[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: upload prosody to stable-proposed-updates



[full quote for Luciano's benefit]

Hi,

On 2014-04-15 9:06, Enrico Tassi wrote:
Hello, the prosody XMPP server recently received a security update,
namely 0.8.2-4+deb7u1 for stable, 0.9.4-1 for testing.

Since stable and testing have different versions the upstream had to
produce a patch for the old 0.8.x branch, code that he is not anymore
familiar with.
While the patch he produced fixes the security bug it also introduces an
annoying bug related to compression that should afflict most XMPP
clients.  See:
  https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=743836

Would you allow an upload of prosody to stable-proposed-updates with the
extra patch fixing this bug?  The patch been tested by (see the replies
to #743836) and is available at:
  https://hg.prosody.im/0.8/raw-rev/278489ee6e34

I queried this with a member of the security team on IRC, and the result of the discussion was that as the regression was introduced via a security update it will also be fixed via the security archive. I've CCed Luciano, who released the initial update.

Regards,

Adam


Reply to: