Usertags: origin-ubuntu focal ubuntu-patch Dear maintainers, In Ubuntu, we are in the process of moving the i386 architecture to a compatibility-only layer on amd64, and therefore we are also moving

Bug#952359: strophejs: FTBFS: Error: ERROR: module path does not exist: /usr/lib/nodejs/almond/almond.js for module named: /usr/lib/nodejs/almond/almond.js. Path is relative to: /<>

2020-03-10 Thread Sunil Mohan Adapa
tag 952359 + patch thanks On Sun, 23 Feb 2020 14:58:00 +0100 Lucas Nussbaum wrote: > Source: strophejs > Version: 1.2.14+dfsg-4 > Severity: serious > Justification: FTBFS on amd64 > Tags: bullseye sid ftbfs > Usertags: ftbfs-20200222 ftbfs-bullseye > > Hi, > > During a rebuild of all packages

Bug#953522: reassign 953522 to firmware-realtek

2020-03-10 Thread Sven Joachim
Control: tags -1 + fixed-upstream On 2020-03-10 18:10 +, Ben Hutchings wrote: > reassign 953522 firmware-realtek > thanks For the record, the file has been added to firmware-linux.git in September[1]. I think upgrading firmware-nonfree to 20200122 would be rather useful. Cheers,

Bug#953558: binNMU: zita-dc1_0.3.3-1

2020-03-10 Thread Dennis Braun
summary 953559 nmu zita-dc1_0.3.3-1 . amd64 . unstable . -m "Rebuild on buildd" @Sebastian sorry, i misunderstood. signature.asc Description: OpenPGP digital signature

Bug#953559: nmu: zita-dpl1_0.3.3-1

2020-03-10 Thread Dennis Braun
summary 953559 nmu zita-dpl1_0.3.3-1 . amd64 . unstable . -m "Rebuild on buildd" signature.asc Description: OpenPGP digital signature

Bug#925162: NMU uploaded to delayed/10

2020-03-10 Thread Matthew Vernon
Hi, I've made an NMU with this change in, in the delayed/10 queue. I hope that's OK! I made the NMU with dgit; I attach the patch I used, and the automatic quilt-fettling that dgit did for me. Regards, Matthew >From 27699de4cc2e047cc3c396a3d42024788fd65654 Mon Sep 17 00:00:00 2001 From:

Bug#549233: docbook-to-man: Does not accept (some) (unicode) characters)

2020-03-10 Thread Agustin Martin
On Thu, Feb 27, 2020 at 03:48:44PM +0100, Agustin Martin wrote: > > I recently tried to play with linuxdoc and utf-8 documents and run into the > same problem, > > onsgmls: ... 01.precmdout:1559:71:E: non SGML character number 141 > > This time I was lucky and a web search pointed me to >

Bug#953569: linux: please cherry-pick wireguard patches from 5.6

2020-03-10 Thread Daniel Kahn Gillmor
Package: src:linux Severity: wishlist Control: affects -1 src:wireguard-linux-compat src:wireguard Hi Debian kernel folks-- Please cherry-pick the wireguard patches from Linux's 5.6 development branch into future debian builds of 5.5 (and 5.4?) builds of the Linux kernel. The Wireguard VPN

Bug#952970: mksh cannot handle non-BMP characters in \Uxxxxxxxx

2020-03-10 Thread Thorsten Glaser
severity 952970 wishlist tags 952970 upstream forwarded 952970 miros-mkshmirbsd.org close 952970 thanks >This isn’t a packaging bug, so I’ll probably close this, but we can >discuss this upstream. Closing as announced, but I’ve added it to the plans: http://www.mirbsd.org/mksh.htm#plans PS:

Bug#675008: bash: should handle /etc/bashrc.d (or similar) for non-login interactive shell

2020-03-10 Thread Laurent Bigonville
Le 10/03/20 à 18:37, Laurent Bigonville a écrit : The default experience for gnome-terminal users is not good as nothing is sourcing /etc/profile.d/vte-2.91.sh for non-login interactive shells, meaning that the CWD is not set properly when opening new windows or tabs. Actually the

Bug#675008: bash: should handle /etc/bashrc.d (or similar) for non-login interactive shell

2020-03-10 Thread Laurent Bigonville
Hello, Would anything eventually be done for this? The default experience for gnome-terminal users is not good as nothing is sourcing /etc/profile.d/vte-2.91.sh for non-login interactive shells, meaning that the CWD is not set properly when opening new windows or tabs. Being able to source

Bug#953564: RFS: pygresql/1:5.1.1-1 [QA] -- PostgreSQL module for Python3

2020-03-10 Thread Håvard Flaget Aasen
Package: sponsorship-requests Severity: normal Dear mentors, I am looking for a sponsor for my package "pygresql" * Package name: pygresql Version : 1:5.1.1-1 Upstream Author : PyGreSQL team * URL : https://www.pygresql.org/index.html * License :

Bug#952951: botan: Replace PKCS11 headers provided by OASIS

2020-03-10 Thread GCS
On Tue, Mar 10, 2020 at 1:27 PM Jack Lloyd wrote: > On Mon, Mar 02, 2020 at 10:09:32PM -0700, Sean Whitton wrote: > > > In short, OASIS Open is a DFSG compliant license or not? > > > > Thanks. It looks like the license which does not permit modification > > applies to the specification, so the

Bug#953568: alsa-lib FTFS in testing.

2020-03-10 Thread peter green
Package: alsa-lib Version: 1.2.2-2.1 Severity: serious Tags: bullseye, patch I just ran into the following build failure in raspbian bullseye, checking on reproducible builds confirmed that the failure is not raspbian specific.

  1   2   >