Bug#1077769: ITP: node-path-scurry -- Fast and cached directory traversal for javascript building tool

2024-08-01 Thread Bastien Roucariès
Package: wnpp Severity: wishlist Owner: Bastien Roucariès X-Debbugs-Cc: debian-de...@lists.debian.org Package name: node-path-scurry Version : 1.9.2 Upstream Contact: ttps://github.com/isaacs/path-scurry#readme URL : https://www.example.org/ License : BlueOak

Bug#1077760: pkg-js-tools: please allow to run a hook before testing

2024-08-01 Thread Bastien Roucariès
Package: pkg-js-tools Version: 0.15.22 Severity: important Dear Maintainer, Could you run an hook like pre-test in tests that will run something like for instance regenerating certicate. It will avoid a lot a failure and manual work I can work arround using d/rules for build but not for test

Bug#1077584: bullseye-pu: package putty/0.74-1+deb11u2

2024-07-30 Thread Bastien Roucariès
Package: release.debian.org Severity: normal Tags: bullseye X-Debbugs-Cc: pu...@packages.debian.org Control: affects -1 + src:putty User: release.debian@packages.debian.org Usertags: pu [ Reason ] Security fix CVE-2024-31497 [ Impact ] Vulnerable biased nonce generation is still here. [

Bug#1077557: Most changelog items missing in 2.117.1 changelog entry (Re: lintian_2.117.1_source.changes ACCEPTED into unstable)

2024-07-30 Thread Bastien Roucariès
e > > Version: 2.117.1 > > Distribution: unstable > > Urgency: medium > > Maintainer: Debian Lintian Maintainers > > Changed-By: Bastien Roucariès > > Closes: 1077112 > > Changes: > > lintian (2.117.1) unstable; urgency=medium > >

Bug#1077515: bookworm-pu: package putty/0.78-2+deb12u2

2024-07-29 Thread Bastien Roucariès
Package: release.debian.org Severity: normal Tags: bookworm X-Debbugs-Cc: pu...@packages.debian.org Control: affects -1 + src:putty User: release.debian@packages.debian.org Usertags: pu [ Reason ] Security fix CVE-2024-31497 [ Impact ] Vulnerable biased nonce generation is still here. [

Bug#1060103: New of imagemagick7

2024-07-28 Thread Bastien Roucariès
control: tags -1 - moreinfo Hi, Last reverse deps of lib magick pipeline is not really bad https://salsa.debian.org/debian/imagemagick/-/pipelines/708187 A lot of failure are due to broken package or does not use pkgconfig I suppose we could go to experimental Bastien signature.asc

Bug#1076817: ocsinventory: php-cas does not work

2024-07-23 Thread Bastien Roucariès
Source: ocsinventory Version: 2.8.1+dfsg1-1 Severity: important Tags: patch bullseye Dear Maintainer, php-cas support was broken for bullseye It need (1) https://github.com/OCSInventory-NG/OCSInventory- ocsreports/commit/f8a667f9f19b285799ec6a25a28240165b039dfb (2)

Bug#1076562: forcemerge

2024-07-18 Thread Bastien Roucariès
control: forcemerge 1076158 -1 signature.asc Description: This is a digitally signed message part.

Bug#1076562: bullseye-pu: package imagemagick/8:6.9.11.60+dfsg-1.3+deb11u4

2024-07-18 Thread Bastien Roucariès
Package: release.debian.org Severity: normal Tags: bullseye X-Debbugs-Cc: imagemag...@packages.debian.org Control: affects -1 + src:imagemagick User: release.debian@packages.debian.org Usertags: pu [ Reason ] * CVE-2023-34151 fix was incomplete (Closes: #1070340) * Fix variation of

Bug#1076158: bullseye-pu: package imagemagick/8:6.9.11.60+dfsg-1.3+deb11u4

2024-07-11 Thread Bastien Roucariès
Package: release.debian.org Severity: normal Tags: bullseye X-Debbugs-Cc: imagemag...@packages.debian.org Control: affects -1 + src:imagemagick User: release.debian@packages.debian.org Usertags: pu [ Reason ] * CVE-2023-34151 fix was incomplete (Closes: #1070340) * Fix variation of

Bug#1076156: bookworm-pu: package imagemagick/8:6.9.11.60+dfsg-1.6+deb12u2

2024-07-11 Thread Bastien Roucariès
Package: release.debian.org Severity: normal Tags: bookworm X-Debbugs-Cc: imagemag...@packages.debian.org Control: affects -1 + src:imagemagick User: release.debian@packages.debian.org Usertags: pu [ Reason ] * CVE-2023-34151 fix was incomplete (Closes: #1070340) * Fix variation of

Bug#1075759: isa-support: please add armv8 + crc support package

2024-07-05 Thread Bastien Roucariès
Le jeudi 4 juillet 2024, 12:51:01 UTC Luca Boccassi a écrit : Hi, > Source: isa-support > Severity: wishlist > X-Debbugs-Cc: pkg-dpdk-de...@lists.alioth.debian.org > > Dear Maintainer(s), > > For src:dpdk we would like to depend on a higher arm64 baseline, which > includes the crc extension.

Bug#1074391: More information

2024-06-29 Thread Bastien Roucariès
control: severity -1 important control: retitle -1 should be split between arch and arch:all Thanks to Yadd partially solved. However this package should be split between arch and arch:all part Bastien > On 6/28/24 01:04, Bastien Roucariès wrote: > > Hi, > > > > I get

Bug#1074391: More information

2024-06-27 Thread Bastien Roucariès
Hi, I get this backtrace (yadd could you get a glimpse) Error [ERR_MODULE_NOT_FOUND]: Cannot find package 'esbuild' imported from assemblyscript/assemblyscript/scripts/build.js Did you mean to import "file:///usr/lib/x86_64-linux-gnu/nodejs/esbuild/lib/main.js"? at packageResolve

Bug#1074391: esbuild: build esbuild main.js

2024-06-27 Thread Bastien Roucariès
Package: esbuild Version: 0.20.2-1 Severity: serious Justification: could not be imported from node Dear Maintainer, Could you build the node package esbuild ? Without it the package is broken from node point of view so serious bug. I can help here Bastien signature.asc Description: This

Bug#1074369: luakit: please use sensible-utils

2024-06-27 Thread Bastien Roucariès
Source: luakit Severity: wishlist Tags: patch Dear Maintainer, Could you please merge https://salsa.debian.org/debian/luakit/-/merge_requests/3 Thanks Bastien signature.asc Description: This is a digitally signed message part.

Bug#1074366: x-terminal-emulator depends

2024-06-27 Thread Bastien Roucariès
Package: debian-policy Version: 4.7.0.0 Severity: wishlist Dear Maintainer, Could you documents the depends for x-terminal-emulator I suppose it is xterm | x-terminal-emulator ? Bastien signature.asc Description: This is a digitally signed message part.

Bug#1074360: debian-policy: document sensible-terminal

2024-06-27 Thread Bastien Roucariès
Package: debian-policy Version: 4.7.0.0 Severity: wishlist Dear Maintainer, sensible-utils will carry in trixie sensible-terminal. It will allow one user to custumize the terminal to be used like sensible- editor do. Could you document it, in policy ? Thanks Bastien -- System Information:

Bug#1070340: Bug CVE-2023-34151: Please add this doc here

2024-06-22 Thread Bastien Roucariès
Hi, Could you post as plain texte the document you put in a google doc and the image used as attached document ? It will help other to reproduce Thanks rouca signature.asc Description: This is a digitally signed message part.

Bug#1073231: bullseye-pu: package sendmail/8.15.2-22+deb11u1

2024-06-17 Thread Bastien Roucariès
Le dimanche 16 juin 2024, 20:15:33 UTC Adam D. Barratt a écrit : Hi I am sorry I forget to enable by default for bullseye the NUL reject (only for bullseye) I will upload ASAP Bastien > On Sun, 2024-06-16 at 20:09 +0000, Bastien Roucariès wrote: > > Le dimanche 16 juin 2024, 20:08:42

Bug#1073529: bookworm-pu: package pymongo/3.11.0-1+deb11u1

2024-06-16 Thread Bastien Roucariès
Package: release.debian.org Severity: normal Tags: bullseye X-Debbugs-Cc: pymo...@packages.debian.org Control: affects -1 + src:pymongo User: release.debian@packages.debian.org Usertags: pu [ Reason ] CVE-2024-5629 [ Impact ] An out-of-bounds read in the 'bson' module allows deserialization

Bug#1073524: bookworm-pu: package pymongo/3.11.0-1+deb12u1

2024-06-16 Thread Bastien Roucariès
Package: release.debian.org Severity: normal Tags: bookworm X-Debbugs-Cc: pymo...@packages.debian.org Control: affects -1 + src:pymongo User: release.debian@packages.debian.org Usertags: pu [ Reason ] CVE-2024-5629 [ Impact ] An out-of-bounds read in the 'bson' module allows deserialization

Bug#1073231: bullseye-pu: package sendmail/8.15.2-22+deb11u1

2024-06-16 Thread Bastien Roucariès
Le dimanche 16 juin 2024, 20:08:42 UTC Adam D. Barratt a écrit : > On Sat, 2024-06-15 at 19:43 +0100, Jonathan Wiltshire wrote: > > "slightly non-conformant" really good justification for a pop-up > > news item on upgrades? I don't recall the other MTAs doing this. > > > > It's up to you, either

Bug#1068888: bookworm-pu: package zookeeper/3.8.0-11+deb12u2

2024-06-16 Thread Bastien Roucariès
control: tag -1 - moreinfo Le samedi 15 juin 2024, 22:49:24 UTC Jonathan Wiltshire a écrit : Hi, Thanks for the review > Control: tag -1 moreinfo > > Hi, > > On Fri, Apr 12, 2024 at 10:18:02PM +, Bastien Roucariès wrote: > > diff -Nru zookeeper-3.8.0/debian/chan

Bug#1073290: systemd: Please breaks against dracut-core << 102-2~

2024-06-16 Thread Bastien Roucariès
Package: systemd Severity: serious Tags: patch Justification: Breaks unrelated package Control: affects -1 dracut-core Dear Maintainer, Following #1071182 could you add to systemd a breaks: dracut-core << 102-2~ Change is simple so I add patch tag, please remove if needed Bastien

Bug#1073231: bullseye-pu: package sendmail/8.15.2-22+deb11u1

2024-06-14 Thread Bastien Roucariès
Package: release.debian.org Severity: normal Tags: bullseye X-Debbugs-Cc: sendm...@packages.debian.org Control: affects -1 + src:sendmail User: release.debian@packages.debian.org Usertags: pu [ Reason ] Fix CVE-2023-51765 (smtp smugling) [ Impact ] SMTP smugling [ Tests ] Manual test using

Bug#1060103: transition: imagemagick7

2024-06-02 Thread Bastien Roucariès
Le dimanche 2 juin 2024, 11:17:33 UTC Sebastian Ramacher a écrit : > On 2024-02-02 17:21:43 +0000, Bastien Roucariès wrote: > > Le vendredi 2 février 2024, 16:53:10 UTC Sebastian Ramacher a écrit : > > > Control: tags -1 moreinfo > > > > > > Hi Bastien >

Bug#1071449: bookworm-pu: package sendmail/8.17.1.9-2+deb12u1

2024-05-19 Thread Bastien Roucariès
Package: release.debian.org Severity: normal Tags: bookworm X-Debbugs-Cc: sendm...@packages.debian.org Control: affects -1 + src:sendmail User: release.debian@packages.debian.org Usertags: pu [ Reason ] sendmail was affected by CVE-2023-51765 [ Impact ] close CVE-2023-51765 and reject NUL

Bug#1071417: bullseye-pu: package fossil/2.15.2-1+deb11u1

2024-05-18 Thread Bastien Roucariès
Package: release.debian.org Severity: normal Tags: bullseye X-Debbugs-Cc: fos...@packages.debian.org Control: affects -1 + src:fossil User: release.debian@packages.debian.org Usertags: pu this bug was opened by previous arrangement with maintainer. [ Reason ] fossil is affected by a

Bug#1070998: bookworm-pu: package fossil/2.24-5~deb11u1

2024-05-12 Thread Bastien Roucariès
Package: release.debian.org Severity: normal Tags: bookworm X-Debbugs-Cc: fos...@packages.debian.org Control: affects -1 + src:fossil User: release.debian@packages.debian.org Usertags: pu this bug was opened by previous arrangement with maintainer. [ Reason ] fossil is affected by a

Bug#1070190: sendmail-bin: CVE-2023-51765 SMTP smuggling with NUL followup

2024-05-09 Thread Bastien Roucariès
Le samedi 4 mai 2024, 12:40:25 UTC Andreas Beckmann a écrit : > On 04/05/2024 13.02, Andreas Beckmann wrote: > >> I have patched sendmail in order to enable O RejectNUL=True directive, > >> but I do not achieved the fact to enable it by default. > > >> Andreas could you get a glimpse at how to

Bug#1070069: fossil: CVE-2024-24795 unreleated breakage

2024-05-06 Thread Bastien Roucariès
Le lundi 29 avril 2024, 18:40:39 UTC Barak A. Pearlmutter a écrit : > Bastien, > > Okay, got it. Thanks for letting me know. > > I can cherry-pick that fossil commit, but you know the right magic for > a versioned apache2 breakage and how to deal with proposed-updates. > So I think it would make

Bug#1070190: sendmail-bin: CVE-2023-51765 SMTP smuggling with NUL followup

2024-05-01 Thread Bastien Roucariès
Package: sendmail-bin Severity: important Tags: security help Forwarded: https://marc.info/?l=oss-security=171447187004229=2 Dear Maintainer, CVE-2023-51765 is not fully fixed at least for forwarding bad mail. We must reject NUL including mail as a stop gap method. I have patched sendmail in

Bug#1070155: bullseye-pu: package wpa/2.9.0-21+deb11u1

2024-04-30 Thread Bastien Roucariès
Package: release.debian.org Severity: important Tags: bullseye X-Debbugs-Cc: w...@packages.debian.org Control: affects -1 + src:wpa User: release.debian@packages.debian.org Usertags: pu tags: security [ Reason ] CVE-2023-52160 security bug [ Impact ] security bug is present [ Tests ] Test

Bug#1070151: bookworm-pu: package wpa/2:2.10-12

2024-04-30 Thread Bastien Roucariès
Package: release.debian.org Severity: important Tags: bookworm X-Debbugs-Cc: w...@packages.debian.org Control: affects -1 + src:wpa User: release.debian@packages.debian.org Usertags: pu tags: security [ Reason ] CVE-2023-52160 security bug [ Impact ] security bug is present [ Tests ] Test

Bug#1070069: fossil: CVE-2024-24795 unreleated breakage

2024-04-30 Thread Bastien Roucariès
Le mardi 30 avril 2024, 14:56:07 UTC Barak A. Pearlmutter a écrit : > I've uploaded a package with this fixed to unstable, 1:2.24-5, and > it's been autobuilt and pushed out. Seems to work okay, and can be > co-installed with apache2/sid. > > Just uploaded 1:2.24-6 that adds Breaks: apach2-bin

Bug#1070069: fossil: CVE-2024-24795 unreleated breakage

2024-04-30 Thread Bastien Roucariès
Le mardi 30 avril 2024, 14:56:07 UTC Barak A. Pearlmutter a écrit : > currently Debian sqlite3 is > compiled without SQLITE_ENABLE_JSON1 so the internal version is used.) On this proble could you cross check ? >SQLITE_ENABLE_JSON1 > >This compile-time option is a no-op. Prior to SQLite

Bug#1070126: fossil: Do not use embded sqlite

2024-04-30 Thread Bastien Roucariès
Source: fossil Severity: important Dear Maintainer, > currently Debian sqlite3 is > compiled without SQLITE_ENABLE_JSON1 so the internal version is used.) On this proble could you cross check ? >SQLITE_ENABLE_JSON1 > >This compile-time option is a no-op. Prior to SQLite version 3.38.0

Bug#1069063: distro-info: Please support distro-info --alias=trixie -r

2024-04-30 Thread Bastien Roucariès
Le mardi 30 avril 2024, 15:24:11 UTC Benjamin Drung a écrit : > Hi, > > On Mon, 2024-04-15 at 18:58 +, Bastien Roucariès wrote: > > Package: distro-info > > Version: 1.7 > > Severity: minor > > > > Dear Maintainer, > > > > distro-info --ali

Bug#1070120: postfix: can't send mail due to obsolete /var/spool/postfix/etc/resolv.conf on new network

2024-04-30 Thread Bastien Roucariès
Le mardi 30 avril 2024, 14:52:46 UTC Vincent Lefevre a écrit : Hi, > Control: tags -1 security > > On 2024-04-30 16:33:14 +0200, Vincent Lefevre wrote: > > If I try to restart postfix, I get: > > > > postfix/postfix-script: warning: /var/spool/postfix/etc/resolv.conf and > > /etc/resolv.conf

Bug#1070069: fossil: CVE-2024-24795 unreleated breakage

2024-04-30 Thread Bastien Roucariès
Le lundi 29 avril 2024, 18:40:39 UTC Barak A. Pearlmutter a écrit : > Bastien, > > Okay, got it. Thanks for letting me know. > > I can cherry-pick that fossil commit, but you know the right magic for > a versioned apache2 breakage and how to deal with proposed-updates. > So I think it would make

Bug#1070069: fossil: CVE-2024-24795 unreleated breakage

2024-04-29 Thread Bastien Roucariès
Le lundi 29 avril 2024, 18:40:39 UTC Barak A. Pearlmutter a écrit : > Bastien, > > Okay, got it. Thanks for letting me know. > > I can cherry-pick that fossil commit, but you know the right magic for > a versioned apache2 breakage and how to deal with proposed-updates. > So I think it would make

Bug#1070069: fossil: CVE-2024-24795 unreleated breakage

2024-04-29 Thread Bastien Roucariès
Package: fossil Severity: serious Justification: break unreleated package affects: apache2 Dear Maintainer, CVE-2024-24795 is fixed in apache2. However it break fossil You need to apply https://fossil-scm.org/home/info/f4ffefe708793b03 See bug here:

Bug#1061519: shim: CVE-2023-40546 CVE-2023-40547 CVE-2023-40548 CVE-2023-40549 CVE-2023-40550 CVE-2023-40551

2024-04-17 Thread Bastien Roucariès
Le lundi 15 avril 2024, 13:58:19 UTC Steve McIntyre a écrit : > On Mon, Apr 15, 2024 at 11:33:14AM +0000, Bastien Roucariès wrote: > >Source: shim > >Followup-For: Bug #1061519 > >Control: tags -1 + patch > > > >Dear Maintainer, > > > >Please find a

Bug#1069063: distro-info: Please support distro-info --alias=trixie -r

2024-04-15 Thread Bastien Roucariès
Package: distro-info Version: 1.7 Severity: minor Dear Maintainer, distro-info --alias=trixie -r is misleading it return trixie instead of 13... Maybe a feature but should be documented I workarround by doing in my script in two steps: distro-info --$(distro-info --alias=trixie) -r Bastien

Bug#1069054: shim: install ca for secure boot

2024-04-15 Thread Bastien Roucariès
Source: shim Severity: minor Dear Maintainer, Could you install the ca used for secure boot somewhere in the tree ? It will help to check by autopkgtest the ca chain Bastien signature.asc Description: This is a digitally signed message part.

Bug#1061519: shim: CVE-2023-40546 CVE-2023-40547 CVE-2023-40548 CVE-2023-40549 CVE-2023-40550 CVE-2023-40551

2024-04-15 Thread Bastien Roucariès
Source: shim Followup-For: Bug #1061519 Control: tags -1 + patch Dear Maintainer, Please find a MR here https://salsa.debian.org/efi-team/shim/-/merge_requests/13 Bastien signature.asc Description: This is a digitally signed message part.

Bug#1068940: json-smart: please package the new upstream version

2024-04-13 Thread Bastien Roucariès
Source: json-smart Version: 2.2-3 Severity: wishlist Dear Maintainer, Please package the new upstream version I do not achieve to get maven compile it Bastien signature.asc Description: This is a digitally signed message part.

Bug#1068694: bullseye-pu: package json-smart/2.2-2+deb11u1

2024-04-13 Thread Bastien Roucariès
Le samedi 13 avril 2024, 14:01:24 UTC Bastien Roucariès a écrit : > Le samedi 13 avril 2024, 14:00:00 UTC Moritz Mühlenhoff a écrit : > Hi, > > > Am Tue, Apr 09, 2024 at 10:01:11AM +0200 schrieb Andreas Beckmann: > > > Package: release.debian.org > > > Seve

Bug#1068694: bullseye-pu: package json-smart/2.2-2+deb11u1

2024-04-13 Thread Bastien Roucariès
gt; Usertags: pu > > X-Debbugs-Cc: Bastien Roucariès > > Control: affects -1 + src:json-smart > > Control: block 1039985 with -1 > > Control: block 1033474 with -1 > > > > [ Reason ] > > Two CVEs were fixed in buster-lts, but not yet in bullseye or later, >

Bug#1068888: bookworm-pu: package zookeeper/3.8.0-11+deb12u2

2024-04-12 Thread Bastien Roucariès
Package: release.debian.org Severity: normal Tags: bookworm X-Debbugs-Cc: zookee...@packages.debian.org Control: affects -1 + src:zookeeper User: release.debian@packages.debian.org Usertags: pu [ Reason ] CVE-2024-23944 (Closes: #1066947): An information disclosure in persistent watchers

Bug#1064061: CVE-2023-52160

2024-04-12 Thread Bastien Roucariès
control: tags -1 + patch Hi, You will find a merge request for fixing CVE-2023-52160 https://salsa.debian.org/debian/wpa/-/merge_requests/15 I can do a NMU if neeeded Bastien signature.asc Description: This is a digitally signed message part.

Bug#1067130: modernizr: NMU or update to latest upstream 3.12 or 3.13

2024-03-28 Thread Bastien Roucariès
n.net/deps/dep3/ > > > Le 28 mars 2024 19:23:08 GMT+01:00, "Bastien Roucariès" a > écrit : > >Le jeudi 28 mars 2024, 18:16:09 UTC Fab Stz a écrit : > >> Hello Bastien, > >> > >> Iirc not so many packages depend on it and none seems to use

Bug#1067130: modernizr: NMU or update to latest upstream 3.12 or 3.13

2024-03-28 Thread Bastien Roucariès
rules on the merge request. It > uses upstream's build script that builds the complete js. I do not understand: - please document the patch using dep format - explain how the build script do not ship in /usr/share debian/missingsources bastien > > Regards > Fab > > Le 28 ma

Bug#1067130: modernizr: NMU or update to latest upstream 3.12 or 3.13

2024-03-28 Thread Bastien Roucariès
Le jeudi 28 mars 2024, 17:21:48 UTC Fab Stz a écrit : > Dear Maintainers, > > I'm thinking of doing an NMU for the package by updating it to 3.13.0-0.1. > The > MR is now open since July 2023 and this bug referencing it has been existing > for about 10 days (in case the MR wouldn't have been

Bug#1067020: jupyterlab: please use node-get-intrinsic

2024-03-16 Thread Bastien Roucariès
Source: jupyterlab Version: 4.0.11+ds1-1 Severity: important Dear Maintainer, Your package include files included elsewhere: python3-jupyterlab: /usr/share/jupyter/lab/staging/node_modules/get- intrinsic/.eslintrc python3-jupyterlab: /usr/share/jupyter/lab/staging/node_modules/get-

Bug#1067019: jupyterlab: use pacckaged node-call-bind (provided package)

2024-03-16 Thread Bastien Roucariès
Source: jupyterlab Version: 4.0.11+ds1-1 Severity: important Dear Maintainer, node-call-bind provided virtual package provides these files python3-jupyterlab: /usr/share/jupyter/lab/staging/node_modules/call- bind/.eslintignore python3-jupyterlab:

Bug#1067017: jupyterlab: Use node-long package

2024-03-16 Thread Bastien Roucariès
Source: jupyterlab Version: 4.0.11+ds1-1 Severity: serious Justification: duplicate code source not build from source Dear Maintainer, Your package include the following file packaged elsewhere python3-jupyterlab: /usr/share/jupyter/lab/staging/node_modules/@xtuc/long/LICENSE python3-jupyterlab:

Bug#1063508: ITP: node-long -- Class for representing 64-bit two's-complement integer value

2024-02-18 Thread Bastien Roucariès
control: tags -1 + pending Uploaded waiting ftpmaster Le vendredi 9 février 2024, 03:39:41 UTC Marco Trevisan a écrit : > Package: wnpp > Severity: wishlist > Owner: Marco Trevisan (Treviño) > X-Debbugs-CC: debian-de...@lists.debian.org > > * Package name: node-long > Version :

Bug#1019980: lintian: source-is-missing check for HTML is much too sensitive

2024-02-08 Thread Bastien Roucariès
Le jeudi 8 février 2024, 19:57:22 UTC Bill Allombert a écrit : > On Thu, Feb 08, 2024 at 06:39:18PM +0000, Bastien Roucariès wrote: > > Le jeudi 8 février 2024, 18:31:28 UTC Santiago Ruano Rincón a écrit : > > > On Sat, 14 Oct 2023 20:23:18 +0200 Bill Allombert > > >

Bug#1019980: lintian: source-is-missing check for HTML is much too sensitive

2024-02-08 Thread Bastien Roucariès
Le jeudi 8 février 2024, 18:31:28 UTC Santiago Ruano Rincón a écrit : > On Sat, 14 Oct 2023 20:23:18 +0200 Bill Allombert wrote: > > On Sun, Sep 18, 2022 at 12:14:07AM +0100, Colin Watson wrote: > > > Package: lintian > > > Version: 2.115.3 > > > Severity: normal > > > > > > Lintian issues these

Bug#1012289: RFH: lintian -- Debian package checker

2024-02-05 Thread Bastien Roucariès
Le lundi 5 février 2024, 12:42:04 UTC Bill Allombert a écrit : > On Mon, Feb 05, 2024 at 12:28:02PM +0100, Axel Beckert wrote: > > Hi Bill, > > > > Bill Allombert wrote: > > > By the way, what happened to lintian.debian.org ? > > > > Seems as if someone (not me, just noticed it today when > >

Bug#1012289: RFH: lintian -- Debian package checker

2024-02-04 Thread Bastien Roucariès
Le dimanche 4 février 2024, 14:02:58 UTC Bill Allombert a écrit : > On Tue, Aug 16, 2022 at 11:56:20AM +0000, Bastien Roucariès wrote: > > Source: lintian > > Version: 2.115.2 > > Followup-For: Bug #1012289 > > > > Dear Maintainer, > > > > I will

Bug#1060103: transition: imagemagick7

2024-02-02 Thread Bastien Roucariès
Le vendredi 2 février 2024, 16:53:10 UTC Sebastian Ramacher a écrit : > Control: tags -1 moreinfo > > Hi Bastien > > On 2024-01-05 22:35:44 +, Bastien Roucariès wrote: > > Package: release.debian.org > > Severity: important > > User: release.debian

Bug#1060103: Remainder of imagemagick7 transition plan

2024-02-02 Thread Bastien Roucariès
Hi, A gentle remainder about imagemagick7 transition plan. Many thanks for santiago to review partially it, but I need green light from release team. Bastien signature.asc Description: This is a digitally signed message part.

Bug#1062428: tinyxml: Swith to maintained fork

2024-02-01 Thread Bastien Roucariès
Source: tinyxml Version: 2.6.2-6;1 Severity: important Tags: security Justification: security support X-Debbugs-Cc: Debian Security Team Dear Maintainer, It seems that a fork of tinyxml is well maintained here https://github.com/leethomason/tinyxml2 Could be possible to evaluate the switch of

Bug#1061272: sudo: Does not build from prefered source

2024-01-21 Thread Bastien Roucariès
Source: sudo Severity: serious Tags: ftbfs Justification: yacc/lex are prefered source Dear Maintainer, You do not pass the --with-devel=yes configure flags thus you do not rebuild from source autogenerated file like gram.c and gram.h from gram.y Usually debian build from source grammar file

Bug#1059315: tinyxml: CVE-2023-34194 CVE-2023-40462 CVE-2023-40458

2024-01-14 Thread Bastien Roucariès
On Sun, 31 Dec 2023 07:14:26 +0100 Salvatore Bonaccorso wrote: Hi Guilhem, hi Moritz, > Hi Guilhem, hi Moritz, > > On Sat, Dec 30, 2023 at 11:26:02PM +0100, Guilhem Moulin wrote: > > On Sat, 30 Dec 2023 at 21:02:16 +0100, Felix Geyer wrote: > > > There are some minor changes staged in the salsa

Bug#1060103: transition: imagemagick7

2024-01-05 Thread Bastien Roucariès
Package: release.debian.org Severity: important User: release.debian@packages.debian.org Usertags: transition X-Debbugs-CC: ftpmas...@debian.org Imagemagick will need a new major bump I achieved to get imagemagick 7 build for experimental (it is only on salsa not uploaded yet). Every

Bug#989998: Fixed upstream: need help ?

2024-01-05 Thread Bastien Roucariès
Hi, I have just fix this CVE for buster and I want to know if you need help to release a fix for unstable ? The LTS fix are here https://salsa.debian.org/lts-team/packages/keystone/ Thanks Bastien signature.asc Description: This is a digitally signed message part.

Bug#1037219: Uploaded imagemagick/8:6.9.11.60+dfsg-1.3+deb11u2

2023-12-29 Thread Bastien Roucariès
Hi, I have just uploaded Bastien signature.asc Description: This is a digitally signed message part.

Bug#1055300: Reopen + fix

2023-12-17 Thread Bastien Roucariès
control: reopen -1 control: found -1 5.4.0-1 control: forwarded -1 https://github.com/ansible-collections/amazon.aws/pull/1704 control: tag -1 + fixed-upstream Hi, This bug lie in ansible... Reopen this bug and use the patch as fwd field. rouca signature.asc Description: This is a digitally

Bug#975405: libwabt.js => sucess but need policy and help

2023-11-13 Thread Bastien Roucariès
Le lundi 13 novembre 2023, 11:18:42 UTC Markus Koschany a écrit : > Hey, > > Am Montag, dem 13.11.2023 um 09:19 + schrieb Bastien Roucariès: > > [...] > > Apo can I add myself to your package ? Do you care to comaintain with > > javascript team ? > > I

Bug#1008017: audiofile: CVE-2022-24599/CVE-2019-13147 Fix

2023-11-12 Thread Bastien Roucariès
Le samedi 11 novembre 2023, 18:22:41 UTC Bastien Roucariès a écrit : > control: tags -1 + patch > > Hi, > > Could you apply the merge request > https://salsa.debian.org/multimedia-team/audiofile/-/merge_requests/5 and > made a release ? > > It fix the two CVE >

Bug#1008017: audiofile: CVE-2022-24599/CVE-2019-13147 Fix

2023-11-11 Thread Bastien Roucariès
control: tags -1 + patch Hi, Could you apply the merge request https://salsa.debian.org/multimedia-team/audiofile/-/merge_requests/5 and made a release ? It fix the two CVE Bastien signature.asc Description: This is a digitally signed message part.

Bug#1041112: Merge request

2023-11-11 Thread Bastien Roucariès
control: tags -1 + pending I have a merge request waiting here Plan a NMU/7 https://salsa.debian.org/multimedia-team/sox/-/merge_requests?scope=all=opened rouca signature.asc Description: This is a digitally signed message part.

Bug#1055370: Important for a few package: add security support

2023-11-08 Thread Bastien Roucariès
Hi, I have one package that fail actually due to this. A CVE was fixed by coordinating a fix between rmagick and imagemagick and I test that the CVE is closed using an autopkgtest I believe also it is important from a security point of view to add fix for security issue Bastien

Bug#1055585: ITP: node-envinfo -- Generate reports of the common details used by Node.js packages

2023-11-08 Thread Bastien Roucariès
Package: wnpp Severity: important Owner: Bastien Roucariès X-Debbugs-Cc: debian-de...@lists.debian.org * Package name: node-envinfo Version : 7.11.0+~cs13.4.1 Upstream Contact: https://github.com/tabrindle/envinfo#readme https://github.com/sindresorhus/os-name

Bug#1055346: dh-nodejs: should provide dh_nodejs_autodocs

2023-11-04 Thread Bastien Roucariès
Package: dh-nodejs Version: 0.15.15 Severity: important Dear Maintainer, dh-nodejs should provide dh-nodejs-autodocs -- System Information: Debian Release: trixie/sid APT prefers testing-debug APT policy: (900, 'testing-debug'), (900, 'testing') Architecture: amd64 (x86_64) Foreign

Bug#1055328: node-minimatch: could not build using webpack

2023-11-04 Thread Bastien Roucariès
Package: node-minimatch Version: 9.0.3-4 Severity: serious Justification: FTBFS other package Dear Maintainer, I could not build node-envinfo due to the trick done for default export only for require. Webpack do a mix of two and do not find the import default... Therefore it is required to

Bug#1055172: python3 should recommend netbase

2023-11-01 Thread Bastien Roucariès
Package: python3 Version: 3.11.4-5+b1 Severity: important Tags: newcomer Dear Maintainer, I order to avoid some strange error in autopkgtest of python related package, could be possible to recommend netbase ? It is needed for acessing /etc/services and well known port/host Bastien -- System

Bug#1055103: webpack: split env

2023-10-31 Thread Bastien Roucariès
Package: webpack Version: 5.76.1+dfsg1+~cs17.16.16-1 Severity: important Dear Maintainer, I think the way to go is to split env from webpack env need webpack to build but need a few package Yadd what do you think ? Bastien signature.asc Description: This is a digitally signed message part.

Bug#1055053: RM: {imagemagick-doc, imagemagick-common} [all] -- ROM; removed from source package

2023-10-30 Thread Bastien Roucariès
Package: ftp.debian.org Severity: normal User: ftp.debian@packages.debian.org Usertags: remove X-Debbugs-Cc: imagemag...@packages.debian.org Control: affects -1 + src:imagemagick Please remove this two transitionnal package Thanks Bastien

Bug#1054444: golang-github-facebook-ent: website is build with Docusaurus not packaged for debian

2023-10-24 Thread Bastien Roucariès
control: retitle -1 golang-github-facebook-ent: include non free font Calibre Le mardi 24 octobre 2023, 06:13:41 UTC Cyril Brulebois a écrit : > Hi Bastien, > > Bastien Roucariès (2023-10-23): > > Source: golang-github-facebook-ent > > Version: 0.5.4-3 > > Severi

Bug#1054433: node-puppeteer: website is build with Docusaurus not packaged for debian

2023-10-24 Thread Bastien Roucariès
control: retitle -1 fasttext: website is build with Docusaurus not packaged for debian Le mardi 24 octobre 2023, 06:41:55 UTC Andrius Merkys a écrit : > Hi, > > On 2023-10-23 22:06, Bastien Roucariès wrote: > > Source: fasttext > > Source package names in Subject an

Bug#1054432: [Pkg-javascript-devel] Bug#1054432: node-puppeteer: website is build with Docusaurus not packaged for debian

2023-10-24 Thread Bastien Roucariès
control: retitle -1 node-katex: website is build with Docusaurus not packaged for debian Le mardi 24 octobre 2023, 06:40:59 UTC Andrius Merkys a écrit : > Hi, > > On 2023-10-23 22:04, Bastien Roucariès wrote: > > Source: node-katex > > Source package names in Subject an

Bug#1054444: golang-github-facebook-ent: website is build with Docusaurus not packaged for debian

2023-10-23 Thread Bastien Roucariès
Source: golang-github-facebook-ent Version: 0.5.4-3 Severity: serious Tags: ftbfs Justification: FTBFS Control: block -1 by 1054426 Dear Maintainer, The documentation is build with docusaurus. See website directory https://sources.debian.org/src/golang-github-facebook-ent/0.5.4-3/doc/website/

Bug#1054443: node-graphql: website is build with Docusaurus not packaged for debian

2023-10-23 Thread Bastien Roucariès
Source: node-graphql Version: 16.8.1-1 Severity: serious Tags: ftbfs Justification: FTBFS Control: block -1 by 1054426 Dear Maintainer, The documentation is build with docusaurus. See website directory https://sources.debian.org/src/node-graphql/16.8.1-1/website/src/pages/index.jsx/?hl=2#L2

Bug#1054440: reassign

2023-10-23 Thread Bastien Roucariès
control: reassign -1 ts-node signature.asc Description: This is a digitally signed message part.

Bug#1054441: node-ts-jest: website is build with Docusaurus not packaged for debian

2023-10-23 Thread Bastien Roucariès
Source: node-ts-jest Version: 29.1.1+~cs0.2.6-2 Severity: serious Tags: ftbfs Justification: FTBFS Control: block -1 by 1054426 Dear Maintainer, The documentation is build with docusaurus. See website directory https://sources.debian.org/data/main/n/node-ts-jest/29.1.1%2B~cs0.2.6-2/website/

Bug#1054440: ts-node: website is build with Docusaurus not packaged for debian

2023-10-23 Thread Bastien Roucariès
Source: ts-nod Version: 10.9.1+~cs8.8.29-1 Severity: serious Tags: ftbfs Justification: FTBFS Control: block -1 by 1054426 Dear Maintainer, The documentation is build with docusaurus. See website directory https://sources.debian.org/src/ts-node/10.9.1%252B~cs8.8.29-1/website/ You should

Bug#1054439: node-rjsf: website is build with Docusaurus not packaged for debian

2023-10-23 Thread Bastien Roucariès
Source: node-rjsf Version: 5.6.2+~5.0.1-1 Severity: serious Tags: ftbfs Justification: FTBFS Control: block -1 by 1054426 Dear Maintainer, The documentation is build with docusaurus. See website directory

Bug#1054438: golang-entgo-ent: website is build with Docusaurus not packaged for debian

2023-10-23 Thread Bastien Roucariès
Source: golang-entgo-ent Version: 0.11.3-4 Severity: serious Tags: ftbfs Justification: FTBFS Control: block -1 by 1054426 Dear Maintainer, The documentation is build with docusaurus. See website directory https://sources.debian.org/data/main/g/golang-entgo-ent/0.11.3-4/doc/website You should

Bug#1054437: golang-ariga-atlas: website is build with Docusaurus not packaged for debian

2023-10-23 Thread Bastien Roucariès
Source: golang-ariga-atlas Version: 0.7.2-2 Severity: serious Tags: ftbfs Justification: FTBFS Control: block -1 by 1054426 Dear Maintainer, The documentation is build with docusaurus. See website directory https://sources.debian.org/src/golang-ariga-atlas/0.7.2-2/doc/website/ You should

Bug#1054435: node-react-redux: website is build with Docusaurus not packaged for debian

2023-10-23 Thread Bastien Roucariès
Source: node-react-redux Version: 8.1.2+dfsg1+~cs1.2.3-1 Severity: serious Tags: ftbfs Justification: FTBFS Control: block -1 by 1054426 Dear Maintainer, The documentation is build with docusaurus. See website directory You should repack or package docusaurus and rebuild Bastien

Bug#1054434: node-redux: website is build with Docusaurus not packaged for debian

2023-10-23 Thread Bastien Roucariès
Source: node-redux Version: 4.2.1-1 Severity: serious Tags: ftbfs Justification: FTBFS Control: block -1 by 1054426 Dear Maintainer, The documentation is build with docusaurus. See website directory You should repack or package docusaurus and rebuild Bastien signature.asc Description: This

Bug#1054433: node-puppeteer: website is build with Docusaurus not packaged for debian

2023-10-23 Thread Bastien Roucariès
Source: fasttext Version: 0.9.2+ds-5 Severity: serious Tags: ftbfs Justification: FTBFS Control: block -1 by 1054426 Dear Maintainer, The documentation is build with docusaurus. See website directory You should repack or package docusaurus and rebuild Bastien signature.asc Description:

Bug#1054432: node-puppeteer: website is build with Docusaurus not packaged for debian

2023-10-23 Thread Bastien Roucariès
Source: node-katex Version: 0.16.4+~cs6.1.0-1 Severity: serious Tags: ftbfs Justification: FTBFS Control: block -1 by 1054426 Dear Maintainer, The documentation is build with docusaurus. See: https://sources.debian.org/src/node-katex/0.16.4+~cs6.1.0-1/website/ You should repack or package

Bug#1054431: node-puppeteer: website is build with Docusaurus not packaged for debian

2023-10-23 Thread Bastien Roucariès
Source: node-puppeteer Version: 13.4.1+dfsg-2 Severity: serious Tags: ftbfs Justification: FTBFS Control: block -1 by 1054426 Dear Maintainer, The documentation is build with docusaurus. See: https://sources.debian.org/src/node-puppeteer/13.4.1+dfsg-2/website/ You should repack or package

Bug#1054426: RFP: docusaurus -- Docusaurus is a project for building, deploying, and maintaining open source project websites easily

2023-10-23 Thread Bastien Roucariès
Package: wnpp Severity: wishlist * Package name: docusaurus Version : 1 Upstream Contact: Facebook, Inc. and its affiliates. (Facebook, Inc. and its affiliates.) * URL : https://github.com/facebook/docusaurus * License : expat Programming Lang: javascript

  1   2   3   4   5   6   >