/[secure-testing]/hardening/subgoal-dsa.txt
ViewVC logotype

Contents of /hardening/subgoal-dsa.txt

Parent Directory Parent Directory | Revision Log Revision Log


Revision 17300 - (show annotations) (download)
Mon Sep 26 17:06:37 2011 UTC (19 months, 3 weeks ago) by jmm
File MIME type: text/plain
File size: 6334 byte(s)
- change more pkgs to source pkg name
- udev is the first pkg converted to dpkg-buildflags
- aircrack-ng removed
1 Hardening subgoal for Wheezy:
2 All packages, which had a DSA since 2006.
3
4 Instructions:
5 - After checking a package, add it to the "Candidates:" or "Non-candidates:" list
6 - After NMUing a candidate where all build flags have been successfully enabled,
7 add it to the "Resolved/fixed:" list
8 - After NMUing a candidate with only some of the build flags enabled, add it to
9 the "Partially fixed: list (in order to remember what needs further work in the
10 future)
11
12 This lists needs cleaned up further:
13 - Software written in non-C/C++ languages (PHP, etc.) should be added to
14 the "Non-candidates:" list
15 - Some packages have been removed/superceded by newer srcpkg (I did
16 some cursory cleanup, but needs more work)
17
18 To check:
19
20 abcmidi
21 acpid
22 afuse
23 albatross
24 alsaplayer
25 amarok
26 amule
27 antiword
28 apache2
29 apr
30 apr-util
31 apt
32 asterisk
33 audiofile
34 avahi
35 barnowl
36 belpic
37 blender
38 bluez-hcidump
39 bochs
40 bomberclone
41 bsdgames
42 bzip2
43 cabextract
44 camlimages
45 capi4hylafax
46 cgiirc
47 cheesetracker
48 chmlib
49 chrony
50 citadel
51 clamav
52 collectd
53 couchdb
54 courier
55 courier-authlib
56 cpio
57 crawl
58 crossfire
59 cscope
60 ctorrent
61 curl
62 cyrus-imapd-2.2
63 devil
64 devscripts
65 dia
66 djbdns
67 dkim-milter
68 dovecot
69 dpkg
70 drbd8
71 dspam
72 dvipng
73 e2fsprogs
74 eggdrop
75 ejabberd
76 ekg
77 elinks
78 emacs23
79 enscript
80 ethereal
81 evince
82 exiftags
83 exiv2
84 expat
85 fbi
86 fetchmail
87 file
88 firebird2
89 flac
90 flex
91 fontforge
92 freeciv
93 freeradius
94 freetype
95 fuse
96 ganeti
97 ganglia-monitor-core
98 gdm
99 gdm3
100 ghostscript
101 gimp
102 git-core
103 glib2.0
104 eglibc
105 gmime2.4
106 pioneers
107 gnumeric
108 gnupg
109 gnutls26
110 gst-plugins-bad0.10
111 gst-plugins-good0.10
112 gtetrinet
113 gv
114 gzip
115 hashcash
116 heartbeat
117 heimdal
118 hostapd
119 hplip
120 htdig
121 httrack
122 hybserv
123 hylafax
124 iceape
125 icedove
126 iceweasel
127 icu
128 id3lib3.8.3
129 imagemagick
130 imlib2
131 inotify-tools
132 ircd-hybrid
133 isakmpd
134 isc-dhcp
135 iscsitarget
136 jabberd14
137 jasper
138 kaffeine
139 kazehakase
140 kde4libs
141 kdebase
142 kdegraphics
143 kolab-cyrus-imapd
144 krb5
145 krb5-appl
146 ktorrent
147 kvirc
148 kvm
149 l2tpns
150 lasso
151 lcms
152 lftp
153 libapache2-mod-authnz-external
154 libapache2-mod-auth-pgsql
155 libapache2-mod-fcgid
156 libapache-auth-ldap
157 libapache-mod-auth-kerb
158 libapache-mod-jk
159 libapreq2-perl
160 libarchive
161 libav
162 libast
163 libcairo
164 libcdaudio
165 libcgroup
166 libdbd-pg-perl
167 libdumb
168 libexif
169 libextractor
170 libfishsound
171 libgtop2
172 libhtml-parser-perl
173 libimager-perl
174 libmail-audit-perl
175 libmikmod
176 libmodplug
177 libmusicbrainz-2.0
178 libnet-dns-perl
179 libnss-ldap
180 libpam-heimdal
181 libpam-krb5
182 libpam-ldap
183 libpng
184 librpcsecgss
185 libsmi
186 libsndfile
187 libsoup2.4
188 libtasn1-2
189 libthai
190 libtheora
191 libtk-img
192 libtool
193 libtorrent-rasterbar
194 libtunepimp
195 libvorbis
196 libwmf
197 libwpd
198 libxfont
199 libxml2
200 libxslt
201 lighttpd
202 link-grammar
203 links2
204 linux-ftpd
205 loop-aes-utils
206 lsh-server
207 ltsp
208 lurker
209 lvm2
210 lynx-cur
211 maildrop
212 mailman
213 mapserver
214 maradns
215 mediawiki
216 memcached
217 mimetex
218 mldonkey
219 mlmmj
220 moin
221 mon
222 mono
223 mpg123
224 mplayer
225 mplayer2
226 mt-daapd
227 mtr
228 multipath-tools
229 mutt
230 mysql-ocaml
231 icinga
232 nas
233 nbd
234 ncompress
235 ndiswrapper
236 netpbm-free
237 netrik
238 net-snmp
239 network-manager
240 newt
241 nginx
242 no-ip
243 noweb
244 nsd3
245 nspr
246 nss
247 nss-ldapd
248 ntp
249 openafs
250 openexr
251 open-iscsi
252 openjdk-6
253 openldap
254 libreoffice
255 opensaml2
256 opensc
257 openssl
258 openswan
259 openvpn
260 oprofile
261 osiris
262 pam-pgsql
263 pango1.0
264 pcre3
265 pcsc-lite
266 pdfkit.framework
267 pdftohtml
268 pdns
269 pdns-recursor
270 peercast
271 perdition
272 perl
273 petris
274 pimd
275 pinball
276 pmount
277 polipo
278 poppler
279 postgresql-ocaml
280 pound
281 ppp
282 pptpd
283 proftpd-dfsg
284 psi
285 pstotext
286 pulseaudio
287 pygresql
288 python2.6
289 python2.7
290 python3.2
291 python-cjson
292 python-crypto
293 pywebdav
294 qemu
295 qemu-kvm
296 qt4-x11
297 qt-x11-free
298 rdesktop
299 refpolicy
300 reprepro
301 request-tracker3.8
302 resmgr
303 rssh
304 rsync
305 ruby1.8
306 ruby1.9.1
307 ruby-gnome2
308 samba
309 sash
310 scponly
311 screen
312 sdl-image1.2
313 sendmail
314 shadow
315 silc-client
316 slurm-llnl
317 smstools
318 snmptrapfmt
319 socat
320 spamassassin
321 spamass-milter
322 speex
323 splitvt
324 sql-ledger
325 squid3
326 squidguard
327 streamripper
328 strongswan
329 subversion
330 sudo
331 suphp
332 sword
333 sympa
334 syslog-ng
335 systemtap
336 t1lib
337 tar
338 tcpreen
339 telepathy-gabble
340 texinfo
341 tgt
342 thttpd
343 tinymux
344 tinyproxy
345 tk8.4
346 tk8.5
347 tk8.6
348 tuxpaint
349 typespeed
350 unalz
351 unbound
352 unicon
353 unzip
354 util-linux
355 uw-imap
356 vim
357 vino
358 vlc
359 vnc4
360 webcit
361 webkit
362 wesnoth
363 wget
364 wine
365 wml
366 wordnet
367 wv2
368 wxwidgets2.6
369 wxwidgets2.8
370 wzdftpd
371 x11-xserver-utils
372 xapian-omega
373 xfs
374 xine
375 xine-lib
376 xmcd
377 xmlsec1
378 xml-security-c
379 xmltooling
380 xmms
381 xorg-server
382 xpdf
383 xpvm
384 xterm
385 xulrunner
386 xwine
387 xzgv
388 zabbix
389 zgv
390 zodb
391 zoo
392
393 Non-candidates:
394
395 adzapper
396 ajaxterm
397 apt-listchanges
398 auth2db
399 awstats
400 b2evolution
401 backup-manager
402 boinc
403 ca-certificates
404 cacti
405 changetrack
406 debian-goodies
407 dnsmasq
408 doctrine
409 dokuwiki
410 drupal6
411 enemies-of-carlotta
412 fail2ban
413 fcheck
414 fex
415 firefox-sage
416 flamethrower
417 flexbackup
418 gallery
419 gallery2
420 gfax
421 gitolite
422 gnatsweb
423 gtk+2.0
424 hiki
425 horde2
426 horde3
427 ikiwiki
428 ilohamail
429 imp4
430 ingo1
431 ipplan
432 jailer
433 jffnms
434 kronolith
435 kronolith2
436 ldap-account-manager
437 ldapscripts
438 libcrypt-cbc-perl
439 libmojolicious-perl
440 libnet-server-perl
441 libphp-adodb
442 libphp-phpmailer
443 libxerces2-java
444 logwatch
445 lookup-el
446 mahara
447 mantis
448 migrationtools
449 moodle
450 motor
451 movabletype-opensource
452 ocsinventory-agent
453 otrs
454 otrs2
455 php4
456 phpbb2
457 phpgedview
458 php-json-ext
459 phpldapadmin
460 php-mail
461 phpmyadmin
462 php-net-ping
463 phppgadmin
464 phpwiki
465 php-xajax
466 phpymadmin
467 policyd-weight
468 popfile
469 postfix-policyd
470 postgrey
471 python-cherrypy
472 python-django
473 python-dns
474 rails
475 redmine
476 request-tracker3.4
477 request-tracker3.6
478 roundup
479 serendipity
480 sitebar
481 slash
482 smarty
483 squirrelmail
484 storebackup
485 smbind
486 tdiary
487 tex-common
488 tetex-bin
489 trac
490 trac-git
491 transmission
492 tunapie
493 turba2
494 tutos
495 typo3-src
496 twiki
497 upcoming
498 usermin
499 webcalendar
500 webmin
501 websvn
502 weechat
503 wordpress
504 xen
505 yarssr
506 yaws
507 zaptel
508 zonecheck
509 zoph
510 bugzilla
511 sork-passwd-h3
512 spip
513 advi
514 gforge
515
516 Packages using cdbs, fixed with the next upload after 2011-09-23 with
517 the upload of dpkg/1.16.1:
518 koffice
519 kphone
520 libgd2
521 libspf2
522 libvirt
523
524
525 Candidates:
526
527 Partially fixed:
528
529 Resolved/fixed:
530
531 Packages using hardening-wrapper/-includes (these are considered fixed, although
532 switching them over to dpkg-buildflags might be worthwhile later on):
533 tmux
534 netatalk
535 man-db
536 graphicsmagick
537 udev
538 xfce4-terminal
539 openssh
540 evolution
541 dbus
542 tcpdump
543 libgsf
544 tor
545 evolution-data-server
546 cyrus-imapd-2.4
547 aria2
548 mysql-5.1
549 cups
550 wireshark
551 squid
552 exim4
553 php5
554 ipsec-tools
555 postgresql-8.4
556 postgresql-9.0
557 postgresql-9.1
558 gnupg2
559 nagios3
560 tiff
561 bind9
562 postfix
563 chromium-browser
564 pidgin
565 nagios-plugins
566 znc
567 cyrus-sasl2
568 ldns
569 quagga
570
571
572
573 Removed from the archive:
574 gcc-3.4
575 gforge-plugin-scmcvs
576 cvsnt
577 zope-ldapuserfolder
578 zope-cmfplone
579 zope2.10
580 zope2.7
581 xfree86
582 opie
583 firebird
584 bmv
585 gpdf
586 gsambad
587 gs-esp
588 lxr-cvs
589 nfs-user-server
590 newsx
591 kdelibs
592 links
593 abc2ps
594 apache
595 bind
596 centericq
597 cfs
598 cupsys
599 dhcp
600 dhcp3
601 dtc
602 elog
603 fireflier
604 flyspray
605 gaim
606 gnomemeeting
607 gnome-peercast
608 hf
609 libopenssl-ruby
610 libxml
611 metamail
612 mydms
613 mydns
614 aircrack-ng
615

  ViewVC Help
Powered by ViewVC 1.1.5