libvirt-iso-manjaro-gnome-minimal-bin
LOW
maintainer RubenKelevra
0 votes
scanned 2026-09-28 15:21:17.813621
Why flagged
Uploaded within the last 14 days with 2 or fewer community votes — little peer review so far.
Triggered rules
Low
Few votes, recently uploaded
zero_votes_recent
Uploaded within the last 14 days with 2 or fewer community votes — little peer review so far.
PKGBUILD
1
# Maintainer: @RubenKelevra <rubenkelevra@gmail.com>
2
3
_pkgname='manjaro'
4
_edition='gnome'
5
_scope='minimal'
6
_release='26.1.2'
7
_build='260910'
8
_kernel='linux71'
9
_image_id='manjaro-gnome-minimal'
10
pkgname='libvirt-iso-manjaro-gnome-minimal-bin'
11
pkgver="${_release}.${_build}"
12
pkgrel=2
13
pkgdesc='Official Manjaro GNOME minimal installation ISO for libvirt'
14
arch=('x86_64')
15
url='https://manjaro.org/products/download/x86/'
16
license=('LicenseRef-Various')
17
checkdepends=(
18
'libarchive'
19
'squashfs-tools'
20
)
21
_scope_segment="${_scope:+-${_scope}}"
22
_iso="${_pkgname}-${_edition}-${_release}${_scope_segment}-${_build}-${_kernel}.iso"
23
_base_url='https://download.manjaro.org'
24
source=(
25
"${_iso}::${_base_url}/${_edition}/${_release}/${_iso}"
26
"${_iso}.sig::${_base_url}/${_edition}/${_release}/${_iso}.sig"
27
'DISTRIBUTION-LICENSE'
28
)
29
noextract=("${_iso}")
30
sha256sums=(
31
'4050f10b2c25b0ffc0c30cac7ff951488ff2ac1ae8cd335b582bb26e3be5a0f3'
32
'SKIP'
33
'536a7c2deb4b29942a0ef66b1becd9500c9954307096f49ae8a136470b65e33c'
34
)
35
validpgpkeys=('3B794DE6D4320FCE594F4171279E7CF5D8D56EC8')
36
37
_install_payload() {
38
local root="${1:?missing package root}"
39
local image_dir="${root}/var/lib/libvirt/images"
40
41
install -Dm644 -- "${srcdir}/${_iso}" "${image_dir}/${_iso}"
42
ln -s -- "${_iso}" "${image_dir}/${_image_id}-${CARCH}.iso"
43
install -Dm644 -- "${srcdir}/DISTRIBUTION-LICENSE" \
44
"${root}/usr/share/licenses/${pkgname}/LICENSE"
45
}
46
47
_check_payload() {
48
local root="${1:?missing package root}"
49
local check_owner="${2:-false}"
50
local image_path="${root}/var/lib/libvirt/images/${_iso}"
51
local image_link="${root}/var/lib/libvirt/images/${_image_id}-${CARCH}.iso"
52
local license_path="${root}/usr/share/licenses/${pkgname}/LICENSE"
53
local manifest
54
55
[[ -f "${image_path}" ]] || return 1
56
[[ -L "${image_link}" ]] || return 1
57
[[ "$(readlink -- "${image_link}")" == "${_iso}" ]] || return 1
58
[[ -f "${license_path}" ]] || return 1
59
[[ "$(stat -c '%a' -- "${image_path}")" == '644' ]] || return 1
60
[[ "$(stat -c '%a' -- "${license_path}")" == '644' ]] || return 1
61
[[ -z "$(find "${root}" -name '*.sig' -print -quit)" ]] || return 1
62
63
manifest="$(find "${root}" \( -type f -o -type l \) -printf '%P\n' | sort)"
64
[[ "${manifest}" == "$(printf '%s\n' \
65
"usr/share/licenses/${pkgname}/LICENSE" \
66
"var/lib/libvirt/images/${_iso}" \
67
"var/lib/libvirt/images/${_image_id}-${CARCH}.iso")" ]] || return 1
68
69
if [[ "${check_owner}" == 'true' ]]; then
70
[[ "$(stat -c '%u:%g' -- "${image_path}")" == '0:0' ]] || return 1
71
[[ "$(stat -c '%u:%g' -- "${license_path}")" == '0:0' ]] || return 1
72
[[ "$(stat -c '%u:%g' -- "${image_link}")" == '0:0' ]] || return 1
73
fi
74
}
75
76
_check_squashfs_layer() {
77
local iso="${1:?missing ISO path}"
78
local layer="${2:?missing layer name}"
79
local work_root="${3:?missing work root}"
80
local extract_root="${4:-}"
81
local hash_file="${work_root}/${layer}.md5"
82
local squashfs="${work_root}/${layer}.sfs"
83
local expected_hash
84
local expected_name
85
local actual_hash
86
87
bsdtar -xOf "${iso}" "manjaro/${CARCH}/${layer}.md5" > "${hash_file}" || return 1
88
read -r expected_hash expected_name < "${hash_file}" || return 1
89
expected_name="${expected_name#\*}"
90
[[ "${expected_hash}" =~ ^[0-9a-f]{32}$ ]] || return 1
91
[[ "${expected_name##*/}" == "${layer}.sfs" ]] || return 1
92
93
bsdtar -xOf "${iso}" "manjaro/${CARCH}/${layer}.sfs" > "${squashfs}" || return 1
94
actual_hash="$(md5sum -- "${squashfs}" | awk '{print $1}')" || return 1
95
[[ "${actual_hash}" == "${expected_hash}" ]] || return 1
96
unsquashfs -s "${squashfs}" > /dev/null || return 1
97
98
if [[ -n "${extract_root}" ]]; then
99
unsquashfs -f -no-xattrs -d "${extract_root}" "${squashfs}" > /dev/null || return 1
100
fi
101
}
102
103
check() {
104
local iso="${srcdir}/${_iso}"
105
local iso_listing="${srcdir}/check-iso-list"
106
local squashfs_work="${srcdir}/check-squashfs"
107
local squashfs_root="${srcdir}/check-squashfs-root"
108
local image_size
109
local pvd_type
110
local pvd_magic
111
local pvd_version
112
local volume_sectors
113
local layer
114
local required_path
115
local -a layers=(
116
'rootfs'
117
'desktopfs'
118
'livefs'
119
'mhwdfs'
120
)
121
122
printf '%s\n' 'check: ISO size and ISO9660 header'
123
image_size="$(stat -Lc '%s' -- "${iso}")" || return 1
124
(( image_size > 0 && image_size % 2048 == 0 )) || return 1
125
126
pvd_type="$(od -An -tu1 -j $((16 * 2048)) -N1 -- "${iso}" | tr -d ' ')" || return 1
127
pvd_magic="$(dd if="${iso}" bs=1 skip=$((16 * 2048 + 1)) count=5 status=none)" || return 1
128
pvd_version="$(od -An -tu1 -j $((16 * 2048 + 6)) -N1 -- "${iso}" | tr -d ' ')" || return 1
129
volume_sectors="$(od -An -tu4 -j $((16 * 2048 + 80)) -N4 -- "${iso}" | tr -d ' ')" || return 1
130
131
[[ "${pvd_type}" == '1' ]] || return 1
132
[[ "${pvd_magic}" == 'CD001' ]] || return 1
133
[[ "${pvd_version}" == '1' ]] || return 1
134
(( volume_sectors > 0 && volume_sectors * 2048 == image_size )) || return 1
135
136
printf '%s\n' 'check: file(1) ISO and bootability'
137
file -L --brief -- "${iso}" | grep -Fq 'ISO 9660' || return 1
138
file -L --brief -- "${iso}" | grep -Fq 'bootable' || return 1
139
140
printf '%s\n' 'check: ISO directory and Manjaro SquashFS layers'
141
bsdtar -tf "${iso}" > "${iso_listing}" || return 1
142
for layer in "${layers[@]}"; do
143
for required_path in \
144
"manjaro/${CARCH}/${layer}.sfs" \
145
"manjaro/${CARCH}/${layer}.md5"; do
146
grep -Fxq -- "${required_path}" "${iso_listing}" || return 1
147
done
148
done
149
150
printf '%s\n' 'check: full ISO read'
151
bsdtar -xOf "${iso}" > /dev/null || return 1
152
153
printf '%s\n' 'check: internal SquashFS checksums and filesystems'
154
rm -rf -- "${squashfs_work}" "${squashfs_root}"
155
mkdir -p -- "${squashfs_work}"
156
_check_squashfs_layer "${iso}" 'rootfs' "${squashfs_work}" "${squashfs_root}"
157
_check_squashfs_layer "${iso}" 'desktopfs' "${squashfs_work}" "${squashfs_root}"
158
_check_squashfs_layer "${iso}" 'livefs' "${squashfs_work}"
159
_check_squashfs_layer "${iso}" 'mhwdfs' "${squashfs_work}"
160
161
if [[ -f "${squashfs_root}/usr/lib/os-release" ]]; then
162
grep -Eq '^ID="?manjaro"?$' "${squashfs_root}/usr/lib/os-release" || return 1
163
elif [[ -f "${squashfs_root}/etc/os-release" ]]; then
164
grep -Eq '^ID="?manjaro"?$' "${squashfs_root}/etc/os-release" || return 1
165
else
166
return 1
167
fi
168
169
}
170
171
package() {
172
_install_payload "${pkgdir}"
173
_check_payload "${pkgdir}" true
174
}
175
Changes since previous scan
--- PKGBUILD @ 2026-09-23 00:28+++ PKGBUILD @ 2026-09-28 15:21@@ -9,7 +9,7 @@ _image_id='manjaro-gnome-minimal' pkgname='libvirt-iso-manjaro-gnome-minimal-bin' pkgver="${_release}.${_build}"-pkgrel=1+pkgrel=2 pkgdesc='Official Manjaro GNOME minimal installation ISO for libvirt' arch=('x86_64') url='https://manjaro.org/products/download/x86/'@@ -105,7 +105,6 @@ local iso_listing="${srcdir}/check-iso-list" local squashfs_work="${srcdir}/check-squashfs" local squashfs_root="${srcdir}/check-squashfs-root"- local package_root="${srcdir}/check-package-root" local image_size local pvd_type local pvd_magic@@ -167,10 +166,6 @@ return 1 fi - printf '%s\n' 'check: staged package payload'- rm -rf -- "${package_root}"- _install_payload "${package_root}"- _check_payload "${package_root}" } package() {Scan history
| Scanned at (UTC) | Severity | Rules |
|---|---|---|
| 2026-09-28 15:21:17 | Low | 1 |
| 2026-09-23 00:28:13 | Clean | 2 |
| 2026-09-22 23:39:22 | Low | 1 |