[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: [SECURITY] [DSA 479-2] New Linux 2.4.18 packages fix local root exploit (i386)



On Sat, Apr 17, 2004 at 06:10:36PM -0400, Michael Stone wrote:
> The big problem is that the kernel situation in woody blows. There are
> too many kernels and they don't build consistently. Hopefully things
> will be better in sarge (although if you look at the number of kernels
> out there the future seems grim) but woody will always have slow &
> painful kernel updates.

Could You tell us what _exactly_ happened?  (DWN cover-story ;-))  Are
there no testsuites/scripts to ensure basic sanity of the packages being
built packages?  Or what _exactly_ was the mistake (I'm personally
interested in the security weaknesses of the build process).

-- 
   "To me, clowns aren't funny. In fact, they're kind of scary. I've wondered
 where this started and I think it goes back to the time I went to the circus,
			  and a clown killed my dad."

Attachment: pgpkOhCBWwc9U.pgp
Description: PGP signature


Reply to: