general-concepts/security: new page#385
Conversation
b7f9731 to
d0dc3e1
Compare
ulm
left a comment
There was a problem hiding this comment.
"Ebuild maintainance" seems an odd place for this, when the word "ebuild" doesn't even occur in the whole chapter.
I wonder if this shouldn't go under "General concepts" instead?
I was thinking of it in terms of "one's duties when maintaining a package/ebuild". I could use the term ebuild in a few places but I don't want to jam it in either. Let me review and see.. But I do not object to "General concepts", just explaining why I chose this. |
No, I'm not at all asking for this. 😄 That the term "ebuild" is missing in the present version was an indication for me that there might be a better place for the page. |
732ed7c to
5af9af2
Compare
|
Please explain (or link to) the format of the bug title so that you don't have to correct me every time 🙏 |
A lot of this was previously unwritten and/or scattered across the wiki. See also: * https://www.gentoo.org/support/security/vulnerability-treatment-policy.html * https://wiki.gentoo.org/wiki/Project:Security/GLSA_Coordinator_Guide Note that those pages could do with a refresh as well, but one thing at a time. Signed-off-by: Sam James <sam@gentoo.org>
That's partly what inspired it but it's long overdue :) I've currently got this in there: I can tweak that if you want, maybe with an example but dunno if that's too verbose or not. If it would be helpful I can add it. |
What if there is no fixed version in ::gentoo, or at all? |
|
Unversioned, so "app-misc/foo: use-after-free". How about:
Feels a bit wordy so suggestions welcome.. |
|
I'm half-asleep so this will be no good, but it feels like the whole thing can be covered by two cases (and a brief note that the usual convention is not followed)?
|
|
I slept on it a while and decided I like it with no adjustments, pushed as 3711d79. Thank you! |
A lot of this was previously unwritten and/or scattered across the wiki.
See also:
Note that those pages could do with a refresh as well, but one thing at a time.