[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Please consider allowing drupa_4.7.5-1 in etch



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Except that Drupal would still be a serious time drain for the Security
Team, as vulnerabilities occur regularly. Also, the previous
maintainers disappeared and left us with a package with very short
upstream maintenance cycles and which was hard to test.

I'm against making an exception; I'd first like to see how the new
group maintenance turns out until Lenny.

Just to make it clear on the security side, I (luigi) am in charge of drupal maintainance and will be until a proper team has been set up. My record with package maintainance is rather good (squid, sarg) and I've always provided Security Team with updated version of my packages in a short time.

New drupal package is a lot simpler (uses dbconfig-common instead of specially crafted database scripts) and has already be tested for a security upgrade in 4.7.5-1.

Still begging, but if I didn't make it we'll wait for Lenny. :-)

Regards,

- --
Luigi Gangitano -- <luigi@debian.org> -- <gangitano@lugroma3.org>
GPG: 1024D/924C0C26: 12F8 9C03 89D3 DB4A 9972  C24A F19B A618 924C 0C26


-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (Darwin)

iD8DBQFFvJGQ8ZumGJJMDCYRAujdAJkBrkIqlS2CuwR8DlAsjGJsLWjXIwCfWnz7
tDxDO0Nk0Z0+cXcAr5sdayg=
=Q6I+
-----END PGP SIGNATURE-----



Reply to: