Summary: | [TRACKER] packages should call pax-mark via the pax-utils.eclass and not call paxctl or paxctl-ng directly | ||
---|---|---|---|
Product: | Gentoo Linux | Reporter: | Anthony Basile <blueness> |
Component: | Hardened | Assignee: | The Gentoo Linux Hardened Team <hardened> |
Status: | RESOLVED FIXED | ||
Severity: | normal | CC: | bertrand, pageexec |
Priority: | Normal | Keywords: | Tracker |
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
Whiteboard: | |||
Package list: | Runtime testing required: | --- | |
Bug Depends on: | 515582, 517000, 532244 | ||
Bug Blocks: | 427888 |
Description
Anthony Basile
2014-07-03 11:03:24 UTC
can we close this since we have no dependencies open? (In reply to Matthew Thode ( prometheanfire ) from comment #1) > can we close this since we have no dependencies open? did you grep the tree to check? if yes, do it. I just grepped through and filed bugs / fixed the one that was maint-needed. Mono is the only outstanding one that is wrong. there are a few old ebuilds still in the tree that use paxctl directly (wine and icedtea) but both have later versions that are fixed and at the same keywords, do we care about the old versions? (In reply to Jason Zaman from comment #3) > I just grepped through and filed bugs / fixed the one that was maint-needed. > > Mono is the only outstanding one that is wrong. > > there are a few old ebuilds still in the tree that use paxctl directly (wine > and icedtea) but both have later versions that are fixed and at the same > keywords, do we care about the old versions? what a grep misses is build systems that use paxctl rather than paxmark.sh. Let's leave this open for a while. Can you define "a while"? 3+ years good enough? |