-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 12 Mar 2020 22:52:58 +0100 Source: unattended-upgrades Architecture: source Version: 2.0 Distribution: unstable Urgency: medium Maintainer: Michael Vogt <mvo@debian.org> Changed-By: Balint Reczey <rbalint@ubuntu.com> Closes: 768087 903875 905877 919046 945837 946491 952569 Launchpad-Bugs-Fixed: 1251228 1434115 1850964 Changes: unattended-upgrades (2.0) unstable; urgency=medium . * Revert relying fully on pinning. APT's resolver can't be fully relied on because sometimes it does not find the solution. * Treat locally installed package versions as coming from a whitelisted origin * Don't list kept packages in dry-run mode. Since the kept packages are calculated based on the final system state all packages that would be upgraded would be listed as kept in dry-run mode. * Try installing/upgrading packages without any adjustment first. The applied pinning should be enough for APT's resolver to find the right candidate most of the time. The candidate version adjustments are still done in cases where APT's resolver fails * Report only higher available allowed versions with higher priority as kept (Closes: #952569) * Drop very long debug message about checking package list file * Honor pinning when listing origin of kept back packages . unattended-upgrades (1.18) experimental; urgency=medium . [ louib ] * Update blacklist translations * Fix syntax in template conf files . [ Balint Reczey ] * Keep mypy 0.761 happy * test: Create empty dirs to save kept packages list to them * Log explanation about kept back packages (LP: #1850964) (Closes: #945837, #903875) * Use GitHub Actions for CI instead of Travis. Run tests in Ubuntu Focal release because older releases don't have the needed python-apt version. * debian/tests/common-functions: Use backported python-apt from a PPA on Eoan * debian/tests: Skip upgrade-between-snapshots test. Python-apt's version is sid is too low for unattended-upgrades to work. * Use apt_pkg.Hashes instead of deprecated apt_pkg.md5sum() * autopkgtest: Skip upgrate-all-security in sid because buster can't be tested * Make allowed_origins, blacklist and whitelist attributes of UnattendedUpgradesCache * Make strict_whitelist attribute of UnattendedUpgradesCache * Apply pinning to disable not allowed origins and honor blacklist/whitelist. This makes candidate adjustments obsolete, since apt's resolver would pick candidates only from allowed origins by itself unless local pinning configuration overrides that. * Rely fully on pinning to disable allowed origins and stop adjusting candidates. * Drop Unattended-Upgrade::Allow-downgrade since now pinning is honored and downgrades are allowed for package versions with priority >= 1000. (Closes: #905877, #919046, #768087, #946491) (LP: #1251228, #1434115) * Don't ignore allowed origin when the package's priority is < 100. This used to be the way of honoring the priority, but now this special case prevents the package from showing up as a package kept back. * Assume frontend locking to be supported. Python3-apt (>= 1.9.6~) is required which supports the frontend locking API Checksums-Sha1: 2594d736890e7aeabb67dfbe9823f6e613950e5b 1898 unattended-upgrades_2.0.dsc 3b8910655618602005af05f4f7840e5727a5e92d 123840 unattended-upgrades_2.0.tar.xz 7badcf359cd6bd2979e55a4873ed9514f66fc6a2 8398 unattended-upgrades_2.0_source.buildinfo Checksums-Sha256: 571d4dae94668ba91f1bafaf983892e4b2e268102cff6b967b6c01f473a64b0a 1898 unattended-upgrades_2.0.dsc 2e2d206fd37ea6a4f7dd00eaf80cad5ad09d3a0a12418a19202e97c55e026f90 123840 unattended-upgrades_2.0.tar.xz ac9e9093727d5630071a825a55a3a64cf6168a5371b324dd2cf1af8cfd85b15b 8398 unattended-upgrades_2.0_source.buildinfo Files: fde082b73c2a39a35fa1af17529d9ba9 1898 admin optional unattended-upgrades_2.0.dsc f60f8c2ffcdb0716bed7496c2cdc2ef0 123840 admin optional unattended-upgrades_2.0.tar.xz e80b37697ee9bb78879adfa8daf856be 8398 admin optional unattended-upgrades_2.0_source.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEI/PvTgXX55rLQUfDg6KBkWslS0UFAl5qw9IACgkQg6KBkWsl S0VxFhAAqrphXWL/fXe9tms5H1aNIm1BzsUF4KxPJiDosEKRfyeafNo9pnqnYZXa 4JFu9UHr3gDoYagsjJt7bVPFwnw+w6EcciwXYtHQ6S1jI8Y/ttySWFUj/uuTLMEH L0kbDKc7fSeu6S7jucuUAkPRybIomLkci0EFHKmayrybjCuB0rr02UMQqtorNKPf HwHqCnVv9ikVOzsoMUazjKe6DUgnCSmZH+175Qhl7ac8PWBdj7+KXwIlFhJE9Nsz a7P7zYzY+e3krI3GTu1+moIERxNWcb45ZBwGfOBDL+qdQQoXiXuQDE5pOrpvexNE NzpI8+k4jaobKEmyk2XUAxe3BXAmlXWRQ+qQ8os0pQ85/KbA+DTT/Ham7T4WFC4m B0Z+Iu7u2wUsV/2ndv/Ahei5YPuxMAGiWld3pa18aTtvCG2/PMhBwOM7GZ3ZZtZi HRMEDYane38R8eMTZpbL6XGEKFloAVShg6g1YIBp7rtlvUO20Zi3E2Af94zLAzia Nb8sKwIZJN1MZDZ86pGyUaD2SkvU7jB1JheZTO/BpassIzO3ntVV+X8pOptVxvFb P+uDaMi047qC8aP/IsjVRFayvVFCgioebVUQ7EeNxDjdKsfXTlN4pMlzhO7P+OVW VXuQ1J62Mj/s4xAeTv7socaLP6JegNZOPmrnmcsCxXJSq8p/s6Y= =RBw9 -----END PGP SIGNATURE-----