[8953] in athena10

home help back first fref pref prev next nref lref last post

Debian derivatives census: Debian 5.0 (lenny) security support

daemon@ATHENA.MIT.EDU (Geoffrey Thomas)
Fri Apr 20 12:18:13 2012

Date: Fri, 20 Apr 2012 09:18:09 -0700 (PDT)
From: Geoffrey Thomas <geofft@MIT.EDU>
To: debathena@MIT.EDU
Message-ID: <alpine.DEB.2.00.1204200917130.16471@dr-wily.mit.edu>
MIME-Version: 1.0
Content-Type: MULTIPART/MIXED; BOUNDARY="-1257051904-1430593574-1334938689=:16471"

  This message is in MIME format.  The first part should be readable text,
  while the remaining parts are likely unreadable without MIME-aware tools.

---1257051904-1430593574-1334938689=:16471
Content-Type: TEXT/PLAIN; charset=UTF-8; format=flowed
Content-Transfer-Encoding: QUOTED-PRINTABLE

Someone not me should pull lenny from install-debathena.sh and from our=20
docs and whatever's on our page on the Debian wiki. Keeping the packages=20
around for a bit seems fine.

--=20
Geoffrey Thomas
geofft@mit.edu

---------- Forwarded message ----------
Date: Fri, 20 Apr 2012 18:10:51 +0800
From: Paul Wise <pabs@debian.org>
To: Skylar Thompson <skylar@cs.earlham.edu>,
     Luis Alejandro Mart=C3=ADnez Faneyth <luis@huntingbears.com.ve>,
     Geoffrey Thomas <geofft@mit.edu>,
     Jean-Michel Philippe <jean-michel.philippe@doudoulinux.org>,
     Neil Williams <codehelp@debian.org>, Hector Oron <zumbi@debian.org>,
     Wookey <wookey@debian.org>, Gerhard Oettl <gerhard.oettl@ogersoft.at>,
     Jeremiah Foster <jeremiah@jeremiahfoster.com>,
     Patrick Cherry <patrick@bytemark.co.uk>
Cc: debian-derivatives <debian-derivatives@lists.debian.org>
Subject: Debian derivatives census: Debian 5.0 (lenny) security support
     terminated

Hi all,

I note that some Debian derivatives are based on Debian 5.0 (lenny).
Debian security team have recently warned about[1] and then announced[2]
the termination of security support for Debian 5.0 (lenny).

This means that you will need to provide your own security support for
your users or transition your distribution (and users) to a newer
version of Debian such as 6.0 (squeeze), which still receives security
updates. If you have already switched to squeeze and stopped supporting
lenny-based releases, please update your census page to reflect that.

Those of you who are or will be providing security updates for
lenny-based distributions might want to consider pooling your financial
and engineering resources in order to provide longer term support for
superseded Debian releases. If your distribution is interested in
participating in such a project, please take a look at the minutes[3]
and announcement[4] from Debian security team meeting last year where
this was discussed and perhaps the also the messages[5][6][7][8]
from the security team in a thread discussing the topic[8] later in the
year. Should your distribution or your distribution's sponsors be
willing to help, please contact the Debian security team[9].

  1. http://lists.debian.org/debian-security-announce/2011/msg00238.html
  2. http://www.debian.org/News/2012/20120209
  3. http://wiki.debian.org/DebianSecurity/Meetings/2011-01-14
  4. http://lists.debian.org/debian-devel-announce/2011/01/msg00006.html
  5. http://lists.debian.org/debian-security/2011/10/msg00029.html
  6. http://lists.debian.org/debian-security/2011/10/msg00030.html
  7. http://lists.debian.org/debian-security/2011/10/msg00033.html
  8. http://lists.debian.org/debian-security/2011/10/threads.html#00001
  9. http://www.debian.org/security/#contact

--=20
bye,
pabs

http://wiki.debian.org/PaulWise
---1257051904-1430593574-1334938689=:16471--

home help back first fref pref prev next nref lref last post