Comment 15 for bug 516709

Revision history for this message
Robert Collins (lifeless) wrote : Re: [Bug 516709] Re: revisit official package branch permissions

On Wed, Mar 2, 2011 at 9:07 PM, Martin Pool <email address hidden> wrote:
> I don't think there's actually a security problem here unless arbitrary
> people can make their branches become the official branches, and I don't
> think that's currently possible.  Or is it?

the ability for a disconnect to exist is a severe security problem,
and suggesting people be careful won't fly with our stakeholders for
Ubuntu.