All of lore.kernel.org
 help / color / mirror / Atom feed
From: Trevor Gamblin <tgamblin@baylibre.com>
To: Steve Sakoman <steve@sakoman.com>,
	Marta Rybczynska <rybczynska@gmail.com>
Cc: Anuj Mittal <anuj.mittal@intel.com>,
	Tim Orling <ticotimo@gmail.com>,
	OE-core <openembedded-core@lists.openembedded.org>
Subject: Re: Patchtest results for [OE-core][PATCH] patchtest: shorten test result outputs
Date: Wed, 1 Nov 2023 10:00:14 -0400	[thread overview]
Message-ID: <389d1d1a-e9e6-4927-ae62-94c58b1b2ab6@baylibre.com> (raw)
In-Reply-To: <CAOSpxda_dq1AGeVCxaoeGLY-u+8d4k7QD7SP-MrNSyw4Kb1TxQ@mail.gmail.com>


On 2023-11-01 09:48, Steve Sakoman wrote:
> On Tue, Oct 31, 2023 at 7:31 PM Marta Rybczynska <rybczynska@gmail.com> wrote:
>>
>>
>>
>> On Wed, 1 Nov 2023, 11:48 Anuj Mittal, <anuj.mittal@intel.com> wrote:
>>> On Tue, 2023-10-31 at 19:33 -0700, Tim Orling wrote:
>>>>
>>>> On Tue, Oct 31, 2023 at 7:26 PM Anuj Mittal <anuj.mittal@intel.com>
>>>> wrote:
>>>>> On Tue, 2023-10-31 at 14:20 +0000, Trevor Gamblin wrote:
>>>>>> Thank you for your submission. Patchtest identified one
>>>>>> or more issues with the patch. Please see the log below for
>>>>>> more information:
>>>>>>
>>>>>> ---
>>>>>> Testing patch /home/patchtest/share/mboxes/patchtest-shorten-
>>>>>> test-
>>>>>> result-outputs.patch
>>>>>>
>>>>>> FAIL: test CVE presence in commit message: A CVE tag should be
>>>>>> provided in the commit message with format: "CVE: CVE-YYYY-XXXX"
>>>>>> (test_mbox.TestMbox.test_cve_presence_in_commit_message)
>>>>> Is this a requirement to have this in commit message in this
>>>>> format? I
>>>>> don't think this was being followed until now. A lot of patches
>>>>> seem to
>>>>> be failing this test as a result.
>>>>>
>>>>
>>>> This was required when patchtest was running previously. It has been
>>>> ignored for a while now, but that does not mean we should not enforce
>>>> it. It should be documented as required.
>>>>
>>>> The tags allow for machines to parse the relevant info. Anything else
>>>> is purely random and chaos.
>>> The tag is already required to be present in the CVE patch itself which
>>> is/can be parsed by scripts which actually I think is a better way of
>>> detecting whether a CVE is patched rather than looking at commit
>>> messages.
>>>
>>> If having it in a specific format in commit message as well helps,
>>> sure. It shouldn't take time to add it but we seem to be adding too
>>> many rules ...
>>>
>> (adding Steve)
>>
>> I agree with Anuj, and I do not remember seeing a rule to put the
>> CVE number in the commit message. We already have it in the
>> patch file name (recommended) and inside the patch file itself.
>> Those two places are enough in my opinion. In fact, it will likely
>> be there in the commit message (its title), so repeating it does
>> not make much logical sense.
>>
>> In fact, I have an update of the manual with more detailed information
>> on submitting CVE fixes and looking for a resolution of this question
>> to submit it :)
>>
>> Steve, does such additional tag in the commit message make it
>> easier for you?
> No.  In most cases it seems to add no value, since the cve number is
> already in the shortlog, the filename of the patch(es), and the CVE
> tag in the patch file(s).
>
> I haven't been requiring it, so have no issue with removing that test
> in patchtest.
I've got a patch ready to do this, just letting the selftests run to 
ensure nothing's broken before submission.
>
> Steve
>
> -=-=-=-=-=-=-=-=-=-=-=-
> Links: You receive all messages sent to this group.
> View/Reply Online (#189913): https://lists.openembedded.org/g/openembedded-core/message/189913
> Mute This Topic: https://lists.openembedded.org/mt/102275009/7611679
> Group Owner: openembedded-core+owner@lists.openembedded.org
> Unsubscribe: https://lists.openembedded.org/g/openembedded-core/unsub [tgamblin@baylibre.com]
> -=-=-=-=-=-=-=-=-=-=-=-
>


  reply	other threads:[~2023-11-01 14:00 UTC|newest]

Thread overview: 15+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2023-10-31 14:20 Patchtest results for [OE-core][PATCH] patchtest: shorten test result outputs patchtest
2023-10-31 14:54 ` Michael Opdenacker
2023-10-31 15:06   ` Trevor Gamblin
2023-11-01  2:26 ` Mittal, Anuj
2023-11-01  2:33   ` Tim Orling
2023-11-01  2:48     ` Mittal, Anuj
2023-11-01  5:31       ` Marta Rybczynska
2023-11-01 13:48         ` Steve Sakoman
2023-11-01 14:00           ` Trevor Gamblin [this message]
     [not found]       ` <179368C4B8E65457.29356@lists.openembedded.org>
2023-11-01  6:27         ` Marta Rybczynska
  -- strict thread matches above, loose matches on Subject: below --
2023-11-02 17:18 patchtest
2023-11-01 17:48 patchtest
2023-11-01 17:47 patchtest
2023-10-30 15:20 patchtest
2023-10-30 13:41 patchtest

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=389d1d1a-e9e6-4927-ae62-94c58b1b2ab6@baylibre.com \
    --to=tgamblin@baylibre.com \
    --cc=anuj.mittal@intel.com \
    --cc=openembedded-core@lists.openembedded.org \
    --cc=rybczynska@gmail.com \
    --cc=steve@sakoman.com \
    --cc=ticotimo@gmail.com \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.