[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Debian should not modify the kernels!



also sprach Herbert Xu <herbert@gondor.apana.org.au> [2003.09.22.1331 +0200]:
> It is unacceptable for us to distribute kernels with known
> (security) bugs.

It is unacceptable for us to backport features alongside security
patches. From http://www.debian.org/security/faq:

  The most important guideline when making a new package that fixes
  a security problem is to make as few changes as possible. Our
  users and developers are relying on the exact behaviour of
  a release once it is made, so any change we make can possibly
  break someone's system.

Also, 5.8.5.3 of the Developer's Reference is a necessary read for
this discussion.

-- 
Please do not CC me when replying to lists; I read them!
 
 .''`.     martin f. krafft <madduck@debian.org>
: :'  :    proud Debian developer, admin, and user
`. `'`
  `-  Debian - when you have better things to do than fixing a system
 
Invalid/expired PGP subkeys? Use subkeys.pgp.net as keyserver!

Attachment: pgpAEk_DXEPto.pgp
Description: PGP signature


Reply to: