public inbox for linux-xfs@vger.kernel.org
 help / color / mirror / Atom feed
* Bug#793496: About the security issues affecting xfsprogs in Squeeze
@ 2015-07-24 15:57 Raphael Hertzog
  2015-07-27  3:25 ` Nathan Scott
  0 siblings, 1 reply; 2+ messages in thread
From: Raphael Hertzog @ 2015-07-24 15:57 UTC (permalink / raw)
  To: Nathan Scott; +Cc: 793496, debian-lts

Hello Nathan,

the Debian LTS team recently reviewed the security issue(s) affecting your
package in Squeeze:
https://security-tracker.debian.org/tracker/CVE-2012-2150

We decided that we would not prepare a squeeze security update (usually
because the security impact is low and that we concentrate our limited
resources on higher severity issues and on the most widely used packages).
That said the squeeze users would most certainly benefit from a fixed
package.

If you want to work on such an update, you're welcome to do so. Please
try to follow the workflow we have defined here:
http://wiki.debian.org/LTS/Development

If that workflow is a burden to you, feel free to just prepare an
updated source package and send it to debian-lts@lists.debian.org
(via a debdiff, or with an URL pointing to the the source package,
or even with a pointer to your packaging repository), and the members
of the LTS team will take care of the rest. However please make sure to
submit a tested package.

Thank you very much.

Raphaël Hertzog,
  on behalf of the Debian LTS team.
-- 
Raphaël Hertzog ◈ Debian Developer

Support Debian LTS: http://www.freexian.com/services/debian-lts.html
Learn to master Debian: http://debian-handbook.info/get/

_______________________________________________
xfs mailing list
xfs@oss.sgi.com
http://oss.sgi.com/mailman/listinfo/xfs

^ permalink raw reply	[flat|nested] 2+ messages in thread

* Bug#793496: About the security issues affecting xfsprogs in Squeeze
  2015-07-24 15:57 Bug#793496: About the security issues affecting xfsprogs in Squeeze Raphael Hertzog
@ 2015-07-27  3:25 ` Nathan Scott
  0 siblings, 0 replies; 2+ messages in thread
From: Nathan Scott @ 2015-07-27  3:25 UTC (permalink / raw)
  To: Raphael Hertzog, 793496; +Cc: debian-lts

Hi Raphaël,

----- Original Message -----
> [...]
> We decided that we would not prepare a squeeze security update (usually
> because the security impact is low and that we concentrate our limited
> resources on higher severity issues and on the most widely used packages).
> That said the squeeze users would most certainly benefit from a fixed
> package.

I tend to agree - seems like a fairly minor issue & I don't have a huge
amount of spare time either.  I'll concentrate on getting next upstream
release with the fix uploaded to unstable as soon as possible though -
but I'm not likely to get to backporting this one.

Thanks for the heads-up!

cheers.

--
Nathan

_______________________________________________
xfs mailing list
xfs@oss.sgi.com
http://oss.sgi.com/mailman/listinfo/xfs

^ permalink raw reply	[flat|nested] 2+ messages in thread

end of thread, other threads:[~2015-07-27  3:27 UTC | newest]

Thread overview: 2+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2015-07-24 15:57 Bug#793496: About the security issues affecting xfsprogs in Squeeze Raphael Hertzog
2015-07-27  3:25 ` Nathan Scott

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox