Bug#918727: [Pkg-openssl-devel] Bug#918727: Bug#918727: openssl.cnf incompatible with libssl1.0.2, libssl1.0.0

2020-04-21 Thread Kurt Roeckx
On Tue, Apr 21, 2020 at 09:18:05PM +0200, Sebastian Andrzej Siewior wrote: > On 2020-04-15 13:38:23 [+0200], Kurt Roeckx wrote: > > On Wed, Apr 15, 2020 at 12:19:24PM +0100, Simon McVittie wrote: > > > > > > I think setting defaults in the shared library itself

Bug#918727: [Pkg-openssl-devel] Bug#918727: Bug#918727: openssl.cnf incompatible with libssl1.0.2, libssl1.0.0

2020-04-15 Thread Kurt Roeckx
uld merge those patches once they've all been merged. Kurt

Bug#954371: [Pkg-openssl-devel] Bug#954371: libio-socket-ssl-perl: FTBFS since openssl 1.1.1e

2020-03-31 Thread Kurt Roeckx
ests failed because they ignored the error, but I guess they can also fail because they a different error than the one they expected. Kurt

Bug#954371: [Pkg-openssl-devel] Bug#954371: libio-socket-ssl-perl: FTBFS since openssl 1.1.1e

2020-03-31 Thread Kurt Roeckx
On Tue, Mar 31, 2020 at 09:49:51PM +0200, Salvatore Bonaccorso wrote: > Hi Kurt, > > On Tue, Mar 31, 2020 at 06:46:44PM +0200, Kurt Roeckx wrote: > > On Tue, Mar 31, 2020 at 09:03:01AM +0200, Salvatore Bonaccorso wrote: > > > On Sat, Mar 21, 2020 at 08:31:21PM +010

Bug#954371: [Pkg-openssl-devel] Bug#954371: libio-socket-ssl-perl: FTBFS since openssl 1.1.1e

2020-03-31 Thread Kurt Roeckx
ues/11388 > https://github.com/openssl/openssl/issues/11378 There might be a misunderstanding. First, in 3.0, we will reintroduce this new behaviour. We always returned an error in case of an unexpected EOF. We changed the error code of that case. Applications should never trigger the unexpected EOF and should get fixed not to trigger it. Kurt

Bug#951347: Bug status

2020-03-15 Thread kurt
Hi Manu, March 12, 2020 7:09 AM, "Emmanuel Kasper" wrote: > Hi Kurt > Thank you for reviving the vagrant-lxc boxes, I wanted to ask, what do > you think we should do about > https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=951347 ? > > The bug is critical

Bug#953491: zfs-auto-snapshot: Can't snapshot when com.sun:auto-snapshot is set to false

2020-03-09 Thread Kurt Roeckx
e the name directly. But giving the name directly, with or without --default-exclude also doesn't create a new snapshot. Kurt

Bug#917522: pcmanfm: Some keyboard navigation shortcuts in PCManFM no longer working

2020-02-23 Thread Kurt Meyer
When will this get fixed or is it even fixable? It's been over a year.

Bug#951799: rng-tools: No longer supports some options

2020-02-21 Thread Kurt Roeckx
on the screen, things like strace don't actually get to see the invocation. All that you systemd shows is that it exited with 1. I really need the --rng-entropy option. My RNG does not provide much entropy. Kurt

Bug#950754: unbound: fails to parse old config file with do-not-query-localhost

2020-02-05 Thread Kurt Roeckx
Package: unbound Version: 1.9.6-1 Severity: serious Hi, After upgrade to 1.9.6-1, unbound did no longer start. It did not log anything about this in any log file. I have a config that says: do-not-query-localhost: no It now returns a syntax error for that. Kurt

Bug#948800: [Pkg-openssl-devel] Bug#948800: openssl: "CipherString = DEFAULT@SECLEVEL=2" has no separator.

2020-01-13 Thread Kurt Roeckx
On Tue, Jan 14, 2020 at 12:14:35AM +0900, labunix wrote: > By mistake? CipherString = DEFAULT@SECLEVEL=2 > Correctly, CipherString = DEFAULT:@SECLEVEL=2 You're right that the correct way to write it is with a : as seperator, but it's parsed correctly. Kurt

Bug#947101: pyside2: New upstream version 5.14.0 available

2019-12-20 Thread Kurt Kremitzki
Source: pyside2 Severity: wishlist Content-Type: text/plain; charset="us-ascii" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit From: Kurt Kremitzki To: Debian Bug Tracking System Subject: pyside2: New upstream version 5.14.0 available Message-ID: <157689164794.467489.117988

Bug#945041: openfoam: severe build time regression

2019-12-18 Thread Kurt Kremitzki
On Thursday, December 19, 2019 12:11:33 AM CST Adrian Bunk wrote: > On Mon, Nov 18, 2019 at 10:17:10PM +0100, Julien Cristau wrote: > > Source: openfoam > > Version: 1906+dfsg1-1 > > Severity: serious > > > > Hi, > > > > Looking at https://buildd.debian.org/status/logs.php?pkg=openfoam the > >

Bug#946173: ddgr: Please include zsh and fish completions in package

2019-12-04 Thread Kurt Kremitzki
Package: ddgr Version: 1.7+git20190928.bccdc92-1 Severity: wishlist Dear Maintainer, The ddgr upstream includes completion files for zsh and fish in addition to bash which is currently the only one included in the Debian package. Please consider including these files. Since I am still only a

Bug#940712: obs-studio: wrong version number in title bar and about dialog

2019-11-18 Thread Kurt Kartaltepe
Please fix the packaging to properly assign the package version at run-time. You can reference the following patch: --- a/debian/rules +++ b/debian/rules @@ -13,6 +13,7 @@ override_dh_auto_configure: dh_auto_configure -- \ -DOBS_MULTIARCH_SUFFIX=/$(DEB_HOST_MULTIARCH) \

Bug#943415: apache2: Disable TLS 1.0 and 1.1 by default

2019-10-24 Thread Kurt Roeckx
actually set it. Could you change the default to: SSLProtocol all -SSLv2 -SSLv3 -TLSv1 -TLSv1.1 It might not fix it for everybody. I have an /etc/letsencrypt/options-ssl-apache.conf file that also has an SSLProtocol line in it. Kurt

Bug#942193: dwz: dh_dwz freecad build regression: write_die: Assertion `value && refdcu->cu_kind != CU_ALT' failed.

2019-10-13 Thread Kurt Kremitzki
Hi Matthias, On Saturday, October 12, 2019 12:34:30 PM CDT Matthias Klose wrote: > Control: tags -1 + moreinfo > Control: severity -1 grave > > please could you attach the binary, or put it somewhere on the web? > Sorry, which binary are you referring to? Here are a few links in the meantime

Bug#942193: dwz: dh_dwz freecad build regression: write_die: Assertion `value

2019-10-11 Thread Kurt Kremitzki
Just as an addendum, I just tested the build with sbuild in a dirty unstable-i386 schroot where I had installed dwz 0.12-3 from stable, and the build succeeds, where it fails with 0.13-1.

Bug#942193: dwz: dh_dwz freecad build regression: write_die: Assertion `value && refdcu->cu_kind != CU_ALT' failed.

2019-10-11 Thread Kurt Kremitzki
Package: dwz Version: 0.12-3 Severity: critical Justification: breaks unrelated software Dear Maintainer, I'm not certain if critical is the correct severity, but it seems dwz is causing a build regression in freecad. As part of Python 3 removal, I dropped the Python 2 build and packages in a

Bug#941987: [Pkg-openssl-devel] Bug#941987: libssl1.1: Ciphers AES-*-CBC-HMAC-* are missing in libssl 1.1.1d, but available in 1.1.1c

2019-10-10 Thread Kurt Roeckx
On Wed, Oct 09, 2019 at 09:22:25AM +0200, Greg wrote: > Confirmed that fixes this issue, thanks ! Is this important enough you want this fixed in stable soon? Kurt

Bug#941987: [Pkg-openssl-devel] Bug#941987: libssl1.1: Ciphers AES-*-CBC-HMAC-* are missing in libssl 1.1.1d, but available in 1.1.1c

2019-10-08 Thread Kurt Roeckx
this something that's fixed by https://github.com/openssl/openssl/pull/10074? Kurt

Bug#941987: [Pkg-openssl-devel] Bug#941987: libssl1.1: Ciphers AES-*-CBC-HMAC-* are missing in libssl 1.1.1d, but available in 1.1.1c

2019-10-08 Thread Kurt Roeckx
There are no HMAC based ciphers, see: https://www.iana.org/assignments/tls-parameters/tls-parameters.xhtml#tls-parameters-4 Kurt

Bug#941665: [Pkg-openssl-devel] Bug#941688: openssl 1.1.1d security update breaks openssh login on old kernels

2019-10-03 Thread Kurt Roeckx
es of using seccomp that one of the libraries you're using might start to do new calls. Kurt

Bug#941665: [Pkg-openssl-devel] Bug#941665: libssl1.1: Breaks ssh privsep_preauth in some circumstances

2019-10-03 Thread Kurt Roeckx
those calls. Kurt

Bug#923083: closed by Scott Kitterman (Bug#923083: fixed in postfix 3.4.7-1)

2019-09-23 Thread Kurt Roeckx
s, add ca-certificates to > postfix >Recommends. Closes: #923083 Have you check that that actually works? I doubt it does, because it doesn't actually have any files in it, just a directory, and it doesn't have the hashes stored in it. You need /etc/ssl/certs/. Kurt

Bug#940547: [Pkg-openssl-devel] Bug#940547: python-cryptography: Testsuite fails with OpenSSL 1.1.1d

2019-09-17 Thread Kurt Roeckx
On Tue, Sep 17, 2019 at 08:32:28AM +0200, Sebastian Andrzej Siewior wrote: > Package: python-cryptography > Version: 2.6.1-3 > Severity: serious > > The upload of latest openssl 1.1.1d triggert three testsuite failures in > python-cryptography [0] > > - _

Bug#931568: [Pkg-openssl-devel] Bug#931568:

2019-09-15 Thread Kurt Roeckx
t; error:141A318A:SSL routines:tls_process_ske_dhe:dh key too small This is clearly a different issue than the original bug report. The problem here is that you're trying to connect to an insecure server. See /usr/share/doc/libssl1.1/NEWS.Debian.gz for more information. Kurt

Bug#935259: self-service give-back doesn't properly validate client certificates

2019-08-22 Thread Kurt Roeckx
On Thu, Aug 22, 2019 at 04:00:57PM +0200, Mattia Rizzolo wrote: > On Wed, Aug 21, 2019 at 06:38:43PM +0200, Kurt Roeckx wrote: > > On Wed, Aug 21, 2019 at 10:10:50AM +0200, Mattia Rizzolo wrote: > > > a > > > somewhat less authoritative method is checking the statu

Bug#935133: [Pkg-openssl-devel] Bug#935133: Bug#935133: slow TLS handshake renders browsers and email client unusable

2019-08-21 Thread Kurt Roeckx
port anything like that. With the switch to buster, lots of things changed including the kernel. I guess most of your traffic is TLS based, so I'm not even sure it's only TLS connections that are affected. The problem can be in any of the components. If you have the problem again, I suggest to use a tool like wireshark or tcpdump to monitor the network traffic. You can at least look at which side seems to be slow to respond. I don't really know what to look for. Kurt

Bug#935259: self-service give-back doesn't properly validate client certificates

2019-08-21 Thread Kurt Roeckx
On Wed, Aug 21, 2019 at 10:10:50AM +0200, Mattia Rizzolo wrote: > a > somewhat less authoritative method is checking the status of the user in > ldap, but that might lag behind DAM decisions, etc. There is no way to check if someone is a DD or not in ldap, there never was. Kurt

Bug#935133: [Pkg-openssl-devel] Bug#935133: slow TLS handshake renders browsers and email client unusable

2019-08-19 Thread Kurt Roeckx
how that should have any effect. Is the whole PC slower, or the browsers, or just the connection? And a reboot solves the problem? Did you try to look at network traffic with something like wireshark? Kurt

Bug#927920: Plymouth 0.9.4-1.1 Prevents Login Under Kernel 4.19.0-4 on ASUS ET2322

2019-08-16 Thread Kurt Meyer
This bug can be closed. A Plymouth upgrade fixed the issue or there may not have even been an issue. I experienced the same or similar issue later, including under Debian Stable, and just recently discovered that pressing the right menu button on the ASUS ET2322 AIO monitor displays the login

Bug#934724: Kernel Upgrade to 5.2.0-2 Appears to Break WiFi Using Broadcom BCM4352 Adapter

2019-08-16 Thread Kurt Meyer
You can close this. There is no bug. Evidently, the post install script either didn't, or failed to, update the kernel to include the wireless module. Steps I took to resolve the issue: 1. Install the module-assistant package: sudo apt install module-assistant 2. From the command line, run:

Bug#934836: [Pkg-openssl-devel] Bug#934836: Request to upload OpenSSL version 3.0.0 to experimental

2019-08-15 Thread Kurt Roeckx
atch to build > properly. It would be helpful for me when this version of OpenSSL would > be in debian. There hasn't been any release of OpenSSL 3.0, there isn't even an alpha release yet. Development upstream is still very active making large changes. I don't think this is a good time to upload this to Debian. Kurt

Bug#934453: curl: SSL

2019-08-14 Thread Kurt Roeckx
ut TLS to know what the issue is. Kurt

Bug#934724: bugs.debian.org: Kernel Upgrade to 5.2.0-2 Appears to Break WiFi Using Broadcom BCM4352 Adapter

2019-08-13 Thread Kurt Meyer
Package: linux-headers-5.2.0-2-common:amd64 (5.2.7-1, automatic), linux-image-5.2.0-2-amd64:amd64 (5.2.7-1, automatic), linux-headers-5.2.0-2-amd64:amd64 (5.2.7-1, automatic), linux-kbuild-5.2:amd64 (5.2.7-1, automatic) Severity: important Dear Maintainer, Kernel was upgraded to 5.2.0-2 on

Bug#867067: nfs-kernel-server: nfsdcltrack fails to init database

2019-08-13 Thread Kurt Roeckx
my understanding is that it's dropping priviledges, and /var/lib/nfs is owned by statd, but nfsdcltrack is probably run as root instead. Kurt

Bug#934453: [Pkg-openssl-devel] Bug#934453: curl: SSL routines:tls12_check_peer_sigalg:wrong signature type

2019-08-12 Thread Kurt Roeckx
On Mon, Aug 12, 2019 at 10:04:11PM +0200, Sebastian Andrzej Siewior wrote: > On 2019-08-12 18:22:38 [+0200], Kurt Roeckx wrote: > > On Mon, Aug 12, 2019 at 10:42:06AM +0200, Johannes Schauer wrote: > > > > > curl: (35) error:1414D172:SSL > > > > >

Bug#934453: [Pkg-openssl-devel] Bug#934453: curl: SSL routines:tls12_check_peer_sigalg:wrong signature type

2019-08-12 Thread Kurt Roeckx
2759. Their software is buggy, most likely not supported. They should probably talk to their vendor to get an update. Kurt

Bug#932768: contributors.debian.org: voter info is old

2019-07-22 Thread Kurt Roeckx
ed me to do this, and wrote me a script for it, called "parse". I'm not sure if I needed to modify it or not, I think I did. The only thing I can currently find is his mail from 3 Aug 2017. It might be on my old laptop. It parses the *_voters.txt file and submits that. Kurt

Bug#932200: Heap Buffer Overflow in libmad0

2019-07-16 Thread Kurt Roeckx
you actually tried this with the latest version of libmad shipped in Debian? The upstream version contains various bugs that have a CVE assigned that have been fixed in Debian. After the last fix I did, I also ran a fuzzer on it myzelf for a few weeks that didn't find anything with code that looks a lot like your code. Kurt

Bug#902343: osifont

2019-06-25 Thread Kurt Kremitzki
Hi Gürkan, On 6/25/19 3:38 AM, Gürkan Myczko wrote: > Hi Kurt and Martin > > Kurt: please go ahead. How's progress? haven't found it on salsa.d.o? If > you're on irc, there's #debian-fonts > > Martin: I don't think it's similar at all, so I don't see any objections

Bug#930563: (no subject)

2019-06-24 Thread Kurt Kremitzki
severity 930563 important thanks Downgrading severity since this issue is not "rendering it completely unusable to everyone."

Bug#930224: gnupg: Switch to getentropy()/getrandom()

2019-06-08 Thread Kurt Roeckx
Package: gnupg Severity: wishlist Hi, Could you switch from using /dev/random to using either getentropy() or getrandom()? Kurt

Bug#930061: [Pkg-openssl-devel] Bug#930061: openssl: causes regression in kronosnet memory checks

2019-06-06 Thread Kurt Roeckx
you received contains full entropy. Please don't do that, it does not contain that much entropy. If you really feel like it somehow helps the RNG, use RAND_add() and set randomness to 0. Or just remove that line. Kurt

Bug#929903: openssl: m2crypto test case regression

2019-06-04 Thread Kurt Roeckx
ror, shouldn't it? Did something change related to a no padding test? If there is no padding, as far as I know decryption should always work. The sslv23_padding code in OpenSSL that checks the padding was broken, it returned an error in the case it should return ok. Kurt

Bug#929903: openssl: m2crypto test case regression

2019-06-04 Thread Kurt Roeckx
probably passes. Would it be likely that > m2crypto tested that an openssl bug existed which got fixed? I have no idea what they're testing, but I expect that if you just encrypt something, that decryting that should work. Kurt

Bug#929903: [Pkg-openssl-devel] Bug#929903: openssl: m2crypto test case regression

2019-06-02 Thread Kurt Roeckx
t; | Fix memory overrun in rsa padding check functions > | > | Fixes #8364 and #8357 > | > | Reviewed-by: Kurt Roeckx > | (Merged from https://github.com/openssl/openssl/pull/8365) > | > | (cherry picked from commit d7f5e5ae6d53f1387a42d210806cf5e9ed0882d6) >

Bug#928832: [PATCH] elfutils: FTBFS on riscv64

2019-05-28 Thread Kurt Roeckx
e for a non-release architecture and doesn't have any effect at > > all on any release architecture. At the same time it is very > > important for the riscv64 port as without the patch we cannot make > > progress with d-i on riscv64, and having a working d-i is a > > sig

Bug#927808:

2019-05-27 Thread Kurt Kremitzki
On 5/27/19 2:45 AM, Nico Schlömer wrote: >> I was going to go ahead and do a +really upload with this fix either today >> or this weekend. > > This is getting rather urgent now. Do you need any help? > No, I just was waiting for the response on #929108. I'm traveling with poor connection

Bug#927808: gmsh: FTBFS in buster (/usr/include/occt/Standard_Version.hxx cannot be read)

2019-05-17 Thread Kurt Kremitzki
Hello Ansgar, On 5/17/19 4:14 AM, Ansgar wrote: > On Sun, 2019-05-05 at 18:08 +0100, Rebecca N. Palmer wrote: >> The fix was probably removing the line >> -DOCC_INC:STRING="/usr/include/occt" \ >> from debian/rules (commit 3556b0a, but please don't include the >> reformatting), but I have not

Bug#928326: matrix-synapse: Federation issues with 0.99.2

2019-05-05 Thread Kurt Roeckx
On Sun, May 05, 2019 at 10:18:56AM +0200, Andrej Shadura wrote: > Hu Kurt, > > On Thu, 2 May 2019 09:03:53 +0200 Kurt Roeckx wrote: > > I've been told that there are federation issues in 0.99.2 and that > > I should upgrade to 0.99.3. > > I have asked the upstrea

Bug#926500: freecad: FreeCad crashes when attemting to edit a existing sketch

2019-05-02 Thread Kurt Kremitzki
Hi Pere, On 5/2/19 2:28 AM, Pere Nubiola Radigales wrote: > It worked.  > Pere Nubiola Radigales > Telf: +34 656316974 > e-mail: p...@nubiola.cat >            pnubi...@fsfe.org >            pere.nubi...@gmail.com

Bug#928326: matrix-synapse: Federation issues with 0.99.2

2019-05-02 Thread Kurt Roeckx
Package: matrix-synapse Version: 0.99.2-3 Severity: important Hi, I've been told that there are federation issues in 0.99.2 and that I should upgrade to 0.99.3. Kurt

Bug#928313: apt-key check for revoked keys

2019-05-01 Thread Kurt Roeckx
that a key is revoked other than manually updating it. Kurt

Bug#927879: ca-certificates should not hardcode QuoVadis certificate authorities in /etc/ca-certificates.conf

2019-04-25 Thread Kurt Roeckx
the software is broken. So far "normal use", we install the list as provided by Mozilla as the default. Kurt

Bug#927920: Plymouth 0.9.4-1.1 Prevents Login Under Kernel 4.19.0-4 on ASUS ET2322

2019-04-24 Thread Kurt Meyer
Package: plymouth Version: 0.9.4-1.1 Severity: important Dear Maintainer, On 04/17/2019, package desktop-base was to be upgraded from 10.0.0 to 10.0.2, also requiring the installation of package plymouth 0.9.4-1.1. Upon rebooting my computer, I got a few ACPI errors, which I always get, and

Bug#926500: freecad: FreeCad crashes when attemting to edit a existing sketch

2019-04-22 Thread Kurt Kremitzki
Hello Pere, This issue has also been reported in the FreeCAD forums, and there are two likely culprits. One user reported that temporarily moving the ~/.FreeCAD directory and then launching FreeCAD resulted in the issue no longer occurring, which would narrow the cause down to some file in

Bug#927437: unblock: openssl/1.1.1b-2

2019-04-19 Thread Kurt Roeckx
Package: release.debian.org User: release.debian@packages.debian.org Usertags: unblock Hi, Can you please unblock openssl. It fixes 2 important bugs. debdiff attached. Kurt diff -Nru openssl-1.1.1b/debian/changelog openssl-1.1.1b/debian/changelog --- openssl-1.1.1b/debian/changelog

Bug#926814: deal.ii: Upgrade build dependency from liboce to libocct

2019-04-10 Thread Kurt Kremitzki
Source: deal.ii Severity: normal Dear Maintainer, Currently deal.ii builds against liboce, OpenCASCADE Community Edition, which is based on OpenCASCADE 6.9. Recently the mainline version of OpenCASCADE, libocct (OpenCASCADE Technology) was reintroduced to Debian. The current libocct version is

Bug#926315: [Pkg-openssl-devel] Bug#926315: Bug#926315: Bug#926315: openssl: wget https://google.com fails in d-i

2019-04-03 Thread Kurt Roeckx
On Thu, Apr 04, 2019 at 12:48:22AM +0200, Cyril Brulebois wrote: > Hi, > > And thanks for digging… > > Kurt Roeckx (2019-04-04): > > On Thu, Apr 04, 2019 at 12:07:37AM +0200, Kurt Roeckx wrote: > > > On Wed, Apr 03, 2019 at 11:57:12PM +0200, Kurt Roeckx wrote: >

Bug#926315: [Pkg-openssl-devel] Bug#926315: Bug#926315: Bug#926315: openssl: wget https://google.com fails in d-i

2019-04-03 Thread Kurt Roeckx
On Thu, Apr 04, 2019 at 12:07:37AM +0200, Kurt Roeckx wrote: > On Wed, Apr 03, 2019 at 11:57:12PM +0200, Kurt Roeckx wrote: > > On Wed, Apr 03, 2019 at 11:23:19PM +0200, Cyril Brulebois wrote: > > > 1726 write(2, "Disabling SSL due to encountered errors.\n", 41)

Bug#926315: [Pkg-openssl-devel] Bug#926315: Bug#926315: openssl: wget https://google.com fails in d-i

2019-04-03 Thread Kurt Roeckx
On Wed, Apr 03, 2019 at 11:57:12PM +0200, Kurt Roeckx wrote: > On Wed, Apr 03, 2019 at 11:23:19PM +0200, Cyril Brulebois wrote: > > 1726 write(2, "Disabling SSL due to encountered errors.\n", 41) = 41 > > wget in buster actually seems to be linked to gnutls, and tr

Bug#926315: [Pkg-openssl-devel] Bug#926315: openssl: wget https://google.com fails in d-i

2019-04-03 Thread Kurt Roeckx
b.com/openssl/openssl/pull/7969) But the commit message at least indicates that it should just continue. wget in buster actually seems to be linked to gnutls, and trying other applications just seem to work without config file. Kurt

Bug#926315: [Pkg-openssl-devel] Bug#926315: openssl: wget https://google.com fails in d-i

2019-04-03 Thread Kurt Roeckx
ch file does not > > exists. I guess that maybe libssl1.1-udeb should ship an empty > > openssl.cnf there, or ship the regular deb's /etc/ssl/openssl.cnf in > > /usr/lib/ssl/openssl.cnf in the udeb. > > interresting. > Kurt: should we provide the openssl.cnf and move it f

Bug#925277: freecad: there's no manpage entry

2019-03-22 Thread Kurt Kremitzki
Hello Salman, On 3/22/19 5:58 AM, Salman Mohammadi wrote: > > Package: freecad > Version: 0.18~pre1+dfsg1-5 > Severity: normal > > Dear Maintainer, > > There is no manpage entry after installing freecad but there is one here > *debian/freecad.1*, which needs to be updated. But I suppose having

Bug#900152: nsca-ng: FTBFS against openssl 1.1.1

2019-03-20 Thread Kurt Roeckx
On Tue, Mar 19, 2019 at 11:21:19PM +0100, Holger Weiß wrote: > * Kurt Roeckx [2019-03-19 22:59]: > > On Tue, Mar 19, 2019 at 10:28:06PM +0100, Holger Weiß wrote: > > > Yes, it's an OpenSSL bug. If TLSv1.3 is used, SSL_get_psk_identity()¹ > > > unexpectedly returns NULL

Bug#900152: nsca-ng: FTBFS against openssl 1.1.1

2019-03-19 Thread Kurt Roeckx
SL bug. If TLSv1.3 is used, SSL_get_psk_identity()¹ > unexpectedly returns NULL. I now avoid the function to work around the > issue. This is documented here: https://wiki.openssl.org/index.php/TLS1.3#PSKs Kurt

Bug#924621: [Pkg-openssl-devel] Bug#924621: Bug#924621: openssl 1.1.1b-1 make fetchmail unusable

2019-03-18 Thread Kurt Roeckx
On Mon, Mar 18, 2019 at 01:55:50PM +0900, Atsuhito Kohda wrote: > Hi Kurt, > > > So from what I understand, the problem is really on the dovecot > > side. What does dovecot's log show? > > > > Dovecot can configure DH, which seems to default to: > > ssl_d

Bug#924621: [Pkg-openssl-devel] Bug#924621: Bug#924621: openssl 1.1.1b-1 make fetchmail unusable

2019-03-16 Thread Kurt Roeckx
On Sat, Mar 16, 2019 at 09:06:06AM +0900, Atsuhito Kohda wrote: > Hi Sebastian, > > On Fri, 15 Mar 2019 22:08:13 +0100, Sebastian Andrzej Siewior wrote: > > > Do you have somewhere more information what failed on the fetchmail > > side? > > Yes, I have error messages of fetchmail but they

Bug#923465: fixed in freecad 0.18~pre1+dfsg1-5

2019-03-12 Thread Kurt Kremitzki
Hi Robert, On 3/11/19 5:43 PM, Robert LeBlanc wrote: <-snip-> > rleblanc@riker:~/code$ sudo apt -t unstable install freecad <-snip-> Because of file replacements, it requires a `sudo apt full-upgrade`, this installation method won't work.

Bug#923465: fixed in freecad 0.18~pre1+dfsg1-5

2019-03-10 Thread Kurt Kremitzki
Hi Salman, On 3/10/19 9:05 AM, Salman Mohammadi wrote: > Dear Maintainer, > > > I could install this package (0.18~pre1+dfsg1-4) with no problem and > this bug seems to be resolved. But on the tracker page, this package has > been marked for autoremoval on 29 March, with this message: > >

Bug#899861: *prod* Please fix libid3tag bug #899861

2019-03-10 Thread Kurt Roeckx
sume our CVS repository is also gone. I did seems to have gotten the initial bug report, but it seems to have been lost in all the other mails. I'll make an upload soon. Kurt

Bug#923479: update-ca-certificates fails to create hashes under 32-bit ARM (qemu)

2019-02-28 Thread Kurt Roeckx
ils? Kurt

Bug#923412: freecad: After update to 0.18~pre1+dfsg1-4 freecd crashes after start

2019-02-27 Thread Kurt Kremitzki
Hello Rolf, On 2/27/19 2:01 PM, Rolf Wuerdemann wrote: > Package: freecad > Version: 0.18~pre1+dfsg1-4 > Severity: normal > > Dear Maintainer, > > after updating freecad (and subpackages) from 0.17 to 0.18~pre1, > freecad stalls after start with the message > <-snip-> This seems similar to an

Bug#920971: freecad: C++ exception on DXF import

2019-02-26 Thread Kurt Kremitzki
Hello Wookey, On Thu, 14 Feb 2019 23:04:23 + Wookey wrote: > On 2019-02-01 14:37 -0600, Kurt Kremitzki wrote: <-snip-> > > Thanks for looking into this so promptly and taking it > upstream. > > Posting the upstream link/bug number here would be useful. > >

Bug#923333: libp11-openssl1.1: Double free issue

2019-02-26 Thread Kurt Kanzenbach
Source: libp11-openssl1.1 Version: 0.4.4-4 Severity: important Tags: patch Control: forwarded -1 https://github.com/OpenSC/libp11/issues/185 Dear Maintainer, using the pkcs11 back end results in a double-free: kurt@kurt tmp % openssl dgst -sha256 -engine pkcs11 -keyform engine -sign "p

Bug#923083: postfix: Empty smtp_tls_CApath by default

2019-02-23 Thread Kurt Roeckx
Package: postfix Version: 3.3.2-1 Hi, It seems that by default smtp_tls_CApath is not set, which means by default postfix can't check that certificates are valid. Please set the default to /etc/certs/ssl, and add a Depends or Recommends on ca-certificates. Kurt

Bug#746426: Debian Bug#746426: marked as done (gcc: Enable -fasynchronous-unwind-tables on more arches.)

2019-02-17 Thread Kurt Roeckx
On Wed, Jan 23, 2019 at 07:54:57PM +0100, Kurt Roeckx wrote: > > But those pass at least run-backtrace-native: arm64, armel, armhf, > i386, ppc64el, s390x, powerpc, ppc64, sparc64 > > This means that for the arches we release for, mips* is the only > one that does not pass ru

Bug#922507: wml: Missing depends on libgd-perl

2019-02-17 Thread Kurt Roeckx
/usr/share/perl5 /usr/lib/x86_64-linux-gnu/perl/5.28 /usr/share/perl/5.28 /usr/local/lib/site_perl) at /tmp/wml.28518.tmp1 line 197. BEGIN failed--compilation aborted at /tmp/wml.28518.tmp1 line 197. It seems that this was part of wml in older versions, but not in the current version. Kurt

Bug#920971: freecad: C++ exception on DXF import

2019-02-01 Thread Kurt Kremitzki
Hello Wookey & Bernhard, Thanks for the bug report & investigation, respectively. I can also reproduce this bug in the just-uploaded-to-NEW freecad 0.18~pre1 as well. It may be a bug in OpenCASCADE, but it may also be a bug in the way we handle the exception, which we have to do sometimes. I

Bug#919138: wpasupplicant: Fails to connect to some Wifi networks on version 2:2.7-3

2019-01-30 Thread Kurt Meyer
wpasupplicant v2:2.7+git20190128+0c1e29f-1 seems to have fixed the issue here.  I'm using a Broadcom BCM4352 Wi-Fi card.

Bug#920458: python3-twisted: Incorrect dependencies on python3-attr

2019-01-25 Thread Kurt Roeckx
3-attr 16.3.0-1 installed. If I upgrade it to 17.4.0-2~bpo9+1, the problem goes away. I'm filing this against 17.4.0-2 since I think it applies to all versions, including the version in testing. Kurt

Bug#746426: Debian Bug#746426: marked as done (gcc: Enable -fasynchronous-unwind-tables on more arches.)

2019-01-23 Thread Kurt Roeckx
reopen 746426 reassign 746426 gcc-8 thanks On Wed, Jan 23, 2019 at 03:32:32PM +0100, Mark Wielaard wrote: > Hi Kurt, > > I saw Debian Bug#746426 was recently closed. > You originally wrote: > > > It seems that not all arches have -fasynchronous-unwind-tables > >

Bug#919707: matrix-synapse: Missing depends

2019-01-19 Thread Kurt Roeckx
On Sat, Jan 19, 2019 at 12:24:45PM +0300, sergio wrote: > On Fri, 18 Jan 2019 23:02:28 +0100 Kurt Roeckx wrote: > > > You have python3-msgpack (>= 0.3.0), while it should be be >= 0.4.2. > > > The python3-msgpack dependency is absent. > > % apt s

Bug#919707: matrix-synapse: Missing depends

2019-01-18 Thread Kurt Roeckx
On Fri, Jan 18, 2019 at 10:34:36PM +0100, Andrej Shadura wrote: > Hi, > > On Fri, 18 Jan 2019 at 22:15, Kurt Roeckx wrote: > > On Fri, Jan 18, 2019 at 08:49:01PM +0100, Andrej Shadura wrote: > > > found 919707 0.34.1.1-2~bpo9+1 > > > notfound 919707 0.34.1.1-2 &

Bug#919707: matrix-synapse: Missing depends

2019-01-18 Thread Kurt Roeckx
kports. You should always set the correct versioned requirements, even if testing already contains the version you need. This will ensure that partial upgrades work properly. It will also make sure that backporting is easier. Kurt

Bug#919707: matrix-synapse: Missing depends

2019-01-18 Thread Kurt Roeckx
ystemd[1]: matrix-synapse.service: Control process exited, code=exited status=1 Jan 18 19:07:18 mirror systemd[1]: Failed to start Synapse Matrix homeserver. So something is missing versioned dependencies on those 3 packages. python3-pymacaroons and python3-msgpack are available in stretch-backports, but python3-jinja2 isn't. Kurt

Bug#919347: matrix-synapse: Logs everything to /var/log/messages by default

2019-01-14 Thread Kurt Roeckx
hand gets rotated more often, and contains the same messages. I have logcheck check the logs for me, which now takes over 1 hours to run. Please stop logging everything to both files. It only used to contain the errors in /var/log/messages. Kurt

Bug#905674: parallel citation-begging issue

2019-01-12 Thread Kurt Fitzner
the leadership at Debian, to bring up these issues. It is my hope that Debian will see that it is in their best interest to look at a policy that will exclude this kind of behaviour, before it spreads. Thank-you Regards, Kurt Fitzner

Bug#918727: [Pkg-openssl-devel] Bug#918727: openssl.cnf incompatible with libssl1.0.2, libssl1.0.0

2019-01-08 Thread Kurt Roeckx
t;https://github.com/ValveSoftware/steam-for-linux/issues/6014>) We can add a Breaks, but I'm not sure that's actually going to fix anything for those non-free 3rd party things. Kurt

Bug#918717: [Pkg-openssl-devel] Bug#918717: Bug#918717: openssl: wrong signature type on a specific website with openssl.cnf shipped in debian

2019-01-08 Thread Kurt Roeckx
al.gexpertise.fr/GexPortal > > does work > > The server is vurnable to OpenSSL Padding Oracle vulnerability > (CVE-2016-2107) [0]. > > The problem is that the remote server is signing the certificate wit > SHA1 instead something stronger: > |No client certificate CA names

Bug#918717: [Pkg-openssl-devel] Bug#918717: openssl: wrong signature type on a specific website with openssl.cnf shipped in debian

2019-01-08 Thread Kurt Roeckx
ties, and an old bug you run into. Kurt

Bug#883778: problems building guile-2.0 on armel

2019-01-02 Thread Kurt Roeckx
I've enabled guile-2.0 and 2.2 again on armel yesterday, and it seems to build without issues now.

Bug#918057: gnucash: FTBFS: test suite failure

2019-01-02 Thread Kurt Roeckx
00" "$103.00") This is an other log showing it: https://buildd.debian.org/status/fetch.php?pkg=gnucash=armel=1%3A3.3-2=1546423068=0 Kurt

Bug#917788: libmedc11: Overwrites a file from libmedc1v5

2018-12-30 Thread Kurt Kremitzki
Hi Rock & Gilles, On Sun, 30 Dec 2018 11:01:07 + Rock Storm wrote: > Package: libmedc11 > Severity: grave > > Dear Maintainer, > > While trying to update freecad I run into the following broken apt > state: > > Preparing to unpack .../libmedc11_4.0.0+repack-3_amd64.deb ... > Unpacking

Bug#917366: RFP: postfix-mta-sts-resolver -- daemon that adds support for MTA-STS to postfix

2018-12-26 Thread Kurt Roeckx
Package: wnpp Severity: wishlist * Package name: postfix-mta-sts-resolver Version : 0.2.4 * URL : https://github.com/Snawoot/postfix-mta-sts-resolver * License : MIT Programming Lang: python Description : Daemon which provides TLS client policy for

Bug#916873: python-twisted-core: Incorrect versioned dependency on python-attr

2018-12-19 Thread Kurt Roeckx
"TCP", "UDP"])) AttributeError: 'module' object has no attribute 'in_' Upgrading python-attr to the version from backports (17.4.0-2~bpo9+1) works. Kurt

Bug#915612: [Pkg-openssl-devel] Bug#915612: openssl: "genrsa" changed command line interface in stretch-security update

2018-12-05 Thread Kurt Roeckx
think 1.1.0f should produce the same result with or without those > two options. Is it true? It stops parsing for options when it doesn't find an argument that start with a '-', so 4096 is not an option anymore, but it tries to convert it to the number of bits. Everything after that was just ignored, now it gives an error. Also note that the manpage does put [numbits] at the end of the arguments. It was clear to me that it needs to be the last argument, but I can at least see why it might not be clear. Kurt

Bug#740894: gmsh: please make tetgen an optional feature for gmsh

2018-12-02 Thread Kurt Kremitzki
Hello Francesco, On Fri, 10 Nov 2017 19:38:27 +0100 Francesco Poli wrote: > On Sat, 29 Oct 2016 18:17:29 +0200 Francesco Poli wrote: > > > On Fri, 30 Sep 2016 19:23:38 +0200 Francesco Poli wrote: > > > > > On Wed, 05 Mar 2014 23:44:24 +0100 Francesco Poli (wintermute) wrote: > > > > > > [...]

<    1   2   3   4   5   6   7   8   9   10   >