[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Bug#613788: ITP: dropbox -- secure backup, sync and sharing util

On Thu, Feb 17, 2011 at 12:35:26AM -0800, Vincent Cheng wrote:
> * Package name    : dropbox
>   Version         : 1.0.20-1
>   Upstream Author : Dropbox, Inc.
> * URL             : http://www.dropbox.com
> * License         : Proprietary
>   Section         : non-free/net
>   Description     : secure backup, sync and sharing util

It looks like you're still missing the source for librsync.so.1 in your
packages.  Also, I *strongly* recommend that you not include binary-only
shared libraries that are already available in Debian.  The security
team will not be very happy with you.  As an example, your package
ships libz.so.1, which has been the target of a DSA previously.

brian m. carlson / brian with sandals: Houston, Texas, US
+1 832 623 2791 | http://www.crustytoothpaste.net/~bmc | My opinion only
OpenPGP: RSA v4 4096b: 88AC E9B2 9196 305B A994 7552 F1BA 225C 0223 B187

Attachment: signature.asc
Description: Digital signature

Reply to: