[Top][All Lists]

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: tar + cpio - covscan issues

From: Bruno Haible
Subject: Re: tar + cpio - covscan issues
Date: Sat, 17 Apr 2021 00:07:51 +0200
User-agent: KMail/5.1.3 (Linux/4.4.0-206-generic; KDE/5.18.0; x86_64; ; )

Paul Eggert wrote:
> Another possibility would be to libraryize Gnulib, scan that library 
> once and record its false positives on your side once, and then change 
> Gnulib-using packages to use that library instead of their in-source 
> Gnulib copies. This would also be some work on your side, but it might 
> fit better into your workflow.

This is nontrivial work. We started some of it in 2010; the current status
is written up in the file 'STATUS-libposix'. We haven't worked on it
for 10 years. Part of the problem is that we have no clue how to address
the versioning of this library.


reply via email to

[Prev in Thread] Current Thread [Next in Thread]