Bug#644108: unsafe use of eval in Digest->new()

Dominic Hargreaves dom at earth.li
Mon Oct 3 17:51:27 UTC 2011


On Mon, Oct 03, 2011 at 04:01:50PM +0200, Moritz Mühlenhoff wrote:
> perl-modules from Squeeze also contains 1.16, just like libdigest-perl.
> What's the purpose of this package, then? 
> 
> Wouldn't it rather make sense to drop standalone packages for all
> modules present in perl-modules?

Where the version is the same or lower than that provided by perl-modules
(or perl), yes. In most cases I think these get caught in unstable,
although that might not have happened so much in squeeze and before.
The plan is to keep such redundant packages out of testing, certainly.

-- 
Dominic Hargreaves | http://www.larted.org.uk/~dom/
PGP key 5178E2A5 from the.earth.li (keyserver,web,email)






More information about the Perl-maintainers mailing list