| Summary: | build rsync with system zlib (was: external zlib breaks compatibility with rsync-3.1.1) | ||
|---|---|---|---|
| Product: | Mageia | Reporter: | Atilla ÖNTAŞ <tarakbumba> |
| Component: | RPM Packages | Assignee: | All Packagers <pkg-bugs> |
| Status: | RESOLVED FIXED | QA Contact: | |
| Severity: | major | ||
| Priority: | Normal | CC: | ngompa13, pkg-bugs, thierry.vignaud |
| Version: | Cauldron | ||
| Target Milestone: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| See Also: |
https://bugzilla.samba.org/show_bug.cgi?id=10677 https://bugzilla.samba.org/show_bug.cgi?id=10332 https://bugzilla.samba.org/show_bug.cgi?id=10372 https://bugzilla.redhat.com/show_bug.cgi?id=1043965 |
||
| Whiteboard: | |||
| Source RPM: | rsync-3.1.1-1.mga5.src.rpm | CVE: | |
| Status comment: | |||
|
Description
Atilla ÖNTAŞ
2014-07-03 22:46:32 CEST
Atilla ÖNTAŞ
2014-07-03 22:47:52 CEST
See Also:
(none) =>
https://bugzilla.samba.org/show_bug.cgi?id=10677 Fixed in rsync-3.1.1-1.mga5 and submitted to repositories. Status:
NEW =>
RESOLVED This violates policy. We build against system libraries. Isn't there a better solution for this problem? Status:
RESOLVED =>
REOPENED (In reply to David Walser from comment #2) > This violates policy. We build against system libraries. Isn't there a > better solution for this problem? Unfortunately, no. As you can see from the samba bug report, they suggest to use internal zlib. Until a solution comes out, we either use rsync without compression support or use internal zlib. Older rsync installations does not aware new -zz or new compression options. (In reply to Atilla ÃNTAÅ from comment #3) > (In reply to David Walser from comment #2) > > This violates policy. We build against system libraries. Isn't there a > > better solution for this problem? > > Unfortunately, no. As you can see from the samba bug report, they suggest to > use internal zlib. Until a solution comes out, we either use rsync without > compression support or use internal zlib. Older rsync installations does not > aware new -zz or new compression options. Also, Fedora too enabled internal zlib. See: http://pkgs.fedoraproject.org/cgit/rsync.git/tree/rsync.spec (In reply to Atilla ÃNTAÅ from comment #4) > (In reply to Atilla ÃNTAÅ from comment #3) > > (In reply to David Walser from comment #2) > > > This violates policy. We build against system libraries. Isn't there a > > > better solution for this problem? > > > > Unfortunately, no. As you can see from the samba bug report, they suggest to > > use internal zlib. Until a solution comes out, we either use rsync without > > compression support or use internal zlib. Older rsync installations does not > > aware new -zz or new compression options. > > Also, Fedora too enabled internal zlib. See: > http://pkgs.fedoraproject.org/cgit/rsync.git/tree/rsync.spec Also see: https://bugzilla.samba.org/show_bug.cgi?id=10372 and https://bugzilla.redhat.com/show_bug.cgi?id=1043965 It seems to me that we should wait until rsync-3.1.1 used wider before disabling internal zlib. Keeping this bug report open with a new summary. Summary:
external zlib breaks compatibility with rsync-3.1.1 =>
build rsync with system zlib (was: external zlib breaks compatibility with rsync-3.1.1)
Samuel Verschelde
2015-06-06 15:58:39 CEST
Target Milestone:
--- =>
Mageia 6 (In reply to Atilla ÃNTAÅ from comment #5) > > Also see: > > https://bugzilla.samba.org/show_bug.cgi?id=10372 > > and > > https://bugzilla.redhat.com/show_bug.cgi?id=1043965 > > It seems to me that we should wait until rsync-3.1.1 used wider before > disabling internal zlib. Replyin myself. Is it time to disable internal zlib? What do you think? Also see: https://bugzilla.redhat.com/show_bug.cgi?id=1102637 about this issue. CC'ing all packagers collectively because tarakbumba, the assignee, will be MIA for ± 11 weeks. CC:
(none) =>
pkg-bugs
Thierry Vignaud
2016-06-30 09:32:28 CEST
See Also:
(none) =>
https://bugzilla.samba.org/show_bug.cgi?id=10332, https://bugzilla.samba.org/show_bug.cgi?id=10372, https://bugzilla.redhat.com/show_bug.cgi?id=1043965 I don't think it would be a good idea to disable the internal zlib. As a somewhat bad close-to-home example, distrib-coffee is using Mandriva 2010 to serve the mirror. There are quite a few systems out there running older versions. It's likely going to be a long time before we could reasonably disable internal zlib... :( CC:
(none) =>
ngompa13
Samuel Verschelde
2016-10-10 22:18:23 CEST
Target Milestone:
Mageia 6 =>
--- Reassigning to all packagers collectively as the original maintainer is not available anymore (thanks for all your work Atilla!). Assignee:
tarakbumba =>
pkg-bugs Well this was unfortunately "fixed" and as expected, it has caused security issues: https://usn.ubuntu.com/4292-1/ Status:
NEW =>
RESOLVED |