[#113407] [Ruby master Feature#19630] [RFC] Deprecate `Kernel.open("|command-here")` due to frequent security issues — "postmodern (Hal Brodigan) via ruby-core" <ruby-core@...>

Issue #19630 has been reported by postmodern (Hal Brodigan).

19 messages 2023/05/05

[#113430] [Ruby master Feature#19633] Allow passing block to `Kernel#autoload` as alternative to second `filename` argument — "shioyama (Chris Salzberg) via ruby-core" <ruby-core@...>

Issue #19633 has been reported by shioyama (Chris Salzberg).

16 messages 2023/05/09

[#113489] [Ruby master Bug#19642] Remove vectored read/write from `io.c`. — "ioquatix (Samuel Williams) via ruby-core" <ruby-core@...>

Issue #19642 has been reported by ioquatix (Samuel Williams).

10 messages 2023/05/15

[#113498] [Ruby master Feature#19644] Module::current to complement Module::nesting — "bughit (bug hit) via ruby-core" <ruby-core@...>

Issue #19644 has been reported by bughit (bug hit).

12 messages 2023/05/16

[#113517] [Ruby master Misc#19679] Migrate Wiki from bugs.ruby-lang.org to ruby/ruby GitHub repository — "jemmai (Jemma Issroff) via ruby-core" <ruby-core@...>

Issue #19679 has been reported by jemmai (Jemma Issroff).

11 messages 2023/05/18

[#113529] [Ruby master Bug#19681] The final classpath of partially named modules is sometimes inconsistent once permanently named — "byroot (Jean Boussier) via ruby-core" <ruby-core@...>

Issue #19681 has been reported by byroot (Jean Boussier).

34 messages 2023/05/19

[#113538] [Ruby master Feature#19682] ability to get a reference to the "default definee" — "bughit (bug hit) via ruby-core" <ruby-core@...>

Issue #19682 has been reported by bughit (bug hit).

28 messages 2023/05/19

[#113601] [Ruby master Bug#19687] Should a development version of the standard library be included in ruby/ruby? — "jaruga (Jun Aruga) via ruby-core" <ruby-core@...>

Issue #19687 has been reported by jaruga (Jun Aruga).

9 messages 2023/05/23

[#113632] [Ruby master Bug#19691] Case insensitive file systems, require filename casing — "MSP-Greg (Greg L) via ruby-core" <ruby-core@...>

Issue #19691 has been reported by MSP-Greg (Greg L).

7 messages 2023/05/24

[#113656] [Ruby master Misc#19693] Data initialization is significantly slower than Struct — janosch-x via ruby-core <ruby-core@...>

Issue #19693 has been reported by janosch-x (Janosch M=FCller).

13 messages 2023/05/25

[#113660] [Ruby master Feature#19694] Add Regexp#timeout= setter — "aharpole (Aaron Harpole) via ruby-core" <ruby-core@...>

Issue #19694 has been reported by aharpole (Aaron Harpole).

15 messages 2023/05/25

[#113676] [Ruby master Bug#19697] Resolv::DNS resolution for international domains fails with "Encoding::CompatibilityError: incompatible character encodings: UTF-8 and ASCII-8BIT" — "clairity (claire c) via ruby-core" <ruby-core@...>

SXNzdWUgIzE5Njk3IGhhcyBiZWVuIHJlcG9ydGVkIGJ5IGNsYWlyaXR5IChjbGFpcmUgYykuDQ0K

6 messages 2023/05/27

[ruby-core:113484] [Ruby master Bug#19640] `IO#puts` can generate zero length iov which can cause rb_bug crash.

From: "ioquatix (Samuel Williams) via ruby-core" <ruby-core@...>
Date: 2023-05-15 01:08:38 UTC
List: ruby-core #113484
Issue #19640 has been updated by ioquatix (Samuel Williams).


I added a test, without the patch, it crashes:

```
> make test-all TESTS=test/fiber/test_io.rb
sed 's/{\$([^(){}]*)[^{}]*}//g' common.mk > uncommon.mk
compiling io.c
generating parse.c
revision.h updated
generating arm64-darwin22-fake.rb
/bin/sh ./tool/ifchange "--timestamp=.rbconfig.time" rbconfig.rb rbconfig.tmp
arm64-darwin22-fake.rb updated
rbconfig.rb unchanged
creating verconf.h
verconf.h updated
compiling loadpath.c
compiling parse.c
linking miniruby
builtin_binary.inc updated
compiling builtin.c
linking static-library libruby.3.3-static.a
linking ruby
Run options: 
  --seed=34720
  "--ruby=./miniruby -I./lib -I. -I.ext/common  ./tool/runruby.rb --extout=.ext  -- --disable-gems"
  --excludes-dir=./test/excludes
  --name=!/memory_leak/

# Running tests:

[root]/ruby/test/fiber/test_io.rb:187: [BUG] rb_sys_fail_path_in(io_writev, ) - errno == 0
ruby 3.3.0dev (2023-05-14T12:15:13Z fix-writev-zero-le.. 61d1dc1799) [arm64-darwin22]

-- Crash Report log information --------------------------------------------
       [1/1] 48900=test_iole in one of the following locations:
     * ~/Library/Logs/DiagnosticReports                                     
     * /Library/Logs/DiagnosticReports                                      
   for more details.                                                        
Don't forget to include the above Crash Report log file in bug reports.     

-- Control frame information -----------------------------------------------
c:0004 p:---- s:0014 e:000013 CFUNC  :write
c:0003 p:---- s:0011 e:000010 CFUNC  :puts
c:0002 p:0007 s:0006 e:000005 BLOCK  [root]/ruby/test/fiber/test_io.rb:187 [FINISH]
c:0001 p:---- s:0003 e:000002 DUMMY  [FINISH]

-- Ruby level backtrace information ----------------------------------------
[root]/ruby/test/fiber/test_io.rb:187:in `block (2 levels) in test_puts_empty'
[root]/ruby/test/fiber/test_io.rb:187:in `puts'
[root]/ruby/test/fiber/test_io.rb:187:in `write'

-- Threading information ---------------------------------------------------
Total ractor count: 1
Ruby thread count for this ractor: 3

-- C level backtrace information -------------------------------------------
[root]/ruby/ruby(rb_vm_bugreport+0xa04) [0x1003bb3d8] vm_dump.c:1101
[root]/ruby/ruby(rb_vm_bugreport) (null):0
[root]/ruby/ruby(bug_report_end+0x0) [0x10020a8c4] error.c:791
[root]/ruby/ruby(rb_bug_without_die) error.c:791
[root]/ruby/ruby(rb_bug+0x1c) [0x100465d20] error.c:799
[root]/ruby/ruby(rb_syserr_new_path_in.cold.1+0x58) [0x100466044] error.c:3354
[root]/ruby/ruby(rb_syserr_new_path_in+0x4) [0x10020f040]
[root]/ruby/ruby(rb_syserr_new_path_in) error.c:3352
[root]/ruby/ruby(io_writev+0x268) [0x10025d38c] io.c:2229
```

----------------------------------------
Bug #19640: `IO#puts` can generate zero length iov which can cause rb_bug crash.
https://bugs.ruby-lang.org/issues/19640#change-103068

* Author: ioquatix (Samuel Williams)
* Status: Open
* Priority: Normal
* Backport: 3.0: UNKNOWN, 3.1: UNKNOWN, 3.2: REQUIRED
----------------------------------------
In the fiber scheduler, `IO#puts ""` or `IO#puts nil` can generate a zero length `iov` which causes `io_binwritev_internal` to fail since the result is zero.

We need to fix `IO#puts` so that it does not generate zero length writes, but also we fix `io_binwritev_internal` to handle this case more robustly.

Fix: https://github.com/ruby/ruby/pull/7806/files



-- 
https://bugs.ruby-lang.org/
 ______________________________________________
 ruby-core mailing list -- ruby-core@ml.ruby-lang.org
 To unsubscribe send an email to ruby-core-leave@ml.ruby-lang.org
 ruby-core info -- https://ml.ruby-lang.org/mailman3/postorius/lists/ruby-core.ml.ruby-lang.org/

In This Thread