[#356207] p11 EPERM firmware-intel-ucode.git=27-alt1.20240813

Girar awaiter (lakostis) girar-builder at altlinux.org
Tue Aug 27 23:52:47 MSK 2024


https://git.altlinux.org/tasks/356207/logs/events.1.1.log

subtask  name                  aarch64  i586  x86_64
   #100  firmware-intel-ucode        -    23      23

2024-Aug-27 20:49:54 :: task #356207 for p11 started by lakostis:
2024-Aug-27 20:49:54 :: message: CVE-2024-24853 CVE-2024-25939 CVE-2024-24980 CVE-2023-42667 CVE-2023-49141
#100 build 27-alt1.20240813 from /gears/f/firmware-intel-ucode.git fetched at 2024-Aug-27 20:49:08 from sisyphus
2024-Aug-27 20:49:56 :: [i586] #100 firmware-intel-ucode.git 27-alt1.20240813: build start
2024-Aug-27 20:49:56 :: [aarch64] #100 firmware-intel-ucode.git 27-alt1.20240813: build start
2024-Aug-27 20:49:56 :: [x86_64] #100 firmware-intel-ucode.git 27-alt1.20240813: build start
2024-Aug-27 20:50:12 :: [aarch64] #100 firmware-intel-ucode.git 27-alt1.20240813: build SKIPPED
2024-Aug-27 20:50:19 :: [i586] #100 firmware-intel-ucode.git 27-alt1.20240813: build OK
2024-Aug-27 20:50:19 :: [x86_64] #100 firmware-intel-ucode.git 27-alt1.20240813: build OK
x86_64/srpm/firmware-intel-ucode-27-alt1.20240813.src.rpm: license not found in '/usr/share/license' directory: INTEL
x86_64/srpm/firmware-intel-ucode-27-alt1.20240813.src.rpm: license not found in '/usr/share/license' directory: SOFTWARE
x86_64/srpm/firmware-intel-ucode-27-alt1.20240813.src.rpm: license not found in '/usr/share/license' directory: LICENSE
x86_64/srpm/firmware-intel-ucode-27-alt1.20240813.src.rpm: license not found in '/usr/share/license' directory: AGREEMENT
x86_64/rpms/firmware-intel-ucode-27-alt1.20240813.noarch.rpm: license not found in '/usr/share/license' directory: INTEL
x86_64/rpms/firmware-intel-ucode-27-alt1.20240813.noarch.rpm: license not found in '/usr/share/license' directory: SOFTWARE
x86_64/rpms/firmware-intel-ucode-27-alt1.20240813.noarch.rpm: license not found in '/usr/share/license' directory: LICENSE
x86_64/rpms/firmware-intel-ucode-27-alt1.20240813.noarch.rpm: license not found in '/usr/share/license' directory: AGREEMENT
i586/srpm/firmware-intel-ucode-27-alt1.20240813.src.rpm: license not found in '/usr/share/license' directory: INTEL
i586/srpm/firmware-intel-ucode-27-alt1.20240813.src.rpm: license not found in '/usr/share/license' directory: SOFTWARE
i586/srpm/firmware-intel-ucode-27-alt1.20240813.src.rpm: license not found in '/usr/share/license' directory: LICENSE
i586/srpm/firmware-intel-ucode-27-alt1.20240813.src.rpm: license not found in '/usr/share/license' directory: AGREEMENT
i586/rpms/firmware-intel-ucode-27-alt1.20240813.noarch.rpm: license not found in '/usr/share/license' directory: INTEL
i586/rpms/firmware-intel-ucode-27-alt1.20240813.noarch.rpm: license not found in '/usr/share/license' directory: SOFTWARE
i586/rpms/firmware-intel-ucode-27-alt1.20240813.noarch.rpm: license not found in '/usr/share/license' directory: LICENSE
i586/rpms/firmware-intel-ucode-27-alt1.20240813.noarch.rpm: license not found in '/usr/share/license' directory: AGREEMENT
2024-Aug-27 20:50:27 :: #100: firmware-intel-ucode.git 27-alt1.20240813: build check OK
2024-Aug-27 20:50:28 :: build check OK
warning (#100): aarch64: non-verifiable noarch packages due to ExclusiveArch
2024-Aug-27 20:50:30 :: noarch check OK
2024-Aug-27 20:50:32 :: plan: src +1 -1 =19465, noarch +1 -1 =20276
#100 firmware-intel-ucode 26-alt1.20240531 -> 2:27-alt1.20240813
 Tue Aug 27 2024 L.A. Kostis <lakostis at altlinux.ru> 2:27-alt1.20240813
 - Synced with debian/3.20240813.2 (original changelog below):
     + New upstream microcode datafile 20240813:
       - Mitigations for INTEL-SA-01083 (CVE-2024-24853)
         Incorrect behavior order in transition between executive monitor and SMI
         transfer monitor (STM) in some Intel Processors may allow a privileged
         user to potentially enable escalation of privilege via local access.
       - Mitigations for INTEL-SA-01118 (CVE-2024-25939)
         Mirrored regions with different values in 3rd Generation Intel Xeon
         Scalable Processors may allow a privileged user to potentially enable
 [...]
2024-Aug-27 20:50:32 :: firmware-intel-ucode: mentions vulnerabilities: CVE-2024-24853 CVE-2024-25939 CVE-2024-24980 CVE-2023-42667 CVE-2023-49141
2024-Aug-27 20:50:59 :: patched apt indices
2024-Aug-27 20:51:07 :: created next repo
2024-Aug-27 20:51:16 :: duplicate provides check OK
2024-Aug-27 20:51:54 :: dependencies check OK
	i586: firmware-intel-ucode=2:27-alt1.20240813 post-install unowned files:
 /usr/lib/firmware
 /usr/lib/firmware/intel-ucode
 /usr/lib/firmware/intel-ucode/intel-microcode.bin
	x86_64: firmware-intel-ucode=2:27-alt1.20240813 post-install unowned files:
 /usr/lib/firmware
 /usr/lib/firmware/intel-ucode
 /usr/lib/firmware/intel-ucode/intel-microcode.bin
2024-Aug-27 20:52:07 :: [i586] #100 firmware-intel-ucode: install check OK
2024-Aug-27 20:52:07 :: [x86_64] #100 firmware-intel-ucode: install check OK
	aarch64: firmware-intel-ucode=2:27-alt1.20240813 post-install unowned files:
 /usr/lib/firmware
 /usr/lib/firmware/intel-ucode
 /usr/lib/firmware/intel-ucode/intel-microcode.bin
2024-Aug-27 20:52:15 :: [aarch64] #100 firmware-intel-ucode: install check OK
2024-Aug-27 20:52:17 :: gears inheritance check OK
2024-Aug-27 20:52:17 :: srpm inheritance check OK
girar-check-perms: access to firmware-intel-ucode DENIED for lakostis: project `firmware-intel-ucode' is not listed in the acl file for repository `p11', and the policy for such projects in `p11' is to deny
check-subtask-perms: #100: firmware-intel-ucode: needs approvals from members of @maint and @tester groups
2024-Aug-27 20:52:19 :: acl check FAILED
2024-Aug-27 20:52:38 :: created contents_index files
2024-Aug-27 20:52:44 :: created hash files: noarch src
2024-Aug-27 20:52:47 :: task #356207 for p11 EPERM


More information about the Girar-builder-p11 mailing list