Re: apache security issue (with upstream new release)

2003-10-31 Thread Matthew Wilcox
Hey, morons, don't drop people from the CC. Otherwise they'll never know what you're saying. On Fri, Oct 31, 2003 at 03:07:26PM +0100, Lupe Christoph wrote: > Quoting Phillip Hofmeister <[EMAIL PROTECTED]>: > > > I believe your justification can be found: > > > http://bugs.debian.org/cgi-bin/b

Re: apache security issue (with upstream new release)

2003-10-31 Thread Matthew Wilcox
On Fri, Oct 31, 2003 at 09:07:57PM +0900, Hideki Yamane wrote: > I checked woody's apache source and I cannot find any patches > for mod_alias.c in apache-1.3.26/debian/patches directory. > So I guess debian's apache is effected by this vulnerability. > > Do I misunderstand this? Does apache

Re: apache security issue (with upstream new release)

2003-10-31 Thread Matthew Wilcox
Hey, morons, don't drop people from the CC. Otherwise they'll never know what you're saying. On Fri, Oct 31, 2003 at 03:07:26PM +0100, Lupe Christoph wrote: > Quoting Phillip Hofmeister <[EMAIL PROTECTED]>: > > > I believe your justification can be found: > > > http://bugs.debian.org/cgi-bin/b

Re: apache security issue (with upstream new release)

2003-10-31 Thread Matthew Wilcox
On Fri, Oct 31, 2003 at 09:07:57PM +0900, Hideki Yamane wrote: > I checked woody's apache source and I cannot find any patches > for mod_alias.c in apache-1.3.26/debian/patches directory. > So I guess debian's apache is effected by this vulnerability. > > Do I misunderstand this? Does apache