Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update debian, especially for CVE-2014-0487 CVE-2014-0488 CVE-2014-0489 CVE-2014-5270 #199

Merged
merged 1 commit into from
Sep 17, 2014

Conversation

tianon
Copy link
Member

@tianon tianon commented Sep 17, 2014

Fixes #198 (thanks for the explicit poke, @yonkeltron)

@tianon
Copy link
Member Author

tianon commented Sep 17, 2014

root@7babc9a5cfa3:/usr/src/stackbrew# ./brew-cli --debug --no-namespace -b debian --targets debian git://github.com/tianon/stackbrew.git
2014-09-17 20:56:25,897 DEBUG Cloning repo_url=git://github.com/tianon/stackbrew.git, ref=debian
2014-09-17 20:56:25,899 DEBUG folder = /tmp/tmp5Vy1FL
2014-09-17 20:56:25,899 DEBUG Cloning git://github.com/tianon/stackbrew.git into /tmp/tmp5Vy1FL
2014-09-17 20:56:25,899 DEBUG Executing "git clone git://github.com/tianon/stackbrew.git ." in /tmp/tmp5Vy1FL
Cloning into '.'...
remote: Counting objects: 1353, done.
remote: Compressing objects: 100% (15/15), done.
remote: Total 1353 (delta 3), reused 0 (delta 0)
Receiving objects: 100% (1353/1353), 202.16 KiB | 0 bytes/s, done.
Resolving deltas: 100% (760/760), done.
Checking connectivity... done.
2014-09-17 20:56:26,971 DEBUG Checkout ref:debian in /tmp/tmp5Vy1FL
2014-09-17 20:56:26,971 DEBUG Executing "git checkout debian" in /tmp/tmp5Vy1FL
Branch debian set up to track remote branch debian from origin.
Switched to a new branch 'debian'
2014-09-17 20:56:26,978 DEBUG jessie: git://github.com/tianon/docker-brew-debian@b775062605b785a384417bd0e1ffd676f38ddcf5 jessie

2014-09-17 20:56:26,978 DEBUG oldstable: git://github.com/tianon/docker-brew-debian@b775062605b785a384417bd0e1ffd676f38ddcf5 oldstable

2014-09-17 20:56:26,978 DEBUG sid: git://github.com/tianon/docker-brew-debian@b775062605b785a384417bd0e1ffd676f38ddcf5 sid

2014-09-17 20:56:26,978 DEBUG 6.0.10: git://github.com/tianon/docker-brew-debian@b775062605b785a384417bd0e1ffd676f38ddcf5 squeeze

2014-09-17 20:56:26,978 DEBUG 6.0: git://github.com/tianon/docker-brew-debian@b775062605b785a384417bd0e1ffd676f38ddcf5 squeeze

2014-09-17 20:56:26,979 DEBUG 6: git://github.com/tianon/docker-brew-debian@b775062605b785a384417bd0e1ffd676f38ddcf5 squeeze

2014-09-17 20:56:26,979 DEBUG squeeze: git://github.com/tianon/docker-brew-debian@b775062605b785a384417bd0e1ffd676f38ddcf5 squeeze

2014-09-17 20:56:26,979 DEBUG stable: git://github.com/tianon/docker-brew-debian@b775062605b785a384417bd0e1ffd676f38ddcf5 stable

2014-09-17 20:56:26,979 DEBUG testing: git://github.com/tianon/docker-brew-debian@b775062605b785a384417bd0e1ffd676f38ddcf5 testing

2014-09-17 20:56:26,979 DEBUG unstable: git://github.com/tianon/docker-brew-debian@b775062605b785a384417bd0e1ffd676f38ddcf5 unstable

2014-09-17 20:56:26,979 DEBUG 7.6: git://github.com/tianon/docker-brew-debian@b775062605b785a384417bd0e1ffd676f38ddcf5 wheezy

2014-09-17 20:56:26,979 DEBUG 7: git://github.com/tianon/docker-brew-debian@b775062605b785a384417bd0e1ffd676f38ddcf5 wheezy

2014-09-17 20:56:26,979 DEBUG wheezy: git://github.com/tianon/docker-brew-debian@b775062605b785a384417bd0e1ffd676f38ddcf5 wheezy

2014-09-17 20:56:26,979 DEBUG latest: git://github.com/tianon/docker-brew-debian@b775062605b785a384417bd0e1ffd676f38ddcf5 wheezy

2014-09-17 20:56:26,979 DEBUG rc-buggy: git://github.com/tianon/dockerfiles@42566bdbce41e66d09898ac01eac5eb0b49b4bd0 debian/rc-buggy

2014-09-17 20:56:26,979 DEBUG experimental: git://github.com/tianon/dockerfiles@42566bdbce41e66d09898ac01eac5eb0b49b4bd0 debian/experimental

2014-09-17 20:56:26,979 DEBUG debian: jessie
2014-09-17 20:56:26,979 DEBUG debian: oldstable
2014-09-17 20:56:26,979 DEBUG debian: sid
2014-09-17 20:56:26,979 DEBUG debian: 6.0.10,6.0,6,squeeze
2014-09-17 20:56:26,980 DEBUG debian: stable
2014-09-17 20:56:26,980 DEBUG debian: testing
2014-09-17 20:56:26,980 DEBUG debian: unstable
2014-09-17 20:56:26,980 DEBUG debian: 7.6,7,wheezy,latest
2014-09-17 20:56:26,980 DEBUG debian: rc-buggy
2014-09-17 20:56:26,980 DEBUG debian: experimental
2014-09-17 20:56:26,980 DEBUG Cloning repo_url=git://github.com/tianon/docker-brew-debian, ref=b775062605b785a384417bd0e1ffd676f38ddcf5
2014-09-17 20:56:26,980 DEBUG folder = /tmp/tmpEcXQug
2014-09-17 20:56:26,980 DEBUG Cloning git://github.com/tianon/docker-brew-debian into /tmp/tmpEcXQug
2014-09-17 20:56:26,980 DEBUG Executing "git clone git://github.com/tianon/docker-brew-debian ." in /tmp/tmpEcXQug
Cloning into '.'...
remote: Counting objects: 80, done.
remote: Total 80 (delta 0), reused 0 (delta 0)
Receiving objects: 100% (80/80), 190.39 MiB | 1.19 MiB/s, done.
Resolving deltas: 100% (21/21), done.
Checking connectivity... done.
2014-09-17 20:58:39,263 DEBUG Checkout ref:b775062605b785a384417bd0e1ffd676f38ddcf5 in /tmp/tmpEcXQug
2014-09-17 20:58:39,263 DEBUG Executing "git checkout b775062605b785a384417bd0e1ffd676f38ddcf5" in /tmp/tmpEcXQug
Note: checking out 'b775062605b785a384417bd0e1ffd676f38ddcf5'.

You are in 'detached HEAD' state. You can look around, make experimental
changes and commit them, and you can discard any commits you make in this
state without impacting any branches by performing another checkout.

If you want to create a new branch to retain commits you create, you may
do so (now or later) by using -b with the checkout command again. Example:

  git checkout -b new_branch_name

HEAD is now at b775062... 2014-09-17 debootstraps; CVE-2014-0487 CVE-2014-0488 CVE-2014-0489 CVE-2014-5270
2014-09-17 20:58:39,745 INFO Build start: debian ('git://github.com/tianon/docker-brew-debian', 'b775062605b785a384417bd0e1ffd676f38ddcf5', 'jessie')
2014-09-17 20:58:46,447 INFO Build success: 559f7bb820cd (debian:jessie)
2014-09-17 20:58:46,463 DEBUG Checkout ref:b775062605b785a384417bd0e1ffd676f38ddcf5 in /tmp/tmpEcXQug
2014-09-17 20:58:46,463 DEBUG Executing "git checkout b775062605b785a384417bd0e1ffd676f38ddcf5" in /tmp/tmpEcXQug
HEAD is now at b775062... 2014-09-17 debootstraps; CVE-2014-0487 CVE-2014-0488 CVE-2014-0489 CVE-2014-5270
2014-09-17 20:58:47,147 INFO Build start: debian ('git://github.com/tianon/docker-brew-debian', 'b775062605b785a384417bd0e1ffd676f38ddcf5', 'oldstable')
2014-09-17 20:58:54,613 INFO Build success: 0d69e1687fc5 (debian:oldstable)
2014-09-17 20:58:54,628 DEBUG Checkout ref:b775062605b785a384417bd0e1ffd676f38ddcf5 in /tmp/tmpEcXQug
2014-09-17 20:58:54,628 DEBUG Executing "git checkout b775062605b785a384417bd0e1ffd676f38ddcf5" in /tmp/tmpEcXQug
HEAD is now at b775062... 2014-09-17 debootstraps; CVE-2014-0487 CVE-2014-0488 CVE-2014-0489 CVE-2014-5270
2014-09-17 20:58:54,633 INFO Build start: debian ('git://github.com/tianon/docker-brew-debian', 'b775062605b785a384417bd0e1ffd676f38ddcf5', 'sid')
2014-09-17 20:59:01,163 INFO Build success: ba771c2d1917 (debian:sid)
2014-09-17 20:59:01,177 DEBUG Checkout ref:b775062605b785a384417bd0e1ffd676f38ddcf5 in /tmp/tmpEcXQug
2014-09-17 20:59:01,178 DEBUG Executing "git checkout b775062605b785a384417bd0e1ffd676f38ddcf5" in /tmp/tmpEcXQug
HEAD is now at b775062... 2014-09-17 debootstraps; CVE-2014-0487 CVE-2014-0488 CVE-2014-0489 CVE-2014-5270
2014-09-17 20:59:01,182 INFO Build start: debian ('git://github.com/tianon/docker-brew-debian', 'b775062605b785a384417bd0e1ffd676f38ddcf5', 'squeeze')
2014-09-17 20:59:06,116 INFO Build success: 62ac2a7204dc (debian:6.0.10)
2014-09-17 20:59:06,133 INFO Build success: 62ac2a7204dc (debian:6.0)
2014-09-17 20:59:06,149 INFO Build success: 62ac2a7204dc (debian:6)
2014-09-17 20:59:06,162 INFO Build success: 62ac2a7204dc (debian:squeeze)
2014-09-17 20:59:06,178 DEBUG Checkout ref:b775062605b785a384417bd0e1ffd676f38ddcf5 in /tmp/tmpEcXQug
2014-09-17 20:59:06,178 DEBUG Executing "git checkout b775062605b785a384417bd0e1ffd676f38ddcf5" in /tmp/tmpEcXQug
HEAD is now at b775062... 2014-09-17 debootstraps; CVE-2014-0487 CVE-2014-0488 CVE-2014-0489 CVE-2014-5270
2014-09-17 20:59:06,182 INFO Build start: debian ('git://github.com/tianon/docker-brew-debian', 'b775062605b785a384417bd0e1ffd676f38ddcf5', 'stable')
2014-09-17 20:59:11,465 INFO Build success: e5ab4f36b8e7 (debian:stable)
2014-09-17 20:59:11,481 DEBUG Checkout ref:b775062605b785a384417bd0e1ffd676f38ddcf5 in /tmp/tmpEcXQug
2014-09-17 20:59:11,481 DEBUG Executing "git checkout b775062605b785a384417bd0e1ffd676f38ddcf5" in /tmp/tmpEcXQug
HEAD is now at b775062... 2014-09-17 debootstraps; CVE-2014-0487 CVE-2014-0488 CVE-2014-0489 CVE-2014-5270
2014-09-17 20:59:11,486 INFO Build start: debian ('git://github.com/tianon/docker-brew-debian', 'b775062605b785a384417bd0e1ffd676f38ddcf5', 'testing')
2014-09-17 20:59:23,222 INFO Build success: aca0d7379908 (debian:testing)
2014-09-17 20:59:23,844 DEBUG Checkout ref:b775062605b785a384417bd0e1ffd676f38ddcf5 in /tmp/tmpEcXQug
2014-09-17 20:59:23,845 DEBUG Executing "git checkout b775062605b785a384417bd0e1ffd676f38ddcf5" in /tmp/tmpEcXQug
HEAD is now at b775062... 2014-09-17 debootstraps; CVE-2014-0487 CVE-2014-0488 CVE-2014-0489 CVE-2014-5270
2014-09-17 20:59:23,849 INFO Build start: debian ('git://github.com/tianon/docker-brew-debian', 'b775062605b785a384417bd0e1ffd676f38ddcf5', 'unstable')
2014-09-17 20:59:41,009 INFO Build success: 9485cf499d58 (debian:unstable)
2014-09-17 20:59:42,041 DEBUG Checkout ref:b775062605b785a384417bd0e1ffd676f38ddcf5 in /tmp/tmpEcXQug
2014-09-17 20:59:42,042 DEBUG Executing "git checkout b775062605b785a384417bd0e1ffd676f38ddcf5" in /tmp/tmpEcXQug
HEAD is now at b775062... 2014-09-17 debootstraps; CVE-2014-0487 CVE-2014-0488 CVE-2014-0489 CVE-2014-5270
2014-09-17 20:59:42,046 INFO Build start: debian ('git://github.com/tianon/docker-brew-debian', 'b775062605b785a384417bd0e1ffd676f38ddcf5', 'wheezy')
2014-09-17 20:59:54,863 INFO Build success: 80cecc01a6f3 (debian:7.6)
2014-09-17 20:59:55,549 INFO Build success: 80cecc01a6f3 (debian:7)
2014-09-17 20:59:58,408 INFO Build success: 80cecc01a6f3 (debian:wheezy)
2014-09-17 20:59:59,775 INFO Build success: 80cecc01a6f3 (debian:latest)
2014-09-17 21:00:01,609 DEBUG Cloning repo_url=git://github.com/tianon/dockerfiles, ref=42566bdbce41e66d09898ac01eac5eb0b49b4bd0
2014-09-17 21:00:01,609 DEBUG folder = /tmp/tmp7Mvb88
2014-09-17 21:00:01,610 DEBUG Cloning git://github.com/tianon/dockerfiles into /tmp/tmp7Mvb88
2014-09-17 21:00:01,610 DEBUG Executing "git clone git://github.com/tianon/dockerfiles ." in /tmp/tmp7Mvb88
Cloning into '.'...
remote: Counting objects: 691, done.
remote: Total 691 (delta 0), reused 0 (delta 0)
Receiving objects: 100% (691/691), 262.16 KiB | 468.00 KiB/s, done.
Resolving deltas: 100% (285/285), done.
Checking connectivity... done.
2014-09-17 21:00:02,684 DEBUG Checkout ref:42566bdbce41e66d09898ac01eac5eb0b49b4bd0 in /tmp/tmp7Mvb88
2014-09-17 21:00:02,684 DEBUG Executing "git checkout 42566bdbce41e66d09898ac01eac5eb0b49b4bd0" in /tmp/tmp7Mvb88
Note: checking out '42566bdbce41e66d09898ac01eac5eb0b49b4bd0'.

You are in 'detached HEAD' state. You can look around, make experimental
changes and commit them, and you can discard any commits you make in this
state without impacting any branches by performing another checkout.

If you want to create a new branch to retain commits you create, you may
do so (now or later) by using -b with the checkout command again. Example:

  git checkout -b new_branch_name

HEAD is now at 42566bd... fix "find: The -delete action atomatically turns on -depth, but -prune does nothing when -depth is in effect."
2014-09-17 21:00:02,690 INFO Build start: debian ('git://github.com/tianon/dockerfiles', '42566bdbce41e66d09898ac01eac5eb0b49b4bd0', 'debian/rc-buggy')
2014-09-17 21:00:11,149 INFO Build success: 77b3e341a87a (debian:rc-buggy)
2014-09-17 21:00:12,533 DEBUG Checkout ref:42566bdbce41e66d09898ac01eac5eb0b49b4bd0 in /tmp/tmp7Mvb88
2014-09-17 21:00:12,533 DEBUG Executing "git checkout 42566bdbce41e66d09898ac01eac5eb0b49b4bd0" in /tmp/tmp7Mvb88
HEAD is now at 42566bd... fix "find: The -delete action atomatically turns on -depth, but -prune does nothing when -depth is in effect."
2014-09-17 21:00:12,541 INFO Build start: debian ('git://github.com/tianon/dockerfiles', '42566bdbce41e66d09898ac01eac5eb0b49b4bd0', 'debian/experimental')
2014-09-17 21:00:13,331 INFO Build success: 893631bae8dd (debian:experimental)
root@7babc9a5cfa3:/usr/src/stackbrew# docker images debian
REPOSITORY          TAG                 IMAGE ID            CREATED              VIRTUAL SIZE
debian              experimental        893631bae8dd        54 seconds ago       120.5 MB
debian              rc-buggy            77b3e341a87a        58 seconds ago       120.5 MB
debian              7                   80cecc01a6f3        About a minute ago   85.19 MB
debian              wheezy              80cecc01a6f3        About a minute ago   85.19 MB
debian              latest              80cecc01a6f3        About a minute ago   85.19 MB
debian              7.6                 80cecc01a6f3        About a minute ago   85.19 MB
debian              unstable            9485cf499d58        About a minute ago   120.5 MB
debian              testing             aca0d7379908        About a minute ago   115 MB
debian              stable              e5ab4f36b8e7        About a minute ago   85.19 MB
debian              6                   62ac2a7204dc        2 minutes ago        78.49 MB
debian              squeeze             62ac2a7204dc        2 minutes ago        78.49 MB
debian              6.0                 62ac2a7204dc        2 minutes ago        78.49 MB
debian              6.0.10              62ac2a7204dc        2 minutes ago        78.49 MB
debian              sid                 ba771c2d1917        2 minutes ago        120.5 MB
debian              oldstable           0d69e1687fc5        2 minutes ago        78.49 MB
debian              jessie              559f7bb820cd        2 minutes ago        115 MB

@tianon
Copy link
Member Author

tianon commented Sep 17, 2014

ping @yosifkit

@yosifkit
Copy link
Member

LGTM

yosifkit added a commit that referenced this pull request Sep 17, 2014
@yosifkit yosifkit merged commit 2da8b06 into docker-library:master Sep 17, 2014
@yosifkit yosifkit deleted the debian branch September 17, 2014 21:04
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

Rebuild Debian images to account for DSAs 3025-1 and 3026-1
2 participants