Skip to content

4.2.0 key size validation breaking change #878

Answered by mfn
mfn asked this question in Q&A
Discussion options

You must be logged in to vote

I guess revert this change and saving it for a major release is not an option?

Was implicitly answered via #877 (comment)

I disagree: it was a security bug, hence it has been considered a security bug fix.
BC breaks need to be addressed within the same MAJOR, if they are security bug fixes

and #877 (comment)

An insecure system is worse than a broken system. Better for it to be broken than compromised, and security takes priority over BC.

Replies: 2 comments 4 replies

Comment options

You must be logged in to vote
1 reply
@lcobucci
Comment options

Answer selected by mfn
Comment options

You must be logged in to vote
3 replies
@lcobucci
Comment options

@burgoyn1
Comment options

@lcobucci
Comment options

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
3 participants