tech-pkg archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: Freeze for pkgsrc-2012Q4 on 2012/12/17 23:59 UTC



On Wed, Dec 19, 2012 at 09:35:39AM +0100, Ignatios Souvatzis wrote:
> Hi,
> 
> On Sun, Dec 16, 2012 at 08:09:48PM +0100, Alistair Crooks wrote:
> 
> > This is just a quick note to say that we'll be starting the freeze for
> > new functionality in the pkgsrc repo at 23:59 UTC on December 17th
> > 2012, and expect it to last for around 2 weeks.
> 
> I've looked at what pkg_admin audit told me about xen*41, and found that
> at least one of them is easily doable, namely
> 
> http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-2625
> 
> The upstream patch also fixes the related CVE-2012-4544. Details on
> XSA-25, which handles both.
> 
> I herewith ask for permission to apply the below to xentools41 (a
> leaf pkg). The patch file is the upstream patch with the relative
> paths adjusted.

Please go ahead.

Thanks,
Alistair


Home | Main Index | Thread Index | Old Index