[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: The harden-*flaws packages.



On Mon, Sep 02, 2002 at 05:13:51PM +0200, Ola Lundqvist wrote:
> 
> Now we just have to solve the upload-to-security problem, or simply
> write some other check that scans the security.d.o web pages and
> make clever things of it. Maybe using tiger, maybe some other things. But
> because tiger can do similar things that might be useful.
> 
It's in my todo list. Now DSAs are much more easy to parse. Some older DSAs
(pre-1999) might need special parsing however. Also, DSAs could be improved to add
an 'affected versions' tag (currently only the package name is provider, you can
infer the affected versions by looking the versions which *fix* the vulnerability).

	Javi



Reply to: