[Dev] [consensus][due: 2016-10-20] Quarentena for unsecured unmaintained packages

Alejandro Hernández alejandrohp at openmailbox.org
Tue Oct 4 19:31:37 GMT 2016


I was using 'Icecat' during 4 months. I wrote an email to the developer 
and I was answered that icecat is not maintained nowadays and it has 
multiple vulnerabilities. But 'icecat' is available for users into 
'libre repo'.

Is there a way to put into quarentena non secure or not maintained 
Not maintained package, with security problems could be into another 
"(quarentena) repo". Or whatever, but not be (temporarily) available by 
default for users.



More information about the Dev mailing list