[Bug 2077565] Re: Suspend (Menu "System -> Shutdown -> Suspend") does not work: no come back.

2025-01-06 Thread Alex Murray
I can't see any solid evidence here that the intel-microcode update was responsible for this. ** Changed in: intel-microcode (Ubuntu) Status: Confirmed => Incomplete -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.

[Bug 2090887] Re: apport hookutils.py only captures first word per line for KernLog

2024-12-09 Thread Alex Murray
Oooh nice use of non-capturing group - LGTM! -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2090887 Title: apport hookutils.py only captures first word per line for KernLog To manage notifications a

[Bug 2090887] Re: apport hookutils.py only captures first word per line for KernLog

2024-12-08 Thread Alex Murray
Thanks Bryce - no worries - but just wondering if you tested the patch? Since when I was investigating this I noticed the following in the API documentation for re.findall(): The result depends on the number of capturing groups in the pattern. If there are no groups, return a list of strings match

[Bug 2090887] Re: apport hook source_apparmor.py shows only one word per line

2024-12-04 Thread Alex Murray
And if we add the same snippet to source_apparmor.py so we can run it directly then we also don't reproduce this: root@sec-noble-amd64:/usr/share/apport/package-hooks# tail source_apparmor.py -n6 if __name__ == '__main__': report = {} add_info(report, None) for key in report:

[Bug 2090887] Re: apport hook source_apparmor.py shows only one word per line

2024-12-04 Thread Alex Murray
However if I just run the code from the apparmor apport hook on that system then it doesn't reproduce: root@sec-noble-amd64:/usr/share/apport/package-hooks# python3 Python 3.12.3 (main, Sep 11 2024, 14:17:37) [GCC 13.2.0] on linux Type "help", "copyright", "credits" or "license" for more informati

[Bug 2090887] Re: apport hook source_apparmor.py shows only one word per line

2024-12-04 Thread Alex Murray
In a fresh noble LXD VM I can reproduce this: apt install mysql-server apparmor ubuntu-bug mysql-server Then View the report and it has: == KernLog = apparmor AppArmor AppArmor audit( AppArmor AppArmor AppArmor AppArmor security selinux security security security

[Bug 2059852] Re: Invalid free called during libfreetype FT_Done_Glyph

2024-12-03 Thread Alex Murray
I think perhaps the best way forward here would be for Canonical to assign a CVE for this issue if it looks like a real vulnerability and then we can proceed with a fix. I will enquire internally. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed t

[Bug 1972043] Re: Please add -ftrivial-auto-var-init=zero to default build flags

2024-12-03 Thread Alex Murray
@eslerm - can you advise how best to proceed with this bug given the current discussions around toolchain hardening etc in the 25.04 cycle? ** Changed in: gcc-14 (Ubuntu) Status: New => Incomplete -- You received this bug notification because you are a member of Ubuntu Bugs, which is subs

[Bug 2087777] Re: heap buffer overflow in midicsv.c:159

2024-12-03 Thread Alex Murray
** Changed in: midicsv (Ubuntu) Status: New => Incomplete -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/208 Title: heap buffer overflow in midicsv.c:159 To manage notifications about thi

[Bug 2003835] Re: pymysql.err.OperationalError: caching sha2: Unknown packet for public key: b'-'

2024-12-03 Thread Alex Murray
I notice this bug is tagged against the openstack package but that only existed in Ubuntu 16.04 LTS, so as far as I can tell there is no action to take for it in focal/jammy where it is targeted against. Is this correct or should the bug be marked against some other package in these releases? ** C

[Bug 2087775] Re: heap-buffer overflow in midicsv.c:123

2024-12-03 Thread Alex Murray
To patch CVEs in Ubuntu we generally require them to first be fixed by the upstream project and then we can integrate the patch in our releases. In this case since the upstream seems to no longer exist, I am not sure there is a clear way forward at this time. If a patch is developed then we can loo

[Bug 1727202] Re: [17.10 regression] AppArmor ntp denial: Failed name lookup - disconnected path

2024-12-03 Thread Alex Murray
** Changed in: openntpd (Ubuntu) Status: Incomplete => Won't Fix -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1727202 Title: [17.10 regression] AppArmor ntp denial: Failed name lookup - di

[Bug 1954877] Re: Permission Denied for every share after upgrade to 2:4.7.6+dfsg~ubuntu-0ubuntu2.26

2024-12-03 Thread Alex Murray
Richard and David - apologies for the lack of follow-up on this bug report. Can you confirm if it is still an issue? Thanks. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1954877 Title: Permission D

[Bug 1949565] Re: Cannot connect anymore to Azure Database for MySQL with 8.0.27-0ubuntu0.20.04

2024-12-03 Thread Alex Murray
The mysql-8.0 package in focal is now at 8.0.40-0ubuntu0.20.04.1 - @emgag can you confirm if you still see this issue with that version? -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1949565 Title:

[Bug 2085663] Re: fail2ban postfix filters do not work in 24.04.1 LTS

2024-12-03 Thread Alex Murray
Whilst fail2ban is security related, this feels more like a regular bug than a security vulnerability. As such the process in https://wiki.ubuntu.com/StableReleaseUpdates should be followed so an appropriate fix can be delivered for Ubuntu users. ** Information type changed from Private Security t

[Bug 2087782] Re: heap-buffer overflow in midicsv.c:78

2024-12-03 Thread Alex Murray
** Changed in: midicsv (Ubuntu) Status: New => Incomplete -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2087782 Title: heap-buffer overflow in midicsv.c:78 To manage notifications about this

[Bug 2086698] Re: buffer overflow in pitchof_b()

2024-12-03 Thread Alex Murray
@leehahoon please let us know if you get a response from upstream, in the meantime I am marking this bug as incomplete since we require a patch from upstream before we can proceed. ** Changed in: abcmidi (Ubuntu) Status: New => Incomplete -- You received this bug notification because you

[Bug 2087780] Re: heap-buffer overflow in midicsv.c:352

2024-12-03 Thread Alex Murray
** Changed in: midicsv (Ubuntu) Status: New => Incomplete -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2087780 Title: heap-buffer overflow in midicsv.c:352 To manage notifications about thi

[Bug 2087779] Re: heap-buffer overflow in midicsv.c:44

2024-12-03 Thread Alex Murray
** Changed in: midicsv (Ubuntu) Status: New => Incomplete -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2087779 Title: heap-buffer overflow in midicsv.c:44 To manage notifications about this

[Bug 2087783] Re: heap-buffer overflow in midicsv.c:47

2024-12-03 Thread Alex Murray
** Changed in: midicsv (Ubuntu) Status: New => Incomplete -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2087783 Title: heap-buffer overflow in midicsv.c:47 To manage notifications about this

[Bug 2087781] Re: heap-buffer overflow in midicsv.c:368

2024-12-03 Thread Alex Murray
** Changed in: midicsv (Ubuntu) Status: New => Incomplete -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2087781 Title: heap-buffer overflow in midicsv.c:368 To manage notifications about thi

[Bug 2087784] Re: heap-buffer overflow in midicsv.c:221

2024-12-03 Thread Alex Murray
** Changed in: midicsv (Ubuntu) Status: New => Incomplete -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2087784 Title: heap-buffer overflow in midicsv.c:221 To manage notifications about thi

[Bug 2087912] Re: Security Vulnerability in Emacs LaTeX Preview for E-mail Attachments (CVE-2024-30204)

2024-12-03 Thread Alex Murray
Thanks for the aforementioned patch - this CVE is already patched via Ubuntu Pro in https://usn.ubuntu.com/USN-7027-1. If however you would like it to be patched in the Ubuntu archive, you could prepare an update as per https://wiki.ubuntu.com/SecurityTeam/UpdateProcedures and attach it here as a d

[Bug 2087785] Re: heap-buffer overflow in midicsv.c:193

2024-12-03 Thread Alex Murray
** Changed in: midicsv (Ubuntu) Status: New => Incomplete -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2087785 Title: heap-buffer overflow in midicsv.c:193 To manage notifications about thi

[Bug 2087908] Re: Fix command injection vulnerability

2024-12-03 Thread Alex Murray
Thanks for the aforementioned patch - this CVE is already patched via Ubuntu Pro in https://usn.ubuntu.com/USN-7027-1. If however you would like it to be patched in the Ubuntu archive, you could prepare an update as per https://wiki.ubuntu.com/SecurityTeam/UpdateProcedures and attach it here as a d

[Bug 2087910] Re: Security Vulnerability in Emacs Gnus Inline MIME Handling (CVE-2024-30203)

2024-12-03 Thread Alex Murray
Thanks for the aforementioned patch - this CVE is already patched via Ubuntu Pro in https://usn.ubuntu.com/USN-7027-1. If however you would like it to be patched in the Ubuntu archive, you could prepare an update as per https://wiki.ubuntu.com/SecurityTeam/UpdateProcedures and attach it here as a d

[Bug 2087914] Re: Security Vulnerability in Emacs Org Mode's Handling of Remote Files (CVE-2024-30205)

2024-12-03 Thread Alex Murray
Thanks for the aforementioned patch - as Eduardo pointed out this CVE is already patched via Ubuntu Pro. If however you would like it to be patched in the Ubuntu archive, you could prepare an update as per https://wiki.ubuntu.com/SecurityTeam/UpdateProcedures and attach it here as a debdiff. Then s

[Bug 2090897] Re: package openafs-modules-dkms 1.8.10-2ubuntu1~22.04.1 failed to install/upgrade: »installiertes post-installation-Skript des Paketes openafs-modules-dkms«-Unterprozess gab den Fehlerw

2024-12-03 Thread Alex Murray
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 2088263] Re: Docker service crashes on invalid Dockerfile

2024-12-03 Thread Alex Murray
** Changed in: docker.io (Ubuntu) Status: New => Incomplete -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to the bug report. https://bugs.launchpad.net/bugs/2088263 Title: Docker service crashes on invalid Dockerfile To manage notifi

[Bug 2089937] Re: Wi-Fi intermittently disconnects

2024-12-03 Thread Alex Murray
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 2090843] Re: gnupg2 broken in plucky-proposed

2024-12-03 Thread Alex Murray
Fixed in https://launchpad.net/ubuntu/+source/gnupg2/2.4.4-2ubuntu20 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2090843 Title: gnupg2 broken in plucky-proposed To manage notifications about this

[Bug 2090843] Re: gnupg2 broken in plucky-proposed

2024-12-02 Thread Alex Murray
FWIW I just uploaded a 'new' gnupg2 2.4.4-2ubuntu19 which should fix this FTBFS (since we will face it the next time someone has to rebuild it). -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2090843 T

[Bug 2090863] Re: In the Terminal, type '(' and press Enter key; opens a different mode(environment).

2024-12-02 Thread Alex Murray
This is not a bug - it is the shell expecting more input from you since it expects ( to have a matching ) and so is essentially prompting for more input. ** Changed in: ubuntu-release-upgrader (Ubuntu) Status: New => Invalid ** Information type changed from Private Security to Public --

[Bug 2084780] Re: r8152 ethernet (Lenovo Docking station) suddenly disconnect

2024-11-19 Thread Alex Murray
FWIW I've been seeing similar issues with my Lenovo TB3 docking station and the 6.11.0-9-generic kernel in Ubuntu 24.10 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2084780 Title: r8152 ethernet (L

[Bug 1957024] Re: pam-mkhomedir does not honor private home directories

2024-11-19 Thread Alex Murray
Thanks for the detailed analysis @pponnuvel - I have reverted this now for pam in plucky in 1.5.3-7ubuntu4 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1957024 Title: pam-mkhomedir does not honor p

[Bug 2077979] Re: [SRU] Audacity 3.6.1: Waveform screen goes blank when zooming

2024-11-17 Thread Alex Murray
Thanks for doing the upload on this @eeickmeyer. I can confirm that installing the newly built audacity from oracular- proposed does fix this issue: $ sudo apt install audacity/oracular-proposed Selected version '3.6.1+dfsg-1ubuntu0.1' (Ubuntu:24.10/oracular-proposed [amd64]) for 'audacity' Sele

[Bug 2077979] Re: Audacity 3.6.0/3.6.1: Waveform screen goes blank when zooming

2024-11-14 Thread Alex Murray
Proposed debdiff including the aforementioned patch. ** Patch added: "audacity_3.6.1+dfsg-1ubuntu0.1.debdiff" https://bugs.launchpad.net/ubuntu/+source/audacity/+bug/2077979/+attachment/5837186/+files/audacity_3.6.1+dfsg-1ubuntu0.1.debdiff -- You received this bug notification because you ar

[Bug 1957024] Re: pam-mkhomedir does not honor private home directories

2024-11-10 Thread Alex Murray
The risk of immediate regression is low since this is only used for new user accounts - but since the change is to a conffile there is always a bit more risk due to interactions with dpkg etc. But that would be a discussion to have with the SRU team. -- You received this bug notification because

[Bug 1957024] Re: pam-mkhomedir does not honor private home directories

2024-11-06 Thread Alex Murray
@pponnuvel - I am in the middle of uploading this for plucky :) -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1957024 Title: pam-mkhomedir does not honor private home directories To manage notifica

[Bug 2086210] Re: Backport some AppArmor complain-mode profile bugfixes from Oracular to Noble

2024-10-31 Thread Alex Murray
** Also affects: linux (Ubuntu Noble) Importance: Undecided Status: New -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2086210 Title: Backport some AppArmor complain-mode profile bugfixes f

[Bug 2075246] Re: Apparmor is preventing konsole from running many commands

2024-10-20 Thread Alex Murray
This is not an issue in apparmor itself, so I am closing this bug as invalid since it is an issue in the konsole snap in the snap store. ** Changed in: apparmor (Ubuntu) Status: New => Invalid -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscrib

[Bug 2075246] Re: Apparmor is preventing konsole from running many commands

2024-10-20 Thread Alex Murray
It looks like you are using the snap version of konsole - which seems to have strict confinement in place so its not surprising you are seeing such issues. I see there is a version with classic confinement in the candidate channel - can you please try the following and see if it fixes the issue:

[Bug 2083435] Re: AppArmor 4.1.0-beta1 contains an ABI break for aa_log_record

2024-10-02 Thread Alex Murray
I typod the magic LP bug reference in the changelog but this was upload to oracular earlier and just moved into -proposed: apparmor (4.1.0~beta1-0ubuntu3) oracular; urgency=medium * Add patch from upstream to fix unintentional ABI break (LP :#2083435) - d/p/u/fix-abi-break-record-for-aa-log-r

[Bug 2071717] Re: [MIR] linuxptp

2024-09-30 Thread Alex Murray
I reviewed linuxptp 4.2-1ubuntu1 as checked into oracular. This shouldn't be considered a full audit but rather a quick gauge of maintainability. linuxptp is an implementation of the Precision Time Protocol as per IEEE 1588. It uses hardware and software timestamping of ethernet frames or UDP fra

[Bug 2077080] Re: upstream release 20240813 was updated without version bump

2024-08-15 Thread Alex Murray
Fixed by syncing the update from debian/unstable - thanks Henrique! One thing I noticed though was that you dropped the changes from 3.20240531.1+nmu1 in your upload to Debian - was this intentional? ** Changed in: intel-microcode (Ubuntu) Status: In Progress => Fix Released -- You receiv

[Bug 2077080] Re: upstream release 20240813 was updated without version bump

2024-08-15 Thread Alex Murray
Yeah I saw this late yesterday - will push an update for oracular to include this additional MCU. ** Changed in: intel-microcode (Ubuntu) Status: New => In Progress ** Changed in: intel-microcode (Ubuntu) Assignee: (unassigned) => Alex Murray (alexmurray) -- You received th

[Bug 2056555] Re: Allow bitbake to create user namespace

2024-08-14 Thread Alex Murray
FWIW I don't think this proposed profile should be shipped upstream or in Ubuntu for bitbake - it allows any file anywhere on the filesystem under a path bitbake/bin/bitbake to use unprivileged user namespaces - ie. if I was a malware author I would have my malware create a second stage malware fil

[Bug 2075580] Re: AppArmor parser error for /var/lib/snapd/apparmor/profiles/snap-confine.snapd.21465 in /var/lib/snapd/apparmor/snap-confine.internal/cap-bpf at line 2

2024-08-12 Thread Alex Murray
Thanks Liam - unfortunately that didn't collect as much useful information as I was hoping. I suspect that what is happening here is a race condition between snapd and snapd.apparmor - could you also please run the snap-debug-info.sh script? This will likely produce a lot of output so it would be

[Bug 2063079] Re: samba smbd.service is missing ExecStartPre for update-apparmor-samba-profile

2024-08-07 Thread Alex Murray
Andreas, I see the task against Noble for this bug is still assigned to you - are you planning to work on this as an SRU or can I take it? -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2063079 Title:

[Bug 2056696] Re: All Snaps are denied the ability to use DBus for notifications and apptray indicators in KDE-based flavors

2024-08-07 Thread Alex Murray
** Changed in: snapd Status: In Progress => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2056696 Title: All Snaps are denied the ability to use DBus for notifications and appt

[Bug 2075580] Re: AppArmor parser error for /var/lib/snapd/apparmor/profiles/snap-confine.snapd.21465 in /var/lib/snapd/apparmor/snap-confine.internal/cap-bpf at line 2

2024-08-04 Thread Alex Murray
Thanks for reporting this issue - can you please run 'apport-collect 2075580' from a terminal which should capture a bunch of details necessary to help identify what is happening here? -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. ht

[Bug 2064672] Re: [SRU] - fixes for apparmor on noble

2024-07-18 Thread Alex Murray
To clarify on the statement from @georgiag above - "some applications are still not going to work properly" means that some applications *which currently do not work on Ubuntu 24.04 with the current version of apparmor in the archive (4.0.1really4.0.0-beta3-0ubuntu0.1)* are still not going to work

[Bug 2070418] Re: Security vulnerability, arbitrary shell commands can run when turning on org-mode

2024-06-25 Thread Alex Murray
** Information type changed from Private Security to Public Security -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2070418 Title: Security vulnerability, arbitrary shell commands can run when turnin

[Bug 2070168] Re: Quickcash lone app frod, blackmail, and forced for lone amount paid

2024-06-24 Thread Alex Murray
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2070168 Title: Quickcash lone app frod, blackmail, and forced for lone amount paid To manag

[Bug 2070167] Re: Quickcash lone app frod

2024-06-24 Thread Alex Murray
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2070167 Title: Quickcash lone app frod To manage notifications about this bug go to: https:

[Bug 2064363] Re: thunderbird snap on live systems "already running" but not responsive

2024-06-05 Thread Alex Murray
Assuming your username on the system is lubuntu, then the /media/lubuntu/ path should be exposed via the removable-media interface of snapd - and the thunderbird snap does list this interface - but it is just not auto-connected. So it may just work if you then run: sudo snap connect thunderbird:re

[Bug 2065724] Re: After upgrade to Kubuntu 24.04 the Chromium browser freezes when typing to address box

2024-06-05 Thread Alex Murray
From what I can see this should already be covered by https://github.com/snapcore/snapd/pull/13737 - and this was included in snapd 2.63 - @vbspam can you please post the output of snap version -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to

[Bug 2067900] Re: apparmor unconfined profile blocks pivot_root

2024-06-03 Thread Alex Murray
** Also affects: apparmor (Ubuntu) Importance: Undecided Status: New -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2067900 Title: apparmor unconfined profile blocks pivot_root To manage n

[Bug 2067564] Re: Syslog is flooded with messages when watching videos on Youtube

2024-06-03 Thread Alex Murray
I have just reported this upstream https://bugzilla.mozilla.org/show_bug.cgi?id=1900516 ** Bug watch added: Mozilla Bugzilla #1900516 https://bugzilla.mozilla.org/show_bug.cgi?id=1900516 ** Also affects: firefox (Ubuntu) Importance: Undecided Status: New -- You received this bug no

[Bug 2067564] Re: Syslog is flooded with messages when watching videos on Youtube

2024-06-03 Thread Alex Murray
As such, I think this should be reported to mozilla via https://support.mozilla.org/kb/file-bug-report-or-feature-request- mozilla -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2067564 Title: Syslog

[Bug 2067564] Re: Syslog is flooded with messages when watching videos on Youtube

2024-06-03 Thread Alex Murray
Hmm I am not sure this is a bug in snapd - snapd will provide such access if a snap plugs the login-session-observe interface - and so I think instead the firefox snap should be updated to include this plug and a request made to auto-connect it via the snapcraft forum. -- You received this bug no

[Bug 2064672] Re: [SRU] - fixes for apparmor on noble

2024-05-29 Thread Alex Murray
I have just uploaded apparmor 4.0.1-0ubuntu0.24.04.1 from georgiag's PPA to noble - it is sitting in the unapproved queue. ** Changed in: apparmor (Ubuntu) Status: Confirmed => In Progress -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed t

[Bug 2067250] Re: /usr/bin/w -s segfaults

2024-05-27 Thread Alex Murray
I think a follow-up commit might also be needed https://gitlab.com/procps- ng/procps/-/commit/b113806ccfa706e73bc2e0005eb7606d08c03850 since the code to print the results from sd_get_sessions() still has the wrong test of `if (sessions >= 0)` - this instead should be `if (sessions > 0)` which is co

[Bug 2067002] [NEW] font chooser shows wrong font even after selecting one

2024-05-23 Thread Alex Murray
Public bug reported: The font chooser in gnome-tweaks always seems to forget the chosen font - both when run for the first time on a fresh install AND after choosing a particular font - see the attached video which shows this in more detail. ProblemType: Bug DistroRelease: Ubuntu 24.04 Package: g

[Bug 2059818] Re: Regression: Jammy to Noble, set_label no longer functions

2024-05-15 Thread Alex Murray
I installed the 58-1 version of gnome-shell-extension-appindicator from noble-proposed and rebooted and can confirm that I now see the label on an appindicator (indicator-sensors in this case) as expected. ** Tags removed: verification-needed verification-needed-noble ** Tags added: verification-d

[Bug 2064685] Re: write says write: effective gid does not match group of /dev/pts/5

2024-05-02 Thread Alex Murray
For context, this change was introduced in https://ubuntu.com/security/notices/USN-6719-2 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2064685 Title: write says write: effective gid does not match

[Bug 2063271] Re: Illegal opcode in libssl

2024-04-23 Thread Alex Murray
Thanks for reporting this issue - but it is strange since this update has been published since 2024-02-27 and this is the first such report of any issues. Also given this update has been available for nearly 2 months it is surprising you are seeing errors from it so much later - I wonder if instea

[Bug 2063079] Re: samba smbd.service is missing ExecStartPre for update-apparmor-samba-profile

2024-04-22 Thread Alex Murray
There should not be much risk of regression - this feature was only supported on samba in mantic, not jammy etc so not many users will upgrade from mantic to noble - and the current behaviour where this is broken in noble is the same behaviour as we have in jammy etc. And then even for users upgrad

[Bug 2063079] Re: samba smbd.service is missing ExecStartPre for update-apparmor-samba-profile

2024-04-22 Thread Alex Murray
Forwarded to debian in https://bugs.debian.org/cgi- bin/bugreport.cgi?bug=1069661 ** Bug watch added: Debian Bug tracker #1069661 https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1069661 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubu

[Bug 2063079] Re: samba smbd.service is missing ExecStartPre for update-apparmor-samba-profile

2024-04-22 Thread Alex Murray
** Patch added: "samba_4.19.5+dfsg-4ubuntu9.1.debdiff" https://bugs.launchpad.net/ubuntu/+source/samba/+bug/2063079/+attachment/5769340/+files/samba_4.19.5+dfsg-4ubuntu9.1.debdiff -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. htt

[Bug 2063079] [NEW] samba smbd.service is missing ExecStartPre for update-apparmor-samba-profile

2024-04-21 Thread Alex Murray
Public bug reported: In mantic, the smbd.service unit file contained the line: ExecStartPre=/usr/share/samba/update-apparmor-samba-profile As such, the associated AppArmor profile for smbd etc would be automatically updated to include permissions for the various shares etc on the local files sys

[Bug 2061155]

2024-04-19 Thread Alex Murray
Thanks for taking the time to report this bug and helping to make Ubuntu better. Since the package referred to in this bug is in universe or multiverse, it is community maintained. If you are able, I suggest coordinating with upstream and posting a debdiff for this issue. When a debdiff is availabl

[Bug 2061208] Re: package nvidia-dkms-535-server 535.161.08-0ubuntu2.22.04.1 failed to install/upgrade: installed nvidia-dkms-535-server package post-installation script subprocess returned error exit

2024-04-19 Thread Alex Murray
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 2061191]

2024-04-19 Thread Alex Murray
Thanks for taking the time to report this bug and helping to make Ubuntu better. Since the package referred to in this bug is in universe or multiverse, it is community maintained. If you are able, I suggest coordinating with upstream and posting a debdiff for this issue. When a debdiff is availabl

[Bug 2061305] Re: Can't update to Ubuntu 22.04.4 LTS (Jammy Jellyfish)

2024-04-19 Thread Alex Murray
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 2061856]

2024-04-19 Thread Alex Murray
Thanks for taking the time to report this bug and helping to make Ubuntu better. Your bug report is more likely to get attention if it is made in English, since this is the language understood by the majority of Ubuntu developers. Additionally, please only mark a bug as "security" if it shows evid

[Bug 2061856] Re: gnome terminal

2024-04-19 Thread Alex Murray
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 2061894] Re: package linux-image-6.8.0-22-generic 6.8.0-22.22 failed to install/upgrade: run-parts: /etc/kernel/postinst.d/dkms exited with return code 11

2024-04-19 Thread Alex Murray
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 2062011] Re: Please update libjxl to newest version in 24.04 to address security vulnerabilities

2024-04-19 Thread Alex Murray
Thanks for taking the time to report this bug and helping to make Ubuntu better. Since the package referred to in this bug is in universe or multiverse, it is community maintained. If you are able, I suggest coordinating with upstream and posting a debdiff for this issue. When a debdiff is availabl

[Bug 2062440] Re: A few days ago I realized that the time was four hours behind despite it being automatic with the correct time zone.

2024-04-19 Thread Alex Murray
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privile

[Bug 2060035] Re: [MIR] msgraph

2024-04-15 Thread Alex Murray
I reviewed msgraph 0.2.1-0ubuntu3 as checked into noble. This shouldn't be considered a full audit but rather a quick gauge of maintainability. msgraph is a library written in C using the glib, libgoa, and libsoup for providing access to the Microsoft Graph API services. - CVE History - None -

[Bug 2060575] [NEW] gnome-keyring fails to automatically unlock login keyring after recent updates in noble

2024-04-08 Thread Alex Murray
Public bug reported: After installing recent updates in 24.04, upon logging in the gnome- shell based UI pops up saying that the login keyring was not unlocked and asking for the users password to be input to unlock it. Similarly a second, non-gnome-shell based UI is also present asking the same

[Bug 2059417] Re: Sync xz-utils 5.6.1-1 (main) from Debian unstable (main)

2024-03-29 Thread Alex Murray
Given this has been reverted in Debian, it should not be synced into Ubuntu. ** Changed in: xz-utils (Ubuntu) Status: New => Won't Fix -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2059417 Tit

[Bug 2056696] Re: All Snaps are denied the ability to use DBus for notifications and apptray indicators in KDE-based flavors

2024-03-20 Thread Alex Murray
Ok whilst I still can't see the /StatusNotifierItem object listed via d-feet I can reproduce the denials when launching element-desktop so I have added some additional changes to the aforementioned PR which resolve these as well. With all the changes from that PR in place all of these mentioned den

[Bug 2056696] Re: All Snaps are denied the ability to use DBus for notifications and apptray indicators in KDE-based flavors

2024-03-20 Thread Alex Murray
Ah although it seems I can reboot the VM at this point and whilst Calamares appeared to run again again in the rebooted vm if I choose Install Calamares closes and I see the installed kubuntu environment - weird Anyway I think I will be able to use this to debug the original issue further - wi

[Bug 2056696] Re: All Snaps are denied the ability to use DBus for notifications and apptray indicators in KDE-based flavors

2024-03-20 Thread Alex Murray
The subsequent error is: Main script file /usr/lib/x86_64-linux- gnu/calamares/modules/automirror/main.py for python job automirror raised an exception. Is there any way I can debug this further? -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed

[Bug 2056696] Re: All Snaps are denied the ability to use DBus for notifications and apptray indicators in KDE-based flavors

2024-03-20 Thread Alex Murray
Yes I hit that exact issue in Calamares but after fixing it I then hit another similar crash in a different script in calamares - will see if I can reproduce and provide you with details. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 2056696] Re: All Snaps are denied the ability to use DBus for notifications and apptray indicators in KDE-based flavors

2024-03-19 Thread Alex Murray
So I installed kubuntu-desktop on an up-to-date noble VM and then after logging into the kubuntu session I was able to reproduce the issue for Notifications but I couldn't see anything owning the /StatusNotifierItem dbus path. For notifications I submitted https://github.com/snapcore/snapd/pull/13

[Bug 2058329] [NEW] Update apparmor to 4.0.0-beta3 in noble

2024-03-18 Thread Alex Murray
Public bug reported: Latest upstream release https://gitlab.com/apparmor/apparmor/-/releases/v4.0.0-beta3 Contains only bug fixes since 4.0.0-beta2 which is currently in noble- proposed thus does not require a FFe. ** Affects: apparmor (Ubuntu) Importance: Undecided Status: New --

[Bug 2056696] Re: All Snaps are denied the ability to use DBus for notifications and apptray indicators in KDE-based flavors

2024-03-14 Thread Alex Murray
> Log: apparmor="DENIED" operation="dbus_method_call" bus="session" path="/org/freedesktop/DBus" interface="org.freedesktop.DBus" member="ListActivatableNames" mask="send" name="org.freedesktop.DBus" pid=2950 label="snap.element-desktop.element-desktop" peer_label="unconfined" This is provided by

[Bug 2056496] Re: [FFe] AppArmor 4.0-beta2 + prompting support for noble

2024-03-12 Thread Alex Murray
Uploaded to noble-proposed yesterday https://launchpad.net/ubuntu/+source/apparmor/4.0.0~beta2-0ubuntu3 ** Changed in: apparmor (Ubuntu) Status: Triaged => Fix Committed -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://b

[Bug 2056458] Re: upgrade to thunderbird snap, missing snapd depdency

2024-03-07 Thread Alex Murray
** Information type changed from Private Security to Public -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2056458 Title: upgrade to thunderbird snap, missing snapd depdency To manage notifications

[Bug 2055761] Re: tracker-extract-3 crashed with SIGSYS in epoll_wait()

2024-03-06 Thread Alex Murray
Ah fair enough ;) -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2055761 Title: tracker-extract-3 crashed with SIGSYS in epoll_wait() To manage notifications about this bug go to: https://bugs.launc

[Bug 2055761] Re: tracker-extract-3 crashed with SIGSYS in epoll_wait()

2024-03-06 Thread Alex Murray
> Why do we keep having to fix these crashes one by one over such a long period of time? In this case I think this is a consequence of the allow-list nature of the seccomp filters - as glibc changes to implement various functions via different primitive system calls / or the kernel changes to add

[Bug 2054924] Re: color emoji are broken with fontconfig 2.15

2024-03-06 Thread Alex Murray
As per https://gitlab.freedesktop.org/fontconfig/fontconfig/-/issues/409#note_2298588 this can also be fixed by adding an additional rule to /etc/fonts/conf.d/70-no-bitmaps.conf of the form: false ** Bug watch added: gitlab.freedesktop.org/fontconfig/fontconfig/-/issues #409 https://gitlab.fre

[Bug 2055114] Re: fail2ban is broken in 24.04 Noble

2024-02-26 Thread Alex Murray
Relevant upstream issue https://github.com/fail2ban/fail2ban/issues/3487 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2055114 Title: fail2ban is broken in 24.04 Noble To manage notifications about

[Bug 2055114] Re: fail2ban is broken in 24.04 Noble

2024-02-26 Thread Alex Murray
So whilst in Ubuntu we do have python-pyasyncore which provides asyncore, we don't have asynchat so this might need to be packaged separately OR vendored into fail2ban -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launch

[Bug 2055114] Re: fail2ban is broken in 24.04 Noble

2024-02-26 Thread Alex Murray
asynchat was removed in python 3.12, which just became the default python3 in 24.04 ** Information type changed from Private Security to Public ** Bug watch added: github.com/fail2ban/fail2ban/issues #3487 https://github.com/fail2ban/fail2ban/issues/3487 -- You received this bug notification

[Bug 2003864] Re: freshclam assert failure: *** stack smashing detected ***: terminated

2023-03-01 Thread Alex Murray
Turns out clamav-1.0.0 includes a transition from libclamav9 -> libclamav11 so this is taking a bit longer than expected - but I will keep plugging away. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to the bug report. https://bugs.launchpad.ne

[Bug 2003864] Re: freshclam assert failure: *** stack smashing detected ***: terminated

2023-02-15 Thread Alex Murray
Looking at the upstream repo for clamav I suspect the following commit is required to be backported to clamav in lunar https://github.com/Cisco- Talos/clamav/commit/375ecf678c714623e6fb5c0119d1bec98dc700dd - or that a merge is done of clamav-1.0.0+dfsg-6 to lunar. The merge is likely the best opti

  1   2   3   4   5   6   7   8   9   10   >