Bug#874641: linux-image-4.9.0-3-amd64: system freezes when disconnecting bluetooth mouse sometimes

2017-11-07 Thread Matthew Harm Bekkema
Control: reassign -1 linux-image-4.9.0-4-amd64 linux-image-4.9.0-4-amd64/4.9.51-1 It happened again today. Here's the log: Nov 07 18:12:08 thorium kernel: [ cut here ] Nov 07 18:12:08 thorium kernel: WARNING: CPU: 3 PID: 691 at

Bug#881043: needrestart: nagios plugin mode issues invalid output when non root

2017-11-07 Thread Jean-Michel Vourgère
Package: needrestart Version: 2.11-3 Severity: normal Tags: patch Dear Maintainer, I tried running "needstart -p" from nagios-nrpe-server using command[check_restart]=/usr/sbin/needrestart -p My icinga dashbord then shows "UNKOWN NRPE: Unable to read output". I expected to read "UNKOWN - This

Bug#871502: Re : Bug#871502: zotero-standalone-build: The newer Zotero is standalone only ; a reorganization is neded.

2017-11-07 Thread Félix Sipma
On 2017-11-07 12:25+0100, Sébastien Villemot wrote: > On Tue, Nov 07, 2017 at 12:22:36PM +0100, Félix Sipma wrote: > >> I never used get-orig-source, you just run ./debian/rules get-orig-source? Or >> is this integrated with something else? > > Indeed you have to run it manually. It is

Bug#881030: dman: Does not revert to non-localised manpages as claimed by the manual page

2017-11-07 Thread Javier Fernandez-Sanguino
On 7 November 2017 at 09:48, Javier Fernandez-Sanguino wrote: > I have commited a patch to GIT that should fix this bug, by trying > first downloading a localised manpage and, in case of failure, > attempting the download of the English version. Note that this was apparently

Bug#881048: gvfs: tdb(/var/run/samba/gencache_notrans.tdb): tdb_rec_read bad magic 0x0

2017-11-07 Thread Francesco Potortì
Package: gvfs Version: 1.34.1-1 Severity: normal Since a recent system upgrade, I have got over 500 of these per day in syslog: gvfsd[5416]: tdb(/var/run/samba/gencache_notrans.tdb): tdb_rec_read bad magic 0x0 at offset=1 Messages are produced in pairs, at distances varying from 15 seconds to

Bug#881049: RM: swi-prolog [mips] -- ROM; Build failure

2017-11-07 Thread Lev Lamberov
Package: ftp.debian.org Severity: normal Hi, rarely building of swi-prolog on mips fails for unknown reasons. Previous upload, 7.6.1+dfsg-1, was built successfully, and the only change in 7.6.1+dfsg-2 is that Java tests were switched off (so, normally it should not cause build failures).

Bug#880875: please rename source package to r-cran-scatterplot3d

2017-11-07 Thread Sébastien Villemot
Hi Philip, On Mon, Nov 06, 2017 at 03:10:33PM +0100, Philip Rinn wrote: > On 06.11.2017 at 11:16, Philip Rinn wrote: > > I'll rename the package on the next upload and ping you for sponsorship > > (I'm only > > DM and the package has to go through NEW). > > lets do it now, Thanks for making

Bug#879001: Bug#879002: Patch for CVE-2017-12197

2017-11-07 Thread Markus Koschany
On Fri, 3 Nov 2017 21:48:21 +0100 Salvatore Bonaccorso wrote: [...] > It's likely that Red Hat just used the approeach as > https://github.com/letonez/libpam4j/commit/84f32f4001fc6bdcc125ccc959081de022d18b6d > and referenced from https://github.com/kohsuke/libpam4j/issues/18 .

Bug#820119: tidy reports valid NCR as invalid

2017-11-07 Thread Neil Roeth
Laura asked for my help on this issue.  What I found is that setting the environment variable SP_CHARSET_FIXED to 1 makes the onsgmls program use the Unicode 2.0 character set, as the referenced web page says.  However, it uses only the first 65536 characters (the iso10646-ucs-2 character set), so

Bug#880951: transition: armadillo

2017-11-07 Thread Kumar Appaiah
On Mon, Nov 06, 2017 at 09:50:54PM -0600, Emilio Pozuelo Monfort wrote: > Control: tags -1 confirmed > > On 06/11/17 00:37, Kumar Appaiah wrote: > > Package: release.debian.org > > Severity: normal > > User: release.debian@packages.debian.org > > Usertags: transition > > > > Dear Release

Bug#881042: libsdl2-2.0-0: Please enable fcitx support

2017-11-07 Thread Zhang Jingqiang
Package: libsdl2-2.0-0 Version: 2.0.7+dfsg1-1 Severity: normal Dear Maintainer, libsdl2 has support for fcitx via --enable-fcitx, which is enabled by default. Please add 'fcitx-libs-dev' to Build-Depends to keep it enabled. Thanks -- System Information: Debian Release: buster/sid APT prefers

Bug#871502: Re : Bug#871502: zotero-standalone-build: The newer Zotero is standalone only ; a reorganization is neded.

2017-11-07 Thread Sébastien Villemot
On Tue, Nov 07, 2017 at 12:28:25PM +0100, Félix Sipma wrote: > On 2017-11-07 12:25+0100, Sébastien Villemot wrote: > > On Tue, Nov 07, 2017 at 12:22:36PM +0100, Félix Sipma wrote: > > > >> I never used get-orig-source, you just run ./debian/rules get-orig-source? > >> Or > >> is this integrated

Bug#881045: fix build failure when building with -O3

2017-11-07 Thread Matthias Klose
Package: src:libyami Version: 1.3.0-1 Tags: patch There is a wrong warning when building with -O3, because -Werror is turned on by default: vaapiencoder_base.cpp: In member function ‘virtual YamiStatus YamiMediaCodec::VaapiEncoderBase::getOutput(VideoEncOutputBuffer*, bool)’:

Bug#880998: debian-goodies: checkrestart should error-out when failing to call lsof

2017-11-07 Thread Axel Beckert
Hi Nicolas, Nicolas Braud-Santoni wrote: > On Mon, Nov 06, 2017 at 10:12:11PM +0100, Axel Beckert wrote: > > Nicolas Braud-Santoni wrote: > > > PS: I included the patches as signed commit in the > > > collab-maint repository, in branch bug880998. > > > > Thanks! That makes it way easier as

Bug#879001: Pending fixes for bugs in the libpam4j package

2017-11-07 Thread pkg-java-maintainers
tag 879001 + pending thanks Some bugs in the libpam4j package are closed in revision 038e3a06fe88fddc9c7709a1cfe2d6d8eb4dfdbd in branch 'master' by Markus Koschany The full diff can be seen at https://anonscm.debian.org/cgit/pkg-java/libpam4j.git/commit/?id=038e3a0 Commit message: Fix

Bug#871502: Re : Bug#871502: zotero-standalone-build: The newer Zotero is standalone only ; a reorganization is neded.

2017-11-07 Thread Félix Sipma
On 2017-11-07 12:29+0100, Sébastien Villemot wrote: > On Tue, Nov 07, 2017 at 12:28:25PM +0100, Félix Sipma wrote: >> On 2017-11-07 12:25+0100, Sébastien Villemot wrote: >>> On Tue, Nov 07, 2017 at 12:22:36PM +0100, Félix Sipma wrote: >>> I never used get-orig-source, you just run

Bug#881044: new upstream (1.3.1)

2017-11-07 Thread Daniel Baumann
Package: flask-htmlmin Severity: wishlist Hi, it would be nice if you could upgrade flask-htmlmin to the current upstream version (1.3.1). Regards, Daniel

Bug#881047: libapt-pkg5.0: for apt_preferences, glob and regexp are buggy on the colon character ":"

2017-11-07 Thread Vincent Lefevre
Package: libapt-pkg5.0 Version: 1.6~alpha4 Severity: normal I have both libfreetype6:amd64 and libfreetype6:i386 installed from stretch, and I want to keep the stretch version. For apt_preferences, if I use: Package: libfreetype6* Pin: release n=stretch Pin-Priority: 900 "apt-show-versions -a

Bug#881046: snmpd listens on two ports (default and configured) when port is given on command line

2017-11-07 Thread Christian Blum
Package: snmpd Version: 5.7.3+dfsg-1.7 Severity: normal Dear Maintainer, When snmpd is run with a listening address on the command line (in my case this is 127.0.0.1:261) and that listening address specifies a non-default port, snmpd will listen on both 127.0.0.1:161 and 127.0.0.1:261. The

Bug#880230: gerritlib: build depends on python{,3}-pbr (< 2.0) but 3.1.1-2 is to be installed

2017-11-07 Thread Adrian Bunk
On Tue, Nov 07, 2017 at 09:45:49AM +0100, Mathieu Parent wrote: > Control: affects 880230 + jeepyb > > Hi, > > 2017-10-30 20:47 GMT+01:00 Adrian Bunk : > > Source: gerritlib > > Version: 4.0+git20150319-2 > > Severity: serious > > Tags: buster sid > > > > The following packages

Bug#881047: libapt-pkg5.0: for apt_preferences, glob and regexp are buggy on the colon character ":"

2017-11-07 Thread Julian Andres Klode
Control: severity -1 minor On Tue, Nov 07, 2017 at 01:09:54PM +0100, Vincent Lefevre wrote: > Package: libapt-pkg5.0 > Version: 1.6~alpha4 > Severity: normal > > I have both libfreetype6:amd64 and libfreetype6:i386 installed from > stretch, and I want to keep the stretch version. For

Bug#881048: gvfs: tdb(/var/run/samba/gencache_notrans.tdb): tdb_rec_read bad magic 0x0

2017-11-07 Thread Michael Biebl
Am 07.11.2017 um 13:22 schrieb Francesco Potortì: > Package: gvfs > Version: 1.34.1-1 > Severity: normal > > Since a recent system upgrade, I have got over 500 of these per day in > syslog: > > gvfsd[5416]: tdb(/var/run/samba/gencache_notrans.tdb): tdb_rec_read bad magic > 0x0 at offset=1 > >

Bug#880241: sagenb-export: FTBFS: Test failures

2017-11-07 Thread Ximin Luo
Control: reassign -1 src:testpath Control: retitle -1 testpath does not install .egg-info or .dist-info, making it invisible to pip Control: affects -1 sagenb-export The sagenb-export FTBFS is caused by the python "testpath" module not installing a .egg-info file (or .dist-info directory) which

Bug#881051: dpkg: Fails to build packages in non-ascii directories

2017-11-07 Thread Samuel Thibault
Package: dpkg Version: 1.19.0.4 Severity: normal Hello, $ locale charmap UTF-8 $ mkdir testé $ cd testé $ apt-get source hello $ cd hello-* $ dpkg-buildpackage -b fails with dh clean Can't use string ("0") as a HASH ref while "strict refs" in use at /usr/share/perl5/Dpkg/Vendor/Debian.pm line

Bug#880551: xterm: corrections to man page

2017-11-07 Thread G. Branden Robinson
Here's an updated version of the patch, reverting the de-boldfacing of action names (and some token names) in resource translations. My additional fixes are described at the end, numbered 21-25. Please find two attachments: 1. The actual diff. 2. A diff of the nroffed output of the two pages

Bug#876698: [Pkg-octave-devel] Bug#876698: octave-image FTBFS on 32bit: test failures

2017-11-07 Thread Rafael Laboissière
Control: reopen -1 Control: notfixed -1 1.3.2-3 Oops, I closed the wrong bug report. Sorry for the confusion. Rafael * Rafael Laboissière [2017-11-05 09:05]: Control: fixed -1 1.3.2-3 * Adrian Bunk [2017-09-25 01:25]: Source: octave-image Version:

Bug#880962: mips*: "gcc --help=target --help=optimizers" busyloops forever

2017-11-07 Thread James Cowgill
Control: forwarded -1 https://gcc.gnu.org/bugzilla/show_bug.cgi?id=82880 Hi, On 06/11/17 18:07, James Cowgill wrote: > On 06/11/17 12:11, Adrian Bunk wrote: >> Package: gcc-7 >> Version: 7.2.0-12 >> Severity: serious >> Control: affects -1 src:amanda >> >>

Bug#881054: libarrayfire-opencl3: "INTERNAL KERNEL BUILD ERROR" from af::matmulTN

2017-11-07 Thread Ralf Stubner
Package: libarrayfire-opencl3 Version: 3.3.2+dfsg1-4 Severity: important Dear Maintainer, * What led up to the situation? As a trivial example, I am trying to implement an OLS solver based on arrayfire. * What exactly did you do (or not do) that was effective (or ineffective)?

Bug#864432: funcoeszz: depends on a transitional package lynx-cur

2017-11-07 Thread Andreas Beckmann
Followup-For: Bug #864432 Control: severity -1 serious Control: tag -1 sid buster lynx-cur is now gone from sid. Andreas

Bug#881060: binutils: add mips r6 support back

2017-11-07 Thread YunQiang Su
Package: src:binutils Version: 2.29.1-6 I am back and continue to work with mips r6 support. It seems that r6 support in binutils is disabled. Please enable it again. It seems quite easy. diff --git a/debian/rules b/debian/rules index 59cdc09..764d7b9 100755 --- a/debian/rules +++

Bug#880266: closed by Samuel Thibault <sthiba...@debian.org> (Bug#880266: fixed in eztrace 1.1-7-2)

2017-11-07 Thread Adrian Bunk
Control: reopen -1 On Mon, Nov 06, 2017 at 01:09:05PM +, Debian Bug Tracking System wrote: >... > eztrace (1.1-7-2) unstable; urgency=medium > . >* patches/big-endian-fix: Fix hang on big-endian archs (Closes: Bug#880266) This doesn't seem to have worked:

Bug#880976: lbdb: should not depend on bbdb (only suggest it)

2017-11-07 Thread Roland Rosenfeld
On Di, 07 Nov 2017, Jochen Sprickerhof wrote: > Also, accepting the upgrade gives me: > > Loading /etc/emacs/site-start.d/50lbdb.el (source)... > > In lbdb: > lbdb.el:236:32:Warning: ‘interactive-p’ is an obsolete function (as of 23.2); >use ‘called-interactively-p’ instead. > > In

Bug#843926: jemalloc hard codes page size during build

2017-11-07 Thread James Cowgill
On 07/11/17 17:02, James Cowgill wrote: > Hi, > > Is there a plan to start a transition to get this version of jemalloc in > unstable? I don't see a transition bug against release.d.o. Is there > anything blocking it? Ah nevermind - I see it FTBFS in experimental on lots of arches. James

Bug#819589: RFP: python3-aioxmpp -- pure-python XMPP library using the asyncio standard library module

2017-11-07 Thread David Steele
I've taken a look at this, For others, note: - Packaging this would require also packaging aiosasl and aioopenssl - The source needs some copyright work - slixmpp, already packaged, appears to provide similar functionality -- AE0D BF5A 92A5 ADE4 9481 BA6F 8A31 71EF 3661 50CE

Bug#881096: python-asyncssh FTBFS: test falures

2017-11-07 Thread Adrian Bunk
Source: python-asyncssh Version: 1.11.0-1 Severity: serious Some recent change in unstable makes python-asyncssh FTBFS: https://tests.reproducible-builds.org/debian/history/python-asyncssh.html https://tests.reproducible-builds.org/debian/rb-pkg/unstable/amd64/python-asyncssh.html ...

Bug#881095: openstack-trove FTBFS: test failures

2017-11-07 Thread Adrian Bunk
Source: openstack-trove Version: 1:6.0.0-3 Severity: serious Tags: buster sid Some recent change in unstable makes openstack-trove FTBFS: https://tests.reproducible-builds.org/debian/history/openstack-trove.html

Bug#875928: security update: ruby2.3

2017-11-07 Thread Antonio Terceiro
On Sat, Nov 04, 2017 at 10:08:36PM +0100, Salvatore Bonaccorso wrote: > Hi Antonio > > Sorry for the late reply > > On Mon, Oct 23, 2017 at 11:49:28AM -0200, Antonio Terceiro wrote: > > Hi security team, > > > > I have prepared a security update for ruby2.3. > > > > It includes all the pending

Bug#881094: nbsphinx: please make the build reproducible

2017-11-07 Thread Chris Lamb
forwarded 881094 https://github.com/spatialaudio/nbsphinx/pull/145 thanks I've forwarded this upstream here: https://github.com/spatialaudio/nbsphinx/pull/145 Regards, -- ,''`. : :' : Chris Lamb `. `'` la...@debian.org / chris-lamb.co.uk `-

Bug#804638: kde-plasma-desktop: "The window switcher installation is broken"

2017-11-07 Thread Marcus Hansson
Package: kde-plasma-desktop Version: 5:92 Followup-For: Bug #804638 Hello! This is present for me as well. Also: ii kwin-addons 4:5.8.5-2 -- System Information: Debian Release: 9.2 APT prefers proposed-updates APT policy: (500, 'proposed-updates'), (500, 'stable') Architecture: amd64

Bug#871542: Chromium 60 UI is huge on HiDPI displays

2017-11-07 Thread Leandro Doctors
Hi, all, The problem seems to be solved using the latest version from unstable (62.0.3202.89-1). Could someone please confirm this? Best, Leandro

Bug#881118: RFS: boost-numeric-bindings/0.99-1 [ITP] -- Numeric Library Bindings for Boost

2017-11-07 Thread Stephen Sinclair
Package: sponsorship-requests Severity: wishlist Dear mentors, I am looking for a sponsor for my package "boost-numeric-bindings": * Package name: boost-numeric-bindings Version : 0.99 Upstream Author : Kresimir Fresl et. al. * URL :

Bug#439121: Add a .pc file for libapt-pkt

2017-11-07 Thread Julian Andres Klode
On Tue, Nov 07, 2017 at 11:20:50PM +0100, Corentin Noël wrote: > Here is a patch working with current master, It's now fully working. It > contains a test to ensure that it works, I tested it with autopkgtest. > From 44fa7251911378bb0ca16a23024b7f7ede5a8f84 Mon Sep 17 00:00:00 2001 > From:

Bug#877670: [Debian-med-packaging] Bug#877670: Bug#877670: bcftools FTBFS on armel armhf and ppc64el

2017-11-07 Thread Graham Inggs
Control: reassign -1 htslib 1.4-1 Control: tags -1 + patch Control: affects -1 bcftools It seems this code appeared in htslib 1.4, but was only tested in bcftools 1.5. Description: Fix calculation of PLs on ARM and POWER Bug: https://github.com/samtools/bcftools/issues/702 Bug-Debian:

Bug#881051: dpkg: Fails to build packages in non-ascii directories

2017-11-07 Thread James Clarke
Control: tags -1 patch On Tue, Nov 07, 2017 at 01:58:23PM +0100, Samuel Thibault wrote: > Package: dpkg > Version: 1.19.0.4 > Severity: normal > > Hello, > > $ locale charmap > UTF-8 > $ mkdir testé > $ cd testé > $ apt-get source hello > $ cd hello-* > $ dpkg-buildpackage -b > > fails with > >

Bug#880709: zfsutils-linux 0.7.3 has an unlisted dependency on libuutil1linux >= 0.7.3

2017-11-07 Thread Nathaniel W Filardo
It appears that libzpool2linux is also an unlisted dependency. Merely having libuutil1linux installed was enough to clear the error of this bug but left "/sbin/zfs: symbol lookup error: /lib/libzfs.so.2: undefined symbol: SHA2Update" behind until libzpool2linux got added to the system. Cheers,

Bug#881120: gifsicle: use after free while running gifsicle

2017-11-07 Thread Joonun Jang
Package: gifsicle Version: 1.90-1 Severity: important Tags: security use after free while running gifsicle with "poc poc -o output" option Running 'gifsicle poc poc -o output' with the attached file raises use after free which may allow a remote attack to cause a denial-of-service attack or

Bug#880992: debian-policy should not recommend running editor using absolute path

2017-11-07 Thread Sean Whitton
Hello Jonathan, On Mon, Nov 06 2017, Jonathan Nieder wrote: > Thus, every program that launches an editor or pager must use > the EDITOR or PAGER environment variable to determine the editor > or pager the user wishes to use. If these variables are not set, > the programs

Bug#881121: sox: null pointer dereference while running sox

2017-11-07 Thread Joonun Jang
Package: sox Version: 14.4.1-5+b2 Severity: normal Tags: security null pointer dereference while running sox with "poc.aiff output.aiff speed 1.027" option Running 'sox poc.aiff output.aiff speed 1.027' with the attached file raises null pointer dereference which may allow a remote attack to

Bug#881122: ffmpeg2theora: null pointer dereference while running ffmpeg2theora

2017-11-07 Thread Joonun Jang
Package: ffmpeg2theora Version: 0.30-1+b2 Severity: normal Tags: security null pointer dereference while running ffmpeg2theora with "poc" option Running 'ffmpeg2theora poc' with the attached file raises null pointer dereference which may allow a remote attack to cause a denial-of-service attack

Bug#881123: ffmpeg2theora: null pointer dereference while running ffmpeg2theora

2017-11-07 Thread Joonun Jang
Package: ffmpeg2theora Version: 0.30-1+b2 Severity: normal Tags: security null pointer dereference while running ffmpeg2theora with "poc" option Running 'ffmpeg2theora poc' with the attached file raises null pointer dereference which may allow a remote attack to cause a denial-of-service attack

Bug#881124: shadow.ind.ntou.edu.tw: request name change, and add as candidate of ftp.tw

2017-11-07 Thread 魏銘廷
Package: mirrors Severity: wishlist Dear Maintainer, I would like to change the name of the server shadow.ind.ntou.edu.tw to ftp.ntou.edu.tw, also set up as a ftp.tw.d.o candidate if possible. Due to recent removal of linux3.cc.ntu.edu.tw mirror server, ftp.tw.d.o is redirected to Hong Kong.

Bug#881125: arp-scan: Segmentation fault at link-packet-socket.c:127

2017-11-07 Thread Nelson A. de Oliveira
Package: arp-scan Version: 1.9-2 Severity: important Hi! While calling a simple "arp-scan" with an unprivileged user it segfaults. gdb output with arp-scan-dbgsym and "thread apply all bt full" is attached. Thank you! Best regards, Nelson -- System Information: Debian Release: buster/sid

Bug#880573: chromium: Chromium built-in PDF visor prints garbage

2017-11-07 Thread Michael Gilbert
control: forwarded -1 http://crbug.com/777837 The latest upstream versions introduced a lot of printing problems. They should all be fixed in chromium 63. Please retest once that version is released. Best wishes, Mike

Bug#881126: mirror submission for debian.vancouver.fullhost.com

2017-11-07 Thread FullHost
Package: mirrors Severity: wishlist User: mirr...@packages.debian.org Usertags: mirror-submission Submission-Type: new Site: debian.vancouver.fullhost.com Type: leaf Archive-architecture: amd64 i386 Archive-http: /debian/ Maintainer: FullHost Country: CA Canada Location:

Bug#881100: libnss-winbind is not multiarch safe

2017-11-07 Thread Matthew Gabeler-Lee
Package: libnss-winbind Version: 2:4.5.12+dfsg-2 Severity: normal Background: I use libnss-winbind, and a mulitiarch amd64/i386 system because I need to run some third party i386 binaries. At least one of those binaries needs to be able to do nss lookups for some basic account information.

Bug#881109: ITP: boost-numeric-bindings -- boost-numeric-bindings -- Numeric Library Bindings for Boost

2017-11-07 Thread Stephen Sinclair
Package: wnpp Severity: wishlist Owner: Stephen Sinclair * Package name: boost-numeric-bindings Version : 0.99 Upstream Author : Kresimir Fresl et. al. * URL : https://github.com/uBLAS/numeric_bindings * License : Boost Software License -

Bug#881110: cacti: CVE-2017-16641: arbitrary execution of os commands via path_rrdtool parameter in an action=save request

2017-11-07 Thread Salvatore Bonaccorso
Source: cacti Version: 1.1.27+ds1-2 Severity: grave Tags: patch security upstream Forwarded: https://github.com/Cacti/cacti/issues/1057 Hi, the following vulnerability was published for cacti. CVE-2017-16641[0]: | lib/rrd.php in Cacti 1.1.27 allows remote authenticated administrators | to

Bug#881061: python-lz4 FTBFS on big endian: FAIL: test_get_frame_info (test_frame.TestLZ4Frame)

2017-11-07 Thread Thomas Goirand
Hi James, I tried to build on zelenka.debian.org, which is a s390 porter box (big endian), and it failed even more. Cheers, Thomas Goirand (zigo)

Bug#881129: icewm-themes obsolete package left on disk

2017-11-07 Thread 積丹尼 Dan Jacobson
Package: icewm-experimental Version: 1.4.3.0~pre-20171017-1 Severity: minor I found icewm-themes obsolete package. icewm-themes: Installed: 1.2.26-2 Candidate: 1.2.26-2 Version table: *** 1.2.26-2 100 100 /var/lib/dpkg/status Shouldn't it have been removed automatically? Can I

Bug#881130: vorbis-tools: use uninitialized local value as a pointer running oggenc

2017-11-07 Thread Joonun Jang
Package: vorbis-tools Version: 1.4.0-10+b1 Severity: important Tags: security bad free while running oggenc with "poc -o output" option Running 'oggenc poc -o output' with the attached file raises bad free(use uninitalized local value as a pointer) which may allow a remote attacker to cause

Bug#881131: bs1770gain: divide by zero while running bs1770gain

2017-11-07 Thread Joonun Jang
Package: bs1770gain Version: 0.4.12-2 Severity: normal Tags: security divide by zero while running bs1770gain with "poc -o output" option Running 'bs1770gain poc -o output' with the attached file raises divide by zero exception which may allow a remote attack to cause a denial-of-service

Bug#881132: bs1770gain: stack buffer overflow while running bs1770gain

2017-11-07 Thread Joonun Jang
Package: bs1770gain Version: 0.4.12-2 Severity: important Tags: security stack buffer overflow while running bs1770gain with "poc -o output" option Running 'bs1770gain poc -o output' with the attached file raises stack buffer overflow which may allow a remote attack to cause a denial-of-service

Bug#881134: RFS: runescape/0.2-2 [QA] -- Multiplayer online game set in a fantasy world

2017-11-07 Thread Carlos Donizete Froes
Package: sponsorship-requests Severity: normal Dear mentors, I am looking for a sponsor for my package "runescape" * Package name: runescape Version : 0.2-2 Upstream Author : Carlos Donizete Froes * URL :

Bug#881133: x264: out of bound read while running x264

2017-11-07 Thread Joonun Jang
Package: x264 Version: 2:0.148.2795+gitaaa9aa8-1 Severity: important Tags: security out of bound read while running x264 with "--crf 24 -o output.264 poc" option Running 'x264 --crf 24 -o output.264 poc' with the attached file raises out of bound read which may allow a remote attack to cause a

Bug#881136: ITP: ocaml-rope -- Ropes ("heavyweight strings") for OCaml

2017-11-07 Thread Andy Li
Package: wnpp Severity: wishlist Owner: Andy Li -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 * Package name: ocaml-rope Version : 0.5 Upstream Author : Christophe Troestler * URL :

Bug#881135: xul-ext-ublock-origin: Update ublock-origin to version 1.14.16 by next p-u

2017-11-07 Thread Julien Aubin
Package: xul-ext-ublock-origin Version: 1.10.4+dfsg-1 Severity: grave Justification: renders package unusable Hi, Firefox release 59 is coming quite soon to Debian, actually next March for the ones using mozilla.debian.net. By this time current ublock-origin extension won't work anymore as it

Bug#881137: xul-ext-https-everywhere: Please update xul-ext-https-everywhere to version 2017.10.30 by next pu

2017-11-07 Thread Julien Aubin
Package: xul-ext-https-everywhere Version: 5.2.8-1 Severity: grave Justification: renders package unusable Hi, Firefox release 59 is coming quite soon to Debian, actually next March for the ones using mozilla.debian.net. By this time current https-everywhere extension won't work anymore as it

Bug#881066: [#QMM-573-27544]: Bug#881066: Debian mirror debian.ipserverone.com: out of date

2017-11-07 Thread IP SERVERONE - Support
Hi Peter, We are sorry for the incident, have just manually run the sync, could you please check if the mirror is up-to-date now? Thanks -- Mak Kuen Seng Support Team Lead IP SERVERONE SOLUTIONS SDN BHD A-1-1, Block A, Glomac Damansara Jalan Damansara, 6 Kuala Lumpur Tel: 603 2026 1688

Bug#881138: ffmpeg2theora: use uninitialized stack value as a pointer while running ffmpeg2theora

2017-11-07 Thread Joonun Jang
Package: ffmpeg2theora Version: 0.30-1+b2 Severity: important Tags: security use uninitialized stack value as a pointer while running ffmpeg2theora with "poc" option Running 'ffmpeg2theora poc' with the attached file uses uninitialized stack value as a pointer which may allow a remote attacker

Bug#881139: ffmpeg2theora: heap buffer overflow while running ffmpeg2theora

2017-11-07 Thread Joonun Jang
Package: ffmpeg2theora Version: 0.30-1+b2 Severity: important Tags: security heap buffer overflow running ffmpeg2theora with "poc" option Running 'ffmpeg2theora poc' with the attached file raises null pointer dereference which may allow a remote attacker to cause unspecified impact including

Bug#881140: ruby-yajl: New upstream version available

2017-11-07 Thread Salvatore Bonaccorso
Source: ruby-yajl Severity: wishlist Hi There is a new upstream version (1.3.1) ruby-yajl available. Can you package it for unstable? Regards, Salvatore

Bug#881141: gifsicle: out of bound read while running gifsicle

2017-11-07 Thread Joonun Jang
Package: gifsicle Version: 1.90-1 Severity: important Tags: security out of bound read while running gifsicle with "gifsicle --dither --use-col=bw poc -o output" option Running 'gifsicle --dither --use-col=bw poc -o output' with the attached file raises out of bound read which may allow a

Bug#881067: Debian mirror ftp.uni-sofia.bg: out of date

2017-11-07 Thread Alexander Velin
On 2017-11-07 16:47, Peter Palfrader wrote: According to https://mirror-master.debian.org/status/mirror-info/ftp.uni-sofia.bg.html your mirror is out of date by about a week. Please investigate. Thanks for the notification. It seems, that due to the upgrade of the distribution on the

Bug#881056: Incorrect group in /etc/init.d/varnishncsa

2017-11-07 Thread Arnaud Gomes
Package: varnish Version: 5.0.0-7+deb9u1 When using sysvinit, varnishncsa doesn't start: # service varnishncsa start [] Starting HTTP accelerator log deamon: varnishncsainstall: invalid group 'varnishlog' failed! This bug has been fixed upstream:

Bug#881058: gwhois: please switch Depends from lynx-cur to lynx

2017-11-07 Thread Andreas Beckmann
Package: gwhois Version: 20120626-1.1 Severity: serious Hi, lynx-cur was a transitional package in stretch and is now gone from sid. Please update the dependency to lynx. Andreas

Bug#881057: System does not boot due to dependency to /usr

2017-11-07 Thread Klaus Ethgen
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Package: lvm2 Version: 2.02.176-1 Severity: critical lvm2 starting with 2.02.175-1 depends on library in /usr. With that, it is not possible to boot the system anymore when /usr is on a LVM. (initrd-less setup) The last working version is

Bug#881059: ITP: eshell-bookmark -- integrate bookmarks with Eshell

2017-11-07 Thread Lev Lamberov
Package: wnpp Owner: Lev Lamberov Severity: wishlist * Package name: eshell-bookmark Version : 2.0.0 Upstream Author : Matúš Goljer * URL or Web page : https://github.com/Fuco1/eshell-bookmark * License : GPL-3+ Programming

Bug#880852: lr: FTBFS on hurd-i386: PATH_MAX undeclared

2017-11-07 Thread Nicolas Braud-Santoni
Control: tag -1 + moreinfo Need confirmation that this is fixed upstream: https://github.com/chneukirchen/lr/issues/15#issuecomment-342493141 On Sun, Nov 05, 2017 at 12:23:19AM -0400, Aaron M. Ucko wrote: > Source: lr > Version: 1.1-1 > Severity: important > Tags: upstream > Justification:

Bug#845297: [www.debian.org] Website transition from CVS to Git - Perl scripts to compare revisions

2017-11-07 Thread Laura Arjona Reina
Package: www.debian.org Dear all I have started to work in the scripts that we would need to convert from the CVS logic (centralized system, a CVS/ folder with the info of the files, version numbers) into a Git logic (decentralized system, commit hashes instead of version numbers). Lev's

Bug#881063: debian-reference-en: apt-pinning information is incompatible with multiarch

2017-11-07 Thread Vincent Lefevre
Package: debian-reference-en Version: 2.69 Severity: normal The manual contains: 2.7.6. Tracking testing with some packages from unstable [...] Set the "/etc/apt/preferences" file as as the following. ^ First, there's a duplicate "as".

Bug#881064: drf-fsm-transitions: B-D on obsolete transitional package python3-appconf

2017-11-07 Thread Andreas Beckmann
Source: drf-fsm-transitions Version: 0.2.0-2 Severity: serious Justification: fails to build from source python3-appconf is now gone from sid. Please switch to python3-django-appconf. Andreas

Bug#881068: Debian mirror ftp.antik.sk: out of date

2017-11-07 Thread Peter Palfrader
Package: mirrors User: mirr...@packages.debian.org Usertags: mirror-problem may-auto-close Control: submitter -1 mirr...@debian.org Hi! According to https://mirror-master.debian.org/status/mirror-info/ftp.antik.sk.html your mirror is out of date by almost a week. Please investigate. --

Bug#881072: libntru: FTBFS on sparc64: testnoham bus error

2017-11-07 Thread Aaron M. Ucko
Source: libntru Version: 0.5-1 Severity: important Tags: upstream Justification: fails to build from source User: debian-sp...@lists.debian.org Usertags: sparc64 Thanks for taking care of libntru's previous FTBFS bugs. It now builds nearly everywhere, but on sparc64 (admittedly not a release

Bug#881048: gvfs: tdb(/var/run/samba/gencache_notrans.tdb): tdb_rec_read bad magic 0x0

2017-11-07 Thread Francesco Potortì
Ok, thanks. Can you move this bug report to samba, or should I file a new one there? -- Francesco Potortì (ricercatore)Voice: +39.050.621.3058 ISTI - Area della ricerca CNR Mobile: +39.348.8283.107 via G. Moruzzi 1, I-56124 Pisa Skype: wnlabisti (entrance 20, 1st

Bug#881073: libmariadb-dev: mariadb_config always returns the help text

2017-11-07 Thread Adrian Bunk
Package: libmariadb-dev Version: 10.2.7-1 Severity: serious Control: affects -1 src:rmysql $ mariadb_config --cflags Copyright 2011-2015 MariaDB Corporation AB Get compiler flags for using the MariaDB Connector/C. Usage: /usr/lib/x86_64-linux-gnu/mariadb_config [OPTIONS] --cflags

Bug#881089: stardicter: please make the build reproducible

2017-11-07 Thread Chris Lamb
Source: stardicter Version: 1.1-1 Severity: wishlist Tags: patch User: reproducible-bui...@lists.alioth.debian.org Usertags: toolchain timestamps X-Debbugs-Cc: reproducible-b...@lists.alioth.debian.org Hi, Whilst working on the Reproducible Builds effort [0], we noticed that stardicter generates

Bug#880985: Change python-lzma from Recommends to Depends

2017-11-07 Thread Ritesh Raj Sarraf
Control: tag -1 +fixed-upstream Hello Valmiky, Thank you for the bug report. On Mon, 2017-11-06 at 17:04 +, Valmiky Arquissandas wrote: > - Considering that, at least in Debian 9, using the default > deb.debian.org entry in sources.list, the database files are xzipped > (therefore,

Bug#880198: libntru: FTBFS on x32: position-dependent relocation in sha1-mb-x86_64.o

2017-11-07 Thread Ying-Chun Liu (PaulLiu)
Hi, This bug seems to be fixed by side-effect after disabling SSE3. In Makefile.linux we have ifeq ($(SSE), yes) ifeq ($(MACHINE), x86_64) LIB_OBJS+=sha1-mb-x86_64.o sha256-mb-x86_64.o endif endif So if SSE=no then it does not build that two object files. Thus fixes the FTBFS.

Bug#869499: [Pkg-nginx-maintainers] Bug#869499: nginx: [PATCH] Automate modules watch & upgrade process

2017-11-07 Thread Mpampis Kostas
Hello Christos, Attached a new patch version. It contains the following changes: * Rebase to current origin/master with cannonical module paths. * Rename debian/modules/README.Modules-version to debian/modules/control. * Convert the uscan to a more generic command named ngxmod with uscan as a

Bug#881088: Wordpress on wheezy

2017-11-07 Thread Mckinnell, James
Package: wordpress Version: 3.6.1+dfsg-1~deb7u18 Initial report of failure to access the Wordpress site - Apache showing Error 500 Apache error.log shows: [Wed Nov 01 10:32:53 2017] [error] [client xx.xx.xx.xx] PHP Parse error: syntax error, unexpected end of file in

Bug#881089: stardicter: please make the build reproducible

2017-11-07 Thread Chris Lamb
forwarded 881089 https://github.com/nijel/stardicter/pull/2 thanks I've forwarded this upstream here: https://github.com/nijel/stardicter/pull/2 Regards, -- ,''`. : :' : Chris Lamb `. `'` la...@debian.org / chris-lamb.co.uk `-

Bug#881090: italc FTBFS: Qt5LinguistTools*.cmake moved to qttools5-dev

2017-11-07 Thread Adrian Bunk
Source: italc Version: 1:3.0.3+dfsg1-1 Severity: serious Tags: buster sid https://tests.reproducible-builds.org/debian/rb-pkg/unstable/amd64/italc.html ... CMake Error at CMakeLists.txt:129 (FIND_PACKAGE): By not providing "FindQt5LinguistTools.cmake" in CMAKE_MODULE_PATH this project has

Bug#881092: brewtarget FTBFS: Qt5LinguistTools*.cmake moved to qttools5-dev

2017-11-07 Thread Adrian Bunk
Source: brewtarget Version: 2.3.1-1 Severity: serious https://tests.reproducible-builds.org/debian/rb-pkg/unstable/amd64/brewtarget.html ... CMake Error at CMakeLists.txt:151 (FIND_PACKAGE): By not providing "FindQt5LinguistTools.cmake" in CMAKE_MODULE_PATH this project has asked CMake to

Bug#881091: converseen FTBFS: Qt5LinguistTools*.cmake moved to qttools5-dev

2017-11-07 Thread Adrian Bunk
Source: converseen Version: 0.9.6.2-1 Severity: serious https://tests.reproducible-builds.org/debian/rb-pkg/unstable/amd64/converseen.html ... CMake Error at CMakeLists.txt:94 (FIND_PACKAGE): By not providing "FindQt5LinguistTools.cmake" in CMAKE_MODULE_PATH this project has asked CMake to

Bug#877562: libqb FTCBFS: uses uncached AC_RUN_IFELSE

2017-11-07 Thread Manuel A. Fernandez Montecelo
Hi, 2017-10-12 10:07 Ferenc Wágner: Helmut Grohne writes: On Wed, Oct 11, 2017 at 03:24:50PM +0200, Ferenc Wágner wrote: #hurd confirmed that this is a Hurd bug in glibc, and promised a fix it in the next upload. So I guess an unconditional check for

Bug#881053: ppp: fails to compile because of mistake in rules file

2017-11-07 Thread Christian Blum
Package: ppp Version: 2.4.7-1+4 Severity: serious Tags: patch Justification: fails to build from source (but built successfully in the past) Dear Maintainer, the rules file contains a problem that keeps ppp from compiling. This patch fixes the problem. --- debian/rules.ORIG 2017-11-07

Bug#876211:

2017-11-07 Thread Nicholas Brown
For what it's worth, I've build this package on a local OBS instance and found it useful for developing local software I'm building. How does the package get from new into testing?

Bug#881061: python-lz4 FTBFS on big endian: FAIL: test_get_frame_info (test_frame.TestLZ4Frame)

2017-11-07 Thread Adrian Bunk
Source: python-lz4 Version: 0.10.1+dfsg1-0.1 Severity: serious https://buildd.debian.org/status/package.php?p=python-lz4=sid ... dh_auto_test -a -O--parallel -O--buildsystem=pybuild I: pybuild base:184: cd /<>/python-lz4-0.10.1+dfsg1/.pybuild/pythonX.Y_2.7/build; python2.7 -m nose tests

Bug#881062: flower: update Build-Depends to python-sphinxcontrib.httpdomain

2017-11-07 Thread Andreas Beckmann
Source: flower Version: 0.8.3+dfsg-2 Severity: serious Tags: sid buster Justification: fails to build from source Hi, python-sphinxcontrib-httpdomain was a transitional package in stretch and is now gone from sid. Please adjust your Build-Depends to python-sphinxcontrib.httpdomain (note the '-'

Bug#881027: transition: scotch

2017-11-07 Thread Emilio Pozuelo Monfort
Control: tags -1 confirmed On 07/11/17 02:33, Drew Parsons wrote: > Package: release.debian.org > Severity: normal > User: release.debian@packages.debian.org > Usertags: transition > > Scotch 6 is ready to release to unstable. It has been tested in > experimental, dependent packages build

<    1   2   3   >