Avoiding Future Security Bug Regressions

Max Kanat-Alexander mkanat at bugzilla.org
Sat Feb 7 19:25:17 UTC 2009


On Sat, 07 Feb 2009 13:52:30 +0100 "Frédéric Buclin"
<lpsolit at gmail.com> wrote:
> 
> I agree that invasive patches are more likely to trigger regressions 
> than one-liners (though it's not impossible that a one-liner also
> breaks something). But I would like to note that it's probably the
> last time that we will land such invasive patches on branches,
> because... [snip]

	Yeah, I agree with everything you said in that email. They're
all very good points.

	I don't expect to have to do too many invasive security patches
in the future. I just wanted to make sure that we have a policy that
prevents bad things from happening if we do have to do the invasive
patches.

	-Max
-- 
http://www.everythingsolved.com/
Competent, Friendly Bugzilla and Perl Services. Everything Else, too.



More information about the developers mailing list