Thanks Jeremy for working on this; I think you're right, a backport from
zesty makes sense. The diff is large and likely important for clients
especially in the early stages of a library; backporting 'the fix' alone
without the rest may introduce new issues; and tests are always good.

The trick is for this to be a security update, it needs to be built in a
PPA with _only_ the -security pocket enabled.

Can you make that happen? I don't know enough about the rest of the SRU
framework to know if the packages you've already submitted can be
steered that way or if they'd need to be removed and built elsewhere
first.

Thanks

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1643734

Title:
  privilege escalation via ptrace (CVE-2016-8659)

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/bubblewrap/+bug/1643734/+subscriptions

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to