Skip Menu |
 

Preferred bug tracker

Please visit the preferred bug tracker to report your issue.

This queue is for tickets about the YAML-LibYAML CPAN distribution.

Report information
The Basics
Id: 75365
Status: resolved
Priority: 0/
Queue: YAML-LibYAML

People
Owner: Nobody in particular
Requestors: darkjunix [...] gmail.com
Cc:
AdminCc:

Bug Information
Severity: (no value)
Broken in: (no value)
Fixed in: (no value)

Attachments


From darkjunix [...] gmail.com Tue Feb 28 03: 05:02 2012
MIME-Version: 1.0
X-Spam-Status: No, score=-2.779 tagged_above=-99.9 required=10 tests=[AWL=-1.560, BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, SPF_NEUTRAL=0.779] autolearn=no
X-Spam-Flag: NO
Received-SPF: pass (google.com: domain of darkjunix [...] gmail.com designates 10.52.26.20 as permitted sender) client-ip=10.52.26.20;
X-Virus-Checked: Checked by ClamAV on 16.mx.develooper.com
Content-Type: multipart/mixed; boundary=20cf307760a390ae1b04ba01ae87
Message-ID: <CAGevevexwdN08EjCr29_3amTn7gHVzhaeY5Se2y-o3otaY-Juw [...] mail.gmail.com>
X-Virus-Scanned: Debian amavisd-new at bestpractical.com
X-Spam-Score: -2.779
Received: from localhost (localhost [127.0.0.1]) by hipster.bestpractical.com (Postfix) with ESMTP id E1207240108 for <cpan-bug+YAML-LibYAML [...] hipster.bestpractical.com>; Tue, 28 Feb 2012 03:05:01 -0500 (EST)
Received: from hipster.bestpractical.com ([127.0.0.1]) by localhost (hipster.bestpractical.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id vWCcCDu4syuC for <cpan-bug+YAML-LibYAML [...] hipster.bestpractical.com>; Tue, 28 Feb 2012 03:05:00 -0500 (EST)
Received: from la.mx.develooper.com (x1.develooper.com [207.171.7.70]) by hipster.bestpractical.com (Postfix) with SMTP id 4427C2400B8 for <bug-YAML-LibYAML [...] rt.cpan.org>; Tue, 28 Feb 2012 03:05:00 -0500 (EST)
Received: (qmail 18902 invoked by uid 103); 28 Feb 2012 08:04:59 -0000
Received: from x16.dev (10.0.100.26) by x1.dev with QMQP; 28 Feb 2012 08:04:59 -0000
Received: from mail-vw0-f50.google.com (HELO mail-vw0-f50.google.com) (209.85.212.50) by 16.mx.develooper.com (qpsmtpd/0.80/v0.80-19-gf52d165) with ESMTP; Tue, 28 Feb 2012 00:04:56 -0800
Received: by vbnl22 with SMTP id l22so2487618vbn.9 for <bug-YAML-LibYAML [...] rt.cpan.org>; Tue, 28 Feb 2012 00:04:53 -0800 (PST)
Received: from mr.google.com ([10.52.26.20]) by 10.52.26.20 with SMTP id h20mr4901140vdg.3.1330416293676 (num_hops = 1); Tue, 28 Feb 2012 00:04:53 -0800 (PST)
Received: by 10.52.26.20 with SMTP id h20mr4136518vdg.3.1330416293293; Tue, 28 Feb 2012 00:04:53 -0800 (PST)
Received: by 10.220.192.197 with HTTP; Tue, 28 Feb 2012 00:04:33 -0800 (PST)
Authentication-Results: hipster.bestpractical.com (amavisd-new); dkim=pass header.i= [...] gmail.com
Authentication-Results: mr.google.com; spf=pass (google.com: domain of darkjunix [...] gmail.com designates 10.52.26.20 as permitted sender) smtp.mail=darkjunix [...] gmail.com; dkim=pass header.i=darkjunix [...] gmail.com
Delivered-To: cpan-bug+YAML-LibYAML [...] hipster.bestpractical.com
Subject: Patch to Fix FTBFS with hardening flags
Return-Path: <darkjunix [...] gmail.com>
X-RT-Mail-Extension: yaml-libyaml
X-Original-To: cpan-bug+YAML-LibYAML [...] hipster.bestpractical.com
X-Spam-Check-BY: 16.mx.develooper.com
Dkim-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=mime-version:from:date:message-id:subject:to:content-type; bh=PyIGl1c/aLrBjIPGfUQESpanLCtcWwK5BtJ/aDzmVl4=; b=MEOQT7waXGfJVTix5AcFdpl3ulQyUat+Na0w3tACpbqoHZS3Hsc0NZ2/gIGEEjqvPP Mm76PHMj2YWq4le1uC5NcM+0C3oCvyO6pG4r47Ausz2GDIb7IY47IdcXcgpfa2V4La0e h3flYtPp5Xx8iwCoPkKPtBfkQkW0y1jERwlhs=
Date: Tue, 28 Feb 2012 03:04:33 -0500
X-Spam-Level:
To: bug-YAML-LibYAML [...] rt.cpan.org
From: Julián Moreno Patiño <darkjunix [...] gmail.com>
Content-Length: 0
Content-Type: multipart/alternative; boundary=20cf307760a390ae1704ba01ae85
Content-Length: 0
content-type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
X-RT-Original-Encoding: ISO-8859-1
Content-Length: 523
Download (untitled) / with headers
text/plain 523b
Hi, The attached patch fix a fail to build from source with Hardening flags enabled[0]. The error is caused by format-security flag. Please see part of the buildlog[1]. Please consider applying it for the next release. [0] http://wiki.debian.org/ReleaseGoals/SecurityHardeningBuildFlags [1] http://bugs.debian.org/661548 Kind regards, -- Julián Moreno Patiño .''`. Debian GNU/{Linux,KfreeBSD} : :' : Free Operating Systems `. `' http://debian.org/ `- PGP KEY ID 6168BF60 Registered GNU Linux User ID 488513
content-type: text/html; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
X-RT-Original-Encoding: ISO-8859-1
Content-Length: 958
X-Attachment-ID: f_gz6n98ui0
content-type: text/x-patch; charset="UTF-8"; name="fix_ftbfs_hardening_flags.diff"
content-disposition: attachment; filename="fix_ftbfs_hardening_flags.diff"
Content-Transfer-Encoding: base64
X-RT-Original-Encoding: utf-8
Content-Length: 1134

Message body is not shown because sender requested not to inline it.

MIME-Version: 1.0
In-Reply-To: <CAGevevexwdN08EjCr29_3amTn7gHVzhaeY5Se2y-o3otaY-Juw [...] mail.gmail.com>
X-Mailer: MIME-tools 5.427 (Entity 5.427)
Content-Disposition: inline
References: <CAGevevexwdN08EjCr29_3amTn7gHVzhaeY5Se2y-o3otaY-Juw [...] mail.gmail.com>
Content-Type: text/plain; charset="UTF-8"
Message-ID: <rt-3.8.HEAD-10810-1331273155-263.75365-0-0 [...] rt.cpan.org>
Content-Transfer-Encoding: binary
From: ntyni [...] iki.fi
X-RT-Original-Encoding: utf-8
Content-Length: 564
Download (untitled) / with headers
text/plain 564b
On Tue Feb 28 03:05:03 2012, darkjunix@gmail.com wrote: Show quoted text
> The attached patch fix a fail to build from source with Hardening flags > enabled[0]. > > The error is caused by format-security flag. Please see part of the > buildlog[1].
This is a duplicate of #46507. As I already said there, these errors cause real security issues and Debian will be issuing security updates for them. I'm not aware of a CVE id yet, but I expect one will be allocated. Please fix this as soon as possible. If you want more details, just let me know. -- Niko Tyni ntyni@debian.org
MIME-Version: 1.0
In-Reply-To: <rt-3.8.HEAD-10810-1331273155-263.75365-0-0 [...] rt.cpan.org>
X-Mailer: MIME-tools 5.427 (Entity 5.427)
Content-Disposition: inline
References: <CAGevevexwdN08EjCr29_3amTn7gHVzhaeY5Se2y-o3otaY-Juw [...] mail.gmail.com> <rt-3.8.HEAD-10810-1331273155-263.75365-0-0 [...] rt.cpan.org>
Content-Type: text/plain; charset="UTF-8"
Message-ID: <rt-3.8.HEAD-10813-1331378565-1126.75365-0-0 [...] rt.cpan.org>
Content-Transfer-Encoding: binary
From: ntyni [...] iki.fi
X-RT-Original-Encoding: utf-8
Content-Length: 589
Download (untitled) / with headers
text/plain 589b
On Fri Mar 09 01:05:55 2012, ntyni@iki.fi wrote: Show quoted text
> On Tue Feb 28 03:05:03 2012, darkjunix@gmail.com wrote: >
> > The attached patch fix a fail to build from source with Hardening flags > > enabled[0]. > > > > The error is caused by format-security flag. Please see part of the > > buildlog[1].
> > This is a duplicate of #46507. As I already said there, these errors > cause real security issues and Debian will be issuing security updates > for them. I'm not aware of a CVE id yet, but I expect one will be
allocated. This is CVE-2012-1152. http://seclists.org/oss-sec/20 12/q1/609
MIME-Version: 1.0
In-Reply-To: <rt-3.8.HEAD-10813-1331378565-1126.75365-0-0 [...] rt.cpan.org>
X-Mailer: MIME-tools 5.504 (Entity 5.504)
Content-Disposition: inline
X-RT-Interface: Web
References: <CAGevevexwdN08EjCr29_3amTn7gHVzhaeY5Se2y-o3otaY-Juw [...] mail.gmail.com> <rt-3.8.HEAD-10810-1331273155-263.75365-0-0 [...] rt.cpan.org> <rt-3.8.HEAD-10813-1331378565-1126.75365-0-0 [...] rt.cpan.org>
Content-Type: text/plain; charset="utf-8"
Message-ID: <rt-4.0.18-17287-1502994677-1018.75365-0-0 [...] rt.cpan.org>
Content-Transfer-Encoding: binary
X-RT-Original-Encoding: utf-8
X-RT-Encrypt: 0
X-RT-Sign: 0
Content-Length: 95
Seems this can be closed as https://rt.cpan.org/Public/Bug/Display.html?id=46507 was resolved.


This service is sponsored and maintained by Best Practical Solutions and runs on Perl.org infrastructure.

Please report any issues with rt.cpan.org to rt-cpan-admin@bestpractical.com.