[Pkg-zsh-devel] Wheezy update of zsh?

Axel Beckert abe at debian.org
Wed Feb 28 22:50:56 UTC 2018


Hi Antoine,

Antoine Beaupre wrote:
> The Debian LTS team would like to fix the security issues which are
> currently open in the Wheezy version of zsh:
> 
> https://security-tracker.debian.org/tracker/CVE-2017-18206
> https://security-tracker.debian.org/tracker/CVE-2016-10714
> https://security-tracker.debian.org/tracker/CVE-2014-10072
> https://security-tracker.debian.org/tracker/CVE-2014-10071
> https://security-tracker.debian.org/tracker/CVE-2014-10070
> 
> Would you like to take care of this yourself?

At least I'm not keen on it. I'm rather working on getting rid of all
my remaining Wheezy installations (at least 5 or so) and upgrade them,
preferably twice in a row. ;-)

Anyways: Wheezy was the first Debian release where Zsh was
team-maintained and hence it should be not a too ugly package to
update. If you have questions on the background of some aspects, feel
free to ask.

I can't really talk for all team members, but I don't expect much of a
different response from most of them given their current busyness on
other topics.

So feel free to go ahead.

> If you don't want to take care of this update, it's not a problem, we
> will do our best with your package. Just let us know whether you would
> like to review and/or test the updated package before it gets released.

I do not demand to test the package, but I offer to do so. I actually
feel a little bit obliged towards the LTS team to do at least that.
:-)

So feel free to contact me (or the pkg-zsh-devel list) once a package
is available for testing.

> You can also opt-out from receiving future similar emails in your
> answer and then the LTS Team will take care of zsh updates
> for the LTS releases.

Should be generally fine. But if possible use only the mailing list
for that: All Uploaders are subscribed AFAIK and some more people who
might be able to help (Daniel Shahaf comes to my mind :-) are
subscribed, too.

		Regards, Axel
-- 
 ,''`.  |  Axel Beckert <abe at debian.org>, https://people.debian.org/~abe/
: :' :  |  Debian Developer, ftp.ch.debian.org Admin
`. `'   |  4096R: 2517 B724 C5F6 CA99 5329  6E61 2FF9 CD59 6126 16B5
  `-    |  1024D: F067 EA27 26B9 C3FC 1486  202E C09E 1D89 9593 0EDE
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 836 bytes
Desc: Digital signature
URL: <http://lists.alioth.debian.org/pipermail/pkg-zsh-devel/attachments/20180228/414ba542/attachment.sig>


More information about the Pkg-zsh-devel mailing list