Package: zlib1g Version: 1:1.2.6.dfsg-2 Severity: important Hardened build flags are a release goal for Wheezy. I don't know why this isn't reported before, because zlib qualifies for that goal. I tested with "hardening-check" script (from hardening-includes) that versions 1:1.2.6.dfsg-2 and 1:1.2.7.dfsg-1 aren't hardened (amd64).
http://wiki.debian.org/ReleaseGoals/SecurityHardeningBuildFlags http://wiki.debian.org/Hardening http://wiki.debian.org/HardeningWalkthrough -- System Information: Debian Release: wheezy/sid APT prefers testing APT policy: (700, 'testing'), (600, 'unstable') Architecture: amd64 (x86_64) Kernel: Linux 3.2.0-2-amd64 (SMP w/2 CPU cores) Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8) Shell: /bin/sh linked to /bin/dash Versions of packages zlib1g:amd64 depends on: ii libc6 2.13-32 ii multiarch-support 2.13-32 zlib1g:amd64 recommends no packages. zlib1g:amd64 suggests no packages. -- no debconf information -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org