Thorsten Glaser <> writes:

> As opposed to, for example, MySQL and Iceweasel, for which
> there is practically a blanket permission to upload new
> upstream releases unchecked into stable. (There appears to
> be one for Mediawiki and OpenJDK too, which do their security
> backporting themselves. This could apply to ffmpeg as well.)

Those are the ones I referenced where we're holding our nose and going
with a much less than ideal security policy because we don't have another
good option.  Those aren't packages that we can realistically drop from
the archive.

The same may apply to FFmpeg as well, but it's not a happy situation to be

Russ Allbery (               <>

To UNSUBSCRIBE, email to
with a subject of "unsubscribe". Trouble? Contact

Reply via email to