[#247908] p9 EPERM (try 2) cacti.git=1.2.10-alt2 cacti-spine.git=1.2.10-alt1

Girar Builder awaiter robot girar-builder at altlinux.org
Wed Mar 18 17:02:00 MSK 2020


http://git.altlinux.org/tasks/247908/logs/events.2.1.log

2020-Mar-18 13:52:34 :: task #247908 for p9 resumed by shaba:
2020-Mar-18 13:52:34 :: message: security_update
#40 build 1.2.10-alt2 from /people/shaba/packages/cacti.git fetched at 2020-Mar-18 11:06:42
#100 removed
#200 build 1.2.10-alt1 from /gears/c/cacti-spine.git fetched at 2020-Mar-16 11:49:45
2020-Mar-18 13:52:54 :: created build repo
2020-Mar-18 13:52:56 :: [i586] #40 cacti.git 1.2.10-alt2: build start
2020-Mar-18 13:52:56 :: [ppc64le] #40 cacti.git 1.2.10-alt2: build start
2020-Mar-18 13:52:56 :: [aarch64] #40 cacti.git 1.2.10-alt2: build start
2020-Mar-18 13:52:56 :: [x86_64] #40 cacti.git 1.2.10-alt2: build start
2020-Mar-18 13:54:37 :: [aarch64] #40 cacti.git 1.2.10-alt2: build OK
2020-Mar-18 13:54:37 :: [aarch64] #200 cacti-spine.git 1.2.10-alt1: build start
2020-Mar-18 13:54:38 :: [x86_64] #40 cacti.git 1.2.10-alt2: build OK
2020-Mar-18 13:54:38 :: [x86_64] #200 cacti-spine.git 1.2.10-alt1: build start
2020-Mar-18 13:54:47 :: [ppc64le] #40 cacti.git 1.2.10-alt2: build OK
2020-Mar-18 13:54:47 :: [ppc64le] #200 cacti-spine.git 1.2.10-alt1: build start
2020-Mar-18 13:54:52 :: [i586] #40 cacti.git 1.2.10-alt2: build OK
2020-Mar-18 13:54:52 :: [i586] #200 cacti-spine.git 1.2.10-alt1: build start
2020-Mar-18 13:55:26 :: [aarch64] #200 cacti-spine.git 1.2.10-alt1: build OK
2020-Mar-18 13:55:32 :: [x86_64] #200 cacti-spine.git 1.2.10-alt1: build OK
2020-Mar-18 13:55:46 :: [ppc64le] #200 cacti-spine.git 1.2.10-alt1: build OK
2020-Mar-18 13:56:07 :: [i586] #200 cacti-spine.git 1.2.10-alt1: build OK
2020-Mar-18 13:56:21 :: #40: cacti.git 1.2.10-alt2: build check OK
2020-Mar-18 13:56:39 :: #200: cacti-spine.git 1.2.10-alt1: build check OK
2020-Mar-18 13:56:40 :: build check OK
2020-Mar-18 13:57:14 :: noarch check OK
2020-Mar-18 13:57:18 :: plan: src +2 -2 =17872, aarch64 +2 -2 =29798, i586 +2 -2 =32005, noarch +2 -2 =18635, ppc64le +2 -2 =30137, x86_64 +2 -2 =32311
2020-Mar-18 13:57:18 :: version check OK
#40 cacti 1.2.3-alt1 -> 1.2.10-alt2
 Wed Mar 18 2020 Alexey Shabalin <shaba at altlinux> 1.2.10-alt2
 - package cacti.sql to doc dir
 Sun Mar 15 2020 Alexey Shabalin <shaba at altlinux> 1.2.10-alt1
 - 1.2.10
 - Fixes:
   + CVE-2019-17357 When viewing graphs, some input variables are not properly checked (SQL injection possible)
   + CVE-2019-17358 When deserializating data, ensure basic sanitization has been performed
   + CVE-2019-16723 Security issue allows to view all graphs
   + CVE-2020-7106 Lack of escaping on some pages can lead to XSS exposure
   + CVE-2020-7237 Remote Code Execution due to input validation failure in Performance Boost Debug Log
 [...]
#200 cacti-spine 1.2.3-alt1 -> 1.2.10-alt1
 Sun Mar 15 2020 Alexey Shabalin <shaba at altlinux> 1.2.10-alt1
 - 1.2.10
2020-Mar-18 13:57:18 :: cacti: mentions vulnerabilities: CVE-2019-17357 CVE-2019-17358 CVE-2019-16723 CVE-2020-7106 CVE-2020-7237 CVE-2020-8813
2020-Mar-18 13:58:36 :: generated apt indices
2020-Mar-18 13:58:37 :: created next repo
2020-Mar-18 13:59:16 :: dependencies check OK
2020-Mar-18 13:59:49 :: [x86_64 i586 aarch64 ppc64le] ELF symbols check OK
2020-Mar-18 14:00:14 :: [x86_64] #40 cacti: install check OK
2020-Mar-18 14:00:21 :: [i586] #40 cacti: install check OK
2020-Mar-18 14:00:30 :: [x86_64] #40 cacti-setup: install check OK
2020-Mar-18 14:00:42 :: [i586] #40 cacti-setup: install check OK
2020-Mar-18 14:00:45 :: [x86_64] #200 cacti-spine: install check OK
2020-Mar-18 14:01:00 :: [i586] #200 cacti-spine: install check OK
2020-Mar-18 14:01:08 :: [x86_64] #200 cacti-spine-debuginfo: install check OK
2020-Mar-18 14:01:30 :: [i586] #200 cacti-spine-debuginfo: install check OK
2020-Mar-18 14:01:47 :: [x86_64-i586] generated apt indices
2020-Mar-18 14:01:47 :: [x86_64-i586] created next repo
2020-Mar-18 14:01:55 :: [x86_64-i586] dependencies check OK
2020-Mar-18 14:01:58 :: gears inheritance check OK
2020-Mar-18 14:01:58 :: srpm inheritance check OK
girar-check-perms: access to @maint ALLOWED for shaba: member of approved group
check-subtask-perms: #40: cacti: allowed for shaba, needs an approval from a member of @tester group
girar-check-perms: access to @maint ALLOWED for shaba: member of approved group
check-subtask-perms: #200: cacti-spine: allowed for shaba, needs an approval from a member of @tester group
2020-Mar-18 14:01:59 :: acl check FAILED
2020-Mar-18 14:01:59 :: task #247908 for p9 EPERM


More information about the Sisyphus-incominger mailing list