[Bug 470696] Review Request: rubygem-passenger - Passenger Ruby on Rails deployment system

bugzilla at redhat.com bugzilla at redhat.com
Sun Jun 7 15:03:34 UTC 2009


Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug.


https://bugzilla.redhat.com/show_bug.cgi?id=470696


Mamoru Tasaka <mtasaka at ioa.s.u-tokyo.ac.jp> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
                 CC|                            |a.badger at gmail.com




--- Comment #36 from Mamoru Tasaka <mtasaka at ioa.s.u-tokyo.ac.jp>  2009-06-07 11:03:33 EDT ---
(In reply to comment #34)
> == Vendoring Boost
> 
> We actually use a modified version of Boost, so Phusion Passenger will not
> compile against a stock Boost. I understand your concerns with regard to
> security, but please rest assured because we fully understand the security
> implications of vendoring a library. We will take full responsibilities for any
> security problems; that is, we will either backport security fixes or upgrade
> our vendored Boost to a newer version.
> 
> I hope this addresses any concerns that you might have with regard to vendoring
> Boost. If not then I'm eager to hear your thoughts on it.


CC-ing to Toshio. Would you comment on this issue?

-- 
Configure bugmail: https://bugzilla.redhat.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.




More information about the Fedora-package-review mailing list