Thorsten Glaser <t...@debian.org> writes: > As opposed to, for example, MySQL and Iceweasel, for which > there is practically a blanket permission to upload new > upstream releases unchecked into stable. (There appears to > be one for Mediawiki and OpenJDK too, which do their security > backporting themselves. This could apply to ffmpeg as well.)
Those are the ones I referenced where we're holding our nose and going with a much less than ideal security policy because we don't have another good option. Those aren't packages that we can realistically drop from the archive. The same may apply to FFmpeg as well, but it's not a happy situation to be in. -- Russ Allbery (r...@debian.org) <http://www.eyrie.org/~eagle/> -- To UNSUBSCRIBE, email to debian-devel-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org Archive: https://lists.debian.org/87oaw6j11y....@windlord.stanford.edu