git/list[1] front-page[2] threads[3] people[4] search[5] about
 

Re: Sources for 3.18-rc1 not uploaded

From
brian m. carlson <sandals@crustytoothpaste.net>
Date
Oct 20, 2014, 22:28 UTC
Message-ID
<20141020222809.GB223410@vauxhall.crustytoothpaste.net>
In-Reply-To
<CA+55aFyDuHskYE66rBVL_P-T2pxg6f2m6mUicfz-mk+ysePBxg@mail.gmail.com>
On Mon, Oct 20, 2014 at 08:25:59AM -0700, Linus Torvalds wrote:
> Junio, Brian,
> 
>   it seems that the stability of the "git tar" output is broken.

It doesn't appear that the stability of git archive --format=tar is documented anywhere. Given that, it doesn't seem reasonable to expect that any tar implementation produces bit-for-bit compatible output between versions. After all, look at all the contortions that Debian has had to go through to keep pristine-tar working.

Show 7 quoted lines
> Junio, quite frankly, I don't think that that fix was a good idea. I'd
> suggest having a *separate* umask for the pax headers, so that we do
> not  break this long-lasting stability of "git archive" output in ways
> that are unfixable and not compatible. kernel.org has relied (for a
> *long* time) on being able to just upload the signature of the
> resulting tar-file, because both sides can generate the same tar-fiel
> bit-for-bit.

It sounds like kernel.org has a bug, then. Perhaps that's the appropriate place to fix the issue.

The issue I fixed is that leaving world-writable files around on disk is a great way for people to cause mischief (for example, by filling up other users' quotas), and some tar implementations and all Linux pax implementations extract the pax headers into the working directory, and that's often /tmp.

-- 
brian m. carlson / brian with sandals: Houston, Texas, US
+1 832 623 2791 | http://www.crustytoothpaste.net/~bmc | My opinion only
OpenPGP: RSA v4 4096b: 88AC E9B2 9196 305B A994 7552 F1BA 225C 0223 B187
Previous: Greg KHNext: Linus Torvalds
Message 6 of 18 in “Re: Sources for 3.18-rc1 not uploaded”
  1. Linus TorvaldsOct 20, 2014
  2. Junio C HamanoOct 20, 2014
  3. Konstantin RyabitsevOct 20, 2014
  4. Junio C HamanoOct 20, 2014
  5. Greg KHOct 20, 2014
  6. brian m. carlsonOct 20, 2014
  7. Linus TorvaldsOct 20, 2014
  8. Michael J GruberOct 21, 2014
  9. Linus TorvaldsOct 21, 2014
  10. David KastrupOct 21, 2014
  11. Junio C HamanoOct 21, 2014
  12. Michael J GruberOct 22, 2014
  13. brian m. carlsonOct 23, 2014
  14. René ScharfeOct 26, 2014
  15. brian m. carlsonOct 26, 2014
  16. Junio C HamanoOct 27, 2014
  17. Konstantin RyabitsevOct 20, 2014
  18. Junio C HamanoOct 21, 2014

Read the whole thread, see it on lore, or plain text.

$ cat FOOTERMessages come from the public archive at lore.kernel.org/git, fetched every hour. The front page is chosen and written each morning by an AI editor and can be wrong; the threads themselves are the record. About and API. For agents: an MCP server at https://gitlist.dev/mcp, and any thread, story or person page as Markdown by adding .md to its URL (or sending Accept: text/markdown). Details in /llms.txt.