Bug#963180: automake-1.16 could NOT build with DEB_BUILD_PROFILE=stage1

2020-06-19 Thread Đoàn Trần Công Danh
Package: automake Version: 1.16.1-4 Step to procedure: $ export DEB_BUILD_PROFILE=stage1 $ # Below is none-complete, filled all no-profiles from $ # https://wiki.debian.org/BuildProfileSpec $ export DEB_BUILD_PROFILES=stage1,nodoc,nocheck,nobiarch $ dpkg-bu

Bug#963107: "Encrypted connection unavailable" when using pre-authenticated connection

2020-06-19 Thread Antonio Radici
On Fri, Jun 19, 2020 at 04:04:37PM -0700, Josh Triplett wrote: > On Thu, Jun 18, 2020 at 10:41:37PM -0700, Josh Triplett wrote: > > Package: mutt > > Version: 1.14.3-1 > > Severity: important > > > > "important" because it makes a previously working configuration > > unusable. > > > > The fix for

Bug#963107: "Encrypted connection unavailable" when using pre-authenticated connection

2020-06-19 Thread Antonio Radici
On Fri, Jun 19, 2020 at 04:04:37PM -0700, Josh Triplett wrote: > On Thu, Jun 18, 2020 at 10:41:37PM -0700, Josh Triplett wrote: > > Package: mutt > > Version: 1.14.3-1 > > Severity: important > > > > "important" because it makes a previously working configuration > > unusable. > > > > The fix for

Bug#963179: alpine: CVE-2020-14929

2020-06-19 Thread Salvatore Bonaccorso
Source: alpine Version: 2.22+dfsg1-1 Severity: important Tags: security upstream Control: found -1 2.21+dfsg1-1.1 Control: found -1 2.20+dfsg1-7 Hi, The following vulnerability was published for alpine. CVE-2020-14929[0]: | Alpine before 2.23 silently proceeds to use an insecure connection | aft

Bug#953537: xfsdump fails to install in /usr merged system.

2020-06-19 Thread Joseph Carter
On Fri, Jun 19, 2020, at 19:10, peter green wrote: > Putting the debian bug back in cc, previous mails are visible at > https://marc.info/?l=linux-xfs&m=159253950420613&w=2 > > On 19/06/2020 23:43, Dave Chinner wrote: > > > Isn't the configure script supposed to handle install locations? > > Bot

Bug#963178: /etc/cron.daily/calendar[5]: .: /etc/default/bsdmainutils: No such file or directory

2020-06-19 Thread Thorsten Glaser
Package: calendar Version: 12.1.1 Severity: normal I get the following mail from cron after installing the calendar package: /etc/cron.daily/calendar[5]: .: /etc/default/bsdmainutils: No such file or directory I never changed either calendar or bsdmainutils config files on this system (I instal

Bug#938584: sugar-calculate-activity: Python2 removal in sid/bullseye - reopen 938584

2020-06-19 Thread Sandro Tosi
Control: reopen -1 This bug was closed, but the package has still some dependencies towards Python2 packages, in details: (binary:sugar-calculate-activity)Recommends->python-matplotlib Re-opening, so that they can be taken care of.

Bug#937290: pillow: Python2 removal in sid/bullseye - reopen 937290

2020-06-19 Thread Sandro Tosi
Control: reopen -1 This bug was closed, but the package has still some dependencies towards Python2 packages, in details: (source:pillow)Build-Depends->python2 Re-opening, so that they can be taken care of.

Bug#938605: svgtune: Python2 removal in sid/bullseye - reopen 938605

2020-06-19 Thread Sandro Tosi
Control: reopen -1 This bug was closed, but the package has still some dependencies towards Python2 packages, in details: (binary:svgtune)Depends->python (binary:svgtune)Depends->python-lxml Re-opening, so that they can be taken care of.

Bug#963177: calendar: trying to overwrite '/etc/calendar/default', which is also in package bsdmainutils 12.1.1

2020-06-19 Thread Thorsten Glaser
Package: calendar Version: 12.1.1 Severity: serious Justification: does not install Selecting previously unselected package calendar. (Reading database ... 406194 files and directories currently installed.) Preparing to unpack .../calendar_12.1.1_x32.deb ... Unpacking calendar (12.1.1) ... dpkg: e

Bug#938027: [Python-modules-team] Bug#938027: python-pip: Python2 removal in sid/bullseye - reopen 938027

2020-06-19 Thread Scott Kitterman
On June 20, 2020 2:40:58 AM UTC, Sandro Tosi wrote: >Control: reopen -1 > >This bug was closed, but the package has still some dependencies >towards >Python2 packages, in details: > >(source:python-pip)Build-Depends->python-pkg-resources >(source:python-pip)Build-Depends->python-setuptools > >R

Bug#963175: chromium: Chromium crash on https://novnc.com/noVNC/vnc.html

2020-06-19 Thread John Wong
Package: chromium Version: 81.0.4044.92-1 Severity: normal Dear Maintainer, I noticed chromium crash on https://novnc.com/noVNC/vnc.html, after upgrade libavcodec58:amd64 to 7:4.3-2 libavformat58:amd64 to 7:4.3-2 libavutil56:amd64 to 7:4.3-2 Please help, thank you.

Bug#938249: python-virtualenv: Python2 removal in sid/bullseye - reopen 938249

2020-06-19 Thread Sandro Tosi
Control: reopen -1 This bug was closed, but the package has still some dependencies towards Python2 packages, in details: (source:python-virtualenv)Testsuite-Triggers->python-six (source:python-virtualenv)Testsuite-Triggers->python2 Re-opening, so that they can be taken care of.

Bug#938027: python-pip: Python2 removal in sid/bullseye - reopen 938027

2020-06-19 Thread Sandro Tosi
Control: reopen -1 This bug was closed, but the package has still some dependencies towards Python2 packages, in details: (source:python-pip)Build-Depends->python-pkg-resources (source:python-pip)Build-Depends->python-setuptools Re-opening, so that they can be taken care of.

Bug#938587: sugar-etoys-activity: Python2 removal in sid/bullseye - reopen 938587

2020-06-19 Thread Sandro Tosi
Control: reopen -1 This bug was closed, but the package has still some dependencies towards Python2 packages, in details: (binary:sugar-etoys-activity)Depends->python Re-opening, so that they can be taken care of.

Bug#937009: mercurial: Python2 removal in sid/bullseye - reopen 937009

2020-06-19 Thread Sandro Tosi
Control: reopen -1 This bug was closed, but the package has still some dependencies towards Python2 packages, in details: (source:mercurial)Build-Depends->python-all-dev (source:mercurial)Build-Depends->python-docutils (source:mercurial)Build-Depends->python-roman (source:mercurial)Testsuite-Trig

Bug#937166: nuitka: Python2 removal in sid/bullseye - reopen 937166

2020-06-19 Thread Sandro Tosi
Control: reopen -1 This bug was closed, but the package has still some dependencies towards Python2 packages, in details: (binary:nuitka)Depends->python-dev Re-opening, so that they can be taken care of.

Bug#953537: xfsdump fails to install in /usr merged system.

2020-06-19 Thread peter green
Putting the Debian bug back in cc, for earlier mails please see https://marc.info/?l=linux-xfs&m=159253950420613&w=2 Eric Sandeen wrote: How does debian fix this for xfsprogs? Doesn't the same issue exist? I'm not seeing any cases like xfsdump where a binary is located in /sbin but symlink

Bug#953537: xfsdump fails to install in /usr merged system.

2020-06-19 Thread peter green
Putting the debian bug back in cc, previous mails are visible at https://marc.info/?l=linux-xfs&m=159253950420613&w=2 On 19/06/2020 23:43, Dave Chinner wrote: Isn't the configure script supposed to handle install locations? Both xfsprogs and xfsdump have this in their include/builddefs.in: PK

Bug#963174: plasma-desktop: Missing desktop-file-utils dependency causes x-scheme-handler be ignored

2020-06-19 Thread Jose Angel Pastrana
Package: plasma-desktop Version: 4:5.17.5-3 Severity: minor Dear Maintainer, desktop-file-utils is needed for handling MimeType attribute in desktop files. This package generates /usr/share/applications/mimeinfo.cache file which is used by other applications as Firefox [1]. Steps to reproduce

Bug#962917: libatomic-ops: FTBFS in the testsuite on riscv64 due to missing -pthread

2020-06-19 Thread Ivan Maidanski
Please disregard my previous patch, and use the following one: https://github.com/ivmai/libatomic_ops/commit/f067c258d5df3dc364857c11718be4516ca73ea0.patch   Karsten, could you please test it?   Regards, Ivan

Bug#963118: mate-terminal: several issues and crashes with --window and --tab and --command

2020-06-19 Thread Norbert Preining
Hi Mike, > Urgh, these are nasty!!! Do you plan working on a patch (like last time)? Well, if time allows, yes ;-) Not sure though how fast. Liebe Grüße Norbert -- PREINING Norbert https://www.preining.info Accelia Inc. + IFMGA ProGuide + TU Wien + JAIST + TeX Live

Bug#963173: ITP: go-shadowsocks2 -- Next-generation Shadowsocks in Go

2020-06-19 Thread Guobang Bi
Package: wnpp Severity: wishlist Owner: Guobang Bi * Package name: go-shadowsocks2 Version : 0.1.0-1 Upstream Author : shadowsocks * URL : https://github.com/shadowsocks/go-shadowsocks2 * License : Apache-2.0 Programming Lang: Go Description : Next-gene

Bug#963172: ITP: golang-github-riobard-go-bloom -- Bloom filter in Go

2020-06-19 Thread Guobang Bi
Package: wnpp Severity: wishlist Owner: Guobang Bi * Package name: golang-github-riobard-go-bloom Version : 0.0~git20200213.218e170-1 Upstream Author : Rio * URL : https://github.com/riobard/go-bloom * License : TODO Programming Lang: Go Description : B

Bug#940165: speedtest-cli: Wrong upload speed

2020-06-19 Thread Antoine Beaupré
On 2020-02-21 15:56:53, Gregor Zattler wrote: > Dear Mantainer, > * carlos [2019-12-04; 19:32]: >> >> I have checked and the same python script >> /usr/lib/python3/dist-packages/speedtest.py >> that comes with the package gives the correct result if run with python2 >> instead of >> the defa

Bug#963171: ITP: golang-github-liamhaworth-go-tproxy -- Linux Transparent Proxy library for Golang

2020-06-19 Thread Guobang Bi
Package: wnpp Severity: wishlist Owner: Guobang Bi * Package name: golang-github-liamhaworth-go-tproxy Version : 0.0~git20190726.ef7efd7-1 Upstream Author : Liam Haworth * URL : https://github.com/LiamHaworth/go-tproxy * License : Expat Programming Lang: Go

Bug#963169: minor correction to my initial report

2020-06-19 Thread Howard Johnson
I wrote: 3) Furthermore, you can run `# /usr/sbin/dwww-find mysql` and you can see that the man page for the mysql COMMAND is actually contained in the html. More correctly: 3) Furthermore, you can run `# /usr/sbin/dwww-find mysql` and you can see that the *_a man page LINK for the mysql comman

Bug#963107: "Encrypted connection unavailable" when using pre-authenticated connection

2020-06-19 Thread Josh Triplett
On Thu, Jun 18, 2020 at 10:41:37PM -0700, Josh Triplett wrote: > Package: mutt > Version: 1.14.3-1 > Severity: important > > "important" because it makes a previously working configuration > unusable. > > The fix for CVE-2020-14093 makes it so that when using a > preauthenticated connection (usin

Bug#846296: ext4 checksum error

2020-06-19 Thread Ralph Katz
Package: e2fsprogs Version: 1.44.5-1+deb10u3 Followup-For: Bug #846296 Dear Maintainer, I have similar ext4 checksum errors as reported in this bug. Initially, my new computer had repeated hangs/crashes as reported and discussed here: Buster System hangs, requires hard reboot https://lists.debi

Bug#963170: Debian 10 Buster x64 - BlueZ: 5.50-1.2~deb10u1

2020-06-19 Thread pham...@bluewin.ch
Package: bluez Version: 5.50-1.2~deb10u1 Bug Description : Hello, I'm would like to use my new bluetooth headphones Sony WH-1000XM3 on Linux Debian 10 Buster. When I link it to my laptop everything works perfectly the first time. If I turn off this headset and I want to reuse it later, the conne

Bug#963169: dwww: `--package` should be `--program` in usage: to agree with manpage and actual function

2020-06-19 Thread Howard Johnson
Package: dwww Version: 1.13.5 Severity: normal Hi. I believe that the `usage:` message for dwww-find has an error. Here is how you observe and confirm this: 1) Run `$ man dwww-find` and observe that dwww-find only spells out a `--program` option, not a `--package` option. 2) Run `# /usr/sbin/

Bug#961681: Bug #961681: octave 5.2.0 and java child processes

2020-06-19 Thread Benjamin Moody
> - Why does the stack overflow when the JVM is loaded from Octave, and > not when the JVM is launched "normally"? (What is that worker > thread doing that would cause it to use any appreciable amount of > stack space?) > > - Why, on bullseye, is it unable to create the worker thread in the

Bug#963036: Wild guess to fix this bug

2020-06-19 Thread Sébastien Villemot
Dear Georges, Le jeudi 18 juin 2020 à 18:12 +0200, Georges Khaznadar a écrit : > Dear maintainer(s) of octave-symbolic, here is a wild guess, inspired by > a simple remark: > > 8< > $ python3 -c "import six; print(six.integer_types)" (,) > $ pyt

Bug#963130: [Pkg-xmpp-devel] Bug#963130: /show command could wait for enter before sending

2020-06-19 Thread Martin
On 2020-06-19 20:12, Enrico Zini wrote: > Ah, thanks, that's very nice to hear! <3 Btw. gajim from experimental is mostly a pleasant experience, IMHO. My personal favourite is greatly improved multi-account handling.

Bug#932296: qa.debian.org: getwatch filling up /tmp

2020-06-19 Thread Lucas Nussbaum
On 17/06/20 at 12:09 +0200, Julien Cristau wrote: > On Wed, Jun 17, 2020 at 07:00:43 +0100, Adam D. Barratt wrote: > > > On Wed, 2020-06-17 at 00:14 +0200, Lucas Nussbaum wrote: > > > Apparently the condition where this happens is quite rare > > > occurences on 08/2019, 12/2019, 06/2020), so notif

Bug#963168: RM: desktopnova -- RoQA; Dead upstream, depends on Python 2, unmaintained

2020-06-19 Thread Moritz Muehlenhoff
Package: ftp.debian.org Severity: normal Please remove desktopnova. It's dead upstream (last commit in 2011), unmaintained (last maintainer upload in 2011), depends on outdated libs, is incompatible with Gnome 3 (and missed Buster already) and depends on Python 2. Cheers, Moritz

Bug#962950: RM: boost1.67 -- ROM; forc-removal, buggy, impossible to rebuild, should not be released

2020-06-19 Thread Moritz Mühlenhoff
On Tue, Jun 16, 2020 at 03:05:19PM +0100, Dimitri John Ledkov wrote: > Package: ftp.debian.org > Severity: normal > > boost1.67 is buggy, it cannot be rebuild against new icu abi, as that > would break dist-upgrades from stable->testing; it uses python2 which > must be removed; and it cannot be us

Bug#924290: [rfc] information about EFI partitions

2020-06-19 Thread Holger Wansing
Control: tags -1 + pending "McIntyre, Vincent (CASS, Marsfield)" wrote: > On Mon, Jun 01, 2020 at 02:34:40PM +1000, Vincent McIntyre wrote: > > > >Revised patch below. I'll test it on amd64 and let you know > >if it works. > > This has now been tested on a number of installs and works ok. > I t

Bug#961681: Bug #961681: octave 5.2.0 and java child processes

2020-06-19 Thread Benjamin Moody
It seems that a possible workaround is to set the property "jdk.lang.processReaperUseDefaultStackSize" to "true". If that property is "true", then the worker thread uses the "default" stack size, whatever that is; if not, then the worker thread uses a stack size of 128 * 1024. https://sources.deb

Bug#963166: golang-golang-x-tools: DEP8 failure: excluded modules in d/rules still needed

2020-06-19 Thread Andreas Hasenack
Package: golang-golang-x-tools: Version: 1:0.0~git20200410.79a7a31+ds-1 Severity: normal Dear Maintainer, I'm still troubleshooting this, but I think I have enough information already to open a bug. The DEP8 tests are failing at "go install" (dh_build) time with these errors: cannot find packag

Bug#962847: not emacs related

2020-06-19 Thread Rémi Letot
Hello, the problem is not emacs related: I just tried with swaks and it displays the exact same problem. Swaks session: hobbes@sphax:~$ swaks --to r...@lybrafox.be --from hob...@poukram.net --server localhost === Trying localhost:25... === Connected to localhost. <- 220 sphax.lybrafox.lan ESMT

Bug#963165: please don't install .gitkeep .git_keep and .travis.yml files

2020-06-19 Thread John Scott
Package: ansible Version: 2.9.9+dfsg-1 Severity: minor -BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, I was checking my system with chkrootkit and it warned me about some hidden files for having the Ansible package installed. It looks like these are only useful in the VCS, could they be dis

Bug#963081: src:camera.app: Please switch to using pkg-config for libgphoto2

2020-06-19 Thread wferi
Yavor Doganov writes: > wf...@niif.hu wrote: > >> Yavor Doganov writes: >> >>> Thanks; I'll fix this shortly -- the upload will depend on my sponsor >>> though. Meanwhile, feel free to upload libgphoto2 whenever you like >>> and raise the severity of this bug to serious. >> >> Did so, thanks.

Bug#963147: Easy fix

2020-06-19 Thread Hilko Bengen
* Hilko Bengen: > Good news: Upstream commit f6f5ec4cd5c3c3e38a3a1ae4e6ec249594ad159c > which fixes the underlying issue will fit onto both version 24 and 25 > without further porting. That should have been 02cf31c0e267a4c9a7656d43ad3ad4eeb37fc9c5. Specifically: commit 02cf31c0e267a4c9a7656d43

Bug#963164: ITP: pyrle: Run length arithmetic in Python using Cython

2020-06-19 Thread Nilesh Patra
Package: wnpp Severity: wishlist Owner: Nilesh Patra X-Debbugs-CC: debian-de...@lists.debian.org * Package name: pyrle Version : 0.0.31 Upstream Author : Endre Bakken Stovner * URL : https://github.com/pyranges/pyrle * License

Bug#963163: cura: please add python3-cryptography to Depends list

2020-06-19 Thread Matt Zagrabelny
Package: cura Version: 4.5.0-1 Severity: normal After installing cura and launching it via the command line, a python exception is raised about the "cryptography" module and no application is launched or running. After installing the python3-cryptography package and running cura from the command

Bug#963081: src:camera.app: Please switch to using pkg-config for libgphoto2

2020-06-19 Thread Yavor Doganov
wf...@niif.hu wrote: > Yavor Doganov writes: > > > Thanks; I'll fix this shortly -- the upload will depend on my sponsor > > though. Meanwhile, feel free to upload libgphoto2 whenever you like > > and raise the severity of this bug to serious. > > Did so, thanks. I'm willing to sponsor your up

Bug#959195:

2020-06-19 Thread Timo Tijhof
Tags: patch I have submitted a patch to resolve this request to Salsa: https://salsa.debian.org/apache-team/apache2/-/merge_requests/12 -- Timo Tijhof Wikimedia Foundation

Bug#963161: lynis: CVE-2019-13033

2020-06-19 Thread Salvatore Bonaccorso
Source: lynis Version: 2.7.5-1 Severity: important Tags: security upstream Control: found -1 2.6.2-1 Control: found -1 2.4.0-1 Hi, The following vulnerability was published for lynis. CVE-2019-13033[0]: | In CISOfy Lynis 2.x through 2.7.5, the license key can be obtained by | looking at the proc

Bug#963081: src:camera.app: Please switch to using pkg-config for libgphoto2

2020-06-19 Thread wferi
Control: severity -1 serious Yavor Doganov writes: > Thanks; I'll fix this shortly -- the upload will depend on my sponsor > though. Meanwhile, feel free to upload libgphoto2 whenever you like > and raise the severity of this bug to serious. Did so, thanks. I'm willing to sponsor your upload

Bug#963130: [Pkg-xmpp-devel] Bug#963130: /show command could wait for enter before sending

2020-06-19 Thread Enrico Zini
On Fri, Jun 19, 2020 at 07:46:45PM +0200, Martin wrote: > > Ideally I would like to be able to disable it. > > Upstream did exactly this in the 1.2 line. > In Gajim from debian/experimental you get: > > "Command disabled. This command can be enabled by setting > 'command_system_execute' to True

Bug#963160: ITP: intake -- lightweight package for finding and investigating data

2020-06-19 Thread Shayan Doust
Package: wnpp Severity: wishlist Subject: ITP: intake -- lightweight package for finding and investigating data Package: wnpp Owner: Shayan Doust Severity: wishlist * Package name: intake Version : 0.6.0 Upstream Author : Anaconda Inc., Intake contributors * URL : htt

Bug#963147: Easy fix

2020-06-19 Thread Hilko Bengen
control: tag -1 patch Good news: Upstream commit f6f5ec4cd5c3c3e38a3a1ae4e6ec249594ad159c which fixes the underlying issue will fit onto both version 24 and 25 without further porting. Cheers, -Hilko

Bug#963159: mbedtls: CVE-2020-10932

2020-06-19 Thread Salvatore Bonaccorso
Source: mbedtls Version: 2.16.5-1 Severity: important Tags: security upstream Hi, The following vulnerability was published for mbedtls. CVE-2020-10932[0]: | An issue was discovered in Arm Mbed TLS before 2.16.6 and 2.7.x before | 2.7.15. An attacker that can get precise enough side-channel | me

Bug#963158: re2c: CVE-2020-11958

2020-06-19 Thread Salvatore Bonaccorso
Source: re2c Version: 1.3-1 Severity: important Tags: security upstream Hi, The following vulnerability was published for re2c. CVE-2020-11958[0]: | re2c 1.3 has a heap-based buffer overflow in Scanner::fill in | parse/scanner.cc via a long lexeme. If you fix the vulnerability please also make

Bug#963157: enable listing source instead of binary packages

2020-06-19 Thread John Scott
Package: debsecan Version: 0.4.20.1 Severity: wishlist Hi, Binary packages are used because they're likely to be more familiar. I'm comfortable about thinking of things in terms of source packages and would appreciate an option to force this anyway, even if it were to not show installed binary pa

Bug#962773: libpcre2-dev: Linuxinfo fails to link: ./linuxinfo_common.c:224: undefined reference to `pcre2_compile_8'

2020-06-19 Thread Helge Kreutzmann
Hello Matthew, On Fri, Jun 19, 2020 at 05:08:56PM +0100, Matthew Vernon wrote: > [can you reproduce with a little test program? but I think this is a build > issue not a pcre2 one at the moment] The minimal program attached exhibits this behaviour as well. In stable: helge@samd:/tmp$ gcc -Duse_re

Bug#963156: /cdrom should be remounted rw before partman executes, when mapped to an ESP

2020-06-19 Thread Pete Batard
Package: partman-auto Severity: important Tags: d-i (NB: Resubmitting this bug, which was already submitted as https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=963150, against partman-auto since "partman" does not appear to exist as a valid Debian package) THE GOAL When installin

Bug#963130: [Pkg-xmpp-devel] Bug#963130: /show command could wait for enter before sending

2020-06-19 Thread Martin
On 2020-06-19 14:01, Enrico Zini wrote: > I just learnt of the /show command, which runs a shell command and posts > its output. It works exactly as intended. What could possibly go wrong? Ouch, I did not know about that command. Not a good idea at all. > Ideally I would like to be able to disabl

Bug#963155: libsquashfs1 - Wrong Section: kernel

2020-06-19 Thread Bastian Blank
Package: src:squashfs-tools-ng Version: 1.0.0-1 Severity: normal The source defines libsquashfs1 (I haven't checked older versions) with section kernel instead of the correct one libs. This can produce headaches, as release team tooling and others assign special behaviour to packages with libs as

Bug#963154: nmapsi4: Must not be arch:any

2020-06-19 Thread Joao Eriberto Mota Filho
Package: nmapsi4 Version: 0.5~alpha2-1 Severity: serious Tags: ftbfs patch Justification: fails to build from source (but built successfully in the past) Dear Maintainer, nmapsi4 fails to build from source in several architectures since 0.5~alpha2-1 revision. nmapsi4 build depends of qtwebengine

Bug#963153: ffmpeg breaks r-cran-av autopkgtest: error in 'avcodec_open2 (audio)': Invalid argument

2020-06-19 Thread Paul Gevers
Source: ffmpeg, r-cran-av Control: found -1 ffmpeg/7:4.3-2 Control: found -1 r-cran-av/0.5.0+dfsg-3 Severity: serious Tags: sid bullseye X-Debbugs-CC: debian...@lists.debian.org User: debian...@lists.debian.org Usertags: breaks needs-update Dear maintainer(s), With a recent upload of ffmpeg the a

Bug#963152: nss: CVE-2020-12402

2020-06-19 Thread Salvatore Bonaccorso
Source: nss Version: 2:3.53-1 Severity: important Tags: security upstream Hi, The following vulnerability was published for nss, fixed in 3.53.1. CVE-2020-12402[0]: | Side channel vulnerabilities during RSA key generation If you fix the vulnerability please also make sure to include the CVE (Co

Bug#963151: suboptimal libzstd usage due to different build/runtime versions

2020-06-19 Thread John Scott
Package: tor Version: 0.4.3.5-1 Severity: minor -BEGIN PGP SIGNED MESSAGE- Hash: SHA256 I was checking on Tor like this and it prints a warning: $ tor --verify-config --hush Jun 19 13:29:14.005 [warn] Tor was compiled with zstd 1.4.4, but is running with zstd 1.4.5. For safety, we'll avoi

Bug#963150: /cdrom should be remounted rw before partman executes, when mapped to an ESP

2020-06-19 Thread Pete Batard
Package: partman Severity: important Tags: d-i THE GOAL When installing Debian from the official netinst ISO in UEFI mode it may be very convenient to do so by: - Creating a large enough ESP (GPT or MBR) on the target installation disk (e.g. 350 MB) - Extracting the ISO content to sa

Bug#963112: Request for advice on katex rejected by ftp masters

2020-06-19 Thread Gunnar Wolf
Pirate Praveen dijo [Fri, Jun 19, 2020 at 12:47:51PM +0530]: > The general case was discussed earlier and a recommendation was given at > https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=934948#54 > > I'd like a confirmation from you if katex was following your > recommendations or not. I think

Bug#963039: [Pkg-javascript-devel] Bug#963039: node-iconv: versions of nodejs dependencies not properly documented

2020-06-19 Thread Paul Gevers
Hi Jérémy and Xavier, On 19/06/2020 13.33, Jérémy Lal wrote: > libnode68 and libnode72 can be co-installed. Sure. > /usr/bin/node is going to load the lib with the SONAME it's been built for. Of course, like any normal binary that is linked against a library in Debian. > So of course nodejs 12

Bug#963109: libreoffice: Please drop clang from build-dependencies for alpha and ia64

2020-06-19 Thread Rene Engelhard
Hi, Am 19.06.20 um 19:19 schrieb John Paul Adrian Glaubitz: > On 6/19/20 7:12 PM, Rene Engelhard wrote: >> Sorry, I don't believe I don't need to fix stuff here myself. ia64 and >> m68k even didn't yet do a ICU rebuild or at least make stuff being >> rebuildable. >> >>> Would it be okay if I send

Bug#963109: libreoffice: Please drop clang from build-dependencies for alpha and ia64

2020-06-19 Thread John Paul Adrian Glaubitz
On 6/19/20 7:12 PM, Rene Engelhard wrote: > Sorry, I don't believe I don't need to fix stuff here myself. ia64 and > m68k even didn't yet do a ICU rebuild or at least make stuff being > rebuildable. > >> Would it be okay if I send a pull request to make the necessary changes? > > I am perfectly a

Bug#963149: node-elliptic: CVE-2020-13822

2020-06-19 Thread Salvatore Bonaccorso
Source: node-elliptic Version: 6.5.1~dfsg-2 Severity: important Tags: security upstream Forwarded: https://github.com/indutny/elliptic/issues/226 Hi, The following vulnerability was published for node-elliptic. CVE-2020-13822[0]: | The Elliptic package 6.5.2 for Node.js allows ECDSA signature |

Bug#963109: libreoffice: Please drop clang from build-dependencies for alpha and ia64

2020-06-19 Thread Rene Engelhard
Am 19.06.20 um 17:46 schrieb John Paul Adrian Glaubitz: > On 6/19/20 1:08 PM, r...@rene-engelhard.de wrote: >> Am 19. Juni 2020 12:52:40 MESZ schrieb John Paul Adrian Glaubitz >> : >>> So nothing that keeps us from using GCC in cases where clang is not >>> available. >> >> Correct. Except stayi

Bug#963148: binutils-avr: avr-ld is broken on aarch64

2020-06-19 Thread Lukas F. Hartmann
Package: binutils-avr Version: 2.26.20160125+Atmel3.6.2-1 Severity: important Dear Maintainer, If I enter the following: avr-ld I get: Illegal instruction So I can't link avr programs on my aarch64 platform with Debian. If I build binutils-avr myself from the original sources, it works. --

Bug#963147: ngircd: CVE-2020-14148

2020-06-19 Thread Salvatore Bonaccorso
Source: ngircd Version: 25-3 Severity: important Tags: security upstream Control: found -1 25-2 Hi, The following vulnerability was published for ngircd. CVE-2020-14148[0]: | The Server-Server protocol implementation in ngIRCd before 26~rc2 | allows an out-of-bounds access, as demonstrated by th

Bug#962934: inkscape package contains a Debug build

2020-06-19 Thread besy
I wouldn't have expected active debugging asserts (i.e. a build without NDEBUG) in a release package. That's the reason why I created this general bug report. I'm affected by this crash: https://gitlab.com/inkscape/inbox/-/issues/2418 I also had further crashes but I don't know if asserts caused

Bug#963098: dwarfdump: dump .eh_frame fails on x86-64 elf

2020-06-19 Thread Fabian Wolff
Control: tags -1 + patch pending upstream confirmed fixed-upstream On 6/19/20 6:51 PM, David Anderson wrote: > I too reproduce the error. > > The relocation used was -not- one I was aware of. > This diff fixes the problem.  it should be on sourceforge > in a day or two.  I hope to create a new fu

Bug#922579: FTBFS against opencv 4.0.1 (exp)

2020-06-19 Thread Giovanni Mascellani
Control: block 962950 by -1 On Tue, 23 Apr 2019 14:13:22 + (GMT) Chiara Marmo wrote: > Hi, > > sorry, I'm a bit confused about this bug. > > This is a problem with opencv4 in experimental distribution, right? > Not with power pc architecture... No, the same thing definitely happens on amd6

Bug#963098: dwarfdump: dump .eh_frame fails on x86-64 elf

2020-06-19 Thread David Anderson
On 6/18/20 3:32 PM, Fabian Wolff wrote: Hi Nick, thanks for reporting this; indeed, I could reproduce the error, and llvm-dwarfdump doesn't produce a similar error (unsurprisingly, if the file was generated with LLVM in the first place). I'm hereby forwarding your report to libdwarf's upstream

Bug#963146: live-config: check for systemd is broken in /lib/live/config/0050-config

2020-06-19 Thread Stefan Baur
package: live-config version: 5.20190519 Hi, the file /lib/live/config/0050-config contains a check for systemd which happens to be broken: It checks for the presence of systemd with an "if which systemctl ..." statement. if which systemctl >/dev/null 2>/dev/null; then syste

Bug#936483: Possible fix

2020-06-19 Thread Giovanni Mascellani
Il 19/06/20 16:51, Giovanni Mascellani ha scritto: > Basically I am replacing PyInt_Check with PyLong_Check, under the > assumption that "long" is the new name of "int" in Python 3. This > assumptions is corroborated by PyGame having this line in > /usr/include/python3.8m/pygame/pgcompat.h: > >

Bug#960379: bitcoin: diff for NMU version 0.18.1~dfsg-1.1

2020-06-19 Thread Giovanni Mascellani
Control: tags 960379 + patch Control: tags 960379 + pending Dear maintainer, I've prepared an NMU for bitcoin (versioned as 0.18.1~dfsg-1.1) and uploaded it to DELAYED/02. Please feel free to tell me if I should delay it longer. Regards. -- Giovanni Mascellani Postdoc researcher - Université

Bug#963145: RFS: tstools/1.13~git20151030-4 -- set of tools for reporting on and manipulating MPEG data

2020-06-19 Thread Jpaulo
Package: sponsorship-requests Severity: normal Dear mentors, I am looking for a sponsor for my package "tstools" * Package name: tstools Version : 1.13~git20151030-4 Upstream Author : [fill in name and email of upstream] * URL : https://github.com/kynesim/tstools

Bug#963144: src:lcd4linux: Build-depends on libgphoto2, but does not use it

2020-06-19 Thread Ferenc Wágner
Package: src:lcd4linux Severity: minor Dear Maintainer, The lcd4linux package Build-Depends on libgphoto2-dev, but does not actually use it during the build. I don't even understand how it could, so I kindly ask you to consider dropping the dependency if possible. It would simplify checking the

Bug#963143: src:opencv: Build-depends on libgphoto2, but does not use it

2020-06-19 Thread Ferenc Wágner
Package: src:opencv Severity: minor Dear Maintainer, The opencv package Build-Depends on libgphoto2-dev, but does not actually use it during the build. Please either drop the dependency, or consider making use of it via a patch like diff -Nru opencv-4.2.0+dfsg/debian/rules opencv-4.2.0+dfsg/deb

Bug#873075: Package SCGI and SCGI::Request

2020-06-19 Thread Richard Hansen
I noticed that https://github.com/raoulbhatia/backuppc copies https://metacpan.org/pod/SCGI and https://metacpan.org/pod/SCGI::Request into the backuppc source code. I packaged those modules in a new libscgi-perl package so that they can be brought in as dependencies instead. I need a sponsor

Bug#962773: libpcre2-dev: Linuxinfo fails to link: ./linuxinfo_common.c:224: undefined reference to `pcre2_compile_8'

2020-06-19 Thread Matthew Vernon
On 16/06/2020 20:21, Helge Kreutzmann wrote: Hello Matthew, thanks for your reply. On Tue, Jun 16, 2020 at 07:24:29PM +0100, Matthew Vernon wrote: On 13/06/2020 20:44, Helge Kreutzmann wrote: gcc -g -O2 -fdebug-prefix-map=/tmp/testfoo2/linuxinfo-3.1.2=. -fstack-protector-strong -Wformat -Wer

Bug#963142: ITP: libstreamvbyte -- fast integer compression in C using the StreamVByte codec

2020-06-19 Thread Andreas Tille
Package: wnpp Severity: wishlist Subject: ITP: libstreamvbyte -- fast integer compression in C using the StreamVByte codec Package: wnpp Owner: Andreas Tille Severity: wishlist * Package name: libstreamvbyte Version : 0.4.1 Upstream Author : Daniel Lemire, Kendall Willets, Alexa

Bug#956190: dh-python's autopkg tests fail with python3.8 as the only supported python3 version

2020-06-19 Thread Olivier Tilloy
This is fixed with https://salsa.debian.org/python-team/tools/dh-python/-/commit/e289c25c861ae65ae9e7b52ebc09cf1f56061fa7, but that version hasn't been released yet.

Bug#963140: ITP: pytest-salt-factories -- PyTest plug-in for Salt daemons to be used in tests

2020-06-19 Thread Benjamin Drung
Am Freitag, den 19.06.2020, 17:38 +0200 schrieb Benjamin Drung: > Package: wnpp > Severity: wishlist > Owner: Benjamin Drung > > * Package name: pytest-salt-factories > Version : 0.10.7 > Upstream Author : SaltStack Team > * URL : > https://github.com/saltstack/pytest

Bug#936483: Possible fix

2020-06-19 Thread Giovanni Mascellani
Hi, the attached patch seems to fix the FTBFS with Python 3. I am not completely sure it is the right fix, though, meaning that the package compiles with my patch, but I am not sure the logic is correct. Basically I am replacing PyInt_Check with PyLong_Check, under the assumption that "long" is t

Bug#963108: perl: Please include minor patch to fix FTBFS on m68k

2020-06-19 Thread John Paul Adrian Glaubitz
On 6/19/20 8:37 AM, John Paul Adrian Glaubitz wrote: > On 6/19/20 8:22 AM, John Paul Adrian Glaubitz wrote: >> The attached patch fixes the problem by adding an additional 16 bits padding >> before the opslot member which causes the alignment of opslot to be 32 bits. > > Attaching a patch with a b

Bug#888705: abseil-cpp packaging

2020-06-19 Thread Benjamin Barenblat
On Sat, May 23, 2020 at 2:39 PM Benjamin Barenblat wrote: > This is now in the NEW queue. On Friday, June 19, 2020, at 8:07 AM +0200, László Böszörményi (GCS) wrote: > Not anymore and not in the archives. What happened? Can I help? ftp-master rejected the upload with concerns that changing the

Bug#963109: libreoffice: Please drop clang from build-dependencies for alpha and ia64

2020-06-19 Thread John Paul Adrian Glaubitz
On 6/19/20 1:08 PM, r...@rene-engelhard.de wrote: > Am 19. Juni 2020 12:52:40 MESZ schrieb John Paul Adrian Glaubitz > : >> So nothing that keeps us from using GCC in cases where clang is not >> available. > > Correct. Except staying as close as possible with upstream. While at the same time, th

Bug#963141: /usr/bin/dh_make: "MIT" license should be called Expat to be more specific

2020-06-19 Thread 魏銘廷
Package: dh-make Version: 2.202001 Severity: minor File: /usr/share/debhelper/dh_make/licenses/mit The license template file /usr/share/debhelper/dh_make/licenses/mit uses MIT to describe Expat license, however as described by copyright-format 1.0 specification (https://www.debian.org/doc/packagin

Bug#963140: ITP: pytest-salt-factories -- PyTest plug-in for Salt daemons to be used in tests

2020-06-19 Thread Benjamin Drung
Package: wnpp Severity: wishlist Owner: Benjamin Drung * Package name: pytest-salt-factories Version : 0.10.7 Upstream Author : SaltStack Team * URL : https://github.com/saltstack/pytest-salt-factories * License : Programming Lang: Python Description :

Bug#959386: php-imagick: diff for NMU version 3.4.4-4.1

2020-06-19 Thread Adrian Bunk
On Sun, Jun 14, 2020 at 10:58:58PM +0200, Ondřej Surý wrote: > Adrian, Hi Ondřej, > please do a direct upload to unstable and thanks for the fix. No need to wait > 15 days. thanks, rescheduled for immediate upload. cu Adrian

Bug#963081: src:camera.app: Please switch to using pkg-config for libgphoto2

2020-06-19 Thread Yavor Doganov
Ferenc Wágner wrote: > Package: src:camera.app > Version: 0.8.0-12 > Severity: normal > > I plan to upload libgphoto2 2.5.25 without the config scripts, > which upstream considers obsolete and hurt the multi-arch effort. > It's easy to switch to using pkg-config instead, see the attached > debdiff

Bug#962917: Re[2]: Bug#962917: libatomic-ops: FTBFS in the testsuite on riscv64 due to missing -pthread

2020-06-19 Thread Ivan Maidanski
At the same time, I checked clang for riscv (64-bit) without patch — it works, e.g.:   unsigned /**/ short AO_char_fetch_and_add( volatile   unsigned /**/ short  *addr,  unsigned /**/ short  incr) {    return  __atomic_fetch_add(addr, incr, __ATOMIC_RELEASE); }   ->   AO_char_fetch_and_add(unsig

Bug#963139: cacti: CVE-2020-14295

2020-06-19 Thread Salvatore Bonaccorso
Source: cacti Version: 1.2.12+ds1-1 Severity: important Tags: security upstream Forwarded: https://github.com/Cacti/cacti/issues/3622 Hi, The following vulnerability was published for cacti. There is no patch yet, but a proposed change mentioned in the upstream issue. CVE-2020-14295[0]: | A SQL

Bug#962847: exim4: takes forever to send a mail after sleeping

2020-06-19 Thread Adam D. Barratt
On Mon, 2020-06-15 at 18:01 +0200, Marc Haber wrote: > On Mon, Jun 15, 2020 at 01:56:18PM +0200, Rémi Letot wrote: > > My mail client and exim are both running on my laptop, and the > > provided logs are from that same laptop. > > > > The fault is the delay between exim accepting the message, and

Bug#962917: libatomic-ops: FTBFS in the testsuite on riscv64 due to missing -pthread

2020-06-19 Thread Ivan Maidanski
Hello Karsten,   Please test the attached patch. (I have not tested it on riscv)   Regards, Ivan     riscv64-fix-missing-byte-short-primitives.diff Description: Binary data

  1   2   >