[Group.of.nepali.translators] [Bug 1571491] [NEW] possible auth bypass

2016-04-17 Thread Michael Vogt
Public bug reported:

The snapd authentication can by bypassed by sending invalid auth:
headers and logout is not revmoing the local authentication data.

Regression potential: worst case is that snap authentication no longer
works which is preferable to an auth bypass.

** Affects: snapd (Ubuntu)
 Importance: Critical
 Status: In Progress

** Affects: snapd (Ubuntu Xenial)
 Importance: Critical
 Status: In Progress

** Also affects: snapd (Ubuntu Xenial)
   Importance: Undecided
   Status: New

** Changed in: snapd (Ubuntu Xenial)
   Importance: Undecided => Critical

** Changed in: snapd (Ubuntu Xenial)
   Status: New => In Progress

-- 
You received this bug notification because you are a member of नेपाली
भाषा समायोजकहरुको समूह, which is subscribed to Xenial.
Matching subscriptions: Ubuntu 16.04 Bugs
https://bugs.launchpad.net/bugs/1571491

Title:
  possible auth bypass

Status in snapd package in Ubuntu:
  In Progress
Status in snapd source package in Xenial:
  In Progress

Bug description:
  The snapd authentication can by bypassed by sending invalid auth:
  headers and logout is not revmoing the local authentication data.

  Regression potential: worst case is that snap authentication no longer
  works which is preferable to an auth bypass.

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/snapd/+bug/1571491/+subscriptions

___
Mailing list: https://launchpad.net/~group.of.nepali.translators
Post to : group.of.nepali.translators@lists.launchpad.net
Unsubscribe : https://launchpad.net/~group.of.nepali.translators
More help   : https://help.launchpad.net/ListHelp


[Group.of.nepali.translators] [Bug 1571403] [NEW] lz4 fails to run the tests on s390x (glibc-2.23 related?)

2016-04-17 Thread Matthias Klose
Public bug reported:

seen in the test rebuild:

https://launchpad.net/ubuntu/+archive/test-
rebuild-20160401/+build/9483622

60658   
60679   
60698   
60724   *** Error in `./fuzzer': double free or corruption (!prev): 
0x02aa181a4090 ***
=== Backtrace: =
/lib/s390x-linux-gnu/libc.so.6(+0x791ba)[0x3ffaf7791ba]
/lib/s390x-linux-gnu/libc.so.6(+0x7f62e)[0x3ffaf77f62e]
/lib/s390x-linux-gnu/libc.so.6(+0x80010)[0x3ffaf780010]
./fuzzer(+0xed86)[0x2aa1490ed86]
./fuzzer(main+0x15c)[0x2aa14900e84]
/lib/s390x-linux-gnu/libc.so.6(__libc_start_main+0x10e)[0x3ffaf722ece]
./fuzzer(+0x145c)[0x2aa1490145c]
=== Memory map: 
2aa1490-2aa14914000 r-xp  fc:00 1443097  
/<>/programs/fuzzer
2aa14914000-2aa14915000 r--p 00013000 fc:00 1443097  
/<>/programs/fuzzer
2aa14915000-2aa14916000 rw-p 00014000 fc:00 1443097  
/<>/programs/fuzzer
2aa1815f000-2aa1820d000 rw-p  00:00 0[heap]
3ffa800-3ffa8021000 rw-p  00:00 0 
3ffa8021000-3ffac00 ---p  00:00 0 
3ffaf68-3ffaf69 r-xp  fc:00 1180835  
/lib/s390x-linux-gnu/libgcc_s.so.1
3ffaf69-3ffaf691000 rw-p f000 fc:00 1180835  
/lib/s390x-linux-gnu/libgcc_s.so.1
3ffaf70-3ffaf885000 r-xp  fc:00 1183401  
/lib/s390x-linux-gnu/libc-2.23.so
3ffaf885000-3ffaf889000 r--p 00184000 fc:00 1183401  
/lib/s390x-linux-gnu/libc-2.23.so
3ffaf889000-3ffaf88b000 rw-p 00188000 fc:00 1183401  
/lib/s390x-linux-gnu/libc-2.23.so
3ffaf88b000-3ffaf88f000 rw-p  00:00 0 
3ffaf98-3ffaf9a4000 r-xp  fc:00 1183402  
/lib/s390x-linux-gnu/ld-2.23.so
3ffaf9a4000-3ffaf9a5000 r--p 00023000 fc:00 1183402  
/lib/s390x-linux-gnu/ld-2.23.so
3ffaf9a5000-3ffaf9a7000 rw-p 00024000 fc:00 1183402  
/lib/s390x-linux-gnu/ld-2.23.so
3ffaf9f5000-3ffaf9fe000 rw-p  00:00 0 
3ffaf9fe000-3ffafa0 r-xp  00:00 0[vdso]
3ffefabc000-3ffefb8 rw-p  00:00 0[stack]
All unit tests completed successfully 

  60747 /  60747   - all tests completed successfully 
compression ratio: 55.197%
HC compression ratio: 51.173%
ratio with dict: 44.457%
Makefile:277: recipe for target 'test-fuzzer' failed
make[3]: *** [test-fuzzer] Aborted
make[3]: Leaving directory '/<>/programs'
Makefile:98: recipe for target 'test' failed
make[2]: *** [test] Error 2

** Affects: glibc (Ubuntu)
 Importance: High
 Status: New

** Affects: lz4 (Ubuntu)
 Importance: High
 Status: Confirmed

** Affects: glibc (Ubuntu Xenial)
 Importance: High
 Status: New

** Affects: lz4 (Ubuntu Xenial)
 Importance: High
 Status: Confirmed


** Tags: ftbfs

** Also affects: lz4 (Ubuntu Xenial)
   Importance: High
   Status: Confirmed

** Also affects: glibc (Ubuntu)
   Importance: Undecided
   Status: New

** Changed in: glibc (Ubuntu Xenial)
   Importance: Undecided => High

** Changed in: glibc (Ubuntu Xenial)
Milestone: None => ubuntu-16.04

-- 
You received this bug notification because you are a member of नेपाली
भाषा समायोजकहरुको समूह, which is subscribed to Xenial.
Matching subscriptions: Ubuntu 16.04 Bugs
https://bugs.launchpad.net/bugs/1571403

Title:
  lz4 fails to run the tests on s390x (glibc-2.23 related?)

Status in glibc package in Ubuntu:
  New
Status in lz4 package in Ubuntu:
  Confirmed
Status in glibc source package in Xenial:
  New
Status in lz4 source package in Xenial:
  Confirmed

Bug description:
  seen in the test rebuild:

  https://launchpad.net/ubuntu/+archive/test-
  rebuild-20160401/+build/9483622

  60658   
  60679   
  60698   
  60724   *** Error in `./fuzzer': double free or corruption (!prev): 
0x02aa181a4090 ***
  === Backtrace: =
  /lib/s390x-linux-gnu/libc.so.6(+0x791ba)[0x3ffaf7791ba]
  /lib/s390x-linux-gnu/libc.so.6(+0x7f62e)[0x3ffaf77f62e]
  /lib/s390x-linux-gnu/libc.so.6(+0x80010)[0x3ffaf780010]
  ./fuzzer(+0xed86)[0x2aa1490ed86]
  ./fuzzer(main+0x15c)[0x2aa14900e84]
  /lib/s390x-linux-gnu/libc.so.6(__libc_start_main+0x10e)[0x3ffaf722ece]
  ./fuzzer(+0x145c)[0x2aa1490145c]
  === Memory map: 
  2aa1490-2aa14914000 r-xp  fc:00 1443097  
/<>/programs/fuzzer
  2aa14914000-2aa14915000 r--p 00013000 fc:00 1443097  
/<>/programs/fuzzer
  2aa14915000-2aa14916000 rw-p 00014000 fc:00 1443097  
/<>/programs/fuzzer
  2aa1815f000-2aa1820d000 rw-p  00:00 0
[heap]
  3ffa800-3ffa8021000 rw-p  00:00 0 
  3ffa8021000-3ffac00 ---p  00:00 0 
  3ffaf68-3ffaf69 r-xp  fc:00 1180835  
/lib/s390x-linux-gnu/libgcc_s.so.1
  3ffaf69-3ffaf691000 rw-p f000 fc:00 1180835