[13:45] <ahasenack> hi #security, I just realized that nfs-utils (nfs server/client) is not built with hardening flags: https://pastebin.ubuntu.com/p/8xYGBmjwVd/
[13:46] <ahasenack> do you recall any specific reason for it? These warnings are all about the userspace bits in libnfsidmap and its plugins
[13:46] <ahasenack> it's like this in debian
[13:53] <ahasenack> I wonder if the previous src:libnfsidmap was built like that too
[13:53]  * ahasenack checks
[13:53] <teward> *hands ahasenack the coffee they'll obviously need*
[13:53] <teward> :P
[13:53] <teward> (enjoy the rabbit hole)
[13:53] <ahasenack> export DEB_BUILD_MAINT_OPTIONS = hardening=+all <-- it was there
[13:53] <ahasenack> so we lost it when the libnfsidmap source was absorbed by nfs-utils
[18:59] <sarnold> ahasenack: nice find :) weird though :(