How to manage security issues when the maintainer is not the developer
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Hi all.
How do you think a maintainer should manage security issues when he is
not the package developer? Should he/she either work alone to make
patches or wait for the upstream patches/relases that solve the bug?
Andrea De Iacovo
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
iD8DBQFIBejnMXahCK22/rwRAhl3AJ9/rP8FFSVqvz1+8bQu1PZHCLGjGQCfZQJ7
zCofl8Z64XpvIRBQklhQ3gQ=
=WToO
-----END PGP SIGNATURE-----
Reply to: