============================ rpmlint session starts ============================ rpmlint: 2.6.1 configuration: /opt/testing/lib/python3.11/rpmlint/configdefaults.toml /opt/testing/share/rpmlint/cron-whitelist.toml /opt/testing/share/rpmlint/dbus-services.toml /opt/testing/share/rpmlint/device-files-whitelist.toml /opt/testing/share/rpmlint/licenses.toml /opt/testing/share/rpmlint/opensuse.toml /opt/testing/share/rpmlint/pam-modules.toml /opt/testing/share/rpmlint/permissions-whitelist.toml /opt/testing/share/rpmlint/pie-executables.toml /opt/testing/share/rpmlint/polkit-rules-whitelist.toml /opt/testing/share/rpmlint/scoring.toml /opt/testing/share/rpmlint/security.toml /opt/testing/share/rpmlint/sudoers-whitelist.toml /opt/testing/share/rpmlint/sysctl-whitelist.toml /opt/testing/share/rpmlint/systemd-tmpfiles.toml /opt/testing/share/rpmlint/users-groups.toml /opt/testing/share/rpmlint/world-writable-whitelist.toml /opt/testing/share/rpmlint/zypper-plugins.toml /etc/xdg/rpmlint/scoring-strict.override.toml checks: 41, packages: 3 apr-devel.i586: E: rpath-in-buildconfig /usr/bin/apr-1-config lines 45 This build configuration file contains rpaths which will be introduced into dependent packages. apr-devel.i586: E: no-binary The package should be of the noarch architecture because it doesn't contain any binaries. libapr1-0.i586: E: missing-call-to-setgroups-before-setuid /usr/lib/libapr-1.so.0.7.5 This executable is calling setuid and setgid without setgroups or initgroups. This means it didn't relinquish all groups, and this would be a potential security issue. apr-devel.i586: W: files-duplicate /usr/share/doc/packages/apr-devel/html/search/groups_14.js /usr/share/doc/packages/apr-devel/html/search/all_17.js apr-devel.i586: W: files-duplicate /usr/share/doc/packages/apr-devel/html/search/variables_8.js /usr/share/doc/packages/apr-devel/html/search/all_c.js Your package contains duplicated files that are not hard- or symlinks. You should use the %fdupes macro to link the files to one. libapr1-0.i586: E: devel-file-in-non-devel-package (Badness: 50) /usr/lib/libapr-1.so A file that is needed only e.g. when developing or building software is included in a non-devel package. These files should go in devel packages. libapr1-0.i586: E: call-to-mktemp /usr/lib/libapr-1.so.0.7.5 This executable calls mktemp. As advised by the manpage (mktemp(3)), this function should be avoided. Check time report (>1% & >0.1s): Check Duration (in s) Fraction (in %) Checked files BashismsCheck 0.9 65.9 ExtractRpm 0.2 13.7 TOTAL 1.4 100.0 3 packages and 0 specfiles checked; 5 errors, 2 warnings, 8 filtered, 54 badness; has taken 1.4 s