Your message dated Mon, 30 Jan 2012 03:17:48 +0000
with message-id <[email protected]>
and subject line Bug#652689: fixed in xpdf 3.03-8
has caused the Debian Bug report #652689,
regarding xpdf: Use +all hardening flags
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)


-- 
652689: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=652689
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Package: xpdf
Version: 3.03-7
Severity: minor
Tags: patch

Hello,

This is just a minor issue.

Please change the hardening="+pie,+bindnow" line in debian/rules
to hardening="+all" to automatically add future hardening flags.

To make the debian/rules file a little shorter you can use the
new buildflags.mk file (needs dpkg-dev (>= 1.16.1.1)):

    export DEB_BUILD_MAINT_OPTIONS = hardening=+all
    DPKG_EXPORT_BUILDFLAGS = 1
    include /usr/share/dpkg/buildflags.mk

This obsoletes the following lines:

    hardening="+pie,+bindnow"
    CFLAGS=$(shell DEB_BUILD_MAINT_OPTIONS="hardening=${hardening}" 
dpkg-buildflags --get CFLAGS)
    LDFLAGS=$(shell DEB_BUILD_MAINT_OPTIONS="hardening=${hardening}" 
dpkg-buildflags --get LDFLAGS)
    CPPFLAGS=$(shell DEB_BUILD_MAINT_OPTIONS="hardening=${hardening}" 
dpkg-buildflags --get CPPFLAGS)
    CXXFLAGS=$(shell DEB_BUILD_MAINT_OPTIONS="hardening=${hardening}" 
dpkg-buildflags --get CXXFLAGS)

Or you could switch to debian/compat=9 and just use the following
line:

    export DEB_BUILD_MAINT_OPTIONS = hardening=+all

See [1] and [2] for more information.

Regards,
Simon

[1]: https://wiki.debian.org/Hardening
[2]: https://wiki.debian.org/ReleaseGoals/SecurityHardeningBuildFlags

-- System Information:
Debian Release: wheezy/sid
  APT prefers unstable
  APT policy: (500, 'unstable')
Architecture: amd64 (x86_64)

Kernel: Linux 3.1.0-1-amd64 (SMP w/8 CPU cores)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash



--- End Message ---
--- Begin Message ---
Source: xpdf
Source-Version: 3.03-8

We believe that the bug you reported is fixed in the latest version of
xpdf, which is due to be installed in the Debian FTP archive:

xpdf_3.03-8.debian.tar.gz
  to main/x/xpdf/xpdf_3.03-8.debian.tar.gz
xpdf_3.03-8.dsc
  to main/x/xpdf/xpdf_3.03-8.dsc
xpdf_3.03-8_amd64.deb
  to main/x/xpdf/xpdf_3.03-8_amd64.deb



A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Michael Gilbert <[email protected]> (supplier of updated xpdf package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Format: 1.8
Date: Tue, 06 Dec 2011 15:11:46 -0500
Source: xpdf
Binary: xpdf
Architecture: source amd64
Version: 3.03-8
Distribution: unstable
Urgency: low
Maintainer: Michael Gilbert <[email protected]>
Changed-By: Michael Gilbert <[email protected]>
Description: 
 xpdf       - Portable Document Format (PDF) reader
Closes: 645903 647223 648556 652689
Changes: 
 xpdf (3.03-8) unstable; urgency=low
 .
   * Fix uncompressed file handling (closes: #647223).
   * Build-conflict with binutils-gold (closes: #648556).
   * Bump to debhelper 9.
     - simplify hardening build flag logic in debian/rules (closes: #652689).
   * Convert UTF8 titles to ISO8859 when yudit is available (closes: #645903).
Checksums-Sha1: 
 ae55b2420a2186dc05112c4426476df1315d075e 2639 xpdf_3.03-8.dsc
 2a264aa56067b9abfe07b9e596ab84efd7c5472e 36734 xpdf_3.03-8.debian.tar.gz
 0a3aba2a3c4c464fcf3da7e6d46dfe2c61a7bc7d 197554 xpdf_3.03-8_amd64.deb
Checksums-Sha256: 
 3436955a51f06602cb6fd6694a9aee75773edac7d092c452b76d77a3ec257698 2639 
xpdf_3.03-8.dsc
 cc47a7a20ba124bee1d76e8a2426c8fbd560db9ce926ae0587ad520858b9ab0f 36734 
xpdf_3.03-8.debian.tar.gz
 d7f3d5dc312883aaad50414c2acf56e9bfaf36d0ad5132c99e235b4cb95b4d21 197554 
xpdf_3.03-8_amd64.deb
Files: 
 2847c03efd3d27a414d5961ca1661a82 2639 text optional xpdf_3.03-8.dsc
 a257ef2fdbd3d4cf0efd020e2f614100 36734 text optional xpdf_3.03-8.debian.tar.gz
 343419f6818d45b8b6b9f2b937554d0e 197554 text optional xpdf_3.03-8_amd64.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)

iQQcBAEBCAAGBQJPJcI0AAoJELjWss0C1vRzY+gf/1faZVzRIcu4ywud3tbM+JlS
O09m9SO92qPnhF5lqsQum3ribOVirOgPqvKUpPoKYut4cCSIowkeiwBuHugiIs/Z
CyZYHFcaEJj5vEwHqm8IDM44mtDgnsXBHQgUEH6x952y3ltqq6t9wSAoeRYSbOdU
mnQIEy+MzVMJpXBqtSNEO3qc0MrPcma9QyINhKRgt+8kzQLfiMOtMUcPKhDbOx3q
s0syphZXtWonneNCCo0zInkBC6tEojv4G5chqv/D1jlp58p5qiAgzlpZGBsgFhTR
nCKP8OqTKbndiiK1LVDw1xQCdQKVPEluAWz9KbCVp/BzLwv1vjtIooO4Nd+v/2Qh
cJqMWpIVKFn5lKXghdRceEqIXgJdYPHhV26+qsTcSDnukxeVmy42+5hrBFWUIZAh
DpUuL6cyJMx4fy2DyRfb4venmNlby6EqWJXRsDHp3pv6PO4jQYF/WfecIrj6SdhZ
oyxtds7hOHEDA73OLVrNpdsZHVXN9tDbsdraufQHJMm7Y7W2PfCy6EWDy+NkSRYk
3RPHOZHfVX7Wj1y67YJEWRISELOEoUkgT6MgpAgeaQS29yMOS+5A7BnuiGi2aZpI
voDTJALMDi67E5tDUROUkTEecvJ/JAu8KHwkohJNtX7X0EeFVuzD8IJ47qgMYcn5
3D5EwxY3Dgcmdr5nFST98C+t+jIcioyMiFVVd8h4/gWYJrzMyq8IH0bVFqOAylLW
A1Wei7+Ke8S73CTfYAdV5uWYgHe1Yv4rgwp1B+WeT/2NcqtJdfynHPhmLzE5jisQ
Kst6NYXyOLIFDrgn3TCvbY6KiXG5zX47J/Z/LSp6XIEkXJVBVb5Ixc6E+aZFt9j2
dig5qX16iKaEUYBWw3KYG5+jW86qCM1WtwgjPBsmwisB0VjjQoATBPMwu2xpjowq
1eCchh1JxYEl01rsyVaVLdtXGN3m7iPTOodLgVE8vjIOD72WexenTRr1UuNEmo8j
AqQweWD9/VOVeQh690v2E7sYNzN6oLO3PV/Vxjz19FBWlepzek4IFiu+rRU7wK0A
uSuCIH/FLSqRk1e3xM3WSg1vQluCkitRHWQ9Pc2VnVJFm22SHfxbYKpiB+rboVMQ
Hnfpye/EwiiUNxYN2VB9eO6VKvXpAskOoFhL1zcrsWpQkqmJWwj8e+8SjU4j4VLT
XQtQvhJLmZhlxHWteyjg5qSU52EYnXCnvRYAAdCIunF5FtF0XeOVhBBm+OEXVAoc
ZYsAbZCC5ZGh4dgnYbLfA5c6DF7k36dw3SXxApuix/dHeKZf2u1jgn9u6Rj2U4RL
Y/HFX96hAxAbDe++9XVPnxv4SweDtgHzKa6gqAKr4y0nQ4ntHhg40+S+A9wkzO8=
=RXPG
-----END PGP SIGNATURE-----



--- End Message ---

Reply via email to