Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 127974 - net-dns/bind-9.3.2 insecure RUNPATHs
Summary: net-dns/bind-9.3.2 insecure RUNPATHs
Status: RESOLVED WORKSFORME
Alias: None
Product: Gentoo Security
Classification: Unclassified
Component: Runpath Issues (show other bugs)
Hardware: x86 Linux
: High normal (vote)
Assignee: Gentoo Security
URL:
Whiteboard:
Keywords:
: 127976 (view as bug list)
Depends on:
Blocks:
 
Reported: 2006-03-29 05:22 UTC by dzingis
Modified: 2006-07-04 12:28 UTC (History)
2 users (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description dzingis 2006-03-29 05:22:42 UTC
Portage 2.0.54 (default-linux/x86/2006.0, gcc-3.4.5, glibc-2.3.5-r2, 2.6.15-gentoo-r1 i686)
=================================================================
System uname: 2.6.15-gentoo-r1 i686 Pentium III (Coppermine)
Gentoo Base System version 1.6.14
dev-lang/python:     2.4.2
sys-apps/sandbox:    1.2.12
sys-devel/autoconf:  2.13, 2.59-r7
sys-devel/automake:  1.4_p6, 1.5, 1.6.3, 1.7.9-r1, 1.8.5-r3, 1.9.6-r1
sys-devel/binutils:  2.16.1
sys-devel/libtool:   1.5.22
virtual/os-headers:  2.6.11-r2
ACCEPT_KEYWORDS="x86"
AUTOCLEAN="yes"
CBUILD="i586-pc-linux-gnu"
CFLAGS="-O2 -pipe -march=pentium3 -fomit-frame-pointer"
CHOST="i586-pc-linux-gnu"
CONFIG_PROTECT="/etc /usr/kde/2/share/config /usr/kde/3/share/config /usr/share/config /var/qmail/control"
CONFIG_PROTECT_MASK="/etc/gconf /etc/terminfo /etc/env.d"
CXXFLAGS="-O2 -pipe -march=pentium3 -fomit-frame-pointer"
DISTDIR="/usr/portage/distfiles"
FEATURES="autoconfig distlocks sandbox sfperms strict"
GENTOO_MIRRORS="http://ftp.du.se/pub/os/gentoo"
MAKEOPTS="-j2"
PKGDIR="/usr/portage/packages"
PORTAGE_TMPDIR="/var/tmp"
PORTDIR="/usr/portage"
SYNC="rsync://rsync.gentoo.org/gentoo-portage"
USE="x86 alsa apache2 apm arts avi berkdb bitmap-fonts bzip2 cli crypt ctype curl dba dri eds emboss encode esd expat fastbuild foomaticdb force-cgi-redirect fortran ftp gd gdbm gif gstreamer gtk gtk2 imlib ipv6 jpeg kde libg++ libwww mad memlimit mikmod motif mp3 mpeg ncurses nls nptl ogg opengl oss pam pcre pdflib perl png posix python quicktime readline session simplexml soap sockets spell spl ssl tcpd tokenizer truetype truetype-fonts type1-fonts udev vorbis xml xmms xsl xv zlib userland_GNU kernel_linux elibc_glibc"
Unset:  ASFLAGS, CTARGET, LANG, LC_ALL, LDFLAGS, LINGUAS, PORTDIR_OVERLAY


QA Notice: the following files contain insecure RUNPATH's
 Please file a bug about this at http://bugs.gentoo.org/
 For more information on this issue, kindly review:
 http://bugs.gentoo.org/81745
/var/tmp/portage/bind-9.3.2/image//usr/lib usr/lib/libisccc.so.0.2.1
/var/tmp/portage/bind-9.3.2/image//usr/lib usr/lib/libdns.so.21.0.1
/var/tmp/portage/bind-9.3.2/image//usr/lib usr/lib/libisccfg.so.1.0.6
/var/tmp/portage/bind-9.3.2/image//usr/lib usr/lib/libbind9.so.0.0.7
/var/tmp/portage/bind-9.3.2/image//usr/lib usr/sbin/named
/var/tmp/portage/bind-9.3.2/image//usr/lib usr/sbin/lwresd
/var/tmp/portage/bind-9.3.2/image//usr/lib usr/sbin/rndc
/var/tmp/portage/bind-9.3.2/image//usr/lib usr/sbin/rndc-confgen
/var/tmp/portage/bind-9.3.2/image//usr/lib usr/sbin/dnssec-keygen
/var/tmp/portage/bind-9.3.2/image//usr/lib usr/sbin/dnssec-signzone
/var/tmp/portage/bind-9.3.2/image//usr/lib usr/sbin/named-checkconf
/var/tmp/portage/bind-9.3.2/image//usr/lib usr/sbin/named-checkzone


!!! ERROR: net-dns/bind-9.3.2 failed.
!!! Function dyn_install, Line 1057, Exitcode 0
!!! Insecure binaries detected
!!! If you need support, post the topmost build error, NOT this status message.
Comment 1 Carsten Lohrke (RETIRED) gentoo-dev 2006-03-29 07:03:58 UTC
*** Bug 127976 has been marked as a duplicate of this bug. ***
Comment 2 Ahmed Abdalla 2006-07-02 12:20:01 UTC
Shouldn't this appended to Bug# 81745 ?

This mentions the same issue in a number of other packages, one of which is bind-9.2.5
Comment 3 Konstantin Arkhipov (RETIRED) gentoo-dev 2006-07-04 12:28:40 UTC
it seems that it's already fixed in >=9.2.6/9.3.2

reopen, please, if problem still exist.