Hi doko, all--

We really should consider dropping privmode.diff from bash in unstable.
This has come up yet again on the oss-security list:

  http://seclists.org/oss-sec/2015/q2/565

We're in a time in the release cycle where we can afford a bit of
breakage in unstable should it happen (though i'm not convinced that
there will be breakage -- this was a workaround for quite a narrow
problem, aiui), and i'd very much like to see Debian not have this
security-sensitive difference (in the wrong direction) from other
distros.

I agree with you that a non-essential bash would be great to have as
well, but that sounds much more likely to introduce widespread breakage,
and i don't think it should block this narrower fix.

Thanks all for your work maintaining bash in debian!

Regards,

        --dkg

Attachment: signature.asc
Description: PGP signature

Reply via email to