Bug#747646: netcat-openbsd: UDP connections start with "XXXXX" junk

2022-06-20 Thread Thorsten Glaser
Package: netcat-openbsd Version: 1.217-3 Followup-For: Bug #747646 X-Debbugs-Cc: t...@mirbsd.de Control: severity -1 important This makes nc totally unusable for UDP. -- System Information: Debian Release: 11.3 APT prefers stable-updates APT policy: (500, 'stable-updates'), (500, 'stable-sec

Bug#1013294: git-buildpackage: improvement to doc to import NMUs

2022-06-20 Thread Guido Günther
Hi Sandro, On Tue, Jun 21, 2022 at 12:31:40AM -0400, Sandro Tosi wrote: > Package: git-buildpackage > Version: 0.9.22 > Severity: minor > X-Debbugs-Cc: mo...@debian.org > > Hello, > after reading [1] (thanks for that btw!) i was still unsure how to proceed > > [1] > https://honk.sigxcpu.org/proj

Bug#998739: python3.9: sysconfig should return /dist-packages as platlib

2022-06-20 Thread Julian Gilbey
On Tue, Jun 21, 2022 at 07:05:17AM +0100, Julian Gilbey wrote: > Here's a data point: > > $ python3.9 > Python 3.9.13 (main, Jun 8 2022, 09:45:57) > [GCC 11.3.0] on linux > Type "help", "copyright", "credits" or "license" for more information. > >>> import sysconfig > >>> sysconfig.get_path('p

Bug#1013300: openbsd-inetd: default services (echo, discard, chargen, {,day}time) not provided nor documented

2022-06-20 Thread Thorsten Glaser
Package: openbsd-inetd Version: 0.20160825-5 Severity: normal X-Debbugs-Cc: t...@mirbsd.de The /etc/inetd.conf file does not contain even commented-out lines for the standard services. I’m attaching mildly tested sample lines that ought to be present in the file when installing the package. It’d

Bug#1008045: bullseye-pu: package node-mermaid/8.7.0+ds+~cs27.17.17-3+deb11u1

2022-06-20 Thread Salvatore Bonaccorso
Hi Yadd, On Sat, May 28, 2022 at 09:20:40PM +0100, Adam D. Barratt wrote: > Control: tags -1 + confirmed > > On Mon, 2022-03-21 at 14:09 +0100, Yadd wrote: > > node-mermaid is vulnerable to XSS attack (CVE-2021-23648) > > > > Please go ahead. Could you fix as well CVE-2021-43861 in the next po

Bug#1004344: how to generate list of JS deps to package

2022-06-20 Thread Martin
On 2022-06-20 22:18, Robin Jarry wrote: > I ran the script on buildbot-build-common which is not a real > installable package, only a toolkit used by www plugins (it took more > than 2 hours). > > https://paste.sr.ht/~rjarry/2197906bc7f706e726dddfe3071a27b0a82c5f80 Thank you! I created a page with

Bug#1013299: linux-image-4.19.0-20-amd64: NULL pointer deref in qdisc_put() due to missing backport

2022-06-20 Thread Thorsten Glaser
Package: src:linux Version: 4.19.235-1 Severity: critical Tags: upstream Justification: breaks the whole system A recent upstream “stable” upgrade backported the removal of the qdisc_destroy() function (which, in itself, is questionable enough already and caused no small amount of fun) using qdisc

Bug#998739:

2022-06-20 Thread Julian Gilbey
On Mon, Apr 11, 2022 at 11:00:24PM +0300, Ievgen Popovych wrote: > [...] > I was just playing a bit more and it turns out that > `/usr/lib/python3.9/sysconfig.py` does not include changes from > `patches/sysconfig-debian-schemes.diff` at all! > I've verified I do have Debian Bullseye :), file is pr

Bug#1013298: O: flycheck -- modern on-the-fly syntax checking for Emacs

2022-06-20 Thread Denis Danilov
Package: wnpp Severity: normal Control: affects -1 src:flycheck I intend to orphan the flycheck package. The package description is: Flycheck uses various syntax checking and linting tools to automatically check the contents of buffers while the user types, and reports warnings and errors dire

Bug#1013297: ITP: geiser-mit -- MIT/GNU Scheme's implementation of the geiser protocols

2022-06-20 Thread Diane Trout
Package: wnpp Owner: Diane Trout Severity: wishlist * Package name: geiser-mit Version : 0.15 Upstream Author : Jose Antonio Ortega Ruiz * URL or Web page : https://geiser.nongnu.org/ https://gitlab.com/emacs-geiser/mit * License : BSD 3-Clause License

Bug#925473: Tomcat 9 requires Systemd

2022-06-20 Thread Thorsten Glaser
Patrik Schindler dixit: >What is your opinion about staying current with security updates for >this specifically crafted package? Not (that I can see) a security update, but I’ve updated it to match today’s (yesterday’s?) sid upload. The repository also has an RSS feed. bye, //mirabilos -- "

Bug#1013296: ITP: geiser-chibi -- chibi language support for elpa-gesier

2022-06-20 Thread Diane Trout
Package: wnpp Owner: Diane Trout Severity: wishlist * Package name: geiser-chibi Version : 0.17 Upstream Author : Jose Antonio Ortega Ruiz * URL or Web page : http://geiser.nongnu.org/ source https://gitlab.com/emacs-geiser/chibi * License : BSD-3-Clau

Bug#1012857: libpopplerkit0: Please update for Poppler 22.06

2022-06-20 Thread Yavor Doganov
On Wed, 15 Jun 2022 19:21:46 +0300, Nathan Pratta Teodosio wrote: > Package: libpopplerkit0 > Tags: patch > Since Poppler 22.06 made its way into experimental, Libpopplerkit0 > will need the compatibility changes present in the attached debdiff. Thanks for the patch. I am currently rather busy;

Bug#1013295: python3-stsci.distutils: post-installation script returned error when installing the package

2022-06-20 Thread Roy Clark (kralcyor)
Package: python3-stsci.distutils Version: 0.3.7-6 Severity: normal Dear Maintainer, The following errors happend when installing the python3-stsci.distutils package: $ sudo aptitude install python3-stsci.distutils The following NEW packages will be installed: python3-stsci.distutils 0 packa

Bug#1013294: git-buildpackage: improvement to doc to import NMUs

2022-06-20 Thread Sandro Tosi
Package: git-buildpackage Version: 0.9.22 Severity: minor X-Debbugs-Cc: mo...@debian.org Hello, after reading [1] (thanks for that btw!) i was still unsure how to proceed [1] https://honk.sigxcpu.org/projects/git-buildpackage/manual-html/gbp.special.nmus.html thru some trial and error i found t

Bug#1013292: ITP: git-of-theseus -- Analyze git repositories and create fancy plots

2022-06-20 Thread Evangelos Ribeiro Tzaras
Package: wnpp Severity: wishlist Owner: Evangelos Ribeiro Tzaras X-Debbugs-Cc: debian-de...@lists.debian.org * Package name: git-of-theseus Version : 0.2.0 Upstream Author : Erik Bernhardsson * URL : https://github.com/erikbern/git-of-theseus * License : Apach

Bug#1013291: gdbus monitor is not receiving signals

2022-06-20 Thread Daniel Leidert
Package: libglib2.0-bin Version: 2.72.2-2 Severity: normal -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Contrary to Bullseye, gdbus monitor does not report emitted signals in Sid. As an example. In tab 1 I run: gdbus monitor --session --dest=org.freedesktop.Notifications In tab 2 I run: gd

Bug#1007717: Ballot and call for votes

2022-06-20 Thread Sean Whitton
Hello, On Mon 20 Jun 2022 at 05:31PM -07, Sean Whitton wrote: > BEGIN BALLOT > > Using its powers under constitution 6.1.5, the Technical Committee > issues the following advice: > > 1. It is not a bug of any severity for a package with a non-native > version number to use a native source

Bug#1007717: Ballot and call for votes

2022-06-20 Thread Sean Whitton
Hello, I hereby call for votes on the following resolution: BEGIN BALLOT Using its powers under constitution 6.1.5, the Technical Committee issues the following advice: 1. It is not a bug of any severity for a package with a non-native version number to use a native source package format

Bug#1013180: Undelivered Mail Returned to Sender

2022-06-20 Thread Ben Hutchings
On Tue, 2022-06-21 at 02:08 +0200, Ben Hutchings wrote: > On Sat, 2022-06-18 at 17:43 +0200, Diederik de Haas wrote: > > On zaterdag 18 juni 2022 17:13:33 CEST you wrote: > > > I'm sorry to have to inform you that your message could not > > > be delivered to one or more recipients. It's attached be

Bug#1013180: Undelivered Mail Returned to Sender

2022-06-20 Thread Ben Hutchings
On Sat, 2022-06-18 at 17:43 +0200, Diederik de Haas wrote: > On zaterdag 18 juni 2022 17:13:33 CEST you wrote: > > I'm sorry to have to inform you that your message could not > > be delivered to one or more recipients. It's attached below. > > > > : host scaledteam.ru[81.30.221.145] said: 550 5.1.

Bug#1013249: virtio_ring: module verification failed: signature and/or required key missing - tainting kernel

2022-06-20 Thread Ben Hutchings
Control: severity -1 important Control: forcemerge -1 825141 Control: fixed -1 4.6.1-1 Control: found -1 5.4-1~exp1 On Mon, 2022-06-20 at 11:34 +0900, Ryutaroh Matsumoto wrote: > Package: src:linux > Version: 5.18.5-1 > Severity: normal > User: debian-ri...@lists.debian.org > Usertags: riscv64 > X

Bug#1007717: Updated draft resolution

2022-06-20 Thread Sean Whitton
Hello, On Fri 17 Jun 2022 at 02:45am +02, gregor herrmann wrote: > Well, yes, sure. > That would all be nice. > But issuing some advice about 1.0-with-or-without-dpatch or whatever > doesn't really change anything for them. Indeed, we have somewhat drifted off-topic :) > Oh, right, I totally ag

Bug#1012875: transmission-gtk: Issue when parsing hybrid BitTorrent v1 / v2 torrents

2022-06-20 Thread Sandro Tosi
> transmission has a known fixed when parsing hybrid v1/v2 torrent files that > is reported as > > Skipping unknown torrent:... > > This has been reported upstream at > https://github.com/transmission/transmission/issues/1813 > and is fixed in https://github.com/transmission/transmission/pull/1964

Bug#1013290: ITP: filespooler -- Sequential, Distributed, POSIX-Style Job Queues

2022-06-20 Thread John Goerzen
Package: wnpp Severity: wishlist Owner: John Goerzen X-Debbugs-Cc: debian-de...@lists.debian.org, debian-r...@lists.debian.org * Package name: filespooler Version : 1.2.1 Upstream Author : John Goerzen * URL : https://www.complete.org/filespooler/ * License :

Bug#1013283: info: "info" crashes with "aborted" message, in any attempt to run it.

2022-06-20 Thread Hilmar Preuße
Am 20.06.2022 um 18:28 teilte y mit: Hi, Reading symbols from info... (No debugging symbols found in info) [New LWP 23416] Core was generated by `info octave'. Program terminated with signal SIGABRT, Aborted. #0 __GI_raise (sig=sig@entry=6) at ../sysdeps/unix/sysv/linux/raise.c:49 49 ../s

Bug#1003496: Relinquish

2022-06-20 Thread Dave Steele
Control: noowner -1 I no longer intend to package this software.

Bug#1013289: ITP: glibmm2.68

2022-06-20 Thread Jeremy Bicha
Package: wnpp Severity: wishlist X-Debbugs-CC: debian-de...@lists.debian.org, debian-gtk-gn...@lists.debian.org Owner: jeremy.bi...@canonical.com Package Name: glibmm2.68 Version: 2.72.1 Upstream Author: The gtkmm & glibmm development teams License: LGPL-2.1+ Programming Lang: C++ Description: C+

Bug#1013288: gnupg: Doesn't show uid expiry

2022-06-20 Thread Uwe Kleine-König
Package: gnupg Version: 2.2.35-2 Severity: normal X-Debbugs-Cc: uklei...@debian.org Hello, uwe@taurus:~$ export GNUPGHOME=$(mktemp -d) uwe@taurus:~$ curl -s https://git.kernel.org/pub/scm/docs/kernel/pgpkeys.git/plain/keys/6637D326999B862C.asc | gpg --import gpg: keybox

Bug#1013287: [RFP] qml-module-quick3d -- QtQuick3D 5.15.3

2022-06-20 Thread Adrian Fiergolski
Package: wnpp Severity: RFP Ubuntu 22.04 LTS is missing QtQuick3D QML module for Qt5 (5.15.3 LTS) Regards, Adrian

Bug#1012878: marked as done (pyside2: autopkgtest regression)

2022-06-20 Thread Nicholas D Steeves
Hi Christian, After three NMUs, what do you think about adding yourself to Uploaders and making these changes directly? :) I'm part of the Qt/KDE Team, but don't maintain this package, and I've been importing your diffs with gbp import-dsc. Vcs-Git: https://salsa.debian.org/qt-kde-team/qt/pyside2

Bug#1011254: The UDEB package "localechooser" contains probably some buggy source code in "05localechooser" file

2022-06-20 Thread Philip Hands
Jmkr writes: > Sorry for the delay, I had to do some work and then forgot that I > planned to reply to this bug. No problem, these things happen -- anyway, your timing was great as I was just about to do something about this anyway. > > Philip Hands writes: > > ... > > > > Actually, given

Bug#1003456: marked as pending in lintian

2022-06-20 Thread Axel Beckert
Hi Ben, Ben Hutchings wrote: > > https://salsa.debian.org/lintian/lintian/-/commit/192e15ae2eda7535622d44d2f3f382783b110ee5 > [...] > > This didn't fix the issue. It is still reproducible by building linux > for amd64 and then running lintian over the resulting .changes file. > > Running lintia

Bug#1013286: Updating the pmccabe Uploaders list

2022-06-20 Thread Mattia Rizzolo
Source: pmccabe Version: 2.8-2 Severity: minor User: m...@qa.debian.org Usertags: mia-teammaint Paul Bame has retired, so can't work on the pmccabe package anymore (at least with this address). We are tracking their status in the MIA team and would like to ask you to remove them from the Uploade

Bug#1013285: needrestart: Failed to check for processor microcode upgrades.

2022-06-20 Thread Nick Lewycky
Package: needrestart Version: 3.6-1 Severity: normal `sudo needrestart -w` always prints "Failed to check for processor microcode upgrades." on my AMD Ryzen 9 3900X 12-Core Processor. I also don't have 'cpuid' in /dev/cpu/##/, but fixing that doesn't help. $ ls -l /dev/cpu/0/ total 0 crw--

Bug#970639: Zswap Disabled By Default

2022-06-20 Thread Ben Hutchings
Control: tag -1 wontfix On Tue, 06 Oct 2020 12:24:07 -0400 calumlikesapple...@gmail.com wrote: > I figured I should ping this, since I don't know that it was properly > shown to the debian-kernel mailing list. > > > Interestingly it still contains the following note in documentation: > > >   Zsw

Bug#1013268: chromium: Broken kerberos authentication

2022-06-20 Thread Santiago Garcia Mantinan
> > "AuthServerWhitelist": "*.internal.domain" > You need to replace "Whitelist" with "Allowlist", the names were changed in > Chromium 101. That was it, AuthServerAllowlist is what I needed. Thanks a lot for your quick reply, maybe we can close the bug, or maybe close it after adding a l

Bug#1013132: ITP: BabaSSL -- BabaSSL is a base library for modern cryptography and communication security protocols.

2022-06-20 Thread Marco d'Itri
On Jun 17, Lance Lin wrote: > - BabaSSL is a modern cryptographic and secure protocol library > developed by the amazing people in Alibaba Digital Economy. What is the plan? Are there any current or new packages which will depend on it? -- ciao, Marco signature.asc Description: PGP signature

Bug#1012362: transition: luajit

2022-06-20 Thread M. Zhou
Hi Paul, I did not file the corresponding bugs. According to our workflow, will I or the release team file those bugs? If it is me who should file those bugs, I think the default severity should be serious. When all related bugs are resolved by reverse dependencies, I plan to remove ppc64el arch

Bug#1013284: O: grub-customizer -- GUI to configure GRUB2 and BURG

2022-06-20 Thread Joao Eriberto Mota Filho
Package: wnpp Severity: normal Control: affects -1 src:grub-customizer I intend to orphan the grub-customizer package. The package description is: Grub Customizer is a graphical interface to configure GRUB2 and BURG. It can do changes for settings and menuentries easily. . Grub Customizer has

Bug#1004344: how to generate list of JS deps to package

2022-06-20 Thread Robin Jarry
Martin, Jun 20, 2022 at 15:49: > See https://wiki.debian.org/Javascript/Nodejs/Tasks/ > > The tool generates the source code for a wiki page, e.g. like this one: Hi, I ran the script on buildbot-build-common which is not a real installable package, only a toolkit used by www plugins (it took more

Bug#1011343: WISHLIST: Offical ALL-IN-ONE images?

2022-06-20 Thread Thomas Schmitt
Hi, Zhang Boyang wrote: > 2) Create my own version of my-DLBD1.iso and my-DLBD2.iso from my private > mirror. This explains why a firmware package was missing which is in the official DLBD-1 but obviously on your my-DLBD2. With the new script version which merges /firmware trees: > This time th

Bug#1003456: marked as pending in lintian

2022-06-20 Thread Ben Hutchings
Control: reopen -1 Control: found -1 2.115.0 On Fri, 2022-03-11 at 20:39 +, Felix Lechner wrote: > Control: tag -1 pending > > Hello, > > Bug #1003456 in lintian reported by you has been fixed in the > Git repository and is awaiting an upload. You can see the commit > message below and you c

Bug#1012362: transition: luajit

2022-06-20 Thread Paul Gevers
Hi Mo, On 13-06-2022 05:20, M. Zhou wrote: So let's inform the reverse dependencies to remove ppc64el support, or switch back to lua. Just curious, have you already done so? If yes, care to share the bug report numbers? Otherwise I assume you expected me to file those bugs? Paul elbrus@coc

Bug#1010576: akonadi cannot kill mysql due to apparmor rules

2022-06-20 Thread Hefee
Hi, the fix is already in master, it is actually just a typo in the profile name: https://invent.kde.org/pim/akonadi/-/commit/ a6fb4c7de13eed9d90237388113425413bf4d733 that may be worth to backport. > If I set akonadi's profile to complain instead of enforce, akonadi can > kill mysql ok: > > s

Bug#1006277: RFP: easyeffects -- Audio effects for PipeWire applications (formerly - pulseeffects)

2022-06-20 Thread Boyuan Yang
Hi, 在 2022-06-20星期一的 13:39 -0400,Jeremy Bicha写道: > Boyuan, > > Thanks for packaging libsigc++-3.0. Are you also planning on packaging > easyeffects for Debian? Are there any remaining blockers? No blockers when packaging upstream git HEAD, just in lack of time for a copyright review before the N

Bug#989720: No need for a fix

2022-06-20 Thread Antoine Beaupré
Control: unarchive 989720 Control: found 989720 2.15.0+ds1-2+deb11u1 On 2021-12-27 14:54:03, zigo wrote: > Hi, > > Using auto fixes the issue, so I'm closing this bug. Hi, We just stumbled upon this issue, and it was really a bad surprise because machines would just not return from boot. We had

Bug#947325: snapd: strict confinement is not enabled

2022-06-20 Thread Lee Garrett
Hi, can can verify on bullseye that this particular test case is not present anymore: ---8<--8<--8<--8<--8<--8<--8<--8<--- $ snap run hello-world.evil Hello Evil World! This example demonstrates the app confinement You should see a permission denied error next /s

Bug#1012741: modprobe: ERROR: could not insert 'crc_itu_t': Key was rejected by service

2022-06-20 Thread Ben Hutchings
On Mon, 2022-06-20 at 04:38 -0500, Daniel Lewart wrote: > Ben, > > > I wrote a script to check for short signatures (and other unexpected > > things) in detached signature files: > > https://salsa.debian.org/kernel-team/kernel-team/-/blob/master/scripts/benh/check-sig-params > > Thank you for you

Bug#1013268: chromium: Broken kerberos authentication

2022-06-20 Thread Stephen Kitt
Hi, Le 20/06/2022 14:18, Santiago García Mantiñán a écrit : starting with version 101.0.4951.41-1~deb11u1 I have found that kerberos authentication is broken, I have tested that on version 100.0.4896.127-1~deb11u1 everything was working ok. To reproduce it I get a working ticket with kinit myu

Bug#1012564: openssl: ckermit can't connect to telnetd-ssl with openssl 3.0.3-7

2022-06-20 Thread Arthur Marsh
- Original Message - From: "Sebastian Andrzej Siewior" To:"Arthur Marsh" , Cc: Sent:Mon, 20 Jun 2022 19:16:36 +0200 Subject:Re: Bug#1012564: openssl: ckermit can't connect to telnetd-ssl with openssl 3.0.3-7 On 2022-06-20 19:10:27 [+0200], To Arthur Marsh wrote: > I have here > telne

Bug#1004485: spamass-milter: 'Could not retrieve sendmail macro "b"' with postfix

2022-06-20 Thread Fabian Arndt
On Fri, 28 Jan 2022 19:56:10 + Dave Love wrote: > I just thought to check the Fedora packaging > , > and that says > > milter_connect_macros must include the j and _ macros > milter_rcpt_macros

Bug#1010764: upstream fix

2022-06-20 Thread Benjamin Kaduk
tags 1010764 upstream fixed-upstream pending thanks On Wed, May 18, 2022 at 01:55:00AM +, Jeremy Stanley wrote: > The fix for this appears to have merged upstream in January, so > could probably be backported in Salsa: > > https://gerrit.openafs.org/14882 Indeed, upstream has been getting th

Bug#1006277: RFP: easyeffects -- Audio effects for PipeWire applications (formerly - pulseeffects)

2022-06-20 Thread Jeremy Bicha
Boyuan, Thanks for packaging libsigc++-3.0. Are you also planning on packaging easyeffects for Debian? Are there any remaining blockers? Jeremy Bicha

Bug#1012564: openssl: ckermit can't connect to telnetd-ssl with openssl 3.0.3-7

2022-06-20 Thread Sebastian Andrzej Siewior
On 2022-06-20 19:10:27 [+0200], To Arthur Marsh wrote: > I have here >telnet-ssl 0.17.41+0.2-3.3+b1 >telnetd-ssl 0.17.41+0.2-3.3+b1 >libssl3 3.0.3-8 >openssl 3.0.3-8 adding ckermit305~alpha07-1+b1 and then: | ~$ kermit | C-Kermit 9.0.305 OPEN SOURCE: Alpha.07,

Bug#1012564: openssl: ckermit can't connect to telnetd-ssl with openssl 3.0.3-7

2022-06-20 Thread Sebastian Andrzej Siewior
On 2022-06-16 11:33:13 [+0930], Arthur Marsh wrote: >* What led up to the situation? > > I also found that telnet-ssl and ckermit could not connect to telnetd-ssl > if openssl 3.0.3-8 was installed. > >* What exactly did you do (or not do) that was effective (or > ineffective)? > >

Bug#1013283: info: "info" crashes with "aborted" message, in any attempt to run it.

2022-06-20 Thread y
Package: info Version: 6.8-4+b1 Severity: important X-Debbugs-Cc: hud...@hudsonlacerda.com Dear Maintainer, GNU Info is not running on my system. It crashes at startup with "Aborted" message. It only runs in rare cases ("info man" works, "info" crashes, "info octave" crashes...). Terminal emula

Bug#1013277: opendkim crash

2022-06-20 Thread David Bürgin
Jan Korbel: > Package: opendkim > Version: 2.11.0~beta2-4 > > Debian stable (11.3) i386 with 5.10.0-15-cloud-amd64 kernel. > > Hello. > > We have some crashes of opendkim. > > In unstable changelog i found: > > opendkim (2.11.0~beta2-5) unstable; urgency=medium > * Add new patches: > - c

Bug#1013282: imagemagick: CVE-2022-28463 CVE-2021-20241 CVE-2021-20243 CVE-2021-20244 CVE-2021-20245 CVE-2021-20246 CVE-2021-20309 CVE-2021-20312 CVE-2021-20313 CVE-2021-4219 CVE-2022-1114 CVE-2022-11

2022-06-20 Thread Moritz Mühlenhoff
Source: imagemagick X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerabilities were published for imagemagick. CVE-2022-28463[0]: | ImageMagick 7.1.0-27 is vulnerable to Buffer Overflow. https://github.com/ImageMagick/ImageMagick/commit/ca3654ebf

Bug#940234: debian-policy: add a section about source reproducibility

2022-06-20 Thread Holger Levsen
On Mon, Jun 20, 2022 at 07:43:45PM +0700, Teukumif tahulziran wrote: > > There is already a section about reproducibility in the debian-policy, > > but it only mentions the binary packages. It might be a good idea to > > add a new requirement that repeatedly building the source package in > > the s

Bug#1013281: libbatik-java: Running rasterizer fails with inability to load main class org.apache.batik.apps.rasterizer.Main

2022-06-20 Thread Brian Blood
Package: libbatik-java Version: 1.12-4 Severity: grave Justification: renders package unusable Dear Maintainer, Been using this kind of call against a Jessie install of this package for years: java -jar /usr/share/java/batik-rasterizer.jar -m image/png -scriptSecurityOff -w 1920 /tmp/ramdis

Bug#1012100: linux-image-5.17-1: KVM LIBVIRT fails to start, slow disk access, and a kernel thread goes wild on Intel Xeon X3430

2022-06-20 Thread Adrian Kieß
Dear Diederik, the new kernel: root@g6 /opt # uname -a Linux g6.lan.dac 5.18.0-1-amd64 #1 SMP PREEMPT_DYNAMIC Debian 5.18.2-1 (2022-06-06) x86_64 GNU/Linux in Debian/testing works again in the way, that LIBVIRT KVM works again! I most probably found the reason for the slow disk access on my mac

Bug#1013280: jboss-xnio: CVE-2022-0084

2022-06-20 Thread Moritz Mühlenhoff
Source: jboss-xnio X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerability was published for jboss-xnio. The only source for this is in Red Hat Bugzilla: https://bugzilla.redhat.com/show_bug.cgi?id=2064226 If you fix the vulnerability please als

Bug#1013279: cookiecutter: CVE-2022-24065

2022-06-20 Thread Moritz Mühlenhoff
Source: cookiecutter X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerability was published for cookiecutter. CVE-2022-24065[0]: | The package cookiecutter before 2.1.1 are vulnerable to Command | Injection via hg argument injection. When calling

Bug#851810: dear

2022-06-20 Thread Attia Johnson
My greetings to you My name is Attia Johnson, And I am a lawyer I'm contacting you regarding a proposal I would like to discuss with you, please contact me for more information. Thanks and best regards, Attia Johnson

Bug#1013278: RM: nvtv -- RoQA; Dead upstream, RC buggy, unmaintained

2022-06-20 Thread Moritz Muehlenhoff
Package: ftp.debian.org Severity: normal Please remove nvtv. The last maintainer upload happened a decade ago, it's dead upstream and RC-buggy. Cheers, Moritz

Bug#1009355: goodvibes: New upstream version 0.7.4 available

2022-06-20 Thread Arnaud Rebillout
On Tue, 12 Apr 2022 16:06:35 +0700 Arnaud Rebillout wrote: > latest version of Goodvibes was released a few weeks ago: > https://gitlab.com/goodvibes/goodvibes/-/tags/v0.7.4 Just a ping :)

Bug#1013273: [Pkg-rust-maintainers] Bug#1013273: linking problems on ppc64el

2022-06-20 Thread Sylvestre Ledru
I think this is a problem with squeekboard, not rustc? Thanks Sylvestre Le 20/06/2022 à 15:15, Frédéric Bonnard a écrit : Package: src:rustc Version: 1.59.0+dfsg1-1 -- Dear maintainer, squeekboard 1.18.0-1 package does not build on ppc64el, due to unknown symbols at link time : https://build

Bug#1013276: Alsa clients using the wrong plugin if pulseaudio is installed

2022-06-20 Thread Sebastien Bacher
Package: pipewire Version: 0.3.52-1 The bug has been reported for Ubuntu on https://bugs.launchpad.net/ubuntu/+source/pipewire/+bug/1975823 'Steps to Reproduce: install OpenWebStart sign up on Stellwerksim download the application run it see the self test never pass the audio test Actual

Bug#1007022: podman: starting rootless container fails with: can't get final child's PID from pipe: EOF

2022-06-20 Thread Arnaud Rebillout
Hi Shengjing, On Sun, 19 Jun 2022 15:28:32 +0800 Shengjing Zhu wrote: > Can someone checks if you still fail to run rootless container with > runc and podman 4.1? > > I think it's because > https://github.com/containers/podman/issues/13731, which is fixed in > podman 4.1. > And it's caused by sy

Bug#1004344: how to generate list of JS deps to package

2022-06-20 Thread Martin
Quoting Hans-Christoph Steiner : Is there a quick way to find out the list of what's missing? See https://wiki.debian.org/Javascript/Nodejs/Tasks/ The tool generates the source code for a wiki page, e.g. like this one: https://wiki.debian.org/Javascript/Nodejs/Tasks/converse.js Updates need

Bug#1013275: toil: FTBFS with Python 3.10 only

2022-06-20 Thread Graham Inggs
Source: toil Version: 5.6.0-6 Severity: important Tags: ftbfs Hi Maintainer Toil hardcodes python3.9 and will FTBFS when Python 3.10 is the only supported Python version. I've copied what I hope is the relevant part of the log below, which shows the python3.10 tests being attempted with python3.

Bug#1013274: RM: w3-recs -- RoQA; Obsolete

2022-06-20 Thread Moritz Muehlenhoff
Package: ftp.debian.org Severity: normal Please remove w3-recs. It contains an 11 year old summary of World Wide Web Consortium (W3C) recommendations, which are obsolete by now. And the package is orphaned since six years. Cheers, Moritz

Bug#1013273: linking problems on ppc64el

2022-06-20 Thread Frédéric Bonnard
Package: src:rustc Version: 1.59.0+dfsg1-1 -- Dear maintainer, squeekboard 1.18.0-1 package does not build on ppc64el, due to unknown symbols at link time : https://buildd.debian.org/status/fetch.php?pkg=squeekboard&arch=ppc64el&ver=1.18.0-1&stamp=1654176130&raw=0 --- error: linking with `cc`

Bug#1013272: jupyter-notebook: CVE-2022-29238

2022-06-20 Thread Moritz Mühlenhoff
Source: jupyter-notebook X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerability was published for jupyter-notebook. CVE-2022-29238[0]: | Jupyter Notebook is a web-based notebook environment for interactive | computing. Prior to version 6.4.12, a

Bug#1013270: jodd: CVE-2022-29631

2022-06-20 Thread Moritz Mühlenhoff
Source: jodd X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerability was published for jodd. CVE-2022-29631[0]: | Jodd HTTP v6.0.9 was discovered to contain multiple CLRF injection | vulnerabilities via the components jodd.http.HttpRequest#set an

Bug#1013271: jupyter-server: CVE-2022-29241

2022-06-20 Thread Moritz Mühlenhoff
Source: jupyter-server X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerability was published for jupyter-server. CVE-2022-29241[0]: | Jupyter Server provides the backend (i.e. the core services, APIs, and | REST endpoints) for Jupyter web applica

Bug#940234: debian-policy: add a section about source reproducibility

2022-06-20 Thread Bill Allombert
On Mon, Jun 20, 2022 at 07:43:45PM +0700, Teukumif tahulziran wrote: > On Sat, 14 Sep 2019 13:34:49 +0200 Aurelien Jarno > wrote: > > Package: debian-policy > > Version: 4.4.0.1 > > Severity: wishlist > > > > There is already a section about reproducibility in the debian-policy, > > but it only me

Bug#940234: debian-policy: add a section about source reproducibility

2022-06-20 Thread Teukumif tahulziran
On Sat, 14 Sep 2019 13:34:49 +0200 Aurelien Jarno wrote: > Package: debian-policy > Version: 4.4.0.1 > Severity: wishlist > > There is already a section about reproducibility in the debian-policy, > but it only mentions the binary packages. It might be a good idea to > add a new requirement that r

Bug#940234: debian-policy: add a section about source reproducibility

2022-06-20 Thread Teukumif tahulziran
On Sat, 14 Sep 2019 13:34:49 +0200 Aurelien Jarno wrote: > Package: debian-policy > Version: 4.4.0.1 > Severity: wishlist > > There is already a section about reproducibility in the debian-policy, > but it only mentions the binary packages. It might be a good idea to > add a new requirement that r

Bug#1013269: terraphast: FTBFS with glibc 2.34

2022-06-20 Thread Graham Inggs
Source: terraphast Version: 0.0+git20200413.8af2e4c-2 Severity: important Hi Maintainer Your package uses a vendored copy of catch.hpp. It will FTBFS once glibc is upgraded to 2.34 due to MINSIGSTKSZ and SIGSTKSZ no longer being defined as constants. You could take this opportunity to switch to

Bug#994930: guile-2.2: FTBFS due to web-server.test error

2022-06-20 Thread Anthony Fok
Control: severity -1 important On Thu, 23 Sep 2021 16:19:54 +0530 Vignesh Raman wrote: > Package: guile-2.2 > Version: 2.2.7+1-6 > Severity: serious > Tags: ftbfs > Justification: fails to build from source (but built successfully in the past) > X-Debbugs-Cc: vignesh.ra...@collabora.com > > Dear

Bug#1013268: chromium: Broken kerberos authentication

2022-06-20 Thread Santiago García Mantiñán
Package: chromium Version: 101.0.4951.41-1~deb11u1 Severity: normal Dear Maintainer, starting with version 101.0.4951.41-1~deb11u1 I have found that kerberos authentication is broken, I have tested that on version 100.0.4896.127-1~deb11u1 everything was working ok. To reproduce it I get a workin

Bug#1013258: autoreconf: error: /usr/bin/autoconf failed with exit status: 1

2022-06-20 Thread Mathieu Malaterre
Control: tags -1 wontfix On Mon, Jun 20, 2022 at 1:39 PM Andreas Tille wrote: > > Am Mon, Jun 20, 2022 at 10:38:12AM +0200 schrieb Mathieu Malaterre: > > Source: openslide > > Severity: important > > Tags: ftbfs > > > > Dear Maintainer, > > > > It seems openslide does not build anymore. See for i

Bug#1012881: linux: ti soc cpufreq not working

2022-06-20 Thread Yu-Tung Chang
https://lore.kernel.org/linux-arm-kernel/5143369...@ti.com/T/ https://www.spinics.net/lists/linux-omap/msg138794.html Read the link above, ARM_OMAP2PLUS_CPUFREQ is not available for DT Boot Systems and has been deprecated Diederik de Haas 于2022年6月20日周一 19:00写道: > > Always send your replies to th

Bug#967673: openslide: depends on deprecated GTK 2

2022-06-20 Thread Benjamin Gilbert
I believe you'll also need a dependency on libglib2.0-dev. Best, --Benjamin Gilbert

Bug#1013267: fontforge: BDF font generation: FONT_ASCENT and FONT_DESCENT properties are missing

2022-06-20 Thread Vincent Lefevre
Package: fontforge Version: 1:20220308~dfsg-1 Severity: important FontForge generate invalid BDF files with File → Generate Fonts. As a consequence, bdftopcf complains and the font is unusable. To reproduce (e.g. without modifying the original font): fontforge /usr/share/fonts/X11/misc/6x13.pc

Bug#1013266: RM: golang-github-blevesearch-bleve -- RoQA; Obsolete, orphaned, outdated

2022-06-20 Thread Moritz Muehlenhoff
Package: ftp.debian.org Severity: normal Please remove golang-github-blevesearch-bleve. The version in the archive is five years old and there are no reverse deps (it was added for Gitea, which is no longer shipped). Cheers, Moritz

Bug#1013258: autoreconf: error: /usr/bin/autoconf failed with exit status: 1

2022-06-20 Thread Andreas Tille
Am Mon, Jun 20, 2022 at 10:38:12AM +0200 schrieb Mathieu Malaterre: > Source: openslide > Severity: important > Tags: ftbfs > > Dear Maintainer, > > It seems openslide does not build anymore. See for instance: > > * https://salsa.debian.org/med-team/openslide/-/jobs/2899560 I wonder why you ass

Bug#967673: Delete tag pending (Was: Processed: Bug#967673 marked as pending in openslide)

2022-06-20 Thread Andreas Tille
Control: tags -1 - pending Simply removing the Build-Depends is definitely not sufficient: ... checking for glib-2.0 >= 2.16, gthread-2.0, gio-2.0, gobject-2.0... no configure: error: Package requirements (glib-2.0 >= 2.16, gthread-2.0, gio-2.0, gobject-2.0) were not met: No package 'glib-2.0'

Bug#1013264: node-got: CVE-2022-33987

2022-06-20 Thread Moritz Mühlenhoff
Source: node-got X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerability was published for node-got. CVE-2022-33987[0]: | The got package before 12.1.0 for Node.js allows a redirect to a UNIX | socket. https://github.com/sindresorhus/got/pull/20

Bug#1013265: jpeg-xl: CVE-2022-34000

2022-06-20 Thread Moritz Mühlenhoff
Source: jpeg-xl X-Debbugs-CC: t...@security.debian.org Severity: normal Tags: security Hi, The following vulnerability was published for jpeg-xl. CVE-2022-34000[0]: | libjxl 0.6.1 has an assertion failure in | LowMemoryRenderPipeline::Init() in | render_pipeline/low_memory_render_pipeline.cc. h

Bug#1004344: how to generate list of JS deps to package

2022-06-20 Thread Hans-Christoph Steiner
Thanks for the ongoing maintenance of buildbot! F-Droid is in the process of moving to buildbot. We generally try to maintain all of our systems using Debian packages, so we might be able to contribute to getting those JS deps in Debian. Is there a quick way to find out the list of what's mis

Bug#1012881: linux: ti soc cpufreq not working

2022-06-20 Thread Diederik de Haas
Always send your replies to the bug report! [This is therefor just a forward to that bug report] On Monday, 20 June 2022 10:09:45 CEST Yu-Tung Chang wrote: > https://lore.kernel.org/linux-arm-kernel/5143369...@ti.com/T/ > https://www.spinics.net/lists/linux-omap/msg138794.html > > Read the link

Bug#1013252: FTBS: source package format '3.0 (gitarchive)' is not supported

2022-06-20 Thread Bastian Blank
On Sun, Jun 19, 2022 at 11:58:13PM -0700, Ross Boylan wrote: > The source package does not declare a build dependency on dpkg-source- > gitarchive and so fails to build in stable. Probably it should declare such a > dependency, because it builds once that package is installed. The build-dep is no

Bug#1013259: samba-libs: Possible policy violation

2022-06-20 Thread Andrew Bartlett
On Mon, 2022-06-20 at 10:39 +0200, Hannes Eberhardt wrote: > Package: samba-libs > Version: 2:4.16.1+dfsg-8~bpo11+1 > Severity: normal > X-Debbugs-Cc: hannes.eberha...@neumannmueller.com > > Dear Maintainer, > > I noticed that sssd service of a freeipa-client installation broke > with the followi

Bug#1013263: abcde: Suggest to install opus-tools

2022-06-20 Thread Uwe Kleine-König
Package: abcde Version: 2.9.3-1 Severity: normal X-Debbugs-Cc: uklei...@debian.org Hello, $ abcde -o opus -d myinput [ERROR] abcde: opusenc is not in your path. [INFO] Define the full path to the executable if it exists on your system. [INFO] Hint: sudo apt-get install I suggest to add "opus-too

Bug#1013205: [Pkg-samba-maint] Bug#1013205: Bug#1013205: samba-common: samba no longer installable on sparc64 due to impossible version conflict

2022-06-20 Thread Andrew Bartlett
On Sun, 2022-06-19 at 09:21 +0300, Michael Tokarev wrote: > 19.06.2022 03:03, Rich Ercolani wrote: > > Package: samba-common > > Version: 2:4.13.5+dfsg-2 > > Severity: normal > > X-Debbugs-Cc: rincebr...@gmail.com > > > > Dear Maintainer, > > > > Pretty simple report - since samba-common is only

Bug#1003353: tagging 1012326, tagging 1012690, tagging 1012464, tagging 1001317, tagging 1012221, tagging 1011807 ...

2022-06-20 Thread Axel Beckert
Hi Andreas, Andreas Beckmann wrote: > On 19/06/2022 16.27, Axel Beckert wrote: > > please explain what makes you think that this issue is present in > > lintian 2.114.0 as currently in Debian Unstable. > > The BTS does not understand made up versions (i.e. versions not in the > archive), Yes, I'

Bug#810933: reportbug: possible workaround

2022-06-20 Thread anonymous coward
Package: reportbug Version: 7.10.3 Followup-For: Bug #810933 X-Debbugs-Cc: bug810...@sideload.33mail.com I concur that SMTP proxying would be useful. I also have a workaround using firejail. Firejail makes it possible to restrict an app to a network namespace. So if you can configure your proxy t

  1   2   >