Source: libvpx vs hardening all

Fabian Greffrath fabian at greffrath.com
Wed Aug 17 10:36:00 UTC 2016


> Yes, this is a short comming in the Debian package build process.
> There are source packages (like libvpx) from which library AND binary
> packages are build.

s/binary/executable/ ?

> https://wiki.debian.org/Hardening should a little bit more concise about
> this!

Reportedly, "libtool filters -fPIE, -pie and -fpie when compiling shared
libraries, so anything using autotools + libtool should automatically be
covered":

https://lists.debian.org/debian-devel/2016/05/msg00302.html

 - Fabian





More information about the pkg-multimedia-maintainers mailing list