[Bug 1200069] CVE-2015-1464 rt: session hijaking flaw in RSS feed handler

bugzilla at redhat.com bugzilla at redhat.com
Tue Mar 10 05:22:00 UTC 2015


https://bugzilla.redhat.com/show_bug.cgi?id=1200069



--- Comment #5 from Jason Tibbitts <tibbs at math.uh.edu> ---
Revert if you like.  Big deal.  What you're supposed to think of this is that
"hey, he did some work, and that's nice; isn't it great to have a community of
people working on things".  Or, I guess, whatever you like.  It's in git.  You
can roll it back if you like.  I didn't kill your work in the least.  That's
kind of the point of having a proper version control system.  Stash your
changes, commit a revert, pop your stash, bump the release and commit.  Should
take you, what, not even an extra minute?

I didn't change anything in the package that didn't need to be changed to get
things to build, except for the adjusting of the chmod +x list near the end. 
You could perhaps disagree with using a bunch of rm statements to delete files
instead of a patch, because frankly using a patch just means it's one
additional thing you absolutely have to rebase when even one byte of one of
those files changes, but hey, it's up for discussion.  I didn't push anything
anywhere other than rawhide.  Not sure how else you believe collaboration is
supposed to work, honestly.

-- 
You are receiving this mail because:
You are on the CC list for the bug.
Unsubscribe from this bug https://bugzilla.redhat.com/token.cgi?t=1SToiEygyI&a=cc_unsubscribe



More information about the perl-devel mailing list