Your message dated Thu, 21 Nov 2013 18:18:26 +0000
with message-id <[email protected]>
and subject line Bug#729981: fixed in gem2deb 0.5.1
has caused the Debian Bug report #729981,
regarding gem2deb: Fails to handle irregular file names on install
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)


-- 
729981: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=729981
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Package: gem2deb
Version: 0.5.0
Severity: normal
Tags: patch

Hi,

I tried to gem2deb di-ruby-lvm-attrib. This fails because the gem contains
files with parentheses in their name.
This can be circumvented by protecting the file name with quotes when calling 
install.

Cheers,
        Christopher

-- System Information:
Debian Release: wheezy/sid
  APT prefers saucy-updates
  APT policy: (500, 'saucy-updates'), (500, 'saucy-security'), (500, 'saucy')
Architecture: amd64 (x86_64)
Foreign Architectures: i386

Kernel: Linux 3.11.0-13-generic (SMP w/4 CPU cores)
Locale: LANG=de_DE.UTF-8, LC_CTYPE=de_DE.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash

Versions of packages gem2deb depends on:
ii  build-essential               11.6ubuntu5
ii  debhelper                     9.20130630ubuntu1
ii  devscripts                    2.13.4
ii  perl                          5.14.2-21build1
ii  ruby                          1:1.9.3
ii  ruby1.8 [ruby-interpreter]    1.8.7.358-7ubuntu2
ii  ruby1.9.1 [ruby-interpreter]  1.9.3.194-8.1ubuntu2
ii  ruby1.9.1-dev                 1.9.3.194-8.1ubuntu2
ii  ruby2.0 [ruby-interpreter]    2.0.0.299-2
ii  ruby2.0-dev                   2.0.0.299-2

gem2deb recommends no packages.

gem2deb suggests no packages.

-- no debconf information
diff -Nru gem2deb-0.5.0/lib/gem2deb/installer.rb gem2deb-0.5.0chr1/lib/gem2deb/installer.rb
--- gem2deb-0.5.0/lib/gem2deb/installer.rb	2013-08-08 21:42:59.000000000 +0200
+++ gem2deb-0.5.0chr1/lib/gem2deb/installer.rb	2013-11-19 21:24:30.000000000 +0100
@@ -185,7 +185,7 @@
       files_to_install.each do |file|
         from = File.join(src, file)
         to = File.join(dest, file)
-        run "install -D -m#{mode} #{from} #{to}"
+        run "install -D -m#{mode} '#{from}' '#{to}'"
       end
     end
 

--- End Message ---
--- Begin Message ---
Source: gem2deb
Source-Version: 0.5.1

We believe that the bug you reported is fixed in the latest version of
gem2deb, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Antonio Terceiro <[email protected]> (supplier of updated gem2deb package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Format: 1.8
Date: Wed, 20 Nov 2013 16:19:46 -0300
Source: gem2deb
Binary: gem2deb
Architecture: source all
Version: 0.5.1
Distribution: unstable
Urgency: low
Maintainer: Debian Ruby Extras Maintainers 
<[email protected]>
Changed-By: Antonio Terceiro <[email protected]>
Description: 
 gem2deb    - Debian Ruby packaging suite
Closes: 729981
Changes: 
 gem2deb (0.5.1) unstable; urgency=low
 .
   * Don't interpolate arguments for shell commands.
     This fixes handling of files with weird characters in their names such
     as ")" and whitespace in general, and improves security against
     maliciously-crafted filenames which could inject unwanted shell
     commands in the system that is building a package with gem2deb.
     (Closes: #729981)
Checksums-Sha1: 
 833435fd0b35c26f75275db257bd326dc50d9fe7 1899 gem2deb_0.5.1.dsc
 821721e97e767c15880a18063b0ff5744bf57d9d 59304 gem2deb_0.5.1.tar.gz
 263cc3884fef0a1e6dbe278b656ff01677742db6 44018 gem2deb_0.5.1_all.deb
Checksums-Sha256: 
 449dbf75104de07b0341e8c6d1384f2429150169cf405367b8c4f017833ad720 1899 
gem2deb_0.5.1.dsc
 db037234d2f2640adb0a5b29a5c6e040dae03b1b91b6031ad84adb51776b6d93 59304 
gem2deb_0.5.1.tar.gz
 6f076bfae59fba5ab6a1f8fa7752947076342cad11f60a7e303b361d31db3201 44018 
gem2deb_0.5.1_all.deb
Files: 
 44ef452a19c165b3a0da3ef6f022d218 1899 ruby optional gem2deb_0.5.1.dsc
 d498b8dddcb0b7a73cd227f17a406b6b 59304 ruby optional gem2deb_0.5.1.tar.gz
 6487fba61607379c7484ad41e5c9786a 44018 ruby optional gem2deb_0.5.1_all.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.15 (GNU/Linux)
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=K+Xd
-----END PGP SIGNATURE-----

--- End Message ---
_______________________________________________
Pkg-ruby-extras-maintainers mailing list
[email protected]
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers

Reply via email to