[Bug 2049686] Re: dpkg-buildflags: emit build flags for negated features

Mark Esler 2049686 at bugs.launchpad.net
Fri Jan 19 17:00:52 UTC 2024


In Riga Security and Foundations agreed to SE058. This work fits under
Security's responsibility to "Write patches for gcc and dpkg
enablement".

The packaging structure of gcc-* is quirky, and I would appreciate
training and guidance from the toolchains team to help bootstrap my
team.

-- 
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to dpkg in Ubuntu.
https://bugs.launchpad.net/bugs/2049686

Title:
  dpkg-buildflags: emit build flags for negated features

Status in dpkg package in Ubuntu:
  Confirmed

Bug description:
  we have in a package:

  export DEB_BUILD_MAINT_OPTIONS = hardening=+all,-fortify

  however that doesn't turn off fortify.  We have these unfortunate
  defaults in the compiler, so we have to emit explicit compiler flags
  to disable these.

  not just for that feature, but for any feature that is turned on by
  default in GCC.

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/dpkg/+bug/2049686/+subscriptions




More information about the foundations-bugs mailing list