Bug#927142: Cyrus-Imapd expel from Buster

2019-05-08 Thread Xavier
Hi all, I'm afraid to see that Cyrus-Imapd is going to be out of Buster. Sorry, I can't help here, but can this bug be considered as "important" instead of "serious" to avoid expel? Cheers, Xavier

Bug#928429: dpkg: trigger cycle postgresql-common -> sgml-base while upgrading from stretch to buster

2019-05-08 Thread Guillem Jover
Hi! On Sat, 2019-05-04 at 15:13:58 +0200, Andreas Beckmann wrote: > Package: dpkg > Version: 1.19.6 > Severity: serious > User: debian...@lists.debian.org > Usertags: piuparts > Control: affects -1 + education-desktop-gnome education-desktop-mate > education-desktop-xfce education-main-server

Bug#928689: initramfs-tools: Fails with "cp: failed to access '/var/tmp/mkinitramfs_URATxd//usr/bin/touch': Too many levels of symbolic links"

2019-05-08 Thread Axel Beckert
Package: initramfs-tools Version: 0.133 Severity: serious Control: affects -1 + fsprotect On an i386 Sid system (non-usrmerge and sysvinit-core), generating the initramfs fails as follows for at least every kernel installed or upgraded since the problem appeared the first time a while ago:

Processed: initramfs-tools: Fails with "cp: failed to access '/var/tmp/mkinitramfs_URATxd//usr/bin/touch': Too many levels of symbolic links"

2019-05-08 Thread Debian Bug Tracking System
Processing control commands: > affects -1 + fsprotect Bug #928689 [initramfs-tools] initramfs-tools: Fails with "cp: failed to access '/var/tmp/mkinitramfs_URATxd//usr/bin/touch': Too many levels of symbolic links" Added indication that 928689 affects fsprotect -- 928689:

Bug#928684: [Pkg-privacy-maintainers] Bug#928684: monkeysphere-host import-key broken due to ssh-keygen change

2019-05-08 Thread Daniel Kahn Gillmor
Control: unarchive 909700 Control: forcemerge 909700 928684 Control: severity 909700 grave Hi Andrei-- On Wed 2019-05-08 20:45:24 +, Andrei Morgan wrote: > # monkeysphere-host import-key /etc/ssh/ssh_host_rsa_key > ssh://server.example.net > RSA.xs:194: OpenSSL error: no start line at

Processed: Re: [Pkg-privacy-maintainers] Bug#928684: monkeysphere-host import-key broken due to ssh-keygen change

2019-05-08 Thread Debian Bug Tracking System
Processing control commands: > unarchive 909700 Bug #909700 {Done: Daniel Kahn Gillmor } [monkeysphere] tests/keytrans and pem2openpgp expect old-style PEM format for SSH keys Unarchived Bug 909700 > forcemerge 909700 928684 Bug #909700 {Done: Daniel Kahn Gillmor } [monkeysphere] tests/keytrans

Processed: limit source to sa-exim, tagging 879687, tagging 926952

2019-05-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > limit source sa-exim Limiting to bugs with field 'source' containing at least one of 'sa-exim' Limit currently set to 'source':'sa-exim' > tags 879687 + pending Bug #879687 [sa-exim] SA-Exim not compatible with CHUNKING Added tag(s) pending. >

Bug#928688: drupal7: Insecure deserialization on bundled third-party library "Phar Stream Wrapper" (SA-CORE-2019-007)

2019-05-08 Thread Gunnar Wolf
Package: drupal7 Version: 7.52-2+deb9u8 Severity: grave Tags: security upstream Justification: user security hole Drupal security advisory SA-CORE-2019-007 was issued today: https://www.drupal.org/SA-CORE-2019-007 It refers to the following advisory in a bundled third-party library:

Bug#914034: Bug#911938: libhttp-daemon-ssl-perl FTBFS: tests fail: Connection refused

2019-05-08 Thread Dimitri John Ledkov
On Tue, 7 May 2019 19:39:15 +0200 Guilhem Moulin wrote: > Hi Dimitri, > > On Tue, 07 May 2019 at 15:46:25 +0100, Dimitri John Ledkov wrote: > > On Tue, 7 May 2019 14:16:43 +0100 Dimitri John Ledkov > > wrote: > >> This issue concerns me a lot at the moment. I am currently trying to > >> upgrade

Bug#928684: monkeysphere-host import-key broken due to ssh-keygen change

2019-05-08 Thread Andrei Morgan
Package: monkeysphere Version: 0.43-2 Severity: grave Tags: upstream a11y Justification: renders package unusable Dear Maintainer, On a fresh new install of Debian Buster, I was trying to set up monkeysphere to allow ssh access: # monkeysphere-host import-key /etc/ssh/ssh_host_rsa_key

Bug#927747: [Pkg-samba-maint] Bug#927747: bind9_dlz backend is entirely broken in Debian

2019-05-08 Thread Steinar H. Gunderson
On Wed, May 08, 2019 at 10:02:46PM +0200, Mathieu Parent wrote: > Downgrading the severity as the AppArmor side is already fixed it seems in > sid. serious and grave are of equal severity; serious is for Policy violations (e.g. package doesn't install), grave is for functionality issues (e.g.

Bug#927747: [Pkg-samba-maint] Bug#927747: bind9_dlz backend is entirely broken in Debian

2019-05-08 Thread Mathieu Parent
severity 927747 serious thanks Le mar. 23 avr. 2019 à 23:12, Steinar H. Gunderson a écrit : > > On Tue, Apr 23, 2019 at 10:24:54PM +0200, Mathieu Parent wrote: > > There are several issues here. Trying a summary. > > 1. We need to patch bind9 apparmor profile (this is the cloned bug) > > Yes. >

Processed: Re: Bug#927747: [Pkg-samba-maint] Bug#927747: bind9_dlz backend is entirely broken in Debian

2019-05-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 927747 serious Bug #927747 [samba] bind9_dlz backend is entirely broken in Debian Severity set to 'serious' from 'grave' > thanks Stopping processing here. Please contact me if you need assistance. -- 927747:

Bug#928172: debian-security-support: fails to upgrade from 'testing': dpkg: error: error executing hook

2019-05-08 Thread Holger Levsen
On Wed, May 08, 2019 at 02:06:20PM -0400, Gabriel Filion wrote: > so in order to unblock things one might want to run: > > apt purge debian-security-support > apt update && apt upgrade > apt install debian-security-support thanks for sharing this. I'll find time for the proper fix eventually -

Processed: tagging 928052

2019-05-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tags 928052 + upstream Bug #928052 [src:snapd] CVE-2019-11502 CVE-2019-11503 Added tag(s) upstream. > thanks Stopping processing here. Please contact me if you need assistance. -- 928052: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=928052

Processed: found 928052 in 2.37.4-1

2019-05-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > found 928052 2.37.4-1 Bug #928052 [src:snapd] CVE-2019-11502 CVE-2019-11503 Marked as found in versions snapd/2.37.4-1. > thanks Stopping processing here. Please contact me if you need assistance. -- 928052:

Bug#928304: groonga-httpd: Privilege escalation due to insecure use of logrotate

2019-05-08 Thread Salvatore Bonaccorso
Hi, [please always include team@security.d.o as so any team member can reply] On Wed, May 08, 2019 at 12:03:49PM +0900, Hideki Yamane wrote: > Hi Salvatore, > > Can you follow his question? I guess debian revision should be > 6.1.5-1+deb9u1, but others are okay. I think updating groonga via

Bug#928172: debian-security-support: fails to upgrade from 'testing': dpkg: error: error executing hook

2019-05-08 Thread Gabriel Filion
Hi again! On Tue, 7 May 2019 02:24:59 -0400 Gabriel Filion wrote: > On Mon, 29 Apr 2019 15:44:39 +0200 Santiago Vila wrote: > > On Mon, Apr 29, 2019 at 01:22:18PM +, Holger Levsen wrote: > > > if we now could please focus on #928172 and ignore #927450 for now, > > > that would be great.

Bug#928673: marked as done (node-mqtt-packet: CVE-2019-5432)

2019-05-08 Thread Debian Bug Tracking System
Your message dated Wed, 08 May 2019 17:48:29 + with message-id and subject line Bug#928673: fixed in node-mqtt-packet 6.0.0-2 has caused the Debian Bug report #928673, regarding node-mqtt-packet: CVE-2019-5432 to be marked as done. This means that you claim that the problem has been dealt

Processed: Re: Bug#923661: tt-rss: PHP Fatal error: Uncaught PDOException: SQLSTATE[22001]: String data, right truncated

2019-05-08 Thread Debian Bug Tracking System
Processing control commands: > severity -1 serious Bug #923661 [tt-rss] tt-rss: PHP Fatal error: Uncaught PDOException: SQLSTATE[22001]: String data, right truncated Severity set to 'serious' from 'grave' -- 923661: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=923661 Debian Bug Tracking

Bug#923661: tt-rss: PHP Fatal error: Uncaught PDOException: SQLSTATE[22001]: String data, right truncated

2019-05-08 Thread Helmut Grohne
Control: severity -1 serious On Sun, Mar 03, 2019 at 01:33:36PM +0100, Stefan Fritsch wrote: > after upgrading from 16.8+git20160826+dfsg-3 (which I had run under > Debian stretch), tt-rss fails to display anything after the login page. > There is this error: > > [Sun Mar 03 13:15:12.954927

Bug#928673: node-mqtt-packet: CVE-2019-5432

2019-05-08 Thread Salvatore Bonaccorso
Source: node-mqtt-packet Version: 6.0.0-1 Severity: grave Tags: security upstream Hi, The following vulnerability was published for node-mqtt-packet. CVE-2019-5432[0]: | A specifically malformed MQTT Subscribe packet crashes MQTT Brokers | using the mqtt-packet module versions 3.5.1, 4.0.0 -

Processed: severity of 928631 is serious

2019-05-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 928631 serious Bug #928631 [firmware-amd-graphics] firmware-amd-graphics: Update to 20190502-1 causus hang of system directly after grub Severity set to 'serious' from 'important' > thanks Stopping processing here. Please contact me if

Processed: severity of 928631 is important

2019-05-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 928631 important Bug #928631 [firmware-amd-graphics] firmware-amd-graphics: Update to 20190502-1 causus hang of system directly after grub Severity set to 'important' from 'critical' > thanks Stopping processing here. Please contact me

Bug#928127: marked as done (xpdf: FTBFS in experimental)

2019-05-08 Thread Debian Bug Tracking System
Your message dated Wed, 8 May 2019 17:04:40 +0200 with message-id <97b4db7b-a85e-e383-e979-bce1cd926...@debian.org> and subject line Re: xpdf: FTBFS in experimental has caused the Debian Bug report #928127, regarding xpdf: FTBFS in experimental to be marked as done. This means that you claim that

Bug#844778: marked as done (clsync FTBFS on !x86: error: '__NR_select' undeclared here)

2019-05-08 Thread Debian Bug Tracking System
Your message dated Wed, 08 May 2019 12:33:25 + with message-id and subject line Bug#844778: fixed in clsync 0.4.3-1 has caused the Debian Bug report #844778, regarding clsync FTBFS on !x86: error: '__NR_select' undeclared here to be marked as done. This means that you claim that the problem

Bug#928631: firmware-amd-graphics: Update to 20190502-1 causus hang of system directly after grub

2019-05-08 Thread Antonio De Luci
Package: firmware-amd-graphics Version: 20190502-1 Severity: critical Justification: breaks the whole system I have the same problem, my system is: Product Name: X470 GAMING PRO CARBON (MS-7B78) CPU: AMD Ryzen 7 2700X Eight-Core Processor GPU: Asus ROG Strix RX VEGA64 OC edition 8GB "THE SAME

Processed: your mail

2019-05-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > reassign 926872 libwebkit2gtk-4.0-37 webkit2gtk/2.24.1-1 Bug #926872 [webkit2gtk] evolution: Spaces in mail view disappeared with recent updates Bug reassigned from package 'webkit2gtk' to 'libwebkit2gtk-4.0-37'. No longer marked as found in

Processed (with 1 error): your mail

2019-05-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tags 928399 + confirmed Bug #928399 [libwebkit2gtk-4.0-37] libwebkit2gtk-4.0-37: White spaces are always skipped in redinering of text plain. Added tag(s) confirmed. > tags 926872 + patch Bug #926872 [evolution] evolution: Spaces in mail view

Bug#928399: libwebkit2gtk-4.0-37: White spaces are always skipped in redinering of text plain.

2019-05-08 Thread Alberto Garcia
Control: tags -1 patch On Tue, May 07, 2019 at 04:29:29PM +0300, Alberto Garcia wrote: > Thanks, I cannot reproduce this with the Spanish locale > (es_ES.UTF-8) but it does happen with ja_JP.UTF-8 and the > fonts-noto-cjk package installed. > > I reported it upstream. There's already a

Processed: Re: Bug#928399: libwebkit2gtk-4.0-37: White spaces are always skipped in redinering of text plain.

2019-05-08 Thread Debian Bug Tracking System
Processing control commands: > tags -1 patch Bug #928399 [libwebkit2gtk-4.0-37] libwebkit2gtk-4.0-37: White spaces are always skipped in redinering of text plain. Added tag(s) patch. -- 928399: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=928399 Debian Bug Tracking System Contact

Processed: unusable

2019-05-08 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 923661 grave Bug #923661 [tt-rss] tt-rss: PHP Fatal error: Uncaught PDOException: SQLSTATE[22001]: String data, right truncated Severity set to 'grave' from 'important' > thanks Stopping processing here. Please contact me if you need

Bug#927714: marked as done (CVE-2019-3885 CVE-2018-16877 CVE-2018-16878)

2019-05-08 Thread Debian Bug Tracking System
Your message dated Wed, 08 May 2019 08:34:29 + with message-id and subject line Bug#927714: fixed in pacemaker 2.0.1-3 has caused the Debian Bug report #927714, regarding CVE-2019-3885 CVE-2018-16877 CVE-2018-16878 to be marked as done. This means that you claim that the problem has been