[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: PHP4 Forward Port to Lenny



On Thu, Feb 4, 2010 at 16:50,  <Guy.Baconniere@swisscom.com> wrote:
> Maybe a lenny-"unsupported" as distribution suite can be created
> for this kind of forward port so people can still have all
> packages up to date and move from oldstable to stable and
> be a little be more secure with other packages but keep on
> using "unsupported" softwares until a solution if found.
> (running it on localhost, private address space, etc.)

No. It doesn't make a sense to make it easy for anybody else to create
this security hole into their system. But of course you are free to do
whatever you want, just keep it outside Debian (and backports.org).
Support for php4 ended two years ago, and nobody cares if there are
any security issues in php4 or not.

Your "forward port" isn't really helping anybody. But sure, if you
want your servers to be 0wned, feel free to install php4 and any other
poorly written _and_ unmaintained piece of software you want.

Ondrej
-- 
Ondřej Surý <ondrej@sury.org>
http://blog.rfc1925.org/

Reply to: