Bug#989103: pulseaudio crashes on startup

2021-07-20 Thread sean dwyer
Hi, I tried to use this patch and rebuild the package, it fails because the main patch has fuzz and quilt refresh doesn't change anything. This needs urgent attention, even if users are using udev-detect like myself, they are still catching this bug. Sean -- I love deadlines. I love the

Bug#991337: pulseaudio: Pulseaudio craches on start with SegFault error

2021-07-20 Thread Mikhail Vereshchagin
Subject: pulseaudio: Pulseaudio craches on start with SegFault error Package: pulseaudio Version: 14.2-2 Severity: grave Justification: renders package unusable Dear Maintainer, *** Reporter, please consider answering these questions, where appropriate *** * What led up to the situation?

Processed: unarchiving 928226, affects 928226

2021-07-20 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > unarchive 928226 Bug #928226 {Done: Andreas Beckmann }

Bug#990368: Supertuxkart has proprietary data

2021-07-20 Thread Reiner Herrmann
I have asked the release team in #991335 for pre-approval of a upstream tarball repack which removes the non-free karts, includes the suggested patches by upstream and will either clarify the remaining open copyright questions or replace the assets with alternatives. I'm currently in contact with

Bug#991307: marked as done (aspell: CVE-2019-25051)

2021-07-20 Thread Debian Bug Tracking System
Your message dated Tue, 20 Jul 2021 22:18:31 + with message-id and subject line Bug#991307: fixed in aspell 0.60.8-3 has caused the Debian Bug report #991307, regarding aspell: CVE-2019-25051 to be marked as done. This means that you claim that the problem has been dealt with. If this is not

Bug#991334: monit: Race condition on reboot timestamp checks

2021-07-20 Thread Guillem Jover
Package: monit Version: 1:5.27.2-1 Severity: serious Forwarded: https://bitbucket.org/tildeslash/monit/pull-requests/110/use-an-epsilon-when-doing-the-reboot-boot Hi! On Linux the current method to retrieve the boot timestamp is racy, which means that the reboot checks (the daemon start delay),

Bug#970191: marked as done (bookworm: Python3 syntax errors at configure step)

2021-07-20 Thread Debian Bug Tracking System
Your message dated Tue, 20 Jul 2021 21:33:32 + with message-id and subject line Bug#970191: fixed in bookworm 1.1.2+git20210715-1 has caused the Debian Bug report #970191, regarding bookworm: Python3 syntax errors at configure step to be marked as done. This means that you claim that the

Bug#991320: flameshot crashing on startup

2021-07-20 Thread Dennis Filder
X-Debbugs-CC: allan grossman On Tue, Jul 20, 2021 at 02:54:26PM -0500, allan wrote: > Setting checkForUpdates=false resolved the issue. Thanks, Dennis :) Okay, that is good to know. I personally feel like that option should be set to false by default in Debian (don't the pop-ups annoy the

Bug#991040: marked as done (varnish: CVE-2021-36740: VSV00007)

2021-07-20 Thread Debian Bug Tracking System
Your message dated Tue, 20 Jul 2021 20:37:23 + with message-id and subject line Bug#991040: fixed in varnish 6.5.2-1 has caused the Debian Bug report #991040, regarding varnish: CVE-2021-36740: VSV7 to be marked as done. This means that you claim that the problem has been dealt with. If

Bug#991330: octave-zeromq: missing build dependency on pkg-config

2021-07-20 Thread Adrian Bunk
Source: octave-zeromq Version: 1.5.3-1 Severity: serious Tags: ftbfs https://buildd.debian.org/status/package.php?p=octave-zeromq=experimental ... checking for pkg-config... no checking for libzmq... no configure: error: octave zeromq package requires zeromq library error: pkg: error running

Bug#991320: flameshot crashing on startup

2021-07-20 Thread allan
Setting checkForUpdates=false resolved the issue. Thanks, Dennis :)

Bug#991320: flameshot crashing on startup

2021-07-20 Thread Dennis Filder
X-Debbugs-CC: allan grossman On Tue, Jul 20, 2021 at 02:16:16PM -0500, allan wrote: > apt log shows qt libraries updated three days ago - these wouldn't > have made it to Bullseye yet. > > Start-Date: 2021-07-17 08:52:52 > Requested-By: wizard (1000) > Install: libqt5quickwidgets5:amd64

Bug#990227: marked as done (kyotocabinet-utils,libkyotocabinet-dev: unhandled symlink to directory conversion: /usr/share/doc/PACKAGE)

2021-07-20 Thread Debian Bug Tracking System
Your message dated Tue, 20 Jul 2021 19:48:38 + with message-id and subject line Bug#990227: fixed in kyotocabinet 1.2.76-5~exp2 has caused the Debian Bug report #990227, regarding kyotocabinet-utils,libkyotocabinet-dev: unhandled symlink to directory conversion: /usr/share/doc/PACKAGE to be

Bug#991320: flameshot crashing on startup

2021-07-20 Thread allan
apt log shows qt libraries updated three days ago - these wouldn't have made it to Bullseye yet. Start-Date: 2021-07-17 08:52:52 Requested-By: wizard (1000) Install: libqt5quickwidgets5:amd64 (5.15.2+dfsg-6, automatic), qml-module-qtquick-window2:amd64 (5.15.2+dfsg-6, automatic), sox:amd64

Bug#991320: flameshot crashing on startup

2021-07-20 Thread Dennis Filder
X-Debbugs-CC: allan grossman On Tue, Jul 20, 2021 at 01:16:39PM -0500, allan wrote: > This has only been broken for a couple of days - there's a strong > possibility that whatever broke it hasn't made it to Bullseye yet. > This appears to be an upstream bug because a Manjaro user running same >

Bug#991320: flameshot crashing on startup

2021-07-20 Thread Boyuan Yang
在 2021-07-20星期二的 13:16 -0500,allan写道: > This has only been broken for a couple of days - there's a strong > possibility that whatever broke it hasn't made it to Bullseye yet. > This appears to be an upstream bug because a Manjaro user running same > version of flameshot and Qt is experiencing same

Bug#991320: flameshot crashing on startup

2021-07-20 Thread allan
More information. Qt5 updates on these machines was installed three days ago; since I update daily I'm fairly certain these updates haven't made it to Bullseye yet.

Bug#991320: flameshot crashing on startup

2021-07-20 Thread allan
This has only been broken for a couple of days - there's a strong possibility that whatever broke it hasn't made it to Bullseye yet. This appears to be an upstream bug because a Manjaro user running same version of flameshot and Qt is experiencing same behavior and as mentioned, it broke a couple

Processed: cloning 990566, retitle 990566 to dovecot: CVE-2021-33515 CVE-2021-29157, reopening -1 ...

2021-07-20 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > clone 990566 -1 Bug #990566 {Done: Noah Meyerhans } [src:dovecot] dovecot: CVE-2021-33515 CVE-2021-29157 CVE-2020-28200 Bug 990566 cloned as bug 991323 > retitle 990566 dovecot: CVE-2021-33515 CVE-2021-29157 Bug #990566 {Done: Noah Meyerhans }

Bug#990566: dovecot: CVE-2021-33515 CVE-2021-29157 CVE-2020-28200

2021-07-20 Thread Salvatore Bonaccorso
Hi Noah, [sorry for lack of reply to the previous mail, busy with other stuff] On Tue, Jul 20, 2021 at 08:03:12AM -0700, Noah Meyerhans wrote: > On Mon, Jul 19, 2021 at 08:21:45AM -0700, Noah Meyerhans wrote: > > > > CVE-2021-33515[0]: > > > > | The submission service in Dovecot before 2.3.15

Bug#991320: flameshot crashing on startup

2021-07-20 Thread Dennis Filder
X-Debbugs-CC: allan grossman I can't reproduce this under current Bullseye KDE/xorg -- flameshot behaves absolutley normally. It could be a Wayland issue, and flameshot's Wayland support is apparently still experimental. Let us know if running flameshot like so fixes this for you:

Bug#990566: marked as done (dovecot: CVE-2021-33515 CVE-2021-29157 CVE-2020-28200)

2021-07-20 Thread Debian Bug Tracking System
Your message dated Tue, 20 Jul 2021 16:05:15 + with message-id and subject line Bug#990566: fixed in dovecot 1:2.3.13+dfsg1-2 has caused the Debian Bug report #990566, regarding dovecot: CVE-2021-33515 CVE-2021-29157 CVE-2020-28200 to be marked as done. This means that you claim that the

Processed: tagging 991307, found 991308 in 2.15.0+ds1-2, tagging 991308

2021-07-20 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tags 991307 + upstream Bug #991307 [src:aspell] aspell: CVE-2019-25051 Added tag(s) upstream. > found 991308 2.15.0+ds1-2 Bug #991308 [src:openvswitch] openvswitch: CVE-2021-36980 Marked as found in versions openvswitch/2.15.0+ds1-2. > tags

Processed: found 991307 in 0.60.8-2

2021-07-20 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > found 991307 0.60.8-2 Bug #991307 [src:aspell] aspell: CVE-2019-25051 Marked as found in versions aspell/0.60.8-2. > thanks Stopping processing here. Please contact me if you need assistance. -- 991307:

Bug#991320: flameshot crashing on startup

2021-07-20 Thread allan
Correction. "flameshot &" is in openbox autostart, "flameshot gui -p /home/username/temp" is mapped to hotkey in ~/.config/openbox/rc.xml - this configuration has been working for more than a year. On Tue, Jul 20, 2021 at 10:18 AM allan grossman wrote: > > Package: flameshot > Version:

Bug#991320: flameshot crashing on startup

2021-07-20 Thread allan grossman
Package: flameshot Version: 0.9.0+ds1-1 Severity: grave Justification: renders package unusable X-Debbugs-Cc: wizard10...@gmail.com Dear Maintainer, * What led up to the situation? Have flameshot gui -p /home/username/temp set in openbox autostart. Mapped hotkeys were not responding.

Bug#990566: dovecot: CVE-2021-33515 CVE-2021-29157 CVE-2020-28200

2021-07-20 Thread Noah Meyerhans
On Mon, Jul 19, 2021 at 08:21:45AM -0700, Noah Meyerhans wrote: > > > CVE-2021-33515[0]: > > > | The submission service in Dovecot before 2.3.15 allows STARTTLS > > > | command injection in lib-smtp. Sensitive information can be redirected > > > | to an attacker-controlled address. > > > > > >

Bug#990371: marked as done (munin-node: Unit fails on startup - Runtime directory n/a)

2021-07-20 Thread Debian Bug Tracking System
Your message dated Tue, 20 Jul 2021 14:38:06 + with message-id and subject line Bug#990371: fixed in munin 2.0.67-2 has caused the Debian Bug report #990371, regarding munin-node: Unit fails on startup - Runtime directory n/a to be marked as done. This means that you claim that the problem

Processed: Re: Bug#991300: 1:0.4.30-1 is FTFBS on s390x (bytes per pixel in header is 4096 instead of 16)

2021-07-20 Thread Debian Bug Tracking System
Processing control commands: > forwarded -1 https://gitlab.gnome.org/GNOME/gegl/-/issues/289 Bug #991300 [gegl] 1:0.4.30-1 is FTFBS on s390x (bytes per pixel in header is 4096 instead of 16) Set Bug forwarded-to-address to 'https://gitlab.gnome.org/GNOME/gegl/-/issues/289'. > severity -1

Bug#991307: aspell: CVE-2019-25051

2021-07-20 Thread Moritz Mühlenhoff
Source: aspell X-Debbugs-CC: t...@security.debian.org Severity: grave Tags: security Hi, The following vulnerability was published for aspell. CVE-2019-25051[0]: | objstack in GNU Aspell 0.60.8 has a heap-based buffer overflow in | acommon::ObjStack::dup_top (called from acommon::StringMap::add

Bug#990835: marked as done (suricata: CVE-2021-35063)

2021-07-20 Thread Debian Bug Tracking System
Your message dated Tue, 20 Jul 2021 11:03:38 + with message-id and subject line Bug#990835: fixed in suricata 1:6.0.1-3 has caused the Debian Bug report #990835, regarding suricata: CVE-2021-35063 to be marked as done. This means that you claim that the problem has been dealt with. If this

Bug#991296: Should deltachat-core be shipped in bullseye?

2021-07-20 Thread Adrian Bunk
Source: deltachat-core Version: 0.45.0+ds-1 Severity: serious deltachat-core was never part of a stable release before, and looking at #991284 it doesn't sound as if shipping it in bullseye would be beneficial.

Bug#991293: marked as done (pillow: CVE-2021-34552 - buffer overflow in Convert.c)

2021-07-20 Thread Debian Bug Tracking System
Your message dated Tue, 20 Jul 2021 06:18:33 + with message-id and subject line Bug#991293: fixed in pillow 8.1.2+dfsg-0.3 has caused the Debian Bug report #991293, regarding pillow: CVE-2021-34552 - buffer overflow in Convert.c to be marked as done. This means that you claim that the