[Pkg-samba-maint] Bug#939419: libparse-pidl-perl: version ordering issue.
Andrew Bartlett
abartlet at samba.org
Wed Sep 4 20:45:48 BST 2019
On Wed, 2019-09-04 at 19:59 +0100, plugwash wrote:
> Package: libparse-pidl-perl
> Version: 2:4.9.5+dfsg-5+deb10u1+really0.02
> X-debbugs-cc: security at debian.org
>
> It seems that the recent update to samba in buster-security generated a
> libparse-pidl-perl package with a lower version number than the version
> already in buster. As far as I can tell this has the following consequences.
>
> 1. Users will not get the update to this package, (I don't think this is
> a big problem in this particular case as I don't see anything perl
> related in the changelog).
> 2. I suspect it will stop the security update getting rolled in to the
> next point release.
> 3. It may mess up downstream infrastructure (that is how I ran into the
> issue).
>
> I see two possible fixes.
>
> 1. Avoid using version numbers for the samba package that will trigger
> this issue.
> 2. Change the logic that generates the version numbers for the
> libparse-pidl-perl package.
3. Drop the package. It is of very limited interest. It should have
been dropped once Openchange was removed. Anybody wishing to build
openchange can just install it from the Samba tarball.
PIDL is maintained for Samba's internal use (where we use it
extensively, and actively modify it for our needs), it really isn't
suitable for external consumption, except by wireshark which has a
modified, vendored copy.
Andrew Bartlett
--
Andrew Bartlett http://samba.org/~abartlet/
Authentication Developer, Samba Team http://samba.org
Samba Developer, Catalyst IT http://catalyst.net.nz/services/samba
More information about the Pkg-samba-maint
mailing list