Package: needrestart
Version: 3.7-3.1
Severity: wishlist

Hi Patrick!

So a major security issue came out in needrestart, as you undoubetly
know! :)

We've been maintaining a couple patches over needrestart 3.7 at
torproject.org (mainly for prometheus monitoring) and we need to
reroll them on top of the new security issues.

I'm wondering if I should work on top of the unstable NMU from the
security team or somehow figure out how to package 3.8 directly.

Were you planning on updating to 3.8 soon? I am aware this *just* came
out, so no pressure! :) Just trying to organise our work here...

I don't think I know whether this package is maintained in Git or
*how* it's maintained exactly: I've always done what were essentially
upstream-less patches to the package, without ever importing a new
upstream tarball..

Either way, I'd be happy to help, as before, on the maintenance of
this package. Point me in the right direction! :)

In this case, I need to figure out if I patch the current unstable
version (3.7-3.1), or try to upload a 3.8 (as a NMU?) or what.

Thanks!

Reply via email to