Hi, On 28 May 2013 10:12, Daniel Pocock <dan...@pocock.com.au> wrote: > Instead of adding the README.Debian.security file proposed in the > earlier patch, I could add a README.security file upstream - the > security issue is not Debian-specific. However, I will mention in that > file that the Debian security team were involved in analyzing the code > and a reference to this bug.
Feel free to add a security notice upstream, but the README.Debian.security file is to state that the Debian security team is going to provide limited support. As such, it should be kept in Debian. Cheers, -- Raphael Geissert - Debian Developer www.debian.org - get.debian.net -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org