=== Juesto is now known as Juest [00:17] Hello === paloma111 is now known as RYDeN === antonispgs3 is now known as antonispgs [01:46] hello === midnights is now known as lys [03:33] How to fix video drivers on 22.04? I cannot select any. There only "continue using a manually installed driver" in the software and update. [03:33] what's broken? what are you trying to do? [03:35] omega_doom: Tell is more - what release, what graphic's card, how did you install the driver ? === remy__ is now known as Remy [04:36] Bashing-om: 22.04 lts, nvidia 3080.I fixed it partially by purging all drivers and ubuntu-drivers install. But now i cannot install 545. [04:36] https://termbin.com/rer8 [04:47] omega_doom: Looking ^. [04:50] omega_doom: Pastebin ' sudo lshw -C display ' please. [05:01] Bashing-om: https://termbin.com/rzg3 [05:03] a fresh install of Ubuntu is not possible? [05:03] it might be easier [05:07] is there a way to have the discord title bar not show? I installed discord through the snap store. [05:10] tomengland, I'm not a discord user, but probably you should ask discord support, not Ubuntu [05:10] omega_doom: Nvida says the correct driver version is 550: https://www.nvidia.com/en-us/drivers/details/232672/ // beyond that I can not help much with AMD hybrid cards :( [05:10] sorry I mean the gnome ui [05:10] some reason it adds it's own titlebar on top of the electron app when it has it's own menu already [05:13] tomengland, you should search for the project of your discord client and make an issue there. If it's a snap problem (I don't believe it is) you should search for the snap dev [05:13] I gotta see, I think it's ubuntu's implementation of gnome [05:13] since it's not specific to just discord [05:15] tomengland, I just opened a electron app here and it looks ok [05:15] no two bars [05:16] what client are you using? the official one? [05:17] !info nvidia-driver-550 jammy [05:17] nvidia-driver-550 (550.107.02-0ubuntu0.22.04.1, jammy): NVIDIA driver metapackage. In component restricted, is optional. Built by nvidia-graphics-drivers-550. Size 479 kB / 1,389 kB. (Only available for amd64, arm64.) [05:46] Hey all. My PSU died in my server. After replacing it, I see "Loading ramdisk" or something like that then it rebooted. I booted itno knoppix and checked all my volume groups and everything is OK. Tried a previous kernel, same issue. Tried a rescue kernel. Same issue. I rebuild the initramfs and reinstalled grub. After that I added "debug" to grub and got some text, I could see as far as yama [05:46] becoming mindful, apparmor initialized, mount cash and mountpoint cache hashtable entries, The rest is a bit hard to read, therman_sys registered, cpuidle using governor ...kprobe jump optimization is enabled, HugeTBL ACPI: added _OSI ... bridge window...enabling extended something then that's all I was able to capture on my phone. I'm open to ideas... [05:47] does anyone know what the binary zzxordir is from? [05:47] i think i might be compromised [05:50] nelgin: does choosing rescue mode in the grub menu help any? [05:50] mgedmin unfortunately, no. [05:51] I wonder if I installed a few too many kernels without rebooting and come across a hardware compatability issue. I may try a lower version. [05:51] if you boot knoppix or something, can you look at the journal in your primary partition and see what the last logged messages were? [05:51] Yeah, give me a few. [06:07] ok. figured it out with discord. It is indeed discord's fault and any app that uses GTK3 that hasn't yet ported over to GTK4. Vesktop is a custom app that I think is in GTK4 and allows you to use the correct discord titlebar. [06:17] Is it possible to fix this? https://termbin.com/7fe7 I cannot install nvidia-driver-545-open [06:20] hihi [06:23] Nothing really out of the ordinary. [06:24] I did load in a bunch of nvidia stuff to get CUDA working but I don't think I ever rebooted so I removed a bunch of stuff. I've got all sorts of hwe junk in there, I'm not sure what's necessary and what isn't. [06:39] journalctl -b -1 shows my last successful boot was in august with 6.8.0-40-generic which I tried that failed too. [06:39] so it might be something I added since then. [06:41] nelgin: I've just read your scroll back, and a few of the keywords that are coming up, may suggest disk corruption/superblock map missing. When you botted from Knoppix is it possible to just do a disk check on each volume and make sure they are both a.) clean b.) marked as clean. The fact that you can get some journal output is great, but I wondered if you'd checked all the volumes status after am abrupt [06:41] power loss [06:53] Ubuntu will usually fsck when it tries to boot. That said, my lvhome did require fsck. I'm just finishing the rest, but I doubt that's it. [06:56] Everything is now fsck'd or xfs-reapired [07:01] Well, let me reboot and see if that makes any difference. [07:02] ay wsp [07:03] anyone there [07:03] heloooooooooooooooooooooo????????? [07:03] im just gonna spam [07:03] until someone comes online [07:03] which i bet my entire life savings is impossible [07:03] da [07:03] f [07:03] daf [07:03] d [07:04] lol [07:07] As predicted, that didn't fix it. [07:09] nelgin: did you get any clearer error [07:15] I'm checking the video I tool, also I configued systemd to use persistent logging so I might have caught something. Let me see [07:16] This is what I get to look at. Have a look while I go boot into knoppix again [07:16] https://pasteboard.co/tvbI2QSjmZAo.png [07:21] I don't think it even gets as far as mounting the disks so there's no going to be anything logged. [07:21] wow is that the matrix? [07:21] yeah, tell me about it. [07:22] I suppose I could try a bunch of burst pictures to try and catch an individual frame refresh but that seems bit over kill. :) [07:23] Unless the PSU going out toasted something on the motherboard that the boot process can't get past. [07:23] looks pretty similar to my boot log: https://bpa.st/2EMS6 [07:23] I fear you won't see the cause of the reboot that easily [07:24] What do you get after devtmpfs: initialized ? [07:24] a bunch of things, including [07:24] thermal_sys: Registered thermal governor 'user_space' [07:24] which is near the top of your log [07:24] Yup [07:24] ah, actually now that I look at it, the messages at the top of your picture have larger timestamps [07:25] further log: https://bpa.st/ERJEE [07:25] Yeah, you can see it fades out the lower text overwriting from the top. It's a pain [07:25] ACPI: Added _OSI(Processor Device)This is saw in a previous video I did. [07:26] setting a serial console or netconsole might be an option, if you want to debug this further [07:27] Yeah, putty isn't lgetting me connect to COM1 so I'm going to have to dive under the desk to figure what's not connected. [07:29] I can try netconsole. I assume it'll work on a virtual box linux instance. [07:48] Well...I did see something in the kern.log about drm_nvidia but I forgot to get a picture of it. === n1thc8 is now known as n1thc [08:02] exit [08:11] drm:nv_drm_master_set [nvidia_drm] [ *ERROR* ] [08:11] hmm [08:12] happens right after rfkill input handler enabled [08:14] there is a small blue light hidden at the top left of the screen. when the mouse pointer goes over it, it shows the running windows. whats it called? i am on ubuntu studio/plasma. [08:18] k [08:36] I tried netconsole and I get nothing. [08:39] the nvidia error isn't something to worry about [08:39] (just reading the back scroll) [08:39] what's the last thing you see on the bootm [08:39] boot [08:43] halo [08:43] gedagedigedagedago [08:45] The kern.log is a red herring. I changed to multiuser target rather than graphical and I've removed every bit of nvidia I can find so it's something else. [08:46] ikonia see the image I pasted earlier, that's as good as it gets I'm afraid. [08:46] yeah, it's not readable [08:46] wondering if a boot arg on console size/buffer may clean it up [08:46] hi anyone here rolled out cyberark epm agent to unbutnu aws, we've just patched the new version in UAT for me to test and our admin/s as it fixes some bugs like sudo-p and a few others we've been waiting months for the vendor to resolve but finalyl we can look to UAT , track and fix some existin gdefects and start rolling out and creating policies? [08:46] ubuntu [08:47] if I could slow the output down a bit that might help. [08:47] I've done it [08:47] hirogen1: I've done it [08:47] it lasted 9 months for me to build a business case to remove it [08:48] oh cool im actualyl a linux/ubuntu noob tbh, we're rolling out to macoS too just waiting on some pentest and remeidation but that is all in order [08:48] omg [08:49] why? we're quite strick here and want to use it as a binary tool YES OR NO for elevations following a cyber sec workflow as we find the tool helps find out which users are breaking best practicing, exammple on windows is uysers not code signing their QA apps, so now they're forced to do that or find an automation solution to do it! [08:49] so any reasons why as all our users are developers [08:49] it's one of the worst tools possible, it's an anti-pattern for cloud, and it's beyond easy to bypass, it costs a fortune, has poor vendor support and is high maintainance [08:49] bit offtopic for this channel [08:53] yeah true [08:53] ok thanks are you in #security [09:10] does ubuntu server 24 support intel vroc [09:11] can't seem to find any guide [09:11] found this old outdated one: https://www.intel.com/content/dam/support/us/en/documents/memory-and-storage/ssd-software/VROC-Ubuntu-Setup-UserGuide-342787-US.pdf === DSDotName is now known as info === info is now known as DSDotName [09:24] blogVideo: that sounds like it will probably just work (and no need to update mdadm on recent Ubuntu versions) [09:34] OK, I have a bit more... Looks like 0000:00:01.2 PCI bridge to [bus 02-09] then someting about 0000:03:02.0 [ 00 5 3 ] type 01 class 0x060400 PCIe ... then that's about it. [09:36] This is looking more and more like a reinstall scenario. [09:48] JanC: trying to set up a new server but it doesn't correctly recognize the raid array [09:48] but Fedora does [09:54] Urgh, I can't even get grub to not reboot. I've tried "no-reboot" panic=0 even tho there doesn't seem to be a panic, I've tried kernel.panic_on_oops=1 damn thing. [09:56] I had a thinkpad that would randomly reboot for no reason once a month [09:56] I never got to the bottom of it [10:00] It's 5am here so I need to go to bed. Tomorrow I'll pull all the cards and USB devices and give it a boot, see if anything like that causing a problem. Failing that, looks like a fresh install. [10:00] Well, thank you everyone for your help. [10:01] I can`t login to https://ubuntu.com/pro/dashboard i click on forgot password and no e-mail is received [10:02] it can take a little while to receive a mail sometimes [10:02] or maybe you used a different mail address to register? [10:04] is there a support e-mail? [10:11] if you pay for a subscription you should have one [10:11] if not just create a new account [10:11] oh too late === MrA is now known as Guest9846 [10:26] if you don't throw away your old e-mail, the old registration mails should still be there... [11:03] descarga google chome === DSDotName is now known as FiverBox [11:19] where to find in ubuntu help and examples for reading and writing to files with C [11:19] only man 3? [11:21] That depends on if you want to use standard library, POSIX, kernel, etc. [11:22] yes standard library libc, glibc 2.35 [11:23] man libc? [11:23] man 3 fopen [11:24] fopen, fclose, fread, fwrite [11:25] yes i found man 3 fopen but this man page has no short examples ... [11:25] https://www.thegeekstuff.com/2012/07/c-file-handling/ [11:26] ah , fread has a short example programm [11:30] libc's info pages are better than man pages [11:30] you can find them online, or read them with `pinfo libc` [11:30] (there's also `info libc`, but it's a very old-fashioned monochrome program with incomprehensible emacs style keybindings) [11:31] also, I would recommend something other than C, like Rust [11:32] why not both? [11:32] also, pinfo is really cool === DSDotName is now known as FiverBox === FiverBox is now known as DSDotName === DSDotName is now known as FiverBox === FiverBox is now known as DSDotName === DSDotName is now known as EvoBox [11:50] غروبات التلغرام : [11:50] أولى: [11:50] https://t.me/+HGjENwxX5illYjBk [11:50] ثانية: [11:50] https://t.me/+gR9oJF5X9TthZWJk [11:50] ثالثة: [11:52] Hi all [11:59] thx for info,pinfo,rust the geek stuff has exactly examples to create a file in c [12:23] i installed agda in github codespaces (which run ubuntu) and the installer put `/home/codespace/.cabal/bin` into my PATH, i assume via some bash configuration, but the agda vscode extension still cant "see" the executable. where would the vscode extension get its path variable from? [12:24] there is the `terminal.integrated.env.linux`setting, but the integrated terminal in vscode has no problem with agda, only the extension [12:29] Greetings everyone. I've set up a LUKS encryption for my linux installation a few years ago but unfortunately forgot the passphrase. Questions: 1) since the system is still up and wasn't rebooted, is it somehow possible to test a few variants without rebooting the server? 2) is it possible to change the passphrase without remembering the old one? Thanks [12:34] you need either the passphrase or the recovery key [12:35] hid3: Yes, you can test but not add a new one (or change) without a known passphrase. [12:36] or CIA-level resources to find the key in kernel memory by reading the contents of RAM directly [12:37] google tells me it's possible to extract the key from a mounted LUKS1 volume, but not from LUKS2 [12:38] I seem to have a PDF zoom issue, both with MuPDF and Zathura, and it seems any other PDF viewer I try. What happens is that the fully zoomed out is halfway zoomed. Anyone aware of this? [12:38] Sorry not MuPDF, but Atril document viewer. [12:39] And Zathura with both Poppler and MuPDF. [12:39] Reset zoom doesn't work, but fit width does. [12:45] mgedmin: this was my testbox and first LUKS setup. Not too important to invoke CIA-level tools to recover it but would be nice to remember the unlocking passphrase :) [12:45] vlt: by testing I assume I should try 'cryptsetup luksAddKey /dev/sdX' command, it would assk for passphrase and if I input the right one it would allow me to proceed, right? [12:47] taeaad, not sure, but with dconf-editor you can check the cache set for those apps; maybe modify the values [12:47] hid3: yeah === esv_ is now known as esv [12:53] hid3: Yes. And I remember also a --test-passphrase option but couldn’t find it in my current manpage. [12:55] will make some tea and give a try a few tens/hundreds of combinations, thanks guys [12:58] hid3: I'd also start copying your data somewhere else, one kernel crash/power loss and your data will be gone [13:00] CosmicDJ: yeah, I've already copied over my important stuff to another server. In case I won't be able to recover, I'll just order a reinstall. It was my testbox but over time it became 'a bit important' [13:00] hid3: If you remember a few passphrases or parts of it, you can automate this task :D [13:01] hell knows what was in my head 3 years ago :) [13:01] so I don't [13:18] hi [13:19] welcome dhanodh [13:20] is this the ubuntu help channel?? [13:20] so i am in a bit of a bind. i was upgrading an ubuntu machine from 18 lts to 20 lts with the gui updater. things went rather smoothly since i already had removed all third party packages and ppas apart from tailscale. the upgrade gui said it'll remove some old packges like firefox (to transition to snap) and upgrade my nvidia drivers. it was happily chugging along then suddenly i saw the window close and i couldn't open any applications like [13:20] settings. i also had no network. journalctl said that the update manager was done. so i rebooted into a kernel panic [13:20] dhanodh: yes it is [13:21] i tried the systemd entry in grub, it was stuck at starting uid 1007. recovery mode for an older kernel worked. but i have no internet now [13:21] how do i properly finish the upgrade? [13:21] I'm just happy that at least some people use linux [13:24] hi all [13:24] pls i can't access anymore my external hd https://drive.google.com/file/d/1whco3cRWkwOk_PMZ9Li1EtXQzfeq9Uhi/view?usp=sharing [13:24] i'm from live usb 24.04.1 [13:28] okay, i somehow can run apt dist-upgrade from here https://discourse.ubuntu.com/t/knowledge-base-resolving-hard-upgrade-issues/44443. had to skip firefox snap installation since there is no network, but it seems to install other packages from the cache [13:29] i booted the recovery mode entry from grub for an older kernel [13:29] apt install --fix-broken did nothing [13:32] airmailsteam: to finish an interrupted upgrade you probably need a working network and then do `apt full-upgrade` [13:32] possibly also `apt install ubuntu-desktop^` to make sure all the standard packages are installed [13:33] its still running apt dist-upgrade at 95% now [13:33] but if it was already at the point of removing obsolete software, then your issues are likely caused by something else? [13:33] i dont quite know how to the network enbaled [13:34] it was at the point of installing/unpacking new packages [13:34] the terminal section of the upgrade gui was enabled and it said unpacking ... [13:34] then it just vanished [13:37] i ran nmtui, but apparently network manager is not isntalled [13:37] wtf === mrbutthead8 is now known as mrbutthead [13:40] shouldn't apt have downloaded everything before it began installing? [13:41] cat /etc/lsb-release says im on jammy 22.04.5 === mrbutthead0 is now known as mrbutthead [13:46] im out of ideas, even update-initramfs isn't available [13:47] airmailsteam: are you able to share logs where you're stuck? === hans_ is now known as hans__ [13:50] what logs do you want me to share? [13:51] right now, i am booted into a tty via the recovery mode entry from grub into an older kernel. === hans__ is now known as hanshenrik [13:52] i tried usb tethering from my android, but no dice. i think it needs network manager, but i cant install it without internet [13:52] so the problem is no network so you cant complete the upgrade? [13:53] right now, it does seem like that. but a lot of the basic packages also seem unavilable on the shell. theres no update-initramfs for example [13:53] airmailsteam: did you enable networking in recoverymode? === hanshenrik is now known as hans_henrik [13:54] hi, how can I import a gnome terminal's profile configuration? [13:54] airmailsteam: are you able to boot the system normally to shell with any of the installed kernels? [13:54] I want to import it from a .dconf file [13:54] lotuspsychje: i didn't see anything like that (networking recovery mode) [13:55] ravage: i am on a tty shell rightnow [13:55] ok. can you paste the output of "sudo ip l" [13:55] or the network interface names are enough probably [13:55] airmailsteam: https://static1.xdaimages.com/wordpress/wp-content/uploads/wm/2023/12/fdmng-1.png [13:55] ravage: [13:56] there are some interfaces like wlps69s0 f [13:56] lotuspsychje: i didn't get this menu [13:56] ok. are you conneted or can you connect a cable? [13:57] i dont have access to ethernet, this is a uni, and internet via ethernet is limited to a wpad proxy [13:57] getting wifi to work in this state is probably not eady [13:57] wifi works, though [13:57] easy [13:57] i can also do usb tethering [13:57] that should work yes [13:57] the interface should show up in that command [13:58] so my phone says tethering enabled [13:58] so do "sudo ip l" again and it should show up as some long interface name [13:58] i have lo , enp70s0, enp68s0, wlp69s0 as the interfaces [13:59] mhm. i think is should have a longer name but im not sure [13:59] try "sudo journalctl -f" [13:59] and then reconnet tethering [13:59] it should show up when connecting [13:59] netowrkctl also lists these 4, but it also says systemd-networkd isn't running [14:01] ravage: upon connecting the usb, i see new usb device found samsung android. then i enabled tethering and it says kernel: bpf invalid name_offset and failed to validate module [14:01] hi /names [14:01] also says device is not mtp, which does make sense i guess since i am not exposing the storage [14:02] i can do a reboot and try some other boot entry? [14:02] yep try if another kernel maybe boots or try the recovery one again [14:02] is it possible to import a gnome terminal configuration from file? I messed up my configs. I don't know how to reset them. I have to reset them before importing the profile. [14:02] usually tethering should work out of the box on kernel level [14:03] it should at least detect the network device [14:04] maybe some kernel module issue [14:04] i will try rebooting [14:04] itai: try "dconf reset -f /org/gnome/terminal/legacy/" [14:05] I have done this: dconf reset -f /org/gnome/ [14:05] thanks ;) [14:05] that resets everything [14:05] good luck [14:06] ravage: but, how to import a temrinal profile from file? should I use dconf? [14:07] yes dconf can also import stuff [14:07] what is the command for the temrinal profile? [14:08] no idea. but im sure that is something a big search engine knows? === hwpplayer1 is now known as pinkychocolate === mrbutthead7 is now known as mrbutthead === pinkychocolate is now known as hwpplayer1 [14:08] dconf dump /org/gnome/terminal/ > gnome-terminal-settings.dconf [14:09] dconf load /org/gnome/terminal/ < gnome-terminal-settings.dconf [14:09] something like that [14:09] ravage: I tried this, thanks [14:09] I have to restart my terminal [14:11] welp, i cant boot into the recovery entry anymore. it drops me into busybox but the keyboard doesn't work. the text on the tty is: bpf:invalid name. failed to validate module btf -22. gave up waiting for root device, uuid does not exist [14:13] also the systemd entries vanished from grub [14:13] i cant scroll up here but a lot of modules are failing to validate with btf -22 like ahci, r8169 [14:14] can you get online from a 24.04 live usb? [14:14] airmailsteam: try rescue your /home with a liveusb perhaps? [14:14] i am booting into a live usb now [14:14] importing a temrinal profile/configuration from file does not work. I used this command: dconf load /org/gnome/terminal/ < profile-name.dconf [14:15] I will have to investigate this a bit [14:17] okay i am in the live session [14:17] ok. so the easy solution is to just backup /home somewhere and reinstall [14:17] i dont know how complex your setup is [14:18] agree, backup and reinstall or install side by your existing [14:18] if recoverymode is borked, its usualy not a good sign [14:22] yeah /home is on a differnet partition, so thats also good [14:22] i would still like to fix it though. maybe chroot and force upgrade? [14:23] the problem is i dont understand what happened. the upgrade window just closed and i guess didn't finish [14:23] some things might break [14:23] depending on wich stage the upgrade was [14:24] how can i look at the upgrade logs from here [14:25] also is this still valid for chrooting? https://help.ubuntu.com/community/LiveCdRecovery last update was in 2016 [14:30] is there a way to preserve the user accounts so that the people can seamlessly login and access their data after i reinstall? [14:31] that should be all in /etc/shadow /etc/passwd and /etc/group [14:32] so if i just paste these 3 files onto the new installation, should it just work? [14:32] chroot should still work the same in general [14:32] well. you may copy things that you dont need [14:32] but yes in general it should work if the home dirs exist [14:33] i would still recommend a full backup of that system if possible [14:33] hmm, maybe i can just merge only the real user accounts [14:33] yep i am making a backup of /home === filipe is now known as Guest6897 [14:48] done with the bakup. iam gonna try chrooting and upgrading. any pointers on what is the right command to run in this case? as in, to upgrade correctly [14:49] within the changeroot try "sudo apt -f install" and if that all goes ok "sudo apt full-upgrade" [14:49] make sure you have network connectivty first [14:49] you may need to fiddle with /etc/resolv.conf [14:50] quick fix if usually to just to delete it and put "nameserver 8.8.8.8" in there [14:50] i do have internet, i used tethering and it works in the live env [14:50] aah you meant in the chroot? [14:50] yes [14:50] but maybe it just works. DNS can be a problem [15:11] Well shit, for anyone following along. I removed my PCIe to PCI adapter and the damn thing booted right up. [15:13] please keep the language family friendly in the support channel nelgin === filipe is now known as Guest2472 === Guest2472 is now known as arondknight [15:49] ravage: sorry for the delay, the backup actually took longer than expected. i chrooted and had to delete the resolvconf symlink and added 8.8.8.8 as the dns. so internet from within the chroot works. [15:49] both apt -f install and apt full-upgrade did nothing [15:50] they say 0 for all: upgraded, newly installed and removed [15:51] is there something like distro-sync to synchronise with jammy and then also install the missing packages from a regular installation? [15:55] airmailsteam: install with a liveusb and keep your /home kind of restores your install [15:55] the installer will give you multiple options === tryfan30818 is now known as tryfan3081 [16:00] Hey, I have a question regarding vulnerabilities on ubuntu. For example, for https://ubuntu.com/security/CVE-2022-3597 the security advisory notes the "4.4.0-6ubuntu1" version as the fix version in Ubuntu lunar, and "4.4.0-4ubuntu3.1" as the fix version for Ubuntu kinetic. However, https://answers.launchpad.net/ubuntu/lunar/amd64/libtiff5-dev/4.4.0-4ubuntu3.1 lists that the "4.4.0-4ubuntu3.1" [16:00] -ubottu:#ubuntu- LibTIFF 4.4.0 has an out-of-bounds write in _TIFFmemcpy in libtiff/tif_unix.c:346 when called from extractImageSection, tools/tiffcrop.c:6826, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 236b7191. [16:00] version was released in Ubuntu lunar. Does that mean that for Ubuntu lunar the version "4.4.0-4ubuntu3.1" is vulnerable to the CVE, while for ubuntu kinetic the same version fixes the vulnerability? [16:00] laki: https://ubuntu.com/security/cves [16:01] Also, more generalized - does it ever occur that the same source package version can be considered vulnerable on one distro version, but not the other? If so, can you provide any examples? [16:01] ravage: care to elaborate? [16:01] search the CVE. find the fixed package versions. make sure you have it installed [16:02] https://ubuntu.com/security/CVE-2022-3597 [16:02] -ubottu:#ubuntu- LibTIFF 4.4.0 has an out-of-bounds write in _TIFFmemcpy in libtiff/tif_unix.c:346 when called from extractImageSection, tools/tiffcrop.c:6826, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 236b7191. [16:03] I understand that, but I'm asking in general to understand how vulnerabilities are being fixed and can the same source pacakge version be vulnerable on one ubuntu release, but not the other? [16:03] lotuspsychje: true, but no fun in that! i wanted to understand and fix this [16:03] security fixes are backported to the version Ubuntu offers if needed [16:04] I understand that as well. But please refer to the above example. If "4.4.0-4ubuntu3.1" really existed in Ubuntu lunar, does that mean that the package is vulnerable? [16:05] And if it didn't exist, how come the Launchpad API says the package was released in Ubuntu lunar? [16:05] i dont think getting into theoretical discussions is time well spent. also 23.04 is EOL anyway [16:05] so not supported here [16:06] airmailsteam: does an "apt update" still show jammy? [16:06] you wanted to upgrade from 22.04 to 24.04 right? [16:06] ravage: well, it is in my case, as i'm doing security work and vulnerability scanning, so I'm trying to understand precisely how it all works [16:07] then your case is not our case sorry 🙂 [16:07] totally fair, can you redirect me somewhere where I can try to seek more answers? :) [16:07] ravage: yes, apt update showed jammy from within the chroot (the live usb is noble) [16:08] then you may just want to make sure you have the latest kernel installed and reinstall grub [16:08] and maybe try that upgrade again [16:09] it showed a lot of candidates for autoremove like gnome-bluetooth and a lot more. i did apt install ubuntu-desktop and it pulled in a lot of packages again [16:09] update initramfs failed in the end though [16:09] is this a normal Ubuntu Desktop system? [16:09] ravage: yes [16:09] in that case you can start with "sudo apt install --reinstall ubuntu-desktop" [16:10] using sudo says unable to resolve host ubuntu and unable to allocate pty. since i was anyway root in the chroot env, i have been running the commands without the need for priv esc [16:10] and does your chroot include correct mounts for /dev and /sys and /proc ? [16:11] ravage: i just did a sudo mount /dev/nv... /mnt [16:11] not sure about the other stuff [16:12] thats not enough for fixing most problems [16:12] especially for boot problems [16:12] damn, okay. what else do i need to do/mount? [16:13] https://p.haxxors.com/dl39y5hf.txt [16:13] try these [16:14] from within the chroot, right? [16:14] no [16:14] from outside the chroot [16:14] good that i checked then! [16:14] and then chroot in again [16:14] that implies that you mounted your system drive to /mnt [16:14] if not you need to change the paths [16:15] yep, i did it /mnt [16:15] let me know when you are in that chroot again [16:17] the cp command in the end failed saying that /proc/mounts and /mnt/etc/mtab are the same file' [16:17] ok neve rmind then [16:18] okay i did a sudo chroot /mnt again [16:18] ok now see if that ubuntu-desktop reinstall command does anything. [16:18] should i reinstall the ubuntu-desktop package? [16:18] and can you ping ubuntu.com ? [16:18] yep, ping works [16:18] yep then try the command [16:19] at this point you can easily paste commands here [16:19] apt update | nc termbin.com 9999 [16:19] as an example [16:19] should output a URL [16:19] it completed very quickly. 0 for everything else and 1 reinstalled [16:19] you could also just connect to IRC from the live session [16:20] ok then lets do: apt install --reinstall linux-image-generic [16:21] i will try logging in to web irc [16:21] ok [16:21] and maybe we try the hwe kernel anyway [16:21] meanwhile the linux-image-generic install also completed [16:21] it unpacked and set up. but no initrd regen [16:22] sudo update-grub2 | nc termbin.com 9999 [16:23] well or just paste bin the output somewhere [16:23] i did the nc thing [16:23] it may not work with the command [16:23] should there be a ":" colon [16:23] does it output a URL? [16:24] nope, no url. doesn't 9999 need to be prefixed by a colon? [16:24] no the command is ok [16:24] just does not work with this output [16:24] open https://pastebin.com/ or so in firefox [16:24] and just paste it in ther [16:25] now from the live session via web irc [16:25] \o/ [16:26] https://bpa.st/VNZQQ [16:26] thats interesting [16:26] does that device exist? [16:26] as in "ls /dev/nvme0n1p1" [16:27] also maybe pastebin the output of "mount" [16:27] https://bpa.st/NUR2A [16:27] that partition is where the original root lived [16:27] oh [16:28] i can access it from outside the chroot [16:28] try "sudo -i" [16:28] and try that grub update again maybe [16:28] sorry, in the chroot? sudo -i? [16:28] you need to run all commands here as root anyway [16:28] so you can always do that first [16:29] and that mount was outside the chroot? [16:29] in the chroot env, i am already logged in as root. running sudo gives me: sudo: unable to resolve host ubuntu: Name or service not known [16:29] ok [16:29] yes, the output of mount was from the live session === nshire2 is now known as nshire [17:28] re:there is a small blue light hidden at the top left of the screen. when the mouse pointer goes over it, it shows the running windows. whats it called? i am on ubuntu studio/plasma. [17:31] theos, maybe 'Screen Edge ' [17:34] Hi, I've upgraded a couple of 22.04.5 servers to 24.04.1 and in both cases /etc/samba/smb.conf was overwritten back to defaults without asking (I didn't find the original config anywhere). Is this known issue?. [17:37] there is always a backup file in the same directory? [17:43] nope, the .dpkg-old or whatever wasn't there [17:43] Luckily I had a backup otherwise I would be out of luck === Juesto is now known as Juest [17:52] does anyone else use byobu, how do you get it to stop importing .zprofile === mrbutthead5 is now known as mrbutthead [18:54] It looks like it's my TV tuner device that's causing Ubuntu to reboot for no reason on startup. It used to work so not sure if something changed. === Juesto is now known as Juest [19:16] I had a standard update of 24.04.1 that has failed in the update of the kernel to 6.8.0-45-generic. My root system is in ZFS. After reboot half the system did not come up, and it seems quite a few files where not installed in the kernel - especially in /lib. I set the system to use the previous 44 kernel via initramfs and now the system boots. === mrbutthead8 is now known as mrbutthead [19:16] I have tried to reinstall the 45 kernel though apt, but grub still will not recognize the install and says "bad filesystem" [19:17] if I try to remove the 45 kernel, it tries to remove linux-generic* and linux-image-generic* as well - this seems wrong [19:18] have anyone got any ideas on how to proceed with a fix, that will correctly get me to linux-image-6.8.0-45-generic [19:18] sort of a reinstall of the system [19:18] short === uf7 is now known as uf === alucardromero5 is now known as alucardromero === waxfire7 is now known as waxfire === dongcarl3 is now known as dongcarl === javaJake_ is now known as javaJake [19:21] for now - a working system - but on the wrong kernel patch === kikke1 is now known as Catalin [19:24] I honestly do not know what the problem is - does not happen too often - I did not notice any errors during the apt update process === sudip_ is now known as sudip === mrbutthead7 is now known as mrbutthead === mrbutthead2 is now known as mrbutthead === Fooo is now known as Square === mrbutthead7 is now known as mrbutthead === ajfriesen166 is now known as ajfriesen16 === devnz is now known as knivemare === mrbutthead7 is now known as mrbutthead === syphyr_ is now known as syphyr === mrbutthead1 is now known as mrbutthead === Guest38 is now known as kurva === mrbutthead5 is now known as mrbutthead === Sidewyz1 is now known as Sidewyz === mrbutthead2 is now known as mrbutthead === tryfan30812 is now known as tryfan3081 === mrbutthead5 is now known as mrbutthead