From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from pigeon.gentoo.org ([69.77.167.62] helo=lists.gentoo.org) by finch.gentoo.org with esmtp (Exim 4.60) (envelope-from ) id 1JC2Xs-00042O-9t for garchives@archives.gentoo.org; Tue, 08 Jan 2008 00:42:20 +0000 Received: from pigeon.gentoo.org (localhost [127.0.0.1]) by pigeon.gentoo.org (Postfix) with SMTP id 4D9E8E0869; Tue, 8 Jan 2008 00:42:18 +0000 (UTC) Received: from smtp03.tky.fi (smtp03.tky.fi [82.130.63.73]) by pigeon.gentoo.org (Postfix) with SMTP id 0401AE0869 for ; Tue, 8 Jan 2008 00:42:17 +0000 (UTC) Received: from [82.130.46.201] ([82.130.46.201]) by smtp03.tky.fi (SMSSMTP 4.1.9.35) with SMTP id M2008010802421614897 for ; Tue, 08 Jan 2008 02:42:16 +0200 Message-ID: <4782C6E5.3060804@gentoo.org> Date: Tue, 08 Jan 2008 02:42:13 +0200 From: =?UTF-8?B?UGV0dGVyaSBSw6R0eQ==?= User-Agent: Thunderbird 2.0.0.9 (X11/20071124) Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: List-Id: Gentoo Linux mail X-BeenThere: gentoo-dev@lists.gentoo.org Reply-to: gentoo-dev@lists.gentoo.org MIME-Version: 1.0 To: gentoo-dev@lists.gentoo.org Subject: Re: [gentoo-dev] Re: Re: Monthly Gentoo Council Reminder for January References: <20080101103002.083C4652C4@smtp.gentoo.org> <54551.192.168.2.159.1199365359.squirrel@www.aei-tech.com> <477D75CA.1030003@gentoo.org> <20080104000155.23e056b4@snowcone> <20080104004653.039f488e@snowcone> <20080104012750.63f4f23a@snowcone> <63044.68.54.223.178.1199445791.squirrel@www.aei-tech.com> <20080104210213.50a99e6b@snowcone> <61164.68.54.223.178.1199485599.squirrel@www.aei-tech.com> <20080104223754.3fb48b85@snowcone> <1199506818.7609.30.camel@inertia.twi-31o2.org> <20080105043233.0935d2f8@snowcone> <20080105124751.0bef4908@gentoo.org> <20080106003246.6e4b6425@snowcone> <20080106013630.7e0a504b@snowcone> <47803A61.7000600@gentoo.org> <20080106022402.01174707@snowcone> <47803DA9.10000@gentoo.org> <20080106023852.25b42e4b@snowcone> <47804281.3010000@gentoo.org> <20080106025825.2bedc1f1@snowcone> In-Reply-To: <20080106025825.2bedc1f1@snowcone> X-Enigmail-Version: 0.95.6 OpenPGP: url=http://users.tkk.fi/~praty/public.asc Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="------------enig773CAD5BB5C36A10544BD6FF" X-Archives-Salt: 2c92256e-6b6d-4fcb-9e35-3847250676f1 X-Archives-Hash: 630d08a6e7caefcb0f50903356532eea This is an OpenPGP/MIME signed message (RFC 2440 and 3156) --------------enig773CAD5BB5C36A10544BD6FF Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: quoted-printable Ciaran McCreesh kirjoitti: > On Sat, 05 Jan 2008 20:52:49 -0600 > Martin Jackson wrote: >> That's making the assumption that anyone looked at it, of course. >> Please note comment #9 on >> http://bugs.gentoo.org/show_bug.cgi?id=3D198346. It was still ~8 days= >> from then that the setuptools keyword was added. >> >> So, we have examples of impact due to delay in keywords/etc. Shall >> we proceed with the discussion of what to do about it? >=20 > http://www.gentoo.org/security/en/vulnerability-policy.xml >=20 > The target for that GLSA was 20 days. 8 days is well within target. > What are you moaning about? >=20 Well sqlite has been security vulrenable for two months now=20 http://bugs.gentoo.org/show_bug.cgi?id=3D194812 Here is the comment from security for remaining arch teams to speed=20 things up: http://bugs.gentoo.org/show_bug.cgi?id=3D194812#c8 Regards, Petteri --------------enig773CAD5BB5C36A10544BD6FF Content-Type: application/pgp-signature; name="signature.asc" Content-Description: OpenPGP digital signature Content-Disposition: attachment; filename="signature.asc" -----BEGIN PGP SIGNATURE----- Version: GnuPG v2.0.8 (GNU/Linux) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org iEYEARECAAYFAkeCxuUACgkQcxLzpIGCsLREeACffh+mUCWHrqk160MXHJLBdJ9t LrEAnR75ngQEwFZcFbHB86l3cYuSJqHn =9MtU -----END PGP SIGNATURE----- --------------enig773CAD5BB5C36A10544BD6FF-- -- gentoo-dev@lists.gentoo.org mailing list