[Apologies for managing to miss this earlier]

Hi,

On Sun, 2011-03-27 at 22:27 +0200, Guido Günther wrote:,
> I'd like to push iceowl 1.0~b1+dfsg2-2.squeeze1 to squeeze proposed
> updates. It contains the same updates as current icedove. 

Presumably this now requires a further update, in light of at least
MFSA2011-12?

> On Wed, Mar 23, 2011 at 10:15:16PM +0100, Moritz Mühlenhoff wrote:
> [..snip..] 
> > We should fix iceowl updates which only update the Mozilla copies via
> > s-p-u. If there're targeted vulnerabilities against iceowl (e.g. buffer
> > overflow during contact import), we can push these through s.d.o.

Given the lack of support from upstream for iceowl beta releases, do
they actually provide details of which portions of updates might be
iceowl-specific?

I do note that the discussion before the release about updating iceowl
in stable very much implied that security updates would be pushed via
the security archive, albeit not as the security team's top priority.

Regards,

Adam




--
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to