MainInclusionReportEmbryo
Revision 6 as of 2009-11-30 12:57:56
Clear message
Main Inclusion Report for embryo
Requirements
Availability: http://archive.ubuntu.com/ubuntu/pool/universe/e/embryo/; available for all supported architectures
Rationale:
- Build dependency of netbook-launcher-efl required by the Mobile/ARM team.
Security:
- "The Url_init function in utils/url.c in Netembryo 0.0.4, when used by LScube Feng, allows remote attackers to cause a denial of service (NULL dereference and daemon crash) via a malformed URI containing a "/:" sequence, as demonstrated by a "DESCRIBE /: RTSP/1.0" request.
Secunia history: none
Ubuntu CVE's: none
- No binaries running as root or suid/sgid, no daemons
- No known source code review
Quality assurance:
- Always works out of the box without configuration
- No debconf questions
Maintenance in Debian is vigorous
Upstream is vigorous
UI standards:
- No user visible strings
Standards compliance:
FHS, Debian Policy 3.8.2 compliant
Dependencies:
- All dependencies satisfied in main.
Maintenance:
- Minimal maintenance needed
- Debian responsible for bugs
Background information:
- This package is a dependency of netbook-launcher-efl which is to be packaged by the mobile team as part of an effort to bring the netbook experience to non-3d accelerated architectures on ARM.
Reviewers
MIR bug: https://launchpad.net/bugs/490304
The author of this report should put their name here; reviewers will add comments etc. too