Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 713576 (format-security)

Summary: [TRACKER] packages that fail to build with format-security
Product: Quality Assurance Reporter: Agostino Sarubbo <ago>
Component: TrackersAssignee: Gentoo Quality Assurance Team <qa>
Status: CONFIRMED ---    
Severity: normal CC: bertrand, sam
Priority: Normal Keywords: Tracker
Version: unspecified   
Hardware: All   
OS: Linux   
See Also: https://bugs.gentoo.org/show_bug.cgi?id=259417
https://bugs.gentoo.org/show_bug.cgi?id=520422
Whiteboard:
Package list:
Runtime testing required: ---
Bug Depends on: 511478, 512392, 512398, 512400, 512408, 520474, 520964, 520994, 521002, 521032, 521034, 521128, 521248, 521262, 521266, 521272, 521360, 528106, 539320, 541722, 542002, 542004, 542128, 542130, 542244, 542272, 542672, 544396, 545978, 546528, 550524, 550534, 559692, 576590, 578554, 578968, 587222, 632628, 634994, 725872, 728258, 517524, 520574, 521068, 521098, 542006, 551786, 560032, 713580, 714000, 714032, 714040, 714052, 714080, 714090, 714138, 714146, 714148, 714150, 714186, 714188, 714190, 714204, 714214, 714216, 714226, 714342, 714346, 714450, 714542, 714544, 714586, 714646, 714648, 714656, 714658, 714660, 714672, 714678, 714682, 714732, 714734, 714736, 714738, 714746, 714754, 714756, 714758, 714804, 714806, 714810, 714812, 714814, 714816, 714818, 714820, 714822, 714832, 714886, 714888, 714890, 714892, 714894, 714898, 714900, 714904, 714912, 714914, 714916, 714918    
Bug Blocks:    

Description Agostino Sarubbo gentoo-dev 2020-03-20 10:07:10 UTC
If a package fails to compile with CFLAGS="-Werror=format-security" please add a block to this tracker.

Other distros (like Fedora/Debian) build with format-security, so you could find patch(es) in their repository.

Major info at https://fedoraproject.org/wiki/Format-Security-FAQ

See also: https://bugs.gentoo.org/show_bug.cgi?id=fortify-source#c8
Comment 1 Sergei Trofimovich (RETIRED) gentoo-dev 2020-03-22 15:06:10 UTC
I agree with https://bugs.gentoo.org/259417#c7 and prefer these bugs to be sorted upstream. There are quite a few false positives expected around the flag, like https://bugs.gentoo.org/714000