Your message dated Mon, 03 Apr 2017 21:18:59 +0000
with message-id <e1cv9nl-0009gc...@fasolo.debian.org>
and subject line Bug#859370: fixed in gnuplot 5.0.5+dfsg1-6
has caused the Debian Bug report #859370,
regarding gnuplot shouldn't disable PIE
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)


-- 
859370: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=859370
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Source: gnuplot
Version: 5.0.5+dfsg1-5
Severity: important
Tags: patch

With gcc in stretch defaulting to PIE, hardening=+all,-pie changed
semantics from "enable hardening but not PIE" to "enable all hardening
and explicitely disable the default PIE".
The latter is usually not intended.

For packages like gnuplot that include static libraries the situation
is even worse, since non-PIE static libraries cannot be used with
the stretch gcc unless -no-pie is explicitly passed when linking.

Note that this patch does not change the addition of -fPIC
to DEB_CXXFLAGS_MAINT_APPEND for Qt, it only changes the
default when no PIE/PIC related flags are passed from
non-PIE/PIC to PIE.

Please apply the following change:

--- debian/rules.old    2017-04-02 20:15:34.000000000 +0000
+++ debian/rules        2017-04-02 20:15:46.000000000 +0000
@@ -3,7 +3,7 @@
 %:
        dh $@ --parallel
 
-export DEB_BUILD_MAINT_OPTIONS := hardening=+all,-pie
+export DEB_BUILD_MAINT_OPTIONS := hardening=+all
 export DEB_LDFLAGS_MAINT_APPEND = -Wl,--as-needed
 
 # Tell compiler where should find lua headers

--- End Message ---
--- Begin Message ---
Source: gnuplot
Source-Version: 5.0.5+dfsg1-6

We believe that the bug you reported is fixed in the latest version of
gnuplot, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 859...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Mattia Rizzolo <mat...@debian.org> (supplier of updated gnuplot package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Mon, 03 Apr 2017 22:58:59 +0200
Source: gnuplot
Binary: gnuplot gnuplot-doc gnuplot-nox gnuplot-qt gnuplot-x11 gnuplot-data 
gnuplot5 gnuplot5-nox gnuplot5-x11 gnuplot5-qt
Architecture: source
Version: 5.0.5+dfsg1-6
Distribution: unstable
Urgency: medium
Maintainer: Debian Science Team 
<debian-science-maintainers@lists.alioth.debian.org>
Changed-By: Mattia Rizzolo <mat...@debian.org>
Description:
 gnuplot    - Command-line driven interactive plotting program, version 5
 gnuplot-data - Command-line driven interactive plotting program. Data-files
 gnuplot-doc - Command-line driven interactive plotting program. Doc-package
 gnuplot-nox - Command-line driven interactive plotting program. No-X package
 gnuplot-qt - Command-line driven interactive plotting program. QT-package
 gnuplot-x11 - Command-line driven interactive plotting program. X-package
 gnuplot5   - transitional package
 gnuplot5-nox - transitional package
 gnuplot5-qt - transitional package
 gnuplot5-x11 - transitional package
Closes: 859370
Changes:
 gnuplot (5.0.5+dfsg1-6) unstable; urgency=medium
 .
   * Team upload.
   * [0f55a7f] Mark gnuplot-doc as Multi-Arch:foreign.
   * [9be6254] Do not forcefully disable PIE anymore as -pie changed meaning.
     (Closes: #859370)
Checksums-Sha1:
 6263f62f235eff18cb26424eb31b5d86578185c7 2948 gnuplot_5.0.5+dfsg1-6.dsc
 9e5377cfe8d39c2bdc5cfd55e9819f42a31c8cbb 28628 
gnuplot_5.0.5+dfsg1-6.debian.tar.xz
 d5476ec1c1164f69be02fbf89cd5c54bb3b53033 19381 
gnuplot_5.0.5+dfsg1-6_amd64.buildinfo
Checksums-Sha256:
 4003687113c106976143ece58997c1455603e6de97344107c8660bf32204b8d4 2948 
gnuplot_5.0.5+dfsg1-6.dsc
 ea96ae2ca3652b6c6e9f3d611525ad4640708f17c7ab3b148ca14b7749fdb632 28628 
gnuplot_5.0.5+dfsg1-6.debian.tar.xz
 879e0ae3d8bf01ba2c647232c6177213aed1c008abbaea795fca0f09d8b578e2 19381 
gnuplot_5.0.5+dfsg1-6_amd64.buildinfo
Files:
 f4c8fbe0216d588bb588977360eae124 2948 math optional gnuplot_5.0.5+dfsg1-6.dsc
 a038d155dc489c5a2969968c4296dd94 28628 math optional 
gnuplot_5.0.5+dfsg1-6.debian.tar.xz
 6e562f055c372d6380ae1606a5274c40 19381 math optional 
gnuplot_5.0.5+dfsg1-6_amd64.buildinfo

-----BEGIN PGP SIGNATURE-----
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=0MkE
-----END PGP SIGNATURE-----

--- End Message ---
-- 
debian-science-maintainers mailing list
debian-science-maintainers@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/debian-science-maintainers
  • Bug#859370: gnuplot Adrian Bunk
    • Bug#859370: marked as done (gnuplot should... Debian Bug Tracking System

Reply via email to