On 3/18/19 11:05 AM, Martin Jansa wrote:
> Are there (m)any people complaining that stable branches doesn't get
> enough bugfix updates (not counting those requesting the actual
> backport, because they see the bug in their product)?

On the commercial side, I am starting to hear rumblings of people asking for
minor (stable) version upgrades instead of individual patches.  Precisely due to
what RP mentioned in the original thread.  Bugs/CVEs where does one end and the
other begin?

The message is starting to get to end users that they want versions that are
declared 'fixed' by the upstreams for security issues... and they're
understanding of bug fixes as well.

As various security regulations start to take hold throughout the industry, I
expect more and more of this as the argument for only simple backports to be
reduced.   We are at a point in time where we can help shape the future
direction of the embedded industry vs it being dictated to us when it's
difficult or too late for us to change behavior.

--Mark

> Regards,
> 
> 
> _______________________________________________
> Openembedded-architecture mailing list
> [email protected]
> http://lists.openembedded.org/mailman/listinfo/openembedded-architecture
> 

_______________________________________________
Openembedded-architecture mailing list
[email protected]
http://lists.openembedded.org/mailman/listinfo/openembedded-architecture

Reply via email to