Gentoo Archives: gentoo-hardened

From: "Anthony G. Basile" <blueness@g.o>
To: gentoo-hardened@l.g.o
Subject: Re: [gentoo-hardened] CVE-2014-4699
Date: Fri, 11 Jul 2014 11:54:01
Message-Id: 53BFD096.4030202@gentoo.org
In Reply to: [gentoo-hardened] CVE-2014-4699 by Alex Efros
1 On 07/10/14 12:51, Alex Efros wrote:
2 > Hi!
3 >
4 > Anyone bothers to stabilize 3.14.11-r1 anytime soon because of subj?
5 >
6
7 Anyone = me. You can address these concerns to me personally as I am
8 responsible. Bugs are best so we have a public record.
9
10 I am aware of the issue. There have been too many rapid stabilizations
11 because of CVE-2014-3153 and other issues. It doesn't help if I
12 stabilize a kernel which panics on someone's hardware that I can't test
13 on --- security issue or not. Been there done that. There is a balance
14 of risk which your statement does not take into account.
15
16 --
17 Anthony G. Basile, Ph.D.
18 Gentoo Linux Developer [Hardened]
19 E-Mail : blueness@g.o
20 GnuPG FP : 1FED FAD9 D82C 52A5 3BAB DC79 9384 FA6E F52D 4BBA
21 GnuPG ID : F52D4BBA

Replies

Subject Author
Re: [gentoo-hardened] CVE-2014-4699 Alex Efros <powerman@××××××××.name>