http://non-us.debian.org/ running exploitable version of Apache

See the subject.

I'm not sure this is the correct list, but I am somewhat worried
because non-us.debian.org was down for a few minutes recently,
and I know other sites have been rooted and had trojans placed
in the packages, such as BitchX.

