Finding fresh policy Processing upload perl_5.30.0-ok4_source.changes Beginning processing. Verifying signature on perl_5.30.0-ok4_source.changes Verifying signature on perl_5.30.0-ok4.dsc Performing DSC verification. perl_5.30.0-ok4_source.buildinfo can be unsigned. Verifying the changes file. Verifying files in upload. Verifying source file perl_5.30.0-ok4.dsc perl_5.30.0.orig-regen-configure.tar.xz found in Primary Archive for openKylin perl_5.30.0.orig.tar.xz found in Primary Archive for openKylin Verifying uploaded source package by unpacking it. Copying copyright contents. Found changelog Cleaning up source tree. Done Verifying source file perl_5.30.0.orig-regen-configure.tar.xz Verifying source file perl_5.30.0.orig.tar.xz Verifying source file perl_5.30.0-ok4.debian.tar.xz Verifying buildinfo file perl_5.30.0-ok4_source.buildinfo Finding and applying overrides. Checking for perl/5.30.0-ok4 source ancestry perl: (source) NEW Finished checking upload. Creating queue entry perl diff from 5.30.0-ok4 (in Openkylin) to 5.30.0-ok4 requested Setting it to ACCEPTED Creating PENDING publishing record. Created amd64 build of perl 5.30.0-ok4 in openkylin yangtze RELEASE [83949] in jenkins-ci-open-mr-3321 (2510) Created arm64 build of perl 5.30.0-ok4 in openkylin yangtze RELEASE [83950] in jenkins-ci-open-mr-3321 (2510) Created i386 build of perl 5.30.0-ok4 in openkylin yangtze RELEASE [83951] in jenkins-ci-open-mr-3321 (2510) Created riscv64 build of perl 5.30.0-ok4 in openkylin yangtze RELEASE [83952] in jenkins-ci-open-mr-3321 (2510) Building recipients list. Adding recipient: 'Cibot ' Sent a mail: Subject: [~cibot/openkylin/jenkins-ci-open-mr-3321/yangtze] perl 5.30.0-ok4 (Accepted) Sender: OKBS notice Recipients: Cibot Bcc: Local Root Body: Accepted: OK: perl_5.30.0.orig-regen-configure.tar.xz OK: perl_5.30.0.orig.tar.xz OK: perl_5.30.0-ok4.debian.tar.xz OK: perl_5.30.0-ok4.dsc -> Component: main Section: perl perl (5.30.0-ok4) yangtze; urgency=medium * fangroom CVE-2021-36770 Encode.pm, as distributed in Perl through 5.34.0, allows local users to gain privileges via a Trojan horse Encode::ConfigLocal library (in the current working directory) that preempts dynamic module loading. Exploitation requires an unusual configuration, and certain 2021 versions of Encode.pm (3.05 through 3.11). This issue occurs because the || operator evaluates @INC in a scalar context, and thus @INC has only an integer value. -- https://build.openkylin.top/~cibot/+archive/openkylin/jenkins-ci-open-mr-3321 You are receiving this email because you made this upload. Committing the transaction and any mails associated with this upload.