Source: libvpx vs hardening all

Dr. Markus Waldeck waldeck at gmx.de
Sat Aug 13 10:03:07 UTC 2016


Hi all,

> PIE cannot be used when compiling shared libraries (the flag is only
> applicable to executables).

Yes, this is a short comming in the Debian package build process.
There are source packages (like libvpx) from which library AND binary 
packages are build.

https://wiki.debian.org/Hardening should a little bit more concise about this!

Thanks!

Markus



More information about the pkg-multimedia-maintainers mailing list