[Bug 1890223] Re: No Wi-Fi Adapter Found Ubuntu 20.04 after updated Linux kernel to version 5.4.0-42-generic

2020-09-16 Thread Seth Arnold
Hello Eko, my guess is the process that had the debconf database locked was asking you to enroll a new secure boot key. By killing it rather than configuring a key, you can't install self-built kernel modules. I suggest looking at the "Manual Method" section of

[Bug 1892559] Re: [MIR] ccid libpam-pkcs1 libpcsc-perl opensc pcsc-tools pcsc-lite

2020-09-16 Thread Seth Arnold
ubuntu-security is now subscribed to pcsc-lite bugs. Thanks -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1892559 Title: [MIR] ccid libpam-pkcs1 libpcsc-perl opensc pcsc-tools pcsc-lite To manage

[Bug 1895294] Re: Fix Raccoon vulnerability (CVE-2020-1968)

2020-09-15 Thread Seth Arnold
Alternatively, you could use one of the recommended TLS configurations from Mozilla, https://wiki.mozilla.org/Security/Server_Side_TLS which do not enable the unsafe cryptography suites. Thanks -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to

[Bug 1892559] Re: [MIR] ccid libpam-pkcs1 libpcsc-perl opensc pcsc-tools pcsc-lite

2020-09-15 Thread Seth Arnold
** Changed in: pcsc-lite (Ubuntu) Status: Incomplete => New -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1892559 Title: [MIR] ccid libpam-pkcs1 libpcsc-perl opensc pcsc-tools pcsc-lite To

[Bug 1887187] Re: [MIR] nftables

2020-09-04 Thread Seth Arnold
(subscribing ubuntu-mir even though this isn't done yet, just in case that was overlooked :) -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1887187 Title: [MIR] nftables To manage notifications

[Bug 1894172] Re: isc-dhcp-server using wrong env variable for INTERFACES

2020-09-04 Thread Seth Arnold
see also https://bugs.launchpad.net/ubuntu/+source/isc-dhcp/+bug/1774342 Thanks -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1894172 Title: isc-dhcp-server using wrong env variable for INTERFACES

Re: [Bug 1887943] Re: [SRU] TLS is not enabled for memcached>=1.5.13

2020-09-01 Thread Seth Arnold
On Tue, Sep 01, 2020 at 08:21:05AM -, Moisés Guimarães de Medeiros wrote: > Seth, that is for not enabling it for armhf platforms, it wasn't in my > plans, but the debian folks put it there, I'm not aware what problems > they ran into. Thanks, when it's not part of our delta that makes it a

[Bug 1887943] Re: [SRU] TLS is not enabled for memcached>=1.5.13

2020-08-31 Thread Seth Arnold
What's this bit for? +ifeq (,$(filter $(DEB_HOST_ARCH),armhf)) Thanks -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1887943 Title: [SRU] TLS is not enabled for memcached>=1.5.13 To manage

[Bug 1883890] Re: [MIR] libinih

2020-08-28 Thread Seth Arnold
on webkit, qtwebkit, seed or libgoa-* - no embedded source copies - not part of the UI for extra checks Problems: ** Changed in: libinih (Ubuntu) Assignee: Seth Arnold (seth-arnold) => Ubuntu Security Team (ubuntu-security) -- You received this bug notification because you are a mem

[Bug 1893241] Re: attack alias sudo with nasty payload

2020-08-28 Thread Seth Arnold
Hello Patrik, thanks for your concern for Ubuntu's security. As you said, there are numerous possibilities for trouble when an account is compromised in this fashion. Placing malicious versions of utilities into ~/bin is another common choice. (Usually shell aliases, functions, and ~/bin/

[Bug 1893241] Re: attack alias sudo with nasty payload

2020-08-28 Thread Seth Arnold
** Information type changed from Private Security to Public Security ** Changed in: bash (Ubuntu) Status: New => Won't Fix -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1893241 Title:

[Bug 1893277] Re: please provide an evince mailcap file

2020-08-27 Thread Seth Arnold
** Description changed: Hello; when I try to view PDFs from mutt, gimp is selected. Gimp is a very poor choice for viewing PDFs. I have evince installed, but evince is listed after gimp in my /etc/mailcap file. I tried to fix this by using the /etc/mailcap.order file but this failed:

[Bug 1893277] [NEW] please provide an evince mailcap file

2020-08-27 Thread Seth Arnold
Public bug reported: Hello; when I try to view PDFs from mutt, gimp is selected. Gimp is a very poor choice for viewing PDFs. I have evince installed, but evince is listed after gimp in my /etc/mailcap file. I tried to fix this by using the /etc/mailcap.order file but this failed: $ grep

[Bug 1893277] Re: please provide an evince mailcap file

2020-08-27 Thread Seth Arnold
Oh yes, this was reported by other people (though not in any useful way) at https://askubuntu.com/questions/1118437/promote-evince-in-etc- mailcap-order Thanks -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 1892559] Re: [MIR] ccid libpam-pkcs1 libpcsc-perl opensc pcsc-tools pcsc-lite

2020-08-26 Thread Seth Arnold
Done, thanks Christian! ** Description changed: ==> ccid <== [Availability] ccid is in universe, and builds on all architectures. [Rationale] The desktop team and security team are interested in bringing smartcard authentication to enterprise desktop environments. [Security]

[Bug 1892559] [NEW] [MIR] ccid libpam-pkcs1 libpcsc-perl opensc pcsc-tools

2020-08-21 Thread Seth Arnold
Public bug reported: ==> ccid <== [Availability] ccid is in universe, and builds on all architectures. [Rationale] The desktop team and security team are interested in bringing smartcard authentication to enterprise desktop environments. [Security] No CVEs for ccid are listed in our database.

[Bug 1892520] Re: Cannot sent h2c command

2020-08-21 Thread Seth Arnold
Hopefully helpful: [ 45.069078] NVRM: API mismatch: the client has the version 440.95.01, but NVRM: this kernel module has the version 440.100. Please NVRM: make sure that this kernel module and all NVIDIA driver NVRM: components have the same

[Bug 1825755] Re: apt-mirror in all versions (including disco and last from github) doesn't mirror Commands-* files

2020-08-21 Thread Seth Arnold
** Information type changed from Public Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1825755 Title: apt-mirror in all versions (including disco and last from github) doesn't

[Bug 1892400] Re: Open text files with File manager (mouse won't release)

2020-08-21 Thread Seth Arnold
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1892400 Title: Open text files with File manager (mouse won't release) To manage

[Bug 1887190] Re: MSFT Touchpad not working on Lenovo Legion-5 15ARH05

2020-08-21 Thread Seth Arnold
** Information type changed from Public Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1887190 Title: MSFT Touchpad not working on Lenovo Legion-5 15ARH05 To manage notifications

[Bug 1892239] Re: Audio Problems Ubuntu 20.04

2020-08-21 Thread Seth Arnold
Hello Trinity, Quite often, running pavucontrol is enough to see what needs to be changed to make audio output work correctly. I hope this helps. Thanks ** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs,

[Bug 1892092] Re: doing dual boot with windows10 but windows crashed and i did again reinstall ubantu shows grub fetal error

2020-08-21 Thread Seth Arnold
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross

[Bug 1892092] Re: doing dual boot with windows10 but windows crashed and i did again reinstall ubantu shows grub fetal error

2020-08-21 Thread Seth Arnold
Well this is curious: Aug 18 19:52:48 ubuntu ubiquity: Secure Boot not enabled on this system. Aug 18 19:52:51 ubuntu grub-installer: info: Installing grub on '/dev/sda' Aug 18 19:52:51 ubuntu grub-installer: info: grub-install does not support --no-floppy Aug 18 19:52:51 ubuntu grub-installer:

[Bug 1892455] Re: [MIR] libselinux1

2020-08-21 Thread Seth Arnold
libselinux1 has been in main for many years: http://archive.ubuntu.com/ubuntu/pool/main/libs/libselinux/ Balint recently did some +1 work that mentioned libselinux: https://lists.ubuntu.com/archives/ubuntu-devel/2020-July/041095.html but I don't read that as suggesting that libselinux1 has been

Re: [Bug 1577948] Re: unmatched entries for apparmor STATUS messages

2020-08-20 Thread Seth Arnold
On Thu, Aug 20, 2020 at 11:56:09PM -, Bryce Harrington wrote: > Thanks for the additional information. I've seen the snap profile_* > messages in my logwatch output as unmatched, but want to understand them > more before filtering them. > > As to the general unconfined entries, how can we

[Bug 1577948] Re: unmatched entries for apparmor STATUS messages

2020-08-20 Thread Seth Arnold
The log message is reporting the profiles have been loaded. This is a standard part of booting a full system, starting services, and some service-specific operations (such as libvirt or snapd demand-loading profiles as VMs or snaps are used). There's other similar status messages:

[Bug 1516300] Re: dash command variable assignments remain in the shell after command execution completed

2020-08-18 Thread Seth Arnold
I gave this a test with Ubuntu 14.04, 16.04, 18.04, 20.04, LTS releases, and Debian 10 and Debian 11, in lxd. Ubuntus before 20.04 all showed the described behaviour. Ubuntu 20.04 LTS worked the same as both Debian releases. The versions of dash in each release make this make some sense: $ for

[Bug 1516300] Re: dash command variable assignments remain in the shell after command execution completed

2020-08-18 Thread Seth Arnold
** Changed in: dash (Ubuntu) Status: New => Confirmed -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1516300 Title: dash command variable assignments remain in the shell after command

[Bug 1889322] Re: nvidia gforce

2020-08-14 Thread Seth Arnold
Hello snapd folks, this package logged over a thousand DENIED messages in about ten minutes. This can't be good for system responsiveness, battery life, drive health, filesystem free space, etc. Thanks -- You received this bug notification because you are a member of Ubuntu Bugs, which is

[Bug 1889322] Re: nvidia gforce

2020-08-14 Thread Seth Arnold
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross

[Bug 1889716] Re: package grub-efi-amd64-signed 1.142.3+2.04-1ubuntu26.1 failed to install/upgrade: installed grub-efi-amd64-signed package post-installation script subprocess returned error exit stat

2020-08-14 Thread Seth Arnold
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1889716 Title: package grub-efi-amd64-signed 1.142.3+2.04-1ubuntu26.1 failed to

[Bug 1889373] Re: Mozilla Firefox 78.x ESR Multiple Vulnerabilities

2020-08-14 Thread Seth Arnold
Hello, Ubuntu doesn't ship the ESR Firefox. We addressed these issues in: https://ubuntu.com/security/notices/USN-4443-1 Thanks ** Information type changed from Private Security to Public Security ** Changed in: firefox (Ubuntu) Status: New => Fix Released -- You received this bug

[Bug 1889771] Re: Plantage lors de l'installation

2020-08-14 Thread Seth Arnold
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1889771 Title: Plantage lors de l'installation To manage notifications about this bug go

[Bug 1889536] Re: installation failure

2020-08-14 Thread Seth Arnold
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1889536 Title: installation failure To manage notifications about this bug go to:

[Bug 1889927] Re: [HP EliteBook 840 G3, Conexant CX20724, Speaker, Internal] No sound at all , no sound from internal speaker but using a headset there is

2020-08-14 Thread Seth Arnold
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1889927 Title: [HP EliteBook 840 G3, Conexant CX20724, Speaker, Internal] No sound at all

[Bug 1889919] Re: package mysql-server-8.0 8.0.21-0ubuntu0.20.04.3 failed to install/upgrade: installed mysql-server-8.0 package post-installation script subprocess returned error exit status 1

2020-08-14 Thread Seth Arnold
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1889919 Title: package mysql-server-8.0 8.0.21-0ubuntu0.20.04.3 failed to

[Bug 1890012] Re: Could not install 'systemd-shim'

2020-08-14 Thread Seth Arnold
Hello Andreas, this bug is filed against xorg, but the text description looks like systemd-shim was involved. Should this be an xorg bug or a systemd-shim bug? Or something else? Thanks ** Information type changed from Private Security to Public -- You received this bug notification because

[Bug 1890645] Re: package firebird3.0-server 3.0.5.33220.ds4-1build2 failed to install/upgrade: o subprocesso instalado, do pacote firebird3.0-server, o script post-installation retornou erro do statu

2020-08-14 Thread Seth Arnold
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1890645 Title: package firebird3.0-server 3.0.5.33220.ds4-1build2 failed to

[Bug 1890930] Re: Xorg freeze

2020-08-14 Thread Seth Arnold
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1890930 Title: Xorg freeze To manage notifications about this bug go to:

[Bug 1890192] Re: installation crashed

2020-08-14 Thread Seth Arnold
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1890192 Title: installation crashed To manage notifications about this bug go to:

[Bug 1890957] Re: [nvidia] My Night Light doesn't work at all.

2020-08-14 Thread Seth Arnold
** Information type changed from Public Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1890957 Title: [nvidia] My Night Light doesn't work at all. To manage notifications about

[Bug 1861359] Re: swap storms kills interactive use

2020-08-14 Thread Seth Arnold
I was reminded of this bug earlier today -- Andrea, Sultan, thanks so much for fixing my issues. I've been happily running along for months now. :) Thanks! -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 1889556] Re: grub-install failure does not fail package upgrade (and does not roll back to matching modules)

2020-08-13 Thread Seth Arnold
Hello halfgaar, our knowledge base article includes some instructions for Amazon ec2 instances on how to recover from this situation: https://wiki.ubuntu.com/SecurityTeam/KnowledgeBase/GRUB2SecureBootBypass#Cloud_instances_.28e.g._AWS_EC2.29 If the virtual console support provides a mechanism to

[Bug 1870818] Re: apache2 security fix in 2.4.43

2020-08-13 Thread Seth Arnold
This was addressed in USN 4458-1: https://usn.ubuntu.com/4458-1 Thanks ** Changed in: apache2 (Ubuntu) Status: In Progress => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 1891361] Re: sshfs crashes entire Ubuntu 20.04.1 LTS system

2020-08-12 Thread Seth Arnold
Hello foobar, is your system otherwise reliable if sshfs isn't in use? does it matter if the package is installed but not configured? About the "unbootable" problem, I suspect that may have been due to a recent grub update: https://ubuntu.com/security/notices/USN-4432-2 Thanks ** Information

[Bug 1891338] Re: apparmor misconfigured for envice

2020-08-12 Thread Seth Arnold
Hello Kenneth, can you please include the DENIED lines from dmesg output, /var/log/syslog, or /var/log/audit/audit.log ? Thanks -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1891338 Title:

[Bug 1864666] Re: [MIR] python-octavia-lib, ovn-octavia-provider

2020-08-12 Thread Seth Arnold
James, I see ovn-octavia-provider is marked 'confirmed' but still assigned to you; does this package need security review or is it ready for promotion if the other packages are approved? Thanks -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to

[Bug 1888101] Re: 'unsupported protocol' error when using PyMySQL

2020-08-12 Thread Seth Arnold
** Changed in: openssl (Ubuntu) Status: Incomplete => Confirmed -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1888101 Title: 'unsupported protocol' error when using PyMySQL To manage

[Bug 1870818] Re: apache2 security fix in 2.4.43

2020-08-11 Thread Seth Arnold
Hello Chris, thanks for contacting us. If you know why your PCI compliance auditor has flagged these issues as high priorities, it may be helpful to us to better understand the urgency. We do intend to address these issues but currently we have other issues that we believe are more impactful to

[Bug 1888101] Re: 'unsupported protocol' error when using PyMySQL

2020-08-11 Thread Seth Arnold
Hello Leon, Tiago, can you describe how to reproduce this problem from a bare Ubuntu installation? Thanks ** Changed in: openssl (Ubuntu) Status: New => Incomplete -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 1890932] Re: package grub-efi-amd64-signed 1.142.4+2.04-1ubuntu26.2 failed to install/upgrade: installed grub-efi-amd64-signed package post-installation script subprocess returned error exit stat

2020-08-10 Thread Seth Arnold
You may have hardware errors, I suggest running: sudo fwupdmgr update to try to upgrade your bios. Hopefully the errors have been fixed. Thanks -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1890932

[Bug 1891073] Re: trackpad not detected

2020-08-10 Thread Seth Arnold
Hello, your dmesg includes a lot of errors that look like BIOS bugs to me; you may wish to try running: sudo fwupdmgr update Thanks ** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to

[Bug 1890933] Re: package grub-efi-amd64-signed 1.142.4+2.04-1ubuntu26.2 failed to install/upgrade: installed grub-efi-amd64-signed package post-installation script subprocess returned error exit stat

2020-08-10 Thread Seth Arnold
*** This bug is a duplicate of bug 1890932 *** https://bugs.launchpad.net/bugs/1890932 ** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 1890874] Re: package shim-signed 1.40.3+15+1533136590.3beb971-0ubuntu1 failed to install/upgrade: installed shim-signed package post-installation script subprocess returned error exit status 1

2020-08-10 Thread Seth Arnold
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1890874 Title: package shim-signed 1.40.3+15+1533136590.3beb971-0ubuntu1 failed to

[Bug 1891014] Re: grub failed during reinstall (after electrical failure shutdown)

2020-08-10 Thread Seth Arnold
Hello, it appears the error you had during installation may have been temporary: Aug 10 10:15:08 ubuntu finish-install: Temporary failure resolving 'th.archive.ubuntu.com' It might work if you try again. Thanks ** Information type changed from Private Security to Public -- You received

[Bug 1891012] Re: A

2020-08-10 Thread Seth Arnold
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1891012 Title: A To manage notifications about this bug go to:

[Bug 1890932] Re: package grub-efi-amd64-signed 1.142.4+2.04-1ubuntu26.2 failed to install/upgrade: installed grub-efi-amd64-signed package post-installation script subprocess returned error exit stat

2020-08-10 Thread Seth Arnold
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1890932 Title: package grub-efi-amd64-signed 1.142.4+2.04-1ubuntu26.2 failed to

[Bug 1890928] Re: Openbox theme named Syscrash makes crash

2020-08-10 Thread Seth Arnold
Hello William, thanks for the bug report; more likely is the theme files were stored on failed drive sectors, and requesting the images for the theme exposed pre-existing hard drive problems. I suggest heading to irc or askubuntu.com with your system logs, hopefully you'll be able to get an idea

[Bug 1890841] Re: i am bhavesh

2020-08-10 Thread Seth Arnold
Upgrading from 15.04 to something supported will require going through 15.10 to 16.04. This may be helpful to you: https://help.ubuntu.com/community/EOLUpgrades Thanks -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 1890841] Re: i am bhavesh

2020-08-10 Thread Seth Arnold
Thank you for taking the time to report this bug and helping to make Ubuntu better. You appear to be running a release of Ubuntu that is no longer supported. Please see https://wiki.ubuntu.com/Releases for information on our currently supported releases; consider using one of the LTS releases,

[Bug 1890642] Re: package network-manager 1.22.10-1ubuntu2.1 failed to install/upgrade: não pode copiar dados extráidos para './usr/lib/x86_64-linux-gnu/NetworkManager/1.22.10/libnm-device-plugin-team

2020-08-10 Thread Seth Arnold
Thank you for taking the time to report this bug and helping to make Ubuntu better. Reviewing your dmesg attachment to this bug report it seems that there may be a problem with your hardware. I'd recommend performing a back up and then investigating the situation. Measures you might take

[Bug 1890618] Re: Pantalla difusa o erronea

2020-08-10 Thread Seth Arnold
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1890618 Title: Pantalla difusa o erronea To manage notifications about this bug go to:

[Bug 1890611] Re: mysql-server does not take into account configured ssl parameters

2020-08-10 Thread Seth Arnold
** Information type changed from Private Security to Public Security -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1890611 Title: mysql-server does not take into account configured ssl parameters

[Bug 1890472] Re: package mysql-server-8.0 8.0.21-0ubuntu0.20.04.4 failed to install/upgrade: installed mysql-server-8.0 package post-installation script subprocess returned error exit status 1

2020-08-10 Thread Seth Arnold
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1890472 Title: package mysql-server-8.0 8.0.21-0ubuntu0.20.04.4 failed to

[Bug 1890391] Re: package amavisd-new 1:2.10.1-2ubuntu1 failed to install/upgrade: subprocess installed post-installation script returned error exit status 1

2020-08-10 Thread Seth Arnold
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1890391 Title: package amavisd-new 1:2.10.1-2ubuntu1 failed to install/upgrade:

[Bug 1890358] Re: package gir1.2-rsvg-2.0:amd64 2.48.7-1ubuntu0.20.04.1 failed to install/upgrade: package is in a very bad inconsistent state; you should reinstall it before attempting configuration

2020-08-10 Thread Seth Arnold
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1890358 Title: package gir1.2-rsvg-2.0:amd64 2.48.7-1ubuntu0.20.04.1 failed to

[Bug 1576812] Re: [MIR] ipmitool

2020-08-06 Thread Seth Arnold
It's a bit hard to follow the issue but I have the impression quite a lot of work has been done on upstream ipmitool. It'd probably be worth revisiting. Thanks -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 1890286] Re: ansi escape sequence injection in add-apt-repository

2020-08-04 Thread Seth Arnold
Thanks Jason, please use CVE-2020-15709 for this issue. ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2020-15709 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1890286 Title: ansi

[Bug 1840845] Re: secureboot-db.service should not run in a container

2020-07-29 Thread Seth Arnold
This should also not run in a live environment, such as the installer, rescue media, etc. Thanks -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1840845 Title: secureboot-db.service should not run

[Bug 1889091] Re: When saving a copy save dialog cannot create directory on nfs share (due to apparmor)

2020-07-29 Thread Seth Arnold
Sebastien, it's hard to be confident one way or another; @{HOME} was indeed written with the usual assumptions around home directories and it is likely to be used that way in profiles, written both by AppArmor upstream, Debian, Ubuntu, and whatever else profiles may be installed and in use. I'm

[Bug 1889091] Re: When saving a copy save dialog cannot create directory on nfs share (due to apparmor)

2020-07-28 Thread Seth Arnold
That'll change evince's profile but leave everything else that uses @{HOME} broken. Edit /etc/apparmor.d/tunables/home.d/site.local to match your local configuration for home directory storage, and then run sudo apparmor_parser --replace /etc/apparmor.d/ -- this will reload the system-managed

[Bug 1888715] Re: UDP data corruption caused by buggy udp_recvmsg() -> skb_copy_and_csum_datagram_msg()

2020-07-24 Thread Seth Arnold
Hello Dexuan, wonderful, thanks; Eric's proposed patch confuses me on one point: - if (rcu_access_pointer(sk->sk_filter) && - udp_lib_checksum_complete(skb)) + if (udp_lib_checksum_complete(skb)) goto csum_error; Do you know why the rcu_access_pointer()

[Bug 1888442] Re: upgrade did not go well

2020-07-22 Thread Seth Arnold
These cryptsetup warnings and errors are indeed due to my zfs use, I see them several times a month for the life of the machine, roughly the last ten months. Don't let the 'error' there scare you, as it did me. I don't understand them, but they also don't appear to have any consequences. The

[Bug 1888442] [NEW] upgrade did not go well

2020-07-21 Thread Seth Arnold
Public bug reported: Hello, I had some problems during my most recent apt upgrade. A confounding factor to these problems was removing my laptop from its docking station a few minutes earlier. $ sudo apt upgrade Reading package lists... Done Building dependency tree Reading state

[Bug 1877696] Re: [MIR] openscap

2020-07-21 Thread Seth Arnold
Evgeny, thanks for the comment. Ideally the Debian maintainer would bring in the new version, but we can leapfrog them if necessary. Thanks -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1877696

[Bug 1868154] Re: [MIR] realmd

2020-07-16 Thread Seth Arnold
I reviewed realmd 0.16.3-3 as checked into focal. This shouldn't be considered a full audit but rather a quick gauge of maintainability. realmd automates configuring kerberos, ldap, sssd, ipa, etc on the system, and provides a dbus interface and command line tool. - CVE History: - one cve in

[Bug 1887542] Re: apparmor 2.13.3-7ubuntu6 ADT test failure with linux-5.8 5.8.0-6.7

2020-07-15 Thread Seth Arnold
This was also reported in another autopkgtest run https://bugs.launchpad.net/bugs/1887577 I took a look at the debdiff for the version mentioned in that bug and couldn't for the life of me figure out how that could have been related. I'm completely in the dark on this one :( -- You received

[Bug 1877023] Re: Unhandled exception in check_ignored()

2020-07-13 Thread Seth Arnold
Hello, please use CVE-2020-15701 for this issue. Thanks ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2020-15701 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1877023 Title:

[Bug 1887016] Re: Openssh default config has two PasswordAuthentication params

2020-07-09 Thread Seth Arnold
Hello Rulon, can you please double-check where your openssh-server package came from? I don't have this "PasswordAuthentication yes" in any of my 20.04 systems, and a very quick look at the current package doesn't show this: $ apt-get download openssh-server Get:1 http://wopr.domain/ubuntu

[Bug 1881982] Re: DoS vulnerability: cause resource exhaustion

2020-07-09 Thread Seth Arnold
Please use CVE-2020-11937 for this issue. Thanks. ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2020-11937 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1881982 Title: DoS

[Bug 1886759] Re: wireguard-dkms won't build with kernel 5.3.0-7648-generic

2020-07-08 Thread Seth Arnold
Hello Alex, a few quick questions to help figure out what's going on: - Why are you using the dkms package? Ubuntu's 5.3 kernels provide wiregaurd.ko already. - Where did you get a 5.3.0-7648-generic version? I don't see that version on my local Ubuntu mirror. Thanks ** Information type

[Bug 1861082] Re: [SRU] ubuntu-bug doesn't know how to file bugs against snaps

2020-07-02 Thread Seth Arnold
The first package I wanted to try was matterhorn -- I had some trouble with it earlier today and this was an excellent opportunity to report the bug 'formally', beyond just a pastebin on irc: $ ubuntu-bug matterhorn *** Collecting problem information The collected information can be sent to the

[Bug 1884980] Re: patch so apparmor complain->enforcing

2020-06-25 Thread Seth Arnold
Hello Harry, thanks for the profile additions. Note that the "//null-" portion of the profiles represents a missing execution permission line in the profile. When in enforce mode, the execution would be denied. When in complain mode, the execution is allowed, and the //null- is tacked on, with

[Bug 1884848] Re: sshguard.service uses wrong path for iptables; nothing actually gets blocked

2020-06-23 Thread Seth Arnold
** Changed in: sshguard (Ubuntu) Status: Incomplete => New -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to the bug report. https://bugs.launchpad.net/bugs/1884848 Title: sshguard.service uses wrong path for iptables; nothing

[Bug 1884848] Re: sshguard.service uses wrong path for iptables; nothing actually gets blocked

2020-06-23 Thread Seth Arnold
There should be several symlinks to make this work: $ namei -l /sbin/iptables f: /sbin/iptables drwxr-xr-x root root / lrwxrwxrwx root root sbin -> usr/sbin drwxr-xr-x root root usr drwxr-xr-x root root sbin lrwxrwxrwx root root iptables -> /etc/alternatives/iptables drwxr-xr-x root root /

[Bug 1310717] Re: process segfaults, hung task timeouts

2020-06-18 Thread Seth Arnold
I'm sorry, I can't recall that system very well at this point. "gmain" is the generic name used by any application using glib's g_get_worker_context() function to create worker threads. At this point I can't even recall if I booted that system with X11 / lightdm or if I had configured it to boot

[Bug 1883723] Re: Some official repositories changed compression method from gzip to lz4 leading to checksum errors during apt-get update

2020-06-16 Thread Seth Arnold
** Information type changed from Private Security to Public Security -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1883723 Title: Some official repositories changed compression method from gzip to

[Bug 1864223] Re: shim 15+1552672080.a4a1fbe-0ubuntu1 fails to load fwupd

2020-06-15 Thread Seth Arnold
I don't think that this broken package was announced widely enough -- the fallout from it cost my team perhaps an hour today. I don't know where this was announced, but I think probably more places needed to hear about it at the time. Whoever works on shim, *please* announce future cases like

[Bug 1883483] Re: Xorg freeze and hang

2020-06-15 Thread Seth Arnold
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1883483 Title: Xorg freeze and hang To manage notifications about this bug go to:

[Bug 1883317] Re: package ca-certificates 20190110ubuntu1.1 failed to install/upgrade: installed ca-certificates package post-installation script subprocess returned error exit status 128

2020-06-12 Thread Seth Arnold
** Also affects: debconf (Ubuntu) Importance: Undecided Status: New -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1883317 Title: package ca-certificates 20190110ubuntu1.1 failed to

[Bug 1882098] Re: Packagekit lets user install untrusted local packages in Bionic and Focal

2020-06-12 Thread Seth Arnold
Hello Sami, Esko, I'm not very familiar with the packagekit or policykit frameworks, so please forgive me if I'm far off course here with these thoughts: - Is the [tld.univ.packagekit-deny] rule necessary? I'd hope that this permission wouldn't be granted to anyone but admins. - Are there other

[Bug 1882098] Re: Packagekit lets user install untrusted local packages in Bionic and Focal

2020-06-12 Thread Seth Arnold
** Information type changed from Private Security to Public Security -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1882098 Title: Packagekit lets user install untrusted local packages in Bionic and

[Bug 1883235] Re: freez when using

2020-06-12 Thread Seth Arnold
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1883235 Title: freez when using To manage notifications about this bug go to:

[Bug 1883128] Re: package ca-certificates 20190110ubuntu1.1 failed to install/upgrade: installed ca-certificates package post-installation script subprocess returned error exit status 1

2020-06-11 Thread Seth Arnold
Hello, it appears the openssl package has been replaced; I suggest filing a bug following the instructions here: BUGS: This PPA now has a issue tracker: https://deb.sury.org/#bug-reporting Thanks ** Changed in: ca-certificates (Ubuntu) Status: New => Invalid -- You received this bug

[Bug 1883146] Re: package sudo 1.8.31-1ubuntu1 failed to install/upgrade: installed sudo package pre-removal script subprocess returned error exit status 1

2020-06-11 Thread Seth Arnold
Hello, it looks like something is trying to remove sudo. This would be bad. I suggest running this: sudo apt update sudo apt install sudo sudo apt install -f hopefully this will get you back to a working system. If not, I suggest asking for help on #ubuntu on irc.freenode.net or

[Bug 1883086] Re: package linux-image-4.4.0-178-generic 4.4.0-178.208 failed to install/upgrade: subprocess installed pre-removal script returned error exit status 1

2020-06-11 Thread Seth Arnold
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1883086 Title: package linux-image-4.4.0-178-generic 4.4.0-178.208 failed to

[Bug 1882897] Re: Suddent log off/abort in middle of session

2020-06-10 Thread Seth Arnold
** Information type changed from Public Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1882897 Title: Suddent log off/abort in middle of session To manage notifications about

[Bug 1882925] Re: package libcddb2 1.3.2-4fakesync2 failed to install/upgrade: package libcddb2 is not ready for configuration cannot configure (current status 'half-installed')

2020-06-10 Thread Seth Arnold
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1882925 Title: package libcddb2 1.3.2-4fakesync2 failed to install/upgrade: package

[Bug 1870058] Re: Collect deleted users

2020-06-10 Thread Seth Arnold
Thanks Didier, that's perfect. :) -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1870058 Title: Collect deleted users To manage notifications about this bug go to:

[Bug 1882850] Re: Touchpad not detected

2020-06-09 Thread Seth Arnold
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1882850 Title: Touchpad not detected To manage notifications about this bug go to:

<    2   3   4   5   6   7   8   9   10   11   >