libsnmp-perl depends on wrong perl version

Bug #1886658 reported by Michael Wodniok
52
This bug affects 8 people
Affects Status Importance Assigned to Milestone
net-snmp (Ubuntu)
Fix Released
High
Paulo Flabiano Smorigo

Bug Description

OS: Ubuntu 20.04 LTS Focal Fossa

On amd64 and i386 only, the binary package libsnmp-perl depends on "perl (>= 5.30.0-9ubuntu0.1) [amd64, i386]". A package with that version does not exist. Instead, perl has the version "5.30.0-9build1" which is "older", because of the version comparison of dpkg.

As the control has set the perl dependency via a macro a rebuild on the current system fixes the issue.

description: updated
description: updated
Revision history for this message
Launchpad Janitor (janitor) wrote :

Status changed to 'Confirmed' because the bug affects multiple users.

Changed in net-snmp (Ubuntu):
status: New → Confirmed
Paride Legovini (paride)
Changed in net-snmp (Ubuntu):
status: Confirmed → Triaged
importance: Undecided → High
tags: added: server-next
tags: added: focal
Revision history for this message
Leif Sawyer (ak.hepcat) wrote :

Verified that the problem is in the version depends by
downloading the deb pkg and doing the following:

$ dpkg-deb --raw-extract ../libsnmp-perl_5.8+dfsg-2ubuntu2.1_amd64.deb .
$ sed -i.bak 's/Depends: perl (>= 5.30.0-9ubuntu0.1)/Depends: perl (>= 5.30.0)/;' DEBIAN/control
$ dpkg-deb --build . ../libsnmp-perl.deb
$ sudo dpkg -i ../libsnmp-perl.deb

and the modified package installed correctly.

(of course, this breaks other depends, so it's just validating this one package)

Changed in net-snmp (Ubuntu):
assignee: nobody → Lucas Kanashiro (lucaskanashiro)
Revision history for this message
Lucas Kanashiro (lucaskanashiro) wrote :

This is an issue in the last security update of net-snmp. After checking its build log I noticed it was indeed built with perl/5.30.0-9ubuntu0.1 which is available in the ubuntu-security-proposed ppa but it was not released. The security team will fix this issue.

Changed in net-snmp (Ubuntu):
assignee: Lucas Kanashiro (lucaskanashiro) → nobody
tags: removed: server-next
Changed in net-snmp (Ubuntu):
assignee: nobody → Paulo Flabiano Smorigo (pfsmorigo)
Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package net-snmp - 5.8+dfsg-2ubuntu2.2

---------------
net-snmp (5.8+dfsg-2ubuntu2.2) focal-security; urgency=medium

  * SECURITY UPDATE: No-change rebuild with perl 5.30.0-9build1 (LP: #1886658)

 -- Paulo Flabiano Smorigo <email address hidden> Wed, 22 Jul 2020 17:34:20 +0000

Changed in net-snmp (Ubuntu):
status: Triaged → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Duplicates of this bug

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.