Hello Dirk! On Wed, Mar 15, 2017 at 06:24:31AM -0500, Dirk Eddelbuettel wrote: > > On 15 March 2017 at 08:37, Salvatore Bonaccorso wrote: > | Hi, > | > | On Mon, Mar 13, 2017 at 10:12:56PM +0100, Ola Lundqvist wrote: > | > Hi Dirk > | > > | > I had a quick look at this but I stumbled on the version of the package. > | > Why 3.1.1-1+deb3.3.3u1 ? > | > And not 3.1.1u1 or even better 3.1.1+deb8u1 ? > | > | For the versioning: jessie currently has 3.1.1-1. By only applying the > | patches addressing the CVE, then the version should be 3.1.1-1+deb8u1. > | > | Cf. > https://www.debian.org/doc/manuals/developers-reference/ch05.en.html#bug-security-building > > Thanks for confirming ... and that is what I pushed last evening, and which > got accepted.
I think unfortunately to the wrong host: Bacause it landend on ft-master in stable-new, rather than security-master. If (and please only if) Moritz has already given you the ACK, you need to upload to security-master.debian.org instead. Since the source is new to dak on securty-master, please make as well sure to build with -sa to include the orig.tar.gz as well. @Moritz: confirmed Dirk should/can upload for jessie-security? Btw, thanks for your work on this. Salvatore