[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Question about "New kernel packages fix several vulnerabilities"



A question about:

> - --------------------------------------------------------------------------
> Debian Security Advisory DSA 311-1                     security@debian.org
> http://www.debian.org/security/                             Matt Zimmerman
> June 8th, 2003                          http://www.debian.org/security/faq
> - --------------------------------------------------------------------------
> 
> Package        : kernel
> Vulnerability  : several
> Problem-Type   : local, remote
> Debian-specific: no
> CVE Ids        : CVE-2002-0429 CAN-2003-0001 CAN-2003-0127 CAN-2003-0244 CAN-2003-0246 CAN-2003-0247 CAN-2003-0248 CAN-2003-0364
> 
> A number of vulnerabilities have been discovered in the Linux kernel.

I'm not clear about this:

> For the unstable distribution (sid) these problems are fixed in the
> 2.4.20 series kernels based on Debian sources.

Does that mean only the 2.4.20 *debian* kernel sources are fixed?  I'm 
running 2.4.20 on all my machines but a few were built from kernel.org 
2.4.20 source instead of the kernel-source debian package.

-- 
Bill Moseley
moseley@hank.org



Reply to: