Re: Git haas gone wild (Rust)

From: Matthias Andree <mandree_at_FreeBSD.org>
Date: Sat, 06 Sep 2025 13:17:22 UTC
Am 05.09.25 um 18:42 schrieb Michael Osipov:
> Folks,
> 
> you might want to enjoy or discuss: https://lore.kernel.org/ 
> git/20250904-b4-pks-rust-breaking-change-v1-0-3af1d25e0be9@pks.im/T/#t
> 
> Michael

This poses a bootstrapping problem, (if we need Git to get the Rust 
build for ports... there's a chicken-and-egg problem)
has implications on the support tiers everywhere,
and also a reproducibility problem to fend off supply chain attacks, 
with the long chain of Rust compilers you need to get something reliable?

Also the security claims of Rust seem to address only a small section of 
error classes, and many other bug classes will remain.


I think we should formally protest and pop their balloon (even if they 
discuss it's improperly done).

-- 
Matthias Andree
FreeBSD ports committer