This is the mail archive of the libc-alpha@sourceware.org mailing list for the glibc project.


Index Nav: [Date Index] [Subject Index] [Author Index] [Thread Index]
Message Nav: [Date Prev] [Date Next] [Thread Prev] [Thread Next]
Other format: [Raw text]

Re: glibc 2.18 is frozen as of 1:00pm EST.


On Tue, 2 Jul 2013, Siddhesh Poyarekar wrote:

> On Tue, Jul 02, 2013 at 12:44:27PM -0400, Carlos O'Donell wrote:
> > Only bug fixes should go in for serious issues.
> > 
> > As the release manager David has final say into what
> > gets checked in as a fix right now. We should be
> > assisting him in making those decisions.
> 
> I'll make the first exception request for a CVE fix (or set of fixes)
> I posted earlier this week to resolve CVE-2012-4412 and CVE-2012-4424:

In general, if a fix would be appropriate for release branches it should 
be appropriate during the freeze (and I'd generally expect that CVE fixes 
should be backported, as well as fixes for similar issues (buffer 
overflow, integer overflow etc.) that don't have CVE numbers).

-- 
Joseph S. Myers
joseph@codesourcery.com


Index Nav: [Date Index] [Subject Index] [Author Index] [Thread Index]
Message Nav: [Date Prev] [Date Next] [Thread Prev] [Thread Next]