Limiting the power of package installation in Debian

There is always at least a small risk when installing a package for a distribution. By its very nature, package installation is an invasive process; some packages require the ability to make radical changes to the system – changes that users surely would not want other packages to take advantage of. Packages that are made available by distributions are vetted for problems of this sort, though, of course, mistakes can be made. Third-party packages are an even bigger potential problem because they lack this vetting, as was discussed in early October on the debian-devel mailing list. Solutions in this area are not particularly easy, however.

31 Comments

  1. 2018-11-17 9:30 am
    • 2018-11-17 10:04 pm
    • 2018-11-17 10:26 pm
    • 2018-11-18 10:45 am
      • 2018-11-18 12:12 pm
    • 2018-11-18 3:31 pm
      • 2018-11-18 9:49 pm
    • 2018-11-18 10:31 pm
      • 2018-11-19 11:49 am
    • 2018-11-19 5:09 pm
      • 2018-11-19 6:06 pm
        • 2018-11-19 6:20 pm
          • 2018-11-19 7:14 pm
          • 2018-11-19 7:42 pm
          • 2018-11-20 7:59 am
          • 2018-11-20 1:00 pm
          • 2018-11-20 1:08 pm
          • 2018-11-20 2:54 pm
          • 2018-11-21 11:06 pm
          • 2018-11-22 4:51 am
          • 2018-11-22 1:05 pm
          • 2018-11-19 8:11 pm
          • 2018-11-20 8:27 am
          • 2018-11-20 12:17 pm
          • 2018-11-20 2:40 pm
  2. 2018-11-18 7:44 am
    • 2018-11-20 5:57 pm
  3. 2018-11-19 5:05 am
    • 2018-11-19 11:56 am
      • 2018-11-20 4:27 am
        • 2018-11-20 1:06 pm