207 bugs found

bug# releases package title modified
#680949 (S)   genisoimage genisoimage should provide mkisofs as well as replacing 2021-02-05
#801951 (S)   python3-dateutil d/copyright must contain BSD3 and Apache 2, not PSF 2021-07-16
#846950 (S)   nfs-common nfs-common: RPCGSSDOPTS not replicated to /run/sysconfig/nfs-utils 2021-03-09
#897975 (STUE)   gdm3 gdm3: restarts in a loop: IceLockAuthFile fail: Already exists (race condition?) 2021-07-29
#900821 (STU)   src:linux apache reads wrong data over cifs filesystems served by samba 2021-07-30
#908947 (S)   youtube-dl recent version for stable-(updates|backports) 2020-03-24
#909750 (STU)   libfontconfig1 applications tries to write to /usr/* directories via libfontconfig1 2021-07-30
#913978 (STUE)   gnome-control-center is not accessible with Orca screenreader 2021-03-03
#915834 (S)   irqbalance Breaks SSH connections, listens on \0 2020-02-10
#917652 (S)   src:pywavelets pywavelets 0.5.1-1.1: FTBFS, alignment problem 2019-12-18
#918953 (S)   itstool itstool: Messed up with encoding when output is redirected (regression?) 2020-01-12
#919058 (STU)   itstool its-tools: crashes when freeing xmlDocs 2021-07-30
#919914 (STUE)   gnome-settings-daemon gnome-tweaks now equates "don't suspend on lid close" with "don't lock on lid close" (security issue) 2021-04-10
#922981 (STU)   ca-certificates-java ca-certificates-java: /etc/ca-certificates/update.d/jks-keystore doesn't update /etc/ssl/certs/java/cacerts 2021-08-01
#923500 (S)   snapd snapd: non-classic snap not confined 2021-03-26
#924005 (STU)   jetty9 client certificate verification regression with puppetdb 2021-04-22
#924151 (STU)   grub2-common grub2-common: wrong grub.cfg for efi boot and fully encrypted disk 2021-07-29
#924548 (S)   gnome-core gnome-core: does not actually install a desktop environment on s390x 2019-08-29
#924609 (S)   src:libsdl1.2 libsdl1.2: Multiple security issues 2019-09-17
#924610 (S)   src:libsdl2 libsdl2: Multiple security issues 2019-09-19
#925134 (STU)   grub-efi-amd64 grub-efi-amd64-signed: doesn't mount cryptodisk 2021-07-30
#927747 (S)   samba bind9_dlz backend is entirely broken in Debian 2019-10-25
#928052 (S)   src:snapd CVE-2019-11502 CVE-2019-11503 2020-01-22
#928963 (Sē)   gpg-agent gpg-agent READKEY emits an invalid S-expression when private key file has comment (on 64-bit big-endian platforms) 2019-07-16
#929567 (S)   emacs-gtk libgtk-3-0:amd64: Emacs constantly crashes on startup with "X protocol error: BadLength..." 2019-07-22
#929685 (STUE)   ca-certificates-java, default-jre-headless, openjdk-11-jre-headless ca-certificates-java,default-jre-headless,openjdk-11-jre-headless: get rid of the circular dependency 2021-08-01
#929983 (STU)   ipxe-qemu ipxe-qemu: virtio booting broken past jessie 2021-04-10
#930099 (S)   src:pyxdg pyxdg: CVE-2019-12761 2021-05-09
#930356 (S)   src:parso CVE-2019-12760 2019-08-13
#930462 (S)   youtube-dl ERROR: unable to download video data: HTTP Error 403: Forbidden 2019-10-10
#931281 (Sē)   gnome-shell gnome-shell: Session cannot be unlocked when audio dialog for plugged in speaker is active 2019-06-30
#931449 (S)   src:imagemagick imagemagick: CVE-2019-13306 2020-07-27
#931633 (S)   src:imagemagick imagemagick: CVE-2019-13391 2020-07-27
#932085 (S)   grub-common grub-common: Grub can't load initrd for Xen after upgrade to Buster 2021-04-22
#932172 (S)   dh-cargo dh-cargo: please refresh json timestamps 2021-06-12
#932501 (STU)   src:squid-deb-proxy squid-deb-proxy: daemon does not start due to the conf file not being allowed by apparmor 2021-08-01
#932749 (S)   libeclipselink-java Debian packaging of EclipseLink is missing essential classes 2020-06-22
#933001 (S)   fontconfig returns 1 to plymouth initramfs hook, breaks initramfs creation 2020-04-18
#933642 (S)   devscripts devscripts: leaves multiple test/uscan/ processes running after build 2020-01-31
#933749 (S)   fail2ban fail2ban: ever-growing fail2ban sqlite database 2020-09-14
#933920 (S)   src:python-markdown src:python-markdown: Unsafe use of yaml.load() 2019-08-05
#934013 (S)   src:boost-defaults boost-defaults: Boost license file is not found 2019-08-06
#934185 (Sē)   libkscreenlocker5 libkscreenlocker5: fails to accept correct pin after entering pin less than 6 chars with libpam-poldi 2019-10-02
#934713 (S)   os-prober os-prober: missing dependency on mount 2021-07-10
#934992 (Sē)   systemd boot-smoke autopkgtest fails if polkitd is not D-Bus activated 2019-08-20
#935115 (S)   bash bash: [regression] passing variable assignments to functions broken in POSIX mode, violating POSIX 2021-02-06
#935156 (S)   ceph ceph: Multiple mon deployment failure on arm64: ms_verfity_authorizer bad authorizer and crc check failure 2021-01-08
#935182 (STUE)   libreoffice-core Concurrent file open on the same host results file deletion 2021-04-10
#935439 (S)   ucf ucf shouldn't change the file permissions 2020-05-12
#935548 (STU)   src:libxml-security-java libxml-security-java: CVE-2019-12400 2021-07-17
#935764 (S)   src:freeipmi freeipmi: --link-doc between architecture all and not all packages breaks binNMUs 2019-09-27
#936015 (S)   src:ceph ceph: CVE-2019-10222 2019-12-23
#936025 (S)   src:rust-memoffset CVE-2019-15553 2019-09-05
#939527 (S)   src:vcdimager vcdimager contains one file with different license 2020-12-22
#939739 (S)   src:openipmi openipmi: fails to detect udev 2020-07-08
#940139 (Sē)   nautilus nautilus: open files by double clicking or right click "open" 2019-09-12
#940679 (S)   cython3 cython3: generated code does out of bounds reads in with-dict (subclass of) cdef class 2019-10-27
#941996 (Sē)   openmpi-bin openmpi-bin: segfaults with the 'verbs' OFI provider 2019-11-19
#942161 (S)   src:impacket src:impacket: Substantial issues with debian/copyright 2019-10-20
#942468 (S)   libxdmf-dev libxdmf-dev: Incompatible libloki header 2019-11-27
#943424 (S)   plymouth Plymouth prevents clean shutdown in some cases, which may result in data loss 2020-04-07
#943561 (S)   src:unoconv unoconv: CVE-2019-17400 2019-10-26
#944871 (STU)   src:docbook-xsl docbook-xsl: readds catalogs to the super catalog on every upgrade 2021-04-22
#945369 (S)   src:yard yard: CVE-2019-1020001 2020-08-26
#945405 (S)   youtube-dl ERROR: Signature extraction failed + WARNING: Unable to extract video title 2020-03-24
#946882 (S)   lvm2 blkdeactive hardcodes wrong path to sort 2021-02-22
#947086 (SE)   spamassassin spamassassin doesn't start at boot under sysvinit-core after update 2021-05-30
#947118 (S)   src:node-on-headers node-on-headers: autopkgtest started failing and then times out 2019-12-21
#948739 (STU)   gparted gparted should not mask .mount units 2021-07-29
#949227 (S)   src:python-pysaml2 python-pysaml2: FTBFS in buster because of expired certificate 2021-05-03
#949519 (STUE)   sudo-ldap sudo-ldap: Fails to connect to LDAP : "ldap_sasl_bind_s(): Can't contact LDAP server" 2021-07-30
#949954 (Sē)   src:virglrenderer virglrenderer: CVE-2020-8002 CVE-2020-8003 2020-02-12
#950041 (Sē)   src:python-keystoneauth1 python-keystoneauth1 FTBFS: test failures 2021-05-03
#950816 (S)   mpv mpv: unintended code execution vulnerability 2020-07-18
#952220 (S)   src:bcel bcel: FTBFS caused by test failure in BCELifierTestCase.testJavapCompare 2021-05-03
#952949 (S)   src:softhsm2 softhsm2: Replace PKCS11 headers provided by OASIS 2020-05-12
#952950 (STU)   src:nss nss: Replace PKCS11 headers provided by OASIS 2021-07-30
#952951 (S)   src:botan botan: Replace PKCS11 headers provided by OASIS 2020-04-26
#953875 (Sē)   runit runit - default installation can force init switch 2020-09-24
#953952 (S)   kmod kmod: libkmod2-udeb contains binary instead of libraries 2020-04-17
#955567 (Sē)   kalgebra kalgebra: Output is always blank 2021-01-12
#956245 (S)   dkms /etc/kernel/header_postinst.d/dkms: Error! You must be root to use this command. 2021-06-07
#956267 (S)   src:node-proper-lockfile node-proper-lockfile: autopkgtest failure 2020-04-09
#956503 (S)   node-lodash-reevaluate node-lodash-reevaluate: mis-spelled test dependency 2020-04-12
#956517 (S)   node-rw node-rw: missing test-depends on node-d3-queue 2020-05-04
#956523 (S)   mousetweaks mousetweaks ends with segmentation fault 2020-12-05
#956712 (S)   emacs emacs: https to plain http downgrade after unhandled GNUTLS_E_AGAIN error in TLS1.3 connection 2021-02-22
#958318 (S)   src:python-setuptools src:python-setuptools: Incomplete debian/copyright 2020-05-13
#958912 (S)   devscripts devscripts: missing ubuntu release info breaks autopkgtest 2021-02-16
#959392 (S)   src:ruby-faye ruby-faye: CVE-2020-11020 2021-01-02
#959545 (S)   src:libmateweather libmateweather: FTBFS: dh_auto_test: error: make -j4 check VERBOSE=1 returned exit code 2 2021-04-24
#959641 (S)   src:liburi-fetch-perl liburi-fetch-perl: FTBFS: dh_auto_test: error: make -j4 test TEST_VERBOSE=1 returned exit code 2 2021-05-06
#960132 (Sē)   mdadm mdadm: mdcheck_start.service trying to start unexisting file 2020-10-16
#960679 (STU)   src:fontconfig fontconfig: strict dependency of arch:any libfontconfig1 on arch:all fontconfig-config going wrong 2021-04-10
#960714 (Sē)   src:libkeduvocdocument libkeduvocdocument: autopkgtest failure: kdeinit5: not found 2020-08-01
#960715 (S)   src:cunit cunit: autopkgtest failure: gcc: not found 2020-06-11
#960810 (S)   procps procps: tools always report versions "UNKNOWN" 2020-11-06
#961209 (S)   src:tomcat9 tomcat9: CVE-2020-9484 2020-05-21
#961216 (S)   libglibmm-2.4-dev inkscape: symbol resolution problem 2020-06-25
#961302 (Sē)   src:sane-backends sane-backends 1.0.30 released with security fixes 2021-01-11
#962218 (Sē)   src:gnutls28 gnutls28: build fails on IPv6-only buildds 2020-07-11
#962737 (Sē)   handlebars handlebars: Does not declare its dependencies 2020-06-13
#962844 (Sē)   mdadm mdadm: Assembling RAID using IMSM in initrd fails due to lack of module efivarfs 2021-02-10
#963477 (Sē)   src:ruby-rack ruby-rack: CVE-2020-8184 2021-01-16
#964026 (S)   apt-cudf libelogind0: `Provides: libsystemd0` causes unrelated packages to fail to build (unmet dependencies) 2020-07-12
#964902 (S)   libio-socket-ip-perl libio-socket-ip-perl: AI_ADDRCONFIG breaks many test suites on IPv6-only hosts 2020-09-08
#965026 (STU)   grub-emu grub-emu is unusable with orca nor BRLTTY 2021-07-30
#966348 (S)   src:ortp ortp: FTBFS error: '__builtin_strncpy' specified bound 4 equals destination size 2020-12-25
#966515 (S)   src:scons scons: Some upstream sources are missing 2020-08-23
#966692 (Sē)   src:stunnel4 stunnel4: FTBFS because of test hang 2020-09-12
#967010 (S)   apache2 apache2: last debian 10.4 , last apache avail from repo hangs on install (and start phase) 2021-07-08
#967061 (S)   src:ruby-faye-websocket ruby-faye-websocket: CVE-2020-15133 2021-01-02
#967063 (S)   src:ruby-faye ruby-faye: CVE-2020-15134 2021-01-02
#968709 (S)   libcmark-gfm-dev libcmark-gfm-dev: Missing header files 2020-08-28
#969072 (S)   man-db man: seccomp filter breaks groff on armel/mipsel/hppa/powerpc 2021-02-09
#970550 (Sē)   libjs-autoprefixer diaspora installation fails with ExecJS::ProgramError: TypeError: Cannot read property 'list' of undefined 2020-10-25
#970941 (S)   src:f2fs-tools f2fs-tools: CVE-2020-6070 2021-01-03
#971048 (S)   src:samba samba: CVE-2020-1472 2020-11-12
#971129 (S)   src:shim-signed shim-signed: FTBFS: build-dependency not installable: shim-unsigned (= 15+1533136590.3beb971-7) 2021-05-03
#971751 (S)   spice-gtk spice-gtk: CVE-2020-14355 2020-12-04
#971946 (S)   libdebian-installer libdebian-installer: READSIZE size insufficient for cdebootstrap to build sid/unstable from buster/stable environment 2021-01-30
#972053 (S)   gpac CVE-2019-20161 CVE-2019-20162 CVE-2019-20163 CVE-2019-20165 CVE-2019-20170 CVE-2019-20208 CVE-2019-20628 CVE-2019-20629 CVE-2019-20630 CVE-2019-20631 CVE-2019-20632 CVE-2020-11558 CVE-2020-6630 CVE-2020-6631 2020-11-21
#972146 (STU)   mono-runtime-common /usr/share/applications/mono-runtime-common.desktop: should not handle MIME type by executing arbitrary code 2021-07-30
#972806 (S)   src:mbedtls mbedtls security advisories: local side channel attacks 2020-12-27
#972829 (Sē)   rust-lldb rust-lldb: depends on nonexistent package python3-lldb-7 in buster 2021-03-24
#973103 (S)   src:node-lunr node-lunr: FTBFS: tests failed 2021-05-03
#973380 (S)   f2fs-tools CVE-2020-6104 CVE-2020-6105 CVE-2020-6106 CVE-2020-6107 CVE-2020-6108 2021-01-03
#974428 (S)   telnetd in.telnetd crashes on running Nessus security scan 2021-02-17
#974543 (S)   gnome-sushi segmentation fault on launch 2020-12-07
#974686 (S)   python3-blockdev python3-blockdev: Missing dependencies, without deps to gir1.2-blockdev-2.0 the python module in unsable 2021-02-07
#975242 (S)   openjade segfault on all architectures if recompiled as of today 2020-12-17
#976045 (S)   src:bind9 bind9: flaky autopkgtest on 2021-02-14
#976211 (S)   src:jetty9 jetty9: CVE-2020-27218 2020-12-31
#977624 (S)   src:libxstream-java libxstream-java: CVE-2020-26259: XStream is vulnerable to an Arbitrary File Deletion on the local host when unmarshalling 2020-12-18
#978192 (Sē)   libxnvctrl-dev xfce4-sensors-plugin: FTBFS: NVCtrlLib.h:42:1: error: unknown type name ‘Bool’; did you mean ‘bool’? 2021-01-12
#978975 (S)   src:ruby-em-redis ruby-em-redis FTBFS on IPV6-only buildds 2021-01-13
#979010 (Sē)   libqalculate20 libqalculate20: crashes cantor due to symbol conflict with poppler 2021-03-10
#979322 (S)   libcacard-dev libcacard: missing runtime glib2.0 dependency? 2021-01-06
#979562 (S)   xscreensaver lightdm session termination does not stop xscreensaver 2021-06-06
#979838 (S)   src:twisted twisted: autopkgtest regression in testing: No such file or directory: 'ckeygen' 2021-02-14
#979841 (S)   src:rdflib rdflib: autopkgtest failure: cannot create directory ‘build/py3_testing’ 2021-02-12
#980061 (S)   src:caribou caribou: CVE-2021-3567: segfault on pressing ē since Xorg CVE-2020-25712 fix 2021-05-30
#980466 (Sē)   cervisia cervisia: missing dependency on kinit package 2021-06-14
#981054 (STU)   openipmi openipmi: Missing dependency on kmod 2021-08-01
#981846 (S)   python-argcomplete python-argcomplete: multiple tests failure 2021-03-01
#982380 (S)   src:funcparserlib funcparserlib: Package contains dfsg-incompatible documentation files 2021-02-13
#982459 (STUE)   mdadm mdadm --examine in chroot without /proc,/dev,/sys mounted corrupts host's filesystem 2021-07-30
#982578 (Sē)   src:stunnel4 stunnel4: CVE-2021-20230: client certificate not correctly verified when redirect and verifyChain options are used 2021-03-04
#982636 (Sē)   pipewire cheese: creates invalid and extremely long video files 2021-02-13
#982838 (STU)   src:win32-loader RoM: win32-loader must not migrate automatically 2021-02-19
#982868 (S)   dpkg-cross dpkg-cross generates erronous conflicts on like libc6-amd64:x32-i386-cross 2021-02-20
#982888 (S)   src:cross-toolchain-base dpkg-cross generates erronous conflicts on like libc6-amd64:x32-i386-cross 2021-02-21
#983206 (STU)   libupnp13 [libupnp13] Please update for CVE-2020-12695 & fixes 2021-07-17
#983686 (S)   src:libcaca libcaca: CVE-2021-3410 2021-03-20
#983917 (Sē)   src:libgweather gnome-weather: Fails to get forecast data 2021-03-30
#984520 (S)   grub-efi-amd64 'error: symbol "grub_register_command_lockdown" not found' and then lightdm fails to start 2021-06-03
#985173 (S)   pacemaker-resource-agents pacemaker-resource-agents: missing Breaks+Replaces: pacemaker (<< 2) 2021-05-09
#986046 (STUE)   gdm3 gdm3: dependencies do not include an X11 server and a window manager 2021-07-30
#986135 (S)   libnet-netmask-perl libnet-netmask-perl: CVE-2021-29424: mis-parses IP addresses in some situations 2021-04-11
#986803 (STUE)   rustc CVE-2021-28875 CVE-2021-28876 CVE-2021-28877 CVE-2021-28878 CVE-2021-28879 CVE-2020-36317 CVE-2020-36318 2021-07-17
#986873 (Sē)   src:librsvg librsvg: FTFBS with current rustc in Buster (1.41.1+dfsg1-1~deb10u1) 2021-04-13
#987062 (Sē)   apt apt: fails to upgrade guile-2.2-libs from buster to bullseye 2021-06-08
#987149 (S)   src:xscreensaver xscreensaver: CVE-2021-31523: allows starting external programs with cap_net_raw 2021-06-15
#987358 (S)   chromium chromium: Update to version 90.0.4430.85 (security-fixes) 2021-05-16
#987457 (S)   gutenprint-locales gutenprint-locales is empty 2021-04-25
#987461 (SU)   libuima-adapter-soap-java libuima-adapter-soap-java is empty 2021-06-23
#987530 (S)   src:node-end-of-stream node-end-of-stream FTBFS in buster 2021-04-25
#987570 (S)   openjdk-11-jre-headless openjdk-11-jre-headless: still listed as part of this package instead of openjdk-11-jre 2021-05-29
#987602 (STU)   src:ca-certificates ca-certificates-java,default-jre-headless,openjdk-11-jre-headless: get rid of the circular dependency 2021-08-01
#987811 (S)   src:samba samba: CVE-2021-20254 2021-05-06
#987991 (S)   shim-signed shim-signed: Recent dbx update blacklists shimx64.efi (1.33+15+1533136590.3beb971-7) 2021-05-03
#988023 (S)   src:ruby-hiredis ruby-hiredis FTBFS in buster 2021-05-03
#988142 (S)   src:pandas pandas FTBFS in buster: test failures 2021-05-09
#988145 (S)   src:libmail-dkim-perl libmail-dkim-perl in buster accesses the internet during the build 2021-05-06
#988150 (S)   src:fail2ban fail2ban FTBFS in buster: test failures 2021-05-06
#988160 (Sē)   src:python-keystoneclient python-keystoneclient FTBFS in buster: test failures 2021-05-06
#988181 (S)   src:julia julia FTBFS on i386 in buster 2021-05-07
#988394 (S)   src:thunar thunar: CVE-2021-32563 2021-05-14
#989011 (Sē)   src:ksudoku ksudoku FTBFS on armhf in buster 2021-05-23
#989332 (Sē)   libwebkit2gtk-4.0-37 libwebkit2gtk-4.0-37: May 30 upgrade for DSA-4923-1 broke the epiphany browser 2021-06-07
#989394 (Sē)   python-django python-django: CVE-2021-33203 & CVE-2021-33571 2021-06-02
#989491 (S)   src:libxstream-java libxstream-java: CVE-2021-29505 2021-06-19
#989615 (S)   src:intel-microcode intel-microcode: CVE-2020-24511 CVE-2020-24512 CVE-2020-24513 CVE-2020-24489 (INTEL-SA-00464, INTEL-SA-00465, INTEL-SA-00442) 2021-07-06
#989631 (S)   src:nettle nettle: CVE-2021-3580: Remote crash in RSA decryption via manipulated ciphertext 2021-06-21
#989830 (Sē)   apt apt: fails to upgrade libmrpt-dev from buster to bullseye 2021-06-14
#989852 (S)   src:xorg-server xorg-server-source: Cannot build X from provided source tarball 2021-06-15
#989872 (Sē)   src:thunderbird thunderbird-dbgsym: uninstallable cruft package in buster 2021-06-19
#990017 (STU)   grub-ieee1275 [REGRESSION] Bullseye CD installer images fail to install GRUB on OpenPOWER machines 2021-07-26
#990072 (S)   src:linux lxc-attach fails after debian 10.10 update 2021-06-21
#990158 (S)   src:shim shim-signed-common: No UEFI boot with error "Could not create MokListXRT" 2021-06-27
#990204 (S)   src:skimage Failing autopkgtest with pillow 8.1.2+dfsg-0.2/ pillow 8.2 2021-06-23
#990283 (S)   openvpn openvpn: Upgrades break systemd supervision 2021-07-11
#990417 (STUE)   src:qemu openjdk-11-jre-headless: running java in qemu s390 gives a SIGILL at C [] __kernel_getcpu+0x8 2021-08-01
#990561 (S)   src:libuv1 libuv1: CVE-2021-22918 2021-07-06
#990671 (STU)   src:libjdom2-java libjdom2-java: CVE-2021-33813 2021-07-19
#990906 (S)   xarchiver xarchiver Deleting Files Outside of Archive 2021-07-13
#991053 (S)   src:ftgl ftgl FTBFS with imagemagick with the #987504 change 2021-07-26
#991082 (STU)   gir1.2-gtd-1.0 gir1.2-gtd-1.0 has empty Depends 2021-08-01
#991088 (ST)   gir1.2-rda-1.0 gir1.2-rda-1.0 has empty Depends 2021-07-30
#991146 (STU)   dh-python python3-libxml2: ambiguous package name 'python3-libxml2' with more than one installed instance 2021-07-17
#991151 (STU)   procps procps: dropped the reload option from the init script, breaking corekeeper 2021-07-19
#991223 (SE)   modemmanager modemmanager: missing policykit-1 in Depends or Recommends 2021-07-24
#991307 (S)   src:aspell aspell: CVE-2019-25051 2021-07-27
#991351 (Sē)   src:nvidia-graphics-drivers nvidia-graphics-drivers: CVE-2021-1093, CVE-2021-1094, CVE-2021-1095 2021-07-25
#991361 (S)   postfix postfix should not use HELO localhost.localdomain 2021-07-21
#991375 (SE)   redis redis: CVE-2021-32761 2021-07-22
#991478 (STU)   shim-signed [shim-signed] RFE: do not brick users' systems in the stable distribution 2021-08-01

