From unknown Tue Jun 17 22:01:08 2025 Content-Disposition: inline Content-Transfer-Encoding: quoted-printable MIME-Version: 1.0 X-Mailer: MIME-tools 5.509 (Entity 5.509) Content-Type: text/plain; charset=utf-8 From: bug#59202 <59202@debbugs.gnu.org> To: bug#59202 <59202@debbugs.gnu.org> Subject: Status: [PATCH] python-check-manifest: Relax git security settings in tests. Reply-To: bug#59202 <59202@debbugs.gnu.org> Date: Wed, 18 Jun 2025 05:01:08 +0000 retitle 59202 [PATCH] python-check-manifest: Relax git security settings in= tests. reassign 59202 guix-patches submitter 59202 severity 59202 normal tag 59202 patch thanks From debbugs-submit-bounces@debbugs.gnu.org Fri Nov 11 15:15:16 2022 Received: (at submit) by debbugs.gnu.org; 11 Nov 2022 20:15:16 +0000 Received: from localhost ([127.0.0.1]:46804 helo=debbugs.gnu.org) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1otaQl-0000md-NJ for submit@debbugs.gnu.org; Fri, 11 Nov 2022 15:15:16 -0500 Received: from lists.gnu.org ([209.51.188.17]:52816) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1otaQj-0000mV-LU for submit@debbugs.gnu.org; Fri, 11 Nov 2022 15:15:14 -0500 Received: from eggs.gnu.org ([2001:470:142:3::10]) by lists.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.90_1) (envelope-from ) id 1otaQj-0004iu-B3 for guix-patches@gnu.org; Fri, 11 Nov 2022 15:15:13 -0500 Received: from mailin.dlr.de ([194.94.201.12]) by eggs.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.90_1) (envelope-from ) id 1otaQd-0004T8-Pl for guix-patches@gnu.org; Fri, 11 Nov 2022 15:15:10 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=simple/simple; d=dlr.de; i=@dlr.de; q=dns/txt; s=052022; t=1668197707; x=1699733707; h=from:to:subject:date:message-id:mime-version; bh=dET83KSFY/LKgj3xPyuaEyB9w8/AXr83Tdb0lUUGXNU=; b=wF84xXuyX/YtghrrQlA5OQLGxz6Pgi0myGsV/fngeomgGtkxENxyrVSA ucKHisK2uFANU1tbyr5rsqHxV/EkSDYEm7elbfLUOrpVPM4QDp/817oAv ecLkyJ07cmh1WiosnRvGDuAx02gPXvuUYIg7MyrUBB+p1tKuaVg+9FRlR SVmhTZhBu51CnOxO0iZjfotuJ8o67KmDuNM2cOGmj8tw2Xhmkz6JQdbyA m0oV9D+Io4pb6VZMYX2hbCcVFyi3e8oejPM/tLeCWEMHyJzYTmvW0Ccvx /Lf9mNS2yNTbjqLSaBVq9zEszYe9CZodfDqOrGBFCSdbMPA7Wv3hw7zYj A==; X-IPAS-Result: =?us-ascii?q?A2EmAwCMrG5j/xiKuApagQmBT4MtAoFYF4gHjUudM4F+C?= =?us-ascii?q?AcBAQEBAQEBAQEIATkLBAEBBAOEfoR/JjQJDgECBAEBAQEDAgMBAQEBAQEDA?= =?us-ascii?q?QEGAQEBAQEBBgQBAQKBGIUvOQ2CNSKCBAEBAQEBAQEBAQEBAQEBHAINUncBg?= =?us-ascii?q?REBGQMBAgonDQEiHQoEEw6CcIMhE6pEeIE0gQGDFoFanD0QgUCMJYRrglCED?= =?us-ascii?q?26CYgKBdwkthXEEgQeNbIJ/E4YRA0QdNgoDC20NShsxJw4JHxwlDQUGEgMgb?= =?us-ascii?q?AVBDygvZyscGweBDCooFQMEBAMCBhMDIgINKTEUBCkTDSsnbwkCAyJqAwMEK?= =?us-ascii?q?CwDCSEfByckPAdWPwMCECA4BgMJAwIiVYEiJgUDCxUlCAVKBAg5BQZTEgIKE?= =?us-ascii?q?QMSDyxGDkg+ORYGJ3QODhQDXoFpBGI5mkCCHQFZNCwge4ERoHyBeQ+ffweCH?= =?us-ascii?q?4dshS2VOYVJkTOSGQGXNI1DmgwCBAIEBQIWgWKCFnFPgmcJSRcCDx+Rc4JWi?= =?us-ascii?q?Ah1OwIHCwEBAwmGR4MbgRIBAQ?= IronPort-PHdr: A9a23:SMWGRRyHRZ2Ca9jXCzLAylBlVkEcU1XcAAcZ59Idhq5Udez7ptK+Z hCZvqsm1QSVFcWDsrQY0bGQ6/ihEUU7or+5+EgYd5JNUxJXwe43pCcHRPC/NEvgMfTxZDY7F skRHHVs/nW8LFQHUJ2mPw6arXK99yMdFQviPgRpOOv1BpTSj8Oq3Oyu5pHfeQpFiCSybL9oI hi7rArdutQYjIZtN609zgfFrmZSd+lZ229lK0ifkwrg6su14ZVu7zlet/U9+sBaTK70Zb44T btWDDQnN2A6+sjmvgTdQAWM+3URTHwYngJHDAbZ4h76WIzxsjbhuepmxCaaJ8z2QqsqVjmk8 qxmVQXniCYDNz4+7WHXlsl9h79VrR69uxByxZPfbYeIP/R8Y6zdZ8sXS2pfUMhMSyxPDICyb 4oTAOUOJutYqpXxqkEUoBeiGQWgGeXiwSJIiH/s2q061vwsHAbf0gwmA9IOsmrboM/zOqcPT ++1yrLIwijEb/NM1zfw85XHchQ7of2WQL1/b9PcxE8yHAzKklues5bqPy+J1usTqWib6fJtW OKuhmMltQ18oiWiy9sxh4TKhY8bxV7J+ypkzIsxJ9C1SVB2b9C6HJVetiyWKYh7Tt0+T210t ig316MKtYK/cSUM1Z8pxAbfZuSaf4SU+B7vSeWcLDhiiH54dr+yhAy+/Vavx+HkS8W50khGo jBbntXRrHwByh7e58mdRvdg+EqqxCyB2BrJ6u5eJEA5ja/bK5k8zbEujpcTqkHDHjPumEXxk a+Wal0o+ui25OTjZbXrvpGSOYl6hA/xMqogmsuxD+c/PAYUQWSW9uuy27z98EHjQbVKiOE2k rPDv5zAOMsborS5DxVI3Yk98xq/DjGm38oEnXQfMV5JZAiLg5XqNlzBOvz0EPmyjle2nDt1y P3KJrjhDY/MLnjHnrfhZ7F960tExQQqy9Bf+5BUBa8bLPz1R0/+qtrYDgQkPAyz2ebnBs5w2 Z4aWWKVGKOWLb3dvUeO5u00O+aMfpMauC7hK/g54P7jlWI1lUcHfaa1xZsXdGy4HvN+LkWWf Hrsg9gAHX4SvgUkUOzllF2CXiBIZ3upUKI84Cw7BJihDYfZSYD+yICGiXO0A5xGI3hPFluMH GzAeIOZHfAWZ3TBDNVml2lQcr69SYJn8QyjshT2zKBpBubQ4GsUuMSwh5BO++TPmERqpnRPB MOH3jTVJ1w= IronPort-Data: A9a23:DPF4lqN/nA02+UrvrR0BlsFynXyQoLVcMsEvi/8bNHD9gXJmyH0aj jNbCjG2js36YmL1esQhNsirtQNC4cmL04U7HVE3sHRkSXNEpNHZQO6UKk7geiyTMojYQUl69 cQCe5zbIdwoT3nT4A+kLrPhxZUX/f/YG7P3AbadYXsqHAU7E354h0I7wrZm2NU0j9LnXFvVs I+rr8bSZQT0h2V/Pj1Nsvva80s056384m1Ct1U0PasjUDMy75UwJMt3yfaZdiamGOG4Z9KSR /rf1KrruSTW/gstF9njmbH+NUgFT7LXPA7JgXpbUKvnhxFEpyI/ybpTCBZnUqshttnzt4s3l L1wiKGNpScV0ozklu5FCEgGTix1Zv1I9bafKCbk7JWYnxLPLXfmnfg/VhgfMNxD8I6bI43vG d/0itwpRkre7w5j6OvjEoGAvux6cI+xetp3VkhIlVnxFewhTY3IX5LE7NpZ2CZYrs1VFJ4yX eJAAdZUREmGMkMn1ms/Uspkxr7x3yCnKVW0lXrMzUYJyzmLpOBO+OW1WDblUoTibdlYmE+eu lXH8wzRav3NHIXCodYt2ivEat7nxUsXaqpLfFGL3qICbGmo+4AmIEZ+uW1XABWOohXWt9p3c yT488e1xEQ43BTDotLVB3VUrJMY1/K1thU5/+ASsWmwJqToDwmxCUYUXjNhdt4fs95nXxA41 EGPs9+0Gmk62FGVYSr1Gra8gReeFAY7CE4nXXVYYDsupdjlvJs6yB7LVJBvHcZZjPWsQXepk 2zM9XNuwe9P5SII//zTEVTvpDSwpJWPahM44B7bWXirxg99fsipauRE7HCEvKkac9/BEjFtu lA8ifev1vEKE6ihr3OibuhXIaOs+7GsZWi0bVlHWsNJGy6W03G+fJAV+DhiL0dkKe4LfyKvZ 1Xc0T69/7dfOHenY6FyYoepUZgn3aOmFNL5TPmSYt5UJJR8HOOawBxTiYer9ziFuCARfWsXY P93re7E4a4mNJla IronPort-HdrOrdr: A9a23:dQICcKF1xZQUyGCJpLqE08eALOsnbusQ8zAXPhhKOH5om7+j5q WTdZUgpGbJYVkqOE3I9ersBEDiewKlyXcW2/hzAV7KZmCP0wGVxepZgrcKtgeAJ8SIzIBgPM lbH5SWQ+eAaWSSxfyKhzVQPexQpuW6zA== X-IronPort-Anti-Spam-Filtered: true X-IronPort-AV: E=Sophos;i="5.96,157,1665439200"; d="scan'208,223";a="79727104" From: To: Subject: [PATCH] python-check-manifest: Relax git security settings in tests. Thread-Topic: [PATCH] python-check-manifest: Relax git security settings in tests. Thread-Index: AQHY9gpIU9mxwR6SrEKVRLlEzDia2Q== Date: Fri, 11 Nov 2022 20:15:02 +0000 Message-ID: <87cz9txn7e.fsf@dlr.de> Accept-Language: de-DE, en-US Content-Language: en-US X-MS-Has-Attach: yes X-MS-TNEF-Correlator: Content-Type: multipart/mixed; boundary="_002_87cz9txn7efsfdlrde_" MIME-Version: 1.0 Received-SPF: pass client-ip=194.94.201.12; envelope-from=Ontje.Luensdorf@dlr.de; helo=mailin.dlr.de X-Spam_score_int: -43 X-Spam_score: -4.4 X-Spam_bar: ---- X-Spam_report: (-4.4 / 5.0 requ) BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_MED=-2.3, SPF_HELO_NONE=0.001, SPF_PASS=-0.001 autolearn=ham autolearn_force=no X-Spam_action: no action X-Spam-Score: -1.3 (-) X-Debbugs-Envelope-To: submit X-BeenThere: debbugs-submit@debbugs.gnu.org X-Mailman-Version: 2.1.18 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: debbugs-submit-bounces@debbugs.gnu.org Sender: "Debbugs-submit" X-Spam-Score: -2.3 (--) --_002_87cz9txn7efsfdlrde_ Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: quoted-printable Hi Guix, the git security fixes for CVE-2022-39253 break submodule tests in python-check-manifest. This patch works around the issue by disabling the security check in the check phase. Best regards, Ontje --_002_87cz9txn7efsfdlrde_ Content-Type: text/x-patch; name="0001-gnu-python-check-manifest-Relax-git-security-setting.patch" Content-Description: 0001-gnu-python-check-manifest-Relax-git-security-setting.patch Content-Disposition: attachment; filename="0001-gnu-python-check-manifest-Relax-git-security-setting.patch"; size=1562; creation-date="Fri, 11 Nov 2022 20:15:02 GMT"; modification-date="Fri, 11 Nov 2022 20:15:02 GMT" Content-ID: <7E59135C782B7544A52C2F9F66594A08@dlr.de> Content-Transfer-Encoding: base64 RnJvbSAzZGUwZDMyNjk1NmZhNTUxYTNkYWQ2ZDY1ZjZmYWJkOWZmNDI4MmIzIE1vbiBTZXAgMTcg MDA6MDA6MDAgMjAwMQ0KRnJvbTogPT9VVEYtOD9xP09udGplPTIwTD1DMz1CQ25zZG9yZj89IDxv bnRqZS5sdWVuc2RvcmZAZGxyLmRlPg0KRGF0ZTogRnJpLCAxMSBOb3YgMjAyMiAyMTowOToyMSAr MDEwMA0KU3ViamVjdDogW1BBVENIXSBnbnU6IHB5dGhvbi1jaGVjay1tYW5pZmVzdDogUmVsYXgg Z2l0IHNlY3VyaXR5IHNldHRpbmdzIGluDQogdGVzdHMuDQoNCiogZ251L3BhY2thZ2VzL3B5dGhv bi14eXouc2NtIChweXRob24tY2hlY2stbWFuaWZlc3QpW2FyZ3VtZW50c106DQogIEFsbG93IGdp dCBzdWJtb2R1bGUgY29tbWFuZHMgdmlhIGZpbGUgcHJvdG9jb2wgZHVyaW5nIHRlc3RpbmcuDQot LS0NCiBnbnUvcGFja2FnZXMvcHl0aG9uLXh5ei5zY20gfCAxMSArKysrKysrKysrKw0KIDEgZmls ZSBjaGFuZ2VkLCAxMSBpbnNlcnRpb25zKCspDQoNCmRpZmYgLS1naXQgYS9nbnUvcGFja2FnZXMv cHl0aG9uLXh5ei5zY20gYi9nbnUvcGFja2FnZXMvcHl0aG9uLXh5ei5zY20NCmluZGV4IGUyNjY1 NmZhMzIuLjg1N2U0ZmMyMDcgMTAwNjQ0DQotLS0gYS9nbnUvcGFja2FnZXMvcHl0aG9uLXh5ei5z Y20NCisrKyBiL2dudS9wYWNrYWdlcy9weXRob24teHl6LnNjbQ0KQEAgLTI1NTgwLDYgKzI1NTgw LDE3IEBAIChkZWZpbmUtcHVibGljIHB5dGhvbi1jaGVjay1tYW5pZmVzdA0KICAgICAoYnVpbGQt c3lzdGVtIHB5dGhvbi1idWlsZC1zeXN0ZW0pDQogICAgIChuYXRpdmUtaW5wdXRzDQogICAgICAo bGlzdCBweXRob24tbW9jayBnaXQpKQ0KKyAgICAoYXJndW1lbnRzDQorICAgICBgKCM6cGhhc2Vz DQorICAgICAgIChtb2RpZnktcGhhc2VzICVzdGFuZGFyZC1waGFzZXMNCisgICAgICAgICA7OyBU ZXN0cyB1c2UgZ2l0IHN1Ym1vZHVsZSBjb21tYW5kcyBvdmVyIHRoZSBmaWxlIHRyYW5zcG9ydCwg d2hpY2gNCisgICAgICAgICA7OyBoYXMgYmVlbiBkaXNhYmxlZCBpbiBnaXQsIHNlZSBDVkUtMjAy Mi0zOTI1My4gRW5hYmxlIHRoZXNlDQorICAgICAgICAgOzsgY29tbWFuZHMgdG8gYWxsb3cgY2hl Y2tzIHRvIHN1Y2NlZWQuDQorICAgICAgICAgKGFkZC1iZWZvcmUgJ2NoZWNrICdhbGxvdy1naXQt c3VibW9kdWxlLWFkZA0KKyAgICAgICAgICAgKGxhbWJkYSBfDQorICAgICAgICAgICAgIChzZXRl bnYgIkhPTUUiICIvdG1wIikNCisgICAgICAgICAgICAgKGludm9rZSAiZ2l0IiAiY29uZmlnIiAi LS1nbG9iYWwiDQorICAgICAgICAgICAgICAgICAgICAgInByb3RvY29sLmZpbGUuYWxsb3ciICJh bHdheXMiKSkpKSkpDQogICAgIChob21lLXBhZ2UgImh0dHBzOi8vZ2l0aHViLmNvbS9tZ2VkbWlu L2NoZWNrLW1hbmlmZXN0IikNCiAgICAgKHN5bm9wc2lzICJDaGVjayBNQU5JRkVTVC5pbiBpbiBh IFB5dGhvbiBzb3VyY2UgcGFja2FnZSBmb3IgY29tcGxldGVuZXNzIikNCiAgICAgKGRlc2NyaXB0 aW9uICJQeXRob24gcGFja2FnZSBjYW4gaW5jbHVkZSBhIE1BTklGRVNULmluIGZpbGUgdG8gaGVs cCB3aXRoDQotLSANCjIuMzguMQ0KDQo= --_002_87cz9txn7efsfdlrde_-- From debbugs-submit-bounces@debbugs.gnu.org Sat Nov 19 13:36:22 2022 Received: (at 59202-done) by debbugs.gnu.org; 19 Nov 2022 18:36:23 +0000 Received: from localhost ([127.0.0.1]:41120 helo=debbugs.gnu.org) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1owShS-00059k-Bu for submit@debbugs.gnu.org; Sat, 19 Nov 2022 13:36:22 -0500 Received: from eggs.gnu.org ([209.51.188.92]:37470) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1owShK-00059S-NI for 59202-done@debbugs.gnu.org; Sat, 19 Nov 2022 13:36:21 -0500 Received: from fencepost.gnu.org ([2001:470:142:3::e]) by eggs.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.90_1) (envelope-from ) id 1owShE-0007HQ-Sr; Sat, 19 Nov 2022 13:36:08 -0500 DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=gnu.org; s=fencepost-gnu-org; h=MIME-Version:In-Reply-To:Date:References:Subject:To: From; bh=uGxOCAQhVr632TCabd+ozJIt5uMeW4sw4I5w8JO72g8=; b=e1tTZhMnd6r4RuS2coPN cxXLCoWrabv32M46RcxcXWCMVjpOke8wtk4+pBAotymhEkGcukS9ewaztZ8g9iK6ItmEcTTg3JSHt fizWfur2oLDLOxk9opiLA68RILt17eh/gtDCjo5DfIVJuxAHjmlg61OnWbEzEPIeZeXw8z59+Bk9/ SBKUgHUvvdQ0NouUHShocTwlEd2KCA/9eZVfvCI40/bD9392TLWTo85G4uUNtkuUsxITVhNs8KSIi UOiGyTcxPgjO7vH4T4/Zlutjk0b24uWi6jkoGNH769GCF+ZSFq/HMsFieTdwyUuL/xMFw2GXpINe+ CTeoHwtd9i/o0Q==; Received: from [2a01:e0a:1d:7270:af76:b9b:ca24:c465] (helo=ribbon) by fencepost.gnu.org with esmtpsa (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.90_1) (envelope-from ) id 1owShE-0006Tq-GK; Sat, 19 Nov 2022 13:36:08 -0500 From: =?utf-8?Q?Ludovic_Court=C3=A8s?= To: Subject: Re: bug#59202: [PATCH] python-check-manifest: Relax git security settings in tests. References: <87cz9txn7e.fsf@dlr.de> Date: Sat, 19 Nov 2022 19:36:06 +0100 In-Reply-To: <87cz9txn7e.fsf@dlr.de> (Ontje Luensdorf's message of "Fri, 11 Nov 2022 20:15:02 +0000") Message-ID: <87zgcm94h5.fsf@gnu.org> User-Agent: Gnus/5.13 (Gnus v5.13) Emacs/28.2 (gnu/linux) MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: quoted-printable X-Spam-Score: -2.3 (--) X-Debbugs-Envelope-To: 59202-done Cc: 59202-done@debbugs.gnu.org X-BeenThere: debbugs-submit@debbugs.gnu.org X-Mailman-Version: 2.1.18 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: debbugs-submit-bounces@debbugs.gnu.org Sender: "Debbugs-submit" X-Spam-Score: -3.3 (---) Hi, skribis: > From 3de0d326956fa551a3dad6d65f6fabd9ff4282b3 Mon Sep 17 00:00:00 2001 > From: =3D?UTF-8?q?Ontje=3D20L=3DC3=3DBCnsdorf?=3D > Date: Fri, 11 Nov 2022 21:09:21 +0100 > Subject: [PATCH] gnu: python-check-manifest: Relax git security settings = in > tests. > > * gnu/packages/python-xyz.scm (python-check-manifest)[arguments]: > Allow git submodule commands via file protocol during testing. Good catch. Applied, thanks! Ludo=E2=80=99. From unknown Tue Jun 17 22:01:08 2025 Received: (at fakecontrol) by fakecontrolmessage; To: internal_control@debbugs.gnu.org From: Debbugs Internal Request Subject: Internal Control Message-Id: bug archived. Date: Sun, 18 Dec 2022 12:24:04 +0000 User-Agent: Fakemail v42.6.9 # This is a fake control message. # # The action: # bug archived. thanks # This fakemail brought to you by your local debbugs # administrator