Bug 1406793
| Summary: | oscap xccdf eval segfaults when @family is invalid value | ||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|
| Product: | Red Hat Enterprise Linux 7 | Reporter: | Marek Haicman <mhaicman> | ||||||||
| Component: | openscap | Assignee: | Jan Černý <jcerny> | ||||||||
| Status: | CLOSED ERRATA | QA Contact: | Watson Yuuma Sato <wsato> | ||||||||
| Severity: | medium | Docs Contact: | |||||||||
| Priority: | medium | ||||||||||
| Version: | 7.3 | CC: | mhaicman, mpreisle, openscap-maint, wsato | ||||||||
| Target Milestone: | rc | ||||||||||
| Target Release: | --- | ||||||||||
| Hardware: | Unspecified | ||||||||||
| OS: | Unspecified | ||||||||||
| Whiteboard: | |||||||||||
| Fixed In Version: | Doc Type: | If docs needed, set a value | |||||||||
| Doc Text: | Story Points: | --- | |||||||||
| Clone Of: | Environment: | ||||||||||
| Last Closed: | 2017-08-01 08:45:48 UTC | Type: | Bug | ||||||||
| Regression: | --- | Mount Type: | --- | ||||||||
| Documentation: | --- | CRM: | |||||||||
| Verified Versions: | Category: | --- | |||||||||
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |||||||||
| Cloudforms Team: | --- | Target Upstream Version: | |||||||||
| Embargoed: | |||||||||||
| Attachments: |
|
||||||||||
|
Description
Marek Haicman
2016-12-21 14:04:04 UTC
Created attachment 1234413 [details]
xccdf file
Created attachment 1234414 [details]
sce file
Created attachment 1234415 [details]
oval file
Actually I have confused myself - it segfaults even with --results. So the issue is NOT about having --results-arf used alone. This is caused by affected/@family="posix" which is not a valid value. That said, I don't think we should segfault in these cases so I have proposed a fix upstream: https://github.com/OpenSCAP/openscap/pull/616 Verified. NEW: [0 root@qeos-33 ~]# rpm -qa openscap openscap-1.2.14-1.el7.x86_64 [0 root@qeos-33 ~]# oscap xccdf eval --results-arf arf.xml xccdf.xml Title Rule xccdf_moc.elpmaxe.www_rule_1 Result pass Title Rule xccdf_moc.elpmaxe.www_rule_2 Result notchecked OLD: [root@qeos-40 ~]# rpm -qa openscap openscap-1.2.10-2.el7.x86_64 [root@qeos-40 ~]# oscap xccdf eval --results-arf arf.xml xccdf.xml Title Rule xccdf_moc.elpmaxe.www_rule_1 Result pass Title Rule xccdf_moc.elpmaxe.www_rule_2 Result notchecked Segmentation fault Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHBA-2017:2291 |