Hi Christoph,

On Wed, Nov 19, 2025 at 08:31:28PM +0100, Christoph Berg wrote:
> The TC has been discussing the issue with all involved parties and Marc, the
> sudo maintainer has agreed to accept advice, so we will just do that instead 
> of
> overruling him.

Thank you for the summary. With the exception of the interaction with
Ben (which I appear to have missed), it accurately matches my
understanding of the matter at hand. A minor aspect missing in the
summary is that -fcf-protection is actually controlling two distinct
features with one flag, one of which poses the problem we've been
discussing. The other feature likewise does not apply to i386.
Therefore, this addition does not affect the conclusion.

> I am calling for votes on this ballot:
> 
>   [A] The TC advises the sudo maintainer to update the sudo package in 
> bookworm
>   such that on the i386 architecture, the `-fcf-protection` compiler flag is 
> no
>   longer used.
> 
>   [F] Further discussion.

I vote A > F.

Helmut

Attachment: signature.asc
Description: PGP signature

Reply via email to