Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 229151

Summary: GLSA feed should include more info in the description.
Product: Websites Reporter: Michael Pyne <mpyne>
Component: OtherAssignee: Gentoo Infrastructure <infra-bugs>
Status: RESOLVED WONTFIX    
Severity: enhancement    
Priority: High    
Version: unspecified   
Hardware: All   
OS: Linux   
URL: http://www.gentoo.org/rdf/en/glsa-index.rdf
Whiteboard:
Package list:
Runtime testing required: ---

Description Michael Pyne 2008-06-24 00:18:39 UTC
Currently when using the GLSA feed in a newsreader, each entry has a very minor blurb for the item text.  i.e. for GLSA 200806-09 the feed entry is exactly this:

libvorbis: Multiple vulnerabilities

I then have to click on the "Complete Story" (or equivalent in your reader) link to actually find out what the problem is.

What I would recommend is that more data be included directly in the feed entry, at least the following:

Minimum versions of packages that are not affected
Type of vulnerabilities or how severe they are.

This would be nice as the Portage tree has done a good job so far of quickly getting the security updates stabilized.  I think the last 5 GLSAs I've had did not affect me because I already had an unaffected package installed!

This would of course, only save a little bit of time, but it could be useful if you were at a console for instance and didn't feel like opening a new screen just for lynx.

Thanks for the great work.
Comment 1 Alex Legler (RETIRED) archtester gentoo-dev Security 2014-10-24 11:47:50 UTC
The current feed setup will likely not be changed, we'll keep this in mind for the future setup though.