Bug#770009: Backtrace for the hang

2015-01-27 Thread Bastien ROUCARIES
Le 28 janv. 2015 08:00, "roucaries bastien" < roucaries.bastien+deb...@gmail.com> a écrit : > > > Le 27 janv. 2015 22:15, "Vincent Fourmond" a écrit : > > > > > I've run the build on the MIPS portebox. It hangs on the first SVG > > to PNG conversion. Here is a full backtrace. The process is for

Bug#776257: Fails to apply patch with dangling symlink

2015-01-27 Thread Martin Pitt
Michael Biebl [2015-01-26 1:55 +0100]: > the latest update of patch broke the systemd package and causes it to > FTBFS: BTW, at least glibc is also affected, and judging by the recent slew of autopkgtest failures in Ubuntu there's some more. We really need to get this fixed fast. Thanks, Martin

Bug#770009: Backtrace for the hang

2015-01-27 Thread roucaries bastien
Le 27 janv. 2015 22:15, "Vincent Fourmond" a écrit : > > I've run the build on the MIPS portebox. It hangs on the first SVG > to PNG conversion. Here is a full backtrace. The process is for now > stopped on the porterbox; I think I can leave it for some hours more > at least, if other informatio

Bug#775788: Build-Attempted of icedove on powerpc-unicamp-01

2015-01-27 Thread Carsten Schoenert
Hello Wouter, the build of icedove 31.4.0-2 is broken again on powerpc-unicamp-01 (as expected). Could you please reschedule the build on another powerpc buildd again? Christoph has fixed a RC bug [6] with this version of icedove and by this it is important for us to get this version of icedove in

Processed: user debian-secur...@lists.debian.org, usertagging 775901, usertagging 775873 ...

2015-01-27 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > user debian-secur...@lists.debian.org Setting user to debian-secur...@lists.debian.org (was car...@debian.org). > usertags 775901 + tracked Usertags were: tracked. Usertags are now: tracked. > usertags 775873 + tracked Usertags were: tracked. User

Processed: Re: Bug#776388: chromium does not start at all

2015-01-27 Thread Debian Bug Tracking System
Processing control commands: > severity -1 normal Bug #776388 [chromium] chromium does not start at all Severity set to 'normal' from 'serious' > retitle -1 chromium: should conflict with libgl1-mesa-swx11 Bug #776388 [chromium] chromium does not start at all Changed Bug title to 'chromium: should

Bug#776388: chromium does not start at all

2015-01-27 Thread Michael Gilbert
control: severity -1 normal control: retitle -1 chromium: should conflict with libgl1-mesa-swx11 On Tue, Jan 27, 2015 at 10:13 AM, Santiago Vila wrote: > The only "special" thing about my system is that 3D acceletarion does > not work properly and I have to use libgl1-mesa-swx11 instead of > libgl

Processed: bug 775990

2015-01-27 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tags 775990 +patch Bug #775990 [akonadi-backend-sqlite] [akonadi-backend-sqlite] Akonadi reports deadlocks Added tag(s) patch. > severity 775990 grave Bug #775990 [akonadi-backend-sqlite] [akonadi-backend-sqlite] Akonadi reports deadlocks Severi

Bug#776400: grub-ieee1275: ppc64el-disable-vsx.patch applied to 32-bit kernel.img causes exception at 0x20000008 (mtmsrd 0)

2015-01-27 Thread Mark Wiprud
On Jan 27, 2015, at 2:40 PM, Colin Watson cjwat...@debian.org wrote: > On Tue, Jan 27, 2015 at 11:17:04AM -0600, Mark wrote: >> On a powerpc g4 (mac) system I am trying to switch from yaboot to grub. >> The provided image always faults 8 bytes in. Looking at the patches for >> grub I see "ppc64el-d

Bug#770009: Backtrace for the hang

2015-01-27 Thread Vincent Fourmond
With the backtrace... On Tue, Jan 27, 2015 at 10:13 PM, Vincent Fourmond wrote: > I've run the build on the MIPS portebox. It hangs on the first SVG > to PNG conversion. Here is a full backtrace. The process is for now > stopped on the porterbox; I think I can leave it for some hours more > at

Bug#775970: marked as done (jasper: CVE-2014-8157 CVE-2014-8158)

2015-01-27 Thread Debian Bug Tracking System
Your message dated Tue, 27 Jan 2015 22:21:17 + with message-id and subject line Bug#775970: fixed in jasper 1.900.1-7+squeeze4 has caused the Debian Bug report #775970, regarding jasper: CVE-2014-8157 CVE-2014-8158 to be marked as done. This means that you claim that the problem has been deal

Processed: Re: Bug#776422: [systemd] power button does poweroff instead of STR after each upgrade of systemd

2015-01-27 Thread Debian Bug Tracking System
Processing control commands: > severity -1 normal Bug #776422 [systemd] [systemd] power button does poweroff instead of STR after each upgrade of systemd Severity set to 'normal' from 'grave' > tags -1 moreinfo unreproducible Bug #776422 [systemd] [systemd] power button does poweroff instead of S

Bug#776422: [systemd] power button does poweroff instead of STR after each upgrade of systemd

2015-01-27 Thread Michael Biebl
control: severity -1 normal control: tags -1 moreinfo unreproducible Am 27.01.2015 um 22:40 schrieb Timo Weingärtner: > Package: systemd > Version: 215-10 > Severity: grave > Justification: causes data loss > > I configured the power button to do STR in KDE. After each upgrade of systemd > the p

Bug#775114: marked as done ([libkdeui5] KRecursiveFilterProxyModel: The model was not working properly)

2015-01-27 Thread Debian Bug Tracking System
Your message dated Tue, 27 Jan 2015 21:51:29 + with message-id and subject line Bug#775114: fixed in kde4libs 4:4.14.2-5 has caused the Debian Bug report #775114, regarding [libkdeui5] KRecursiveFilterProxyModel: The model was not working properly to be marked as done. This means that you cl

Bug#776400: marked as done (grub-ieee1275: ppc64el-disable-vsx.patch applied to 32-bit kernel.img causes exception at 0x20000008 (mtmsrd 0))

2015-01-27 Thread Debian Bug Tracking System
Your message dated Tue, 27 Jan 2015 21:50:11 + with message-id and subject line Bug#776400: fixed in grub2 2.02~beta2-21 has caused the Debian Bug report #776400, regarding grub-ieee1275: ppc64el-disable-vsx.patch applied to 32-bit kernel.img causes exception at 0x2008 (mtmsrd 0) to be ma

Bug#776422: [systemd] power button does poweroff instead of STR after each upgrade of systemd

2015-01-27 Thread Timo Weingärtner
Package: systemd Version: 215-10 Severity: grave Justification: causes data loss I configured the power button to do STR in KDE. After each upgrade of systemd the power button does poweroff instead causing loss of unsaved work. This did not happen before the introduction of systemd as a replacem

Processed: Re: Bug#775395: partman-zfs in d-i jessie image does not create grub-compatible /boot ZFS mirror

2015-01-27 Thread Debian Bug Tracking System
Processing control commands: > severity -1 important Bug #775395 [partman-zfs] partman-zfs in d-i jessie image does not create grub-compatible /boot ZFS mirror Severity set to 'important' from 'grave' -- 775395: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=775395 Debian Bug Tracking System

Bug#775395: partman-zfs in d-i jessie image does not create grub-compatible /boot ZFS mirror

2015-01-27 Thread Steven Chamberlain
Control: severity -1 important Michael Milligan wrote: > Package: partman-zfs > Version: 42 > Severity: grave > Tags: d-i > Justification: renders package unusable for ZFS-based install > > (which is probably the reason someone is trying Debian/kFreeBSD .. to > use ZFS) Since this is a kfreebsd-

Bug#621786: mdadm: invalid pointer or memory corruption on armel system

2015-01-27 Thread Arnaud Desmier
Hi, Sorry for the late answer, I'm not using this email address very often... You can close this issue, I believe this was more hardware related. I don't remember to encounter this issue since a while and now I'm using a new hardware. Thanks, Arnaud On 05/12/2014 15:59, Michael Tokarev wro

Bug#770009: Backtrace for the hang

2015-01-27 Thread Vincent Fourmond
I've run the build on the MIPS portebox. It hangs on the first SVG to PNG conversion. Here is a full backtrace. The process is for now stopped on the porterbox; I think I can leave it for some hours more at least, if other information could be useful. Hope it helps, Vincent -- To UNS

Bug#775395: partman-zfs in d-i jessie image does not create grub-compatible /boot ZFS mirror

2015-01-27 Thread Steven Chamberlain
Hi, Michael Milligan wrote: > But installing Grub failed with "unknown filesystem". In > troubleshooting the issue, it seems grub2 (version currently is > 2.02~beta2-19) does not recognize the "feature@lz4_compress" option (and > had been previously reported) of the ZFS pools that kFreeBSD kernel

Processed: Re: Bug#776415: kfreebsd-10: CVE-2014-8612: SCTP kernel mem disclosure/corruption

2015-01-27 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tags 776415 + pending Bug #776415 [kfreebsd-10] kfreebsd-10: CVE-2014-8612: SCTP kernel mem disclosure/corruption Added tag(s) pending. > tags 776416 + pending Bug #776416 [kfreebsd-10] kfreebsd-10: CVE-2014-8613: SCTP stream reset vulnerability

Bug#776400: grub-ieee1275: ppc64el-disable-vsx.patch applied to 32-bit kernel.img causes exception at 0x20000008 (mtmsrd 0)

2015-01-27 Thread Colin Watson
On Tue, Jan 27, 2015 at 11:17:04AM -0600, Mark wrote: > On a powerpc g4 (mac) system I am trying to switch from yaboot to grub. > The provided image always faults 8 bytes in. Looking at the patches for > grub I see "ppc64el-disable-vsx.patch" > http://anonscm.debian.org/cgit/pkg-grub/grub.git/tre

Processed: Unblock

2015-01-27 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > unblock 775114 by 775745 Bug #775114 [libkdeui5] [libkdeui5] KRecursiveFilterProxyModel: The model was not working properly 775114 was blocked by: 775745 775114 was not blocking any bugs. Removed blocking bug(s) of 775114: 775745 > thanks Stoppin

Bug#776416: kfreebsd-10: CVE-2014-8613: SCTP stream reset vulnerability

2015-01-27 Thread Steven Chamberlain
Package: kfreebsd-10 Version: 10.1~svn274115-1 Severity: grave Tags: security patch Hi, A unprivileged local DoS was reported in the FreeBSD kernel implementation of SCTP: https://security.freebsd.org/advisories/FreeBSD-SA-15:03.sctp.asc This only affects systems serving SCTP connections. A pat

Bug#776415: kfreebsd-10: CVE-2014-8612: SCTP kernel mem disclosure/corruption

2015-01-27 Thread Steven Chamberlain
Package: kfreebsd-10 Version: 10.1~svn274115-1 Severity: grave Tags: security patch Hi, A kernel memory disclosure/corruption vulnerability was announced, in the FreeBSD kernel's implementation of SCTP: https://security.FreeBSD.org/advisories/FreeBSD-SA-15:02.kmem.asc This could affect the kfree

Processed: Blocking

2015-01-27 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > block 775114 by 775745 Bug #775114 [libkdeui5] [libkdeui5] KRecursiveFilterProxyModel: The model was not working properly 775114 was not blocked by any bugs. 775114 was not blocking any bugs. Added blocking bug(s) of 775114: 775745 > thanks Stopp

Bug#775882: [debian-mysql] Bug#775882: mariadb-10.0: affected by CVEs of the Oracle Patch Update for January 2015?

2015-01-27 Thread Salvatore Bonaccorso
Hi Otto, On Tue, Jan 27, 2015 at 09:20:51PM +0200, Otto Kekäläinen wrote: > 2015-01-27 8:09 GMT+02:00 Salvatore Bonaccorso : > > Thanks for the update and checking with upstream regarding the two > > other CVEs. 10.0.16 seems now avaiable[1] (even though not yet > > announced on the webpage itself

Bug#775785: trac-mercurial 1.0.0.4

2015-01-27 Thread Andrey Rahmatullin
On Tue, Jan 20, 2015 at 02:12:41AM +0100, Johannes Weißl wrote: > An alternative would be to directly package version 1.0.0.4 (c91c42e), > which contains a few more compatibility fixes for mercurial 3.x (for > bugs which I didn't encounter, but other users have): > > http://trac.edgewall.org/wiki/

Bug#745195: status

2015-01-27 Thread Willi Mann
Control: tag -1 + pending I've upgraded this bug to RC status because it is a regression from wheezy. It is especially bad because it may bite some reverse dependencies that use unrtf as part of a processing chain. Salvatore Bonaccorso has already proposed a fix for this bug, based on the upstrea

Processed: status

2015-01-27 Thread Debian Bug Tracking System
Processing control commands: > tag -1 + pending Bug #745195 [unrtf] unrtf 0.21 outputs hex.junk to stdout Added tag(s) pending. -- 745195: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=745195 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems -- To UNSUBSCRIBE, email to

Bug#776410: marked as done (linux: FTBFS on arm64 - find: `debian/zlib-modules-3.16.0-4-arm64-di': No such file or directory)

2015-01-27 Thread Debian Bug Tracking System
Your message dated Tue, 27 Jan 2015 19:20:27 + with message-id <1422386427.2709.1.ca...@decadent.org.uk> and subject line Re: Bug#776410: linux: FTBFS on arm64 - find: `debian/zlib-modules-3.16.0-4-arm64-di': No such file or directory has caused the Debian Bug report #776410, regarding linux:

Bug#775882: [debian-mysql] Bug#775882: mariadb-10.0: affected by CVEs of the Oracle Patch Update for January 2015?

2015-01-27 Thread Otto Kekäläinen
2015-01-27 8:09 GMT+02:00 Salvatore Bonaccorso : > Thanks for the update and checking with upstream regarding the two > other CVEs. 10.0.16 seems now avaiable[1] (even though not yet > announced on the webpage itself). > > [1] https://downloads.mariadb.com/files/MariaDB/mariadb-10.0.16/source 1

Processed: severity of 745195 is serious

2015-01-27 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 745195 serious Bug #745195 [unrtf] unrtf 0.21 outputs hex.junk to stdout Severity set to 'serious' from 'normal' > thanks Stopping processing here. Please contact me if you need assistance. -- 745195: http://bugs.debian.org/cgi-bin/bugr

Processed: found 774898 in 1.7.0-3.2

2015-01-27 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > # Also present in testing based on the diff between sid and testing > found 774898 1.7.0-3.2 Bug #774898 [macchanger] fails to detect silent driver failure to change MAC Marked as found in versions macchanger/1.7.0-3.2. > thanks Stopping processin

Bug#776410: linux: FTBFS on arm64 - find: `debian/zlib-modules-3.16.0-4-arm64-di': No such file or directory

2015-01-27 Thread Niels Thykier
Source: linux Version: 3.16.7-ckt4-1 Severity: serious Hi, The linux source package FTBFS on arm64[1]. I have include the (hopefully) relevant part of the log below: """ These modules from 3.16.0-4-arm64 are unpackaged: kernel/arch/arm64/crypto/aes-ce-blk.ko [... long list of .k

Bug#775638: marked as done (IPv6 database is corrupt)

2015-01-27 Thread Debian Bug Tracking System
Your message dated Tue, 27 Jan 2015 18:48:36 + with message-id and subject line Bug#775638: fixed in geoip-database 20141027-2 has caused the Debian Bug report #775638, regarding IPv6 database is corrupt to be marked as done. This means that you claim that the problem has been dealt with. If

Bug#776409: —Bug#767832— not fixed in cryptsetup 2:1.6.6-4 nor 2:1.6.6-5

2015-01-27 Thread zer0 divide
Package: initramfs-tools Version: 0.118_all Severity: Critical Hi, Unfortunately, the 767832 bug still relevant with : * cryptsetup 2:1.6.6-5amd64 * initramfs-tools 0.118 My system does not start automatically after entering the password for unlocking the root partition. I have to

Bug#775851: marked as done (geoip-generator produces faulty v6/city database)

2015-01-27 Thread Debian Bug Tracking System
Your message dated Tue, 27 Jan 2015 18:33:28 + with message-id and subject line Bug#775851: fixed in geoip 1.6.4-2 has caused the Debian Bug report #775851, regarding geoip-generator produces faulty v6/city database to be marked as done. This means that you claim that the problem has been dea

Bug#775970: marked as done (jasper: CVE-2014-8157 CVE-2014-8158)

2015-01-27 Thread Debian Bug Tracking System
Your message dated Tue, 27 Jan 2015 18:18:44 + with message-id and subject line Bug#775970: fixed in jasper 1.900.1-debian1-2.4 has caused the Debian Bug report #775970, regarding jasper: CVE-2014-8157 CVE-2014-8158 to be marked as done. This means that you claim that the problem has been dea

Processed: tagging 775439

2015-01-27 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tags 775439 + sid Bug #775439 [winetricks] winetricks: vcrun2013 not installable (sha1sum mismatch) Added tag(s) sid. > thanks Stopping processing here. Please contact me if you need assistance. -- 775439: http://bugs.debian.org/cgi-bin/bugrepo

Processed: severity of 776251 is normal, tagging 776251

2015-01-27 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > # only systems with local modifications of non-conffiles are affected > severity 776251 normal Bug #776251 [ack-grep] ack-grep fails to install due to diversion problem Severity set to 'normal' from 'grave' > tags 776251 + wontfix Bug #776251 [ack

Bug#775776: marked as done (polarssl: CVE-2015-1182: Remote attack using crafted certificates)

2015-01-27 Thread Debian Bug Tracking System
Your message dated Tue, 27 Jan 2015 17:19:00 + with message-id and subject line Bug#775776: fixed in polarssl 1.3.9-2.1 has caused the Debian Bug report #775776, regarding polarssl: CVE-2015-1182: Remote attack using crafted certificates to be marked as done. This means that you claim that th

Bug#776400: grub-ieee1275: ppc64el-disable-vsx.patch applied to 32-bit kernel.img causes exception at 0x20000008 (mtmsrd 0)

2015-01-27 Thread Mark
Package: grub-ieee1275 Version: 2.02~beta2-20 Severity: grave Justification: renders package unusable Dear Maintainer, On a powerpc g4 (mac) system I am trying to switch from yaboot to grub. The provided image always faults 8 bytes in. Looking at the patches for grub I see "ppc64el-disable-vsx.p

Bug#776251: ack-grep fails to install due to diversion problem

2015-01-27 Thread Olivier Schwander
Le 26 Jan 2015 15:17, gregor herrmann a écrit: > On Mon, 26 Jan 2015 01:01:03 +0100, Axel Beckert wrote: > > > > $ dpkg-divert --list "*ack*" > > > local diversion of /usr/bin/ack-grep to /usr/bin/ack > > ^ > > ... which backs my assumption that a _local_ diversion (i.e. none made > > by a p

Processed: fixed 776391 in 2.13-38+deb7u7

2015-01-27 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > fixed 776391 2.13-38+deb7u7 Bug #776391 [eglibc] [CVE-2015-0235]: heap-based buffer overflow in __nss_hostname_digits_dots() There is no source info for the package 'eglibc' at version '2.13-38+deb7u7' with architecture '' Unable to make a sourc

Processed: fixed 776391 in 2.18-1

2015-01-27 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > fixed 776391 2.18-1 Bug #776391 [eglibc] [CVE-2015-0235]: heap-based buffer overflow in __nss_hostname_digits_dots() There is no source info for the package 'eglibc' at version '2.18-1' with architecture '' Unable to make a source version for ve

Processed: reopening 776391, found 776391 in 2.13-38+deb7u6

2015-01-27 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > # Reopen and add stable as oldstable and stable diverged > reopen 776391 Bug #776391 {Done: Florian Weimer } [eglibc] [CVE-2015-0235]: heap-based buffer overflow in __nss_hostname_digits_dots() Bug reopened Ignoring request to alter fixed version

Processed: reassign 776391 to eglibc

2015-01-27 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > # Fixed in glibc in sid/testing, reassigning to eglibc > # Assuming oldstable to be affected > reassign 776391 eglibc 2.11.3-4 Bug #776391 {Done: Florian Weimer } [libc6] [CVE-2015-0235]: heap-based buffer overflow in __nss_hostname_digits_dots()

Bug#776392: absence of default opt-cmd-flags makes connections fail

2015-01-27 Thread chrysn
Package: apt-dater Version: 1.0.1+git20150119-1 Severity: serious apt-dater by default sets an empty (commented out) options file. after adding hosts, all connections failed because the commands were like this (transcript's command file): "/usr/bin/ssh" "(null)" "-l" "chrysn" "hephaistos.amsu

Processed: severity of 759633 is important

2015-01-27 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > severity 759633 important Bug #759633 [src:tomcat-maven-plugin] tomcat-maven-plugin: Please replace dependencies on tomcat6 with tomcat8 Severity set to 'important' from 'serious' > thanks Stopping processing here. Please contact me if you need

Bug#686877: marked as done (libtomcat-maven-plugin-java: please migrate to Tomcat 7)

2015-01-27 Thread Debian Bug Tracking System
Your message dated Tue, 27 Jan 2015 15:49:44 + with message-id and subject line Bug#686877: fixed in tomcat-maven-plugin 1.1-2.2 has caused the Debian Bug report #686877, regarding libtomcat-maven-plugin-java: please migrate to Tomcat 7 to be marked as done. This means that you claim that the

Bug#776391: marked as done ([CVE-2015-0235]: heap-based buffer overflow in __nss_hostname_digits_dots())

2015-01-27 Thread Debian Bug Tracking System
Your message dated Tue, 27 Jan 2015 16:40:15 +0100 with message-id <877fw81bc0@mid.deneb.enyo.de> and subject line Re: Bug#776391: [CVE-2015-0235]: heap-based buffer overflow in __nss_hostname_digits_dots() has caused the Debian Bug report #776391, regarding [CVE-2015-0235]: heap-based buffer

Bug#776391: [CVE-2015-0235]: heap-based buffer overflow in __nss_hostname_digits_dots()

2015-01-27 Thread Ondřej Surý
Package: libc6 Version: 2.19-13 Severity: grave Tags: security upstream Justification: user security hole -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Hi, as this has been made public, let's fix it quickly (it might even be a critical as this is remote): From: https://bugzilla.redhat.com/sho

Bug#709910: marked as done (squid: postinst uses /usr/share/doc content (Policy 12.3))

2015-01-27 Thread Debian Bug Tracking System
Your message dated Tue, 27 Jan 2015 15:20:59 + with message-id and subject line Bug#709910: fixed in squid 2.7.STABLE9-5 has caused the Debian Bug report #709910, regarding squid: postinst uses /usr/share/doc content (Policy 12.3) to be marked as done. This means that you claim that the probl

Bug#776388: chromium does not start at all

2015-01-27 Thread Santiago Vila
Package: chromium Version: 40.0.2214.91-1 Severity: serious chromium does not start at all in my machine. Instead, when started from a terminal, it writes tons of messages like this: [2755:2755:0127/145321:ERROR:gles2_cmd_decoder.cc(3952)] Error: 5 for Command kResizeCHROMIUM ^C[2755:2755:0127/

Bug#774328: Tagging bug

2015-01-27 Thread Mathieu Parent
tag 774328 + moreinfo unreproducible help severity 774328 important thanks I'm lowering it since it's not reproducible. Regards -- Mathieu Parent -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Processed: Tagging bug

2015-01-27 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tag 774328 + moreinfo unreproducible help Bug #774328 [ctdb] ctdb: Failed to start ctdb.service: Unit ctdb.service failed to load: No such file or directory. Added tag(s) unreproducible, help, and moreinfo. > severity 774328 important Bug #774328

Bug#774328: [Pkg-samba-maint] Bug#774328: ctdb: Failed to start ctdb.service: Unit ctdb.service failed to load: No such file or directory.

2015-01-27 Thread Mathieu Parent
2015-01-16 9:20 GMT+01:00 Martin Schwenke : > On Tue, 13 Jan 2015 11:26:48 +0100, Mathieu Parent > wrote: > >> 2014-12-31 23:16 GMT+01:00 Martin Schwenke : > >> > # systemctl start ctdb >> > Failed to start ctdb.service: Unit ctdb.service failed to load: No such >> > file or directory. >> [...] >

Bug#775888: virtualbox: CVE-2014-6588 CVE-2014-6589 CVE-2014-6590 CVE-2014-6595 CVE-2015-0418 CVE-2015-0427

2015-01-27 Thread Aron Xu
I'll check, if that's not too complicated I'll do it. Cheers, Aron -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Bug#775888: virtualbox: CVE-2014-6588 CVE-2014-6589 CVE-2014-6590 CVE-2014-6595 CVE-2015-0418 CVE-2015-0427

2015-01-27 Thread Ritesh Raj Sarraf
On 01/27/2015 03:51 PM, Moritz Mühlenhoff wrote: >> Please find attached the debdiff. Please give me an ACK, and then I'll >> > do the upload. > Looks good to me. Please upload to security-master, I'll take care of > the update. Thanks Moritz. The upload is done. -- Ritesh Raj Sarraf | http://pe

Bug#775888: virtualbox: CVE-2014-6588 CVE-2014-6589 CVE-2014-6590 CVE-2014-6595 CVE-2015-0418 CVE-2015-0427

2015-01-27 Thread Gianfranco Costamagna
Hi Aron, can you please also followup on squeeze-bpo? (might need a kbuild backport to make it build) cheers, (thanks) G. Il Martedì 27 Gennaio 2015 13:57, Aron Xu ha scritto: I'll follow-up in wheezy-backports this weekend, at that time it should land in jessie already. Best, Aron On T

Bug#775871: marked as done (torbrowser-launcher: TorBrowser Bundle signing key changed)

2015-01-27 Thread Debian Bug Tracking System
Your message dated Tue, 27 Jan 2015 13:18:31 + with message-id and subject line Bug#775871: fixed in torbrowser-launcher 0.1.9-1~experimental1 has caused the Debian Bug report #775871, regarding torbrowser-launcher: TorBrowser Bundle signing key changed to be marked as done. This means that y

Processed: closing 769346

2015-01-27 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > close 769346 Bug #769346 [jspwiki] jspwiki: switch to tomcat8 (or tomcat7) Marked Bug as done > thanks Stopping processing here. Please contact me if you need assistance. -- 769346: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=769346 Debian

Processed: fixed 769346 in 2.8.0-6

2015-01-27 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > fixed 769346 2.8.0-6 Bug #769346 [jspwiki] jspwiki: switch to tomcat8 (or tomcat7) Marked as fixed in versions jspwiki/2.8.0-6. > thanks Stopping processing here. Please contact me if you need assistance. -- 769346: http://bugs.debian.org/cgi-bi

Bug#775888: virtualbox: CVE-2014-6588 CVE-2014-6589 CVE-2014-6590 CVE-2014-6595 CVE-2015-0418 CVE-2015-0427

2015-01-27 Thread Aron Xu
I'll follow-up in wheezy-backports this weekend, at that time it should land in jessie already. Best, Aron On Tue, Jan 27, 2015 at 6:21 PM, Moritz Mühlenhoff wrote: > On Mon, Jan 26, 2015 at 09:14:55PM +0530, Ritesh Raj Sarraf wrote: >> On 01/26/2015 09:07 PM, Ritesh Raj Sarraf wrote: >> > On 01

Bug#776007: buffer overrun in acknowledge.c(gi)

2015-01-27 Thread Moritz Mühlenhoff
On Tue, Jan 27, 2015 at 12:34:09PM +0100, Axel Beckert wrote: > Hi Moritz, > > Moritz Mühlenhoff wrote: > > I think it's sufficient if we fix this in a point update, can you take > > care of that? > > Do you think of Jessie or Wheezy? As far as I can see, Wheezy is > not affected: > https://sourc

Bug#776007: buffer overrun in acknowledge.c(gi)

2015-01-27 Thread Axel Beckert
Hi Moritz, Moritz Mühlenhoff wrote: > I think it's sufficient if we fix this in a point update, can you take > care of that? Do you think of Jessie or Wheezy? As far as I can see, Wheezy is not affected: https://sources.debian.net/src/xymon/4.3.0%7Ebeta2.dfsg-9.1/web/bb-ack.c/#L248 > Has this be

Bug#775851: marked as done (geoip-generator produces faulty v6/city database)

2015-01-27 Thread Debian Bug Tracking System
Your message dated Tue, 27 Jan 2015 11:33:26 + with message-id and subject line Bug#775851: fixed in geoip 1.6.2-4 has caused the Debian Bug report #775851, regarding geoip-generator produces faulty v6/city database to be marked as done. This means that you claim that the problem has been dea

Bug#775356: marked as done (resolvconf: bashisms in /etc/dhcp/dhclient-enter-hooks.d/resolvconf: shopt and [[ ... ]])

2015-01-27 Thread Debian Bug Tracking System
Your message dated Tue, 27 Jan 2015 11:03:54 + with message-id and subject line Bug#775356: fixed in resolvconf 1.76.1 has caused the Debian Bug report #775356, regarding resolvconf: bashisms in /etc/dhcp/dhclient-enter-hooks.d/resolvconf: shopt and [[ ... ]] to be marked as done. This means

Bug#776007: buffer overrun in acknowledge.c(gi)

2015-01-27 Thread Moritz Mühlenhoff
On Thu, Jan 22, 2015 at 06:00:54PM +0100, Christoph Berg wrote: > Re: To Debian Bug Tracking System 2015-01-22 > <20150122161925.ga23...@msg.df7cb.de> > > Source: xymon > > Version: 4.3.17-1 > > Severity: grave > > Tags: security patch pending > > > > web/acknowledge.c uses a string twice in a fo

Bug#734303: Not to be released with jessie

2015-01-27 Thread Moritz Mühlenhoff
On Sun, Jan 05, 2014 at 06:34:55PM +, Dominic Hargreaves wrote: > Source: movabletype-opensource > Version: 5.2.7+dfsg-1 > Severity: serious > Justification: maintainer > > Support of MTOS by upstream (at least in the English speaking community) > is now very sketchy. The security update annou

Processed: your mail

2015-01-27 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tag 755633 + pending Bug #755633 [src:sorl-thumbnail] sorl-thumbnail: Please ensure it works with Django 1.7 Added tag(s) pending. > thanks Stopping processing here. Please contact me if you need assistance. -- 755633: http://bugs.debian.org/cg

Bug#754565: moodle removal

2015-01-27 Thread Riley Baird
On 27/01/15 21:27, Joost van Baal-Ilić wrote: > On Tue, Jan 27, 2015 at 11:21:22AM +0100, Joost van Baal-Ilić wrote: >> Hi, >> >> I don't think removal of moodle right now is a sane thing. I'll upload >> a final 2.7.2 package to unstable within about 5 weeks. >> >> There has been a private discuss

Bug#754565: moodle removal

2015-01-27 Thread Joost van Baal-Ilić
On Tue, Jan 27, 2015 at 11:21:22AM +0100, Joost van Baal-Ilić wrote: > Hi, > > I don't think removal of moodle right now is a sane thing. I'll upload > a final 2.7.2 package to unstable within about 5 weeks. > > There has been a private discussion between me, Thijs Kinkhorst and Moritz > Mühlenh

Bug#775888: virtualbox: CVE-2014-6588 CVE-2014-6589 CVE-2014-6590 CVE-2014-6595 CVE-2015-0418 CVE-2015-0427

2015-01-27 Thread Moritz Mühlenhoff
On Tue, Jan 27, 2015 at 09:53:45AM +, Gianfranco Costamagna wrote: > Hi Moritz, please read carefully this thread :) > > > >Could you please check back with upstream on CVE-2015-0377 and CVE-2015-0418? > > jessie is not affected, and wheezy has already the patch on this thread > > the two C

Bug#775888: virtualbox: CVE-2014-6588 CVE-2014-6589 CVE-2014-6590 CVE-2014-6595 CVE-2015-0418 CVE-2015-0427

2015-01-27 Thread Moritz Mühlenhoff
On Mon, Jan 26, 2015 at 09:14:55PM +0530, Ritesh Raj Sarraf wrote: > On 01/26/2015 09:07 PM, Ritesh Raj Sarraf wrote: > > On 01/21/2015 01:23 PM, Moritz Muehlenhoff wrote: > >> In the past someone from upstream posted the upstream commits to the > >> bug log, maybe you can contact them for more inf

Bug#754565: moodle removal

2015-01-27 Thread Joost van Baal-Ilić
Hi, I don't think removal of moodle right now is a sane thing. I'll upload a final 2.7.2 package to unstable within about 5 weeks. There has been a private discussion between me, Thijs Kinkhorst and Moritz Mühlenhoff about this. Thanks, Bye, Joost -- To UNSUBSCRIBE, email to debian-bugs-rc-

Bug#775888: virtualbox: CVE-2014-6588 CVE-2014-6589 CVE-2014-6590 CVE-2014-6595 CVE-2015-0418 CVE-2015-0427

2015-01-27 Thread Gianfranco Costamagna
Hi Moritz, please read carefully this thread :) >Could you please check back with upstream on CVE-2015-0377 and CVE-2015-0418? jessie is not affected, and wheezy has already the patch on this thread the two CVEs are for VirtualBox prior to 3.2.26, 4.0.28, 4.1.36, 4.2.28 so 4.3 not affected.

Bug#775888: virtualbox: CVE-2014-6588 CVE-2014-6589 CVE-2014-6590 CVE-2014-6595 CVE-2015-0418 CVE-2015-0427

2015-01-27 Thread Ritesh Raj Sarraf
On 01/26/2015 10:51 PM, Moritz Mühlenhoff wrote: >> Moritz, >> > >> > For unstable, I've pushed the upload an d asked for an exception. > I've added the VMSVGA fixes to the security tracker, but there are also > two issues in "Core", which apply to wheezy/jessie: > > Could you please check back wi

Bug#775882: [debian-mysql] Bug#775882: mariadb-10.0: affected by CVEs of the Oracle Patch Update for January 2015?

2015-01-27 Thread Salvatore Bonaccorso
Hi Otto, On Tue, Jan 27, 2015 at 10:01:09AM +0200, Otto Kekäläinen wrote: > Here is the reply from a MariaDB core developer: > > 2015-01-26 21:39 GMT+02:00 Sergei Golubchik : > > Hi, Otto! > > > > On Jan 26, Otto Kekäläinen wrote: > >> Hello Sergei! > >> > >> The page https://mariadb.com/kb/en/ma

Bug#775882: [debian-mysql] Bug#775882: mariadb-10.0: affected by CVEs of the Oracle Patch Update for January 2015?

2015-01-27 Thread Otto Kekäläinen
Here is the reply from a MariaDB core developer: 2015-01-26 21:39 GMT+02:00 Sergei Golubchik : > Hi, Otto! > > On Jan 26, Otto Kekäläinen wrote: >> Hello Sergei! >> >> The page https://mariadb.com/kb/en/mariadb/security/ does not mention >> the ones Salvatore asks about below: 0385 and 0409. Any i