Does anyone know what's behind the massive upgrade of Tumbleweed this morning? Glibc and its associated packages are to be downgraded, leading to a massive download off more than 850 packages.
In data mercoledì 11 ottobre 2023 13:27:42 CEST, Frank McCormick ha scritto:
Does anyone know what's behind the massive upgrade of Tumbleweed this morning? Glibc and its associated packages are to be downgraded, leading to a massive download off more than 850 packages. I cannot give you a qualified answer but an "educated guess". Maybe related to "Looney tunables" bug?
Would be a possible reason.
In data venerdì 13 ottobre 2023 19:29:37 CEST, Stakanov via openSUSE Users ha scritto:
In data mercoledì 11 ottobre 2023 13:27:42 CEST, Frank McCormick ha scritto:
Does anyone know what's behind the massive upgrade of Tumbleweed this morning? Glibc and its associated packages are to be downgraded, leading to a massive download off more than 850 packages.
I cannot give you a qualified answer but an "educated guess". Maybe related to "Looney tunables" bug?
Would be a possible reason.
Which would be: CVE-2023-4911 But mind it is only a guess, I did not investigate or whatever.
On 11.10.2023 14:27, Frank McCormick wrote:
Does anyone know what's behind the massive upgrade of Tumbleweed this morning? Glibc and its associated packages are to be downgraded, leading to a massive download off more than 850 packages.
This is not a downgrade. Previously there was emergency fix for glibc via update repository. Now the same fix comes via the regular Tumbleweed repository. Release numbers between two projects are independent, so the one in update repository happened to be higher. If I interpret OBS job history correctly, the massive upgrade was the consequence of glibc change.
participants (3)
-
Andrei Borzenkov
-
Frank McCormick
-
Stakanov