Package: freesci
Version: 0.6.4-7
Severity: wishlist
User: [email protected]

Hoi Bas,

freesci ended up on the list of packages to build with hardened build flags 
because
it's debtagged as an interpreter. While true, given the package's use case I 
don't
think there's an urgency to have those build flags set.

Still, it would be nice if it would be possible to do at some point. However,
the package currently fails to build with a format-security error:

x86_64-linux-gnu-gcc -DHAVE_CONFIG_H -I. -I../.. -I../../src/include   
-D_FORTIFY_SOURCE=2 -I/usr/include/freetype2  -g -O2 -fPIE -fstack-protector 
--param=ssp-buffer-size=4 -Wformat -Wformat-security -Werror=format-security 
-Wall -g -O2 -MT kfile.o -MD -MP -MF .deps/kfile.Tpo -c -o kfile.o kfile.c
kfile.c: In function '_k_find_savegame_by_name':
kfile.c:643:6: warning: variable 'savedir_nr' set but not used 
[-Wunused-but-set-variable]
kfile.c: In function 'kSaveGame':
kfile.c:922:4: error: format not a string literal and no format arguments 
[-Werror=format-security]

Perhaps you want to check this out.

More info about the hardening project:
http://wiki.debian.org/Hardening
http://wiki.debian.org/HardeningWalkthrough


Cheers,
Thijs

-- System Information:
Debian Release: wheezy/sid
  APT prefers testing
  APT policy: (500, 'testing'), (1, 'experimental')
Architecture: amd64 (x86_64)

Kernel: Linux 3.2.0-2-amd64 (SMP w/4 CPU cores)
Locale: LANG=nl_NL.UTF-8, LC_CTYPE=nl_NL.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash



-- 
To UNSUBSCRIBE, email to [email protected]
with a subject of "unsubscribe". Trouble? Contact [email protected]

Reply via email to