[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#778348: [release-notes] release-notes:document security status for libv8/nodejs in jessie - added missing tag



Package: release-notes


Hi,

I added a missing tag twice and revised punctuation.
What I don't know is if the occurrence of "jessie" requires another tag to be
inserted.

Please find attached the diff of the patch as
0002-en-issues-Document-lack-of-security-support-for-Node.patch

Good night

Stephan Beck




Index: /home/knoppix/project3/0001-en-issues-Document-lack-of-security-support-for-Node.patch
===================================================================
--- /home/knoppix/project3/0001-en-issues-Document-lack-of-security-support-for-Node.patch	(Revision 1)
+++ /home/knoppix/project3/0001-en-issues-Document-lack-of-security-support-for-Node.patch	(Arbeitskopie)
@@ -1,4 +1,4 @@
->From b4a2d1c275bf871705d53b4861c1dd26f568f2c8 Mon Sep 17 00:00:00 2001
+>From b4a2d1c275bf871705d53b4861c1dd26f568f2c8 Mon Sep 17 00:00:00 2001
 From: nthykier <nthykier@313b444b-1b9f-4f58-a734-7bb04f332e8d>
 Date: Mon, 16 Feb 2015 08:07:01 +0000
 Subject: [PATCH 1/2] en/issues: Document lack of security support for Node.js
@@ -24,10 +24,10 @@
  </section>
  
 +<section id="libv8">
-+<title>Lack of security support for the ecosystem around libv8 and Node.js</title>
++<title>Lack of security support for the ecosystem around <systemitem role="package">libv8</systemitem> and <systemitem role="package">Node.js</systemitem></title>
 +<para>
-+   The Node.js platform is built on top of libv8, which receives a
-+   high volume of security issues but there are currently no
++   The Node.js platform is built on top of <systemitem role="package">libv8</systemitem>, which receives a
++   high volume of security issues, but there are currently no
 +   volunteers within the project or the security team sufficiently
 +   interested and willing to spend the large amount of time required
 +   to stem those incoming issues.
@@ -35,7 +35,7 @@
 +<para>
 +   Unfortunately, this means that <systemitem
 +   role="package">libv8</systemitem>, <systemitem
-+   role="package">nodejs</systemitem>, and the associated node-*
++   role="package">nodejs</systemitem> and the associated node-*
 +   package ecosystem should not currently be used with untrusted
 +   content, for example unsanitized data from the internet.
 +</para>

Attachment: signature.asc
Description: OpenPGP digital signature


Reply to: