Hi,

On Thu, Jan 28, 2016 at 09:42:25AM -0800, kcrisman wrote:
> In some correspondence with William he notes:
> 
> I'll also note there is a "high severity" security update to openssl
> that came out today (version 1.0.2f) -- I hope Sage gets an updated
> package in a timely manner.

I usually do a check when Sage beta get a big number, or during a rc0 if
it comes earlier i thought, see
https://trac.sagemath.org/search?q=update+openssl&noquickjump=1&branch=on&milestone=on&ticket=on&wiki=on

Indeed, with our current framework, there is a benefit only for the next
release (the user's $SAGE_ROOT/build/pkgs/openssl is not updated on the
fly).

Note that it only affects people that do not use the openssl provided by
their distro.

Ciao,
Thierry



> https://www.openssl.org/news/secadv/20160128.txt
> 
> -- 
> You received this message because you are subscribed to the Google Groups 
> "sage-devel" group.
> To unsubscribe from this group and stop receiving emails from it, send an 
> email to [email protected].
> To post to this group, send email to [email protected].
> Visit this group at https://groups.google.com/group/sage-devel.
> For more options, visit https://groups.google.com/d/optout.

-- 
You received this message because you are subscribed to the Google Groups 
"sage-devel" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To post to this group, send email to [email protected].
Visit this group at https://groups.google.com/group/sage-devel.
For more options, visit https://groups.google.com/d/optout.

Reply via email to