Bug#763039: src:liblucy-perl: missing hardening compiler flags

Damyan Ivanov dmn at debian.org
Sat Sep 27 12:34:37 UTC 2014


Package: src:liblucy-perl
Version: 0.3.3-2
Severity: important
User: debian-security at lists.debian.org
Usertags: hardening

liblucy-perl is built without hardening flags:

$ blhc ../liblucy-perl_0.3.3-2_amd64.build|wc -l
352

Also, https://qa.debian.org/bls/packages/l/liblucy-perl.html

Lintian complains too:

W: liblucy-perl: hardening-no-relro usr/lib/x86_64-linux-gnu/perl5/5.20/auto/Lucy/Lucy.so
I: liblucy-perl: hardening-no-fortify-functions usr/lib/x86_64-linux-gnu/perl5/5.20/auto/Lucy/Lucy.so


-- System Information:
Debian Release: jessie/sid
  APT prefers stable-updates
  APT policy: (500, 'stable-updates'), (500, 'unstable'), (500, 'stable'), (1, 'experimental')
Architecture: amd64 (x86_64)

Kernel: Linux 3.16-2-amd64 (SMP w/4 CPU cores)
Locale: LANG=bg_BG.UTF-8, LC_CTYPE=bg_BG.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash



More information about the pkg-perl-maintainers mailing list