Bug#781875: beignet: kernels don't seem to run

2015-04-03 Thread Giuseppe Bilotta
Package: beignet-opencl-icd Version: 1.0.2-1 Severity: grave Tags: upstream Since version 1.0.1 beignet has been able to recognitze the hardware on my machine 00:02.0 VGA compatible controller [0300]: Intel Corporation 4th Gen Core Processor Integrated Graphics Controller [8086:0416] (rev 06) a

Bug#781839: CVE-2015-2774

2015-04-03 Thread Sergei Golovan
Hi Moritz! I'm not an expert in SSL, so I can't really say if it's a real threat. But i think I'd better prepare a patched package for jessie. Should I do it for wheezy also? (Note, that we decided not to bother disabling SSLv3 for the erlang-ssl currently in wheezy.) On Fri, Apr 3, 2015 at 8:07

Bug#769716: marked as done (iceweasel: downloads Cisco's OpenH264 video codec)

2015-04-03 Thread Debian Bug Tracking System
Your message dated Sat, 04 Apr 2015 03:41:06 + with message-id and subject line Bug#769716: fixed in iceweasel 37.0.1-1 has caused the Debian Bug report #769716, regarding iceweasel: downloads Cisco's OpenH264 video codec to be marked as done. This means that you claim that the problem has b

Processed: your mail

2015-04-03 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > tag 781652 + pending Bug #781652 [python3-llfuse-dbg] python3-llfuse-dbg: fails to upgrade from 'testing' - trying to overwrite /usr/lib/python3/dist-packages/llfuse/capi.cpython-34dm-x86_64-linux-gnu.so Added tag(s) pending. > thanks Stopping p

Processed: Re: Bug#758086: CVE-2014-3577 Apache HttpComponents hostname verification bypass

2015-04-03 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > retitle 758086 CVE-2014-3577 Apache HttpComponents hostname verification > bypass Bug #758086 [commons-httpclient] CVE-2012-6153: Apache HttpComponents client: Hostname verification susceptible to MITM attack Changed Bug title to 'CVE-2014-3577

Processed: cloning 781554, reopening -1, retitle -1 to docker.io: release cycle is too fast for stable ...

2015-04-03 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > clone 781554 -1 Bug #781554 {Done: "Adam D. Barratt" } [release.debian.org] RM: docker.io -- RoM; release cycle is too fast for stable Bug 781554 cloned as bug 781865 > reopen -1 Bug #781865 {Done: "Adam D. Barratt" } [release.debian.org] RM: do

Bug#758086: CVE-2014-3577 Apache HttpComponents hostname verification bypass

2015-04-03 Thread Markus Koschany
Some more information about this issue. TL;DR this is actually CVE-2014-3577. Debian's package is not affected by CVE-2012-6153. I recommend to fix this bug by applying the debdiff from my last e-mail. We currently apply the 06_fix_CVE-2012-5783.patch [1]. Now I am sure that this patch fixes two C

Bug#779255: qemubuilder: unable to build anything; can't find .DSC file

2015-04-03 Thread gregor herrmann
On Fri, 03 Apr 2015 17:29:30 +0200, Axel Beckert wrote: > I've tried to have a look into the issue and started with trying to > reproduce it. But I fail to even create a base.qemu with it: > > # qemubuilder --create > forking: mke2fs -q -F -j -m1 -O sparse_super /var/cache/pbuilder/base.qemu >

Bug#781863: marked as done (docker.io: release cycle is too fast for stable)

2015-04-03 Thread Debian Bug Tracking System
Your message dated Fri, 3 Apr 2015 20:28:22 -0400 with message-id <20150404002822.ga28...@leliel.pault.ag> and subject line Re: Bug#781863: docker.io: release cycle is too fast for stable has caused the Debian Bug report #781863, regarding docker.io: release cycle is too fast for stable to be marke

Bug#781863: docker.io: release cycle is too fast for stable

2015-04-03 Thread Felipe Sateler
Package: docker.io Version: 1.3.3~dfsg1-2 Severity: serious Quoting from bug #781554: > After talking with Docker upstream, I've decided that the best course of > action to ensure users get a working version of Docker is to strip this > from jessie and maintain it in jessie-backports, keeping tha

Bug#769351: docker.io: statically linked against libc6 without a Built-Using: field

2015-04-03 Thread Felipe Sateler
Package: src:docker.io Followup-For: Bug #769351 Control: tags -1 patch Hi, please find attached a patch implementing this, stealing from the patch at [1] implementing same thing for gdb-avr. I have used libc-dev-bin because libc-dev is a virtual package, libcN-dev has a different N in different

Processed: Re: docker.io: statically linked against libc6 without a Built-Using: field

2015-04-03 Thread Debian Bug Tracking System
Processing control commands: > tags -1 patch Bug #769351 [src:docker.io] docker.io: statically linked against libc6 without a Built-Using: field Added tag(s) patch. -- 769351: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=769351 Debian Bug Tracking System Contact ow...@bugs.debian.org with p

Bug#781504: marked as done (Segmentation fault after pack & ioctl & unpack)

2015-04-03 Thread Debian Bug Tracking System
Your message dated Fri, 03 Apr 2015 22:48:55 + with message-id and subject line Bug#781504: fixed in ruby2.1 2.1.5-2 has caused the Debian Bug report #781504, regarding Segmentation fault after pack & ioctl & unpack to be marked as done. This means that you claim that the problem has been dea

Bug#781858: apt: dangling pointer crash

2015-04-03 Thread Chris Bainbridge
Package: apt Version: 1.0.9.7 Severity: serious Dear Maintainer, The apt source includes in apt-pkg/acquire-item.cc: // FIXME: this points to a c++ string that goes out of scope Mode = decompProg.c_str(); } Mode is a char ptr decompProg is a std::string When decompProg goes o

Bug#780940: DevSlp

2015-04-03 Thread Víctor Cana Benítez
To complement my previous message, I have ran "hdparm -I /dev/sda" with the hdparm version from Jessie's repository. According to this patch http://sourceforge.net/p/hdparm/patches/35/ that is supposedly included in Jessie's hdparm package, it should show an output about DevSlp when the device

Bug#780940: DevSlp

2015-04-03 Thread Víctor Cana Benítez
Dear Mr. Niels Thykier, ¿How can I know if I have a DevSlp disk? When I enter "hdparm -I /dev/sda" it doesn't show anything containing DevSleep nor Devslp. Thank you very much for your valuable help. Best regards. -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subj

Bug#774358: libxml2: CVE-2014-3660 patch makes installation-guide FTBFS

2015-04-03 Thread Cyril Brulebois
Hi people, (adding debian-boot@ for reference.) Samuel Thibault (2015-03-26): > Samuel Thibault, le Thu 26 Mar 2015 02:17:01 +0100, a écrit : > > Control: found -1 2.8.0+dfsg1-7+wheezy3 > > > > This is still an issue in stable, the proposed patch was not applied > > there, and thus installation

Bug#781228: marked as done (freexl: Multiple vulnerabilitities)

2015-04-03 Thread Debian Bug Tracking System
Your message dated Fri, 03 Apr 2015 18:17:05 + with message-id and subject line Bug#781228: fixed in freexl 1.0.0b-1+deb7u1 has caused the Debian Bug report #781228, regarding freexl: Multiple vulnerabilitities to be marked as done. This means that you claim that the problem has been dealt wi

Bug#781839: CVE-2015-2774

2015-04-03 Thread Moritz Muehlenhoff
Source: erlang Severity: grave Tags: security (Feel free to downgrade the severity, I don't have a full picture of Erlang's SSL implementation) This has been assigned CVE-2015-2774: http://openwall.com/lists/oss-security/2015/03/27/9 Fix is here: https://github.com/erlang/otp/commit/e53c55dd0ab6

Bug#781543: marked as done (FTBFS: failing test: FAIL: test for each member equality)

2015-04-03 Thread Debian Bug Tracking System
Your message dated Fri, 03 Apr 2015 15:36:24 + with message-id and subject line Bug#781543: fixed in python-debian 0.1.26 has caused the Debian Bug report #781543, regarding FTBFS: failing test: FAIL: test for each member equality to be marked as done. This means that you claim that the probl

Bug#779255: qemubuilder: unable to build anything; can't find .DSC file

2015-04-03 Thread Axel Beckert
Hi, Niels Thykier wrote: > On Thu, 26 Feb 2015 10:20:31 +1100 Dmitry Smirnov wrote: > > After upgrade to Jessie quemubuilder stopped working for me on all > > architectures: "unstable" images successfully install dependencies on > > "--build > > mypkg_1.0-1.dsc" but then fail as follows: > >

Processed: user debian-secur...@lists.debian.org, usertagging 781806 ..., found 781806 in 0.9.0-2 ...

2015-04-03 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > user debian-secur...@lists.debian.org Setting user to debian-secur...@lists.debian.org (was car...@debian.org). > usertags 781806 + tracked There were no usertags set. Usertags are now: tracked. > retitle 781806 das-watchdog: CVE-2015-2831: Buffer

Processed: Re: FTBFS: failing test: FAIL: test for each member equality

2015-04-03 Thread Debian Bug Tracking System
Processing control commands: > tags -1 patch sid Bug #781543 [src:python-debian] FTBFS: failing test: FAIL: test for each member equality Added tag(s) sid and patch. -- 781543: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=781543 Debian Bug Tracking System Contact ow...@bugs.debian.org with

Bug#781543: FTBFS: failing test: FAIL: test for each member equality

2015-04-03 Thread Dmitry Shachnev
Control: tags -1 patch sid Hi, On Mon, 30 Mar 2015 21:22:47 +0200, Salvatore Bonaccorso wrote: > Traceback (most recent call last): > File "/«PKGBUILDDIR»/tests/test_debfile.py", line 64, in test_getmember > self.assertEqual(m.owner, mstat[stat.ST_UID]) > AssertionError: 0 != 1000 This is

Bug#781806: CVE-2015-2831

2015-04-03 Thread Moritz Muehlenhoff
Package: das-watchdog Severity: grave Tags: security Hi, this has been assigned CVE-2015-2831: http://www.openwall.com/lists/oss-security/2015/04/01/8 Cheers, Moritz -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact li