> it seems unlikely, but i didn't read the big diff. It fixes a bug that could be labeled as security-sensitive (not exploitable directly though). Bumping revision makes it easier to say "-current under rev 5.99.x is affected, 5.99.x+1 is not".
while true, this also means everyone else is affected. traditionally, we've given specific dates to update beyond, so i see no good reason to bump the version. .mrg.