From owner-freebsd-ports@FreeBSD.ORG Mon Mar 31 06:17:15 2003 Return-Path: Delivered-To: freebsd-ports@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 87A7737B404 for ; Mon, 31 Mar 2003 06:17:14 -0800 (PST) Received: from procyon.firepipe.net (procyon.firepipe.net [198.78.66.151]) by mx1.FreeBSD.org (Postfix) with ESMTP id 27B7943F75 for ; Mon, 31 Mar 2003 06:17:10 -0800 (PST) (envelope-from will@csociety.org) Received: by procyon.firepipe.net (Postfix, from userid 1000) id 086EA21C8B; Mon, 31 Mar 2003 06:17:09 -0800 (PST) Date: Mon, 31 Mar 2003 06:17:09 -0800 From: Will Andrews To: Dan Naumov Message-ID: <20030331141709.GZ983@procyon.firepipe.net> Mail-Followup-To: Dan Naumov , freebsd-ports@freebsd.org References: <20030331132420.0b94c5ae.davide.lemma@sito.it> <20030331170948.583ced4e.dan.naumov@ofw.fi> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <20030331170948.583ced4e.dan.naumov@ofw.fi> User-Agent: Mutt/1.4i cc: freebsd-ports@freebsd.org Subject: Re: again... serious security hole in a port (dcgui/dclib) X-BeenThere: freebsd-ports@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Porting software to FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 31 Mar 2003 14:17:17 -0000 On Mon, Mar 31, 2003 at 05:09:48PM +0300, Dan Naumov wrote: > Yes, this is indeed, truly unfortunate. As a matter of fact, I've been somewhat > unsatisfied with the state of the ports tree as of late myself. I am not yet sure > what I'll be doing about this, but I've considered starting up a "Port Quality > Watchers" team which would consist of volunteers browsing the ports tree daily > looking for ways to break things and report them to the right people. It'd also be > nice if this team had a few port committers on board. This would help speed-up > things somewhat. I suppose it might help if we inducted a few more ports committers once the release is out. Perhaps along the lines of folks who enjoy doing exactly this sort of thing. *hint* :) Regards, -- wca