Debian PHP upgrade

2015-03-23 Thread Gareth Webb
Hi

I would like to know when Debian will be releasing the next version of PHP? 
Currently there is a known security vulnerability in the current version of 
Debian, we not sure if we should wait for Debian to update it or if we need to 
move over to a new distribution that has this updated version of PHP?

thanks

acceleration
GARETH WEBB
IT OPERATIONS MANAGER

2nd floor Longkloof Studios
Darters Road Gardens
Cape Town 8000
C +27 83 574 4004
T +27 21 487 1026
F +27 86 230 0559
Twitter<https://twitter.com/accelerationbiz>
LinkedIn<http://www.linkedin.com/company/acceleration>
Google +<https://plus.google.com/101459788139035134990/about>



www.acceleration.biz<http://www.acceleration.biz>






RE: Debian PHP upgrade

2015-03-25 Thread Gareth Webb
Passive-aggressive?
I was merely asking from a security perspective, I will provide you the 
information you seek shortly.

Have a lovely day, and great week





-Original Message-
From: Ondřej Surý [mailto:ond...@sury.org] 
Sent: Tuesday, March 24, 2015 5:45 PM
To: Salvatore Bonaccorso; Gareth Webb
Cc: debian-devel@lists.debian.org
Subject: Re: Debian PHP upgrade

On Mon, Mar 23, 2015, at 08:59, Salvatore Bonaccorso wrote:
> Hi,
> 
> On Mon, Mar 23, 2015 at 06:58:10AM +0000, Gareth Webb wrote:
> > I would like to know when Debian will be releasing the next version 
> > of PHP? Currently there is a known security vulnerability in the 
> > current version of Debian, we not sure if we should wait for Debian 
> > to update it or if we need to move over to a new distribution that 
> > has this updated version of PHP?
> 
> Could you specify to which security vulnerability you are referring?
> We track the currently known CVEs for php5 in
> 
> https://security-tracker.debian.org/tracker/source-package/php5
> 
> and there was a recent DSA for php5:
> 
> https://www.debian.org/security/2015/dsa-3198

Also specifying the Debian release you are using would be helpful instead of 
that passive-aggressive attitude in your initial email...

Not to mention the question would be better targeted to Debian PHP maintainers 
instead of debian-devel - the mailing list for Development of Debian.

Cheers,
--
Ondřej Surý 
Knot DNS (https://www.knot-dns.cz/) – a high-performance DNS server



RE: Debian PHP upgrade

2015-03-25 Thread Gareth Webb
No worries I understand :)

Andile (copied in) is our security except he will confirm the information for 
you.
Thanks for your assistance.





-Original Message-
From: Adam D. Barratt [mailto:a...@adam-barratt.org.uk] 
Sent: Wednesday, March 25, 2015 10:10 AM
To: Gareth Webb
Cc: Ondřej Surý; Salvatore Bonaccorso; debian-devel@lists.debian.org; Andile 
Ntebe
Subject: RE: Debian PHP upgrade

On 2015-03-25 7:12, Gareth Webb wrote:
> Passive-aggressive?
> I was merely asking from a security perspective

I assume Ondřej was referring to "if we need to move over to a new distribution 
that has this updated version of PHP". That's a fairly strong opening gambit 
for "merely asking", particularly given how little information you provided in 
your original message.

(It's also fairly irrelevant when raising the question on debian-devel, because 
you're free to use whatever distribution you wish already and whether you 
decide to move or not has no bearing on when a particular bug may or may not be 
fixed.)

Regards,

Adam