Dr. Stephen Henson wrote: > On Sat, Nov 07, 2009, Guenter wrote: > >> Hi Steve, >> Dr. Stephen Henson schrieb: >>> Oops, I forgot 0.9.8l is just 0.9.8k + the reneg patch and not 0.9.8-stable. >> hmmm, that is really not what many would expect now; f.e. all folks who >> reported bugs agaist 0.9.8k will now wonder why a version which is >> released 8 months later does *not* contain the fixes although the RTs >> where closed which normally indicate that the fix will show up with next >> release. >> > > It was decided that the volume of changes in 0.9.8-stable meant that a > 0.9.8k+reneg patch was the best option to get a fix out quickly with least > chance of any other issues.
And AIUI if the new draft RFC seems sensible, .8m follows quickly. Which suggests that trusting 0_9_8 branch would be sensible, so that the whole project feels comfortable shipping such bug fixes plus the full monty solution. ______________________________________________________________________ OpenSSL Project http://www.openssl.org Development Mailing List [email protected] Automated List Manager [email protected]
