Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 526812 - media-gfx/dcraw: please remove dependency on media-libs/lcms:0
Summary: media-gfx/dcraw: please remove dependency on media-libs/lcms:0
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Linux
Classification: Unclassified
Component: Current packages (show other bugs)
Hardware: All Linux
: Normal normal (vote)
Assignee: Tim Harder
URL:
Whiteboard:
Keywords:
Depends on:
Blocks: lcms-1
  Show dependency tree
 
Reported: 2014-10-25 22:41 UTC by Matthias Maier
Modified: 2014-10-26 22:21 UTC (History)
0 users

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Matthias Maier gentoo-dev 2014-10-25 22:41:30 UTC
media-libs/lcms:0 is unmaintained, has seen no releases since 2009, and (according to upstream) is affected by unspecified serious security issues. Please 

* either upgrade your package to use media-libs/lcms:2, 
* or hard-disable an optional dependency on media-libs/lcms:0, 
* or mask your package for removal.

Thank you!
Comment 1 Tim Harder gentoo-dev 2014-10-26 00:25:30 UTC
Fixed in 9.22-r1.
Comment 2 Matthias Maier gentoo-dev 2014-10-26 11:48:08 UTC
We also need to stabilize 9.22-r1 (in order to superseed stable 9.10) and either drop all previous versions or package.use.mask lcms use flag for them.
Comment 3 Tim Harder gentoo-dev 2014-10-26 22:21:22 UTC
(In reply to Matthias Maier from comment #2)
> We also need to stabilize 9.22-r1 (in order to superseed stable 9.10) and
> either drop all previous versions or package.use.mask lcms use flag for them.

Do that in a different bug, preferably one handled by security of this is a security thing.