Your message dated Sat, 07 Feb 2015 13:33:30 +0000
with message-id <e1yk5vq-00070a...@franck.debian.org>
and subject line Bug#775640: fixed in unzip 6.0-4+deb6u2
has caused the Debian Bug report #775640,
regarding libarchive-zip-perl: FTBFS: Test failure (unzip/CVE-2014-8139
regression?)
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)
--
775640: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=775640
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Source: libarchive-zip-perl
Version: 1.39-1
Severity: serious
Tags: jessie sid
User: debian...@lists.debian.org
Usertags: qa-ftbfs-20150117 qa-ftbfs
Justification: FTBFS in jessie on amd64
Hi,
During a rebuild of all packages in jessie (in a jessie chroot, not a
sid chroot), your package failed to build on amd64.
Relevant part (hopefully):
> # expected: '0'
> # Looks like you failed 1 test of 4.
> t/17_bug_73797.t ..............
> Dubious, test returned 1 (wstat 256, 0x100)
> Failed 1/4 subtests
>
> Test Summary Report
> -------------------
> t/17_bug_73797.t (Wstat: 256 Tests: 4 Failed: 1)
> Failed test: 4
> Non-zero exit status: 1
> Files=17, Tests=250, 3 wallclock secs ( 0.07 usr 0.09 sys + 2.04 cusr
> 0.75 csys = 2.95 CPU)
> Result: FAIL
> Failed 1/17 test programs. 1/250 subtests failed.
> make[2]: *** [test_dynamic] Error 1
> Makefile:910: recipe for target 'test_dynamic' failed
The full build log is available from:
http://aws-logs.debian.net/ftbfs-logs/2015/01/17/libarchive-zip-perl_1.39-1_jessie.log
A list of current common problems and possible solutions is available at
http://wiki.debian.org/qa.debian.org/FTBFS . You're welcome to contribute!
About the archive rebuild: The rebuild was done on EC2 VM instances from
Amazon Web Services, using a clean, minimal and up-to-date chroot. Every
failed build was retried once to eliminate random failures.
--- End Message ---
--- Begin Message ---
Source: unzip
Source-Version: 6.0-4+deb6u2
We believe that the bug you reported is fixed in the latest version of
unzip, which is due to be installed in the Debian FTP archive.
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to 775...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Thorsten Alteholz <deb...@alteholz.de> (supplier of updated unzip package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@ftp-master.debian.org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Sat, 07 Feb 2015 14:01:00 +0100
Source: unzip
Binary: unzip
Architecture: source i386
Version: 6.0-4+deb6u2
Distribution: squeeze-lts
Urgency: high
Maintainer: Santiago Vila <sanv...@debian.org>
Changed-By: Thorsten Alteholz <deb...@alteholz.de>
Description:
unzip - De-archiver for .zip files
Closes: 775640 776589
Changes:
unzip (6.0-4+deb6u2) squeeze-lts; urgency=high
.
* Non-maintainer upload by the Squeeze LTS Team.
* CVE-2014-9636: Fix heap overflow. Ensure that compressed
and uncompressed block sizes match when using STORED method
in extract.c. Closes: #776589.
* CVE-2014-8139: Update patch. The old one was not right
and had regressions with executable jar files. Closes: #775640
Checksums-Sha1:
eaa193a11e74ba1ab2b870a78507c7337a2ba170 1765 unzip_6.0-4+deb6u2.dsc
abf7de8a4018a983590ed6f5cbd990d4740f8a22 1376845 unzip_6.0.orig.tar.gz
a0b32c1c58714babb2562036be9a065fa87e2244 13557 unzip_6.0-4+deb6u2.debian.tar.gz
c2d3cb8da49de64baf15e3329834a2f9c1bc1071 179114 unzip_6.0-4+deb6u2_i386.deb
Checksums-Sha256:
e8387ebdb75a8d6805ac195087e6d894ce7c08130ea086004ee9a9d8e0a21c11 1765
unzip_6.0-4+deb6u2.dsc
036d96991646d0449ed0aa952e4fbe21b476ce994abc276e49d30e686708bd37 1376845
unzip_6.0.orig.tar.gz
615becff579078cbb0690b227b94163d0b6a182fe75e7019b6c0c7a199a84e76 13557
unzip_6.0-4+deb6u2.debian.tar.gz
360f8b392ad196362405c45e968031bea6944c220ad41734c44ceabcd6f1b453 179114
unzip_6.0-4+deb6u2_i386.deb
Files:
62e292ce3ef11c975c3337fa849d00a5 1765 utils optional unzip_6.0-4+deb6u2.dsc
62b490407489521db863b523a7f86375 1376845 utils optional unzip_6.0.orig.tar.gz
bcfeba432fc18fcee541812165dc5e22 13557 utils optional
unzip_6.0-4+deb6u2.debian.tar.gz
39d8465cc067cf00f278f0cb9a50d508 179114 utils optional
unzip_6.0-4+deb6u2_i386.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1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=RoIR
-----END PGP SIGNATURE-----
--- End Message ---