
Ciaran McCreesh <[EMAIL PROTECTED]>:
> > Who knows how long that request would have languished if not for
> > the security bug?
> Who knows indeed... Wouldn't the Council be better served with
> examples where we do know? 

<URL:http://tinyurl.com/ypoxyg> is a list of closed security bugs where
mips is still cced.  163 is the total number, where surely some
duplicates can be found (PHP, Mozilla products), but we can assume that
quite an extensive number of packages which are vulnerable stay still
in the tree.
 Normal policy is to remove all vulnerable ebuilds which is not
possible if a vulnerable version is the only one keyworded mips.  This
would break an even bigger rule.
 We are not here to accuse anyone but to find a solution to this
problem...and no, I am not in the (financial) position to buy MIPS
hardware nor am I really interested in having it.


Christian Faulhammer, Gentoo Lisp project
<URL:http://www.gentoo.org/proj/en/lisp/>, #gentoo-lisp on FreeNode


Attachment: signature.asc
Description: PGP signature

Reply via email to