[prev in list] [next in list] [prev in thread] [next in thread] 

List:       kde-release-team
Subject:    Contacting the release coordinators re: critical security vuln
From:       Jeff Mitchell <mitchell () kde ! org>
Date:       2010-02-15 7:21:15
Message-ID: 4B78F5EB.1000802 () kde ! org
[Download RAW message or body]

[Attachment #2 (multipart/signed)]


As you guys probably know by now, we have a patch for a critical
security vuln. Although it was disclosed publicly, the packagers were
notified on the kde-packager list today and we're giving packagers a
couple of days to roll new packages (Monday is a holiday here in the US).=


However, the security policy says to contact the release coordinators in
the event of a situation where an immediate fix is necessary. I'm not
sure whether this is simply so one of you guys can put it out on
kde-announce or whether it's because we're supposed to roll new, patched
tarballs.

So consider this my notification to you guys that whatever it is that is
supposed to be done needs to start getting done  :-)  Sorry to be vague,
but I'll answer any direct questions if possible.

--Jeff


["signature.asc" (application/pgp-signature)]

_______________________________________________
release-team mailing list
release-team@kde.org
https://mail.kde.org/mailman/listinfo/release-team


[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic