[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: rkhunter report

In <[🔎] 4CE82F6E.3030401@pcartwright.com>, Paul Cartwright wrote:
>On 11/20/2010 03:14 PM, Boyd Stephen Smith Jr. wrote:
>>> >Warning: Application 'gpg', version '1.4.10', is out of date, and
>>> >possibly a security risk. Warning: Application 'openssl', version
>>> >'0.9.8n', is out of date, and possibly a security risk. Warning:
>>> >Application 'sshd', version '5.5p1', is out of date, and possibly a
>>> >security risk.
>> If there is a specific vulnerability you are concerned about, asking on
>> debian-security for the status of a fix might be appropriate.
>I am not so much concerned about about vulnerability as I am rkhunter
>giving me a warning about "up-2-date" apps..

File a bug against rkhunter, then.

>I just don't like getting messages that tell me something is NOT
>uptodate, when I am ALWAYS up to date..

Many people don't consider Debian stable up-to-date even with packages from 
security.debian.org and volatile.debian.org in use.  It is possible that the 
development / release team of rkhunter contains some of those people.
Boyd Stephen Smith Jr.                   ,= ,-_-. =.
bss@iguanasuicide.net                   ((_/)o o(\_))
ICQ: 514984 YM/AIM: DaTwinkDaddy         `-'(. .)`-'
http://iguanasuicide.net/                    \_/

Attachment: signature.asc
Description: This is a digitally signed message part.

Reply to: