> We're all worried. There are 2 threads going on in debian-security > about this issue: > > http://lists.debian.org/debian-security/2004/12/msg00044.html > http://lists.debian.org/debian-security/2004/12/msg00047.html <...> > > http://lists.debian.org/debian-security/2004/12/msg00054.html > Just read all that... not particularly encouraging, as it seems no one is interested in backporting the security fixes or that it is not possible to backport them.
I heard there are some kind of mod_rewrite rules to temporarily resolve this in the mean time posted in BUGTRAQ or similar. Do you run any way of mitigating the security threat in the mean time? -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]