[lfs-book] r10769 - in trunk/BOOK: . chapter01 chapter03 chapter06

bdubbs at higgs.linuxfromscratch.org bdubbs at higgs.linuxfromscratch.org
Thu Oct 2 00:00:51 PDT 2014


Author: bdubbs
Date: Thu Oct  2 00:00:51 2014
New Revision: 10769

Log:
Added perl patch to fix CVE-2014-4330.

Update to grub-2.02~beta2.  It's been in beta for over 9 months 
and a 'stable' does not seem to be forthcoming.  

Document glibc tests known to sometimes fail.

Modified:
   trunk/BOOK/chapter01/changelog.xml
   trunk/BOOK/chapter01/whatsnew.xml
   trunk/BOOK/chapter03/patches.xml
   trunk/BOOK/chapter06/glibc.xml
   trunk/BOOK/chapter06/grub.xml
   trunk/BOOK/chapter06/perl.xml
   trunk/BOOK/packages.ent
   trunk/BOOK/patches.ent

Modified: trunk/BOOK/chapter01/changelog.xml
==============================================================================
--- trunk/BOOK/chapter01/changelog.xml	Mon Sep 29 11:45:45 2014	(r10768)
+++ trunk/BOOK/chapter01/changelog.xml	Thu Oct  2 00:00:51 2014	(r10769)
@@ -36,10 +36,30 @@
     </listitem>
 -->
     <listitem>
+      <para>2014-10-02</para>
+      <itemizedlist>
+        <listitem>
+          <para>[bdubbs] - Added perl patch to fix CVE-2014-4330.
+          to prevent infinite recursion in Data::Dumper.  Fixes
+          <ulink url="&lfs-ticket-root;3681">#3681</ulink>.</para>
+        </listitem>
+        <listitem>
+          <para>[bdubbs] - Update to grub-2.02~beta2.  It's been
+          in beta for over 9 months and a 'stable' does not seem
+          to be forthcoming.  Fixes 
+          <ulink url="&lfs-ticket-root;3450">#3450</ulink>.</para>
+        </listitem>
+        <listitem>
+          <para>[bdubbs] - Update glibc tests known to sometimes fail.</para>
+        </listitem>
+      </itemizedlist>
+    </listitem>
+
+    <listitem>
       <para>2014-09-29</para>
       <itemizedlist>
         <listitem>
-          <para>[bdubbs] - Updated bash upstream patches and added fixes for
+          <para>[bdubbs] - Update bash upstream patches and added fixes for
           CVE-2014-6271, CVE-2014-7169, and CVE-2014-7187 (through upstream
           patch bash43-027).</para>
         </listitem>

Modified: trunk/BOOK/chapter01/whatsnew.xml
==============================================================================
--- trunk/BOOK/chapter01/whatsnew.xml	Mon Sep 29 11:45:45 2014	(r10768)
+++ trunk/BOOK/chapter01/whatsnew.xml	Thu Oct  2 00:00:51 2014	(r10769)
@@ -106,9 +106,9 @@
     <!--<listitem>
       <para>Groff &groff-version;</para>
     </listitem>-->
-    <!--<listitem>
+    <listitem>
       <para>GRUB &grub-version;</para>
-    </listitem>-->
+    </listitem>
     <!--<listitem>
       <para>Gzip &gzip-version;</para>
     </listitem>-->
@@ -241,58 +241,13 @@
     <title>Added:</title>
     <listitem><para></para></listitem>  <!-- satisfy build -->
 
-<!--
-    <listitem>
-      <para>acl-&acl-version;</para>
-    </listitem>
-    <listitem>
-      <para>attr-&attr-version;</para>
-    </listitem>
--->
     <listitem>
       <para>&bash-fixes-patch;</para>
     </listitem>
-<!--
-    <listitem>
-      <para>&bc-memory-leak-patch;</para>
-    </listitem>
-    <listitem>
-      <para>&binutils-lto-patch;</para>
-    </listitem>
-    <listitem>
-      <para>&binutils-lto-testsuite-patch;</para>
-    </listitem>
-    <listitem>
-      <para>eudev-&eudev-version;</para>
-    </listitem>
-    <listitem>
-      <para>expat-&expat-version;</para>
-    </listitem>
-    <listitem>
-      <para>&gcc-upstream-patch;</para>
-    </listitem>
-    <listitem>
-      <para>&glibc-fhs-patch;</para>
-    </listitem>
-    <listitem>
-      <para>gperf-&gperf-version;</para>
-    </listitem>
-    <listitem>
-      <para>intltool-&intltool-version;</para>
-    </listitem>
-    <listitem>
-      <para>libcap-&libcap-version;</para>
-    </listitem>
-    <listitem>
-      <para>&mpfr-fixes-patch;</para>
-    </listitem>
-    <listitem>
-      <para>&readline-fixes-patch;</para>
-    </listitem>
+
     <listitem>
-      <para>XML::Parser-&xml-parser-version;</para>
+      <para>&perl-fix-patch;</para>
     </listitem>
--->
   </itemizedlist>
 
   <itemizedlist>
@@ -302,31 +257,7 @@
     <listitem>
       <para>bash-4.3-upstream_fixes-3.patch</para>
     </listitem>
-<!--
-    <listitem>
-      <para>glibc-2.19-fhs-1.patch</para>
-    </listitem>
-
-    <listitem>
-      <para>mpfr-3.1.2-upstream_fixes-1.patch</para>
-    </listitem>
-
-    <listitem>
-      <para>perl-5.18.2-libc-1.patch</para>
-    </listitem>
-
-    <listitem>
-      <para>readline-6.2-fixes-2.patch</para>
-    </listitem>
-
-    <listitem>
-      <para>tar-1.27.1-manpage-1.patch</para>
-    </listitem>
 
-    <listitem>
-      <para>udev 208</para>
-    </listitem>
--->
   </itemizedlist>
 
 </sect1>

Modified: trunk/BOOK/chapter03/patches.xml
==============================================================================
--- trunk/BOOK/chapter03/patches.xml	Mon Sep 29 11:45:45 2014	(r10768)
+++ trunk/BOOK/chapter03/patches.xml	Thu Oct  2 00:00:51 2014	(r10769)
@@ -117,6 +117,14 @@
     </varlistentry>
 
     <varlistentry>
+      <term>Perl Data::Dumper Patch - <token>&perl-fix-patch-size;</token>:</term>
+      <listitem>
+        <para>Download: <ulink url="&patches-root;&perl-fix-patch;"/></para>
+        <para>MD5 sum: <literal>&perl-fix-patch-md5;</literal></para>
+      </listitem>
+    </varlistentry>
+
+    <varlistentry>
       <term>Readline Upstream Fixes Patch - <token>&readline-fixes-patch-size;</token>:</term>
       <listitem>
         <para>Download: <ulink url="&patches-root;&readline-fixes-patch;"/></para>

Modified: trunk/BOOK/chapter06/glibc.xml
==============================================================================
--- trunk/BOOK/chapter06/glibc.xml	Mon Sep 29 11:45:45 2014	(r10768)
+++ trunk/BOOK/chapter06/glibc.xml	Thu Oct  2 00:00:51 2014	(r10769)
@@ -115,15 +115,11 @@
     issues seen for this version of LFS:</para>
 
     <itemizedlist>
-<!--
+
       <listitem>
-        <para>The <emphasis>nptl/tst-clock2</emphasis>,
-        <emphasis>nptl/tst-attr3</emphasis>,
-        <emphasis>tst/tst-cputimer1</emphasis>, and
-        <emphasis>rt/tst-cpuclock2</emphasis>
-        tests have been known to fail.  The
-        reason is not completely understood, but indications are that minor
-        timing issues can trigger these failures.</para>
+        <para>The <emphasis>tst/tst-cputimer1</emphasis> test has been known to
+        fail.  The reason is not completely understood, but indications are
+        that minor timing issues can trigger this failure.</para>
       </listitem>
 
       <listitem>
@@ -131,7 +127,7 @@
         systems where the CPU is not a relatively new genuine Intel or
         authentic AMD processor.</para>
       </listitem>
-
+<!--
       <listitem>
         <para>When running on older and slower hardware or on systems under
         load, some tests can fail because of test timeouts being exceeded.
@@ -149,13 +145,12 @@
         <para>libio/tst-ftell-partial-wide.out fails because it needs a locale
         that has not yet been generated.</para>
       </listitem>
-
+-->
       <listitem>
-        <para>Other tests known to fail on some architectures are posix/bug-regex32,
-        misc/tst-writev, elf/check-textrel, nptl/tst-getpid2, nptl/tst-robust8,
-        and stdio-common/bug22.</para>
+        <para>Other tests known to fail on some architectures are
+        malloc/tst-malloc-usable and  nptl/tst-cleanupx4. </para>
       </listitem>
--->
+
     </itemizedlist>
 
     <para>Though it is a harmless message, the install stage of Glibc will

Modified: trunk/BOOK/chapter06/grub.xml
==============================================================================
--- trunk/BOOK/chapter06/grub.xml	Mon Sep 29 11:45:45 2014	(r10768)
+++ trunk/BOOK/chapter06/grub.xml	Thu Oct  2 00:00:51 2014	(r10769)
@@ -40,10 +40,6 @@
   <sect2 role="installation">
     <title>Installation of GRUB</title>
 
-    <para>Fix an incompatibility between this package and Glibc-&glibc-version;:</para>
-
-<screen><userinput remap="pre">sed -i -e '/gets is a/d' grub-core/gnulib/stdio.in.h</userinput></screen>
-
     <para>Prepare GRUB for compilation:</para>
 
 <screen><userinput remap="configure">./configure --prefix=/usr          \

Modified: trunk/BOOK/chapter06/perl.xml
==============================================================================
--- trunk/BOOK/chapter06/perl.xml	Mon Sep 29 11:45:45 2014	(r10768)
+++ trunk/BOOK/chapter06/perl.xml	Thu Oct  2 00:00:51 2014	(r10769)
@@ -56,6 +56,10 @@
 <screen><userinput remap="pre">export BUILD_ZLIB=False
 export BUILD_BZIP2=0</userinput></screen>
 
+    <para>Fix a potential security problem:</para>
+
+<screen><userinput remap="pre">patch -Np1 -i ../&perl-fix-patch;</userinput></screen>
+
     <para>To have full control over the way Perl is set up, you can remove the
     <quote>-des</quote> options from the following command and hand-pick the way
     this package is built. Alternatively, use the command exactly as below to

Modified: trunk/BOOK/packages.ent
==============================================================================
--- trunk/BOOK/packages.ent	Mon Sep 29 11:45:45 2014	(r10768)
+++ trunk/BOOK/packages.ent	Thu Oct  2 00:00:51 2014	(r10769)
@@ -278,10 +278,10 @@
 <!ENTITY groff-ch6-du "83 MB">
 <!ENTITY groff-ch6-sbu "0.6 SBU">
 
-<!ENTITY grub-version "2.00">
-<!ENTITY grub-size "5,016 KB">
-<!ENTITY grub-url "&gnu;grub/grub-&grub-version;.tar.xz">
-<!ENTITY grub-md5 "a1043102fbc7bcedbf53e7ee3d17ab91">
+<!ENTITY grub-version "2.02~beta2">
+<!ENTITY grub-size "5,663 KB">
+<!ENTITY grub-url "http://alpha.gnu.org/gnu/grub/grub-&grub-version;.tar.xz">
+<!ENTITY grub-md5 "be62932eade308a364ea4bbc91295930">
 <!ENTITY grub-home "&gnu-software;grub/">
 <!ENTITY grub-ch6-du "110 MB">
 <!ENTITY grub-ch6-sbu "0.8 SBU">

Modified: trunk/BOOK/patches.ent
==============================================================================
--- trunk/BOOK/patches.ent	Mon Sep 29 11:45:45 2014	(r10768)
+++ trunk/BOOK/patches.ent	Thu Oct  2 00:00:51 2014	(r10769)
@@ -53,6 +53,10 @@
 <!ENTITY mpfr-fixes-patch-md5 "2b2aa4371a4e848411639356fd82becf">
 <!ENTITY mpfr-fixes-patch-size "40 KB">
 
+<!ENTITY perl-fix-patch "perl-&perl-version;-infinite_recurse_fix-1.patch">
+<!ENTITY perl-fix-patch-md5 "579dfed34e97e0a2fe21b74aa53946ac">
+<!ENTITY perl-fix-patch-size "11 KB">
+
 <!ENTITY readline-fixes-patch "readline-6.3-upstream_fixes-2.patch">
 <!ENTITY readline-fixes-patch-md5 "97f74f1c3c83008f268b32d36e9fd376">
 <!ENTITY readline-fixes-patch-size "4 KB">


More information about the lfs-book mailing list