On Sat, Sep 20, 2003 at 06:34:53AM +0300, Birzan George Cristian wrote: > When is there going to be a patched version of OpenSSH for stable? Sid > got the fixed one (3.6.1p2-9), but there's no fixed version for Stable > on security.debian.org. > > P.S. I'm talking about CAN-2003-0682, not CAN-2003-0693 and > CAN-2003-0695 which have already been fixed. As a side note, shouldn't > the changelog.Debian list which vulnerabilities have been addressed? >
You can always use www.debian.org/security/crossreferences for this which it is updated even after the packages have been uploaded and thus is much more current than the packages' Changelog. Regards Javi
pgpWRyOLLo8NT.pgp
Description: PGP signature