On 5/25/22 12:59, Athos Ribeiro wrote:
I contacted the patch author to wonder how we could re-distribute the
patch (see the discussion in [2]). They agreed to license it with the
upstream project's license (AGPLv3), and I suggested the approach
described in [4].
Since IANAL, I decided to ask dev
Hi,
I am facing a licensing issue with a patch to fix a (possible? [1]) CVE
in the rainloop package.
A security issue has been reported upstream [2], but there were no
replies from the upstream project yet.
The reporter followed up by describing the security issue in a blog post
[3], which also