Le Sat, Mar 20, 2021 at 03:52:21PM +0100, Marriott NZ a écrit : > Package: emboss > Version: 6.6.0+dfsg-8 > Tags: patch, security > > Dear Maintainer, > the emboss package has mailcap entries with quoted %-escapes. That is > considered unsafe. Proper escaping should be left to the programs using the > entry.
Hi Mariott, thanks for your report, and hello everybody. In the case of this package I wonder if the mailcap file should better be deleted instead of corrected. I just downloaded an example ab1 file (https://github.com/labsquare/CutePeaks/blob/master/examples/A_forward.ab1) and saw that it is not recognised as any of the media types listed below. Therefore for the mailcap file to be useful, the file should be served via the web or attached to an email, with the media type information properly set. But this is unlikely to happen as email composers or web servers are likely to use similar information soures as in Debian systems (file(1), /etc/mime.types, shared-mime-info…) and so will also detect the format of this file. A quick search in the web shows traces of myself trying to make that happen more than 10 years ago, but it did not bear fruit. I think that if we were to try again (for instance adding the magic number of these files to the file(1) database), it would be with a different media type anyway, unless one registers application/vnd.appliedbiosystems.abif to the IANA ? Have a nice week-end, Charles > diff --git a/debian/emboss.mime b/debian/emboss.mime > index 38db622..1a7017f 100644 > --- a/debian/emboss.mime > +++ b/debian/emboss.mime > @@ -1,6 +1,6 @@ > -application/vnd.appliedbiosystems.abif; abiview -auto '%s' ; > description=ABIF Applied Biosystems Inc. chromatogram; nametemplate=%s.ab1 > -application/x-dna; abiview -auto '%s' ; description=ABIF Applied Biosystems > Inc. chromatogram; nametemplate=%s.ab1 > -application/abi1; abiview -auto '%s' ; description=ABIF Applied Biosystems > Inc. chromatogram; nametemplate=%s.ab1 > -application/vnd.appliedbiosystems.abif; seqret -filter '%s' ; > description=ABIF Applied Biosystems Inc. chromatogram; nametemplate=%s.ab1 ; > copiousoutput > -application/x-dna; seqret -filter '%s' ; description=ABIF Applied Biosystems > Inc. chromatogram; nametemplate=%s.ab1 ; copiousoutput > -application/abi1; seqret -filter '%s' ; description=ABIF Applied Biosystems > Inc. chromatogram; nametemplate=%s.ab1 ; copiousoutput > +application/vnd.appliedbiosystems.abif; abiview -auto %s ; description=ABIF > Applied Biosystems Inc. chromatogram; nametemplate=%s.ab1 > +application/x-dna; abiview -auto %s ; description=ABIF Applied Biosystems > Inc. chromatogram; nametemplate=%s.ab1 > +application/abi1; abiview -auto %s ; description=ABIF Applied Biosystems > Inc. chromatogram; nametemplate=%s.ab1 > +application/vnd.appliedbiosystems.abif; seqret -filter %s ; description=ABIF > Applied Biosystems Inc. chromatogram; nametemplate=%s.ab1 ; copiousoutput > +application/x-dna; seqret -filter %s ; description=ABIF Applied Biosystems > Inc. chromatogram; nametemplate=%s.ab1 ; copiousoutput > +application/abi1; seqret -filter %s ; description=ABIF Applied Biosystems > Inc. chromatogram; nametemplate=%s.ab1 ; copiousoutput -- Charles Plessy Nagahama, Yomitan, Okinawa, Japan Debian Med packaging team http://www.debian.org/devel/debian-med Tooting from work, https://mastodon.technology/@charles_plessy Tooting from home, https://framapiaf.org/@charles_plessy