[Edubuntu-bugs] [Bug 2004098] Re: python 3.10 does stricter type checking

2023-01-29 Thread Simon Quigley
Hi Rolf! Thanks for taking the time to submit a patch for this. Usually, if the package is in Debian Testing I like to see uploads there first. That being said, this package is not in Testing and it fixes a bug that crashes Anki otherwise, so I won't hesitate to upload this. Please try to coordin

[Edubuntu-bugs] [Bug 2004098] Re: python 3.10 does stricter type checking

2023-01-30 Thread Simon Quigley
** Also affects: anki (Ubuntu Kinetic) Importance: Undecided Status: New ** Also affects: anki (Ubuntu Jammy) Importance: Undecided Status: New -- You received this bug notification because you are a member of Edubuntu Bugsquad, which is subscribed to anki in Ubuntu. https://

[Edubuntu-bugs] [Bug 2019940] Re: Directly manipulating NetworkManager keyfiles

2023-12-24 Thread Simon Quigley
tance: Undecided => Medium ** Changed in: calamares (Ubuntu) Status: New => Fix Released ** Changed in: calamares (Ubuntu) Milestone: None => ubuntu-23.11 ** Changed in: calamares (Ubuntu) Assignee: (unassigned) => Simon Quigley (tsimonq2) -- You received this bug notific

[Edubuntu-bugs] [Bug 1707057] [NEW] Merge 15.10-1 from Debian Sid

2017-07-27 Thread Simon Quigley
Public bug reported: In Debian Sid, there is a new upstream release and several packaging fixes that we should merge into Ubuntu. ** Affects: gcompris (Ubuntu) Importance: Undecided Assignee: Simon Quigley (tsimonq2) Status: In Progress ** Changed in: gcompris (Ubuntu

[Edubuntu-bugs] [Bug 1707057] Re: Merge 15.10-1 from Debian Sid

2017-07-27 Thread Simon Quigley
Attached is a debdiff for Artful applicable to 15.10-1. ** Patch added: "1-15.10-1ubuntu1.debdiff" https://bugs.launchpad.net/ubuntu/+source/gcompris/+bug/1707057/+attachment/4922622/+files/1-15.10-1ubuntu1.debdiff -- You received this bug notification because you are a member of Edubuntu Bu

[Edubuntu-bugs] [Bug 1739518] Re: calibre crashed with SIGABRT in qt_message_fatal()

2017-12-20 Thread Simon Quigley
*Completely* update your system and try again. We had some issues earlier today with half of the Qt stack migrating, but it should be fine now (I can't reproduce this after updating my system). ** Changed in: calibre (Ubuntu) Status: New => Incomplete -- You received this bug notification

[Edubuntu-bugs] [Bug 1684224] Re: package italc-client 1:2.0.2+dfsg1-4build1 failed to install/upgrade: subprocess installed post-installation script returned error exit status 1

2018-03-01 Thread Simon Quigley
Marking as Invalid because the release is EOL is not correct. Marking as Incomplete. Also, 18.04 is (at the time of writing) still in development, and you should expect some breakage. https://wiki.ubuntu.com/Bugs/Responses#Release_has_reached_End_of_Life_.28EOL.29 Reporter, is this still present

[Edubuntu-bugs] [Bug 1681437] Re: package edubuntu-artwork 15.12.1 [modified: usr/share/icons/GartoonRedux/16x16/places/distributor-logo.png usr/share/icons/GartoonRedux/22x22/places/distributor-logo.

2018-03-01 Thread Simon Quigley
Marking as Invalid because the release is EOL is not correct. Marking as Incomplete. Also, 18.04 is (at the time of writing) still in development, and you should expect some breakage. https://wiki.ubuntu.com/Bugs/Responses#Release_has_reached_End_of_Life_.28EOL.29 Reporter, is this still present

[Edubuntu-bugs] [Bug 1757320] [NEW] Remove Qt 4 from the archive

2018-03-20 Thread Simon Quigley
Public bug reported: Currently Qt 4 has been dead upstream and we are starting to have problems maintaining it, like for example in the OpenSSL 1.1 support case. Following in the footsteps of Debian[1], all packages directly or indirectly depending on qt4-x11 must either get ported to Qt 5 and up

[Edubuntu-bugs] [Bug 1757320] Re: Remove Qt 4 from the archive

2018-03-20 Thread Simon Quigley
** Description changed: Currently Qt 4 has been dead upstream and we are starting to have problems maintaining it, like for example in the OpenSSL 1.1 support case. Following in the footsteps of Debian[1], all packages directly or indirectly depending on qt4-x11 must either get ported t

[Edubuntu-bugs] [Bug 1757320] Re: Remove Qt 4 from the archive

2018-03-20 Thread Simon Quigley
** Description changed: Currently Qt 4 has been dead upstream and we are starting to have problems maintaining it, like for example in the OpenSSL 1.1 support case. Following in the footsteps of Debian[1], all packages directly or indirectly depending on qt4-x11 must either get ported t

[Edubuntu-bugs] [Bug 1757320] Re: Remove Qt 4 from the archive

2018-03-20 Thread Simon Quigley
** Changed in: kdesudo (Ubuntu) Status: New => Confirmed -- You received this bug notification because you are a member of Edubuntu Bugsquad, which is subscribed to scribus in Ubuntu. https://bugs.launchpad.net/bugs/1757320 Title: Remove Qt 4 from the archive To manage notifications ab

[Edubuntu-bugs] [Bug 1757320] kdesudo can go soon

2018-03-20 Thread Simon Quigley
kdesudo can be removed from the archive as soon as my merged ubuntu-release-upgrader change has been uploaded and has migrated. $ reverse-depends src:kdesudo Reverse-Depends === * ubuntu-release-upgrader-qt(for kdesudo) $ reverse-depends -b src:kdesudo No reverse dependencies foun

[Edubuntu-bugs] [Bug 1757865] [NEW] Please port your package away from Qt 4

2018-03-21 Thread Simon Quigley
Public bug reported: Currently Qt 4 has been dead upstream and we are starting to have problems maintaining it, like for example in the OpenSSL 1.1 support case. Following in the footsteps of Debian[1], all packages directly or indirectly depending on qt4-x11 (like this one) must either get porte

[Edubuntu-bugs] [Bug 1758703] [NEW] [CVE] Use JSON to prevent malicious bookmark files from causing code execution

2018-03-25 Thread Simon Quigley
) Importance: High Status: Fix Released ** Affects: calibre (Ubuntu Artful) Importance: High Assignee: Simon Quigley (tsimonq2) Status: New ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-7889 ** Also affects: calibre (Ubuntu Artful) Importance

[Edubuntu-bugs] [Bug 1758699] [NEW] [CVE] JavaScript in a book can access local files using XMLHttpRequest

2018-03-25 Thread Simon Quigley
Assignee: Simon Quigley (tsimonq2) Status: New ** Affects: calibre (Ubuntu Xenial) Importance: Medium Assignee: Simon Quigley (tsimonq2) Status: New ** Also affects: calibre (Ubuntu Xenial) Importance: Undecided Status: New ** Also affects: calibre

[Edubuntu-bugs] [Bug 1758699] Re: [CVE] JavaScript in a book can access local files using XMLHttpRequest

2018-03-25 Thread Simon Quigley
I have uploaded these fixes (for Xenial and Trusty) to a fresh test PPA of mine with all architectures switched on and only the security repo enabled. I then tested both in VMs of each release, and they work as intended. It also fixes the security issue. Security Team, feel free to copy my package

[Edubuntu-bugs] [Bug 1758703] Re: [CVE] Use JSON to prevent malicious bookmark files from causing code execution

2018-03-26 Thread Simon Quigley
*** This bug is a duplicate of bug 1758699 *** https://bugs.launchpad.net/bugs/1758699 ** CVE removed: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-7889 ** This bug has been marked a duplicate of bug 1758699 [CVE] JavaScript in a book can access local files using XMLHttpRequest --

[Edubuntu-bugs] [Bug 1758699] Re: [CVE] JavaScript in a book can access local files using XMLHttpRequest

2018-03-26 Thread Simon Quigley
Marc Deslauriers pointed out to me over IRC that Trusty and Xenial are also vulnerable to CVE-2018-7889. So Trusty and Xenial need to receive patches for CVE-2016-10187 and CVE-2018-7889 while Artful just needs the patch for CVE-2018-7889. I think it makes sense to mark the separate bug I filed f

[Edubuntu-bugs] [Bug 1758699] Re: [CVE] JavaScript in a book can access local files using XMLHttpRequest

2018-03-27 Thread Simon Quigley
** Changed in: calibre (Ubuntu Artful) Status: New => Confirmed ** Changed in: calibre (Ubuntu Artful) Importance: Undecided => Medium ** Changed in: calibre (Ubuntu Artful) Assignee: (unassigned) => Simon Quigley (tsimonq2) -- You received this bug notification becaus

[Edubuntu-bugs] [Bug 1758699] Re: [CVE] JavaScript in a book can access local files using XMLHttpRequest

2018-03-28 Thread Simon Quigley
No candidate patches, yet. ** Changed in: calibre (Ubuntu Trusty) Status: In Progress => Confirmed ** Changed in: calibre (Ubuntu Xenial) Status: In Progress => Confirmed -- You received this bug notification because you are a member of Edubuntu Bugsquad, which is subscribed to ca

[Edubuntu-bugs] [Bug 1758699] Re: [CVE] JavaScript in a book can access local files using XMLHttpRequest

2018-03-30 Thread Simon Quigley
I have reached a point where I would like some guidance as to the contents of the patch for the CVE-2018-7889 Trusty backport. So, this is the line in src/calibre/gui2/viewer/bookmarkmanager.py that has been patched upstream for this: def item_to_bm(self, item): -return cPickle.loads

[Edubuntu-bugs] [Bug 1758699] Re: [CVE] JavaScript in a book can access local files using XMLHttpRequest

2018-04-11 Thread Simon Quigley
In the meantime, I have updated my PPA with working fixes (I tested each in a fresh VM; they work as intended and fix the security issue) for Xenial and Artful. Security Team, feel free to copy my packages to your PPA: https://launchpad.net/~tsimonq2/+archive/ubuntu/security-test-builds/+sourcepub

[Edubuntu-bugs] [Bug 1758699] Re: [CVE] JavaScript in a book can access local files using XMLHttpRequest

2018-04-12 Thread Simon Quigley
Here is the last patch for Trusty: https://launchpad.net/~tsimonq2/+archive/ubuntu/security-test- builds/+sourcepub/8982687/+listing-archive-extra -- You received this bug notification because you are a member of Edubuntu Bugsquad, which is subscribed to calibre in Ubuntu. https://bugs.launchpad

[Edubuntu-bugs] [Bug 1758548] Re: Changing title or author to uppercase/lowercase causes book to disappear (French Language)

2018-09-03 Thread Simon Quigley
** Changed in: calibre (Ubuntu) Importance: Undecided => Low ** Changed in: calibre (Ubuntu) Status: New => Triaged -- You received this bug notification because you are a member of Edubuntu Bugsquad, which is subscribed to calibre in Ubuntu. https://bugs.launchpad.net/bugs/1758548 Ti

[Edubuntu-bugs] [Bug 2103945] Re: Qt 6.8.3 in Ubuntu 25.04

2025-03-23 Thread Simon Quigley
** Description changed: Shipping a stable and reliable Qt 6 stack is critical for the success of Lubuntu, Kubuntu, and Ubuntu Studio. We would like to ship Qt 6.8.3 in Ubuntu 25.04, which will provide an extra level of polish for our users. Qt's release schedules surprisingly align with

[Edubuntu-bugs] [Bug 2103945] Re: Qt 6.8.3 in Ubuntu 25.04

2025-03-23 Thread Simon Quigley
** Description changed: Shipping a stable and reliable Qt 6 stack is critical for the success of Lubuntu, Kubuntu, and Ubuntu Studio. We would like to ship Qt 6.8.3 in Ubuntu 25.04, which will provide an extra level of polish for our users. Qt's release schedules surprisingly align with

[Edubuntu-bugs] [Bug 2103945] Re: Qt 6.8.3 in Ubuntu 25.04

2025-03-23 Thread Simon Quigley
nassigned) => Simon Quigley (tsimonq2) ** Changed in: qt6-languageserver (Ubuntu) Importance: Undecided => High ** Changed in: qt6-languageserver (Ubuntu) Status: New => Triaged ** Changed in: qt6-languageserver (Ubuntu) Milestone: None => ubuntu-25.04 ** Changed in: qt6-l

[Edubuntu-bugs] [Bug 2103945] Re: Qt 6.8.3 in Ubuntu 25.04

2025-03-24 Thread Simon Quigley
Ubuntu) Milestone: None => ubuntu-25.04 ** Changed in: qt6-quickeffectmaker (Ubuntu) Assignee: (unassigned) => Simon Quigley (tsimonq2) -- You received this bug notification because you are a member of Edubuntu Bugsquad, which is subscribed to calibre in Ubuntu. https://bugs.launchpad.net/

[Edubuntu-bugs] [Bug 2103945] Re: Qt 6.8.3 in Ubuntu 25.04

2025-03-26 Thread Simon Quigley
** Changed in: calibre (Ubuntu) Status: Triaged => In Progress ** Changed in: copyq (Ubuntu) Status: Triaged => In Progress ** Changed in: digikam (Ubuntu) Status: Triaged => In Progress ** Changed in: dolphin (Ubuntu) Status: Triaged => In Progress ** Changed in: dt