[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: zoo: directory traversal security bug



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Jose Carlos do Nascimento <josecarlos.nascimento@varig.com> writes:

> I thought to be a mantainer I just must know debian-policy,  how to
> create Debian package,, how to create docs,etc .
> I read many Debian Docs,  and I didnt read anything about people must
> be C, python, php ,etc  developer.

Being a maintainer is more than knowing good packaging practices.  If
you aren't able to dive into the source and tinker with it, you won't
be able to investigate user bug reports and patch them, evaluate
patches others provide, selectively include upstream changes to fix
bugs, deal with security issues, etc..  If you can't hack on the
source, you can only do ¼ of what the job requires.  What if a porter
reports a platform-specific bug, and it requires you to investigate
and patch it?

If you can't understand what you are packaging, you shouldn't be
packaging it, IMHO.


- -- 
Roger Leigh
                Printing on GNU/Linux?  http://gimp-print.sourceforge.net/
                Debian GNU/Linux        http://www.debian.org/
                GPG Public Key: 0x25BFB848.  Please sign and encrypt your mail.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (GNU/Linux)
Comment: Processed by Mailcrypt 3.5.8 <http://mailcrypt.sourceforge.net/>

iD8DBQFC1vDzVcFcaSW/uEgRAnn2AKC17XrJYUxBE5mqR9eXjpw88Tlk8QCfWci8
M99r3+Le5rvbibOOJ9IBWyw=
=638J
-----END PGP SIGNATURE-----



Reply to: