Your message dated Thu, 30 Aug 2012 01:32:44 +0000
with message-id <[email protected]>
and subject line Bug#678995: fixed in evince 3.4.0-3
has caused the Debian Bug report #678995,
regarding src:evince: please build with PIE and bindnow
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)
--
678995: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=678995
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Source: evince
Severity: normal
Version: 3.4.0-2
Tags: patch
User: [email protected]
Usertags: goal-hardening
Hi!
It's great that Evince is now built with a (limited) set of hardening
build flags, thanks to CDBS. However, we can easily do better!
Please build Evince with PIE and bindnow,
as implemented by the attached patch.
(FWIW, Ubuntu has been building Evince with these options enabled since
10.04 LTS included.)
Thank you for maintaining Evince in Debian.
diff -Naur evince-3.4.0.orig/debian/rules evince-3.4.0/debian/rules
--- evince-3.4.0.orig/debian/rules 2012-04-19 15:05:26.000000000 +0200
+++ evince-3.4.0/debian/rules 2012-06-25 17:31:30.109486491 +0200
@@ -1,5 +1,8 @@
#!/usr/bin/make -f
+export DEB_BUILD_MAINT_OPTIONS = hardening=+all
+include /usr/share/dpkg/buildflags.mk
+
include /usr/share/cdbs/1/rules/autoreconf.mk
include /usr/share/cdbs/1/rules/debhelper.mk
include /usr/share/cdbs/1/class/gnome.mk
--- End Message ---
--- Begin Message ---
Source: evince
Source-Version: 3.4.0-3
We believe that the bug you reported is fixed in the latest version of
evince, which is due to be installed in the Debian FTP archive.
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Michael Biebl <[email protected]> (supplier of updated evince package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
Format: 1.8
Date: Thu, 30 Aug 2012 02:27:50 +0200
Source: evince
Binary: evince evince-dbg evince-gtk evince-common libevdocument3-4
libevview3-3 libevince-dev gir1.2-evince-3.0
Architecture: source all amd64
Version: 3.4.0-3
Distribution: unstable
Urgency: low
Maintainer: Debian GNOME Maintainers
<[email protected]>
Changed-By: Michael Biebl <[email protected]>
Description:
evince - Document (PostScript, PDF) viewer
evince-common - Document (PostScript, PDF) viewer - common files
evince-dbg - Document (PostScript, PDF) viewer - debugging symbols
evince-gtk - Document (PostScript, PDF) viewer (GTK+ version)
gir1.2-evince-3.0 - GObject introspection data for the evince libraries
libevdocument3-4 - Document (PostScript, PDF) rendering library
libevince-dev - Document (PostScript, PDF) rendering library - development
files
libevview3-3 - Document (PostScript, PDF) rendering library - Gtk+ widgets
Closes: 658139 678995
Changes:
evince (3.4.0-3) unstable; urgency=low
.
[ Josselin Mouette ]
* Build with all hardening flags. Closes: #678995.
* Add corresponding build-dependency on a recent dpkg-dev.
.
[ Michael Biebl ]
* Build against poppler 0.18.
.
[ Jeremy Bicha ]
* Fix typo in package description
* Have libevdocument3-4 break/replace libevince3-3 too (LP: #1018543)
.
[ Josselin Mouette ]
* Re-add evince.mime with only application/pdf supported.
Closes: #658139.
Checksums-Sha1:
c51e652b2bf811e319fcdc585e871b7dcdcfc5dc 3036 evince_3.4.0-3.dsc
4bf0093a6542eb2dc64c7833e463bf9f901077a5 25510 evince_3.4.0-3.debian.tar.gz
3d88f2c60a636e5cc72714da22109010da431214 5303770 evince-common_3.4.0-3_all.deb
6f7218a03cd7c7aec89ed2923e572f5c22cd964b 633464 evince_3.4.0-3_amd64.deb
9186d9eeadebfc363ddb60354af7233e73941e17 1623458 evince-dbg_3.4.0-3_amd64.deb
04fc4fd2e0357ed25515e580ddeb02be35d238f8 629874 evince-gtk_3.4.0-3_amd64.deb
6a0ece285692dd5935cfab47728d4027291b52dc 653218
libevdocument3-4_3.4.0-3_amd64.deb
82bd18ba3dafbf0ff566636ec195e7ba095dbb4d 568854 libevview3-3_3.4.0-3_amd64.deb
436b7783b18dc7ebf7891a51e64521b6aab5acc4 713234 libevince-dev_3.4.0-3_amd64.deb
3a7cb98812db384fc9b4c4188b2bc12173f485a6 498894
gir1.2-evince-3.0_3.4.0-3_amd64.deb
Checksums-Sha256:
2ad8e142750f577bae809fd8ba7d93ccbd6a3572e2f835cd6fdd323b03ca245d 3036
evince_3.4.0-3.dsc
6418db86c784164dbd64d0ab3720e1040636ac646ed8589fc6b250860bd858dd 25510
evince_3.4.0-3.debian.tar.gz
edd7d663513eb8c856334cedeb08f1624f54bd870ff49bd9acea2b1c46af4453 5303770
evince-common_3.4.0-3_all.deb
50349ca1f6c625071b50e097e9aa61d29d8fdf0ded2e56df030f365ca298b5f7 633464
evince_3.4.0-3_amd64.deb
90c3b2226ab67fa55ce14a1f7664d3914fd7c5c6a4853782911a50c47dd79356 1623458
evince-dbg_3.4.0-3_amd64.deb
06226a9dd4ce0818dbd1e987da4bcfc1bd3cb497e1a3a01a952e4d8670fcba8c 629874
evince-gtk_3.4.0-3_amd64.deb
6e294a689372ab7ab1776dc70b146833c72cc4fd7a30e783eb5190ae6a214722 653218
libevdocument3-4_3.4.0-3_amd64.deb
7a869f09cf4b9750550e9d3b592eab58e3410033f6a10bb3be151a60af491edb 568854
libevview3-3_3.4.0-3_amd64.deb
d77f2b08b8fd422d876a98e9f30774a4118dc3b7c8e555ac0b9f2f7b0424552c 713234
libevince-dev_3.4.0-3_amd64.deb
143e06b77d5304304c9b351a7984aec5c45336d984d1a40214dfa5f1301df995 498894
gir1.2-evince-3.0_3.4.0-3_amd64.deb
Files:
c7e3235e93f34f399c327977671fca7a 3036 gnome optional evince_3.4.0-3.dsc
9727b4c1a88cfd83b2a8190289799e8e 25510 gnome optional
evince_3.4.0-3.debian.tar.gz
d9fe66d0e4187cbec0aafcb5e2799228 5303770 gnome optional
evince-common_3.4.0-3_all.deb
618d8fd22a60cce41e456bba1ad94c17 633464 gnome optional evince_3.4.0-3_amd64.deb
d471b5a53bac209eabb294c35aa4ba6c 1623458 debug extra
evince-dbg_3.4.0-3_amd64.deb
2726d0998726ca1215e31eb10400863b 629874 x11 optional
evince-gtk_3.4.0-3_amd64.deb
e7ceb830152855845a1d46bf4cac5db7 653218 libs optional
libevdocument3-4_3.4.0-3_amd64.deb
e21351a2cbdfadfc0b4803e047004dd8 568854 libs optional
libevview3-3_3.4.0-3_amd64.deb
5849370299744f989decb4161795e842 713234 libdevel optional
libevince-dev_3.4.0-3_amd64.deb
4cac7ece4378a1036a9770f2822281f1 498894 introspection optional
gir1.2-evince-3.0_3.4.0-3_amd64.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)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=cjfB
-----END PGP SIGNATURE-----
--- End Message ---