Re: [Fwd: Re: [SECURITY] [DSA-2010-1] New kvm packages fix several vulnerabilities]

2010-03-10 Thread dann frazier
On Wed, Mar 10, 2010 at 05:44:10PM -0500, Michael Gilbert wrote: > On Wed, 10 Mar 2010 17:21:45 -0500, Daniel Kahn Gillmor wrote: > > We recommend that you upgrade your kvm package. If your system is > > currently using a kvm-modules package built from previous versions of > > the kvm-source packa

Re: [Fwd: Re: [SECURITY] [DSA-2010-1] New kvm packages fix several vulnerabilities]

2010-03-10 Thread Michael Gilbert
On Wed, 10 Mar 2010 17:21:45 -0500, Daniel Kahn Gillmor wrote: > We recommend that you upgrade your kvm package. If your system is > currently using a kvm-modules package built from previous versions of > the kvm-source package, we recommend that you upgrade your kvm-source > package, re-build a n

[Fwd: Re: [SECURITY] [DSA-2010-1] New kvm packages fix several vulnerabilities]

2010-03-10 Thread Daniel Kahn Gillmor
sorry, this proposed boilerplate change was meant to go to the list, not just to dann. Thanks for all your work, folks. --dkg --- Begin Message --- On 03/10/2010 04:53 PM, dann frazier wrote: > On Wed, Mar 10, 2010 at 04:09:48PM -0500, Daniel Kahn Gillmor wrote: >> So would the 4th be fix

Re: [SECURITY] [DSA-2010-1] New kvm packages fix several vulnerabilities

2010-03-10 Thread dann frazier
On Wed, Mar 10, 2010 at 04:09:48PM -0500, Daniel Kahn Gillmor wrote: > On 03/10/2010 02:49 PM, dann frazier wrote: > > On Wed, Mar 10, 2010 at 02:18:38PM -0500, Daniel Kahn Gillmor wrote: > >> It's not clear to me from the instructions above whether users should > >> re-build their kvm modules pack

Re: [SECURITY] [DSA-2010-1] New kvm packages fix several vulnerabilities

2010-03-10 Thread Daniel Kahn Gillmor
On 03/10/2010 02:49 PM, dann frazier wrote: > On Wed, Mar 10, 2010 at 02:18:38PM -0500, Daniel Kahn Gillmor wrote: >> It's not clear to me from the instructions above whether users should >> re-build their kvm modules package as well as installing the revised >> versions. >> >> Is the vulnerability

Re: [SECURITY] [DSA-2010-1] New kvm packages fix several vulnerabilities

2010-03-10 Thread dann frazier
On Wed, Mar 10, 2010 at 02:18:38PM -0500, Daniel Kahn Gillmor wrote: > Hi Debian Security folks-- > > On 03/10/2010 01:18 PM, dann frazier wrote: > > > > Debian Security Advisory DSA-2010 secur...@debian.org

Re: [SECURITY] [DSA-2010-1] New kvm packages fix several vulnerabilities

2010-03-10 Thread Daniel Kahn Gillmor
Hi Debian Security folks-- On 03/10/2010 01:18 PM, dann frazier wrote: > > Debian Security Advisory DSA-2010 secur...@debian.org > http://www.debian.org/security/ Dann Frazier > March

Re: Debian and CVE-2010-0624

2010-03-10 Thread Jim Popovitch
On Wed, Mar 10, 2010 at 08:32, Nico Golde wrote: > No and as this is no serious issue we also decided to not release a DSA for > this. We will encourage the maintainer to provide updated packages through > stable-proposed-updates. I, for one, Thank you for decisions like that. There doesn't nee

Re: Debian and CVE-2010-0624

2010-03-10 Thread Nico Golde
Hey, * Henri Salo [2010-03-10 14:26]: > Is vulnerability CVE-2010-0624 fixed in Debian-packages already? No and as this is no serious issue we also decided to not release a DSA for this. We will encourage the maintainer to provide updated packages through stable-proposed-updates. Cheers Nico -

Debian and CVE-2010-0624

2010-03-10 Thread Henri Salo
Is vulnerability CVE-2010-0624 fixed in Debian-packages already? --- Henri Salo -- To UNSUBSCRIBE, email to debian-security-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org Archive: http://lists.debian.org/20100310145119.11a01...@foo.fgeek.f