[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#738607: marked as done (developers-reference: Change contact preferences to the security-team in 5.8.5.)



Your message dated Tue, 08 Jul 2014 15:34:36 +0000
with message-id <E1X4XPg-0002QQ-7B@franck.debian.org>
and subject line Bug#738607: fixed in developers-reference 3.4.12
has caused the Debian Bug report #738607,
regarding developers-reference: Change contact preferences to the security-team in 5.8.5.
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact owner@bugs.debian.org
immediately.)


-- 
738607: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=738607
Debian Bug Tracking System
Contact owner@bugs.debian.org with problems
--- Begin Message ---
Package: developers-reference
Version: 3.4.11
Severity: normal
Tags: patch

Hi

At the Security team sprint meeting in Essen we concluded that working
trough the request tracker does not fit well with our workflows when
handling issues. We would thus like to change the paragraph on how to
contact the security-team in the developers-reference in paragraph
5.8.5. The change consist to make the email contact the only point of
contact removing the reference to the Request Tracker.

Attached patch addresses this, could you apply it for your next update
of the dev-ref?

Regards,
Salvatore
Index: pkgs.dbk
===================================================================
--- pkgs.dbk	(revision 10373)
+++ pkgs.dbk	(working copy)
@@ -843,10 +843,9 @@
 <para>
 When you become aware of a security-related bug in a Debian package, whether or
 not you are the maintainer, collect pertinent information about the problem,
-and promptly contact the security team, preferably by filing a ticket in
-their Request Tracker.
-See <ulink url="http://wiki.debian.org/rt.debian.org#Security_Team";></ulink>.
-Alternatively you may email &email-security-team;.
+and promptly contact the security team by emailing &email-security-team;. If
+desired, email can be encrypted with the Debian Security Contact key, see 
+<ulink url="https://www.debian.org/security/faq#contact";></ulink> for details.
 <emphasis role="strong">DO NOT UPLOAD</emphasis> any packages for
 <literal>stable</literal> without contacting the team.  Useful information
 includes, for example:

--- End Message ---
--- Begin Message ---
Source: developers-reference
Source-Version: 3.4.12

We believe that the bug you reported is fixed in the latest version of
developers-reference, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 738607@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Lucas Nussbaum <lucas@debian.org> (supplier of updated developers-reference package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmaster@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Tue, 08 Jul 2014 15:54:19 +0200
Source: developers-reference
Binary: developers-reference developers-reference-de developers-reference-fr developers-reference-ja
Architecture: source all
Version: 3.4.12
Distribution: unstable
Urgency: medium
Maintainer: Developers Reference Maintainers <debian-policy@lists.debian.org>
Changed-By: Lucas Nussbaum <lucas@debian.org>
Description:
 developers-reference - guidelines and information for Debian developers
 developers-reference-de - guidelines and information for Debian developers, in German
 developers-reference-fr - guidelines and information for Debian developers, in French
 developers-reference-ja - guidelines and information for Debian developers, in Japanese
Closes: 738607
Changes:
 developers-reference (3.4.12) unstable; urgency=medium
 .
   [ Raphaël Hertzog ]
   * Update preferred contact method for the security team. Closes: #738607
     Thanks to Salvatore Bonaccorso for the patch.
 .
   [ Charles Plessy ]
   * Removed mention of Gandi's discontinued discount.
 .
   [ Lucas Nussbaum ]
   * Move maintenance to Git & collab-maint. Update Vcs-*.
   * Update Standards-Version to 3.9.5 (no change required).
Checksums-Sha1:
 dfffa33c2edfba1956ff460e81f3125310f93a0b 2273 developers-reference_3.4.12.dsc
 3bbfbd53af5518c5b3e5b36d87355004f87d85e8 445432 developers-reference_3.4.12.tar.xz
 513672c972b9414a6b9f68da61132403c6502eb6 779112 developers-reference_3.4.12_all.deb
 577280a48fa0857d2e5d3b0e5da105e31c60e3dc 867304 developers-reference-de_3.4.12_all.deb
 3eadd11dc7bd7e8d44548941c65745b7c0094538 849996 developers-reference-fr_3.4.12_all.deb
 4446767bc482f2e6f12ef31bb3a42b50eaba07d8 1321782 developers-reference-ja_3.4.12_all.deb
Checksums-Sha256:
 2d795f51b980051870d4a76993b3ad78eb58c6d1fd5ebc30d44caac0d5aa7f90 2273 developers-reference_3.4.12.dsc
 410e801ac5e3f3f0fc851c793b96202096cd689be309260b76b307cc01e17377 445432 developers-reference_3.4.12.tar.xz
 e8b3a7fa85ba26fef10568c2edf9f8c5a7cca97057c3af0254f7d0688f75445b 779112 developers-reference_3.4.12_all.deb
 ddc72406df7d89350b236b703cc616788303a88a35ee5eb2da15c72c0a9091b3 867304 developers-reference-de_3.4.12_all.deb
 6e870674b663873a9572eddcd2ee54239d1e80a1e0d00a17a9de567779ee8f58 849996 developers-reference-fr_3.4.12_all.deb
 88f7fa42a23dfbe3799d802c78a15c81078c397cf1c3894b614c1812114daaa8 1321782 developers-reference-ja_3.4.12_all.deb
Files:
 f90622984a3bd7f6f0e1517032e18f10 779112 doc optional developers-reference_3.4.12_all.deb
 d62573b7e138f1fbc9b6ee7df183f6ff 867304 doc optional developers-reference-de_3.4.12_all.deb
 db401a047359ea0e9861a7c794a4ddd6 849996 doc optional developers-reference-fr_3.4.12_all.deb
 f58e389c438230d10476e2b607babed2 1321782 doc optional developers-reference-ja_3.4.12_all.deb
 443776ff9cf68b1950992fcf0a0dd1ad 2273 doc optional developers-reference_3.4.12.dsc
 83a39029463496c3327ee296144e6348 445432 doc optional developers-reference_3.4.12.tar.xz

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=dYWu
-----END PGP SIGNATURE-----

--- End Message ---

Reply to: