make: *** [Makefile:581: check-recursive] Error 1 * ERROR: app-crypt/gnupg-2.1.17-r1::gentoo failed (test phase): * Make check failed. See above for details. * * Call stack: * ebuild.sh, line 115: Called src_test ----------------------------------------------------------------- This is an unstable amd64 chroot image (named 13.0-unstable_20170109-235418) at a hardened host acting as a tinderbox. ----------------------------------------------------------------- gcc-config -l: [1] x86_64-pc-linux-gnu-5.4.0 * llvm-config --version: /tmp/job.sh: line 358: llvm-config: command not found Available Python interpreters, in order of preference: [1] python3.4 [2] python2.7 (fallback) Available Ruby profiles: [1] ruby21 (with Rubygems) * java-config: ----------------------------------------------------------------- $ cat emerge-info.txt Portage 2.3.3 (python 3.4.5-final-0, default/linux/amd64/13.0, gcc-5.4.0, glibc-2.24, 4.8.16-hardened x86_64) ================================================================= System Settings ================================================================= System uname: Linux-4.8.16-hardened-x86_64-Intel-R-_Core-TM-_i7-3930K_CPU_@_3.20GHz-with-gentoo-2.3 KiB Mem: 65285560 total, 12647652 free KiB Swap: 67108860 total, 67108860 free Timestamp of repository gentoo: Tue, 10 Jan 2017 08:03:11 +0000 sh bash 4.4_p5-r1 ld GNU ld (Gentoo 2.25.1 p1.1) 2.25.1 app-shells/bash: 4.4_p5-r1::gentoo dev-lang/perl: 5.24.1_rc4::gentoo dev-lang/python: 2.7.12::gentoo, 3.4.5::gentoo dev-util/cmake: 3.7.1::gentoo dev-util/pkgconfig: 0.29.1::gentoo sys-apps/baselayout: 2.3::gentoo sys-apps/openrc: 0.23.1::gentoo sys-apps/sandbox: 2.10-r3::gentoo sys-devel/autoconf: 2.69-r2::gentoo sys-devel/automake: 1.13.4-r1::gentoo, 1.14.1-r1::gentoo, 1.15-r2::gentoo sys-devel/binutils: 2.25.1-r1::gentoo, 2.27::gentoo sys-devel/gcc: 5.4.0-r2::gentoo sys-devel/gcc-config: 1.8-r1::gentoo sys-devel/libtool: 2.4.6-r2::gentoo sys-devel/make: 4.2.1::gentoo sys-kernel/linux-headers: 4.9::gentoo (virtual/os-headers) sys-libs/glibc: 2.24::gentoo Repositories: gentoo location: /usr/portage sync-type: rsync sync-uri: rsync://rsync.gentoo.org/gentoo-portage priority: 1 tinderbox location: /tmp/tb/data/portage masters: gentoo priority: 2 local location: /usr/local/portage masters: gentoo priority: 99 ACCEPT_KEYWORDS="amd64 ~amd64" ACCEPT_LICENSE="*" CBUILD="x86_64-pc-linux-gnu" CFLAGS="-O2 -pipe -march=native -Wall" CHOST="x86_64-pc-linux-gnu" CONFIG_PROTECT="/etc" CONFIG_PROTECT_MASK="/etc/ca-certificates.conf /etc/env.d /etc/fonts/fonts.conf /etc/gconf /etc/gentoo-release /etc/php/apache2-php7.1/ext-active/ /etc/php/cgi-php7.1/ext-active/ /etc/php/cli-php7.1/ext-active/ /etc/revdep-rebuild /etc/sandbox.d /etc/terminfo" CXXFLAGS="-O2 -pipe -march=native" DISTDIR="/var/tmp/distfiles" EMERGE_DEFAULT_OPTS="--verbose --verbose-conflicts --color=n --nospinner --tree --quiet-build" FCFLAGS="-O2 -pipe" FEATURES="assume-digests binpkg-logs config-protect-if-modified distlocks ebuild-locks fixlafiles ipc-sandbox merge-sync network-sandbox parallel-fetch preserve-libs protect-owned sandbox sfperms strict unknown-features-warn unmerge-logs unmerge-orphans userfetch userpriv usersandbox usersync xattr" FFLAGS="-O2 -pipe" GENTOO_MIRRORS="http://ftp.uni-erlangen.de/pub/mirrors/gentoo rsync://mirror.netcologne.de/gentoo/ ftp://sunsite.informatik.rwth-aachen.de/pub/Linux/gor.bytemark.co.uk/gentoo/ rsync://ftp.snt.utwente.nl/gentoo" LANG="en_US.utf8" LDFLAGS="-Wl,-O1 -Wl,--as-needed" MAKEOPTS="-j1" PKGDIR="/usr/portage/packages" PORTAGE_CONFIGROOT="/" PORTAGE_RSYNC_OPTS="--recursive --links --safe-links --perms --times --omit-dir-times --compress --force --whole-file --delete --stats --human-readable --timeout=180 --exclude=/distfiles --exclude=/local --exclude=/packages --exclude=/.git" PORTAGE_TMPDIR="/var/tmp" USE="acl amd64 berkdb bzip2 cli cracklib crypt cxx declarative dri fax ffmpeg fortran gdbm gles gtk3 haptic iconv ipv6 ldap mmx mmxext modplug modules multilib ncurses nls nptl openmp openmpi openssl pam pax_kernel pcre plotutils readline seccomp server session sse sse2 ssh-askpass ssl ssp tcl tcpd unicode usb xattr xtpax zlib" ABI_X86="64" ALSA_CARDS="hda-intel" APACHE2_MODULES="authn_core authz_core socache_shmcb unixd actions alias auth_basic authn_alias authn_anon authn_dbm authn_default authn_file authz_dbm authz_default authz_groupfile authz_host authz_owner authz_user autoindex cache cgi cgid dav dav_fs dav_lock deflate dir disk_cache env expires ext_filter file_cache filter headers include info log_config logio mem_cache mime mime_magic negotiation rewrite setenvif speling status unique_id userdir usertrack vhost_alias" CALLIGRA_FEATURES="kexi words flow plan sheets stage tables krita karbon braindump author" CAMERAS="ptp2" COLLECTD_PLUGINS="df interface irq load memory rrdtool swap syslog" CPU_FLAGS_X86="aes avx mmx mmxext popcnt sse sse2 sse3 sse4_1 sse4_2 ssse3" ELIBC="glibc" GPSD_PROTOCOLS="ashtech aivdm earthmate evermore fv18 garmin garmintxt gpsclock itrax mtk3301 nmea ntrip navcom oceanserver oldstyle oncore rtcm104v2 rtcm104v3 sirf superstar2 timing tsip tripmate tnt ublox ubx" INPUT_DEVICES="evdev synaptics" KERNEL="linux" L10N="ff sr-ME" LCD_DEVICES="bayrad cfontz cfontz633 glk hd44780 lb216 lcdm001 mtxorb ncurses text" LIBREOFFICE_EXTENSIONS="presenter-console presenter-minimizer" OFFICE_IMPLEMENTATION="libreoffice" PHP_TARGETS="php5-6" PYTHON_SINGLE_TARGET="python2_7" PYTHON_TARGETS="python2_7 python3_4" RUBY_TARGETS="ruby21" USERLAND="GNU" VIDEO_CARDS="intel i965" XTABLES_ADDONS="quota2 psd pknock lscan length2 ipv4options ipset ipp2p iface geoip fuzzy condition tee tarpit sysrq steal rawnat logmark ipmark dhcpmac delude chaos account" Unset: CC, CPPFLAGS, CTARGET, CXX, INSTALL_MASK, LC_ALL, PORTAGE_BUNZIP2_COMMAND, PORTAGE_COMPRESS, PORTAGE_COMPRESS_FLAGS, PORTAGE_RSYNC_EXTRA_OPTS, USE_PYTHON
Created attachment 459466 [details] app-crypt:gnupg-2.1.17-r1:20170110-103857.log
Created attachment 459468 [details] config.log
Created attachment 459470 [details] emerge-history.txt
Created attachment 459472 [details] environment
Created attachment 459474 [details] etc.portage.tbz2
could you add the *.log files for the tests (at least the failing one)? (they are found in tests dir)
Created attachment 459486 [details] tests.tbz2 tar'ed tests dir
for the record : [16:31] <K_F> I take it, in this case, it only occurs when smartcard USE is set as well [16:25] <toralf> Jan 10 16:25:02 mr-fox kernel: [60456.715492] grsec: From 78.54.60.106: Segmentation fault occurred at 0000000000000030 in /home/tinderbox/img2/13.0-unstable_20170109-235418/usr/libexec/scdaemon[pipe-connection:19927] uid/euid:250/250 gid/egid:250/250, parent /home/tinderbox/img2/13.0-unstable_20170109-235418/var/tmp/portage/app-crypt/gnupg-2.1.17-r1/work/gnupg-2.1.17/agent/gpg-agent[gpg-agent:19925] uid/euid:250/250 gid/egid:250/250
Any chance you could get a core dump for a backtrace of the segfault?(In reply to Toralf Förster from comment #8) > for the record : > > [16:31] <K_F> I take it, in this case, it only occurs when smartcard USE is > set as well > > [16:25] <toralf> Jan 10 16:25:02 mr-fox kernel: [60456.715492] grsec: From > 78.54.60.106: Segmentation fault occurred at 0000000000000030 in > /home/tinderbox/img2/13.0-unstable_20170109-235418/usr/libexec/scdaemon[pipe- > connection:19927] uid/euid:250/250 gid/egid:250/250, parent > /home/tinderbox/img2/13.0-unstable_20170109-235418/var/tmp/portage/app-crypt/ > gnupg-2.1.17-r1/work/gnupg-2.1.17/agent/gpg-agent[gpg-agent:19925] > uid/euid:250/250 gid/egid:250/250 Any chance you could get a core dump and backtrace from that segfault?
Does the issue persist in 2.1.19?
(In reply to Kristian Fiskerstrand from comment #10) no
btu today it is back at an unstable amd64 chroot image (named desktop_20170305-211735)
Created attachment 466150 [details] emerge-info.txt
Created attachment 466152 [details] app-crypt:gnupg-2.1.19:20170306-125200.log
Created attachment 466154 [details] config.log.tbz2
Created attachment 466156 [details] emerge-history.txt
Created attachment 466158 [details] environment
Created attachment 466160 [details] etc.portage.tbz2
Created attachment 466162 [details] temp.tbz2
Hi, Please attach: ssh-import.scm.log or any log with ssh-import. gpgconf.scm.log or any log with gpgconf.scm. Do you have /etc/gnupg directory? If you do please paste ls -la /etc/gnupg Thanks!
Created attachment 466278 [details] gpgconf.scm Failed tests: gpgconf.scm
(In reply to Toralf Förster from comment #21) > Created attachment 466278 [details] > gpgconf.scm > > Failed tests: gpgconf.scm Thanks! but I need the log not the scm :)
Created attachment 466280 [details] tests.tbz2 test dir
Created attachment 466282 [details] gpgconf.scm
Created attachment 466284 [details] gpgconf.scm gpgconf.scm.log
This only has the gpgscm folder, the log files for the actual tests are in /var/tmp/portage/app-crypt/gnupg-2.1.19-r1/work/gnupg-2.1.19/tests/openpgp for these two tests, the gpgscm folder is only the scheme application to run them
Created attachment 466286 [details] gpgconf.scm.log gpgconf.scm.log
(In reply to Toralf Förster from comment #27) > Created attachment 466286 [details] > gpgconf.scm.log > > gpgconf.scm.log Thanks, this seems interesting, seems gpgconf tries to call /usr/bin/gpg2 instead of the currently compiled gpg2 at this point, which will give bootstrapping issues from a clean system without gpg installed - if this is confirmed it is an upstream issue, but we want to be able to provide a patch
(In reply to Kristian Fiskerstrand from comment #28) > (In reply to Toralf Förster from comment #27) > > Created attachment 466286 [details] > > gpgconf.scm.log > > > > gpgconf.scm.log > > Thanks, this seems interesting, seems gpgconf tries to call /usr/bin/gpg2 > instead of the currently compiled gpg2 at this point, which will give > bootstrapping issues from a clean system without gpg installed - if this is > confirmed it is an upstream issue, but we want to be able to provide a patch This is reproducable when doing mv /usr/bin/gpg2 /usr/bin/gpg2.bak emerge -1va gnupg
(In reply to Kristian Fiskerstrand from comment #29) > (In reply to Kristian Fiskerstrand from comment #28) > > (In reply to Toralf Förster from comment #27) > > > Created attachment 466286 [details] > > > gpgconf.scm.log > > > > > > gpgconf.scm.log > > > > Thanks, this seems interesting, seems gpgconf tries to call /usr/bin/gpg2 > > instead of the currently compiled gpg2 at this point, which will give > > bootstrapping issues from a clean system without gpg installed - if this is > > confirmed it is an upstream issue, but we want to be able to provide a patch > > This is reproducable when doing > mv /usr/bin/gpg2 /usr/bin/gpg2.bak > emerge -1va gnupg Yes, just done this as well :) Do you take it with upstream or I try to fix?
(In reply to Alon Bar-Lev from comment #30) > (In reply to Kristian Fiskerstrand from comment #29) > > (In reply to Kristian Fiskerstrand from comment #28) > > > (In reply to Toralf Förster from comment #27) > > > > Created attachment 466286 [details] > > > > gpgconf.scm.log > > > > > > > > gpgconf.scm.log > > > > > > Thanks, this seems interesting, seems gpgconf tries to call /usr/bin/gpg2 > > > instead of the currently compiled gpg2 at this point, which will give > > > bootstrapping issues from a clean system without gpg installed - if this is > > > confirmed it is an upstream issue, but we want to be able to provide a patch > > > > This is reproducable when doing > > mv /usr/bin/gpg2 /usr/bin/gpg2.bak > > emerge -1va gnupg > > Yes, just done this as well :) > Do you take it with upstream or I try to fix? justus isn't online atm, if we can come up with a fix for it to submit it is anyways better. I'm traveling for next couple of days, so if you want to have a go at it, please do - I likely won't get much time until weekend.
fwiw, ssh-import also has similar call, so the issue is presumably same between the tests. openpgp/ssh-import.scm: (call-check `(,(tool 'gpgconf) --null --list-dirs agent-ssh-socket)) the actual gpgconf call goes correctly to tools/gpgconf , as per openpgp/defs.scm: (gpgconf "GPGCONF" "tools/gpgconf") however the gpgconf tool itself needs an override for path, so the issue is likely in gpgconf itself (or missing PATH environment or other variable to override gpg binary path)
Will see if we get some hints: 21:10 -!- Irssi: #gnupg-devel: Total of 7 nicks [2 ops, 0 halfops, 0 voices, 5 normal] 21:24 <@K_F> is there an easy way to override the gpg2 path for gpgconf ? we're experiencing bootstrapping issue in tests in 2.1.19 21:24 <@K_F> gpgconf.scm.log: 21:25 <@K_F> https://605260.bugs.gentoo.org/attachment.cgi?id=466286 21:25 <@K_F> it tries to execute /usr/bin/gpg2 instead of g10/gpg 21:25 <@K_F> so not detected on a running system, but we get it in the tinderbox from a clean start
ok, I give up. It seems that in master it works. The problem is this lisp language that I cannot decipher. The problem is in tests/openpgp/defs.scm, it needs to run gpg-conf with --build-prefix ${objdir} while sometimes is running without this parameter. No matter what I tried it ignores me, also bisect on master did not produce any sane results. There is some lisp magic I could not discover. Best to just wait for next z-stream.
Fixed in master, so will be part of next release https://git.gnupg.org/cgi-bin/gitweb.cgi?p=gnupg.git;a=commit;h=a98459d3f4ec3d196fb0adb0e90dadf40abc8c81
This is in master branch so part of next gnupg release: https://git.gnupg.org/cgi-bin/gitweb.cgi?p=gnupg.git;a=commit;h=a98459d3f4ec3d196fb0adb0e90dadf40abc8c81
gnupg-2.1.20 broke this again... decrypt-unwrap-verify.scm Checking unwrapping the encryption. > encsig-2-keys-3 ("/var/tmp/portage/app-crypt/gnupg-2.1.20/work/gnupg-2.1.20/g10/gpg" --no-permission-warning --always-trust --import "/tmp/gscmdecrypt-unwrap-verifycotEDf/steve's-key") failed: ("gpg: keybox '/tmp/gscmdecrypt-unwrap-verifyM9SSZh/pubring.kbx' created\ngpg: key AA43F1DCC7FED1B7: public key \"steve.biko@example.net\" imported\ngpg: failed to start agent '/usr/bin/gpg-agent': No such file or directory\ngpg: can't connect to the agent: No such file or directory\ngpg: Total number processed: 1\ngpg: imported: 1\n") 0: tests.scm:133: (throw (string-append (stringify what) " failed") (:stderr result)) 1: decrypt-unwrap-verify.scm:39: (call-check `(,@gpg --import ,steve's-key)) 2: init.scm:443: (thunk) 3: (dynamic-wind (lambda () (setenv "GNUPGHOME" gensym-33 #t)) (lambda () (call-check `(,@gpg --import ,steve's-key)) (call-check `(,@gpg --verify ,unwrapped))) (lambda () (setenv "GNUPGHOME" gensym-32 #t)))
(In reply to Alon Bar-Lev from comment #37) > gnupg-2.1.20 broke this again... https://lists.gnupg.org/pipermail/gnupg-devel/2017-April/032765.html
This is fixed again in 2.2.3 at least