Package: r-other-x4r
Version: 1.0.1+git20150806.c6bd9bd-1
Severity: important
Tags: security

Hi,

While investigating CVE-2019-7659/gsoap, I noticed that your package embeds a
code copy of gsoap, which is compiled and linked into your package. It would
be good if you used the separate src:gsoap package, so that security issues
in gsoap don't need to be addressed separately in your package.

Thanks,
Emilio

Reply via email to