[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Bug #32888: The old `base' package.



On Thu, Mar 11, 1999 at 02:38:43PM +0100, Santiago Vila wrote:
> On Wed, 10 Mar 1999, Branden Robinson wrote:
> 
> > Heck, he had a security hole in one of his packages (procmail), and failed
> > to upload to frozen when he had the chance (in the wake of the slink
> > release delay last week).  Instead, he just made a perfunctory upload to
> > unstable and went back about trying to stage manage other people's
> > packages.
> 
> "Heck",
> 
> http://www.debian.org/Lists-Archives/debian-devel-changes-9903/msg00235

Ah, my mistake.  I mistook your upload of 

 procmail (3.12-0) unstable; urgency=high
 .
   * New upstream release. Fixes some security bugs.

for

 procmail (3.12-1) frozen unstable; urgency=high
 .
   * New upstream release. Fixes some security bugs.
   * #define GROUP_PER_USER in config.h to allow writeable rcfiles when
     the group is the user's default group.
   * Added KNOWN_BUGS to the doc directory.
   * suid procmail to avoid non-suidness window when upgrading.

which occurred roughly 16 hours later.

/debian2/debian/dists/slink/main/binary-alpha/mail/procmail_3.10.7-7.deb
/debian2/debian/dists/slink/main/binary-i386/mail/procmail_3.10.7-7.deb
/debian2/debian/dists/slink/main/binary-m68k/mail/procmail_3.10.7-7.deb
/debian2/debian/dists/slink/main/binary-sparc/mail/procmail_3.10.7-7.deb

Sadly, it didn't make any difference, hence my confusion.  Guess it's part
of that big "anti-Santiago" conspiracy.

> [ I fail to see what has this to do with the base package, however ].

Antti asked a question.  I answered it.

-- 
G. Branden Robinson              |      One man's "magic" is another man's
Debian GNU/Linux                 |      engineering.  "Supernatural" is a
branden@ecn.purdue.edu           |      null word.
cartoon.ecn.purdue.edu/~branden/ |      -- Robert Heinlein

Attachment: pgpLmM5pqXf1Y.pgp
Description: PGP signature


Reply to: