[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#262344: debian-installer: Please add gnutls11 and gcrypt11 packages



Package: debian-installer
Severity: important

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

[2004-07-29] Accepted gnutls11 1.0.16-4 (i386 source)

This means that gnutls11 will enter testing in time for the freeze.

**   Please add libgnutls11 and libgcrypt11   **
**  to the list of packages installed by d-i. **

Rationale: cf. http://lists.debian.org/debian-release/2004/07/msg00075.html
and followups.

Executive summary: I want to convert as many packages as possible,
including libopencdk8 and exim4, to use gnutls11/gcrypt11 instead of
the obsolete gnutls10/gcrypt7 packages which are unmaintained (and
warned against) by Upstream, for multiple reasons.

As their Debian maintainer, in my opinion the proper label for the
situation we would be in if a nontrivial security problem should appear
in one of these packages is "nightmare". It is therefore important
(hence the priority of this bug ;-) that we take all possible steps to
avoid actually using these old packages in Sarge.

Thus, please apply. Thanks.

- -- System Information:
Debian Release: testing/unstable
  APT prefers testing
  APT policy: (650, 'testing'), (601, 'unstable'), (542, 'experimental')
Architecture: i386 (i686)
Kernel: Linux 2.6.7-1.14ub
Locale: LANG=en_US.UTF-8, LC_CTYPE=de_DE.UTF-8

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.4 (GNU/Linux)

iD8DBQFBCoTV8+hUANcKr/kRAtKkAKCTSbiVcc4VSoDY0fMGj3XA3GTgxQCffQAk
Bakzh3R+k0i2bBw32wSag7A=
=lZz3
-----END PGP SIGNATURE-----



Reply to: