[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Sid and security



On Sat, Aug 21, 2004 at 04:32:41PM +0100, Oliver Elphick wrote:
> On Sat, 2004-08-21 at 16:25, Michael Satterwhite wrote:
> > -----BEGIN PGP SIGNED MESSAGE-----
> > Hash: SHA1
> > 
> > I note that when the Sarge installer created my sources.list file, it put a 
> > line in as follows:
> > 
> > 	deb http://security.debian.org/ testing/updates main
> ...
> > Question: Am I correct that a parallel location for unstable is not
> > needed?  
> 
> There is none.  It would be far too much effort for the security team to
> cope with.

Please correct me if I'm misunderstanding all this...

Security team finds hole.
Security team fixes hole.
Security team NMU's woody-proposed-updates (exactly what section doesn't
                                            really matter.)
Security team contacts maintainer.
Maintainer applies patch.
Maintainer uploads to sid.



Reply to: