Ugh. Again, identical packaging and concerns from MIR bug 1124074 and
bug 1124092. I feel like I'm stuck. :)
-Simple, modern packaging
-No delta
-No test suite
-No symbols file, but it's C++, so that's understandable
-debian/copyright file is a little malformed (missing license stanza), but
that's an issue for NEW, not for MIR. Plus, this is from Debian so not worth a
delta.
-Would be nice to see a bug subscriber
-Forgot to mention this in other reviews, but no important bugs in Debian or
Ubuntu for this package (and the others). Of course, this package is rather
new.
Two problems though. This will need a security review, since it's a
file parser. And unlike the other MIRs above, this doesn't seem to have
been in main before via libreoffice. So passing to the security team
for a quick audit.
Also, it does have the lintian warning hardening-no-fortify-functions,
like the other MIRs above. Björn, can you just check if that warning is
a false or true positive?
** Changed in: libmspub (Ubuntu)
Status: New => Incomplete
** Changed in: libmspub (Ubuntu)
Assignee: (unassigned) => Ubuntu Security Team (ubuntu-security)
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1124082
Title:
[MIR] libmspub
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/libmspub/+bug/1124082/+subscriptions
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs