Bug#763687: Please enable hardened build flags

2014-10-02 Thread Guillaume Delacour
On Thu, Oct 02, 2014 at 10:14:16PM +0200, folkert wrote:
> > Package: multitail
> > Please enable hardening build flags on your package; adding:
> > DPKG_EXPORT_BUILDFLAGS = 1
> > include /usr/share/dpkg/buildflags.mk
> 
> Are there any indications that multitail has security problems?

Not particular ones, but enabling *FLAGS (which contain security hardening
flags now) is a release goal and maybe good for future recompilation
archive compiler options. The priority is to enable flags to network
daemons, DSA, priority or important and interpreters packages and later
on the whole archive.

> 
> 
> Folkert van Heusden
> 
> -- 
> You've probably gotten really fed up with never winning in the Mega-
> Millions lottery. Well, cry no longer: www.smartwinning.info tells you
> everything that might help you deciding what numbers to choose. With
> nice graphs and pretty animations!
> --

-- 
Guillaume Delacour


signature.asc
Description: Digital signature


Bug#763687: Please enable hardened build flags

2014-10-02 Thread folkert
> Package: multitail
> Please enable hardening build flags on your package; adding:
>   DPKG_EXPORT_BUILDFLAGS = 1
>   include /usr/share/dpkg/buildflags.mk

Are there any indications that multitail has security problems?


Folkert van Heusden

-- 
You've probably gotten really fed up with never winning in the Mega-
Millions lottery. Well, cry no longer: www.smartwinning.info tells you
everything that might help you deciding what numbers to choose. With
nice graphs and pretty animations!
--


-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org



Bug#763687: Please enable hardened build flags

2014-10-01 Thread Guillaume Delacour
Package: multitail
Version: 6.2.1-1
Severity: important
User: hardening-disc...@lists.alioth.debian.org
Usertags: goal-hardening

-BEGIN PGP SIGNED MESSAGE-
Hash: SHA256



Hello,

Please enable hardening build flags on your package; adding:
DPKG_EXPORT_BUILDFLAGS = 1
include /usr/share/dpkg/buildflags.mk

In debian/rules is sufficient in the actual package state, or will be automatic
if you switch to debhelper version >= 9. I've made some tests after building
multitail with hardened flags and encounter no problem at this time.

More information available about hardening flags:
https://wiki.debian.org/ReleaseGoals/SecurityHardeningBuildFlags

-BEGIN PGP SIGNATURE-
Version: GnuPG v1
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=jxnP
-END PGP SIGNATURE-


-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org