[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: RFC: allow new upstream into stable when it's the only way to fix security issues.

"Nikita V. Youshchenko" <yoush@cs.msu.su> writes:

> Maybe in rare cases like this one, when these seems to be no other way to 
> keep important package set secure, we should allow new upstream into 
> Debain Stable?

In this rare cases I agree otherwise the users will continue to use
vulnerable packages or will use backports and then don't have sure
that the build system is trusted.

Is possible to use volatile for this kinda of things but I don't like
the idea because not all users will use it.

my 2c.

        O T A V I O    S A L V A D O R
 E-mail: otavio@debian.org      UIN: 5906116
 GNU/Linux User: 239058     GPG ID: 49A5F855
 Home Page: http://www.freedom.ind.br/otavio
"Microsoft gives you Windows ... Linux gives
 you the whole house."

Reply to: