packaging thunderbird and firefox extensions as RPM in Fedora

Christopher Aillon caillon at redhat.com
Mon Apr 16 18:15:00 UTC 2007


Enrico Scholz wrote:
> Christopher Aillon <caillon at redhat.com> writes:
> 
>>> I do not see how this matters here. rpm knows enough ways to handle it:
>>> * explicit 'Requires: firefox = ...' in binary plugins
>>
>> Packagers fall all too easily into the trap of >= and not updating the
>> min/max versions
> 
> It should be more or less trivial to write an rpmlint check which catches
> 'Requires: firefox >= ...'. A fedora packaging guideline for firefox
> plugins can forbid this too.
> 

That still doesn't solve the issue of firefox-foo requires firefox = 
x.y.z and x.y.z+1 just came out to fix a security issue.




More information about the devel mailing list