Re: debian/kernel security issues (Was: Re: Bits (Nybbles?) from the Vancouver release team meeting)
On Tue, 15 Mar 2005 08:51:30 -0800, Matt Zimmerman wrote:
> On Tue, Mar 15, 2005 at 09:50:22AM +0100, Sven Luther wrote:
[...]
> 
>> To have proper security-in-testing-or-unstable for the kernel, the
>> debian-kernel security team, or at least a few members of it, need to be made
>> aware of the embargoed security holes, and get a chance to fix them in
>> advance, maybe with a private or security non-public copy of our svn tree
>> (using svk maybe).
> 
> Herbert Xu used to fill this role.  After he resigned, William Lee Irwin (I
> believe) volunteered to be the point of contact for security issues.  If
> William is not active in this role, the kernel team should nominate someone
> else who can be trusted by the security team to work on sensitive issues,
> and have them contact the security team.
I have contacted Joey about this.  He said he would try and keep me in the
loop when he remembers, which is not quite what I was hoping for.
Reply to: