Hi Pon, I think this is okay. I am reassured that this will not reintroduce CVE-2014-8121, and you have taken as many steps as you realistically could have to try get the patch into debian, as well as upstream being abandoned for 15 years.
Please make debdiffs for the releases you want this for, such as stonking, resolute, noble and jammy. I looked at your very old debdiff for questing, and have the following feedback: Filename: remove the dash at the beginning. change lp-2121543-do-not-close-and-reopen-DB.patch to lp2121543-do-not-close-and-reopen-DB.patch. Dep3 tags: Add Author: François Lesueur <[email protected]> Change Origin: upstream to Origin: vendor Add Bug-Ubuntu: https://bugs.launchpad.net/bugs/2121543 In debian/changelog, add a capital to the start of the entry. Ideally use your Canonical email address too. Ping me when you are ready for sponsorship. Thanks, Matthew ** CVE added: https://cve.org/CVERecord?id=CVE-2014-8121 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2121543 Title: [SRU] Poor performance of libnss-db on large db files To manage notifications about this bug go to: https://bugs.launchpad.net/libnss-db/+bug/2121543/+subscriptions -- ubuntu-bugs mailing list [email protected] https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
