> We're all worried. There are 2 threads going on in debian-security
> about this issue:
>
> http://lists.debian.org/debian-security/2004/12/msg00044.html
> http://lists.debian.org/debian-security/2004/12/msg00047.html
<...>
>
> http://lists.debian.org/debian-security/2004/12/msg00054.html
>
Just read all that... not particularly encouraging, as it seems no one is
interested in backporting the security fixes or that it is not possible to
backport them.

I heard there are some kind of mod_rewrite rules to temporarily resolve this
in the mean time posted in BUGTRAQ or similar. Do you run any way of
mitigating the security threat in the mean time?


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to