[Bug 1647178] Re: systemd-resolved unable to resolve certain subdomains

2016-12-10 Thread Anders Kaseorg
For example, I see $ dig +no{cmd,comments,stats} mail.google.com @8.8.8.8 ;mail.google.com. IN A mail.google.com.86312 IN CNAME googlemail.l.google.com. googlemail.l.google.com. 212IN A 216.58.219.229 $ dig +no{cmd,comments,stats} mail.google.com

[Bug 1647105] Re: Merge vim 2:8.0.0095-1 from Debian testing/unstable

2016-12-04 Thread Anders Kaseorg
** Patch added: "Debdiff from vim 2:8.0.0095-1 in Debian testing/unstable" https://bugs.launchpad.net/ubuntu/+source/vim/+bug/1647105/+attachment/4787466/+files/vim_8.0.0095-1_1ubuntu1.debdiff ** Patch removed: "Debdiff from vim 2:8.0.0095-1 in Debian testing/unstable"

[Bug 1624039] Re: Vim 8.0 should be backported in

2016-12-04 Thread Anders Kaseorg
*** This bug is a duplicate of bug 1647105 *** https://bugs.launchpad.net/bugs/1647105 ** This bug has been marked a duplicate of bug 1647105 Merge vim 2:8.0.0095-1 from Debian testing/unstable -- You received this bug notification because you are a member of Ubuntu Bugs, which is

[Bug 1647105] [NEW] Merge vim 2:8.0.0095-1 from Debian testing/unstable

2016-12-03 Thread Anders Kaseorg
Public bug reported: Since Debian has now migrated vim from Python 2 to Python 3, this drops the Python 2 variants. Test build: https://launchpad.net/~andersk/+archive/ubuntu/ppa ** Affects: vim (Ubuntu) Importance: Undecided Status: New ** Tags: patch ** Patch added: "Debdiff

[Bug 1647031] [NEW] systemd-resolved’s 127.0.0.53 server does not follow CNAME records

2016-12-03 Thread Anders Kaseorg
Public bug reported: $ systemd-resolve www.freedesktop.org www.freedesktop.org: 131.252.210.176 2610:10:20:722:a800:ff:feda:470f (annarchy.freedesktop.org) -- Information acquired via protocol DNS in 673.6ms. -- Data is authenticated: no $ ping

[Bug 1245299] Re: gitweb components incompatible with Apache 2.4

2016-12-02 Thread Anders Kaseorg
*** This bug is a duplicate of bug 1260852 *** https://bugs.launchpad.net/bugs/1260852 ** This bug has been marked a duplicate of bug 1260852 config file uses outdated apache conf.d directory -- You received this bug notification because you are a member of Ubuntu Bugs, which is

[Bug 1260852] Re: config file uses outdated apache conf.d directory

2016-12-02 Thread Anders Kaseorg
Fixed in git 2.1.4-2. ** Changed in: git (Ubuntu) Status: Confirmed => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1260852 Title: config file uses outdated apache conf.d

[Bug 1245299] Re: gitweb components incompatible with Apache 2.4

2016-12-02 Thread Anders Kaseorg
*** This bug is a duplicate of bug 1260852 *** https://bugs.launchpad.net/bugs/1260852 Fixed in git 2.1.4-2. ** Changed in: git (Ubuntu) Status: Confirmed => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 432786] Re: git imap-send ssl support

2016-12-02 Thread Anders Kaseorg
Fixed in Git 2.10.2. ** Changed in: git (Ubuntu) Status: Confirmed => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/432786 Title: git imap-send ssl support To manage

[Bug 911693] Re: No debug symbols for git

2016-12-02 Thread Anders Kaseorg
Fixed in git 2.10.1-1, which I migrated to Debhelper. ** Changed in: git (Ubuntu) Status: Confirmed => Fix Released ** Bug watch added: Debian Bug tracker #834886 http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=834886 ** Also affects: git (Debian) via

[Bug 1581055] Re: package git 1:1.9.1-1ubuntu0.3 failed to install/upgrade: package is in a very bad inconsistent state; you should reinstall it before attempting configuration

2016-12-02 Thread Anders Kaseorg
Your logs do not show how the package got into the inconsistent state (it was already inconsistent at the beginning). To get out of it, you need to follow the advice of the error message and reinstall the package: apt-get install --reinstall git. ** Changed in: git (Ubuntu) Status: New =>

[Bug 1526982] Re: package git 1:1.9.1-1ubuntu0.2 failed to install/upgrade: trying to overwrite '/usr/share/gitweb/static/gitweb.js', which is also in package git-2.5.0 2.5.0-1

2016-12-02 Thread Anders Kaseorg
I don’t know where you got a package named ‘git-2.5.0’, but it’s not an official Ubuntu package. You need to remove it before installing the official ‘git’ package. If you need a newer version of Git, I maintain this PPA based on the official packaging:

[Bug 1646917] Re: git email address isn't updated when amending a commit

2016-12-02 Thread Anders Kaseorg
>From ‘git help commit’ (https://git-scm.com/docs/git-commit#git-commit ---amend): “--amend: … The new commit has the same parents and author as the current one (the --reset-author option can countermand this).” ** Changed in: git (Ubuntu) Status: New => Invalid -- You received this bug

[Bug 1641069] Re: package git-daemon-run 1:2.7.4-0ubuntu1 failed to install/upgrade: проблем свързан със зависимост - остава неконфигуриран

2016-11-19 Thread Anders Kaseorg
*** This bug is a duplicate of bug 1448164 *** https://bugs.launchpad.net/bugs/1448164 ** This bug has been marked a duplicate of bug 1448164 runit cannot be installed (Unable to connect to Upstart: Failed to connect to socket /com/ubuntu/upstart: Connection refused) -- You received

[Bug 1637350] Re: package git-daemon-run 1:2.7.4-0ubuntu1 failed to install/upgrade: problemas de dependência - deixando desconfigurado

2016-11-19 Thread Anders Kaseorg
*** This bug is a duplicate of bug 1448164 *** https://bugs.launchpad.net/bugs/1448164 ** This bug has been marked a duplicate of bug 1448164 runit cannot be installed (Unable to connect to Upstart: Failed to connect to socket /com/ubuntu/upstart: Connection refused) -- You received

[Bug 1636320] [NEW] package liblirc-client0 (not installed) failed to install/upgrade: trying to overwrite '/usr/lib/x86_64-linux-gnu/liblirc_client.so.0', which is also in package liblircclient0:amd6

2016-10-24 Thread Anders Kaseorg
Public bug reported: Selecting previously unselected package liblirc-client0:amd64. Preparing to unpack .../44-liblirc-client0_0.9.4c-1_amd64.deb ... Unpacking liblirc-client0:amd64 (0.9.4c-1) ... dpkg: error processing archive /tmp/apt-dpkg-install-LJoo1m/44-liblirc-client0_0.9.4c-1_amd64.deb

[Bug 1577460] Re: mkinitramfs --help > Core dumped

2016-10-21 Thread Anders Kaseorg
Upstream applied an equivalent patch: http://git.kernel.org/cgit/utils/util-linux/util-linux.git/commit/?id=e1164591f7927402af8d73d340e75dbfeb06a288 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 1577460] Re: mkinitramfs --help > Core dumped

2016-10-19 Thread Anders Kaseorg
This is a util-linux bug, not a glibc bug. I have sent this patch upstream. ** Also affects: util-linux (Ubuntu) Importance: Undecided Status: New ** Patch added: "0001-getopt-Terminate-long_options-even-if-add_long_optio.patch"

[Bug 1577460] Re: mkinitramfs --help > Core dumped

2016-10-19 Thread Anders Kaseorg
Upstream submission: http://marc.info/?l=util-linux- ng=147691687505965=2 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1577460 Title: mkinitramfs --help > Core dumped To manage notifications

[Bug 1577460] Re: mkinitramfs --help > Core dumped

2016-10-19 Thread Anders Kaseorg
I can still reproduce this on 16.10 fully updated with libc6:amd64 2.24-3ubuntu1, so the Ubuntu task should probably be reopened. $ LANG=de_DE mkinitramfs --help Segmentation fault (core dumped) W: non-GNU getopt $ LANG=de_DE getopt -o c -- --help Segmentation fault (core dumped) -- You

[Bug 1623585] Re: Toolbar is blank

2016-10-13 Thread Anders Kaseorg
pauljohn: You installed the packages in the wrong order. Since a 24.5+1-7ubuntu1 package, identical to mine modulo debian/changelog, is in yakkety-proposed for architectures other than arm64 and ppc64el, the easiest solution is to enable yakkety-proposed and let apt install them for you. -- You

[Bug 1449001] Re: systemd-resolved: please do not use Google public DNS by default

2016-10-10 Thread Anders Kaseorg
The 8.8.8.8 fallback is not only used on misconfigured systems! It’s also used for a short period while initially connecting or reconnecting to totally healthy networks with DHCP. So the excuse that privacy- conscious users should just use DHCP holds no water.

[Bug 1379588] Re: package git-daemon-run 1:1.7.9.5-1 failed to install/upgrade: dependency problems - leaving unconfigured

2016-10-10 Thread Anders Kaseorg
** Package changed: git (Ubuntu) => runit (Ubuntu) -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1379588 Title: package git-daemon-run 1:1.7.9.5-1 failed to install/upgrade: dependency problems -

[Bug 1629606] Re: package git-daemon-run 1:2.7.4-0ubuntu1 failed to install/upgrade: problemas de dependencias - se deja sin configurar

2016-10-10 Thread Anders Kaseorg
*** This bug is a duplicate of bug 1448164 *** https://bugs.launchpad.net/bugs/1448164 ** This bug has been marked a duplicate of bug 1448164 runit cannot be installed (Unable to connect to Upstart: Failed to connect to socket /com/ubuntu/upstart: Connection refused) -- You received

[Bug 240804] Re: uim-xim bombs out in free() (and the uim version is old.)

2016-10-03 Thread Anders Kaseorg
Hardy is no longer supported, and I’m pretty sure this was fixed a long time ago. ** Changed in: uim (Ubuntu) Status: New => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/240804

[Bug 1629999] [NEW] Sync uim 1:1.8.6+gh20161003.0.d63dadd-1 (universe) from Debian unstable (main)

2016-10-03 Thread Anders Kaseorg
Public bug reported: Please sync uim 1:1.8.6+gh20161003.0.d63dadd-1 (universe) from Debian unstable (main) The _only_ upstream commit added in this release is https://github.com/uim/uim/pull/98/files fixing a bug that was spewing a half dozen deprecation warnings to journalctl every time the

[Bug 1623585] Re: Toolbar is blank

2016-10-02 Thread Anders Kaseorg
Adding -no-pie on arm64 doesn’t help. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1623585 Title: Toolbar is blank To manage notifications about this bug go to:

[Bug 1623585] Re: Toolbar is blank

2016-10-02 Thread Anders Kaseorg
Rebuilding an unchanged 24.5+1-6ubuntu3 also fails on arm64 and ppc64el: https://launchpadlibrarian.net/287872786/buildlog_ubuntu-yakkety-arm64.emacs24_24.5+1-6ubuntu3_BUILDING.txt.gz https://launchpadlibrarian.net/287872619/buildlog_ubuntu-yakkety-ppc64el.emacs24_24.5+1-6ubuntu3_BUILDING.txt.gz

[Bug 1623585] Re: Toolbar is blank

2016-10-02 Thread Anders Kaseorg
The arm64 problem, at least, looks like it could be https://bugs.debian.org/837421. Ubuntu has already added -no-pie on amd64 ppc64el s390x but not yet on arm64. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 1624317] Re: systemd-resolved breaks VPN with split-horizon DNS

2016-09-29 Thread Anders Kaseorg
** Tags removed: regression-release -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1624317 Title: systemd-resolved breaks VPN with split-horizon DNS To manage notifications about this bug go to:

[Bug 1628778] Re: systemd-resolved: after network reconnection, DNSSEC unsigned zones treated as bogus, stop resolving

2016-09-29 Thread Anders Kaseorg
** Description changed: On the MIT network (which runs some ancient version of BIND 9), systemd- resolved stops resolving anything that isn’t DNSSEC-signed after I disconnect and reconnect the network. Signed zones continue to resolve. This happens with either DNSSEC=yes or the default

[Bug 1624317] Re: systemd-resolved breaks VPN with split-horizon DNS

2016-09-29 Thread Anders Kaseorg
** Tags added: regression-release ** Tags added: yakkety -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1624317 Title: systemd-resolved breaks VPN with split-horizon DNS To manage notifications

[Bug 1628778] [NEW] systemd-resolved: after network reconnection, DNSSEC unsigned zones treated as bogus, stop resolving

2016-09-29 Thread Anders Kaseorg
Public bug reported: On the MIT network (which runs some ancient version of BIND 9), systemd- resolved stops resolving anything that isn’t DNSSEC-signed after I disconnect and reconnect the network. Signed zones continue to resolve. This happens with either DNSSEC=yes or the default

[Bug 1624317] Re: systemd-resolved breaks VPN with split-horizon DNS

2016-09-29 Thread Anders Kaseorg
I want to be clear that in my situation the VPN’s DNS servers are _not_ marked as domain-restricted. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1624317 Title: systemd-resolved breaks VPN with

[Bug 1574213] Re: git gui and gitk broken after upgrade to 16.04

2016-09-26 Thread Anders Kaseorg
** Package changed: git (Ubuntu) => prelink (Ubuntu) -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1574213 Title: git gui and gitk broken after upgrade to 16.04 To manage notifications about this

[Bug 1441955] Re: GSSAPI support disabled (regression from trusty)

2016-09-22 Thread Anders Kaseorg
This was fixed in wily and vivid is EOL. ** Changed in: gsasl (Ubuntu) Status: Triaged => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1441955 Title: GSSAPI support disabled

[Bug 1626301] Re: package git-daemon-run 1:2.7.4-0ubuntu1 failed to install/upgrade: problèmes de dépendances - laissé non configuré

2016-09-21 Thread Anders Kaseorg
*** This bug is a duplicate of bug 1448164 *** https://bugs.launchpad.net/bugs/1448164 ** This bug has been marked a duplicate of bug 1448164 runit cannot be installed (Unable to connect to Upstart: Failed to connect to socket /com/ubuntu/upstart: Connection refused) -- You received

[Bug 1571456] Re: id crashed with SIGSEGV in sock_eq()

2016-09-21 Thread Anders Kaseorg
This is still awaiting sponsorship of one of these patches to xenial- proposed. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1571456 Title: id crashed with SIGSEGV in sock_eq() To manage

[Bug 1571456] Re: id crashed with SIGSEGV in sock_eq()

2016-09-21 Thread Anders Kaseorg
** Tags added: patch-accepted-debian patch-accepted-upstream -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1571456 Title: id crashed with SIGSEGV in sock_eq() To manage notifications about this

[Bug 1625798] Re: package git-daemon-run 1:2.7.4-0ubuntu1 failed to install/upgrade: проблем свързан със зависимост - остава неконфигуриран

2016-09-20 Thread Anders Kaseorg
** Package changed: git (Ubuntu) => runit (Ubuntu) -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1625798 Title: package git-daemon-run 1:2.7.4-0ubuntu1 failed to install/upgrade: проблем свързан

[Bug 1625091] Re: openafs 1.6.18.3-1 ADT test failure with linux 4.8.0-11.12

2016-09-19 Thread Anders Kaseorg
That log shows openafs-modules-dkms successfully compiling with kernel 4.8. The only problem shown is openafs-fileserver failing to start. Setting up openafs-fileserver (1.6.18.3-1) ... Created symlink /etc/systemd/system/multi-user.target.wants/openafs-fileserver.service →

[Bug 1624856] Re: Regressions in GnuTLS 3.5.3 break OpenConnect

2016-09-18 Thread Anders Kaseorg
** Patch added: "full merge from Debian (3.5.3-4ubuntu1 → 3.5.4-2ubuntu1)" https://bugs.launchpad.net/ubuntu/+source/gnutls28/+bug/1624856/+attachment/4743050/+files/gnutls28_3.5.3-4ubuntu1_3.5.4-2ubuntu1.debdiff ** Tags added: patch ** Tags added: patch-accepted-debian -- You received

[Bug 1623585] Re: Toolbar is blank

2016-09-18 Thread Anders Kaseorg
** Tags added: patch-accepted-debian -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1623585 Title: Toolbar is blank To manage notifications about this bug go to:

[Bug 1624856] Re: Regressions in GnuTLS 3.5.3 break OpenConnect

2016-09-18 Thread Anders Kaseorg
** Patch added: "minimal patch" https://bugs.launchpad.net/ubuntu/+source/gnutls28/+bug/1624856/+attachment/4743049/+files/gnutls28_3.5.3-4ubuntu1_3.5.3-5ubuntu1.debdiff -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 1623585] Re: Toolbar is blank

2016-09-18 Thread Anders Kaseorg
** Tags added: regression-release -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1623585 Title: Toolbar is blank To manage notifications about this bug go to:

[Bug 1624856] [NEW] Regressions in GnuTLS 3.5.3 break OpenConnect

2016-09-18 Thread Anders Kaseorg
Public bug reported: OpenConnect is unusable after upgrading to GnuTLS 3.5.3: the VPN connection drops after less than a minute. Please merge gnutls28 3.5.3-5 or 3.5.4-2 from Debian, where this problem was fixed (https://bugs.debian.org/835587). ** Affects: gnutls28 (Ubuntu) Importance:

[Bug 1624317] Re: systemd-resolved breaks VPN with split-horizon DNS

2016-09-17 Thread Anders Kaseorg
(I believe the requested information has been provided.) ** Changed in: systemd (Ubuntu) Status: Incomplete => New -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1624317 Title:

[Bug 1623585] Re: Toolbar is blank

2016-09-17 Thread Anders Kaseorg
Confirmed that this fixes the toolbar with a test build in ppa:anders- kaseorg/ppa. Subscribing sponsors. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1623585 Title: Toolbar is blank To manage

[Bug 1623585] Re: Toolbar is blank

2016-09-17 Thread Anders Kaseorg
This is most straightforwardly solved by merging 24.5+1-7 from Debian, which pulls in three fixes: one for for this bug, one for malloc handling with GCC ≥ 5.2, and one for glibc 2.24 support. We certainly want all three. Here is a debdiff from 24.5+1-6ubuntu3. ** Patch added:

[Bug 1623585] Re: Toolbar is blank

2016-09-17 Thread Anders Kaseorg
** Bug watch added: Debian Bug tracker #828000 http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=828000 ** Also affects: emacs24 (Debian) via http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=828000 Importance: Unknown Status: Unknown -- You received this bug notification because

[Bug 1624320] Re: systemd-resolved appends 127.0.0.53 to resolv.conf alongside existing entries

2016-09-16 Thread Anders Kaseorg
DNS resolution outside NSS shouldn’t be dismissed as an edge case for software that’s too conceited to use NSS. NSS only exposes A, , and PTR records. There’s plenty of software in the official archive that needs other records from DNS (off the top of my head: SRV, TXT, MX, SSHFP, AFSDB) and

[Bug 1624317] Re: systemd-resolved breaks VPN with split-horizon DNS

2016-09-16 Thread Anders Kaseorg
3421 seems like the opposite of this problem. There, queries that belong on the local network instead go to the domain-limited VPN servers. Here, queries that should go to the VPN servers (which in my case are not domain-limited) instead go to the local servers. Also, here I am using

[Bug 1624320] [NEW] systemd-resolved appends 127.0.0.53 to resolv.conf alongside existing entries

2016-09-16 Thread Anders Kaseorg
Public bug reported: systemd-resolved, or more precisely the hook script /lib/systemd/system /systemd-resolved.service.d/resolvconf.conf, causes resolvconf to add 127.0.0.53 to the set of nameservers in /etc/resolv.conf alongside the other nameservers. That makes no sense because

[Bug 1624317] [NEW] systemd-resolved breaks VPN with split-horizon DNS

2016-09-16 Thread Anders Kaseorg
Public bug reported: I use a VPN configured with network-manager-openconnect-gnome in which a split-horizon DNS setup assigns different addresses to some names inside the remote network than the addresses seen for those names from outside the remote network. However, systemd-resolved often

[Bug 1624071] Re: libnss-resolve: Fallback from resolve to dns breaks DNSSEC validation

2016-09-15 Thread Anders Kaseorg
Filed https://github.com/systemd/systemd/issues/4157 upstream for the NOTFOUND vs. UNAVAIL problem. ** Bug watch added: github.com/systemd/systemd/issues #4157 https://github.com/systemd/systemd/issues/4157 -- You received this bug notification because you are a member of Ubuntu Bugs, which

[Bug 1624071] Re: libnss-resolve: Fallback from resolve to dns breaks DNSSEC validation

2016-09-15 Thread Anders Kaseorg
** Description changed: The libnss-resolve postinst script inserts ‘resolve’ before ‘dns’ in the hosts line of /etc/nsswitch.conf. This makes DNSSEC validation impossible, even with DNSSEC=yes in /etc/systemd/resolved.conf, because if libnss_resolve returns a validation failure, glibc

[Bug 1624071] Re: libnss-resolve: Fallback from resolve to dns breaks DNSSEC validation

2016-09-15 Thread Anders Kaseorg
You’re right: glibc seems to treat the absence of libnss-resolve itself as UNAVAIL, which is the same code returned on DNSSEC validation failures when libnss-resolve is working. I don’t see a way around this other than patching libnss-resolve to return NOTFOUND (or TRYAGAIN?) on validation

[Bug 1624071] Re: libnss-resolve: Fallback from resolve to dns breaks DNSSEC validation

2016-09-15 Thread Anders Kaseorg
I also worry that, by masking systemd-resolved failures, this fallback has meant that systemd-resolved is not really getting adequate testing. If there were widespread problems causing systemd-resolved lookups to fail, would anyone have noticed? -- You received this bug notification because you

[Bug 1624071] [NEW] libnss-resolve: Fallback from resolve to dns breaks DNSSEC validation

2016-09-15 Thread Anders Kaseorg
Public bug reported: The libnss-resolve postinst script inserts ‘resolve’ before ‘dns’ in the hosts line of /etc/nsswitch.conf. This makes DNSSEC validation impossible, even with DNSSEC=yes in /etc/systemd/resolved.conf, because if libnss_resolve returns a validation failure, glibc will simply

[Bug 1100295] Re: MD5 is insecure, add modern hashing

2016-09-02 Thread Anders Kaseorg
There is nothing wrong with making the request. But it seems the dpkg developers have not chosen to make it a priority; the most recent work was from six years ago. This is reasonable because the checksums are not intended as a security mechanism. So “Won’t Fix” is an accurate description of

[Bug 1591868] Re: fwupd consuming 100% CPU

2016-08-17 Thread Anders Kaseorg
Also submitted upstream: https://github.com/hughsie/appstream- glib/pull/129 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1591868 Title: fwupd consuming 100% CPU To manage notifications about

[Bug 1591868] Re: fwupd consuming 100% CPU

2016-08-17 Thread Anders Kaseorg
The infinite loop is not in libyaml (yaml_parser_parse), but rather in its caller in appstream-glib (as_node_yaml_process_layer), which is ignoring the error code returned by yaml_parser_parse and blindly going around the loop again. This patch fixes it. ** Patch added:

[Bug 1613939] Re: git-sh-prompt: can not open binary file.

2016-08-16 Thread Anders Kaseorg
I think your /usr/lib/git-core/git-sh-prompt file has been corrupted. Does ‘dpkg --verify git’ output anything? If so, try reinstalling the git package (‘sudo apt install --reinstall git’). ** Changed in: git-core (Ubuntu) Status: New => Incomplete -- You received this bug notification

[Bug 1571456] Re: id crashed with SIGSEGV in sock_eq()

2016-08-03 Thread Anders Kaseorg
Thanks Ken. I believe that either patch is ready to be uploaded to xenial-proposed (the smaller patch would just need the changelog version adjusted). I’d really appreciate any feedback from sponsors here; if you’d prefer something else in between the extremes of a targeted patch fixing just

[Bug 1571456] Re: id crashed with SIGSEGV in sock_eq()

2016-07-22 Thread Anders Kaseorg
** Changed in: glibc (Ubuntu) Status: Triaged => Fix Released ** Changed in: glibc (Ubuntu Xenial) Status: New => Confirmed -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1571456 Title:

[Bug 1571456] Re: id crashed with SIGSEGV in sock_eq()

2016-07-22 Thread Anders Kaseorg
If you want to fix this by pulling in the upstream 2.23 stable branch, here is a debdiff for that. I verified that debian/patches/git- updates.diff contains the output of ‘git diff glibc-2.23 glibc-2.23-21-g146b58d’, replaced it with the output of ‘git diff glibc-2.23 glibc-2.23-71-gbbe472f’

[Bug 1571456] Re: id crashed with SIGSEGV in sock_eq()

2016-07-18 Thread Anders Kaseorg
This was fixed in yakkety’s libc6 2.23-1ubuntu1. We are still waiting for a xenial SRU. ** Description changed: - To reproduce: + [Impact] - sed -i 's/passwd: *compat/& hesiod/' /etc/nsswitch.conf - cat > /etc/hesiod.conf < /etc/hesiod.conf

[Bug 1565950] Re: Grub 2 fails to boot a kernel on a luks encrypted volume with Secure Boot enabled

2016-07-13 Thread Anders Kaseorg
** This bug is no longer a duplicate of bug 1062623 enable grub-2.00 boot-from-luks support -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1565950 Title: Grub 2 fails to boot a kernel on a luks

[Bug 1360203] Re: grub-efi-amd64-signed is missing modules for GRUB_ENABLE_CRYPTODISK=y

2016-07-13 Thread Anders Kaseorg
*** This bug is a duplicate of bug 1565950 *** https://bugs.launchpad.net/bugs/1565950 ** This bug is no longer a duplicate of bug 1062623 enable grub-2.00 boot-from-luks support ** This bug has been marked a duplicate of bug 1565950 Grub 2 fails to boot a kernel on a luks encrypted

[Bug 1548293] Re: Default image of the signed EFI GRUB2 (secureboot) doesn't have "GRUB_ENABLE_CRYPTODISK" feature

2016-07-13 Thread Anders Kaseorg
*** This bug is a duplicate of bug 1565950 *** https://bugs.launchpad.net/bugs/1565950 ** This bug is no longer a duplicate of bug 1062623 enable grub-2.00 boot-from-luks support ** This bug has been marked a duplicate of bug 1565950 Grub 2 fails to boot a kernel on a luks encrypted

[Bug 1571456] Re: id crashed with SIGSEGV in sock_eq()

2016-06-13 Thread Anders Kaseorg
Upstream backports: master: 5018f16c6205404ba3aa7298dc8a3d45fbd46bfc 2.23: 2d1f6790183dabf54c5b05be97d3872dab720c83 2.22: a64be6fb2f1317ce7039a4bb8638bd0c30c31e28 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 1571456] Re: id crashed with SIGSEGV in sock_eq()

2016-06-13 Thread Anders Kaseorg
It happened upstream. What are we waiting for now? -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1571456 Title: id crashed with SIGSEGV in sock_eq() To manage notifications about this bug go to:

[Bug 1583385] Re: ghc cannot compile old-time package on yakkety amd64 (needs -no-pie in addition to -fno-PIE?)

2016-05-19 Thread Anders Kaseorg
This is a Cabal bug. Pull request sent to https://github.com/haskell/cabal/pull/3443. ** Changed in: ghc (Ubuntu) Status: New => Invalid -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1583385

[Bug 1583385] Re: ghc cannot compile old-time package on yakkety amd64 (needs -no-pie in addition to -fno-PIE?)

2016-05-18 Thread Anders Kaseorg
Hmm, this may only be a problem with cabal-install 1.24, which is passing along ghc’s CFLAGS (-fno-PIE -fno-stack-protector) but not its LDFLAGS (-no-pie) to the configure script. cabal-install 1.22 passes neither. I’ll keep investigating. -- You received this bug notification because you are

[Bug 1583385] [NEW] ghc cannot compile old-time package on yakkety amd64 (needs -no-pie in addition to -fno-PIE?)

2016-05-18 Thread Anders Kaseorg
Public bug reported: $ dpkg-query -W ghc ghc 7.10.3-7ubuntu1 $ cabal unpack old-time Unpacking to old-time-1.1.0.3/ $ cd old-time-1.1.0.3 $ cabal configure Resolving dependencies... Configuring old-time-1.1.0.3... configure: WARNING: unrecognized options: --with-compiler checking for gcc...

[Bug 1582077] Re: Sync openafs 1.6.17-2 (universe) from Debian unstable (main)

2016-05-17 Thread Anders Kaseorg
Which is bug 1574982 in GCC. I’ve tested that the same problem occurs with openafs-modules-dkms 1.6.15-1ubuntu1 on yakkety, so this is not an openafs regression. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 1582077] Re: Sync openafs 1.6.17-2 (universe) from Debian unstable (main)

2016-05-17 Thread Anders Kaseorg
Okay, after fully upgrading my system to yakkety, because what could possibly go wrong, I can reproduce. configure:6958: checking for linux kernel module build works make -C /lib/modules/4.4.0-22-generic/build M=/var/lib/dkms/openafs/1.6.18/build/conftest.dir modules KBUILD_VERBOSE=1 make:

[Bug 1582077] Re: Sync openafs 1.6.17-2 (universe) from Debian unstable (main)

2016-05-17 Thread Anders Kaseorg
Ah, found it, by replacing log.gz with artifacts.tar.gz at the end of that URL. https://objectstorage.prodstack4-5.canonical.com/v1/AUTH_77e2ada1e7a84929a74ba3b87153c0ac /autopkgtest- yakkety/yakkety/amd64/o/openafs/20160518_001941@/artifacts.tar.gz > checking for linux kernel module build

[Bug 1582077] Re: Sync openafs 1.6.17-2 (universe) from Debian unstable (main)

2016-05-17 Thread Anders Kaseorg
>From that log: > Setting up openafs-modules-dkms (1.6.18-1) ... > Loading new openafs-1.6.18 DKMS files... > First Installation: checking all kernels... > Building only for 4.4.0-22-generic > Building initial module for 4.4.0-22-generic > Error! Bad return status for module build on kernel:

[Bug 1582077] [NEW] Sync openafs 1.6.17-2 (universe) from Debian unstable (main)

2016-05-15 Thread Anders Kaseorg
) unstable; urgency=high * debian/rules: Fix FTBFS when built with dpkg-buildpackage -A. (Closes: #806088) -- Anders Kaseorg <ande...@mit.edu> Thu, 17 Mar 2016 04:48:16 -0400 openafs (1.6.17-1) unstable; urgency=high * New upstream release 1.6.16. - Fix bosserver crashes related to

[Bug 1571456] Re: id crashed with SIGSEGV in sock_eq()

2016-05-02 Thread Anders Kaseorg
This was fixed in glibc master by ripping out the affected code. Either strategy is fine. https://sourceware.org/git/?p=glibc.git;a=commitdiff;h=5018f16c6205404ba3aa7298dc8a3d45fbd46bfc -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 1571456] Re: id crashed with SIGSEGV in sock_eq()

2016-04-26 Thread Anders Kaseorg
** Patch removed: "glibc_2.23-0ubuntu3_lp1571456.debdiff" https://bugs.launchpad.net/ubuntu/+source/glibc/+bug/1571456/+attachment/4648373/+files/glibc_2.23-0ubuntu3_lp1571456.debdiff ** Patch added: "glibc_2.23-0ubuntu3_lp1571456.debdiff"

[Bug 1571456] Re: id crashed with SIGSEGV in sock_eq()

2016-04-26 Thread Anders Kaseorg
Here’s a debdiff adding the patch I submitted to the glibc mailing list (https://sourceware.org/ml/libc-alpha/2016-04/msg00563.html). Unlike the Fedora revert, this only touches nss_hesiod, which is completely unusable without the fix. So it should be very low risk. ** Patch added:

[Bug 520546] Re: Alt-f2 switches to virtual terminal 2

2016-04-21 Thread Anders Kaseorg
I’m running Ubuntu Gnome 16.04. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/520546 Title: Alt-f2 switches to virtual terminal 2 To manage notifications about this bug go to:

[Bug 520546] Re: Alt-f2 switches to virtual terminal 2

2016-04-20 Thread Anders Kaseorg
This might have something to with the default setting ACTIVE_CONSOLES="/dev/tty[1-6]" in /etc/default/console-setup conflicting with the recent move of X from console 7 to console 2. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 520546] Re: Alt-f2 switches to virtual terminal 2

2016-04-20 Thread Anders Kaseorg
When console-setup is configured, it runs ‘setupcon --force’, which breaks the running X server in exactly this way. ** Also affects: console-setup (Ubuntu) Importance: Undecided Status: New -- You received this bug notification because you are a member of Ubuntu Bugs, which is

[Bug 1571456] Re: id crashed with SIGSEGV in sock_eq()

2016-04-17 Thread Anders Kaseorg
** Bug watch added: Debian Bug tracker #821358 http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=821358 ** Also affects: glibc (Debian) via http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=821358 Importance: Unknown Status: Unknown -- You received this bug notification because

[Bug 1571456] [NEW] id crashed with SIGSEGV in sock_eq()

2016-04-17 Thread Anders Kaseorg
Public bug reported: To reproduce: sed -i 's/passwd: *compat/& hesiod/' /etc/nsswitch.conf cat > /etc/hesiod.conf

[Bug 1561621] Re: mosh-server crashed with SIGSEGV in execute_helper()

2016-03-26 Thread Anders Kaseorg
Confirmed fixed in mosh 1.2.5-2 (but the glibc bug is still reproducible). ** Changed in: mosh (Ubuntu) Status: Confirmed => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1561621

[Bug 1561680] [NEW] Sync mosh 1.2.5-2 (universe) from Debian unstable (main)

2016-03-24 Thread Anders Kaseorg
Public bug reported: Please sync mosh 1.2.5-2 (universe) from Debian unstable (main) The only change here is the workaround for bug 1561621. Changelog entries since current xenial version 1.2.5-1.1build1: mosh (1.2.5-2) unstable; urgency=medium   * debian/rules: Work around protobuf/glibc

[Bug 1561621] Re: mosh-server crashed with SIGSEGV in execute_helper()

2016-03-24 Thread Anders Kaseorg
We can bring in the Mosh workaround by syncing from Debian (bug 1561680). -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1561621 Title: mosh-server crashed with SIGSEGV in execute_helper() To

[Bug 1561621] [NEW] mosh-server crashed with SIGSEGV in utempter_add_record()

2016-03-24 Thread Anders Kaseorg
Public bug reported: mosh-server in Xenial crashes immediately on startup. This is a glibc bug, but a Mosh workaround was committed upstream. See https://github.com/mobile-shell/mosh/issues/727 https://bugs.debian.org/817929 https://sourceware.org/ml/libc-help/2016-03/msg4.html

[Bug 1547344] Re: lldb executable not properly installed on Xenial

2016-03-02 Thread Anders Kaseorg
** Package changed: llvm-defaults (Ubuntu) => llvm-toolchain-3.8 (Ubuntu) ** Bug watch added: Debian Bug tracker #815809 http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=815809 ** Also affects: llvm-toolchain-3.8 (Debian) via http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=815809

[Bug 1547216] [NEW] Kernel panic - not syncing: stack-protector: Kernel stack is corrupted in: ffffffff8160041d

2016-02-18 Thread Anders Kaseorg
Public bug reported: [78871.415531] Kernel panic - not syncing: stack-protector: Kernel stack is corrupted in: 8160041d [78871.415641] CPU: 1 PID: 30586 Comm: kworker/1:0 Tainted: P OE 4.4.0-4-generic #19-Ubuntu [78871.415703] Hardware name: LENOVO

[Bug 1537635] Re: Reduce zlib compression level for massive performance increase

2016-01-25 Thread Anders Kaseorg
Level 5 isn’t crazy, though it’s still some 70% slower than level 1. zlib.compressobj(level=1) time=7.6 size=84869397 zlib.compressobj(level=2) time=7.8 size=82465461 zlib.compressobj(level=3) time=8.4 size=79576183 zlib.compressobj(level=4) time=12.2 size=74672475 zlib.compressobj(level=5)

[Bug 1537635] [NEW] Reduce zlib compression level for massive performance increase

2016-01-24 Thread Anders Kaseorg
Public bug reported: When apport takes a core dump of a large application, it uses 100% CPU for a _long_ time (often 30 seconds or more) to compress the core dump. The system is virtually unusable during this time, especially if the application was the window manager and won’t be restarted until

[Bug 1536434] Re: Git does not display filenames in status, even if it's one file on multiple subdirectory path

2016-01-20 Thread Anders Kaseorg
You can also just run git add DIRECTORY (e.g. git add .) which is equivalent to adding all the (non-ignored) files in the directory. ** Changed in: git (Ubuntu) Status: New => Invalid -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to

[Bug 1533504] [NEW] package fonts-tlwg-kinnari-ttf (not installed) failed to install/upgrade: trying to overwrite '/usr/share/fonts/truetype/tlwg/Kinnari-Bold.ttf', which is also in package fonts-tlwg

2016-01-12 Thread Anders Kaseorg
*** This bug is a duplicate of bug 1533458 *** https://bugs.launchpad.net/bugs/1533458 Public bug reported: package fonts-tlwg-kinnari-ttf (not installed) failed to install/upgrade: trying to overwrite '/usr/share/fonts/truetype/tlwg /Kinnari-Bold.ttf', which is also in package

[Bug 1100295] Re: MD5 is insecure, add modern hashing

2016-01-08 Thread Anders Kaseorg
No. apt uses the archive’s SHA-256 hashes to verify packages when they are initially downloaded, but debsums is for re-checking the installed files after installation, and the only currently available per-file hashes are MD5. See https://wiki.debian.org/Sha256sumsInPackages for some prior work in

[Bug 1531958] Re: mosh doesnt allow cryptfs-mount-home

2016-01-07 Thread Anders Kaseorg
Known upstream; see https://github.com/mobile-shell/mosh/issues/529. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1531958 Title: mosh doesnt allow cryptfs-mount-home To manage notifications about

<    1   2   3   4   5   6   7   8   9   10   >