Fedora Moves Ahead With Plans To Drop Packages Having Bad Security Practices

This is aimed at removing packages from the Fedora package archive that have known security issues against them and not addressed in timely manners. Per today's FESCo meeting minutes, the protocol they agreed upon are:
If a CRITICAL or IMPORTANT security issue is currently open against a package, or a security issue of lower severity has been open for at least 6 months, four weeks before the branch point a procedure similar to long-standing FTBFS will be triggered immediately, with 8 weeks of weekly notifications to maintainers and subsequent orphaning and then subsequent removal from distribution.
This will apply to all Fedora packages moving forward.
FESCo also approved today the renaming of Fedora Atomic Workstation to Fedora Silverblue. But if it's not done in time this could be delayed to Fedora 30.
22 Comments