On Fri, 2002-12-13 at 11:54, David van Hoose wrote: > You are not alone. > I sent RedHat a message addressing the issue about how they are > releasing older packages with their set of security fixes rather than > helping patch the program's CVS so that ALL of the newer versions of the > program will be patched. I find that RedHat is in essence pulling a > Micro$oft in that they will not share. > I find it kind of iritating that RH just released an update for KDE > 3.0.3 instead of releasing 3.0.5 which had the same fixes. Some programs > should be tested, but others are already being tested and fixed on a > daily basis. > I think that if we all complain about this, that they might modify their > policy on security fixes. >
As one who has bee involved in a couple of pretty good sized development efforts, I don;t see this as not wanting to share but that backporting what, I am guessing, often amount to pretty self-contained security fixes, the testing cycle is shortend considerably rather than going after the latest and greated of a package as extensive as KDE with all the interdependencies. Got to be qucker in a lot of cases and the probablility of breaking somthing else is reduced considerably. Having said all that do I wish that RedHat could keep up with the enhancements and non security related bugfixes on the packages that I use? Yes. I am sure that if the powers that be at redhat knew how important I am, then they would try to keep my packages up to date:) I have to admit while I am not one of those cutting edge kid of folks ( I like my stuff to be stable and not require a lot of time figureing out what is wrong) I do get fed up with not having some of the latest features and am forced to upgrade my distro occasionally giving RH more $. Bret -- redhat-list mailing list unsubscribe mailto:[EMAIL PROTECTED]?subject=unsubscribe https://listman.redhat.com/mailman/listinfo/redhat-list
