Your message dated Fri, 30 Dec 2016 15:33:41 +0000
with message-id <e1cmzbd-0003oj...@fasolo.debian.org>
and subject line Bug#847286: fixed in diaspora-installer 0.6.0.0+debian5
has caused the Debian Bug report #847286,
regarding diaspora-installer: installs world-writable files under 
/usr/share/diaspora/vendor/bundle/ruby/2.3.0/gems
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)


-- 
847286: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=847286
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Package: diaspora-installer
Version: 0.6.0.0+debian4
Severity: serious
User: debian...@lists.debian.org
Usertags: piuparts

Hi,

during a test with piuparts I noticed your package installs
world-writable files.

>From the attached log (scroll to the bottom...):

  ERROR: BAD PERMISSIONS
  -rw-rw-rw- 1 diaspora nogroup  1935 Dec  5 17:24 
/usr/share/diaspora/vendor/bundle/ruby/2.3.0/gems/configurate-0.3.1/lib/configurate/lookup_chain.rb
  -rw-rw-rw- 1 diaspora nogroup    73 Dec  5 17:25 
/usr/share/diaspora/vendor/bundle/ruby/2.3.0/gems/rails-assets-markdown-it-diaspora-mention-1.0.0/Gemfile
  -rw-rw-rw- 1 diaspora nogroup   481 Dec  5 17:25 
/usr/share/diaspora/vendor/bundle/ruby/2.3.0/gems/rails-assets-markdown-it-diaspora-mention-1.0.0/README.md
  -rw-rw-rw- 1 diaspora nogroup    28 Dec  5 17:25 
/usr/share/diaspora/vendor/bundle/ruby/2.3.0/gems/rails-assets-markdown-it-diaspora-mention-1.0.0/Rakefile
  -rw-rw-rw- 1 diaspora nogroup    73 Dec  5 17:25 
/usr/share/diaspora/vendor/bundle/ruby/2.3.0/gems/rails-assets-markdown-it-diaspora-mention-1.0.0/app/assets/javascripts/markdown-it-diaspora-mention.js
  -rw-rw-rw- 1 diaspora nogroup 22469 Dec  5 17:25 
/usr/share/diaspora/vendor/bundle/ruby/2.3.0/gems/rails-assets-markdown-it-diaspora-mention-1.0.0/app/assets/javascripts/markdown-it-diaspora-mention/markdown-it-diaspora-mention.js
  -rw-rw-rw- 1 diaspora nogroup   801 Dec  5 17:25 
/usr/share/diaspora/vendor/bundle/ruby/2.3.0/gems/rails-assets-markdown-it-diaspora-mention-1.0.0/lib/rails-assets-markdown-it-diaspora-mention.rb
  -rw-rw-rw- 1 diaspora nogroup    68 Dec  5 17:25 
/usr/share/diaspora/vendor/bundle/ruby/2.3.0/gems/rails-assets-markdown-it-diaspora-mention-1.0.0/lib/rails-assets-markdown-it-diaspora-mention/version.rb
  -rw-rw-rw- 1 diaspora nogroup   848 Dec  5 17:25 
/usr/share/diaspora/vendor/bundle/ruby/2.3.0/gems/rails-assets-markdown-it-diaspora-mention-1.0.0/rails-assets-markdown-it-diaspora-mention.gemspec
  -rw-rw-rw- 1 diaspora nogroup   754 Dec  5 17:25 
/usr/share/diaspora/vendor/bundle/ruby/2.3.0/gems/rails-assets-markdown-it-diaspora-mention-1.0.0/rails-assets-markdown-it-diaspora-mention.json
  -rw-rw-rw- 1 diaspora nogroup    73 Dec  5 17:25 
/usr/share/diaspora/vendor/bundle/ruby/2.3.0/gems/rails-assets-markdown-it-sanitizer-0.4.2/Gemfile
  -rw-rw-rw- 1 diaspora nogroup   460 Dec  5 17:25 
/usr/share/diaspora/vendor/bundle/ruby/2.3.0/gems/rails-assets-markdown-it-sanitizer-0.4.2/README.md
  -rw-rw-rw- 1 diaspora nogroup    28 Dec  5 17:25 
/usr/share/diaspora/vendor/bundle/ruby/2.3.0/gems/rails-assets-markdown-it-sanitizer-0.4.2/Rakefile
  -rw-rw-rw- 1 diaspora nogroup    59 Dec  5 17:25 
/usr/share/diaspora/vendor/bundle/ruby/2.3.0/gems/rails-assets-markdown-it-sanitizer-0.4.2/app/assets/javascripts/markdown-it-sanitizer.js
  -rw-rw-rw- 1 diaspora nogroup  8864 Dec  5 17:25 
/usr/share/diaspora/vendor/bundle/ruby/2.3.0/gems/rails-assets-markdown-it-sanitizer-0.4.2/app/assets/javascripts/markdown-it-sanitizer/markdown-it-sanitizer.js
  -rw-rw-rw- 1 diaspora nogroup   775 Dec  5 17:25 
/usr/share/diaspora/vendor/bundle/ruby/2.3.0/gems/rails-assets-markdown-it-sanitizer-0.4.2/lib/rails-assets-markdown-it-sanitizer.rb
  -rw-rw-rw- 1 diaspora nogroup    62 Dec  5 17:25 
/usr/share/diaspora/vendor/bundle/ruby/2.3.0/gems/rails-assets-markdown-it-sanitizer-0.4.2/lib/rails-assets-markdown-it-sanitizer/version.rb
  -rw-rw-rw- 1 diaspora nogroup   775 Dec  5 17:25 
/usr/share/diaspora/vendor/bundle/ruby/2.3.0/gems/rails-assets-markdown-it-sanitizer-0.4.2/rails-assets-markdown-it-sanitizer.gemspec
  -rw-rw-rw- 1 diaspora nogroup   708 Dec  5 17:25 
/usr/share/diaspora/vendor/bundle/ruby/2.3.0/gems/rails-assets-markdown-it-sanitizer-0.4.2/rails-assets-markdown-it-sanitizer.json


cheers,

Andreas

Attachment: diaspora-installer_0.6.0.0+debian4.log.gz
Description: application/gzip


--- End Message ---
--- Begin Message ---
Source: diaspora-installer
Source-Version: 0.6.0.0+debian5

We believe that the bug you reported is fixed in the latest version of
diaspora-installer, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 847...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Pirate Praveen <prav...@debian.org> (supplier of updated diaspora-installer 
package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Format: 1.8
Date: Fri, 30 Dec 2016 19:32:06 +0530
Source: diaspora-installer
Binary: diaspora-installer diaspora-installer-mysql diaspora-common
Architecture: source
Version: 0.6.0.0+debian5
Distribution: unstable
Urgency: medium
Maintainer: Debian Ruby Extras Maintainers 
<pkg-ruby-extras-maintain...@lists.alioth.debian.org>
Changed-By: Pirate Praveen <prav...@debian.org>
Description:
 diaspora-common - distributed social networking service - common files
 diaspora-installer - distributed social networking service - installer
 diaspora-installer-mysql - distributed social networking service - installer 
(with mysql)
Closes: 847286 848294 848458
Changes:
 diaspora-installer (0.6.0.0+debian5) unstable; urgency=medium
 .
   * diaspora-common: add lsb-base to depends
   * Update diaspora-common dependencies for mariadb (Closes: #848458)
 .
   [ Balasankar C ]
   * Update diaspora-installer-mysql dependencies for mariadb (Closes: #848294)
   * Properly set permissions for gems installed by bundler (Closes: #847286)
Checksums-Sha1:
 0ff681f4f6fdd297919ae1a77551557211f93794 2014 
diaspora-installer_0.6.0.0+debian5.dsc
 f681f569f1f4b55f2981a6d7db8b45d2482b6885 29520 
diaspora-installer_0.6.0.0+debian5.tar.xz
Checksums-Sha256:
 69e72950041375cffedb3eb1bf351701228149074a72327c2906dbc3f6e9c46c 2014 
diaspora-installer_0.6.0.0+debian5.dsc
 74a47496f7ca52f1796386ecdbd6ed6023d4fd5ff53f63d5105a256122ab0fe1 29520 
diaspora-installer_0.6.0.0+debian5.tar.xz
Files:
 3f677a6d6fd40814fccf026d89efa10b 2014 ruby optional 
diaspora-installer_0.6.0.0+debian5.dsc
 56d182971362c71983dc78870ac56473 29520 ruby optional 
diaspora-installer_0.6.0.0+debian5.tar.xz

-----BEGIN PGP SIGNATURE-----

iQIzBAEBCAAdFiEEKnl0ri/BUtd4Z9pKzh+cZ0USwioFAlhmeaIACgkQzh+cZ0US
wioawxAAiPns5stb8dC5Phhk/4HugcInhpPZFz0ajkpR362/T+2wtC36ksqViAgv
yqUeBLYJSSzSFRsKXfpF0XZNm1oa+y33cixubbulH50wsibPAF+/x3JHZhf3AZG7
eNwkhN2Ox9MhWe+qjoeXyJj42ubHFGm+AC3h3xPx+GoV6V4uoEQr0PAaePX4Lzwm
tGCjWazP7LcsoIU4Ygl8glaCTZONNAasYOR3lwu0xo2KJBVmWpTPF/+5QLxv4qwU
/VLGch/a8w0sn6X1/6HN5YmqbszcmYqbNaSVXabBtDq5U4pSo1CeFq2laoJqdTxh
dBJuywUmZe1StdlZhIOFTmxGxmfXFtzojLI5AhVYcSLemdptsHQkEcNHis5xGJj/
XuGY94blDz3IRCJGYE95r1i3qwHxWAJjH+h0o8n/XJPmGGfkF4Zpaif7Um3xD1i+
QjXunbAt8g7koHgz6onbXGaChRGaeOLRPv2PWqx241x8VVS1zl24HqDxR+z0GTfc
x2MTVuB+Cb3tLgPt6p6Xx3FYf6kx5nbyzqUg2sSmrp64sdxY3y2fi/4CJu6hEgCL
DDEykOe+qzkiynDFImaEWioGZxer5VH8WVvTLI5keNXrPD1E534PKT1ye2TmMvB7
GFHqt3/DFGWb5GnGX8fywe5QsYaiIrtoXGEUIZkrArLFVr73e3g=
=MkEA
-----END PGP SIGNATURE-----

--- End Message ---

Reply via email to