On 2021-03-17 00:51, Andreas Beckmann wrote:
> On 16/03/2021 16.05, Andrius Merkys wrote:
>> symlink_to_dir /usr/share/doc/nauty libnauty2 2.7r1+ds-1~
>
> That looks correct.
Thanks for confirming.
>> From this I gather that upgrades of nauty <= 2.7r1+ds-1 to this new
>> version should trigger
tag 985297 + moreinfo
tag 985297 + unreproducible
thanks
Hi,
Am 15.03.21 um 15:11 schrieb Andreas Beckmann:
> during a test with piuparts I noticed your package fails to upgrade from
> 'buster'.
In what scenario?
- a clean buster debootstrap + apt install libreoffice
- a clean buster deboo
Processing commands for cont...@bugs.debian.org:
> tag 985297 + moreinfo
Bug #985297 [libreoffice-common] libreoffice-common: do not use dir_to_symlink
for /usr/lib/libreoffice/share/registry
Added tag(s) moreinfo.
> tag 985297 + unreproducible
Bug #985297 [libreoffice-common] libreoffice-common:
Your message dated Wed, 17 Mar 2021 05:19:00 +
with message-id
and subject line Bug#985220: fixed in velocity 1.7-6
has caused the Debian Bug report #985220,
regarding velocity: CVE-2020-13936
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not
Processing control commands:
> tag -1 pending
Bug #985220 [src:velocity] velocity: CVE-2020-13936
Added tag(s) pending.
--
985220: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=985220
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
Control: tag -1 pending
Hello,
Bug #985220 in velocity reported by you has been fixed in the
Git repository and is awaiting an upload. You can see the commit
message below and you can check the diff of the fix at:
https://salsa.debian.org/java-team/velocity/-/commit/8ca516ee3f87fc810e1ffd42c635b
Your message dated Wed, 17 Mar 2021 01:55:19 +
with message-id
and subject line Bug#985265: fixed in psgml 1.4.0-11
has caused the Debian Bug report #985265,
regarding psgml: modifies shipped files:
/usr/share/emacs/site-lisp/psgml/psgml-init.el
to be marked as done.
This means that you clai
On 16/03/2021 16.05, Andrius Merkys wrote:
symlink_to_dir /usr/share/doc/nauty libnauty2 2.7r1+ds-1~
That looks correct.
From this I gather that upgrades of nauty <= 2.7r1+ds-1 to this new
version should trigger the replacement of a symlink with real directory
before placing the files inside
Your message dated Tue, 16 Mar 2021 21:49:15 +
with message-id
and subject line Bug#985124: fixed in fossil 1:2.15~rc1-1
has caused the Debian Bug report #985124,
regarding fossil: fails to update schema for older repositories
to be marked as done.
This means that you claim that the problem h
Source: gitlab-ci-multi-runner
Severity: grave
Tags: security
X-Debbugs-Cc: Debian Security Team
Please see
https://gitlab.com/gitlab-org/cves/-/blob/master/2020/CVE-2020-13327.json
https://gitlab.com/gitlab-org/gitlab-runner/-/issues/26833
There's also CVE-2020-13295, not sure if that also affe
hi,
the package is likely too old to have this bug, but since this package
is currently not used by anything and not meant to be used by any users,
I'd recommend to remove it from testing (we're eventually going to close
it by uploading the latest version to unstable).
cheers
Package: crmsh
Severity: grave
Tags: security
X-Debbugs-Cc: Debian Security Team
This was assigned CVE-2020-35459:
https://www.openwall.com/lists/oss-security/2021/01/12/3
On 16/03/2021 20.01, Étienne Mollier wrote:
Do you have more details on the arb issue ? I tried reproducing
problems with piuparts tests, but I haven't seen anything
outstanding on first sight.
It's just a piuparts test of arb failing due to hyphy. It will be
resolved when hyphy gets fixed. I
Processing control commands:
> affects -1 + hyphy-pt
Bug #985284 [hyphy-common] hyphy-common: unhandled symlink to directory
conversion: /usr/lib/hyphy -> ../share/hyphy
Added indication that 985284 affects hyphy-pt
> tag -1 pending
Bug #985284 [hyphy-common] hyphy-common: unhandled symlink to di
Control: affects -1 + hyphy-pt
Control: tag -1 pending
Hi Andreas,
Andreas Beckmann, on 2021-03-16 11:30:11 +0100:
> This bug also affects hyphy-mpi:
Thanks for the notice, I spotted similar issues in hyphy-pt.
Remaining packages from hyphy source looked good. I will upload
hyphy soon.
Do you
Your message dated Tue, 16 Mar 2021 17:48:40 +
with message-id
and subject line Bug#982833: fixed in manpages-l10n 4.9.3-4
has caused the Debian Bug report #982833,
regarding man2html,man2html-base,manpages-it: manpage conflicts: man2html.1,
hman.1
to be marked as done.
This means that you c
Your message dated Tue, 16 Mar 2021 20:08:45 +0300
with message-id
and subject line Re: Bug#985356: Acknowledgement (spamass-milter: all messages
have score 0 UNPARSEABLE_RELAY)
has caused the Debian Bug report #985356,
regarding spamass-milter: all messages have score 0 UNPARSEABLE_RELAY
to be m
Processing commands for cont...@bugs.debian.org:
> tags 985253 - upstream
Bug #985253 [s3ql] mount.s3ql: ERROR: Uncaught top-level exception,
AttributeError: lowlevel
Bug #982381 [s3ql] AttributeError: lowlevel due to trio usage in
s3ql/block_cache.py
Removed tag(s) upstream.
Removed tag(s) upst
On Thu, Feb 18, 2021 at 03:28:36PM +0100, Francesco P. Lovergine wrote:
> I'm pretty sure this release should depend on >= 0.15,
> even due to #981906. Unfortunately, it is not expressed in the package
From setup.py:
# Need trio.lowlevel
'trio >= 0.15',
S
Processing commands for cont...@bugs.debian.org:
> forcemerge 985253 982381
Bug #985253 [s3ql] mount.s3ql: ERROR: Uncaught top-level exception,
AttributeError: lowlevel
Bug #982381 [s3ql] AttributeError: lowlevel due to trio usage in
s3ql/block_cache.py
Severity set to 'grave' from 'important'
A
On Tue, Mar 16, 2021 at 04:45:39PM +0200, Sebastian Dröge wrote:
> On Tue, 2021-03-16 at 11:16 -0300, Antonio Terceiro wrote:
>
> Dear Maintainer,
>
> The version of pitivi in bullseye is affected by the bug listed above:
> rendered videos have A/V out of sync by a few seconds, while they sound
>
Processing commands for cont...@bugs.debian.org:
> unarchive 914957
Bug #914957 {Done: Bálint Réczey } [login] login:
removal of pts/* from /etc/securetty wasn't applied in stretch
Unarchived Bug 914957
> thanks
Stopping processing here.
Please contact me if you need assistance.
--
914957: http
Culprit seems to be
[UPGRADE] libgegl-0.4-0:amd64 1:0.4.26-2 -> 1:0.4.28-1
[UPGRADE] libgegl-common:amd64 1:0.4.26-2 -> 1:0.4.28-1
Same problem with 1:0.4.28-2
this seems to be related
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=971812
BTW I'm running a mix of testing/unstable and libc6
Hello,
On 2021-03-16 12:39, Andreas Beckmann wrote:
> 1m40.0s ERROR: FAIL: silently overwrites files via directory symlinks:
> /usr/share/doc/nauty/changelog.Debian.gz (nauty) !=
> /usr/share/doc/libnauty2/changelog.Debian.gz (libnauty2:amd64)
> /usr/share/doc/nauty -> /usr/share/doc/libnau
s/Ivor/Ivo/ :)
On Tue, Mar 16, 2021 at 11:04 AM Aaron Boxer wrote:
> Thanks, Ivor. How would you recommend I test on i386?
>
> On Fri, Mar 12, 2021 at 6:33 PM Ivo De Decker wrote:
>
>> package: src:libgrokj2k
>> version: 7.6.6-2
>> severity: serious
>> tags: ftbfs
>>
>> Hi,
>>
>> The latest upl
Thanks, Ivor. How would you recommend I test on i386?
On Fri, Mar 12, 2021 at 6:33 PM Ivo De Decker wrote:
> package: src:libgrokj2k
> version: 7.6.6-2
> severity: serious
> tags: ftbfs
>
> Hi,
>
> The latest upload of libgrokj2k to unstable fails on i386:
>
> https://buildd.debian.org/status/pa
Processing control commands:
> tag -1 patch pending
Bug #985352 [libuim-data] libuim-data: unhandled symlink to directory
conversion: /usr/share/doc/PACKAGE
Added tag(s) patch and pending.
--
985352: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=985352
Debian Bug Tracking System
Contact ow.
Followup-For: Bug #985352
Control: tag -1 patch pending
buster-pu request including patch: https://bugs.debian.org/985359
Andreas
On Tue, 2021-03-16 at 11:16 -0300, Antonio Terceiro wrote:
Dear Maintainer,
The version of pitivi in bullseye is affected by the bug listed above:
rendered videos have A/V out of sync by a few seconds, while they sound
just find in the preview.
I'm attaching the upstream patch that fixed the iss
Package: pitivi
Version: 2020.09.2-2
Severity: grave
Tags: upstream patch
Justification: renders package unusable
Forwarded: https://gitlab.gnome.org/GNOME/pitivi/-/issues/2498
Dear Maintainer,
The version of pitivi in bullseye is affected by the bug listed above:
rendered videos have A/V out of
Hi,
I wasn't able to perfectly derive from the log that is linked here if
this is the same issue.
But it is the same package hitting the same "SigBus due to alignment"
issue at a similar time.
So I thought dropping a link as FYI might be worth even if eventually
they turn out to be different issues
Package: spamass-milter
Version: 0.4.0-1+b1
Severity: grave
Justification: renders package unusable
Dear Maintainer,
freshly installed postfix + spamassasin on buster, all messages come with score
0, test message below
---
X-Test-Header4: t...@lelik.org
X-Test-Header3: This is a test header31.
Hi Jonathan,
Since the testing autoremoval is kicking in, do you have a chance to
take a look at this bug? Or is it okay for others to NMU and fix it?
Thanks,
Boyuan Yang
On Tue, 2 Mar 2021 11:00:51 +0100 Sebastian Ramacher
wrote:
> Package: bluefish
> Version: 2.2.12-1
> Severity: serious
> X-
Package: libuim-data
Version: 1:1.8.8-4+deb10u3
Severity: serious
User: debian...@lists.debian.org
Usertags: piuparts
Hi,
an upgrade test with piuparts revealed that your package installs files
over existing symlinks and possibly overwrites files owned by other
packages. This usually means an old
Your message dated Tue, 16 Mar 2021 12:48:24 +
with message-id
and subject line Bug#985347: fixed in bmake 20200710-8
has caused the Debian Bug report #985347,
regarding bmake: missing Conflicts: bsdowl (<< 2.2.2-1.2)
to be marked as done.
This means that you claim that the problem has been d
Package: gitaly
Followup-For: Bug #983874
I am seeing the same thing. This also makes gitlab unusable.
Is there any update about this? A severe error has been reported,
and there is no reply for two weeks.
Is this package supposed to be actually used by people?
-- System Information:
Debian Rel
Processing commands for cont...@bugs.debian.org:
> found 928422 1.41.1+dfsg1-1~deb9u1
Bug #928422 [rust-doc] rust-doc: unsatisfiable Depends: fonts-open-sans in
jessie, stretch
There is no source info for the package 'rust-doc' at version
'1.41.1+dfsg1-1~deb9u1' with architecture ''
Unable to ma
Package: bmake
Version: 20200710-7
Severity: serious
User: debian...@lists.debian.org
Usertags: piuparts
Control: affects -1 + bsdowl
Hi,
during a test with piuparts I noticed your package fails to upgrade from
'buster'.
It installed fine in 'buster', then the upgrade to 'bullseye' fails.
>From
Processing control commands:
> affects -1 + bsdowl
Bug #985347 [bmake] bmake: missing Conflicts: bsdowl (<< 2.2.2-1.2)
Added indication that 985347 affects bsdowl
--
985347: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=985347
Debian Bug Tracking System
Contact ow...@bugs.debian.org with pro
Processing commands for cont...@bugs.debian.org:
> block 979625 with 985001
Bug #979625 [src:python-cooler] autopkgtest: ModuleNotFoundError (ipytree) and
AssertionError
979625 was not blocked by any bugs.
979625 was not blocking any bugs.
Added blocking bug(s) of 979625: 985001
> thanks
Stopping
Package: libvigraimpex-doc
Version: 1.11.1+dfsg-8
Severity: serious
User: debian...@lists.debian.org
Usertags: piuparts
Hi,
an upgrade test with piuparts revealed that your package installs files
over existing symlinks and possibly overwrites files owned by other
packages. This usually means an o
Package: pki-base
Version: 10.10.2-2
Severity: serious
User: debian...@lists.debian.org
Usertags: piuparts
Control: found -1 10.10.2-1
Hi,
during a test with piuparts I noticed your package failed to install,
remove (but not purge), and install again.
Before the second installation the package is
Processing control commands:
> found -1 10.10.2-1
Bug #985340 [pki-base] pki-base: fails to install, remove, and install again
Marked as found in versions dogtag-pki/10.10.2-1.
--
985340: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=985340
Debian Bug Tracking System
Contact ow...@bugs.debia
Hi,
> > ACK. Have filed #983526 for this purpose.
>
> Can you please add as well the fixes for the other open issues?
This was done on Feb 26th:
https://bugs.debian.org/983526#22
Regards,
--
,''`.
: :' : Chris Lamb
`. `'` la...@debian.org / chris-lamb.co.uk
Package: nauty
Version: 2.7r1+ds-1
Severity: serious
User: debian...@lists.debian.org
Usertags: piuparts
Hi,
an upgrade test with piuparts revealed that your package installs files
over existing symlinks and possibly overwrites files owned by other
packages. This usually means an old version of t
Processing control commands:
> affects -1 + hyphy-mpi libarb arb-common
Bug #985284 [hyphy-common] hyphy-common: unhandled symlink to directory
conversion: /usr/lib/hyphy -> ../share/hyphy
Added indication that 985284 affects hyphy-mpi, libarb, and arb-common
--
985284: https://bugs.debian.org/
Followup-For: Bug #985284
Control: affects -1 + hyphy-mpi libarb arb-common
This bug also affects hyphy-mpi:
4m3.9s ERROR: installs objects over existing directory symlinks:
/usr/lib/hyphy/bin (hyphy-mpi, hyphy-common) != /usr/share/hyphy/bin (?)
/usr/lib/hyphy -> ../share/hyphy
/usr/lib/
Processing commands for cont...@bugs.debian.org:
> found 900787 304.137-8
Bug #900787 [src:nvidia-graphics-drivers-legacy-304xx]
nvidia-graphics-drivers-legacy-304xx: does not support Xorg Xserver 1.20
Marked as found in versions nvidia-graphics-drivers-legacy-304xx/304.137-8.
> thanks
Stopping p
Processing commands for cont...@bugs.debian.org:
> user debian...@lists.debian.org
Setting user to debian...@lists.debian.org (was a...@debian.org).
> usertags 983859 piuparts
Usertags were: piuparts.
Usertags are now: piuparts.
> affects 983859 + education-development
Bug #983859 [bluefish] bluef
Tags: fixed-upstream
Using webp-dev on buster with test file bug.c from the second bug
mentioned above compiled with -lwebp, malloc reported: "free():
corrupted unsorted chunks" within WebPIDelete().
This suggests to me that the bug may be exploitable on systems with
libwebp6 installed - of which
Package: diaspora-installer-mysql
Version: 0.7.6.1+debian1+deb10u1
Severity: serious
User: debian...@lists.debian.org
Usertags: piuparts
Control: found -1 0.7.14.0+debian~bpo10+1
Control: found -1 0.7.4.0~bpo9+2
Hi,
during a test with piuparts I noticed your package failed to install. As
per defi
Processing control commands:
> found -1 0.7.14.0+debian~bpo10+1
Bug #985336 [diaspora-installer-mysql] diaspora-installer-mysql: missing
dependency on tzdata
Marked as found in versions diaspora-installer/0.7.14.0+debian~bpo10+1.
> found -1 0.7.4.0~bpo9+2
Bug #985336 [diaspora-installer-mysql] di
On 15/03/2021 12.05, Russell Stuart wrote:
I can't reproduce this.
I've tried running piuparts on the .changes file, I've manually
installed it into a minimal chroot, and in fact I use it in production.
I used piuparts on bullseye, amd64.
Attached is the output of my run "piuparts --apt
-
Processing control commands:
> tags -1 + moreinfo
Bug #985329 [courier-mta] courier-mta not startable/configurable due
mkesmtpdcert
Added tag(s) moreinfo.
> severity -1 normal
Bug #985329 [courier-mta] courier-mta not startable/configurable due
mkesmtpdcert
Severity set to 'normal' from 'grave'
Control: tags -1 + moreinfo
Control: severity -1 normal
On 16.03.21 05:46, PICCORO McKAY Lenz wrote:
i have older packages yet in my install, i dont know how happened..
but do not close this bug until i found why happened
after check and forces proper upgraded in xperimental.. is working
plea
Processing commands for cont...@bugs.debian.org:
> retitle 914315 libwebp-dev: New versions fix disclosed heap use-after-free
Bug #914315 [libwebp-dev] libwebp-dev: New versions released, fix disclosed heap
Changed Bug title to 'libwebp-dev: New versions fix disclosed heap
use-after-free' from 'l
Processing commands for cont...@bugs.debian.org:
> severity 914315 grave
Bug #914315 [libwebp-dev] libwebp-dev: New version v1.0.1 released
Severity set to 'grave' from 'wishlist'
> tags 914315 security
Bug #914315 [libwebp-dev] libwebp-dev: New version v1.0.1 released
Added tag(s) security.
> ret
Is this going to be fixed in debian buster or is the plan to fix this
for bullseye? I have snapd installed as a snap and I tried the candidate
version and the edge version (2.49-1) but it did not appear to enable
strict confinement with debian buster. I tried the commands sudo snap
debug confinemen
58 matches
Mail list logo