Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 19 Aug 2015 10:36:54 -0500
From:      Mark Felder <feld@FreeBSD.org>
To:        "Li-Wen Hsu" <lwhsu@FreeBSD.org>
Cc:        python <python@freebsd.org>
Subject:   Re: py-django vulnerabilities
Message-ID:  <1439998614.2724165.360407393.5F130D70@webmail.messagingengine.com>
In-Reply-To: <1439998219.2722781.360401857.46FCCBD9@webmail.messagingengine.com>
References:  <1439923130.1067596.359551361.446BF03F@webmail.messagingengine.com> <1439997826.2721336.360395769.5671C796@webmail.messagingengine.com> <CAKBkRUyEgvXn_756CYPz=7V9tFYRhYXi8hcVQ83Q_tb0_BYZAQ@mail.gmail.com> <1439998219.2722781.360401857.46FCCBD9@webmail.messagingengine.com>

next in thread | previous in thread | raw e-mail | index | archive | help


On Wed, Aug 19, 2015, at 10:30, Mark Felder wrote:
> 
> 
> On Wed, Aug 19, 2015, at 10:27, Li-Wen Hsu wrote:
> > On Wed, Aug 19, 2015 at 11:23 PM, Mark Felder <feld@freebsd.org> wrote:
> > >
> > >
> > > On Tue, Aug 18, 2015, at 13:38, Mark Felder wrote:
> > >> Hello,
> > >>
> > >> Django just released some updates to address vulnerabilities. I have
> > >> created the vuxml entry.
> > >>
> > >> https://vuxml.freebsd.org/freebsd/b0e54dc1-45d2-11e5-adde-14dae9d210b8.html
> > >>
> > >>
> > >> Let me know if you need any help getting these updates pushed and merged
> > >> to quarterly branch
> > >>
> > >>
> > >> Thanks!
> > >
> > > Due to the radio silence and simplicity of the updates (no plist
> > > changes) I am moving forward with pushing these updates and merging to
> > > the quarterly branch.
> > 
> > Thanks for the update.  I have the same patch with you.  But I haven't
> > had www/py-django-devel pass the poudriere test.  Are you working on
> > that too?
> > 
> > Li-Wen
> 
> 
> I have not yet touched www/py-django-devel. I figure fewer users are
> affected by it, so I wanted to get the stable releases pushed out first.

Setting the snapshot date to 20150819 seems to fetch and build fine. Is
that OK? Do you follow django development and prefer to carefully choose
a different snapshot date to avoid any recent bugs/issues that could
affect users?



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?1439998614.2724165.360407393.5F130D70>