Add a news item about data encrypted with sys-fs/encfs being unsafe. I will also mask the package for removal when the news item gets published, but with a longer time period (3 months instead of one).
Bug: https://bugs.gentoo.org/960358 Signed-off-by: Viorel Munteanu <[email protected]> --- .../2025-08-31-encfs-is-unmaintained.en.txt | 19 +++++++++++++++++++ 1 file changed, 19 insertions(+) create mode 100644 2025-08-31-encfs-is-unmaintained/2025-08-31-encfs-is-unmaintained.en.txt diff --git a/2025-08-31-encfs-is-unmaintained/2025-08-31-encfs-is-unmaintained.en.txt b/2025-08-31-encfs-is-unmaintained/2025-08-31-encfs-is-unmaintained.en.txt new file mode 100644 index 0000000..8cdca8e --- /dev/null +++ b/2025-08-31-encfs-is-unmaintained/2025-08-31-encfs-is-unmaintained.en.txt @@ -0,0 +1,19 @@ +Title: encfs is unmaintained +Author: Viorel Munteanu <[email protected]> +Posted: 2025-08-31 +Revision: 1 +News-Item-Format: 2.0 +Display-If-Installed: sys-fs/encfs + +sys-fs/encfs is effectively unmaintained upstream. Old archives are already +hard to read without it crashing [1], and no new bugfixes are expected. +Chances are data will become unreadable sooner than later. + +Upstream recommends migrating to newer alternatives, like +app-crypt/gocryptfs [2]. + +Since migrating large quantities of data can take time, please consider +migrating everything while it's still possible. + +[1] https://github.com/vgough/encfs/issues/651 +[2] https://github.com/vgough/encfs/?tab=readme-ov-file#status -- 2.49.1
