Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 22 Dec 2017 23:12:15 -0800
From:      Kevin Oberman <rkoberman@gmail.com>
To:        Matthias Andree <matthias.andree@gmx.de>
Cc:        FreeBSD Ports ML <freebsd-ports@freebsd.org>, Eugene Grosbein <eugen@grosbein.net>
Subject:   Re: Procmail got updated!
Message-ID:  <CAN6yY1uvdK4NvzgG8w5KTgiGEG4D3d6GLmo-yXdZpBAeXCi0Yw@mail.gmail.com>
In-Reply-To: <a24e3a36-7c23-47a1-acfc-74d76a9d2e5f@gmx.de>
References:  <alpine.BSF.2.21.1712181012470.92288@aneurin.horsfall.org> <a3a1097d-22c7-89cc-dd69-b4ceeebf7228@gmx.de> <alpine.BSF.2.20.1712181824220.10261@io-tx.com> <f68594db-396b-0821-e90d-3f089781e8fd@gmx.de> <5A39F7C9.1030800@grosbein.net> <05504d3c-3225-e83f-8f10-225319421a35@gmx.de> <B51F1354-44C9-4936-A78B-84F34A4516B5@adamw.org> <f02e8c58-4fc5-6fd9-ed06-02e3077e67e8@gmx.de> <5A3B7BFF.2020202@grosbein.net> <845b162a-918d-4a5f-c3c2-4f58b60bff73@gmx.de> <5A3CA1B5.2090907@grosbein.net> <a24e3a36-7c23-47a1-acfc-74d76a9d2e5f@gmx.de>

next in thread | previous in thread | raw e-mail | index | archive | help
On Fri, Dec 22, 2017 at 2:29 AM, Matthias Andree <matthias.andree@gmx.de>
wrote:

> Am 22.12.2017 um 07:09 schrieb Eugene Grosbein:
> > 22.12.2017 9:50, Matthias Andree =D0=BF=D0=B8=D1=88=D0=B5=D1=82:
> >> Am 21.12.2017 um 10:16 schrieb Eugene Grosbein:
> >>
> >>> So, you demand we stop shipping any unmaintained software with our
> Ports & Packages?
> >>> Absence of CVEs means nothing and almost any non-trivial software has
> bugs (axiom).
> >> Eugene, these are attempts to distract from the argument, or to mount =
to
> >> fallacies. I do not intend to respond further to them or other of your
> >> messages in this thread.
> > That was real question, I like to know the answer.
>
> That generic question bears no relevance to the procmail case.


OK. It looked  like a reasonable question and a one-liner answer which
seemed to say "I can't justify anything here" or "I don't want to bother".
So maybe it could be clarified.

First, I don't think Eugene meant "unmaintained by FreeBSD" but
unmaintained upstream. Or maybe both. Can you clarify, Eugene?

We have many ports that have no FreeBSD maintainer. We have fewer, but many
that have no upstream maintainer. I know, as I use and have a critical need
for a few. One that comes to mind is complex and almost certainly has at
least one bug that could trigger a CVE if found. This is true with  almost
any complex code.

So, why does Eugene's question have no relevance to the procmail case?
Could you please explain?

For the record, I have not used procmail for at least 7 years, perhaps
longer.
--
Kevin Oberman, Part time kid herder and retired Network Engineer
E-mail: rkoberman@gmail.com
PGP Fingerprint: D03FB98AFA78E3B78C1694B318AB39EF1B055683



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?CAN6yY1uvdK4NvzgG8w5KTgiGEG4D3d6GLmo-yXdZpBAeXCi0Yw>