[Pkg-rust-maintainers] Bug#955638: Please update cargo - it's holding up a firefox update, impacting security

jnqnfe at gmail.com jnqnfe at gmail.com
Sun Apr 12 22:53:44 BST 2020


Control: severity -1 serious

On Sat, 4 Apr 2020 14:17:43 +0100 Ximin Luo <infinity0 at debian.org>
wrote:
> Yes, I will update cargo immediately after I get rustc 1.42 into
Debian, which is currently blocked on NEW.

Hi Ximin,

It's been a couple days since rustc entered unstable, and no sign yet
of cargo.

Firefox v75 is currently held up waiting upon cargo being updated.
Firefox v75 was released five days ago (and been queued for unstable
for four), and as usual it comes with a bunch of very important
security fixes.

I'm sure you are probably working on this already, but _please_ make
addressing this your top priority. We're relying upon you. Not wanting
to be overly dramatic, but considering the importance of a secure web
browser, the security of many Sid users has been at stake these past
few days waiting upon your getting this done.

Regards,
Lyndon



More information about the Pkg-rust-maintainers mailing list