← Back to team overview

ubuntu-packaging-guide-team team mailing list archive

[Bug 790544] Re: Security sponsorship process should be mentioned

 

I have actually added the following blurb to the fixing-a-bug-
security.rst (which I will be submitting for merge soon):

"
Test and Submit your work
=========================

At this point the process is the same as for :doc:`fixing a regular bug in
Ubuntu</fixing-a-bug>`. Specifically, you will want to:

 #. Build your package and verify that it compiles without error and without
    any added compiler warnings
 #. Upgrade to the new version of the package from the previous version
 #. Test that the new package fixes the vulnerability and does not introduce
    any regressions
 #. Submit your work via a Launchpad bug being sure to mark the bug as a
    security bug and to subscribe ``ubuntu-security-sponsors``
"

This might be enough to close this bug.

-- 
You received this bug notification because you are a member of Ubuntu
Packaging Guide Team, which is subscribed to Ubuntu Packaging Guide.
https://bugs.launchpad.net/bugs/790544

Title:
  Security sponsorship process should be mentioned

Status in Ubuntu Packaging Guide:
  New

Bug description:
  It'd be great to also mention the sponsorship process for security
  bugs.

  Two obvious candidates are: 
   - http://people.canonical.com/~dholbach/packaging-guide/html/fixing-a-bug.html#committing-the-fix
   - http://people.canonical.com/~dholbach/packaging-guide/html/udd-sponsorship.html

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu-packaging-guide/+bug/790544/+subscriptions


References