This is the mail archive of the cygwin-apps mailing list for the Cygwin project.


Index Nav: [Date Index] [Subject Index] [Author Index] [Thread Index]
Message Nav: [Date Prev] [Date Next] [Thread Prev] [Thread Next]
Other format: [Raw text]

Re: HEADSUP: Security updates outstanding


On Aug 18 14:08, Yaakov (Cygwin Ports) wrote:
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA256
> 
> Corinna Vinschen wrote:
> > Personally I'm kind of not interested to go this road.  If I learn about
> > a problem in an upstream package, I update.  If anybody else want's to
> > take over responsibility for security problems, I certainly don't stand
> > in the way, of course.
> 
> While that seems to work for you, when applied to the entire distro
> there are some pitfalls:
> [...]
> Having a security team and a private list would allow us to deal with
> all these things responsibly.

I thought that's integrated in the "I certainly don't stand in the way"
part.  I'm just not interested having to take over that responsibility
or having to drive this process through.


Corinna

-- 
Corinna Vinschen                  Please, send mails regarding Cygwin to
Cygwin Project Co-Leader          cygwin AT cygwin DOT com
Red Hat


Index Nav: [Date Index] [Subject Index] [Author Index] [Thread Index]
Message Nav: [Date Prev] [Date Next] [Thread Prev] [Thread Next]