Your message dated Sun, 05 May 2024 18:49:19 +0000
with message-id <e1s3gvh-004xtp...@fasolo.debian.org>
and subject line Bug#1064034: fixed in ruby3.1 3.1.2-7+deb12u1
has caused the Debian Bug report #1064034,
regarding FTBFS: Expired test certificate
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)


-- 
1064034: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1064034
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Package: ruby3.1
Version: 3.1.2-8
Severity: serious
Tags: ftbfs

A build of ruby3.1 fails on the test stage, since multiple
test/net/http/test_https.rb tests return 

> "ERROR OpenSSL::SSL::SSLError: SSL_accept returned=1 errno=0
peeraddr=(null) state=error: sslv3 alert certificate expired\n"

where no error was expected.


Failing tests:
TestNetHTTPS#test_get, TestNetHTTPS#test_skip_hostname_verification,
TestNetHTTPS#test_skip_hostname_verification, TestNetHTTPS#test_post,
TestNetHTTPS#test_min_version, TestNetHTTPS#test_get_SNI,
TestNetHTTPS#test_get, TestNetHTTPS#test_post,
TestNetHTTPS#test_min_version, TestNetHTTPS#test_get_SNI


The actual reason is that the certificate it uses (file
test/net/fixtures/server.crt) *IS* expired:

$ openssl x509 -in test/net/fixtures/server.crt -text
Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number: 2 (0x2)
        Signature Algorithm: sha256WithRSAEncryption
        Issuer: C = JP, ST = Shimane, L = Matz-e city, O = Ruby Core Team, CN = 
Ruby Test CA, emailAddress = secur...@ruby-lang.org
        Validity
            Not Before: Jan  2 03:27:13 2019 GMT
            Not After : Jan  1 03:27:13 2024 GMT
        Subject: C = JP, ST = Shimane, O = Ruby Core Team, OU = Ruby Test, CN = 
localhost


This was fixed upstream on 
https://github.com/ruby/ruby/commit/d3933fc753187a055a4904af82f5f3794c88c416

--- End Message ---
--- Begin Message ---
Source: ruby3.1
Source-Version: 3.1.2-7+deb12u1
Done: Moritz Mühlenhoff <j...@debian.org>

We believe that the bug you reported is fixed in the latest version of
ruby3.1, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 1064...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Moritz Mühlenhoff <j...@debian.org> (supplier of updated ruby3.1 package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Fri, 26 Apr 2024 09:47:47 +0200
Source: ruby3.1
Architecture: source
Version: 3.1.2-7+deb12u1
Distribution: bookworm-security
Urgency: medium
Maintainer: Debian Ruby Team 
<pkg-ruby-extras-maintain...@lists.alioth.debian.org>
Changed-By: Moritz Mühlenhoff <j...@debian.org>
Closes: 1064034
Changes:
 ruby3.1 (3.1.2-7+deb12u1) bookworm-security; urgency=medium
 .
   * CVE-2024-27280 / CVE-2024-27281 / CVE-2024-27282
   * Cherrypick changes from 3.1.2-8.2 upload to sid:
     * Update test certificates from ruby 3.2.3. (Closes: #1064034)
     * Disable test needing a working DNS resolver.
Checksums-Sha1:
 7f14017ddc58d15190bf308efcb60030ec3c0b26 2595 ruby3.1_3.1.2-7+deb12u1.dsc
 9a0840a5a26dcdbd9e9eebe3354598375a4a6b6d 12885596 ruby3.1_3.1.2.orig.tar.xz
 dcf086fd43032b9ec0b8c975e2e6baa810408749 80764 
ruby3.1_3.1.2-7+deb12u1.debian.tar.xz
 bf19498a307a05e8e312fe33bb9a525a25706a7f 8628 
ruby3.1_3.1.2-7+deb12u1_amd64.buildinfo
Checksums-Sha256:
 a04e26298ae7202d46a45587dc7ce4fb696aa2d3df2699e1684ccf126b6f6840 2595 
ruby3.1_3.1.2-7+deb12u1.dsc
 350013ef6640f15c42eae48d25c035999dcbb32e4be038d27ad891cb48d685a5 12885596 
ruby3.1_3.1.2.orig.tar.xz
 c2687c741a45046b9652f84734ceb83554b1583c88acc6ac94660d1d504d14a8 80764 
ruby3.1_3.1.2-7+deb12u1.debian.tar.xz
 b92d271efacaa6c4bbeb7e8a06d58a90eb0a0848f4445a17d11c7ce65601b17f 8628 
ruby3.1_3.1.2-7+deb12u1_amd64.buildinfo
Files:
 7bd09d163012362edf54a117ff937926 2595 ruby optional ruby3.1_3.1.2-7+deb12u1.dsc
 69cf9ca520a804bff39ab22e1b798b4b 12885596 ruby optional 
ruby3.1_3.1.2.orig.tar.xz
 85e50f242976d9f3706fcada55d13f24 80764 ruby optional 
ruby3.1_3.1.2-7+deb12u1.debian.tar.xz
 a6b17b3f8bf8f52363eaad9234e5bf38 8628 ruby optional 
ruby3.1_3.1.2-7+deb12u1_amd64.buildinfo

-----BEGIN PGP SIGNATURE-----
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=bVUj
-----END PGP SIGNATURE-----

Attachment: pgpoatVpLdMMC.pgp
Description: PGP signature


--- End Message ---

Reply via email to