[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#390441: marked as done (release-notes: Document unclear Mozilla security situation)



Your message dated Wed, 15 Nov 2006 15:53:10 +0100
with message-id <20061115145310.GP2560@mails.so.argh.org>
and subject line Added to release-notes
has caused the attached Bug report to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what I am
talking about this indicates a serious mail system misconfiguration
somewhere.  Please contact me immediately.)

Debian bug tracking system administrator
(administrator, Debian Bugs database)

--- Begin Message ---
Package: release-notes
Severity: normal

Proposed text: (needs to be checked by a native speaker)
The Mozilla programs are important tools for many users. Unfortunately
their security policy is to urge users to update to new upstream
versions, which collides with the Debian way of backporting security
fixes to the stable version. During Etch lifetime the Debian Security
Team might come to a point, where supporting Mozilla products is no
longer feasible and announce the end of security support. You should
take this into account when deploying Mozilla and consider alternatives
inside Debian if that poses a problem to you.


-- System Information:
Debian Release: testing/unstable
  APT prefers unstable
  APT policy: (500, 'unstable')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.15-1-686
Locale: LANG=C, LC_CTYPE=de_DE.ISO-8859-15@euro (charmap=ISO-8859-15)


--- End Message ---
--- Begin Message ---
Hi,

thanks for the report. I added the (possible) limitations now as:
+      <sect id="mozilla-security"> <heading>Security status of mozilla products</heading>
+        <p>The Mozilla programs are important tools for many users.
+        Unfortunately their security policy is to urge users to update to
+        new upstream versions, which collides with our policy to not ship
+        large functional changes in a security update.
+        We cannot predict it today, but during &releasename; lifetime the
+        Debian Security Team might come to a point where supporting
+        Mozilla products is no longer feasible and, and would then announce
+        the end of security support for Mozilla products.
+        You should take this into account when deploying Mozilla and
+        consider alternatives inside Debian if that poses a problem to
+        you.</p>

to the release notes. Please feel free to reopen this bug report in
case the wording should be changed.


Cheers,
Andi
-- 
  http://home.arcor.de/andreas-barth/

--- End Message ---

Reply to: