Re: [gna-private] [SECURITY] [DSA 987-1] New tar packages fix arbitrary code execution
On Wed, 8 Mar 2006 21:04, Moritz Muehlenhoff wrote:
> Mathieu Roy wrote:
> >> > What does mean
> >> > local(remote)
> >> >
> >> > Does it means local... or remote?
> >> Local. But remote in the sense that you may receive a .tar file
> >> from a remote source.
> > Ok, thanks for the input.
> > Looks like oxymoron, a bit confusing though (but I have no proposal for
> > alternative wording).
> This question comes from time to time. If someone wants to write a FAQ
> entry for the Debian Security FAQ, please send it to
How about just changing the wording in the DSA to
local, plus files obtained from an untrusted source.