New 5.x packages uploaded

Kris Kennaway kris at obsecurity.org
Sun Nov 14 19:16:43 PST 2004


On Mon, Nov 15, 2004 at 04:06:07AM +0100, Matthias Andree wrote:
> Kris Kennaway <kris at obsecurity.org> writes:
> 
> > I've uploaded new packages for 5.3-stable; they'll make their way onto
> > the ftp mirrors over the next day or so.  Included are the new
> > versions of GNOME and KDE, among others.
> 
> BTW, are we getting long-standing security issues in ports fixed, for
> instance cups-base, open-motif, others? Yeah I know send patches, but my
> ressources are limited and committers are also overworked already...
> 
> The general question I'd like to raise is how long will we allow ports
> with known security flaws linger around before they are marked BROKEN?

In general serious security flaws should be marked FORBIDDEN
immediately, and they generally are.  Fixing the security issues is up
to the community.

Kris
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 187 bytes
Desc: not available
Url : http://lists.freebsd.org/pipermail/freebsd-ports/attachments/20041114/82ac00d9/attachment-0001.bin


More information about the freebsd-ports mailing list