<?xml version="1.0" encoding="UTF-8" standalone="yes" ?>
<!DOCTYPE bugzilla SYSTEM "https://bugzilla.yoctoproject.org/page.cgi?id=bugzilla.dtd">

<bugzilla version="5.0.6"
          urlbase="https://bugzilla.yoctoproject.org/"
          
          maintainer="it-coreprojects-helpdesk@linuxfoundation.org"
>

    <bug>
          <bug_id>14110</bug_id>
          
          <creation_ts>2020-10-31 01:16:16 +0000</creation_ts>
          <short_desc>cve-check fails with &apos;attempt to write a readonly database&apos;</short_desc>
          <delta_ts>2024-03-04 09:41:52 +0000</delta_ts>
          <reporter_accessible>1</reporter_accessible>
          <cclist_accessible>1</cclist_accessible>
          <classification_id>7</classification_id>
          <classification>Build System, Metadata &amp; Runtime</classification>
          <product>OE-Core</product>
          <component>core</component>
          <version>3.2</version>
          <rep_platform>x86</rep_platform>
          <op_sys>Multiple</op_sys>
          <bug_status>RESOLVED</bug_status>
          <resolution>FIXED</resolution>
          
          
          <bug_file_loc></bug_file_loc>
          <status_whiteboard></status_whiteboard>
          <keywords></keywords>
          <priority>Medium</priority>
          <bug_severity>normal</bug_severity>
          <target_milestone>5.0</target_milestone>
          
          
          <everconfirmed>1</everconfirmed>
          <reporter>kweihmann</reporter>
          <assigned_to name="Ross Burton">ross.burton</assigned_to>
          <cc>meta.mr.watcher</cc>
    
    <cc>meta.watcher</cc>
    
    <cc>ralphs</cc>
    
    <cc>randy.macleod</cc>
    
    <cc>rybczynska</cc>
          
          
          <cf_os>---</cf_os>
          <cf_regression_type>---</cf_regression_type>
          
          <cf_docchange>Don&apos;t know</cf_docchange>

      

      

      

          <comment_sort_order>oldest_to_newest</comment_sort_order>  
          <long_desc isprivate="0" >
    <commentid>88531</commentid>
    <comment_count>0</comment_count>
    <who name="">kweihmann</who>
    <bug_when>2020-10-31 01:16:16 +0000</bug_when>
    <thetext>File: &apos;/opt/build/poky/meta/classes/cve-check.bbclass&apos;, lineno: 241, function: check_cves
     0237:        else:
     0238:            vendor = &quot;%&quot;
     0239:
     0240:        # Find all relevant CVE IDs.
 *** 0241:        for cverow in conn.execute(&quot;SELECT DISTINCT ID FROM PRODUCTS WHERE PRODUCT IS ? AND VENDOR LIKE ?&quot;, (product, vendor)):
     0242:            cve = cverow[0]
     0243:
     0244:            if cve in cve_whitelist:
     0245:                bb.note(&quot;%s-%s has been whitelisted for %s&quot; % (product, pv, cve))
Exception: sqlite3.OperationalError: attempt to write a readonly database

I suspect that, as the class is executed on multiple recipe workspaces at the same time, and sqlite is know to have issues with multiple clients executions (http://www.sqlite.org/faq.html#q5) we are running into the above problem.</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>88550</commentid>
    <comment_count>1</comment_count>
    <who name="Ross Burton">ross.burton</who>
    <bug_when>2020-11-05 07:41:29 +0000</bug_when>
    <thetext>Can you confirm what version of Poky you&apos;re using?</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>88569</commentid>
    <comment_count>2</comment_count>
    <who name="">kweihmann</who>
    <bug_when>2020-11-05 09:09:01 +0000</bug_when>
    <thetext>Bleeding edge master that was. To be exact revision 43e3a19c19e2d4f6b1d84c24413df6327540fab9</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>92785</commentid>
    <comment_count>3</comment_count>
    <who name="Ralph Siemsen">ralphs</who>
    <bug_when>2022-03-16 19:02:53 +0000</bug_when>
    <thetext>I believe this is fixed by 440f07d211841147f2d2b6016a20b75747f45752 (&quot;cve-check: get_cve_info should open the database read-only&quot;)</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>92820</commentid>
    <comment_count>4</comment_count>
    <who name="Ross Burton">ross.burton</who>
    <bug_when>2022-03-21 13:44:12 +0000</bug_when>
    <thetext>https://lists.openembedded.org/g/openembedded-core/message/162637 suggests that it may not have been sufficient.</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>95430</commentid>
    <comment_count>5</comment_count>
    <who name="Randy MacLeod">randy.macleod</who>
    <bug_when>2023-04-21 18:45:44 +0000</bug_when>
    <thetext>Moved en masse from 4.2 to 4.3 by Randy.</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>95495</commentid>
    <comment_count>6</comment_count>
    <who name="Marta Rybczynska">rybczynska</who>
    <bug_when>2023-05-04 12:51:40 +0000</bug_when>
    <thetext>This should be fixed by OE-core 8efe99214d8b005f0ecac690ce5ba17b31758f92 (&quot;cve-update-db-native: avoid incomplete updates&quot;). Would be interested to know if it isn&apos;t the case.</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>98371</commentid>
    <comment_count>7</comment_count>
    <who name="">kweihmann</who>
    <bug_when>2024-03-02 09:05:42 +0000</bug_when>
    <thetext>Haven&apos;t had any issue in a long time now - I think this bug can be considered fixed</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>98373</commentid>
    <comment_count>8</comment_count>
    <who name="Ross Burton">ross.burton</who>
    <bug_when>2024-03-04 09:41:52 +0000</bug_when>
    <thetext>Agreed, thanks.</thetext>
  </long_desc>
      
      

    </bug>

</bugzilla>