From: Tom Wijsman <TomWij@gentoo.org>
To: gentoo-dev@lists.gentoo.org
Cc: pinkbyte@gentoo.org
Subject: Re: [gentoo-dev] rfc: stabilization policies
Date: Wed, 21 Aug 2013 14:36:55 +0200 [thread overview]
Message-ID: <20130821143655.04703d91@TOMWIJ-GENTOO> (raw)
In-Reply-To: <5214B104.4090104@gentoo.org>
[-- Attachment #1: Type: text/plain, Size: 2170 bytes --]
On Wed, 21 Aug 2013 16:22:28 +0400
Sergey Popov <pinkbyte@gentoo.org> wrote:
> 21.08.2013 14:29, Tom Wijsman пишет:
> > On Wed, 21 Aug 2013 13:42:56 +0400
> > You do draw assumptions, because you don't take a look; please do:
> >
> > https://bugs.gentoo.org/buglist.cgi?quicksearch=assignee%3Asecurity%40gentoo.org%20CC%3Akernel%40gentoo.org
> >
> > Sort by "Changed" such that the newest appear on top.
> >
>
> And how should i must knew that these bugs related to particular
> versions if they do not contain affected versions(i know that ALL
> versions may be affected in particular time, but we are talking about
> new stable kernel which bring fixes) and no dependant bugs in stable
> request? How can i, not beeing member of Gentoo Kernel Team, discover
> that it is security stabilization and which security bugs, registered
> in our bugzilla, will gone when i will upgrad to it?
Our dev 'ago' is on top of all that, but we really shouldn't rely on a
single person; the lack of manpower causes uncertainty here, and it is
because of that that we have to regard any stabilization as security.
Given the kernel volume, I think even CVE's don't cover everything...
> Honestly, we should revive Kernel Security subproject somehow, cause
> this mess may confuse even ordinary developers.
+1 The latest kernel related discussion(s) also make it clear there is
a need for more documentation on how things currently work; because
people that are not aware what happens upstream are making assumptions
that don't reflect reality, and this makes it harder to reach consensus.
With the hope of one or two people wanting to help out on genpatches
(although I haven't heard from them lately); I'll try to document
upstream's release cycle as well as how our current maintenance is
done as part of the move to Gentoo Wiki, together with the rest we
could then also clarify some kernel team policies and guidelines...
--
With kind regards,
Tom Wijsman (TomWij)
Gentoo Developer
E-mail address : TomWij@gentoo.org
GPG Public Key : 6D34E57D
GPG Fingerprint : C165 AF18 AB4C 400B C3D2 ABF0 95B2 1FCD 6D34 E57D
[-- Attachment #2: signature.asc --]
[-- Type: application/pgp-signature, Size: 490 bytes --]
next prev parent reply other threads:[~2013-08-21 12:37 UTC|newest]
Thread overview: 94+ messages / expand[flat|nested] mbox.gz Atom feed top
2013-08-20 18:19 [gentoo-dev] rfc: stabilization policies William Hubbs
2013-08-20 18:28 ` Ian Stakenvicius
2013-08-20 19:31 ` Tom Wijsman
2013-08-21 6:51 ` [gentoo-dev] " Michael Palimaka
2013-08-21 8:10 ` Tom Wijsman
2013-08-21 8:23 ` Michael Palimaka
2013-08-21 8:51 ` Tom Wijsman
2013-08-20 19:37 ` [gentoo-dev] " Ciaran McCreesh
2013-08-20 19:48 ` Tom Wijsman
2013-08-21 7:54 ` Sergey Popov
2013-08-21 8:08 ` [gentoo-dev] " Michael Palimaka
2013-08-21 8:22 ` Pacho Ramos
2013-08-21 8:57 ` Tom Wijsman
2013-08-21 11:27 ` Pacho Ramos
2013-08-21 8:13 ` [gentoo-dev] " Tom Wijsman
2013-08-21 8:32 ` Sergey Popov
2013-08-21 9:13 ` Tom Wijsman
2013-08-21 9:54 ` Sergey Popov
2013-08-21 10:36 ` Tom Wijsman
2013-08-21 12:16 ` Sergey Popov
2013-08-21 12:25 ` Tom Wijsman
2013-08-21 12:43 ` Pacho Ramos
2013-08-31 16:37 ` Rick "Zero_Chaos" Farina
2013-08-31 17:29 ` How to find a mentor, WAS: " Jeroen Roovers
2013-08-31 18:44 ` Tom Wijsman
2013-08-31 21:57 ` Rick "Zero_Chaos" Farina
2013-08-31 18:27 ` Tom Wijsman
2013-08-31 18:45 ` Pacho Ramos
2013-08-31 19:57 ` Tom Wijsman
2013-08-31 21:59 ` Rick "Zero_Chaos" Farina
2013-09-01 10:30 ` Thomas Sachau
2013-09-01 10:42 ` hasufell
2013-09-01 11:58 ` Markos Chandras
2013-08-21 7:52 ` Sergey Popov
2013-08-20 18:29 ` Wyatt Epp
2013-08-20 18:32 ` Ian Stakenvicius
2013-08-20 18:45 ` Dirkjan Ochtman
2013-08-20 19:45 ` Tom Wijsman
2013-08-20 19:42 ` Tom Wijsman
2013-08-21 7:57 ` Sergey Popov
2013-08-21 8:17 ` Tom Wijsman
2013-08-21 8:21 ` Sergey Popov
2013-08-21 9:16 ` Tom Wijsman
2013-08-21 11:19 ` Pacho Ramos
2013-08-21 9:17 ` Manuel Rüger
2013-08-21 9:50 ` Sergey Popov
2013-08-21 10:45 ` Tom Wijsman
2013-08-21 13:38 ` Wyatt Epp
2013-08-21 16:03 ` Sergey Popov
2013-08-20 19:24 ` Tom Wijsman
2013-08-20 19:41 ` Rich Freeman
2013-08-20 20:06 ` Tom Wijsman
2013-08-21 8:07 ` Sergey Popov
2013-08-21 8:25 ` Tom Wijsman
2013-08-21 8:46 ` Sergey Popov
2013-08-21 9:28 ` Tom Wijsman
2013-08-21 9:42 ` Sergey Popov
2013-08-21 10:29 ` Tom Wijsman
2013-08-21 12:22 ` Sergey Popov
2013-08-21 12:36 ` Tom Wijsman [this message]
2013-08-21 14:27 ` Ian Stakenvicius
2013-08-21 14:56 ` Tom Wijsman
2013-08-21 19:27 ` Rich Freeman
2013-08-21 15:02 ` Rich Freeman
2013-08-20 20:00 ` Alan McKinnon
2013-08-20 20:22 ` Tom Wijsman
2013-08-21 8:09 ` Sergey Popov
2013-08-21 7:04 ` [gentoo-dev] " Michael Palimaka
2013-08-21 8:30 ` Tom Wijsman
2013-08-21 9:05 ` Michael Palimaka
2013-08-20 20:12 ` [gentoo-dev] " Michael Orlitzky
2013-08-20 21:25 ` Walter Dnes
2013-08-21 4:35 ` Ben de Groot
2013-08-21 11:31 ` Michael Orlitzky
2013-08-21 4:51 ` [gentoo-dev] " Jonathan Callen
2013-08-30 19:17 ` [gentoo-dev] " Hans de Graaff
2013-08-20 20:16 ` hasufell
2013-08-20 21:05 ` Tom Wijsman
2013-08-20 21:54 ` Wyatt Epp
2013-08-21 10:13 ` [gentoo-dev] " Michael Palimaka
2013-08-21 10:31 ` Tom Wijsman
2013-08-21 10:43 ` Michael Palimaka
2013-08-20 21:03 ` [gentoo-dev] " Andreas K. Huettel
2013-08-21 0:42 ` Rich Freeman
2013-08-21 1:54 ` Doug Goldstein
2013-08-21 6:53 ` Alan McKinnon
2013-08-21 8:39 ` Tom Wijsman
2013-08-21 8:49 ` Sergey Popov
2013-08-21 9:31 ` Tom Wijsman
2013-08-21 9:18 ` Andreas K. Huettel
2013-08-21 12:13 ` Rich Freeman
2013-08-21 3:23 ` "Paweł Hajdan, Jr."
2013-08-21 6:56 ` joshua saddler
[not found] <20130820222554.4e566779@TOMWIJ-GENTOO>
2013-08-21 6:22 ` Alan McKinnon
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=20130821143655.04703d91@TOMWIJ-GENTOO \
--to=tomwij@gentoo.org \
--cc=gentoo-dev@lists.gentoo.org \
--cc=pinkbyte@gentoo.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox