[Touch-packages] [Bug 1549709] Re: getting "unable to get local issuer certificate" for valid domains after upgrading to 20160104ubuntu0.14.04.1

2016-02-25 Thread Marc Deslauriers
Thanks! I've closed the bug. ** Changed in: ca-certificates (Ubuntu) Status: Incomplete => Invalid -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to ca-certificates in Ubuntu. https://bugs.launchpad.net/bugs/1549709

[Touch-packages] [Bug 1549709] Re: getting "unable to get local issuer certificate" for valid domains after upgrading to 20160104ubuntu0.14.04.1

2016-02-25 Thread Marc Deslauriers
The openssl tools in Ubuntu 14.04 never did use the system CA file by default. That was fixed in later releases. So it's normal that you don't need to specify it manually when using 15.10 for example, but do need to specify it in 14.04. The path to it has always been

[Touch-packages] [Bug 1550643] Re: Please backport OpenSSL SNI signature algorithms fix.

2016-02-27 Thread Marc Deslauriers
tus: New => Confirmed ** Changed in: openssl (Ubuntu Precise) Importance: Undecided => Medium ** Changed in: openssl (Ubuntu Trusty) Importance: Undecided => Medium ** Changed in: openssl (Ubuntu Precise) Assignee: (unassigned) => Marc Deslauriers (mdeslaur) ** Chan

[Touch-packages] [Bug 1550423] Re: ERR_SSL_PROTOCOL_ERROR

2016-02-27 Thread Marc Deslauriers
Chrome 45 is too old. You need to update to Chrome 47 or later, preferably to the current version, Chrome 48. I am closing this bug as running an old version of Chrome is not supported. ** Changed in: nss (Ubuntu) Status: Incomplete => Won't Fix -- You received this bug notification

[Touch-packages] [Bug 1528645] Re: Please update ca-certificates on Trusty

2016-02-26 Thread Marc Deslauriers
You need to restart everything that uses libssl, perhaps only the web server, you'll see when you try it. -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to ca-certificates in Ubuntu. https://bugs.launchpad.net/bugs/1528645

[Touch-packages] [Bug 1550423] Re: ERR_SSL_PROTOCOL_ERROR

2016-02-26 Thread Marc Deslauriers
What version of Chrome are you running? ** Package changed: ca-certificates (Ubuntu) => nss (Ubuntu) -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to ca-certificates in Ubuntu. https://bugs.launchpad.net/bugs/1550423 Title:

[Touch-packages] [Bug 1528645] Re: Please update ca-certificates on Trusty

2016-02-26 Thread Marc Deslauriers
Did you restart your server after the update in order to use the new version of libssl? -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to ca-certificates in Ubuntu. https://bugs.launchpad.net/bugs/1528645 Title: Please

[Touch-packages] [Bug 1517040] Re: wpa 2.4 misses one patch from Debian to improve 2.4/5 GHz AP selection

2016-01-19 Thread Marc Deslauriers
ACK on the debdiff in comment #1, uploading now. Thanks! -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to wpa in Ubuntu. https://bugs.launchpad.net/bugs/1517040 Title: wpa 2.4 misses one patch from Debian to improve 2.4/5

[Touch-packages] [Bug 1532648] Re: Please merge openldap 2.4.42+dfsg-2 (main) from Debian testing (main)

2016-01-19 Thread Marc Deslauriers
Merge looks good. Uploading. Thanks! -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to openldap in Ubuntu. https://bugs.launchpad.net/bugs/1532648 Title: Please merge openldap 2.4.42+dfsg-2 (main) from Debian testing (main)

[Touch-packages] [Bug 1451438] Re: graphite2 fails to build in trusty on i386

2016-02-17 Thread Marc Deslauriers
Fixed in (1.2.4-1ubuntu1.1). ** Changed in: graphite2 (Ubuntu Trusty) Status: New => Fix Released ** Changed in: graphite2 (Ubuntu) Status: Confirmed => Fix Released -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is

[Touch-packages] [Bug 1546459] Re: segfault at b774bd9d ip b7352a0d sp bfda8f30 error 7 in libresolv-2.19.so[b7349000+13000]

2016-02-18 Thread Marc Deslauriers
How are you installing this? What image are you using? -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to eglibc in Ubuntu. https://bugs.launchpad.net/bugs/1546459 Title: segfault at b774bd9d ip b7352a0d sp bfda8f30 error 7

[Touch-packages] [Bug 1547147] Re: libnss3-dev adds epoch 2 to the Version in pkg-config's pc file

2016-02-18 Thread Marc Deslauriers
Confirmed, the epoch wasn't supposed to get bumped in precise. ** Also affects: nss (Ubuntu Precise) Importance: Undecided Status: New ** Changed in: nss (Ubuntu Precise) Status: New => Confirmed ** Changed in: nss (Ubuntu Precise) Assignee: (unassigned) =>

[Touch-packages] [Bug 1546459] Re: segfault at b774bd9d ip b7352a0d sp bfda8f30 error 7 in libresolv-2.19.so[b7349000+13000]

2016-02-18 Thread Marc Deslauriers
I can reproduce this issue with the mini.iso from the release version of 14.04. Could you please try again with the newer mini.iso from trusty-updates (available here:) http://archive.ubuntu.com/ubuntu/dists/trusty-updates/main/installer-amd64/current/images/netboot/mini.iso

[Touch-packages] [Bug 1444656] Re: GnuTLS TLS 1.2 handshake failure

2016-03-10 Thread Marc Deslauriers
It looks like the servers listed in the bug description require SIGN- RSA-SHA384, which gnutls26 doesn't support. The issue can be reproduced with gnutls28 by disabling the additional signature algorithms: gnutls-cli --priority "NORMAL:-SIGN-ECDSA-SHA256:-SIGN-RSA-SHA384:-SIGN-

[Touch-packages] [Bug 1554935] Re: package libandroid-properties1 0.1.0+git20131207+e452e83-0ubuntu40~gcc5.1 failed to install/upgrade: package libandroid-properties1 is already installed and configur

2016-03-11 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross

[Touch-packages] [Bug 1543070] Re: Security breach: bubble displays message preview when screen is unlocked

2016-03-11 Thread Marc Deslauriers
** Changed in: messaging-app (Ubuntu) Status: New => Triaged -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to messaging-app in Ubuntu. https://bugs.launchpad.net/bugs/1543070 Title: Security breach: bubble displays

[Touch-packages] [Bug 1558114] Re: package libpam-modules 1.1.8-3.1ubuntu3.1 failed to install/upgrade: trying to overwrite shared '/usr/share/man/man8/pam_unix.8.gz', which is different from other in

2016-03-19 Thread Marc Deslauriers
** Also affects: pam (Ubuntu Precise) Importance: Undecided Status: New ** Also affects: pam (Ubuntu Xenial) Importance: Critical Assignee: Marc Deslauriers (mdeslaur) Status: Triaged ** Changed in: pam (Ubuntu Precise) Status: New => Triaged ** Changed in:

[Touch-packages] [Bug 1566279] Re: python2.7 crashed with SIGSEGV

2016-04-08 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross

[Touch-packages] [Bug 1567631] Re: [HDA-Intel - HDA Intel PCH, playback] Playback problem

2016-04-08 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross

[Touch-packages] [Bug 1567343] Re: I am just trying to help you !

2016-04-08 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross

[Touch-packages] [Bug 1565551] Re: webapp-container crashed with SIGSEGV in malloc_consolidate()

2016-04-08 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross

[Touch-packages] [Bug 1565626] Re: tracker-miner-fs crashed with SIGSEGV in up_exported_daemon_get_on_battery()

2016-04-08 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross

[Touch-packages] [Bug 1567008] Re: package libsignon-plugins-common1:amd64 8.57+15.10.20150616-0ubuntu2~gcc5.1 failed to install/upgrade: package is in a very bad inconsistent state; you should reins

2016-04-08 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross

[Touch-packages] [Bug 1565224] Re: error

2016-04-08 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross

[Touch-packages] [Bug 1568149] Re: startup-disk-creator will not ask for authentication

2016-04-08 Thread Marc Deslauriers
The policykit-desktop-privileges package was changed in 2011 to allow writing images without a password: policykit-desktop-privileges (0.7) oneiric; urgency=low * Allow local admins to do the less harmful usb-creator actions (mounting and writing image) without a password. -- Martin Pitt

[Touch-packages] [Bug 1556330] Re: upstream curl bug #1371: p12 client certificates code is broken

2016-04-12 Thread Marc Deslauriers
The debdiff looked fine, but needed fixing. Curl is a particular package as the last two patches get unapplied during the build to accommodate for different library backends. New patches need to get added earlier in the series file. I've fixed the debdiff, made sure it builds properly, and have

[Touch-packages] [Bug 1456195] Re: Zero-minimum possessive groups does not match empty string

2016-04-12 Thread Marc Deslauriers
Thanks for the patch. Could you please prepare a debdiff for trusty and wily suitable for sponsoring as an SRU? Thanks! ** Also affects: pcre3 (Ubuntu Wily) Importance: Undecided Status: New ** Also affects: pcre3 (Ubuntu Xenial) Importance: Medium Status: New ** Also

[Touch-packages] [Bug 1089013] Re: clvm startup script requires cman

2016-04-12 Thread Marc Deslauriers
ACK on the debdiffs in comment #9 and #10. I've uploaded them for processing by the SRU team, but I've added the missing start/stop dependencies change to the trusty one first. Thanks! ** Changed in: lvm2 (Ubuntu Trusty) Status: Triaged => In Progress ** Changed in: lvm2 (Ubuntu Wily)

[Touch-packages] [Bug 1564451] Re: User processes are counted towards systemd limit for sshd processes

2016-04-08 Thread Marc Deslauriers
** Information type changed from Public Security to Public -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to openssh in Ubuntu. https://bugs.launchpad.net/bugs/1564451 Title: User processes are counted towards systemd limit

[Touch-packages] [Bug 1547133] Re: After automatically upgrading Xubuntu library libnss3 to version 2:3.21-0ubuntu0.15.10.1 some apps stop working

2016-03-24 Thread Marc Deslauriers
This is a bug in QtWebEngine. The file src/3rdparty/chromium/net/third_party/nss/patches/chacha20poly1305.patch contains the following: +/* This is a bodge to allow this code to be compiled against older NSS + * headers. */ +#ifndef CKM_NSS_CHACHA20_POLY1305 +#define CKM_NSS_CHACHA20_POLY1305

[Touch-packages] [Bug 1553819] Re: Regression in trusty's gnutls26, can't connect to servers with RSA-MD5 certs (cacert)

2016-03-06 Thread Marc Deslauriers
The point of the USN-2865-1 security update was to remove support for RSA-MD5 certificates which are considered insecure and were previously accepted in GnuTLS because of a design flaw. See the following for more information: http://lists.gnutls.org/pipermail/gnutls-devel/2015-April/007572.html

[Touch-packages] [Bug 1551615] Re: Alternative chain verification failure after 1024b root CAs removal

2016-03-01 Thread Marc Deslauriers
We released updated openssl packages to handle that case: http://www.ubuntu.com/usn/usn-2913-3/ What version of openssl do you have installed? What specific site are you unable to access? ** Changed in: ca-certificates (Ubuntu) Status: New => Incomplete -- You received this bug

[Touch-packages] [Bug 1551615] Re: Alternative chain verification failure after 1024b root CAs removal

2016-03-03 Thread Marc Deslauriers
Marcin, It looks like your bank renewed their SSL cert on Feb 9th, and they forgot to include the intermediate certificate. This is a configuration problem on their end and has nothing to do with Ubuntu updates. Tell them to go to the following page and type in ebank.db-pbc.pl for more

[Touch-packages] [Bug 1551615] Re: Alternative chain verification failure after 1024b root CAs removal

2016-03-01 Thread Marc Deslauriers
Glad that it's working, thanks! I'm closing this bug. ** Changed in: ca-certificates (Ubuntu) Status: Incomplete => Invalid -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to ca-certificates in Ubuntu.

[Touch-packages] [Bug 1565293] Re: OpenSSL 1.0.1 fails to recognize cross-signed roots as trusted

2016-04-02 Thread Marc Deslauriers
*** This bug is a duplicate of bug 1528645 *** https://bugs.launchpad.net/bugs/1528645 Glad it's working. I didn't rehash, but that should just result in a dangling symlink which shouldn't be valid. Thanks for testing with a fresh rehash. I'll mark this bug as a dupe of 1528645. Thanks! **

[Touch-packages] [Bug 1563825] [NEW] FFe: Update to sudo 1.8.16

2016-03-30 Thread Marc Deslauriers
*** This bug is a security vulnerability *** Public security bug reported: I am requesting a FeatureFreeze exception to update sudo in Xenial to the newly released 1.8.16 version. Not only does the new 1.8.16 version fix a large number of bugs, but it also fixes security issues: -

[Touch-packages] [Bug 1549609] Re: Stack Corruption in PCRE 8.35

2016-03-30 Thread Marc Deslauriers
These should now be fixed by the following update: http://www.ubuntu.com/usn/usn-2943-1/ ** Changed in: pcre3 (Ubuntu) Status: Triaged => Fix Released -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to pcre3 in Ubuntu.

[Touch-packages] [Bug 1563825] Re: FFe: Update to sudo 1.8.16

2016-03-30 Thread Marc Deslauriers
Just to be clear, I will start by merging 1.8.15-1.1 from debian, and will update to 1.8.16 which isn't in Debian yet. -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to sudo in Ubuntu. https://bugs.launchpad.net/bugs/1563825

[Touch-packages] [Bug 1565293] Re: OpenSSL 1.0.1 fails to recognize cross-signed roots as trusted

2016-04-02 Thread Marc Deslauriers
What versions of the openssl and ca-certificates packages have you tried this on? On what release of Ubuntu? The following update removed 1024-bit certs: http://www.ubuntu.com/usn/usn-2913-1/ The following update added alternate certificate chain support to openssl:

[Touch-packages] [Bug 1565293] Re: OpenSSL 1.0.1 fails to recognize cross-signed roots as trusted

2016-04-02 Thread Marc Deslauriers
So it seems "Equifax Secure Certificate Authority" is still present in the latest ca-certificates package. Presumably once Mozilla removes it we will issue an updated ca-certificates package. However, removing it still allows google to validate: $ sudo rm /usr/lib/ssl/certs/Equifax_Secure_CA.pem

[Touch-packages] [Bug 1573494] Re: winbind 4.3.8 has an ntlm_auth that breaks evolution-ews

2016-04-22 Thread Marc Deslauriers
ded Status: New ** Changed in: libsoup2.4 (Ubuntu Trusty) Status: New => Confirmed ** Changed in: libsoup2.4 (Ubuntu Trusty) Assignee: (unassigned) => Marc Deslauriers (mdeslaur) ** Changed in: libsoup2.4 (Ubuntu Wily) Status: New => Confirmed ** Changed in: libsoup2.4

[Touch-packages] [Bug 1512002] Re: Annoying dialog "Authentication is required to change your own user data"

2016-04-29 Thread Marc Deslauriers
I can't think of any reason why having a session would be important in this case, so I think changing allow_any to yes should be fine. -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to accountsservice in Ubuntu.

[Touch-packages] [Bug 1573494] Re: winbind 4.3.8 has an ntlm_auth that breaks evolution-ews

2016-04-27 Thread Marc Deslauriers
Thanks for testing it Simon! -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to libsoup2.4 in Ubuntu. https://bugs.launchpad.net/bugs/1573494 Title: winbind 4.3.8 has an ntlm_auth that breaks evolution-ews Status in libsoup:

[Touch-packages] [Bug 1573494] Re: winbind 4.3.8 has an ntlm_auth that breaks evolution-ews

2016-04-26 Thread Marc Deslauriers
I've put updated libsoup packages that fix this issue in the security team PPA here: https://launchpad.net/~ubuntu-security- proposed/+archive/ubuntu/ppa/+packages I'd appreciate if someone could test them to see if they fix evolution- ews NTLM authentication and comment here. If they test ok,

[Touch-packages] [Bug 1580700] Re: wget in 12.04 does not support SNI

2016-05-18 Thread Marc Deslauriers
** Tags removed: verification-needed ** Tags added: verification-done -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to wget in Ubuntu. https://bugs.launchpad.net/bugs/1580700 Title: wget in 12.04 does not support SNI

[Touch-packages] [Bug 1580700] Re: Add Let's Encrypt Authority to Package

2016-05-11 Thread Marc Deslauriers
Current ca-certificates should already have the required CA. Which version of ca-certificates, and which version of wget are you trying? -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to ca-certificates in Ubuntu.

[Touch-packages] [Bug 1580700] Re: Add Let's Encrypt Authority to Package

2016-05-11 Thread Marc Deslauriers
New => Confirmed ** Changed in: wget (Ubuntu Precise) Assignee: (unassigned) => Marc Deslauriers (mdeslaur) ** Description changed: + [Impact] + wget in Ubuntu 12.04 doesn't have support for TLS Server Name Indication, which makes it incompatible with certain sites, includes sites

[Touch-packages] [Bug 1581030] Re: Please drop --enable-admin-flag

2016-05-12 Thread Marc Deslauriers
It's not useless, it is used by /etc/bash.bashrc to know whether or not to print the help message if the user has not used sudo before. As for moving the file to xdg-cache, please file a bug with the upstream developers here: https://bugzilla.sudo.ws/index.cgi Once the bug has been filed,

[Touch-packages] [Bug 1581084] Re: CMS Consistency Test failed

2016-05-12 Thread Marc Deslauriers
sl (Ubuntu) Status: New => Confirmed ** Changed in: openssl (Ubuntu) Assignee: (unassigned) => Marc Deslauriers (mdeslaur) -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to openssl in Ubuntu. https://bugs.launchpad.

[Touch-packages] [Bug 1580700] Re: wget in 12.04 does not support SNI

2016-05-13 Thread Marc Deslauriers
If you've added precise-proposed to your /etc/apt/sources.list, all you need to do is perform the two following commands: 1- apt-get update 2- apt-get install wget Don't forget to remove precise-proposed from your /etc/apt/sources.list when you're done. -- You received this bug notification

[Touch-packages] [Bug 1580700] Re: Add Let's Encrypt Authority to Package

2016-05-11 Thread Marc Deslauriers
I can reproduce this with wget on 12.04, but not on 14.04. Both use the same version of ca-certificates. Using openssl directly also works: openssl s_client -CAfile /etc/ssl/certs/ca-certificates.crt -connect www.x.org:443 I suspect wget on 12.04 is doing something odd, I'll look into this. --

[Touch-packages] [Bug 1580700] Re: Add Let's Encrypt Authority to Package

2016-05-11 Thread Marc Deslauriers
Ubuntu 12.04 has wget 1.13.4, which doesn't have support for TLS Server Name Indication, which was included in 1.14. That needs to get backported. ** No longer affects: ca-certificates (Ubuntu) -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which

[Touch-packages] [Bug 1565567] Re: segv in sudo_getgrgid

2016-05-04 Thread Marc Deslauriers
it to proposed as an SRU. Thanks! ** Changed in: sudo (Ubuntu) Assignee: (unassigned) => Marc Deslauriers (mdeslaur) ** Changed in: sudo (Ubuntu Xenial) Assignee: (unassigned) => Marc Deslauriers (mdeslaur) ** Bug watch added: bugzilla.sudo.ws/ #743 http://bugzilla.sudo.ws/show_bug.cgi?

[Touch-packages] [Bug 1565567] Re: segv in sudo_getgrgid

2016-05-04 Thread Marc Deslauriers
** Also affects: sudo (Ubuntu Xenial) Importance: Undecided Status: New ** Changed in: sudo (Ubuntu Xenial) Status: New => Confirmed -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to sudo in Ubuntu.

[Touch-packages] [Bug 1565567] Re: segv in sudo_getgrgid

2016-05-04 Thread Marc Deslauriers
Packages in the PPA have been successfully tested, and upstream has commited a slightly more exhaustive fix: https://www.sudo.ws/repos/sudo/rev/1d13341d53ec I have uploaded the fix to yakkety. I have uploaded the fix to xenial for processing by the SRU team. ** Changed in: sudo (Ubuntu)

[Touch-packages] [Bug 1573353] Re: package libpcre3:amd64 1:8.31-2ubuntu2.2 failed to install/upgrade: package libpcre3:amd64 is not ready for configuration cannot configure (current status `half-inst

2016-05-05 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross

[Touch-packages] [Bug 1573416] Re: package systemd 229-4ubuntu4 failed to install/upgrade: subprocess installed pre-removal script returned error exit status 2

2016-05-05 Thread Marc Deslauriers
*** This bug is a duplicate of bug 1570310 *** https://bugs.launchpad.net/bugs/1570310 Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as

[Touch-packages] [Bug 1578422] Re: fsck

2016-05-05 Thread Marc Deslauriers
Thank you for using Ubuntu and taking the time to report a bug. Your report should contain, at a minimum, the following information so we can better find the source of the bug and work to resolve it. Submitting the bug about the proper source package is essential. For help see

[Touch-packages] [Bug 1577720] Re: dnsmasq resolves xyzzy.xyzzy.xyzzy. to unknown IP

2016-05-05 Thread Marc Deslauriers
I can't reproduce this, which dns server are you using? ** Changed in: dnsmasq (Ubuntu) Status: New => Incomplete ** Information type changed from Private Security to Public Security -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is

[Touch-packages] [Bug 1577790] Re: OS Does not rememeber wifi on/off state upon startup.

2016-05-05 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross

[Touch-packages] [Bug 1577048] Re: intel hd graphics for 530 series for 6th gen intel for ubuntu 16.00

2016-05-05 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross

[Touch-packages] [Bug 1577052] Re: initial boot up

2016-05-05 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross

[Touch-packages] [Bug 1577027] Re: [SATELLITE R850, Realtek ALC269VB, Mic, Internal] Recording problem

2016-05-05 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross

[Touch-packages] [Bug 1573715] Re: package libperl5.22 5.22.1-9 failed to install/upgrade: intentando sobreescribir el compartido `/usr/share/doc/libperl5.22/changelog.Debian.gz', que es distinto de o

2016-05-05 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross

[Touch-packages] [Bug 1573451] Re: package systemd-sysv 229-4ubuntu4 failed to install/upgrade: pre-dependency problem - not installing systemd-sysv

2016-05-05 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross

[Touch-packages] [Bug 1573527] Re: find a bug

2016-05-05 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross

[Touch-packages] [Bug 1557248] Re: OpenLDAP: Backport a fix for use-after-free in GnuTLS-related code

2016-05-10 Thread Marc Deslauriers
** Also affects: openldap (Ubuntu Wily) Importance: Undecided Status: New ** Also affects: openldap (Ubuntu Yakkety) Importance: Medium Status: Confirmed ** Also affects: openldap (Ubuntu Xenial) Importance: Undecided Status: New ** Changed in: openldap (Ubuntu

[Touch-packages] [Bug 1557248] Re: OpenLDAP: Backport a fix for use-after-free in GnuTLS-related code

2016-05-10 Thread Marc Deslauriers
Thanks for the patched packages! I've uploaded your changes to yakkety with a slight change in the changelog to better describe the issue. I've also uploaded updates to wily and xenial for processing by the SRU team. Thanks! ** Changed in: openldap (Ubuntu Yakkety) Status: Confirmed =>

[Touch-packages] [Bug 1557248] Re: OpenLDAP: Backport a fix for use-after-free in GnuTLS-related code

2016-05-10 Thread Marc Deslauriers
As per the SRU requirements, could you please update the bug description with a testing procedure? See here for more information: https://wiki.ubuntu.com/StableReleaseUpdates Thanks! -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is

[Touch-packages] [Bug 1512781] Re: CVE-2015-5602 - Unauthorized Privilege Escalation

2016-04-20 Thread Marc Deslauriers
Xenial now has 1.8.16, marking released. ** Changed in: sudo (Ubuntu Xenial) Status: Confirmed => Fix Released -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to sudo in Ubuntu. https://bugs.launchpad.net/bugs/1512781

[Touch-packages] [Bug 1570394] Re: Missing GTE CyberTrust Global Root in trusty-updates repo

2016-04-14 Thread Marc Deslauriers
Which eclipse package are you using, and what site are you accessing that is giving the error? ** Changed in: ca-certificates (Ubuntu) Status: New => Incomplete -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to

[Touch-packages] [Bug 1570394] Re: Missing GTE CyberTrust Global Root in trusty-updates repo

2016-04-14 Thread Marc Deslauriers
That link shows the contents of the original ca-certificates package that shipped with trusty, not the one from trusty-security. Closing this bug. Thanks! ** Changed in: ca-certificates (Ubuntu) Status: Incomplete => Invalid -- You received this bug notification because you are a member

[Touch-packages] [Bug 1570394] Re: Missing GTE CyberTrust Global Root in trusty-updates repo

2016-04-14 Thread Marc Deslauriers
That certificate is not going to be added back. I suggest filing a bug with Eclipse so that they sign using a different CA, especially since that one expires in 2018. The package in trusty-security doesn't contain this certificate. I'm not sure why you believe it does. trusty-updates and

[Touch-packages] [Bug 1570394] Re: Missing GTE CyberTrust Global Root in trusty-updates repo

2016-04-14 Thread Marc Deslauriers
The GTE CyberTrust Global Root certificate was removed by the following security update: http://www.ubuntu.com/usn/usn-2913-1/ Here is some more information on why that CA was removed: https://blog.mozilla.org/security/2015/01/28/phase-2-phasing-out-certificates-with-1024-bit-rsa-keys/

[Touch-packages] [Bug 1575239] Re: sudo sssd ldap segmentation fault

2016-05-07 Thread Marc Deslauriers
This may be a dupe of bug 1565567. Have you tried the sudo package in xenial-proposed? (1.8.16-0ubuntu1.1) -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to sudo in Ubuntu. https://bugs.launchpad.net/bugs/1575239 Title:

[Touch-packages] [Bug 1565567] Re: segv in sudo_getgrgid

2016-05-07 Thread Marc Deslauriers
Don't worry about it, I changed it back. :) ** Changed in: sudo (Ubuntu Xenial) Status: Fix Released => Fix Committed -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to sudo in Ubuntu.

[Touch-packages] [Bug 1575239] Re: sudo sssd ldap segmentation fault

2016-05-07 Thread Marc Deslauriers
*** This bug is a duplicate of bug 1565567 *** https://bugs.launchpad.net/bugs/1565567 Thanks for testing it. Could you please add a comment to bug 1565567 that you tested it successfully? Thanks! ** This bug has been marked a duplicate of bug 1565567 segv in sudo_getgrgid -- You

[Touch-packages] [Bug 1585614] Re: PHP Update on 2016-05-25 causes Apache not to restart, libm.so.6: symbol __strtold_nan, version GLIBC_PRIVATE not defined in file libc.so.6 with link time reference

2016-05-25 Thread Marc Deslauriers
I suspect this is caused by the eglibc update, not the php5 update. Reassigning bug. ** Package changed: php5 (Ubuntu) => eglibc (Ubuntu) -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to eglibc in Ubuntu.

[Touch-packages] [Bug 1602680] Re: ecryptfs not work with libnss3/libnss3-1d Version 2:3.23-0ubuntu0.12.04.1

2016-07-13 Thread Marc Deslauriers
FYI, I couldn't reproduce this earlier either. I installed a new Ubuntu 12.04.5 VM with encrypted home, and was able to successfully upgrade to the newer nss without any issues. -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed

[Touch-packages] [Bug 1604500] Re: please merge keyutils from Debian

2016-07-26 Thread Marc Deslauriers
OK, I'll try a plain sync, and if that fails, I'll upload your merge. Thanks! -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to keyutils in Ubuntu. https://bugs.launchpad.net/bugs/1604500 Title: please merge keyutils from

[Touch-packages] [Bug 1604500] Re: please merge keyutils from Debian

2016-07-26 Thread Marc Deslauriers
** Changed in: keyutils (Ubuntu) Status: New => Fix Committed -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to keyutils in Ubuntu. https://bugs.launchpad.net/bugs/1604500 Title: please merge keyutils from Debian

[Touch-packages] [Bug 1567670] Re: you can drop nssdb integration

2016-07-13 Thread Marc Deslauriers
yakkety sync dropped the delta. Marking as fix released. ** Changed in: nss (Ubuntu) Status: New => Fix Released -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to nss in Ubuntu. https://bugs.launchpad.net/bugs/1567670

[Touch-packages] [Bug 1589288] Re: python3.4 package missing threading module in trusty-security

2016-06-28 Thread Marc Deslauriers
I can't reproduce this issue at all. The threading module definitely is in the libpython3.4-stdlib package, for both the release pocket, and the -security pocket: $ dpkg -c libpython3.4-stdlib_3.4.0-2ubuntu1_amd64.deb | grep threading.py -rw-r--r-- root/root 48898 2014-04-11 10:13

[Touch-packages] [Bug 1592862] Re: Merge e2fsprogs from Debian 1.43.1-1

2016-06-28 Thread Marc Deslauriers
This bug was fixed in the package e2fsprogs - 1.43.1-1 --- e2fsprogs (1.43.1-1) unstable; urgency=medium * New upstream version * Fix the Direct I/O fallback code in the Unix I/O manager so it implements read-modify-write correctly. * The mke2fs program will now warn if the

[Touch-packages] [Bug 1599949] Re: NetworkManager Sets Wrong DNS Server When OpenVPN tun0 starts if ipv6 on underlying interface in Ubuntu 16.04

2016-07-08 Thread Marc Deslauriers
** Information type changed from Private Security to Public Security -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to network-manager in Ubuntu. https://bugs.launchpad.net/bugs/1599949 Title: NetworkManager Sets Wrong DNS

[Touch-packages] [Bug 1599286] Re: gpg crashed with SIGABRT in g10_log_bug()

2016-07-08 Thread Marc Deslauriers
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to gnupg in Ubuntu. https://bugs.launchpad.net/bugs/1599286 Title: gpg crashed with SIGABRT in g10_log_bug() Status

[Touch-packages] [Bug 1600128] Re: package libgtk2.0-0 2.24.23-0ubuntu1 failed to install/upgrade: cannot copy extracted data for './usr/lib/i386-linux-gnu/libgtk-x11-2.0.so.0.2400.23' to '/usr/lib/i3

2016-07-08 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross

[Touch-packages] [Bug 1608185] Re: dnsmasq uses many ports

2016-08-05 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross

[Touch-packages] [Bug 1512068] Re: Python ctypes.util , Shell Injection in find_library()

2016-08-05 Thread Marc Deslauriers
** Changed in: python2.7 (Ubuntu) Status: New => Confirmed -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to python2.7 in Ubuntu. https://bugs.launchpad.net/bugs/1512068 Title: Python ctypes.util , Shell Injection in

[Touch-packages] [Bug 1583388] Re: Information about Ubuntu system automatically written to iPod

2016-08-05 Thread Marc Deslauriers
** Information type changed from Private Security to Public Security ** Changed in: util-linux (Ubuntu) Status: New => Triaged -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to util-linux in Ubuntu.

[Touch-packages] [Bug 1590163] Re: disable export grade ciphers

2016-08-05 Thread Marc Deslauriers
** Changed in: openssl (Ubuntu) Status: New => Confirmed ** Changed in: openssl (Ubuntu) Importance: Undecided => Wishlist -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to openssl in Ubuntu.

[Touch-packages] [Bug 1086783] Re: New PolicyKit 0.106 changes configuration file format

2016-08-01 Thread Marc Deslauriers
mozjs hasn't gotten any security updates in _years_, so no, we're not going to be able to support that package in main. -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to policykit-1 in Ubuntu.

[Touch-packages] [Bug 1363482] Re: ubuntu-keyring includes 1024D keys

2016-08-15 Thread Marc Deslauriers
Adam, Any progress on getting the precise archive signed with the newer keys? -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to ubuntu-keyring in Ubuntu. https://bugs.launchpad.net/bugs/1363482 Title: ubuntu-keyring

[Touch-packages] [Bug 1643467] Re: Firefox 50 blocks Ubuntu 12.04 and 14.04 LTS's version of libavcodec

2017-01-21 Thread Marc Deslauriers
For this to be resolved in Ubuntu 12.04 LTS, an appropriate fix needs to be written for libav 0.8. Updating to a newer libav isn't an option as the API has changed and that would break compatibility with all the software using libav in the archive. Once a fix has been written, Mozilla would then

[Touch-packages] [Bug 1667658] Re: signon-ui crashed with SIGSEGV in QWindow::show()

2017-02-24 Thread Marc Deslauriers
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to signon-ui in Ubuntu. https://bugs.launchpad.net/bugs/1667658 Title: signon-ui crashed with SIGSEGV in

[Touch-packages] [Bug 1667372] Re: package python-decorator 4.0.6-1 failed to install/upgrade: subprocess installed post-installation script returned error exit status 127

2017-02-24 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross

[Touch-packages] [Bug 1667218] Re: Help bugs/system crashes

2017-02-24 Thread Marc Deslauriers
Thank you for using Ubuntu and taking the time to report a bug. Your report should contain, at a minimum, the following information so we can better find the source of the bug and work to resolve it. Submitting the bug about the proper source package is essential. For help see

[Touch-packages] [Bug 1666049] Re: I cant download the apps i want

2017-02-24 Thread Marc Deslauriers
Thanks for your comments. This does not appear to be a bug report and we are closing it. We appreciate the difficulties you are facing, but it would make more sense to raise your question in the support tracker. Please visit https://answers.launchpad.net/ubuntu/+addquestion ** Information type

[Touch-packages] [Bug 1667503] Re: El sistema es muy lento

2017-02-24 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross

[Touch-packages] [Bug 1667569] Re: package linux-image-4.4.0-64-generic 4.4.0-64.85 failed to install/upgrade: run-parts: /etc/kernel/postinst.d/apt-auto-removal exited with return code 2

2017-02-24 Thread Marc Deslauriers
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross

<    1   2   3   4   5   6   7   8   9   10   >