Bug#1104632: src:imagemagick: fails to migrate to testing for too long

2025-05-18 Thread Bastien Roucaries
Le dimanche 18 mai 2025, 09:26:39 heure d’été d’Europe centrale Paul Gevers a écrit : > Hi ImageMagick Packaging Team, Bastien, > > [Release Team member hat on] > > On Sat, 3 May 2025 13:58:21 +0200 Paul Gevers wrote: > > > The Release Team considers packages that are out-of-sync between test

Bug#1105051: imagemagick breaks xplanet autopkgtest: test_compare_images() returned non-zero return code

2025-05-16 Thread Bastien Roucaries
Le vendredi 16 mai 2025, 13:31:55 heure d’été d’Europe centrale Jochen Sprickerhof a écrit : > Hi, > > * Paul Gevers [2025-05-10 14:24]: > >With a recent upload of imagemagick the autopkgtest of xplanet fails > >in testing when that autopkgtest is run with the binary packages of > >imagemagick f

Bug#1104819: Please deembed bootstrap

2025-05-06 Thread Bastien Roucaries
Source: python-xstatic-bootstrap-scss Severity: serious Justification: embed/security issue Could you deembed bootstrap3 using the js packaged lib ? It will ease transition and security fixes signature.asc Description: This is a digitally signed message part.

Bug#1104818: python-xstatic-angular: Please deembed angular

2025-05-06 Thread Bastien Roucaries
Source: python-xstatic-angular Severity: serious Justification: embed Could you deembed angular using the js packaged lib ? It will ease transition and security fixes signature.asc Description: This is a digitally signed message part.

Bug#1104813: sogo: embed js file

2025-05-06 Thread Bastien Roucaries
Source: sogo Severity: serious Justification: embded compiled file UI / WebServerResources / js / vendor / contains a few js library, some not even packaged for debian signature.asc Description: This is a digitally signed message part.

Bug#1104810: openshot-qt: embded outdated js library

2025-05-06 Thread Bastien Roucaries
Source: openshot-qt Severity: serious Justification: embded code src / timeline / media / js / include a few js library minified (without source) outdated, and likely insecure signature.asc Description: This is a digitally signed message part.

Bug#1104797: civicrm: Embed javascript library including security problem

2025-05-06 Thread Bastien Roucaries
Source: civicrm Version: Embed a few javascript library Severity: serious X-Debbugs-Cc: Debian Security Team Your package include a lot of prebuild library, please deembed -- System Information: Debian Release: trixie/sid APT prefers testing-debug APT policy: (900, 'testing-debug'), (900, '

Bug#1103018: ruby-rmagick fails to coinstall

2025-04-21 Thread Bastien Roucaries
Le lundi 21 avril 2025, 12:03:52 heure d’été d’Europe centrale Chris Hofstaedtler a écrit : > On Sun, Apr 13, 2025 at 10:50:03PM +0200, Bastien Roucaries wrote: > > Le dimanche 13 avril 2025, 22:47:54 heure d’été d’Europe centrale Chris > > > > Hofstaedtler a écrit : >

Bug#1076350: nodejs i386 affects node-glob

2025-04-21 Thread Bastien Roucaries
Le lundi 21 avril 2025, 10:10:26 heure d’été d’Europe centrale Bastien Roucaries a écrit : > Le lundi 21 avril 2025, 02:06:51 heure d’été d’Europe centrale Jérémy Lal a > > écrit : > > Le lun. 21 avr. 2025 à 02:04, Jérémy Lal a écrit : > > > Le lun. 21 avr. 2025 à 02:

Bug#1076350: nodejs i386 affects node-glob

2025-04-20 Thread Bastien Roucaries
Le lundi 21 avril 2025, 01:51:23 heure d’été d’Europe centrale Jérémy Lal a écrit : > Le lun. 21 avr. 2025 à 00:09, Bastien Roucaries a écrit : > > control: affects -1 node-glob > > > > See https://salsa.debian.org/js-team/node-glob/-/jobs/7463824 > > > >

Bug#1076350: nodejs i386 affects node-glob

2025-04-20 Thread Bastien Roucaries
control: affects -1 node-glob See https://salsa.debian.org/js-team/node-glob/-/jobs/7463824 Kapouer did you try to run under valgrind ? valgrind may be help here or electric fence. Bastien signature.asc Description: This is a digitally signed message part.

Bug#1103685: RM: RC buggy

2025-04-20 Thread Bastien Roucaries
Source: node-mkdirp-classic Severity: serious This package should be RM this is an old fork of mkdirp with all CVE on it signature.asc Description: This is a digitally signed message part.

Bug#1103668: whalebuilder: Could not run

2025-04-20 Thread Bastien Roucaries
Package: whalebuilder Version: 0.11 Severity: grave Tags: upstream Justification: renders package unusable Fail to run whalebuilder create --debootstrap whalebuilder_debian_debootstrap:sid /usr/bin/whalebuilder:30:in `': undefined method `exists?' for class File (NoMethodError) if

Bug#1103018: ruby-rmagick fails to coinstall

2025-04-13 Thread Bastien Roucaries
Le dimanche 13 avril 2025, 22:47:54 heure d’été d’Europe centrale Chris Hofstaedtler a écrit : > * Bastien Roucaries [250413 22:09]: > >Le dimanche 13 avril 2025, 20:55:07 heure d’été d’Europe centrale Helmut > > > >Grohne a écrit : > >> Package: ruby-rm

Bug#1103018: ruby-rmagick fails to coinstall

2025-04-13 Thread Bastien Roucaries
Le dimanche 13 avril 2025, 20:55:07 heure d’été d’Europe centrale Helmut Grohne a écrit : > Package: ruby-rmagick > Version: 6.0.1-2+b4 > Severity: serious > User: debian...@lists.debian.org > Usertags: fileconflict > > ruby-rmagick fails to coinstall despite explicitly declaring that > capabilit

Bug#1102677: ckeditor4: EOL upstream commercial support only

2025-04-11 Thread Bastien Roucaries
Source: ckeditor4 Severity: serious Tags: security Justification: security issue X-Debbugs-Cc: Debian Security Team ckeditor4 is end of lifed since June 2023: https://ckeditor.com/blog/ckeditor-4-end-of-life/ ckeditor4 LTS is commercial see https://github.com/ckeditor/ckeditor4/blob/master/LICEN

Bug#977027: [Pkg-javascript-devel] Bug#977027: rhino breaks dojo autopkgtest: Cannot set property "dojo" of null to "[object Object]"

2023-04-06 Thread Bastien ROUCARIES
Le jeu. 6 avr. 2023 à 11:24, Paul Gevers a écrit : > > Control: tags -1 pending patch > > On 06-04-2023 12:54, Paul Gevers wrote: > > I'm going to prepare NMU's for rhino and dojo and upload to DELAYED/5 > > Please find the debdiffs attached. Go ahead > > Paul > -- > Pkg-javascript-devel mailing

Bug#977027: [Pkg-javascript-devel] Bug#977027: rhino breaks dojo autopkgtest: Cannot set property "dojo" of null to "[object Object]"

2023-03-27 Thread Bastien ROUCARIES
Le dim. 26 mars 2023 à 21:39, Markus Koschany a écrit : > Hi Graham, > > Am Sonntag, dem 26.03.2023 um 19:28 +0200 schrieb Graham Inggs: > > Hi Markus > > > > On Sun, 26 Mar 2023 at 16:34, Markus Koschany wrote: > > > 1. There is no transition needed because only shrinksafe is affected > by the

Bug#993301: prototypejs: FTBFS

2021-11-18 Thread Bastien ROUCARIES
Le mer. 17 nov. 2021 à 13:02, Andreas Beckmann a écrit : > Control: tag -1 moreinfo > > On Mon, 30 Aug 2021 12:23:22 + "=?utf-8?q?Bastien_Roucari=C3=A8s?=" > wrote: > > Source: prototypejs > > Severity: serious > > Justification: 4 > > > > Dear Maintainer, > > > > The source is https://githu

Bug#996836: [Pkg-javascript-devel] Bug#996836: node-webpack: webpack embeds binary files in es-module-lexer component

2021-10-19 Thread Bastien ROUCARIES
Le mar. 19 oct. 2021 à 16:12, Yadd a écrit : > Source: node-webpack > Version: 5.58.2+~cs5.11.7-1 > Severity: serious > Justification: DFSG > > webpack 5.58 uses es-module-lexer. For now, this component is downloaded > including some binary files (WASM,...). This should be fixed before > going to

Bug#994451: golang-github-containers-common: secomp.json does not include newer syscall used by stable kernel/glibc on arm

2021-09-27 Thread Bastien ROUCARIES
Le lun. 27 sept. 2021 à 16:08, Reinhard Tartler a écrit : > > > On Thu, Sep 16, 2021 at 4:18 AM Bastien Roucariès > wrote: >> >> Package: golang-github-containers-common >> Version: 0.33.4+ds1-1 >> Severity: critical >> Tags: upstream >> Forwarded: >> https://github.com/containers/common/commit

Bug#994974: [Pkg-javascript-devel] Bug#994974: node-define-property: Please deembed and fix vulnereability

2021-09-24 Thread Bastien ROUCARIES
Le ven. 24 sept. 2021 à 08:16, Jonas Smedegaard a écrit : > > Hi Bastien, > > Quoting Bastien Roucariès (2021-09-24 09:49:37) > > Package: node-define-property > > Severity: serious > > Tags: security upstream fixed-upstream > > Justification: security bug > > Forwarded: https://github.com/jonschl

Bug#994720: [Pkg-javascript-devel] Bug#994720: nodejs: Please depends of sse2-support

2021-09-19 Thread Bastien ROUCARIES
Le dim. 19 sept. 2021 à 21:03, Jérémy Lal a écrit : > > >> Le dim. 19 sept. 2021 à 22:33, Bastien Roucariès >> a écrit : >> >> Source: nodejs >> Severity: serious >> Tags: patch >> Justification: base arch >> Forwarded: >> https://chromium.googlesource.com/v8/v8.git/+/e825c4318eb2065ffdf9044aa6

Bug#994703: [Pkg-javascript-devel] Bug#994703: Bug#994703: nodejs: please documents deps or avoid it

2021-09-19 Thread Bastien ROUCARIES
Le dim. 19 sept. 2021 à 19:33, Jérémy Lal a écrit : > > > > Le dim. 19 sept. 2021 à 18:54, Bastien Roucariès > a écrit : >> >> Package: nodejs >> Version: 12.22.5~dfsg-2 >> Severity: serious >> >> Dear Maintainer, >> >> README.source should document the deps directory. >> >> It will be better to

Bug#994603: errormsg

2021-09-18 Thread Bastien ROUCARIES
debian/upstream To fix the situation please do the following: 1) Examine debian/copyright_* and referenced files 2) Update debian/copyright as needed 3) Replace debian/copyright_hints with debian/copyright_newhints touch debian/stamp-copyright-check touch debian/stamp-upstream-cruft node-gy

Bug#992150:

2021-08-16 Thread Bastien ROUCARIES
control: reassign -1 src:firefox-esr

Bug#992150: Please allow symlink in system extension

2021-08-16 Thread Bastien ROUCARIES
Followup-For: Bug #992150 Control: clone -1 -2 Control: assign -1 src:firefox-esr

Bug#980202: FTBFS: gscan2pdf tests fail

2021-01-22 Thread Bastien ROUCARIES
Hi, Just uploaded 6.9.11-58 as suggested by upstream. No changes unfortunately Bastien Le ven. 22 janv. 2021 à 19:30, Cristy a écrit : > > Subject "convert fails to create image with text" claims > > convert +matte -depth 1 -colorspace Gray -pointsize 12 -units PixelsPerInch > -density 300 la

Bug#979942: [Pkg-javascript-devel] Bug#979942: Bug#979942: Bug#979942: embedding dead code is no fix to bug for removing that same dead code

2021-01-17 Thread Bastien ROUCARIES
Le mar. 12 janv. 2021 à 21:02, Jonas Smedegaard a écrit : > > Quoting Bastien ROUCARIES (2021-01-12 21:17:36) > > Fixed it was a little bit hard to test options of compression one by > > one but it work now. Hi, It was harder than I thought. This time I document the re

Bug#979942: [Pkg-javascript-devel] Bug#979942: Bug#979942: embedding dead code is no fix to bug for removing that same dead code

2021-01-12 Thread Bastien ROUCARIES
Hi, Fixed it was a little bit hard to test options of compression one by one but it work now. Le mar. 12 janv. 2021 à 17:48, Xavier a écrit : > > Control: tags -1 reopen > Control: severity -1 serious > > Le 12/01/2021 à 18:17, Jonas Smedegaard a écrit : > > Quoting Debian FTP Masters (2021-01-

Bug#971216: Bug#977205: imagemagick: CVE-2020-29599

2021-01-09 Thread Bastien ROUCARIES
hi, I am ok with this but could you mention, the whole list of format instead of ghostscript format in changelog aka (pdf, eps, ps) Bastien Le dim. 3 janv. 2021 à 14:21, Salvatore Bonaccorso a écrit : > > Hi Bastien, > > Hope you are ok. > > On Tue, Dec 15, 2020 at 10:34:5

Bug#977205: imagemagick: CVE-2020-29599

2020-12-15 Thread Bastien ROUCARIES
Hi, As said on debian-provate go ahead please. I am late due to payjob issue. Bastien On Sat, Dec 12, 2020 at 3:06 PM Salvatore Bonaccorso wrote: > > Source: imagemagick > Version: 8:6.9.11.24+dfsg-1 > Severity: grave > Tags: security upstream > Justification: user security hole > X-Debbugs-Cc:

Bug#952312: [Pkg-javascript-devel] Bug#952312: Bug#952312: Bug#952312: node-eslint-scope: FTBFS: tests failed

2020-02-25 Thread Bastien ROUCARIES
Le mar. 25 févr. 2020 à 19:48, Jonas Smedegaard a écrit : > control: reassign -1 node-espree > control: affects -1 node-eslint-scope > > Quoting Xavier (2020-02-25 18:29:35) > > Le 23/02/2020 à 14:50, Lucas Nussbaum a écrit : > > > During a rebuild of all packages in sid, your package failed to >

Bug#951398: Rebuild pax

2020-02-17 Thread Bastien ROUCARIES
On Mon, Feb 17, 2020 at 10:12 PM Norbert Preining wrote: > > Hi Bastien, > > On Mon, 17 Feb 2020, Bastien ROUCARIES wrote: > > For rebuilding pax you need to apply this patch then from > > Ok, it is not that easy but done that now. > > > source/pax/latex/pa

Bug#951398: Patch

2020-02-15 Thread Bastien ROUCARIES
control: tags -1 + patch Patch file

Bug#918642: imagemagick: identify 6.9.10-23 doesn't convert units (pixels per cm/in)

2019-01-07 Thread Bastien ROUCARIES
control: fowarded -1 https://github.com/ImageMagick/ImageMagick/issues/1442 Thanks On Mon, Jan 7, 2019 at 10:57 PM Cédric Boutillier wrote: > > Package: imagemagick > Version: 8:6.9.10.23+dfsg-1 > Severity: serious > Tags: upstream > > Dear Maintainer, > > After the upgrade from 6.9.10.14 to 6.9

Bug#916839: imagemagick: Silent ABI break in 6.9.10-11 on i386

2019-01-07 Thread Bastien ROUCARIES
zey > wrote: > > > > Hi, > > > > On Thu, Dec 20, 2018 at 6:46 AM Bastien ROUCARIES > > wrote: > > > > > > On Wed, Dec 19, 2018 at 12:09 PM Balint Reczey > > > wrote: > > > > > > > > Package: imagemagick > >

Bug#916839: imagemagick: Silent ABI break in 6.9.10-11 on i386

2018-12-19 Thread Bastien ROUCARIES
On Wed, Dec 19, 2018 at 12:09 PM Balint Reczey wrote: > > Package: imagemagick > Version: 8:6.9.10.14+dfsg-1 > Severity: grave > Control: forwareded -1 https://github.com/ImageMagick/ImageMagick6/issues/31 > Control: tags -1 upstream fixed-upstream > Control: affects -1 ruby-rmagick > > Hi, > > Th

Bug#908081: NMU

2018-12-04 Thread Bastien ROUCARIES
Hi, I plan to do a NMU in a week about this bug. Can you ACK ? Thanks Bastien

Bug#876618: [Pkg-javascript-devel] Bug#876618: science.js build-depends on removed nodejs-legacy

2018-09-28 Thread Bastien ROUCARIES
Il Le ven. 28 sept. 2018 à 07:27, Petter Reinholdtsen a écrit : > Control: tags -1 + help upstream confirmed > > [Jérémy Lal] > > Depending on nodejs-legacy was a serious bug in the first place. > > Anyway (nodejs >= 6.11.2~) installs /usr/bin/node now. > > I had a look at this, and do not know

Bug#903404: libopengl-image-perl: FTBFS with new imagemagick

2018-07-09 Thread Bastien ROUCARIES
control: reassign -1 src:imagemagick control: affects -1 libopengl-image-perl control: notfound -1 1.03-1 control: found -1 8:6.9.10.2+dfsg-2 On Mon, Jul 9, 2018 at 5:15 PM, gregor herrmann wrote: > Package: libopengl-image-perl > Version: 1.03-1 > Severity: serious > Tags: ftbfs sid buster > Jus

Bug#900855: [qtquickcontrols2-opensource-src] FTBFS font fontenello

2018-06-06 Thread Bastien ROUCARIES
Hi, On Wed, Jun 6, 2018 at 2:34 PM, Lisandro Damián Nicanor Pérez Meyer wrote: > Hi Bastien! > > El mar., 5 de jun. de 2018 19:12, Bastien ROUCARIÈS > escribió: >> >> Package: qtquickcontrols2-opensource-src >> Severity: serious >> >> Hi, >> examples/quickcontrols2/swipetoremove/fonts/fontello.t

Bug#831548: [Pkg-javascript-devel] Bug#831548: RM: mtasc -- ROM; obsoleted by newer standard web technologies

2018-06-03 Thread Bastien ROUCARIES
Hi, On Sat, Jun 2, 2018 at 9:10 AM, Bastien ROUCARIES wrote: > > > Le sam. 2 juin 2018 à 08:59, Niels Thykier a écrit : >> >> On Sat, 23 Dec 2017 06:58:52 +0800 Paul Wise wrote: >> > Control: severity -1 serious >> > Control: severity 831553 normal >

Bug#900636: [shrinksafe] Could not compile dojo: merge back with dojo

2018-06-02 Thread Bastien ROUCARIES
Package: shrinksafe Severity: grave Hi; This package fail to compile dojo. Dojo is the current upstream so merge back in dojo Bastien

Bug#831548: [Pkg-javascript-devel] RM: mtasc -- ROM; obsoleted by newer standard web technologies

2018-06-02 Thread Bastien ROUCARIES
Le sam. 2 juin 2018 à 08:59, Niels Thykier a écrit : > On Sat, 23 Dec 2017 06:58:52 +0800 Paul Wise wrote: > > Control: severity -1 serious > > Control: severity 831553 normal > > > > Hi everyone, > > > > The buster cycle is the right time to remove mtasc from the Debian > > archive. It has been

Bug#900598: [desmume] Include non free file

2018-06-01 Thread Bastien ROUCARIES
On Fri, Jun 1, 2018 at 10:21 PM, Markus Koschany wrote: > > Am 01.06.2018 um 22:16 schrieb Bastien ROUCARIES: > [...] >> No it is not a lintian bug. Unicode withdraw this code before applying >> the license change. >> >> Exhibit 1 does not apply in this case.

Bug#864729: Retitle

2018-06-01 Thread Bastien ROUCARIES
control: retitle -1 Use obsolete/buggy code control: severity -1 important ConvertUTF is nevertheless buggy/obsolete please use libicu Bastien

Bug#864729: Reopen

2018-06-01 Thread Bastien ROUCARIES
control: reopen -1 control: found -1 3.3.1~dfsg-5 This bug was not fixed. Unicode body withdraw this code from their website (due to bugs that are fixed in icu) long before applying relicencing. So it is not free Bastien

Bug#900598: [desmume] Include non free file

2018-06-01 Thread Bastien ROUCARIES
On Fri, Jun 1, 2018 at 10:07 PM, Markus Koschany wrote: > Hi, > > Am 01.06.2018 um 21:58 schrieb Bastien ROUCARIÈS: >> Package: desmume >> Severity: serious >> >> The following file source files include material under a non-free license >> from >> Unicode Inc. Therefore, it is not possible to shi

Bug#900032: [Pkg-javascript-devel] Bug#900032: Bug#900032: mocha: missing-copyright-file /usr/share/doc/mocha/copyright

2018-05-29 Thread Bastien ROUCARIES
Found close On Tue, May 29, 2018 at 3:25 PM, Bastien ROUCARIES wrote: > On Sat, May 26, 2018 at 11:11 PM, Andreas Moog > wrote: >> On Fri, May 25, 2018 at 12:40:48PM +0200, Bastien ROUCARIES wrote: >>> Hi, >>> >>> I am really clueless. You are righ

Bug#900032: [Pkg-javascript-devel] Bug#900032: Bug#900032: mocha: missing-copyright-file /usr/share/doc/mocha/copyright

2018-05-29 Thread Bastien ROUCARIES
On Sat, May 26, 2018 at 11:11 PM, Andreas Moog wrote: > On Fri, May 25, 2018 at 12:40:48PM +0200, Bastien ROUCARIES wrote: >> Hi, >> >> I am really clueless. You are right but it will do this only with upgrade. >> >> I have used correctly dpkg-maintscript-helpe

Bug#900032: [Pkg-javascript-devel] Bug#900032: mocha: missing-copyright-file /usr/share/doc/mocha/copyright

2018-05-25 Thread Bastien ROUCARIES
Hi, I am really clueless. You are right but it will do this only with upgrade. I have used correctly dpkg-maintscript-helper. Could you crosscheck, my script ? Bastien On Thu, May 24, 2018 at 11:58 PM, Thorsten Glaser wrote: > Package: mocha > Version: 4.1.0+ds1-1 > Severity: serious > Justif

Bug#897536: [Pkg-javascript-devel] Bug#897536: mustache.js: FTBFS: make[1]: rake: Command not found

2018-05-11 Thread Bastien ROUCARIES
On Fri, May 11, 2018 at 12:12 PM, Jonas Meurer wrote: > Control: tag -1 +moreinfo > > Hello, > > I just tried to reproduce the FTBFS and failed. rake is defined as > build-dependency and correctly pulled in according to linked the build logs. > > My best guess is that rake 12.3.1-2 had some bug th

Bug#887586: Fixed

2018-05-10 Thread Bastien ROUCARIES
control: affects -1 - src:node-connect-timeout On Thu, May 10, 2018 at 11:34 PM, Bastien ROUCARIES wrote: > control: affects -1 - src:node-connect > > On Thu, May 10, 2018 at 9:57 PM, Bastien ROUCARIES > wrote: >> control: affects -1 - src:node-cookie-parser

Bug#887586: Fixed

2018-05-10 Thread Bastien ROUCARIES
control: affects -1 - src:node-connect On Thu, May 10, 2018 at 9:57 PM, Bastien ROUCARIES wrote: > control: affects -1 - src:node-cookie-parser

Bug#887586: Fixed

2018-05-10 Thread Bastien ROUCARIES
control: affects -1 - src:node-vhost

Bug#887586: Fixed

2018-05-10 Thread Bastien ROUCARIES
control: affects -1 - src:node-compression

Bug#887586: Fixed

2018-05-10 Thread Bastien ROUCARIES
control: affects -1 - src:node-errorhandler

Bug#887586: Fixed

2018-05-10 Thread Bastien ROUCARIES
control: affects -1 - src:node-cookie-parser

Bug#887586: workarround

2018-05-10 Thread Bastien ROUCARIES
control: tags -1 + patch problematic package should be updated or use mocha --exit

Bug#892690: Autoconf-archive bug

2018-03-11 Thread Bastien ROUCARIES
Hi, Could you recheck with newer version just uploaded ? And close if not found Bastien

Bug#871300:

2018-02-23 Thread Bastien ROUCARIES
control: noutfound -1 + 8:6.9.9.34+dfsg-1

Bug#889048: [node-source-map] FTBFS: lib/mappings.wasm

2018-02-02 Thread Bastien Roucaries
Please next time upload to experimental. It is a good idea to upload now newer version to experimental. BTW bug in reverse depends should be now important not serious

Bug#882852: Feature not a bug

2018-02-02 Thread Bastien ROUCARIES
control: severity -1 minor you could still use explicit coder in order to use rsvg. You should report this bug on internal coder upstream and report upstream issue here Thanks

Bug#882223: Reassign

2017-11-20 Thread Bastien ROUCARIES
control: assign -1 glibc-doc

Bug#882222: Document security problems with system.3 and popen.3 (argument injection)

2017-11-20 Thread Bastien ROUCARIES
Package: manpages-dev Version: 4.13-3 Severity: grave Tags: security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Justification: more than 20 security bugs filled in other package control: clone -1 -2 control: reaffect -2 glibc-doc Please document the implication of system.3 and pope

Bug#877212: [Pkg-javascript-devel] Bug#877212: node-d3-color: B-D npm not available in testing

2017-09-30 Thread Bastien Roucaries
Le 29 septembre 2017 19:34:24 GMT+02:00, "Jérémy Lal" a écrit : >2017-09-29 19:24 GMT+02:00 Andreas Beckmann : > >> Package: node-d3-color >> Version: 1.0.3-1 >> Severity: serious >> Justification: Build-Depends not satisfiable in testing >> Control: block -1 with 857986 >> Control: clone -1 -2

Bug#784475: Done some work but crash before main()

2017-09-06 Thread Bastien ROUCARIES
control: tags -1 + pending I have uploaded a new version waiting ftpmaster On Tue, Sep 5, 2017 at 9:11 PM, Lisandro Damián Nicanor Pérez Meyer wrote: > On 5 September 2017 at 15:51, Bastien ROUCARIES > wrote: >> Hi, >> >> I have done porting work but now it fail befor

Bug#784475: Done some work but crash before main()

2017-09-05 Thread Bastien ROUCARIES
Hi, I have done porting work but now it fail before main(): *** Error in `/home/bastien/Documents/Personnel/soft/debian/kbibtex/kbibtex/obj-x86_64-linux-gnu/src/program/kbibtex': realloc(): invalid pointer: 0x559b5f549500 *** === Backtrace: = /lib/x86_64-linux-gnu/libc.so.6(+0x70

Bug#853656: Help needed with gcc-7 error

2017-08-27 Thread Bastien Roucaries
Use and make signed Le 27 août 2017 15:58:34 GMT+02:00, James Cowgill a écrit : >Hi, > >On 27/08/17 14:40, Andreas Tille wrote: >> Hi, >> >> when trying to build sga it results in an error: >> >> ... >> g++ -DHAVE_CONFIG_H -I. -I.. -I../Bigraph -I../Thirdparty >-Wdate-time -D_FORTIFY_SOURCE=

Bug#873148: Fails to properly escape the ;, {, }, <, and > characters

2017-08-24 Thread Bastien ROUCARIES
Package: node-shell-quote severity: serious forwarded: https://github.com/substack/node-shell-quote/issues/31 couple of open issues that seem reasonably serious for a package that appears to be intended for sanitising user input before passing it on to the shell:

Bug#872438: [Pkg-javascript-devel] Bug#872438: Bug#872438: Bug#872438: src:nodejs: FTBFS on mips64el: Can't determine the arch of ./node

2017-08-18 Thread Bastien ROUCARIES
On Fri, Aug 18, 2017 at 7:42 PM, Jérémy Lal wrote: > James Cowgill replied this to my give back request on mip64el: > >> My guess is this GCC-7 bug which is breaking lots of stuff on mips64el >> at the moment: >> https://bugs.debian.org/871514 > >> Thanks, >> James > > Cheers, > > Jérémy Thanks B

Bug#872438: [Pkg-javascript-devel] Bug#872438: src:nodejs: FTBFS on mips64el: Can't determine the arch of ./node

2017-08-18 Thread Bastien ROUCARIES
Starting program: /home/rouca/nodejs-6.11.2~dfsg/node warning: GDB can't find the start of the function at 0xfff7fcd0c4. [Thread debugging using libthread_db enabled] Using host libthread_db library "/lib/mips64el-linux-gnuabi64/libthread_db.so.1". warning: GDB can't find the start of the function

Bug#872438: [Pkg-javascript-devel] Bug#872438: src:nodejs: FTBFS on mips64el: Can't determine the arch of ./node

2017-08-17 Thread Bastien ROUCARIES
On Thu, Aug 17, 2017 at 3:54 PM, Felipe Sateler wrote: > Package: src:nodejs > Version: 6.11.2~dfsg-2 > Severity: serious > > nodejs failed to build with this error: > > make[1]: Entering directory '/<>' > # Clean up any leftover processes but don't error if found. > ps awwx | grep Release/node |

Bug#872433: [Pkg-javascript-devel] Bug#872433: Bug#872433: [with solution] Doesn't find modules installed in Debian directories

2017-08-17 Thread Bastien ROUCARIES
On Thu, Aug 17, 2017 at 2:49 PM, Julien Puydt wrote: > Hi, > > Le 17/08/2017 à 14:23, Bastien ROUCARIES a écrit : >> Could you get a glimpse at node-minimatch debian/test/runtestsuite ? > > Won't work, since we don't have all the test deps in Debian (lacking > ob

Bug#872433: [Pkg-javascript-devel] Bug#872433: [with solution] Doesn't find modules installed in Debian directories

2017-08-17 Thread Bastien ROUCARIES
08/2017 à 14:04, Bastien ROUCARIES a écrit : >> Could you also modernize this package ? policy bump, autopkg-test (see >> node-tape) > > I bumped std-ver and dh compat if that's what you mean by policy bump. > There was already an autopkg-test directory and I added a te

Bug#872433: [Pkg-javascript-devel] Bug#872433: [with solution] Doesn't find modules installed in Debian directories

2017-08-17 Thread Bastien ROUCARIES
Let ping me at ro...@debian.org if needed Could you also modernize this package ? policy bump, autopkg-test (see node-tape) On Thu, Aug 17, 2017 at 1:40 PM, Julien Puydt wrote: > Package: node-resolve > Version: 1.1.7-2 > Severity: grave > > Hi, > > I'm surprised nobody reported it yet since it

Bug#871300: [Pkg-gmagick-im-team] Bug#871300: libmagick++-6.q16-7: requires rebuild against GCC 7 and symbols/shlibs bump

2017-08-09 Thread Bastien Roucaries
Le 7 août 2017 22:59:06 GMT+02:00, James Cowgill a écrit : >Hi, > >On 07/08/17 16:55, roucaries bastien wrote: >> On Mon, Aug 7, 2017 at 4:47 PM, wrote: >>> Package: libmagick++-6.q16-7 >>> Version: 8:6.9.7.4+dfsg-16 >>> Severity: serious >>> Tags: sid buster >>> User: debian-...@lists.debian.

Bug#869834: CVE-2017-11533: heap buffer overflow in uil coder

2017-07-26 Thread Bastien ROUCARIES
Source: imagemagick Version: 8:6.9.7.4+dfsg-12 Severity: serious Tags: security upstream X-Debbugs-CC: t...@security.debian.org control: found -1 8:6.8.9.9-5+deb8u8 control: found -1 8:6.8.9.9-5+deb8u9 control: found -1 8:6.7.7.10-5+deb7u14 forwarded:https://github.com/ImageMagick/ImageMagick/issue

Bug#869728: Avoid a crash for mpc coder

2017-07-25 Thread Bastien ROUCARIES
Source: src:imagemagick Version: 8:6.9.7.4+dfsg-12 Severity: serious Tags: security upstream X-Debbugs-CC: t...@security.debian.org control: found -1 8:6.8.9.9-5+deb8u8 control: found -1 8:6.8.9.9-5+deb8u9 control: found -1 8:6.7.7.10-5+deb7u14 control: found -1 8:6.7.7.10-5+deb7u4 forwarded: htt

Bug#869727: Memory exhaustion in mpc coder

2017-07-25 Thread Bastien ROUCARIES
Source: src:imagemagick Version: 8:6.9.7.4+dfsg-12 Severity: serious Tags: security upstream X-Debbugs-CC: t...@security.debian.org control: found -1 8:6.8.9.9-5+deb8u8 control: found -1 8:6.8.9.9-5+deb8u9 control: found -1 8:6.7.7.10-5+deb7u14 control: found -1 8:6.7.7.10-5+deb7u4 forwarded: https

Bug#869726: CVE-2017-11532: memory leak in coders/mpc.c.

2017-07-25 Thread Bastien ROUCARIES
Source: src:imagemagick Version: 8:6.9.7.4+dfsg-12 Severity: serious Tags: security upstream X-Debbugs-CC: t...@security.debian.org control: found -1 8:6.8.9.9-5+deb8u8 control: found -1 8:6.8.9.9-5+deb8u9 control: found -1 8:6.7.7.10-5+deb7u14 control: found -1 8:6.7.7.10-5+deb7u4 forwarded: https

Bug#869725: CVE-2017-11531: Memory Leak in coders/histogram.c.

2017-07-25 Thread Bastien ROUCARIES
Source: src:imagemagick Version: 8:6.9.7.4+dfsg-12 Severity: serious Tags: security upstream X-Debbugs-CC: t...@security.debian.org control: found -1 8:6.8.9.9-5+deb8u8 control: found -1 8:6.8.9.9-5+deb8u9 control: found -1 8:6.7.7.10-5+deb7u14 control: found -1 8:6.7.7.10-5+deb7u4 forwarded: https

Bug#869210: endless loop in ReadTXTImage

2017-07-21 Thread Bastien ROUCARIES
Source: imagemagick Version: 8:6.9.7.4+dfsg-12 Severity: serious Tags: security upstream X-Debbugs-CC: t...@security.debian.org X-Debbugs-CC: Salvatore Bonaccorso control: found -1 8:6.9.7.4+dfsg-11+deb9u1 control: found -1 8:6.8.9.9-5+deb8u10 control: found -1 8:6.7.7.10-5+deb7u14 forwarded: htt

Bug#869209: [imagemagick] Null-Point reference in WriteOnePNGImage

2017-07-21 Thread Bastien ROUCARIES
Source: imagemagick Version: 8:6.9.7.4+dfsg-12 Severity: serious Tags: security upstream X-Debbugs-CC: t...@security.debian.org X-Debbugs-CC: Salvatore Bonaccorso control: found -1 8:6.9.7.4+dfsg-11+deb9u1 control: found -1 8:6.8.9.9-5+deb8u10 control: found -1 8:6.7.7.10-5+deb7u14 forwarded: htt

Bug#867896: [imagemagick] enable heap overflow check for stdin for mpc files

2017-07-10 Thread Bastien ROUCARIES
Source: src:imagemagick Version: 8:6.9.7.4+dfsg-11 Severity: serious Tags: security upstream X-Debbugs-CC: t...@security.debian.org control: found -1 8:6.8.9.9-5+deb8u8 control: found -1 8:6.8.9.9-5+deb8u9 control: found -1 8:6.7.7.10-5+deb7u14 control: found -1 8:6.7.7.10-5+deb7u4 forwarded: https

Bug#862967: Will try tomorrow

2017-05-21 Thread Bastien ROUCARIES
Hi, I plan to release a stable version tomorrow Bastien

Bug#862690: Found in unstable/testing/stable

2017-05-16 Thread Bastien ROUCARIES
control: found -1 8:6.8.9.9-5+deb8u8 control: found -1 8:6.7.7.10-5+deb7u13 control: found -1 8:6.7.7.10-5+deb7u4

Bug#860735: CVE-2017-7942: memory leak in avs does not affect old version

2017-05-05 Thread Bastien ROUCARIES
control: notfound -1,8:6.6.0.4-3 control: notfound -1 8:6.7.7.10-5 control: notfound -1 8:6.8.9.9-5 control: notfound -1 8:6.8.9.9-5+deb8u8 control: notfound -1 8:6.7.7.10-5+deb7u13 > > Due to code change not affected

Bug#860735: CVE-2017-7942: memory leak in avs does not affect old version

2017-05-05 Thread Bastien ROUCARIES
control: notfound -1,8:6.6.0.4-3 control: notfound -1 8:6.7.7.10-5 control: notfound -1 8:6.8.9.9-5 control: notfound -1 6.8.9.9-5+deb8u8 control: notfound -1 6.7.7.10-5+deb7u13 Due to code change not affected

Bug#861172: [Pkg-javascript-devel] Bug#861172: node-jsonstream FTBFS in stretch: Build dependency node-tape is not available

2017-04-25 Thread Bastien ROUCARIES
control: owner -1 ro...@debian.org On Tue, Apr 25, 2017 at 2:10 PM, Adrian Bunk wrote: > Source: node-jsonstream > Version: 1.0.3-3 > Severity: serious > > node-jsonstream build-depends on node-tape, which is not in stretch. > > -- > Pkg-javascript-devel mailing list > pkg-javascript-de...@lists.

Bug#860736: CVE-2017-7943 Memory leak in svg

2017-04-19 Thread Bastien ROUCARIES
Package: src:imagemagick Version: 8:6.6.0.4-3 Severity: serious Tags: security X-Debbugs-CC: t...@security.debian.org control: found -1 8:6.7.7.10-5 control: found -1 8:6.8.9.9-5 forwarded: https://github.com/ImageMagick/ImageMagick/issues/427 https://github.com/ImageMagick/ImageMagick/commit/b0e6

Bug#860735: CVE-2017-7942: memory leak in avs

2017-04-19 Thread Bastien ROUCARIES
Package: src:imagemagick Version: 8:6.6.0.4-3 Severity: serious Tags: security X-Debbugs-CC: t...@security.debian.org control: found -1 8:6.7.7.10-5 control: found -1 8:6.8.9.9-5 forwarded: https://github.com/ImageMagick/ImageMagick/issues/428 Fixed by 962282327f3a28ffb1138f3ad3fb0438b57ae6b1

Bug#860734: CVE-2017-7941 memory leak in sgi

2017-04-19 Thread Bastien ROUCARIES
Package: src:imagemagick Version: 8:6.6.0.4-3 Severity: serious Tags: security X-Debbugs-CC: t...@security.debian.org control: found -1 8:6.7.7.10-5 control: found -1 8:6.8.9.9-5 forwarded: https://github.com/ImageMagick/ImageMagick/issues/428 Fixed by https://github.com/ImageMagick/ImageMagick/co

Bug#860382: Install in wrong dir useless

2017-04-15 Thread Bastien ROUCARIES
Package: node-jsonstream Version: 1.0.3-1 Severity: grave This package install files under jsonstream instead of JSONStream... Thus it is useless

Bug#847282: [Pkg-gmagick-im-team] Bug#847282:

2017-04-13 Thread Bastien ROUCARIES
Ok found why it fail: oldstable -> stable create images.dpkg-backup -> ../imagemagick/images and www.dpkg-backup -> ../imagemagick/www backup symlink. These are not owned by package... I suppose I could nuke them after checking if they point to something sensible Bastien

Bug#847282: [Pkg-gmagick-im-team] Bug#847282:

2017-04-12 Thread Bastien ROUCARIES
More information here https://piuparts.debian.org/wheezy222testing/fail/imagemagick-doc_8:6.9.7.4+dfsg-3.log

Bug#847282:

2017-04-12 Thread Bastien ROUCARIES
Followup-For: Bug #847282 Control: found -1 8:6.9.7.0+dfsg-3 Reopen found

Bug#859769: Infinite loop due to rounding error

2017-04-09 Thread Bastien Roucaries
Le 9 avril 2017 18:12:01 GMT+02:00, Salvatore Bonaccorso a écrit : >Hi Bastien, > >On Fri, Apr 07, 2017 at 12:06:50PM +0200, Bastien ROUCARIES wrote: >> Package: src:imagemagick >> Version: 8:6.6.0.4-3 >> Severity: serious >> Tags: security >> X-Debbugs-

Bug#859772: Fix include regression

2017-04-07 Thread Bastien ROUCARIES
Package: src:imagemagick Version: 8:6.6.0.4-3 Severity: serious Tags: security X-Debbugs-CC: t...@security.debian.org control: found -1 8:6.7.7.10-5 forwarded: https://launchpadlibrarian.net/314715229/FixAcquireVirtualMemoryMemleak.patch Partial patch with problem

  1   2   3   4   5   6   7   8   >