GNU bug report logs

#47257 mariadb is vulnerable to CVE-2021-27928 (RCE)

PackageSource(s)Maintainer(s)
guix PTS Buildd Popcon
Full log

Message #37 received at 47257@debbugs.gnu.org (full text, mbox, reply):

Received: (at 47257) by debbugs.gnu.org; 25 Mar 2021 11:06:24 +0000
From debbugs-submit-bounces@debbugs.gnu.org Thu Mar 25 07:06:24 2021
Received: from localhost ([127.0.0.1]:37333 helo=debbugs.gnu.org)
	by debbugs.gnu.org with esmtp (Exim 4.84_2)
	(envelope-from <debbugs-submit-bounces@debbugs.gnu.org>)
	id 1lPNoj-0001Zr-Ax
	for submit@debbugs.gnu.org; Thu, 25 Mar 2021 07:06:24 -0400
Received: from lepiller.eu ([89.234.186.109]:42010)
 by debbugs.gnu.org with esmtp (Exim 4.84_2)
 (envelope-from <julien@lepiller.eu>) id 1lPNoh-0001Zh-7C
 for 47257@debbugs.gnu.org; Thu, 25 Mar 2021 07:06:20 -0400
Received: from lepiller.eu (localhost [127.0.0.1])
 by lepiller.eu (OpenSMTPD) with ESMTP id 022a8913;
 Thu, 25 Mar 2021 11:06:17 +0000 (UTC)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed; d=lepiller.eu; h=date
 :in-reply-to:references:mime-version:content-type
 :content-transfer-encoding:subject:to:from:message-id; s=dkim;
 bh=cS0ia+TWDVJSD7M1Ga8r2ui8e+zmMJchj+fdc9qXbAA=; b=YIOE64kSEpQq
 QppXzSAOknLkXrRR7722FGVgcwHH1B14W1lkVN7gSElROwTzepHsmZIyLNJkHrcb
 g8WZtxR/ChrIF3OKioqDp7RTUa80rvxXAfIrv41ObqznFCIt+8dbBRiAxx7zea7w
 w3GXZs6LpgOeOUyAHA3L4rZR/2C2oj0T9vnEgfrD9YKRELtgAuKutUqWv0gnTrKT
 3D0etvwL+MynVNMcrIOT1ELcg1elwEhSfrPu+Mz2lVvVnJayjnQK9h+F1z+S7qJc
 GXoQyR6mpy7TUmkRsyERRCmBSIBHJlW2UB70BYan3GgoWlSb3ClWZ5jGcmC4l9xn
 xluGvBAJnw==
Received: by lepiller.eu (OpenSMTPD) with ESMTPSA id 93b17e0b
 (TLSv1.2:ECDHE-RSA-AES256-GCM-SHA384:256:NO); 
 Thu, 25 Mar 2021 11:06:16 +0000 (UTC)
Date: Thu, 25 Mar 2021 07:06:09 -0400
User-Agent: K-9 Mail for Android
In-Reply-To: <20210325105815.5411-1-lle-bout@zaclys.net>
References: <7d6d60c61fc372f62125ef5a36bc22956db5907e.camel@zaclys.net>
 <20210325105815.5411-1-lle-bout@zaclys.net>
MIME-Version: 1.0
Content-Type: multipart/alternative;
 boundary="----7U5BOSYGX9IXVGWFEC8QM2IIXYRVVM"
Content-Transfer-Encoding: 7bit
Subject: Re: bug#47257: [PATCH v2] gnu: mariadb: Fix CVE-2021-27928.
To: Léo Le Bouter <lle-bout@zaclys.net>,
 47257@debbugs.gnu.org
From: Julien Lepiller <julien@lepiller.eu>
Message-ID: <A7D522FD-4FCE-42D3-91BB-3F1C0DC1BD66@lepiller.eu>
X-Spam-Score: -0.0 (/)
X-Debbugs-Envelope-To: 47257
X-BeenThere: debbugs-submit@debbugs.gnu.org
X-Mailman-Version: 2.1.18
Precedence: list
List-Id: <debbugs-submit.debbugs.gnu.org>
List-Unsubscribe: <https://debbugs.gnu.org/cgi-bin/mailman/options/debbugs-submit>, 
 <mailto:debbugs-submit-request@debbugs.gnu.org?subject=unsubscribe>
List-Archive: <https://debbugs.gnu.org/cgi-bin/mailman/private/debbugs-submit/>
List-Post: <mailto:debbugs-submit@debbugs.gnu.org>
List-Help: <mailto:debbugs-submit-request@debbugs.gnu.org?subject=help>
List-Subscribe: <https://debbugs.gnu.org/cgi-bin/mailman/listinfo/debbugs-submit>, 
 <mailto:debbugs-submit-request@debbugs.gnu.org?subject=subscribe>
Errors-To: debbugs-submit-bounces@debbugs.gnu.org
Sender: "Debbugs-submit" <debbugs-submit-bounces@debbugs.gnu.org>
X-Spam-Score: -1.0 (-)
[Message part 1 (text/plain, inline)]
I think you can simplify the patch a bit by inheriting the source too:

(source
  (origin
    (inherit (package-source mariadb))
    (patches …)))

Otherwise, untested but looks good.
[Message part 2 (text/html, inline)]

Send a report that this bug log contains spam.


debbugs.gnu.org maintainers <help-debbugs@gnu.org>. Last modified: Sun Dec 22 01:28:32 2024; Machine Name: wallace-server

GNU bug tracking system

Debbugs is free software and licensed under the terms of the GNU Public License version 2. The current version can be obtained from https://bugs.debian.org/debbugs-source/.

Copyright © 1999 Darren O. Benham, 1997,2003 nCipher Corporation Ltd, 1994-97 Ian Jackson, 2005-2017 Don Armstrong, and many other contributors.