Bug#930005: regina-rexx: rexxutil error

2019-06-09 Thread Ben Longbons
Package: libregina3 Version: 3.6-2.1 Followup-For: Bug #930005 Dear Maintainer, I took a look at this since I thought it would be a simple `-ltinfo` fix, but it's more complicated than that. As it is, the package can't possibly run on 64-bit platforms. There are a *lot* of dangerous warnings; s

Bug#927913: Second chromium kills the first one, and we see "Restore pages?"

2019-06-09 Thread Jürgen Göricke
Dear Maintainer, why don't you create binary packages of chromium and publish them in the unstable branch? Did I miss something important? I see this Chromium version as a required bugfix release. I'm asking for clarification. Thank you! best regards pgpSR6QQaVNMr.pgp Description: Digitale

Bug#929662: docker.io: CVE-2018-15664 - upstream backport of patch for 18.09

2019-06-09 Thread Arnaud Rebillout
  Hi, thanks for reaching out. I applied the patch, that is no problem. However the new tests that were added makes my machine go crazy and reach the maximum number of process. Right now I'm configured like that:     $ ulimit -u     62688 I will bumb this number but I also want to check a bit mo

Bug#929715: strace: FTBFS: open: /dev/kvm: No such file or directory

2019-06-09 Thread Sergio Durigan Junior
Control: severity -1 important Hi there, On Saturday, June 01 2019, Steve McIntyre wrote: > On Wed, May 29, 2019 at 04:30:05PM +0200, Lucas Nussbaum wrote: >>Hi, >> >>During a rebuild of all packages in buster (in a buster chroot, not a >>sid chroot), your package failed to build on amd64. > > H

Processed: Re: Bug#929715: strace: FTBFS: open: /dev/kvm: No such file or directory

2019-06-09 Thread Debian Bug Tracking System
Processing control commands: > severity -1 important Bug #929715 [src:strace] Bug#929715: strace: FTBFS: failure in lstat tests Severity set to 'important' from 'serious' -- 929715: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=929715 Debian Bug Tracking System Contact ow...@bugs.debian.org

Bug#930227: marked as done (mender-client fails to build from source on all architectures)

2019-06-09 Thread Debian Bug Tracking System
Your message dated Mon, 10 Jun 2019 03:42:33 +0200 with message-id <20190610014233.itbnbmtqyksnp...@fatal.se> and subject line Re: mender-client fails to build from source on all architectures has caused the Debian Bug report #930227, regarding mender-client fails to build from source on all archi

Bug#907135: [Box Backup] Debian now requires 2048bit RSA keys

2019-06-09 Thread Reinhard Tartler
Agreed! In this case, the bug was reported on Aug 24 2018 by Adrian Bunk. It was removed about a months later, namely on September 23, for failing to build from source. Four weeks is arguably quite fast. Or quite slow, depending on whom you talk to. I probably could have reacted by disabling the

Bug#907135: [Box Backup] Debian now requires 2048bit RSA keys

2019-06-09 Thread Chris Wilson
Hi all, It seems a bit egregious to kick out packages that were broken by a minor version upgrade in one of their dependencies (which after all is not supposed to break anything), without any warning, let alone time to fix such a complex issue properly. I hope that Debian will consider careful

Bug#928959: marked as done (papi: DFSG-unfree file in source)

2019-06-09 Thread Debian Bug Tracking System
Your message dated Sun, 09 Jun 2019 20:10:26 + with message-id and subject line Bug#928959: fixed in papi 5.7.0+dfsg-1 has caused the Debian Bug report #928959, regarding papi: DFSG-unfree file in source to be marked as done. This means that you claim that the problem has been dealt with. If

Bug#928367: marked as done (libpapi5: SOVERSION is too wide for the runtime check in PAPI_library_init())

2019-06-09 Thread Debian Bug Tracking System
Your message dated Sun, 09 Jun 2019 20:10:26 + with message-id and subject line Bug#928367: fixed in papi 5.7.0+dfsg-1 has caused the Debian Bug report #928367, regarding libpapi5: SOVERSION is too wide for the runtime check in PAPI_library_init() to be marked as done. This means that you cl

Bug#928089: marked as done (chromium: crash when opening a new instance)

2019-06-09 Thread Debian Bug Tracking System
Your message dated Sun, 09 Jun 2019 19:24:21 + with message-id and subject line Bug#927913: fixed in chromium 75.0.3770.10-1 has caused the Debian Bug report #927913, regarding chromium: crash when opening a new instance to be marked as done. This means that you claim that the problem has bee

Bug#927913: marked as done (Second chromium kills the first one, and we see "Restore pages?")

2019-06-09 Thread Debian Bug Tracking System
Your message dated Sun, 09 Jun 2019 19:24:21 + with message-id and subject line Bug#927913: fixed in chromium 75.0.3770.10-1 has caused the Debian Bug report #927913, regarding Second chromium kills the first one, and we see "Restore pages?" to be marked as done. This means that you claim tha

Bug#927997: marked as done (Opening a link from a mail client restarts chromium)

2019-06-09 Thread Debian Bug Tracking System
Your message dated Sun, 09 Jun 2019 19:24:21 + with message-id and subject line Bug#927913: fixed in chromium 75.0.3770.10-1 has caused the Debian Bug report #927913, regarding Opening a link from a mail client restarts chromium to be marked as done. This means that you claim that the problem

Bug#903635: This is RC; breaks unrelated software

2019-06-09 Thread Shengjing Zhu
Hi Jonathan, On Wed, Apr 24, 2019 at 08:04:43PM +0100, Jonathan Dowland wrote: > severity 903635 critical > thanks > > Justification: "makes unrelated software on the system (or the whole system) > break" > > Installing docker.io changed my FORWARD chain policy to DROP, breaking > networking fo

Bug#928107: marked as done (shim-signed: FTBFS in buster (unmet build-depends))

2019-06-09 Thread Debian Bug Tracking System
Your message dated Sun, 09 Jun 2019 17:03:22 + with message-id and subject line Bug#928107: fixed in shim-signed 1.33 has caused the Debian Bug report #928107, regarding shim-signed: FTBFS in buster (unmet build-depends) to be marked as done. This means that you claim that the problem has bee

Bug#928052: CVE-2019-11502 CVE-2019-11503

2019-06-09 Thread Salvatore Bonaccorso
Hi, I have not reviewed the whole patch but the following appeared on my redar while reviewing: On Sun, Jun 09, 2019 at 05:09:15PM +0900, Kentaro Hayashi wrote: > + [ Kentaro Hayashi ] > + * Non-maintainer upload. > + * d/patches/CVE-2019-11502.patch: fix unintended access to a private /tmp >

Processed: found 930276 in 2.2.5-1

2019-06-09 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > found 930276 2.2.5-1 Bug #930276 [src:vlc] vlc: multiple vulnerabilities fixed in 3.0.7 release Marked as found in versions vlc/2.2.5-1. > thanks Stopping processing here. Please contact me if you need assistance. -- 930276: https://bugs.debian.

Processed: found 930276 in 2.2.6-6

2019-06-09 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > # for BTS graph > found 930276 2.2.6-6 Bug #930276 [src:vlc] vlc: multiple vulnerabilities fixed in 3.0.7 release Ignoring request to alter found versions of bug #930276 to the same values previously set > thanks Stopping processing here. Please

Processed: found 930276 in 2.2.6-6

2019-06-09 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > # for BTS graphx > found 930276 2.2.6-6 Bug #930276 [src:vlc] vlc: multiple vulnerabilities fixed in 3.0.7 release Marked as found in versions vlc/2.2.6-6. > thanks Stopping processing here. Please contact me if you need assistance. -- 930276: h

Bug#930276: vlc: multiple vulnerabilities fixed in 3.0.7 release

2019-06-09 Thread Salvatore Bonaccorso
Source: vlc Version: 3.0.6-1 Severity: grave Tags: security upstream Justification: user security hole Control: fixed -1 3.0.7-1 Control: found -1 3.0.6-0+deb9u1 Hi Given there are no CVEs for the repsective issues (so far) add a single tracking bug in the BTS to get a reference, fixed already in

Processed: vlc: multiple vulnerabilities fixed in 3.0.7 release

2019-06-09 Thread Debian Bug Tracking System
Processing control commands: > fixed -1 3.0.7-1 Bug #930276 [src:vlc] vlc: multiple vulnerabilities fixed in 3.0.7 release Marked as fixed in versions vlc/3.0.7-1. > found -1 3.0.6-0+deb9u1 Bug #930276 [src:vlc] vlc: multiple vulnerabilities fixed in 3.0.7 release Marked as found in versions vlc/3

Bug#929718: marked as done (gdcm: FTBFS: dh_makeshlibs: failing due to earlier errors)

2019-06-09 Thread Debian Bug Tracking System
Your message dated Sun, 09 Jun 2019 18:30:55 +0200 with message-id <8d05af5ddcf9bd88135a40d1fc775e60032779bb.ca...@gmail.com> and subject line gdcm: FTBFS: dh_makeshlibs: failing due to earlier errors has caused the Debian Bug report #929718, regarding gdcm: FTBFS: dh_makeshlibs: failing due to ear

Processed: Re: provide type definitions for node-ast-types

2019-06-09 Thread Debian Bug Tracking System
Processing control commands: > block -1 by 929829 Bug #930267 [node-ast-types] provide type definitions for node-ast-types 930267 was blocked by: 930269 909427 930267 was blocking: 930266 Added blocking bug(s) of 930267: 929829 -- 930267: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=930267

Bug#929983: ipxe-qemu: virtio booting no longer works after upgrade to buster

2019-06-09 Thread Shengjing Zhu
On Wed, Jun 05, 2019 at 01:24:06AM +0200, Thorsten Glaser wrote: [...] > I’ll attach the virsh dumpxml output below; I had reinstalled Debian > using an e1000 NIC and netboot in the meantime and reverted to virtio > afterwards, but I’m pretty sure this is reproducible even on other > virtualisation

Processed: Re: Processed: control

2019-06-09 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tags 929567 fixed-upstream Bug #929567 [emacs-gtk] libgtk-3-0:amd64: Emacs constantly crashes on startup with "X protocol error: BadLength..." Added tag(s) fixed-upstream. > End of message, stopping processing here. Please contact me if you need

Processed: Re: Processed: control

2019-06-09 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > found 929567 1:25.2+1-11 Bug #929567 [emacs-gtk] libgtk-3-0:amd64: Emacs constantly crashes on startup with "X protocol error: BadLength..." Marked as found in versions emacs/1:25.2+1-11. > thanks Stopping processing here. Please contact me if y

Processed: fixed 912637 in 7.22-21, fixed 912638 in 7.22-21, fixed 912639 in 7.22-21, tagging 885497 ...

2019-06-09 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > fixed 912637 7.22-21 Bug #912637 {Done: Moshe Piekarski } [wordplay] wordplay: broken silent option Marked as fixed in versions wordplay/7.22-21. > fixed 912638 7.22-21 Bug #912638 {Done: Moshe Piekarski } [wordplay] wordplay: Cannot include spa

Processed: Re: Processed: control

2019-06-09 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > reassign 929567 emacs-gtk 1:26.1+1-3.2 Bug #929567 [emacs] libgtk-3-0:amd64: Emacs constantly crashes on startup with "X protocol error: BadLength..." Bug reassigned from package 'emacs' to 'emacs-gtk'. Ignoring request to alter found versions of

Bug#908678: Update on the security-tracker git discussion

2019-06-09 Thread Salvatore Bonaccorso
On Sat, Jun 08, 2019 at 06:29:24PM +0200, Salvatore Bonaccorso wrote: > Notes on possible CVE/list splits > - [...] After a face-to-face conversation with Daniel, Daniel suggested to create a priority list out of that, we will followup with that to that (ideally as

Bug#909286: Please close

2019-06-09 Thread subhuman
I wonder whether his bug should be closed. The behaviour described in the report no longer exists in version 67.0.1. (There is a warning about live bookmarks, though, but that's - I'd say - a different problem.) --Martin

Bug#908678: Update on the security-tracker git discussion

2019-06-09 Thread Guido Günther
Hi Salvatore, On Sat, Jun 08, 2019 at 06:29:24PM +0200, Salvatore Bonaccorso wrote: > Hi, > > On Thu, Jun 06, 2019 at 06:11:53PM +0200, Salvatore Bonaccorso wrote: > > Hi Daniel, > > > > On Thu, Jun 06, 2019 at 08:35:47AM +0200, Daniel Lange wrote: > > > Am 06.06.19 um 07:31 schrieb Salvatore Bon

Bug#928420: marked as done (php-imagick: CVE-2019-11037)

2019-06-09 Thread Debian Bug Tracking System
Your message dated Sun, 09 Jun 2019 10:18:27 + with message-id and subject line Bug#928420: fixed in php-imagick 3.4.3-4.1 has caused the Debian Bug report #928420, regarding php-imagick: CVE-2019-11037 to be marked as done. This means that you claim that the problem has been dealt with. If t

Bug#930248: RM: gnome-xcf-thumbnailer -- RC buggy, dead-upstream, unmaintained, obsolete

2019-06-09 Thread Tobias Frost
Package: gnome-xcf-thumbnailer Severity: serious gnome-xcf-thumbnailer is currently RC buggy with 2 bugs: #655465 [S| | ] [gnome-xcf-thumbnailer] No thumbnails created in Gnome 3.2.1 #886072 [S| | ] [src:gnome-xcf-thumbnailer] gnome-xcf-thumbnailer: Depends on gconf However, at least on my s

Bug#929903: marked as done (m2crypto: testing for a fixed openssl causing test case regression)

2019-06-09 Thread Debian Bug Tracking System
Your message dated Sun, 09 Jun 2019 08:50:12 + with message-id and subject line Bug#929903: fixed in m2crypto 0.31.0-4 has caused the Debian Bug report #929903, regarding m2crypto: testing for a fixed openssl causing test case regression to be marked as done. This means that you claim that th

Bug#928052: CVE-2019-11502 CVE-2019-11503

2019-06-09 Thread Kentaro Hayashi
control: tags -1 +patch I've tried to fix only CVE-2019-11502 as a challenge. The debdiff patch is added. I hope it will help to fix. diff -Nru snapd-2.37.4/debian/changelog snapd-2.37.4/debian/changelog --- snapd-2.37.4/debian/changelog 2019-03-01 02:21:26.0 +0900 +++ snapd-2.37.4/de

Processed: Re: CVE-2019-11502 CVE-2019-11503

2019-06-09 Thread Debian Bug Tracking System
Processing control commands: > tags -1 +patch Bug #928052 [src:snapd] CVE-2019-11502 CVE-2019-11503 Added tag(s) patch. -- 928052: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=928052 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems

Processed: Re: monit: CVE-2019-11454 CVE-2019-11455

2019-06-09 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 927775 important Bug #927775 {Done: Sergey B Kirpichev } [src:monit] monit: CVE-2019-11454 CVE-2019-11455 Severity set to 'important' from 'grave' > thanks Stopping processing here. Please contact me if you need assistance. -- 927775:

Bug#927775: monit: CVE-2019-11454 CVE-2019-11455

2019-06-09 Thread Sergey B Kirpichev
severity 927775 important thanks No reasons, so revert back severity. On Tue, 4 Jun 2019 08:00:43 +0300 Sergey B Kirpichev wrote: > On Tue, 23 Apr 2019 06:53:03 +0200 Salvatore Bonaccorso > wrote: > > CVE-2019-11454[0]: > > | Persistent cross-site scripting (XSS) in http/cervlet.c in Tildesla

Bug#824229: marked as done (metapixel-prepare fails - metapixel: rwpng.c:199: open_png_file_writing: Assertion `0' failed.)

2019-06-09 Thread Debian Bug Tracking System
Your message dated Sun, 09 Jun 2019 07:03:22 + with message-id and subject line Bug#824229: fixed in metapixel 1.0.2-8 has caused the Debian Bug report #824229, regarding metapixel-prepare fails - metapixel: rwpng.c:199: open_png_file_writing: Assertion `0' failed. to be marked as done. This