Bug#1033811: unblock: mariadb/1:10.11.2-2

2023-04-01 Thread Otto Kekäläinen
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Control: affects -1 + src:mariadb Please unblock package 'mariadb' so that the bug fixes in the Debian revision 2 can be included in the release of Debian 12 "Bookworm". The package is curr

Processed: unblock: mariadb/1:10.11.2-2

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > affects -1 + src:mariadb Bug #1033811 [release.debian.org] unblock: mariadb/1:10.11.2-2 Added indication that 1033811 affects src:mariadb -- 1033811: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1033811 Debian Bug Tracking System Contact ow...@bugs.debian.org

Bug#1033810: unblock: cyrus-imapd/3.6.1-4

2023-04-01 Thread Yadd
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock X-Debbugs-Cc: cyrus-im...@packages.debian.org Control: affects -1 + src:cyrus-imapd Please unblock package cyrus-imapd [ Reason ] debian/copyright was incomplete [ Impact ] Incomplete copy

Processed: unblock: cyrus-imapd/3.6.1-4

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > affects -1 + src:cyrus-imapd Bug #1033810 [release.debian.org] unblock: cyrus-imapd/3.6.1-4 Added indication that 1033810 affects src:cyrus-imapd -- 1033810: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1033810 Debian Bug Tracking System Contact ow...@bugs.deb

Bug#1033766: marked as done (bullseye-pu: package cyrus-imapd/3.6.1-4)

2023-04-01 Thread Debian Bug Tracking System
Your message dated Sun, 2 Apr 2023 07:32:25 +0400 with message-id and subject line Re: Bug#1033766: bullseye-pu: package cyrus-imapd/3.6.1-4 has caused the Debian Bug report #1033766, regarding bullseye-pu: package cyrus-imapd/3.6.1-4 to be marked as done. This means that you claim that the probl

Bug#1033770: bullseye-pu: package apache2/2.4.56-1~deb11u2

2023-04-01 Thread Yadd
Control: tags -1 - confirmed On 4/1/23 22:47, Moritz Mühlenhoff wrote: Am Sat, Apr 01, 2023 at 08:32:55AM +0400 schrieb Yadd: Package: release.debian.org Severity: normal Tags: bullseye User: release.debian@packages.debian.org Usertags: pu X-Debbugs-Cc: apac...@packages.debian.org Control:

Processed: Re: bullseye-pu: package apache2/2.4.56-1~deb11u2

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 - confirmed Bug #1033770 [release.debian.org] bullseye-pu: package apache2/2.4.56-1~deb11u2 Removed tag(s) confirmed. -- 1033770: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1033770 Debian Bug Tracking System Contact ow...@bugs.debian.org with problem

Processed: Re: Bug#1032237: bullseye-pu: zfs-linux/2.0.3-9+deb11u1

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 - moreinfo Bug #1032237 [release.debian.org] bullseye-pu: package zfs-linux/2.0.3-9+deb11u1 Removed tag(s) moreinfo. -- 1032237: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1032237 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems

Bug#1032237: bullseye-pu: zfs-linux/2.0.3-9+deb11u1

2023-04-01 Thread Aron Xu
Control: tags -1 - moreinfo On Sun, Apr 2, 2023 at 3:10 AM Adam D. Barratt wrote: > > Control: tags -1 + moreinfo > > On Thu, 2023-03-02 at 15:33 +0800, Aron Xu wrote: > > I would like to apply a few patches to address some stability issues > > in the > > zfs-linux package in bullseye. All the pa

Bug#1027257: bullseye-pu: package golang-github-containers-storage/1.24.8+dfsg1-2~deb11u1

2023-04-01 Thread Reinhard Tartler
On 4/1/23 3:51 PM, Adam D. Barratt wrote: Control: tags -1 + moreinfo Apologies for the delay in getting back to you on this. On Wed, 2022-12-28 at 22:26 -0500, Reinhard Tartler wrote: In order to fix CVE-2022-1227, an update to golang-github-containers- psgo is needed, more specifically, h

Bug#1025654: bullseye-pu: package x4d-icons/1.2-2+deb11u1

2023-04-01 Thread Santiago Vila
El 1/4/23 a las 21:58, Adam D. Barratt escribió: Have you confirmed via a binary debdiff that there are no changes to the resulting packages? The package contents is the expected one: $ debdiff x4d-icons_1.2-2_all.deb x4d-icons_1.2-2+deb11u1_all.deb File lists identical (after any substitution

Bug#1033807: unblock: librest/0.9.1-6

2023-04-01 Thread Jeremy Bícha
] [X] all changes are documented in the d/changelog [X] I reviewed all changes and I approve them [X] attach debdiff against the package in testing [ Other info ] unblock librest/0.9.1-6 Thank you, Jeremy Bicha librest-unblock-20230401.debdiff Description: Binary data

Processed: unblock: librest/0.9.1-6

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > affects -1 + src:librest Bug #1033807 [release.debian.org] unblock: librest/0.9.1-6 Added indication that 1033807 affects src:librest -- 1033807: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1033807 Debian Bug Tracking System Contact ow...@bugs.debian.org with

NEW changes in stable-new

2023-04-01 Thread Debian FTP Masters
Processing changes file: debian-archive-keyring_2021.1.1+deb11u1_all-buildd.changes ACCEPT Processing changes file: libdatetime-timezone-perl_2.47-1+2023c_all-buildd.changes ACCEPT

Bug#1026845: bullseye-pu: package systemd/247.3-7+deb11u2

2023-04-01 Thread Adam D. Barratt
Control: tags -1 + confirmed d-i On Thu, 2022-12-22 at 12:13 +, Luca Boccassi wrote: > We'd like to upload several bug fixes, including security fixes, for > systemd to bullseye. > The fixes come from the upstream stable branches which are covered by > CI and confirmed by reporters. > Please

Processed: Re: Bug#1026845: bullseye-pu: package systemd/247.3-7+deb11u2

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + confirmed d-i Bug #1026845 [release.debian.org] bullseye-pu: package systemd/247.3-7+deb11u2 Added tag(s) confirmed and d-i. -- 1026845: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1026845 Debian Bug Tracking System Contact ow...@bugs.debian.org wit

Bug#1025703: bullseye-pu: package libexplain/1.4.D001-11+deb11u1

2023-04-01 Thread Adam D. Barratt
Control: tags -1 + confirmed On Wed, 2022-12-07 at 19:37 +0100, Santiago Vila wrote: > I'd like to make this QA upload to fix FTBFS bug #997222 in > bullseye, > plus allow compilation with kernels slightly newer than the one in > bullseye (for example bullseye-backports). > > The two patches ar

Processed: Re: Bug#1025703: bullseye-pu: package libexplain/1.4.D001-11+deb11u1

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + confirmed Bug #1025703 [release.debian.org] bullseye-pu: package libexplain/1.4.D001-11+deb11u1 Added tag(s) confirmed. -- 1025703: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1025703 Debian Bug Tracking System Contact ow...@bugs.debian.org with pr

Processed: Re: Bug#1025654: bullseye-pu: package x4d-icons/1.2-2+deb11u1

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + moreinfo Bug #1025654 [release.debian.org] bullseye-pu: package x4d-icons/1.2-2+deb11u1 Added tag(s) moreinfo. -- 1025654: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1025654 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems

Bug#1025654: bullseye-pu: package x4d-icons/1.2-2+deb11u1

2023-04-01 Thread Adam D. Barratt
Control: tags -1 + moreinfo On Tue, 2022-12-06 at 23:47 +0100, Santiago Vila wrote: > I'd like to fix FTBFS bug #991067 in stable using the attached > debdiff > (not uploaded yet). > Apologies for the delay in getting back to you on this. > The way the FTBFS is fixed is the same I used in uplo

Processed: Re: Bug#1027257: bullseye-pu: package golang-github-containers-storage/1.24.8+dfsg1-2~deb11u1

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + moreinfo Bug #1027257 [release.debian.org] bullseye-pu: package golang-github-containers-storage/1.24.8+dfsg1-2~deb11u1 Added tag(s) moreinfo. -- 1027257: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1027257 Debian Bug Tracking System Contact ow...@

Bug#1027257: bullseye-pu: package golang-github-containers-storage/1.24.8+dfsg1-2~deb11u1

2023-04-01 Thread Adam D. Barratt
Control: tags -1 + moreinfo Apologies for the delay in getting back to you on this. On Wed, 2022-12-28 at 22:26 -0500, Reinhard Tartler wrote: > In order to fix CVE-2022-1227, an update to golang-github-containers- > psgo > is needed, more specifically, > https://github.com/containers/psgo/pull/

Bug#1027258: bullseye-pu: package golang-github-containers-psgo/1.5.2-2~deb11u1

2023-04-01 Thread Adam D. Barratt
Control: tags -1 + moreinfo On Wed, 2022-12-28 at 22:40 -0500, Reinhard Tartler wrote: > Backport for CVE-2022-1227, taken from > https://github.com/containers/psgo/pull/92 > > This prevents an exploit when running 'podman top' > Apologies for the delay in getting back to you regarding this.

Processed: Re: Bug#1027258: bullseye-pu: package golang-github-containers-psgo/1.5.2-2~deb11u1

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + moreinfo Bug #1027258 [release.debian.org] bullseye-pu: package golang-github-containers-psgo/1.5.2-2~deb11u1 Added tag(s) moreinfo. -- 1027258: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1027258 Debian Bug Tracking System Contact ow...@bugs.debia

Processed: Re: Bug#1029142: bullseye-pu: package geeqie/1:1.6-9+deb11u2 (pre-approval)

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + moreinfo Bug #1029142 [release.debian.org] bullseye-pu: package geeqie/1:1.6-9+deb11u2 (pre-approval) Added tag(s) moreinfo. -- 1029142: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1029142 Debian Bug Tracking System Contact ow...@bugs.debian.org wi

Bug#1029142: bullseye-pu: package geeqie/1:1.6-9+deb11u2 (pre-approval)

2023-04-01 Thread Adam D. Barratt
Control: tags -1 + moreinfo On Wed, 2023-01-18 at 15:13 +0100, Andreas Rönnquist wrote: > The clutter library is buggy, to the extent that geeqie might crash > if > not ran without it. This fix simply removes the libchamplain > dependency > (which in it's turn depends on clutter). This makes it po

Bug#1033694: marked as done (unblock: gortr/0.14.7-2)

2023-04-01 Thread Debian Bug Tracking System
Your message dated Sat, 1 Apr 2023 21:35:04 +0200 with message-id and subject line Re: Bug#1033694: unblock: gortr/0.14.7-2 has caused the Debian Bug report #1033694, regarding unblock: gortr/0.14.7-2 to be marked as done. This means that you claim that the problem has been dealt with. If this is

Bug#1033798: unblock: lazarus/2.2.6+dfsg1-1

2023-04-01 Thread Abou Al Montacir
Control: retitle -1 unblock: lazarus/2.2.6+dfsg1-2 Another bug was fixed in order to allow building Lazarus for armel architecture. This bug is just disabling a compilation switch in a source file. The removed compilation switch forces to disable the FPU emulation, which does not have any sense o

Processed: Re: Bug#1033653: bullseye-pu: package lemonldap-ng/2.0.11+ds-4+deb11u

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + confirmed Bug #1033653 [release.debian.org] bullseye-pu: package lemonldap-ng/2.0.11+ds-4+deb11u4 Bug #1030598 [release.debian.org] bullseye-pu: package lemonldap-ng/2.0.11+ds-4+deb11u3 Added tag(s) confirmed. Added tag(s) confirmed. -- 1030598: https:/

Processed: Re: unblock: lazarus/2.2.6+dfsg1-1

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > retitle -1 unblock: lazarus/2.2.6+dfsg1-2 Bug #1033798 [release.debian.org] unblock: lazarus/2.2.6+dfsg1-1 Changed Bug title to 'unblock: lazarus/2.2.6+dfsg1-2' from 'unblock: lazarus/2.2.6+dfsg1-1'. -- 1033798: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=10

Bug#1033653: bullseye-pu: package lemonldap-ng/2.0.11+ds-4+deb11u

2023-04-01 Thread Adam D. Barratt
Control: tags -1 + confirmed On Wed, 2023-03-29 at 16:26 +0400, Yadd wrote: > lemonldap-ng is vulnarable to a second factor bypass when used with > an > "AuthBasic handler" (generally used for non-browser apps). > [...] > I didn't pushed yet the already accepted patch for deb11u3 > (#1030598). >

Bug#1032614: ddcutil: pre-approval request ddcutil-1.4.2-1 fixes bug #1031259

2023-04-01 Thread Sebastian Ramacher
On 2023-03-13 19:00:22 +0100, Sebastian Ramacher wrote: > On 2023-03-13 13:28:47 -0400, Sanford Rockowitz wrote: > > On 3/13/23 07:42, Sebastian Ramacher wrote: > > > On 2023-03-13 07:25:41 -0400, Sanford Rockowitz wrote: > > > > On 3/13/23 05:33, Sebastian Ramacher wrote: > > > > > On 2023-03-11 0

Processed: Re: Bug#1031097: bullseye-pu: package conmon/2.0.25+ds1-1.1

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + confirmed Bug #1031097 [release.debian.org] bullseye-pu: package conmon/2.0.25+ds1-1.1 Added tag(s) confirmed. -- 1031097: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1031097 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems

Bug#1031097: bullseye-pu: package conmon/2.0.25+ds1-1.1

2023-04-01 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sat, 2023-02-11 at 19:03 +0100, Reinhard Tartler wrote: > conmon 2.0.25 contains a bug where the container will hang when there > is lots of terminal output. You can easily reproduce like so: > > podman run -it --rm debian:latest > find / > Please go ahead; sorry

Processed: Re: Bug#1031630: bullseye-pu: package containerd/1.4.13~ds1-1~deb11u4

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + confirmed Bug #1031630 [release.debian.org] bullseye-pu: package containerd/1.4.13~ds1-1~deb11u4 Added tag(s) confirmed. -- 1031630: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1031630 Debian Bug Tracking System Contact ow...@bugs.debian.org with p

Processed: Re: Bug#1031410: bullseye-pu: package postgis/3.1.1+dfsg-1+deb11u1

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + confirmed Bug #1031410 [release.debian.org] bullseye-pu: package postgis/3.1.1+dfsg-1+deb11u1 Added tag(s) confirmed. -- 1031410: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1031410 Debian Bug Tracking System Contact ow...@bugs.debian.org with prob

Bug#1031410: bullseye-pu: package postgis/3.1.1+dfsg-1+deb11u1

2023-04-01 Thread Adam D. Barratt
Control: tags -1 + confirmed On Thu, 2023-02-16 at 19:38 +0100, Bas Couwenberg wrote: > As reported in #1031392, postgis 3.1.1 has an important issue with > polar > stereographic projections which was resolved in 3.1.2. > > [ Impact ] > Unusable coordinates from transformations. > Please go ahe

Bug#1031109: bullseye-pu: package crun/0.17+dfsg-1+deb11u1

2023-04-01 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sun, 2023-02-12 at 00:06 +0200, Faidon Liambotis wrote: > A no-dsa security vulnerability, CVE-2022-27650: > https://security-tracker.debian.org/tracker/CVE-2022-27650 > > [ Impact ] > Copying from the CVE: > > "A flaw was found in crun where containers were incor

Bug#1031630: bullseye-pu: package containerd/1.4.13~ds1-1~deb11u4

2023-04-01 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sun, 2023-02-19 at 22:56 +0800, Shengjing Zhu wrote: > Backport patches for 2 CVE: > > * CVE-2023-25153: OCI image importer memory exhaustion > * CVE-2023-25173: Supplementary groups are not set up properly > Please go ahead; sorry for the delay. Regards, Adam

Processed: Re: Bug#1031109: bullseye-pu: package crun/0.17+dfsg-1+deb11u1

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + confirmed Bug #1031109 [release.debian.org] bullseye-pu: package crun/0.17+dfsg-1+deb11u1 Added tag(s) confirmed. -- 1031109: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1031109 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems

Processed: Re: Bug#1031926: bullseye-pu: package gtk+3.0/3.24.24-4+deb11u3

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + confirmed Bug #1031926 [release.debian.org] bullseye-pu: package gtk+3.0/3.24.24-4+deb11u3 Added tag(s) confirmed. -- 1031926: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1031926 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems

Bug#1031926: bullseye-pu: package gtk+3.0/3.24.24-4+deb11u3

2023-04-01 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sat, 2023-02-25 at 12:05 +, Simon McVittie wrote: > User request via #1020937: make it possible to run GTK 3 apps in > native > Wayland on some proprietary GLES-only graphics drivers (Raspberry Pi > video core, iMX/Vivante). > Please go ahead, sorry for the de

Bug#1031788: bullseye-pu: package publicsuffix/20230209.2326-0+deb11u1

2023-04-01 Thread Adam D. Barratt
Control: tags -1 + confirmed On Wed, 2023-02-22 at 13:48 -0500, Daniel Kahn Gillmor wrote: > Please consider an update to publicsuffix in debian bullseye. > > This package reflects the state of the network, and keeping it > current > is useful for all the packages that depend on it. > Please go

Processed: Re: Bug#1031788: bullseye-pu: package publicsuffix/20230209.2326-0+deb11u1

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + confirmed Bug #1031788 [release.debian.org] bullseye-pu: package publicsuffix/20230209.2326-0+deb11u1 Added tag(s) confirmed. -- 1031788: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1031788 Debian Bug Tracking System Contact ow...@bugs.debian.org w

Processed: Re: Bug#1031948: bullseye-pu: package libgit2/1.1.0+dfsg.1-4+deb11u1

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + confirmed Bug #1031948 [release.debian.org] bullseye-pu: package libgit2/1.1.0+dfsg.1-4+deb11u1 Added tag(s) confirmed. -- 1031948: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1031948 Debian Bug Tracking System Contact ow...@bugs.debian.org with pr

Bug#1031948: bullseye-pu: package libgit2/1.1.0+dfsg.1-4+deb11u1

2023-04-01 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sat, 2023-02-25 at 21:16 +0100, Tobias Frost wrote: > After fixing CVE-2023-22742 for LTS and ELTS, I'd like to see > this CVE also fixed in stable, for consistency. > > The CVE is an inproper ssh certificate validation vulnerabilty, > which allows man-in-the-middl

Processed: Re: Bug#1032134: bullseye-pu: package node-cookiejar/2.1.2-1+deb11u1

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + confirmed Bug #1032134 [release.debian.org] bullseye-pu: package node-cookiejar/2.1.2-1+deb11u1 Added tag(s) confirmed. -- 1032134: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1032134 Debian Bug Tracking System Contact ow...@bugs.debian.org with pr

Bug#1032134: bullseye-pu: package node-cookiejar/2.1.2-1+deb11u1

2023-04-01 Thread Adam D. Barratt
Control: tags -1 + confirmed On Tue, 2023-02-28 at 18:00 +0400, Yadd wrote: > node-cookiejar is vulnerable to ReDoS (CVE-2022-25901). > Please go ahead. Regards, Adam

Processed: Re: Bug#1032237: bullseye-pu: zfs-linux/2.0.3-9+deb11u1

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + moreinfo Bug #1032237 [release.debian.org] bullseye-pu: package zfs-linux/2.0.3-9+deb11u1 Added tag(s) moreinfo. -- 1032237: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1032237 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems

Bug#1032237: bullseye-pu: zfs-linux/2.0.3-9+deb11u1

2023-04-01 Thread Adam D. Barratt
Control: tags -1 + moreinfo On Thu, 2023-03-02 at 15:33 +0800, Aron Xu wrote: > I would like to apply a few patches to address some stability issues > in the > zfs-linux package in bullseye. All the patches are cherry-picked from > upstream > > 2.0.x and 2.1.x stable branches. > +This change re

Processed: Re: Bug#1032299: bullseye-pu: package node-css-what/4.0.0-3

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + confirmed Bug #1032299 [release.debian.org] bullseye-pu: package node-css-what/4.0.0-3 Added tag(s) confirmed. -- 1032299: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1032299 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems

Bug#1032299: bullseye-pu: package node-css-what/4.0.0-3

2023-04-01 Thread Adam D. Barratt
Control: tags -1 + confirmed On Fri, 2023-03-03 at 08:57 +, Bastien Roucariès wrote: > CVE-2022-21222/CVE-2021-33587 The package css-what before 2.1.3 are > vulnerable > to Regular Expression Denial of Service (ReDoS) due to the usage of > insecure > regular expression in the re_attr variable

Processed: Re: Bug#1033160: bullseye-pu: package flatpak/1.10.8-0+deb11u1

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + confirmed Bug #1033160 [release.debian.org] bullseye-pu: package flatpak/1.10.8-0+deb11u1 Added tag(s) confirmed. -- 1033160: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1033160 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems

Bug#1033160: bullseye-pu: package flatpak/1.10.8-0+deb11u1

2023-04-01 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sat, 2023-03-18 at 16:20 +, Simon McVittie wrote: > CVE-2023-28101: A malicious Flatpak app could prevent the flatpak(1) > CLI > from displaying its permissions as intended, by having crafted > permissions > or other metadata containing terminal escape sequences

Processed: Re: Bug#1032921: bullseye-pu: package node-webpack/4.43.0-6+deb11u1

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + confirmed Bug #1032921 [release.debian.org] bullseye-pu: package node-webpack/4.43.0-6+deb11u1 Added tag(s) confirmed. -- 1032921: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1032921 Debian Bug Tracking System Contact ow...@bugs.debian.org with pro

Bug#1032921: bullseye-pu: package node-webpack/4.43.0-6+deb11u1

2023-04-01 Thread Adam D. Barratt
Control: tags -1 + confirmed On Tue, 2023-03-14 at 08:01 +0400, Yadd wrote: > node-webpack is vulnerable to cross-realm object access > (#1032904, CVE-2023-28154) > Please go ahead. Regards, Adam

Processed: Re: Bug#1033578: bullseye-pu: package joblib/0.17.0-4+deb11u1

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + confirmed Bug #1033578 [release.debian.org] bullseye-pu: package joblib/0.17.0-4+deb11u1 Added tag(s) confirmed. -- 1033578: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1033578 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems

Processed: Re: Bug#1033759: bullseye-pu: duktape/2.5.0-2+deb11u1

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + confirmed Bug #1033759 [release.debian.org] bullseye-pu: duktape/2.5.0-2+deb11u1 Added tag(s) confirmed. -- 1033759: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1033759 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems

Bug#1033759: bullseye-pu: duktape/2.5.0-2+deb11u1

2023-04-01 Thread Adam D. Barratt
Control: tags -1 + confirmed On Fri, 2023-03-31 at 22:28 +, Thorsten Alteholz wrote: > The attached debdiff for duktape fixes CVE-2021-46322 in Bullseye. > Please go ahead. Regards, Adam

Bug#1033578: bullseye-pu: package joblib/0.17.0-4+deb11u1

2023-04-01 Thread Adam D. Barratt
Control: tags -1 + confirmed On Mon, 2023-03-27 at 19:42 +0200, Helmut Grohne wrote: > Fix no-dsa security vulnerability CVE-2022-21797. > > [ Impact ] > > The n_jobs parameter of the parallel_backend, which used to be a > string > containing a Python expression, becomes restricted to fairly bas

Processed: Re: Bug#1033506: bullseye-pu: package libreoffice/1:7.0.4-4+deb11u6

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + confirmed Bug #1033506 [release.debian.org] bullseye-pu: package libreoffice/1:7.0.4-4+deb11u6 Added tag(s) confirmed. -- 1033506: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1033506 Debian Bug Tracking System Contact ow...@bugs.debian.org with pro

Bug#1033506: bullseye-pu: package libreoffice/1:7.0.4-4+deb11u6

2023-04-01 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sun, 2023-03-26 at 14:23 +0200, Rene Engelhard wrote: > This fixes "CVE-2022-38745. Empty entry in Java class path risks > arbitrary code execution" just disclosed by Apache OpenOffice. > Please go ahead. Regards, Adam

Bug#1033770: bullseye-pu: package apache2/2.4.56-1~deb11u2

2023-04-01 Thread Moritz Mühlenhoff
Am Sat, Apr 01, 2023 at 08:32:55AM +0400 schrieb Yadd: > Package: release.debian.org > Severity: normal > Tags: bullseye > User: release.debian@packages.debian.org > Usertags: pu > X-Debbugs-Cc: apac...@packages.debian.org > Control: affects -1 + src:apache2 > > [ Reason ] > apache2 silently r

Processed: Re: Bug#1033770: bullseye-pu: package apache2/2.4.56-1~deb11u2

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + confirmed Bug #1033770 [release.debian.org] bullseye-pu: package apache2/2.4.56-1~deb11u2 Added tag(s) confirmed. -- 1033770: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1033770 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems

Bug#1033770: bullseye-pu: package apache2/2.4.56-1~deb11u2

2023-04-01 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sat, 2023-04-01 at 08:32 +0400, Yadd wrote: > apache2 silently reenable apache2-doc.conf despite having been > disabled > (#1018718) > > [ Impact ] > This behavior overwrites local changes on upgrade, which is a > release-critical bug as it’s a Policy violation >

Processed: Re: Bug#1033766: bullseye-pu: package cyrus-imapd/3.6.1-4

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + moreinfo Bug #1033766 [release.debian.org] bullseye-pu: package cyrus-imapd/3.6.1-4 Added tag(s) moreinfo. -- 1033766: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1033766 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems

Bug#1033766: bullseye-pu: package cyrus-imapd/3.6.1-4

2023-04-01 Thread Adam D. Barratt
Control: tags -1 + moreinfo On Sat, 2023-04-01 at 07:32 +0400, Yadd wrote: > debian/copyright was incomplete > The debdiff and package version both appear to be for unstable, not bullseye. In general, an update purely to licensing information isn't sufficient to justify a rebuild and update for

NEW changes in stable-new

2023-04-01 Thread Debian FTP Masters
Processing changes file: debian-archive-keyring_2021.1.1+deb11u1_source.changes ACCEPT Processing changes file: libdatetime-timezone-perl_2.47-1+2023c_source.changes ACCEPT Processing changes file: xorg-server_1.20.11-1+deb11u6_source.changes ACCEPT Processing changes file: xorg-server_1.20.1

Bug#1033763: marked as done (unblock: fpc/3.2.2+dfsg-20)

2023-04-01 Thread Debian Bug Tracking System
Your message dated Sat, 01 Apr 2023 18:45:27 + with message-id and subject line unblock fpc has caused the Debian Bug report #1033763, regarding unblock: fpc/3.2.2+dfsg-20 to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now y

Bug#1033790: marked as done (unblock: lnav/0.11.1-3)

2023-04-01 Thread Debian Bug Tracking System
Your message dated Sat, 01 Apr 2023 18:43:39 + with message-id and subject line unblock lnav has caused the Debian Bug report #1033790, regarding unblock: lnav/0.11.1-3 to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your

Processed: debian-archive-keyring 2021.1.1+deb11u1 flagged for acceptance

2023-04-01 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > package release.debian.org Limiting to bugs with field 'package' containing at least one of 'release.debian.org' Limit currently set to 'package':'release.debian.org' > tags 1033157 = bullseye pending Bug #1033157 [release.debian.org] bullseye-p

Processed: libdatetime-timezone-perl 2.47-1+2023c flagged for acceptance

2023-04-01 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > package release.debian.org Limiting to bugs with field 'package' containing at least one of 'release.debian.org' Limit currently set to 'package':'release.debian.org' > tags 1033669 = bullseye pending Bug #1033669 [release.debian.org] bullseye-p

Bug#1033669: libdatetime-timezone-perl 2.47-1+2023c flagged for acceptance

2023-04-01 Thread Adam D Barratt
package release.debian.org tags 1033669 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: libdatetime-timezone-perl Ve

Processed: Re: unblock: keyman/16.0.139-4

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > tags -1 moreinfo Bug #1033571 [release.debian.org] unblock: keyman/16.0.139-4 Added tag(s) moreinfo. -- 1033571: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1033571 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems

Bug#1033571: unblock: keyman/16.0.139-4

2023-04-01 Thread Paul Gevers
Control: tags -1 moreinfo On 27-03-2023 18:15, Eberhard Beilharz wrote: While keyman has autopkgtests and so would qualify for automatic migration, the tests are skipped on s390x. Ack. Included are only small changes: one is a small fix in the postinst script, -set -e +# Don't call `set -

Bug#1033157: debian-archive-keyring 2021.1.1+deb11u1 flagged for acceptance

2023-04-01 Thread Adam D Barratt
package release.debian.org tags 1033157 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details == Package: debian-archive-keyring Versi

Bug#1033798: unblock: lazarus/2.2.6+dfsg1-1

2023-04-01 Thread Abou Al Montacir
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package lazarus Lazarus is an IDE and a library for rapid application development using Free Pascal Compiler. [ Reason ] New upstream maintenance release. [ Impact ] Severa

Bug#1033789: marked as done (unblock: verilator/5.006-3)

2023-04-01 Thread Debian Bug Tracking System
Your message dated Sat, 01 Apr 2023 11:10:02 + with message-id and subject line unblock verilator has caused the Debian Bug report #1033789, regarding unblock: verilator/5.006-3 to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is

Bug#1033790: unblock: lnav/0.11.1-3

2023-04-01 Thread Salvatore Bonaccorso
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock X-Debbugs-Cc: l...@packages.debian.org, car...@debian.org Control: affects -1 + src:lnav Hi Release team, Please unblock package lnav [ Reason ] This update hotfixes an issue in the testsu

Processed: unblock: lnav/0.11.1-3

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > affects -1 + src:lnav Bug #1033790 [release.debian.org] unblock: lnav/0.11.1-3 Added indication that 1033790 affects src:lnav -- 1033790: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1033790 Debian Bug Tracking System Contact ow...@bugs.debian.org with problem

Bug#1033789: unblock: verilator/5.006-3

2023-04-01 Thread Carsten Schoenert
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock X-Debbugs-Cc: verila...@packages.debian.org Control: affects -1 + src:verilator Please unblock package verilator [ Reason ] Dimitry Shachnev reported a RC issue (#1033667) against the veril

Processed: unblock: verilator/5.006-3

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > affects -1 + src:verilator Bug #1033789 [release.debian.org] unblock: verilator/5.006-3 Added indication that 1033789 affects src:verilator -- 1033789: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1033789 Debian Bug Tracking System Contact ow...@bugs.debian.or

Bug#1033739: unblock: libmath-bigint-perl/1.999838-1

2023-04-01 Thread Roland Rosenfeld
Since this upload triggers a regression in the testsuite of libmath-bigint-gmp-perl (see #1033784), I just uploaded libmath-bigint-gmp-perl 1.6011-3, which fixes the testsuite. signature.asc Description: PGP signature

Bug#1033787: unblock: python-selenium/4.8.3+dfsg-1

2023-04-01 Thread Carsten Schoenert
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock X-Debbugs-Cc: python-selen...@packages.debian.org Control: affects -1 + src:python-selenium Please unblock package python-selenium [ Reason ] There was another micro update of python-seleni

Processed: unblock: python-selenium/4.8.3+dfsg-1

2023-04-01 Thread Debian Bug Tracking System
Processing control commands: > affects -1 + src:python-selenium Bug #1033787 [release.debian.org] unblock: python-selenium/4.8.3+dfsg-1 Added indication that 1033787 affects src:python-selenium -- 1033787: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1033787 Debian Bug Tracking System Conta