Hi, I just added vmware-package to the package-tags file to reflect that we can't provide security support for this package (Cced maintainers to inform them of this). The vmware-package comes with a script that uses an upstream tarball to create .deb files. The versions and md5sums of the tarballs are hardcoded in the script and the user needs to download the tarball himself. As far as I see this is outdated and won't even work currently. But we somehow need to reflect that we can't support this package in the tracker data. So far issues regarding vmware got a fix status or an NFU but in my opinion none of this is really appropriate. For stable there is no support anyway but for unstable we traditionally supported packages in case we have some spare time and the issue is easy fixable. So I think we need to make a decision at this point to either don't support contrib/non-free completely and mark these issues as NFU or we need to introduce a tag for unsupported packages (Florian what do you think?). Opinions? Kind regards Nico -- Nico Golde - http://www.ngolde.de - nion@jabber.ccc.de - GPG: 0x73647CFF For security reasons, all text in this mail is double-rot13 encrypted.
Attachment:
pgpv_BVr9JT4a.pgp
Description: PGP signature