> Has the security team been informed that it includes a copy of the > xpdf code?? From the debian/rules it looks like you build against > libpoppler instead. You might want to get upstream to drop it from the > tarball, since it seems libpoppler can be used.
For the records: [1], see [2]. 1. http://svn.debian.org/wsvn/secure-testing/data/embedded-code-copies?op=file 2. http://article.gmane.org/gmane.linux.debian.devel.announce/1136 Cheers, -- Cyril Brulebois
pgpGjlqCG1O0R.pgp
Description: PGP signature