[Fedora-packaging] critical path security update policy

Matthew Miller mattdm at fedoraproject.org
Sun Apr 19 02:17:35 UTC 2015


On Sun, Apr 19, 2015 at 12:06:30AM +0200, Björn Persson wrote:
> When the maintainer Martin Stransky submitted the update he could have
> chosen to set the stable karma threshold to 1 or 2. Then the process of
> pushing the update to stable would have started automatically as soon as
> the critical path requirement was fulfilled. But since Martin left the

That's not necessarily good either. A bad update intended to fix a
critical security problem can be worse than the issue it was meant to
fix.


-- 
Matthew Miller
<mattdm at fedoraproject.org>
Fedora Project Leader


More information about the packaging mailing list