On Friday 10 October 2008, Ciaran McCreesh wrote: > On Fri, 10 Oct 2008 09:32:44 +0300 > > Mart Raudsepp <[EMAIL PROTECTED]> wrote: > > > Of those, and those in overlays, and those that are going to be > > > committed over the next few weeks, how many use src_prepare to > > > apply security related patches? > > > > A round zero. Security patches are going stable soon after entering > > portage tree, and EAPI=2 ebuilds can not go stable yet, as there is > > no package manager supporting EAPI=2 that is going to be stable in > > the next week or two (so maintainers make sure they don't use > > EAPI=2 for security fix revisions). > > Oh really? So you're absolutely certain there aren't and won't soon > be any EAPI 2 bumps of non-EAPI 2 versions that include security > patches?
This would not affect stable users, as Mart pointed out. ~arch users should keep their systems up-to-date anyway (including their PM), and should be aware their security support is limited to providing updates. Robert
signature.asc
Description: This is a digitally signed message part.