Processed: block 729531 with 729121 731058 731697 731698 730632 731089

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > block 729531 with 729121 731058 731697 731698 730632 731089 Bug #729531 [release.debian.org] transition: icu 729531 was blocked by: 729957 731597 729531 was not blocking any bugs. Added blocking bug(s) of 729531: 731058, 731089, 729121, 731698, 73

Bug#731895: php5: CVE-2013-6420: memory corruption in openssl_x509_parse()

2013-12-10 Thread Salvatore Bonaccorso
Package: php5 Severity: grave Tags: security upstream patch Hi, the following vulnerability was published for php5. CVE-2013-6420[0]: php: memory corruption in openssl_x509_parse() The upstream commit is found at [1]. If you fix the vulnerability please also make sure to include the CVE (Commo

Processed: notfound 701376 in 3.4.5+dfsg-1

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > notfound 701376 3.4.5+dfsg-1 Bug #701376 [src:zookeeper] zookeeper: ftbfs with GCC-4.8 Ignoring request to alter found versions of bug #701376 to the same values previously set > thanks Stopping processing here. Please contact me if you need ass

Bug#731849: marked as done (uscan: arbitrary code execution)

2013-12-10 Thread Debian Bug Tracking System
Your message dated Wed, 11 Dec 2013 04:18:29 + with message-id and subject line Bug#731849: fixed in devscripts 2.13.8 has caused the Debian Bug report #731849, regarding uscan: arbitrary code execution to be marked as done. This means that you claim that the problem has been dealt with. If t

Bug#705906: Pending

2013-12-10 Thread Christopher James Halse Rogers
I've got the infrastructure required to make this work correctly in branches of cli-common-dev and mono. They should be uploadable in the next week or so. signature.asc Description: This is a digitally signed message part

Bug#731891: gcc-4.4 FTBFS on mips* with 3.8 kernel headers

2013-12-10 Thread peter green
Package: gcc-4.4 Severity: serious Tags: jessie, sid In file included from ../../../../src/libgcc/../gcc/unwind-dw2.c:333: ../../../../src/libgcc/../gcc/config/mips/linux-unwind.h: In function 'mips_fallback_frame_state': ../../../../src/libgcc/../gcc/config/mips/linux-unwind.h:78: error: field

Processed: user devscri...@packages.debian.org, usertagging 731725, usertagging 731849, usertagging 731885 ...

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > user devscri...@packages.debian.org Setting user to devscri...@packages.debian.org (was james...@debian.org). > usertags 731725 uscan There were no usertags set. Usertags are now: uscan. > usertags 731849 uscan There were no usertags set. Usertags

Processed: found 731710 in 1.17.2

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > found 731710 1.17.2 Bug #731710 [dpkg] update-alternatives: Segmentation fault Bug #731782 [dpkg] konqueror postinst script quits with segmentation fault (update-alternatives) Marked as found in versions dpkg/1.17.2. Marked as found in versions d

Processed: reassign 731782 to dpkg, forcibly merging 731710 731782

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > reassign 731782 dpkg Bug #731782 [konqueror] konqueror postinst script quits with segmentation fault (update-alternatives) Bug reassigned from package 'konqueror' to 'dpkg'. No longer marked as found in versions kde-baseapps/4:4.11.3-1. Ignoring

Processed: Bug#731849 marked as pending

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tag 731849 pending Bug #731849 [devscripts] uscan: arbitrary code execution Added tag(s) pending. > thanks Stopping processing here. Please contact me if you need assistance. -- 731849: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=731849 Deb

Bug#731849: marked as pending

2013-12-10 Thread James McCoy
tag 731849 pending thanks Hello, Bug #731849 reported by you has been fixed in the Git repository. You can see the changelog below, and you can check the diff of the fix at: http://git.debian.org/?p=collab-maint/devscripts.git;a=commitdiff;h=91f05b5 --- commit 91f05b5cc300af669b31a6f6b44d53

Bug#731597: haskell-text-icu: FTBFS on arm* (make: debian/hlibrary.setup: Command not found)

2013-12-10 Thread Joachim Breitner
Hi, Am Sonntag, den 08.12.2013, 17:16 + schrieb Joachim Breitner: > this affects GHC, and is caused by llvm upgrade to 3.3, which does not > like the bytecode generated by GHC any more. I am about to upload a > fixed version of GHC by backporting a patch from upstream, but there > will likely

Bug#691576: GDB still broken with 3.11.10-1

2013-12-10 Thread Ben Hutchings
On Tue, Dec 10, 2013 at 11:36:37PM +0100, Émeric MASCHINO wrote: > FYI, linux-image-3.11-2-mckinley 3.11.10-1 in today's Jessie updates > didn't change anything w.r.t. gdb problem. Of course it didn't. If you want ia64 fixed then you'll have to talk to upstream or fix it yourself. Ben. -- Ben

Processed: affects 731089

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > affects 731089 + src:yafaray Bug #731089 [cmake-data] cmake: changes to libfreetype6-dev break FindPackage(Freetype) Added indication that 731089 affects src:yafaray > thanks Stopping processing here. Please contact me if you need assistance. --

Bug#711135: unable to reproduce

2013-12-10 Thread Peter Chubb
> "dann" == dann frazier writes: dann> Can you attach your elilo.conf? I'm mostly trying to confirm you dann> are specifying "relocatable", but also curious about other dann> settings. It's the one in the d-i netboot.tgz --- extracted here for your convenience. - chooser=textmenu default=

Bug#711135: unable to reproduce

2013-12-10 Thread Peter Chubb
> "dann" == dann frazier writes: dann> Can you attach your elilo.conf? I'm mostly trying to confirm you dann> are specifying "relocatable", but also curious about other dann> settings. It's the one in the d-i netboot.tgz --- extracted here for your convenience. - chooser=textmenu default=

Bug#707856: espeak-gui: depends on python-gtkspell which is going away

2013-12-10 Thread Emilio Pozuelo Monfort
Hi Siegfried, any update on this? Emilio -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Bug#702104: depends on python-eggtrayicon which has been removed

2013-12-10 Thread Emilio Pozuelo Monfort
Hi Mario, any update on these two bugs? -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Bug#691576: GDB still broken with 3.11.10-1

2013-12-10 Thread Émeric MASCHINO
FYI, linux-image-3.11-2-mckinley 3.11.10-1 in today's Jessie updates didn't change anything w.r.t. gdb problem. -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Bug#731702: marked as done (matita: FTBFS with ocaml 4.01.0)

2013-12-10 Thread Debian Bug Tracking System
Your message dated Tue, 10 Dec 2013 21:21:58 + with message-id and subject line Bug#731702: fixed in matita 0.99.1-3 has caused the Debian Bug report #731702, regarding matita: FTBFS with ocaml 4.01.0 to be marked as done. This means that you claim that the problem has been dealt with. If thi

Bug#731848: marked as done (ack-grep: potential remote code execution via per-project .ackrc files)

2013-12-10 Thread Debian Bug Tracking System
Your message dated Tue, 10 Dec 2013 21:19:02 + with message-id and subject line Bug#731848: fixed in ack-grep 2.12-1 has caused the Debian Bug report #731848, regarding ack-grep: potential remote code execution via per-project .ackrc files to be marked as done. This means that you claim that

Bug#721364: perl: Missing Pre-Depends/Breaks/Conflicts wrt. libscalar-list-utils-perl and the Perl 5.18 transition

2013-12-10 Thread gregor herrmann
On Sat, 31 Aug 2013 18:30:25 +0300, Niko Tyni wrote: @David, Leon: The full story is at http://bugs.debian.org/721450 > > Meanwhile, I don't think this is quite so critical that it warrants a > > hurried upload, as systems with libscalar-list-utils-perl installed are > > probably quite uncommon.

Processed: unarchiving 721364

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > unarchive 721364 Bug #721364 {Done: Niko Tyni } [perl] perl: Missing Pre-Depends/Breaks/Conflicts wrt. libscalar-list-utils-perl and the Perl 5.18 transition Unarchived Bug 721364 > thanks Stopping processing here. Please contact me if you need

Bug#729495: possible #729495 patch (untested)

2013-12-10 Thread Rebecca N. Palmer
an executable Python file that has "#!/usr/bin/env python" as first line Code Search finds this in the 4 scripts in src/plugins/grass/scripts, where it is also present in 2.0.1, but I haven't actually tested whether changing this fixes the problem. -- To UNSUBSCRIBE, email to debian-bugs-rc

Bug#728150: (but ia64 isn't keeping up, so nevermind)

2013-12-10 Thread Rebecca N. Palmer
Just for the heads up, this bug is currently the only reason why lesstif2 can't be removed from Debian. Thus, I would appreciate an upload (I can sponsor if needed). Given that britney now ignores ia64, a faster way to finish the motif transition would be to just downgrade this bug to important

Bug#723716: marked as done (hplip: CVE-2013-4325)

2013-12-10 Thread Debian Bug Tracking System
Your message dated Tue, 10 Dec 2013 19:49:10 + with message-id and subject line Bug#723716: fixed in hplip 3.13.11-1 has caused the Debian Bug report #723716, regarding hplip: CVE-2013-4325 to be marked as done. This means that you claim that the problem has been dealt with. If this is not th

Processed: reassign 718636 to libdolfin1.2-dev, fixed 718636 in 1.2.0+dfsg-1

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > reassign 718636 libdolfin1.2-dev Bug #718636 {Done: Johannes Ring } [libdolfin1.0-dev] libdolfin1.0-dev: dolfin.h header unusable Bug reassigned from package 'libdolfin1.0-dev' to 'libdolfin1.2-dev'. No longer marked as found in versions dolfin/1

Bug#731878: yade: FTBFS, insane memory requirements

2013-12-10 Thread Anton Gladky
Hi, the package has been built on the machine with not enough amount of RAM to build Yade: MemTotal:2061172 kB Please, give it back. Thanks, Anton 2013/12/10 Julien Cristau : > Source: yade > Version: 1.05.0-2 > Severity: serious > Justification: fails to build from source (but built

Bug#728150: grass: FTBFS on ia64, preventing migration to testing

2013-12-10 Thread Paul Gevers
On 09-12-13 22:06, Paul Gevers wrote: > I haven't tried ppc64 yet. I can't find a ppc64 porterbox, so I can't test this for you. Just for the heads up, this bug is currently the only reason why lesstif2 can't be removed from Debian. Thus, I would appreciate an upload (I can sponsor if needed). A

Bug#731878: yade: FTBFS, insane memory requirements

2013-12-10 Thread Julien Cristau
Source: yade Version: 1.05.0-2 Severity: serious Justification: fails to build from source (but built successfully in the past) Hi, your package fails to build on the amd64 buildd: > c++: internal compiler error: Killed (program cc1plus) See https://buildd.debian.org/status/fetch.php?pkg=yade&a

Processed: notfixed 668370 in 1.4.0-0.1, fixed 668370 in 1.4-0.1, tagging 731868

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > notfixed 668370 1.4.0-0.1 Bug #668370 {Done: Hilko Bengen } [wine-unstable] wine-unstable: Use word virtual instead of dummy in Package description There is no source info for the package 'wine-unstable' at version '1.4.0-0.1' with architecture

Bug#731873: vlc: FTBFS: freetype.c:93:30: fatal error: freetype/ftsynth.h: No such file or directory

2013-12-10 Thread Andreas Beckmann
On 2013-12-10 18:55, Sebastian Ramacher wrote: > There is #731513 already … Oops, didn't look for pending bugs ... Andreas -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Processed: forcibly merging 731513 731873

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > forcemerge 731513 731873 Bug #731513 [src:vlc] vlc: FTBFS: freetype/ftsynth.h: No such file or directory Bug #731873 [src:vlc] vlc: FTBFS: freetype.c:93:30: fatal error: freetype/ftsynth.h: No such file or directory Set Bug forwarded-to-address t

Bug#731875: mono-xbuild: Default installation fails due to CIL 4.0/4.5 incompatibility

2013-12-10 Thread Marc 'HE' Brockschmidt
Package: mono-xbuild Version: 3.0.6+dfsg2-10 Severity: serious Hi there, I tried using xbuild in my fresh and shiny unstable chroot. This failed horribly: | $ xbuild | Missing method .ctor in assembly /usr/lib/mono/gac/Microsoft.Build.Engine/4.0.0.0__b03f5f7f11d50a3a/Microsoft.Build.Engine.dll

Processed (with 1 errors): severity of 706683 is grave, reassign 705906 to fsharp, merging 706683 705906

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 706683 grave Bug #706683 [fsharp] fsharpc can't find FSharp.Core.dll Severity set to 'grave' from 'normal' > reassign 705906 fsharp Bug #705906 [fsharp-console] fsharp-console: Unable to find the file 'FSharp.Core.dll' Bug #705924 [fshar

Bug#731873: vlc: FTBFS: freetype.c:93:30: fatal error: freetype/ftsynth.h: No such file or directory

2013-12-10 Thread Sebastian Ramacher
Control: merge 731513 -1 On 2013-12-10 18:42:46, Andreas Beckmann wrote: > Source: vlc > Version: 2.1.1-1 > Severity: serious > Justification: fails to build from source > > Hi, > > vlc FTBFS in recent sid: > > [...] > make[5]: Entering directory `/tmp/buildd/vlc-2.1.1/modules/text_renderer' >

Processed (with 1 errors): Re: Bug#731873: vlc: FTBFS: freetype.c:93:30: fatal error: freetype/ftsynth.h: No such file or directory

2013-12-10 Thread Debian Bug Tracking System
Processing control commands: > merge 731513 -1 Bug #731513 [src:vlc] vlc: FTBFS: freetype/ftsynth.h: No such file or directory Unable to merge bugs because: forwarded of #731873 is '' not 'https://trac.videolan.org/vlc/ticket/10019' Failed to merge 731513: Did not alter merged bugs Debbugs

Bug#731873: vlc: FTBFS: freetype.c:93:30: fatal error: freetype/ftsynth.h: No such file or directory

2013-12-10 Thread Andreas Beckmann
Source: vlc Version: 2.1.1-1 Severity: serious Justification: fails to build from source Hi, vlc FTBFS in recent sid: [...] make[5]: Entering directory `/tmp/buildd/vlc-2.1.1/modules/text_renderer' .../../doltlibtool --tag=CC --mode=compile gcc -std=gnu99 -DHAVE_CONFIG_H -I. -I../.. -DMODUL

Bug#717230: marked as done (Copyright: ((C) 1987-1996 Adobe Systems Incorporated All Rights Reserved))

2013-12-10 Thread Debian Bug Tracking System
Your message dated Tue, 10 Dec 2013 17:34:06 + with message-id and subject line Bug#717230: fixed in pixelmed 20131018-1 has caused the Debian Bug report #717230, regarding Copyright: ((C) 1987-1996 Adobe Systems Incorporated All Rights Reserved) to be marked as done. This means that you cla

Bug#731863: python-ufw: fails to upgrade from 'testing' - trying to overwrite /usr/share/pyshared/ufw/backend_iptables.py

2013-12-10 Thread Jamie Strandboge
Thanks for the bug and I'll get this fixed in the next upload. Note that in the normal upgrade case, python-ufw will not be pulled in as part of the upgrade because ufw itself does not depend on it so it doesn't get pulled in as part of the upgrade (which is why I've not seen this bug before now).

Bug#731868: igstk: please switch to B-D: libopenigtlink-dev

2013-12-10 Thread Andreas Beckmann
Source: igstk Version: 4.4.0-2 Severity: serious Justification: fails to build from source (but built successfully in the past) Hi, openigtlink has renamed its development package from libopenigtlink1-dev to libopenigtlink-dev in the latest release. Please update igstk to allow the removal of the

Processed: tagging 731849

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tags 731849 + confirmed Bug #731849 [devscripts] uscan: arbitrary code execution Added tag(s) confirmed. > thanks Stopping processing here. Please contact me if you need assistance. -- 731849: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=731

Bug#731866: Remove ruby1.8 for jessie

2013-12-10 Thread Moritz Muehlenhoff
Package: libruby1.8 Version: 1.8.7.358-8 Severity: serious File: ruby1.8 There are already three Ruby releases in Jessie. Also quoting from https://www.ruby-lang.org/en/news/2013/11/22/heap-overflow-in-floating-point-parsing-cve-2013-4164/ : | Please note that Ruby 1.8 series or any earlier re

Bug#731863: python-ufw: fails to upgrade from 'testing' - trying to overwrite /usr/share/pyshared/ufw/backend_iptables.py

2013-12-10 Thread Andreas Beckmann
Package: python-ufw Version: 0.33-1 Severity: serious User: debian...@lists.debian.org Usertags: piuparts Hi, during a test with piuparts I noticed your package fails to upgrade from 'testing'. It installed fine in 'testing', then the upgrade to 'sid' fails because it tries to overwrite other pac

Bug#731710: update-alternatives: Segmentation fault

2013-12-10 Thread Guillem Jover
Hi! On Mon, 2013-12-09 at 20:45:58 +0100, Julian Andres Klode wrote: > On Mon, Dec 09, 2013 at 05:08:47PM +0100, Guillem Jover wrote: > > Didn't crash for me here, but the backtrace was helpful to spot the > > problem. Could you try the attached patch? > > Yes, thanks, it works. On Tue, 2013-12-

Bug#731860: libtar: CVE-2013-4420: directory traversal when extracting archives

2013-12-10 Thread Raphael Geissert
Source: libtar Severity: grave Tags: security Hi, the following vulnerability was published for libtar. CVE-2013-4420[0]: tar_extract_glob and tar_extract_all path prefix directory traversal If you fix the vulnerability please also make sure to include the CVE (Common Vulnerabilities & Exposures

Processed: fixing title

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > retitle 731836 override: libgavl1:libs/optional, override: > libgavl-dev:libdevel/optional, override: libgavl-doc:doc/optional Bug #731836 [ftp.debian.org] override: libgavl1:libs/optional, override: Changed Bug title to 'override: libgavl1:libs/

Bug#611915: marked as done (Strange locale problem)

2013-12-10 Thread Debian Bug Tracking System
Your message dated Tue, 10 Dec 2013 16:29:31 +0100 with message-id <20131210152931.ga12...@ramacher.at> and subject line Re: Bug#611915: Strange locale problem has caused the Debian Bug report #611915, regarding Strange locale problem to be marked as done. This means that you claim that the proble

Processed: fixing title

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > retitle 731835 override: libgmerlin-avdec1:libs/optional, override: > libgmerlin-avdec-dev:libdevel/optional, override: > libgmerlin-avdec-doc:doc/optional, override: gmerlin-plugins-avdecoder: > libs/optional Bug #731835 [ftp.debian.org] overr

Bug#731658: marked as done (cups-filters FTBFS on kfreebsd, varying values of PATH_MAX)

2013-12-10 Thread Debian Bug Tracking System
Your message dated Tue, 10 Dec 2013 15:19:49 + with message-id and subject line Bug#731658: fixed in cups-filters 1.0.42-2 has caused the Debian Bug report #731658, regarding cups-filters FTBFS on kfreebsd, varying values of PATH_MAX to be marked as done. This means that you claim that the pr

Bug#731834: libdc1394-22: raise priority to 'optional'

2013-12-10 Thread IOhannes m zmoelnig
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 reassign 731834 ftp.debian.org thanks. On 2013-12-10 13:46, Guus Sliepen wrote: > severity 731834 serious reassign 731834 ftp-master thanks > > Justification: section 2.5 "Packages must not depend on packages > with lower priority values (excluding

Processed (with 1 errors): Re: Bug#731836: Acknowledgement (libgavl1: raise priority to "optional")

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > retitle 731836 override: libgavl1:libs/optional, override: Bug #731836 [ftp.debian.org] libgavl1: raise priority to "optional" Changed Bug title to 'override: libgavl1:libs/optional, override:' from 'libgavl1: raise priority to "optional"' > libg

Processed: limit source to pgfincore, tagging 725570

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > #pgfincore (1.1.2-1) unstable; urgency=low > # > # * New upstream release with PostgreSQL 9.3 support. (Closes: #725570) > # > limit source pgfincore Limiting to bugs with field 'source' containing at least one of 'pgfincore' Limit currently set

Bug#731835: Acknowledgement (libgmerlin-avdec1: raise priority to 'optional')

2013-12-10 Thread IOhannes m zmoelnig
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 severity 731835 serious reassign 731835 ftp-master thanks Justification: section 2.5 "Packages must not depend on packages with lower priority values (excluding build-time dependencies). In order to ensure this, the priorities of one or more package

Bug#731836: Acknowledgement (libgavl1: raise priority to "optional")

2013-12-10 Thread IOhannes m zmoelnig
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 retitle 731836 override: libgavl1:libs/optional, override: libgavl-dev:libdevel/optional, override: libgavl-doc:doc/optional thanks Dear ftp-masters, Please change the priority for the above gavl packages from extra to optional. This package doesn'

Processed (with 3 errors): Re: libgmerlin-avdec1: raise priority to 'optional'

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > retitle 731835 override: libgmerlin-avdec1:libs/optional, override: Bug #731835 [ftp.debian.org] libgmerlin-avdec1: raise priority to 'optional' Changed Bug title to 'override: libgmerlin-avdec1:libs/optional, override:' from 'libgmerlin-avdec1:

Bug#731835: libgmerlin-avdec1: raise priority to 'optional'

2013-12-10 Thread IOhannes m zmoelnig
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 retitle 731835 override: libgmerlin-avdec1:libs/optional, override: libgmerlin-avdec-dev:libdevel/optional, override: libgmerlin-avdec-doc:doc/optional, override: gmerlin-plugins-avdecoder: libs/optional thanks Dear ftp-masters, Please change the p

Bug#731848: CVE request for remote code execution in ack

2013-12-10 Thread Andy Lester
On Dec 10, 2013, at 7:46 AM, Axel Beckert wrote: > Hi, > > as discussed with Salvatore Bonaccorso of the Debian Security Team > (team cc'ed), I'm herewith requesting a CVE ID for the following > security issue in ack (http://beyondgrep.com/, also known as ack-grep > in multiple distributions; u

Bug#731836: Acknowledgement (libgavl1: raise priority to "optional")

2013-12-10 Thread IOhannes m zmoelnig
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 severity 731836 serious reassign 731836 ftpmaster thanks Justification: section 2.5 "Packages must not depend on packages with lower priority values (excluding build-time dependencies). In order to ensure this, the priorities of one or more packages

Processed: Re: Bug#731836: Acknowledgement (libgavl1: raise priority to "optional")

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > reassign 731836 ftp.debian.org Bug #731836 [ftpmaster] libgavl1: raise priority to "optional" Warning: Unknown package 'ftpmaster' Bug reassigned from package 'ftpmaster' to 'ftp.debian.org'. Ignoring request to alter found versions of bug #731836

Processed: Re: Bug#731834: libdc1394-22: raise priority to 'optional'

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > reassign 731834 ftp.debian.org Bug #731834 [ftp.debian.org] override: libdc1394-22:optional Ignoring request to reassign bug #731834 to the same package > thanks. Stopping processing here. Please contact me if you need assistance. -- 731834: htt

Bug#731835: libgmerlin-avdec1: raise priority to 'optional'

2013-12-10 Thread IOhannes m zmoelnig
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 severity 731835 serious reassign 731835 ftp.debian.org thanks Justification: section 2.5 "Packages must not depend on packages with lower priority values (excluding build-time dependencies). In order to ensure this, the priorities of one or more pac

Bug#731836: Acknowledgement (libgavl1: raise priority to "optional")

2013-12-10 Thread IOhannes m zmoelnig
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 reassign 731836 ftp.debian.org thanks On 2013-12-10 15:01, IOhannes m zmoelnig wrote: > severity 731836 serious reassign 731836 ftpmaster thanks > > Justification: section 2.5 "Packages must not depend on packages > with lower priority values (excl

Processed: Re: libgmerlin-avdec1: raise priority to 'optional'

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 731835 serious Bug #731835 [ftp-master] libgmerlin-avdec1: raise priority to 'optional' Warning: Unknown package 'ftp-master' Ignoring request to change severity of Bug 731835 to the same value. Warning: Unknown package 'ftp-master' > rea

Bug#731848: CVE request for remote code execution in ack

2013-12-10 Thread Andy Lester
On Dec 10, 2013, at 8:00 AM, Axel Beckert wrote: > It would be nice if you could add the CVE-ID to the Changes file of > ack retroactively as soon as it's known so that it's part of the > Changes file in further ack releases. OK. Just help me through this and I’ll do what needs to be done. I

Processed: Re: Bug#731836: Acknowledgement (libgavl1: raise priority to "optional")

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 731836 serious Bug #731836 [libgavl1] libgavl1: raise priority to "optional" Severity set to 'serious' from 'minor' > reassign 731836 ftpmaster Bug #731836 [libgavl1] libgavl1: raise priority to "optional" Bug reassigned from package 'lib

Bug#731848: CVE request for remote code execution in ack

2013-12-10 Thread Axel Beckert
Hi Andy, Andy Lester wrote: > On Dec 10, 2013, at 7:46 AM, Axel Beckert wrote: > > as discussed with Salvatore Bonaccorso of the Debian Security Team > > (team cc'ed), I'm herewith requesting a CVE ID for the following > > security issue in ack (http://beyondgrep.com/, also known as ack-grep > >

Processed: Re: Bug#731834: libdc1394-22: raise priority to 'optional'

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > retitle 731834 override: libdc1394-22:optional Bug #731834 [ftpmaster] libdc1394-22: raise priority to 'optional' Warning: Unknown package 'ftpmaster' Changed Bug title to 'override: libdc1394-22:optional' from 'libdc1394-22: raise priority to 'o

Processed: Re: Bug#731835: Acknowledgement (libgmerlin-avdec1: raise priority to 'optional')

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 731835 serious Bug #731835 [libgmerlin-avdec1] libgmerlin-avdec1: raise priority to 'optional' Severity set to 'serious' from 'minor' > reassign 731835 ftp-master Bug #731835 [libgmerlin-avdec1] libgmerlin-avdec1: raise priority to 'optio

Bug#731848: CVE request for remote code execution in ack

2013-12-10 Thread Axel Beckert
Hi, as discussed with Salvatore Bonaccorso of the Debian Security Team (team cc'ed), I'm herewith requesting a CVE ID for the following security issue in ack (http://beyondgrep.com/, also known as ack-grep in multiple distributions; upstream developer cc'ed): * Remote code execution via options -

Bug#731849: uscan: arbitrary code execution

2013-12-10 Thread Jakub Wilk
Package: devscripts Version: 2.13.5 Severity: grave Tags: security Justification: user security hole The newfangled debian/copyright-driven repacking can be exploited by malicious upstream to execute arbitrary code. Proof of concept is attached. -- Jakub Wilk Format: http://www.debian.org/doc

Processed (with 1 errors): Re: Bug#731834: libdc1394-22: raise priority to 'optional'

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > On Tue, Dec 10, 2013 at 01:46:47PM +0100, Guus Sliepen wrote: Unknown command or malformed arguments to command. > reassign 731834 ftpmaster Bug #731834 [ftp-master] libdc1394-22: raise priority to 'optional' Warning: Unknown package 'ftp-master'

Bug#731834: libdc1394-22: raise priority to 'optional'

2013-12-10 Thread Guus Sliepen
On Tue, Dec 10, 2013 at 01:46:47PM +0100, Guus Sliepen wrote: reassign 731834 ftpmaster thanks Justification: section 2.5 "Packages must not depend on packages with lower priority values (excluding build-time dependencies). In order to ensure this, the priorities of one or more packages may need

Bug#718593: marked as done (Crashes due to incorrect libjpeg dependency since last security update)

2013-12-10 Thread Debian Bug Tracking System
Your message dated Tue, 10 Dec 2013 14:31:07 +0100 with message-id <52a7179b.3090...@ubuntu.com> and subject line Re: Crashes due to incorrect libjpeg dependency since last security update has caused the Debian Bug report #718593, regarding Crashes due to incorrect libjpeg dependency since last se

Bug#731847: marked as done (dch: Can't locate Devscripts/Compression.pm in @INC)

2013-12-10 Thread Debian Bug Tracking System
Your message dated Tue, 10 Dec 2013 13:03:25 + with message-id and subject line Bug#731847: fixed in devscripts 2.13.7 has caused the Debian Bug report #731847, regarding dch: Can't locate Devscripts/Compression.pm in @INC to be marked as done. This means that you claim that the problem has b

Bug#731847: marked as pending

2013-12-10 Thread James McCoy
tag 731847 pending thanks Hello, Bug #731847 reported by you has been fixed in the Git repository. You can see the changelog below, and you can check the diff of the fix at: http://git.debian.org/?p=collab-maint/devscripts.git;a=commitdiff;h=64c4f84 --- commit 64c4f84dcbfc29bad26c02437f8bf3

Processed: Bug#731847 marked as pending

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tag 731847 pending Bug #731847 [devscripts] dch: Can't locate Devscripts/Compression.pm in @INC Added tag(s) pending. > thanks Stopping processing here. Please contact me if you need assistance. -- 731847: http://bugs.debian.org/cgi-bin/bugrepor

Processed: Re: Bug#731834: libdc1394-22: raise priority to 'optional'

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 731834 serious Bug #731834 [libdc1394-22] libdc1394-22: raise priority to 'optional' Severity set to 'serious' from 'minor' > reassign 731834 ftp-master Bug #731834 [libdc1394-22] libdc1394-22: raise priority to 'optional' Bug reassigned

Bug#731848: ack-grep: potential remote code execution via per-project .ackrc files

2013-12-10 Thread Axel Beckert
Package: ack-grep Version: 2.10-1 Severity: grave Tags: security upstream fixed-upstream pending Forwarded: https://github.com/petdance/ack2/issues/399 Upstream fixed a security issue which could possibly lead to a remote code execution. Several options to ack take perl or shell code which will b

Bug#728047: marked as done (ttf-cjk-compact-udeb: needs an update: missing/broken glyphs in d-i)

2013-12-10 Thread Debian Bug Tracking System
Your message dated Tue, 10 Dec 2013 12:33:53 + with message-id and subject line Bug#728047: fixed in ttf-cjk-compact 1.22 has caused the Debian Bug report #728047, regarding ttf-cjk-compact-udeb: needs an update: missing/broken glyphs in d-i to be marked as done. This means that you claim tha

Bug#731847: dch: Can't locate Devscripts/Compression.pm in @INC

2013-12-10 Thread Vincent Lefevre
Package: devscripts Version: 2.13.6 Severity: grave Tags: patch Justification: renders package unusable $ dch Can't locate Devscripts/Compression.pm in @INC [...] at /usr/bin/dch line 42. because "use Devscripts::Compression;" occurs before "use lib '/usr/share/devscripts';". Attached patch. --

Bug#728047: ttf-cjk-compact-udeb: needs an update: missing/broken glyphs in d-i

2013-12-10 Thread Hideki Yamane
On Tue, 10 Dec 2013 01:39:58 +0100 Cyril Brulebois wrote: > Could you perform an upload soon? (I can also take care of the upload > if you want me to.) I'm so sorry for delay to upload it, checked and done now... > Hope you had a nice time at MiniDebConf. :-) (Apparently that was the > case giv

Bug#731823: does this affect wheezy or jessie/sid only?

2013-12-10 Thread Holger Levsen
Hi, On Dienstag, 10. Dezember 2013, Mathieu Malaterre wrote: > Control: notfound -1 5.8.0-13 > > but wheezy has 5.8.0-13 ?!! > ooops :) > much better indeed merci! :-) cheers, Holger signature.asc Description: This is a digitally signed message part.

Bug#731823: does this affect wheezy or jessie/sid only?

2013-12-10 Thread Mathieu Malaterre
Control: notfound -1 5.8.0-13 On Tue, Dec 10, 2013 at 12:52 PM, Holger Levsen wrote: > Hi Mathieu, > > thanks for your quick reply! > > On Dienstag, 10. Dezember 2013, Mathieu Malaterre wrote: >> Control: found -1 5.8.0-14.1 > [...] >> Which I believe is wrong for wheezy (and onward). > > but whe

Processed: Re: Bug#731823: does this affect wheezy or jessie/sid only?

2013-12-10 Thread Debian Bug Tracking System
Processing control commands: > notfound -1 5.8.0-13 Bug #731823 [libvtk-java] major version 51 is newer than 50, the highest major version supported by this compiler. Ignoring request to alter found versions of bug #731823 to the same values previously set -- 731823: http://bugs.debian.org/cgi

Bug#731823: does this affect wheezy or jessie/sid only?

2013-12-10 Thread Holger Levsen
Hi Mathieu, thanks for your quick reply! On Dienstag, 10. Dezember 2013, Mathieu Malaterre wrote: > Control: found -1 5.8.0-14.1 [...] > Which I believe is wrong for wheezy (and onward). but wheezy has 5.8.0-13 ?!! > > P.S./BTW: Thanks for caring about the general bugs too! :) > my pleasure :)

Processed: Re: Bug#731823: does this affect wheezy or jessie/sid only?

2013-12-10 Thread Debian Bug Tracking System
Processing control commands: > found -1 5.8.0-14.1 Bug #731823 [libvtk-java] major version 51 is newer than 50, the highest major version supported by this compiler. Marked as found in versions vtk/5.8.0-14.1. -- 731823: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=731823 Debian Bug Trackin

Bug#731823: does this affect wheezy or jessie/sid only?

2013-12-10 Thread Mathieu Malaterre
Control: found -1 5.8.0-14.1 On Tue, Dec 10, 2013 at 12:29 PM, Holger Levsen wrote: > Hi Mathieu, > > you filed #731823 and from that it's not clear to me whether this bug affects > only jessie+sid or also wheezy. Can you please comment? (And possibly tag > accordingly if applicable... :) $ jar

Bug#731823: does this affect wheezy or jessie/sid only?

2013-12-10 Thread Holger Levsen
Hi Mathieu, you filed #731823 and from that it's not clear to me whether this bug affects only jessie+sid or also wheezy. Can you please comment? (And possibly tag accordingly if applicable... :) cheers, Holger P.S./BTW: Thanks for caring about the general bugs too! :) signature.as

Processed: downgrading

2013-12-10 Thread Debian Bug Tracking System
Processing control commands: > severity -1 important Bug #728295 [src:xen] xen: Issues with Networking on virtual hosts with Xen.3.0.3-1 Severity set to 'important' from 'critical' -- 728295: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=728295 Debian Bug Tracking System Contact ow...@bugs.d

Bug#728295: downgrading

2013-12-10 Thread Holger Levsen
control: severity -1 important Hi, I'm downgrading this bug as its absolutly not clear whether this bug is still present in Debian today. Stephen can you as the submitter please comment on this? If there are no news on this bug report it's probably best to close it alltogether. cheers,

Bug#727154: marked as done (libgdcm2.4: fails to upgrade from 'sid' - trying to overwrite /usr/lib/libsocketxx.so.1.2.0)

2013-12-10 Thread Debian Bug Tracking System
Your message dated Tue, 10 Dec 2013 09:49:47 + with message-id and subject line Bug#727154: fixed in gdcm 2.4.1-1 has caused the Debian Bug report #727154, regarding libgdcm2.4: fails to upgrade from 'sid' - trying to overwrite /usr/lib/libsocketxx.so.1.2.0 to be marked as done. This means t

Processed: tagging 731710

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tags 731710 + patch Bug #731710 [dpkg] update-alternatives: Segmentation fault Added tag(s) patch. > thanks Stopping processing here. Please contact me if you need assistance. -- 731710: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=731710 De

Bug#729748: marked as done (Fwd: Comments regarding gdcm_2.4.0-1_amd64.changes)

2013-12-10 Thread Debian Bug Tracking System
Your message dated Tue, 10 Dec 2013 09:49:47 + with message-id and subject line Bug#729748: fixed in gdcm 2.4.1-1 has caused the Debian Bug report #729748, regarding Fwd: Comments regarding gdcm_2.4.0-1_amd64.changes to be marked as done. This means that you claim that the problem has been de

Bug#731710: update-alternatives: Segmentation fault

2013-12-10 Thread Roland Stigge
Hi, I can confirm that the patch fixes the issue (reproduced on powerpcspe). Thanks in advance for integrating the fix, Roland -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Bug#715427: marked as done (openvdb: FTBFS on i386: unsigned int vs. unsigned long long discrepancy)

2013-12-10 Thread Debian Bug Tracking System
Your message dated Tue, 10 Dec 2013 09:24:19 + with message-id and subject line Bug#715427: fixed in openvdb 2.0.0-3 has caused the Debian Bug report #715427, regarding openvdb: FTBFS on i386: unsigned int vs. unsigned long long discrepancy to be marked as done. This means that you claim tha

Processed: your mail

2013-12-10 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > affects 731823 src:gdcm Bug #731823 [libvtk-java] major version 51 is newer than 50, the highest major version supported by this compiler. Added indication that 731823 affects src:gdcm > End of message, stopping processing here. Please contact m

Processed: cameleon: FTBFS with ocaml 4.01.0

2013-12-10 Thread Debian Bug Tracking System
Processing control commands: > block 718767 with -1 Bug #718767 [release.debian.org] transition: ocaml 4.01.0 718767 was blocked by: 731400 730196 731587 726010 731817 731702 731701 731704 731277 731404 731344 731685 731218 731401 731399 731584 731529 731637 731636 731703 731528 731398 731405 73

Bug#731822: cameleon: FTBFS with ocaml 4.01.0

2013-12-10 Thread Stéphane Glondu
Source: cameleon Version: 1.9.21-2 Severity: serious Tags: jessie sid Control: block 718767 with -1 Hi, cameleon FTBFS when binNMUed against ocaml 4.01.0. >From the amd64 build log: > ### checking required tools and libraries ### > checking for Xml-light (byte) with ocamlfind... yes > checking f

Bug#731823: major version 51 is newer than 50, the highest major version supported by this compiler.

2013-12-10 Thread Mathieu Malaterre
Package: libvtk-java Severity: serious I cannot import vtk.jar (from gdcm). Compilation states that: ... warning: /usr/share/java/vtk.jar(vtk/vtkAbstractArray.class): major version 51 is newer than 50, the highest major version supported by this compiler. It is recommended that the compiler be up

  1   2   >