[Date Prev][Date Next][Thread Prev][Thread Next]
[Date Index]
[Thread Index]
- Subject: Re: Lua [in]security and the distributors
- From: Coda Highland <chighland@...>
- Date: Tue, 26 Aug 2014 12:31:26 -0700
On Tue, Aug 26, 2014 at 11:57 AM, Roberto Ierusalimschy
<roberto@inf.puc-rio.br> wrote:
> Probably I am missing something...
>
> IIUC, more popular languages similar to Lua have dozens of "crash" bugs
> in their current distributions with no patches applied, because there
> are no patches for them. Is this ok (no patches applied because there
> are no patches)? Would our sin be smaller if our single crash bug had no
> known patch?
>
> -- Roberto
>
Your "sin", if you could call it that, is that of being an upstream
maintainer in a packaging culture that pushes everything upstream if
at all possible.
/s/ Adam