Package: cscope
Version: 15.7a-3.5
Severity: important
Tags: patch

Please enable hardened build flags through dpkg-buildflags. Since 
cscope has already been converted to "dh", this can simply be 
achieved by setting debian/compat to "9". I've verified that 
this is sufficient to enable hardened build flags:

jmm@pisco:~$ hardening-check /usr/bin/cscope
/usr/bin/cscope:
 Position Independent Executable: no, normal executable!
 Stack protected: yes
 Fortify Source functions: yes (some protected functions found)
 Read-only relocations: yes
 Immediate binding: no not found!
jmm@pisco:~$

(Immediate binding and PIE are not covered by the standard flags
so far)

Cheers,
        Moritz



-- 
To UNSUBSCRIBE, email to [email protected]
with a subject of "unsubscribe". Trouble? Contact [email protected]

Reply via email to