[Secure-testing-team] Some notes on data commits

Moritz Muehlenhoff jmm at inutil.org
Sun Jan 14 11:41:44 CET 2007


On Sat, Jan 13, 2007 at 06:41:11PM +0100, Florian Weimer wrote:
> * Moritz Muehlenhoff:
> 
> > - Severity ratings have been repeatedly picked up by news sites
> >   taking it as an official position of the Debian project and
> >   indirectly the Security Team. This means that severity ratings
> >   should only be added with great care. Not every issue needs
> >   a severity rating, if in doubt leave out or mark it unknown.
> 
> I doubt the severity ratings in the tracker are used by news
> organisations (perhaps with the exception of LWN), given that it's
> virtually unknown.

I've seen this at Heise (most important German language IT news site)
when reporting about security issues ("This issue has been classified
as "high" by Debian")

Cheers,
        Moritz



More information about the Secure-testing-team mailing list