Package: coreutils
Version: 8.13-3.1ubuntu1
Severity: important

Original UBuntu bug: https://bugs.launchpad.net/bug/1038468
Original Upstream bug: http://debbugs.gnu.org/cgi/bugreport.cgi?bug=9780

Last year a bug was reported to upstream coreutils [1] about problems on using 
'sort -u'. Until recently, there was no known reproducing process; one such 
process was published last week [2].

Although triggering the bug can be said to be a non-completely trivial use 
case, data loss in 'sort' should be looked at as a serious issue.

Today Jim Meyering committed what looks like the final touches of the fix 
(incidentally also solving a different issue (a free memory read), also in 
'sort'. There are 4 commits affected, and they are shown starting in [3].

Given this is a data loss potential, I am opening this bug for all affected 
releases (this bug affects Coreutils 8.9 onwards -- Precise and Quantal). I am 
still to run the tests on Lucid, Natty, and Oneiric.

[1] http://debbugs.gnu.org/cgi/bugreport.cgi?bug=9780
[2] http://lists.gnu.org/archive/html/bug-coreutils/2012-08/msg00027.html
[3] http://lists.gnu.org/archive/html/bug-coreutils/2012-08/msg00057.html

-- System Information:
Debian Release: wheezy/sid
  APT prefers quantal-updates
  APT policy: (500, 'quantal-updates'), (500, 'quantal-security'), (500, 
'quantal-proposed'), (500, 'quantal'), (100, 'quantal-backports')
Architecture: amd64 (x86_64)
Foreign Architectures: i386

Kernel: Linux 3.5.0-10-generic (SMP w/4 CPU cores)
Locale: LANG=en_GB.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash

Versions of packages coreutils depends on:
ii  dpkg          1.16.7ubuntu3
ii  install-info  4.13a.dfsg.1-10ubuntu1
ii  libacl1       2.2.51-8ubuntu1
ii  libattr1      1:2.4.46-8ubuntu1
ii  libc6         2.15-0ubuntu17
ii  libselinux1   2.1.9-5ubuntu1

coreutils recommends no packages.

coreutils suggests no packages.

-- no debconf information

Attachment: signature.asc
Description: PGP signature

Reply via email to