MotU Security bug filing / Malone questions
Martin Pitt
martin.pitt at ubuntu.com
Fri Dec 9 08:41:54 GMT 2005
Hi!
Daniel Holbach [2005-12-07 8:22 +0100]:
> Am Mittwoch, den 07.12.2005, 07:51 +0100 schrieb Shot - Piotr
> Szotkowski:
> > What is the proper way to file security-related bugs on universe
> > packages? I filed #5297 (recent Trac vulnerabilities fixed in Debian)
> > on December 2nd, and I see Daniel Holbach assigned the bug the next day,
> > but now I'm wondering whether I can do anything more about it or will
> > the bug get it's share of security love in due time.
>
> thanks for taking so much care of this and posting it to the list, you
> clearly identified a bug in our processes.
It's not so much of a bug, but rather the lack of interested people.
> What do you all think about forming a security team? As I envision it,
> its members wouldn't have to be security experts per se, but get working
> on those issues as soon as they happen. Often enough Debian and/or
> Upstream are quick enough to fix it and we just have to make sure, we
> follow up.
>
> I'd highly appreciate it, if a lot of us would volunteer for this.
> Opinions? Who starts the team?
I would like to see this team and I'd be happy to do the coordination,
reviews, give a tutorial, etc. I just can't care for universe security
bugs myself, that really needs community effort. There have been some
interested guys in the past, and after some training they did very
well.
So, whoever wants to do a security update for universe, please do not
hesitate to contact me (IRC would be best to have a more direct
conversation, nick 'pitti'). If there should be several interested
people, we can also agree to a meeting to avoid telling the same stuff
several times.
Thanks for your interest!
Martin
--
Martin Pitt http://www.piware.de
Ubuntu Developer http://www.ubuntu.com
Debian Developer http://www.debian.org
In a world without walls and fences, who needs Windows and Gates?
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: Digital signature
Url : http://lists.ubuntu.com/archives/ubuntu-motu/attachments/20051209/8e08b0cf/attachment.pgp
More information about the Ubuntu-motu
mailing list