Newsgroups: php.internals Path: news.php.net Xref: news.php.net php.internals:59176 Return-Path: Mailing-List: contact internals-help@lists.php.net; run by ezmlm Delivered-To: mailing list internals@lists.php.net Received: (qmail 62553 invoked from network); 27 Mar 2012 06:45:27 -0000 Received: from unknown (HELO lists.php.net) (127.0.0.1) by localhost with SMTP; 27 Mar 2012 06:45:27 -0000 Authentication-Results: pb1.pair.com smtp.mail=pierre.php@gmail.com; spf=pass; sender-id=pass Authentication-Results: pb1.pair.com header.from=pierre.php@gmail.com; sender-id=pass Received-SPF: pass (pb1.pair.com: domain gmail.com designates 209.85.160.170 as permitted sender) X-PHP-List-Original-Sender: pierre.php@gmail.com X-Host-Fingerprint: 209.85.160.170 mail-gy0-f170.google.com Received: from [209.85.160.170] ([209.85.160.170:51119] helo=mail-gy0-f170.google.com) by pb1.pair.com (ecelerity 2.1.1.9-wez r(12769M)) with ESMTP id 13/61-53112-502617F4 for ; Tue, 27 Mar 2012 01:45:26 -0500 Received: by ghbg2 with SMTP id g2so4913391ghb.29 for ; Mon, 26 Mar 2012 23:45:23 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :cc:content-type; bh=3LfoUOY5R3/xp4vYJ8LAFYj/hXUyGtO+VV9/ZmysVXo=; b=0Hibe29CESoZssXHR+6ruBxJ3vzrdsKYqBctbJBG2bO7TbNW6D0B1hTuPeh3mb1uTd sZ+BeHJo+Z9zwm/Q8ua8+iuWuHJf5eksEV6Ay81QXQBQa5ljs/0Y44y1yvIF3gL8GAAC Qs7QoytdbdTlWhVZU0T1vdPWHthqfkQexKbDva5S6E9E5l6iAU4bvTmNVKKfoi9GFFmQ r/WoQSgKSyIQinM78OKdOn8uruQfBM+ZiervaQkZtoPWh0aFxjVk6iAPctycZxzlKhem CrqVEx3Ty9wXzvlqR3awMzqXNr1ju99McBKyViNsWmlGs7BE4xM68Bfy5olD2WtaBFnO c3+w== MIME-Version: 1.0 Received: by 10.236.9.35 with SMTP id 23mr24686222yhs.41.1332830723273; Mon, 26 Mar 2012 23:45:23 -0700 (PDT) Received: by 10.147.168.16 with HTTP; Mon, 26 Mar 2012 23:45:23 -0700 (PDT) In-Reply-To: <1332829551-sup-6691@fewbar.com> References: <4F189F5F.20109@sugarcrm.com> <4F18A8C5.9020301@phpgangsta.de> <4F18B07C.2010402@sugarcrm.com> <1327019609-sup-8204@fewbar.com> <1332788209-sup-9283@fewbar.com> <1332803360.5855.14.camel@guybrush> <1332829551-sup-6691@fewbar.com> Date: Tue, 27 Mar 2012 08:45:23 +0200 Message-ID: To: Clint Byrum Cc: =?ISO-8859-1?Q?Johannes_Schl=FCter?= , =?ISO-8859-1?B?QW5kcukgUvhtY2tl?= , internals Content-Type: text/plain; charset=ISO-8859-1 Subject: Re: [PHP-DEV] 5.4.0 rc6 and release From: pierre.php@gmail.com (Pierre Joye) hi, hi, On Tue, Mar 27, 2012 at 8:38 AM, Clint Byrum wrote: > I think the lesson here is to get the necessary bits from Suhosin into > PHP's core so that users can feel safe when using stock PHP, rather > than needing to wait for the good and generous folks at the hardened > PHP project to catch up. I disagree. The lesson here is that the Ubuntu's security team should have discussed with us to see what are actually their worries instead of not following what is actually a good move for everyone. Cheers, -- Pierre @pierrejoye | http://blog.thepimp.net | http://www.libgd.org