[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Bug#593134: (unreleased) libprophet-perl: GPL in debian/copyright



On Thu, 2012-10-04 at 11:50 +0300, Damyan Ivanov wrote:
> -=| Ioan Rogers, 04.10.2012 01:45:17 -0700 |=-
> > On Wed, 2012-10-03 at 21:19 -0700, Ioan Rogers wrote:
> > 
> > > I'll strip and set up symlinks for those that are packaged,
> > 
> > Erg, it seems I can't yet. Prophet checks the resolved path is under its
> > static root before serving it up. So we'll have to keep the embedded
> > copy of tablesorter for now.
> 
> Maybe that check can be fixed?
> 

I'm not sure I should, it's for security isn't it?

> Or at least replace embedded copy with the packaged content at build 
> time? This way if there is a problem in that code a rebuild against 
> fixed libjs-jquery-tablesorter would fix it.

Is that acceptable under the policy? And if so, can it be done via
debhelper?

Thanks!

Ioan



Attachment: signature.asc
Description: This is a digitally signed message part


Reply to: