Hi Pon,

I think this is okay. I am reassured that this will not reintroduce 
CVE-2014-8121, and you have taken as many steps as you realistically could have
to try get the patch into debian, as well as upstream being abandoned for 15
years.

Please make debdiffs for the releases you want this for, such as stonking,
resolute, noble and jammy.

I looked at your very old debdiff for questing, and have the following
feedback:

Filename: remove the dash at the beginning.
change lp-2121543-do-not-close-and-reopen-DB.patch to 
lp2121543-do-not-close-and-reopen-DB.patch.

Dep3 tags:

Add Author: François Lesueur <[email protected]>
Change Origin: upstream to Origin: vendor
Add Bug-Ubuntu: https://bugs.launchpad.net/bugs/2121543

In debian/changelog, add a capital to the start of the entry.

Ideally use your Canonical email address too.

Ping me when you are ready for sponsorship.

Thanks,
Matthew

** CVE added: https://cve.org/CVERecord?id=CVE-2014-8121

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/2121543

Title:
  [SRU] Poor performance of libnss-db on large db files

To manage notifications about this bug go to:
https://bugs.launchpad.net/libnss-db/+bug/2121543/+subscriptions


-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to