HEADSUP: Security updates outstanding

Corinna Vinschen corinna-cygwin@cygwin.com
Tue Aug 19 09:56:00 GMT 2008


On Aug 18 14:08, Yaakov (Cygwin Ports) wrote:
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA256
> 
> Corinna Vinschen wrote:
> > Personally I'm kind of not interested to go this road.  If I learn about
> > a problem in an upstream package, I update.  If anybody else want's to
> > take over responsibility for security problems, I certainly don't stand
> > in the way, of course.
> 
> While that seems to work for you, when applied to the entire distro
> there are some pitfalls:
> [...]
> Having a security team and a private list would allow us to deal with
> all these things responsibly.

I thought that's integrated in the "I certainly don't stand in the way"
part.  I'm just not interested having to take over that responsibility
or having to drive this process through.


Corinna

-- 
Corinna Vinschen                  Please, send mails regarding Cygwin to
Cygwin Project Co-Leader          cygwin AT cygwin DOT com
Red Hat



More information about the Cygwin-apps mailing list