[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#931112: lintian: false-positives of harndening-no-fortify-functions



Package: lintian
Version: 2.15.0
Severity: wishlist

Dear Maintainer,

"hardening-no-fortify-functions" has extermely high false-positive rate.
From reading of its description, I can see two groups of packages.

First group of false-positives consists of packages that use little or
none of standard library /directly/:

 - bcron
 - ftpcopy
 - runit
 - djbdns
 - ...

You can check, these packages use CFLAGS/CPPFLAGS/LDFLAGS, provided by
dpkg-buildflags via /usr/share/dpkg/default.mk (While I was writing this
bug, I notices that in "runit" package I forgot LDFLAGS, but fix to
include them changes nothing.)

Secondly, even "gdbm" library (but not binary), which is conventional
user of libc as whole and stdio in particular, triggers this tag.

I believe, blhc(1) does everything this tag was supposed to do.
-- 
Note, that I send and fetch email in batch, once in a few days.
Please, mention in body of your reply when you add or remove recepients.

Attachment: pgpHh0TJp20cj.pgp
Description: PGP signature


Reply to: