anselmolsm has quit [Quit: Konversation terminated!]
kleisli has quit [Remote host closed the connection]
kleisli has joined #nixos-security
{`-`} has joined #nixos-security
tilpner has quit [Quit: tilpner]
hexa- has quit [Quit: WeeChat 2.7.1]
hexa- has joined #nixos-security
anselmolsm has joined #nixos-security
hmpffff_ has quit [Read error: Connection reset by peer]
<andi->
I would +1 on renamning them
hmpffff has joined #nixos-security
<andi->
keep the old name put add a suffix or prefix for the CVE number
justanotheruser has quit [Ping timeout: 272 seconds]
justanotheruser has joined #nixos-security
<hexa->
so 10_fix_buffer_overflow_wordole_c.patch => CVE-2014-8123_fix_buffer_overflow_wordole_c.patch
<hexa->
or just CVE-2014-8123.patch
<hexa->
debian has it like this ^
<andi->
I usually like to keep some reference to the original change that we are picking. If the .patch file doesn't contain commit messages etc.. we should at least keep the file name somewhat similar to what the original source did.
<andi->
It is no fun to figure out which of the 25 patches we apply overlaps with those 26 patches upstream uses for that one CVE if they are all named differently :)