[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Debian servers "hacked"?

* George Georgalis (george@galis.org) [031126 20:55]:
> That aside, I still wonder if we are talking about the same
> thing.  It turns out about 160 packages where posted on
> debian-changes@lists.debian.org Nov 19. According to the change
> logs they don't appear as normal bugfixes, but many are like
> "kernel-source-2.4.17 (2.4.17-1woody1) stable-security; urgency=high"
> which includes at least one user to root vulnerability. Maybe I'm
> missing something, but I don't see any indication these changes don't
> effect current installs but are only relevant to r2.

That are packages that were security updates (since r1), and are now
part of r2. Please see the dates in the changelogs for details.

   PGP 1024/89FB5CE5  DC F1 85 6D A6 45 9C 0F  3B BE F1 D0 C5 D1 D9 0C

Reply to: