Dear Joey Hess

Great work!

You write: " - Go through your claimed CANs and check changelogs,
advisories, do
   testing, whatever is needed to satisfy yourself whether sarge is
   vulnerable or not, and record your findings in the CANs file.
   Note that the file is read by checklist.pl, so follow the simple file
   format."

I am sorry if I have misunderstood anything but "whatever is needed to
satisfy yourself" Since this is a personal matter isn't there chances that a
person may miss important issues? I rather surgest a clear program of checks
that at least must be done in order to avoid problems.

Kim


----- Original Message ----- 
From: "Joey Hess" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Cc: "Matt Zimmerman" <[EMAIL PROTECTED]>; "Bdale Garbee" <[EMAIL PROTECTED]>;
"Chris Halls" <[EMAIL PROTECTED]>; "Martin Schulze" <[EMAIL PROTECTED]>;
"Andreas Mueller" <[EMAIL PROTECTED]>; "Petter Reinholdtsen"
<[EMAIL PROTECTED]>; "Martin Michlmayr" <[EMAIL PROTECTED]>; "Andreas Barth"
<[EMAIL PROTECTED]>; "Ernesto Hernandez-Novich" <[EMAIL PROTECTED]>;
"Finn-Arne Johansen" <[EMAIL PROTECTED]>; "Djoumé SALVETTI" <[EMAIL PROTECTED]>;
"Steinar H. Gunderson" <[EMAIL PROTECTED]>; "Andres Salomon"
<[EMAIL PROTECTED]>
Sent: Wednesday, October 27, 2004 11:33 PM
Subject: forming a security team for testing



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to