Re: Adding security features (was: Kernel parameters protecting fifos and regular files)

2020-01-29 Thread Richard Laager
[ Note: I have reordered the quoted text blocks. ] On 1/29/20 8:28 AM, Marvin Renich wrote: > On the other hand, I do agree with using unstable and testing to > determine the level of disruption, on the condition that there is a > _commitment_ to removing the feature before stable release if the >

Re: Kernel parameters protecting fifos and regular files

2020-01-29 Thread Ben Hutchings
On Wed, 2020-01-29 at 10:13 -0800, Moritz Mühlenhoff wrote: > Craig Small schrieb: > > --4806c5059d3edeb1 > > Content-Type: text/plain; charset="UTF-8" > > > > Hi, > > About 2 years ago the procps package added protection for hard and soft > > symlinks. The bug report was 889098 and

Bug#950181: ITP: miniaudio -- single file library for audio playback and capture

2020-01-29 Thread Nicolas Braud-Santoni
Package: wnpp Severity: wishlist Owner: Nicolas Braud-Santoni Control: block 950178 by -1 -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 * Package name: miniaudio Version : 0.9.10 Upstream Author : David Reid * URL : https://github.com/dr-soft/miniaudio * License

Bug#950180: ITP: kissfft -- A mixed-radix Fast Fourier Transform library

2020-01-29 Thread Nicolas Braud-Santoni
Package: wnpp Severity: wishlist Owner: Nicolas Braud-Santoni Control: block 950178 by -1 -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 * Package name: kissfft Version : 131 Upstream Author : Mark Borgerding * URL : https://github.com/mborgerding/kissfft * License

Bug#950179: ITP: libjsonpp -- A set of C++ classes to support JSON

2020-01-29 Thread Nicolas Braud-Santoni
Package: wnpp Severity: wishlist Owner: Nicolas Braud-Santoni Control: block 950178 by -1 -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 * Package name: libjsonpp Version : 1.09 Upstream Author : PJ Naughter * URL : http://www.naughter.com/jsonpp.html * License

Bug#950178: ITP: bonzomatic -- Live shader coding tool

2020-01-29 Thread Nicolas Braud-Santoni
Package: wnpp Severity: wishlist Owner: nicoo -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 * Package name: bonzomatic Version : 2019-03-26 Upstream Author : Gargaj * URL : https://github.com/Gargaj/Bonzomatic/ * License : Unlicense Programming Lang: C++

Re: Kernel parameters protecting fifos and regular files

2020-01-29 Thread Moritz Mühlenhoff
Craig Small schrieb: > --4806c5059d3edeb1 > Content-Type: text/plain; charset="UTF-8" > > Hi, > About 2 years ago the procps package added protection for hard and soft > symlinks. The bug report was 889098 and has seemed to work fine. > > There is also now bug #914859 which would ext

Bug#950162: ITP: ruby-faraday-middleware-aws-sigv4 -- Faraday middleware for AWS Signature Version 4 using aws-sigv4

2020-01-29 Thread Sruthi Chandran
Package: wnpp Severity: wishlist Owner: Sruthi Chandran X-Debbugs-CC: debian-devel@lists.debian.org * Package name: ruby-faraday-middleware-aws-sigv4 Version : 0.3.0 Upstream Author : Genki Sugawara * URL : https://github.com/winebarrel/faraday_middleware-aws-sigv4 * L

Adding security features (was: Kernel parameters protecting fifos and regular files)

2020-01-29 Thread Marvin Renich
I have no opinion about this specific feature; at first glance it looks like it might be a reasonable thing to do. On the other hand, I strongly disagree with this statement as a general rule: > Unless massive breakage is expected, the default should > be the most secure option. This is the wron