Your message dated Mon, 9 Jan 2023 11:46:48 +0100
with message-id <[email protected]>
and subject line Not affected
has caused the Debian Bug report #1022014,
regarding ceph: Uses deprecated yaml.load
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)
--
1022014: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1022014
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Source: ceph
Version: 16.2.10+ds-3
Severity: normal
X-Debbugs-Cc: [email protected]
We hope to upgrade python3-yaml (aka pyyaml) to version 6 before the
freeze, per #1008262
Your package appears to use `yaml.load()` without specifying a `Loader=`
argument, which will become an error in pyyaml version 6. This should
have emitted a warning message since version 5.1 (from 2019).
In most cases this can be fixed by replacing `yaml.load` with
`yaml.safe_load`, unless the ability for yaml to create arbitrary python
objects is desirable.
The only place I found this in the ceph source is in a test:
https://sources.debian.org/src/ceph/16.2.10+ds-3/src/test/crimson/cbt/t2c.py/?hl=46#L46
This doesn't look like it's installed in any of the binaries, but
perhaps it can be hit during build?
-- System Information:
Debian Release: bookworm/sid
APT prefers unstable
APT policy: (500, 'unstable'), (1, 'experimental')
Architecture: amd64 (x86_64)
Kernel: Linux 6.0.0-1-amd64 (SMP w/1 CPU thread; PREEMPT)
Locale: LANG=en_GB.UTF-8, LC_CTYPE=en_GB.UTF-8 (charmap=UTF-8), LANGUAGE=en_GB
Shell: /bin/sh linked to /usr/bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled
--- End Message ---
--- Begin Message ---
Hi,
This file is for teutology tests (ie: functional tests), which we don't
run at build time. So Ceph isn't affected.
Thanks for the bug report anyways.
Cheers,
Thomas Goirand (zigo)
--- End Message ---