Re: [SECURITY] [DSA 2162-1] openssl security update

2011-02-14 Thread Florian Weimer
* Nick Boyce: > On 14/02/2011 16:28, Nico Golde wrote: > >>> We recommend that you upgrade your invalid memory access packages. >> >> This has been a mistake during the auto-generation of the DSA template. Of >> course thsi should say "your openssl packages". > Erm ... missing .. [cough] .. exi

Re: [SECURITY] [DSA 2162-1] openssl security update

2011-02-14 Thread Nick Boyce
On 14/02/2011 16:28, Nico Golde wrote: >> We recommend that you upgrade your invalid memory access packages. > > This has been a mistake during the auto-generation of the DSA template. Of > course thsi should say "your openssl packages". [ahem] Erm ... missing .. [cough] .. exit-status check i

Re: [DSA 2160-1] tomcat6 security update

2011-02-14 Thread Moritz Mühlenhoff
moog schrieb: > Hi, > > DSA 2160-1 is about CVE-2010-3718, CVE-2011-0013 and CVE-2011-0534. It says > "The oldstable distribution (lenny) is not affected by these issues." I > wonder > if that's mistaken, because says: > > CVE-2010-3718 ... Affects: 6.

Re: [SECURITY] [DSA 2162-1] openssl security update

2011-02-14 Thread Nico Golde
Hi, * Nico Golde [2011-02-14 16:29]: [...] > We recommend that you upgrade your invalid memory access packages. This has been a mistake during the auto-generation of the DSA template. Of course thsi should say "your openssl packages". Kind regards Nico -- Nico Golde - http://www.ngolde.de - n

[DSA 2160-1] tomcat6 security update

2011-02-14 Thread moog
Hi, DSA 2160-1 is about CVE-2010-3718, CVE-2011-0013 and CVE-2011-0534. It says "The oldstable distribution (lenny) is not affected by these issues." I wonder if that's mistaken, because says: CVE-2010-3718 ... Affects: 6.0.0-6.0.29 CVE-2011-0013 ...