Re: ssh vulernability

2001-10-23 Thread Peter Cordes
On Tue, Oct 23, 2001 at 01:19:58PM +0200, Philipp Schulte wrote: > On Mon, Oct 22, 2001 at 06:21:51AM -0300, Peter Cordes wrote: > > > Just as you automate everything you can, in the name of laziness, you can > > wait until stuff falls into your lap instead of going out and fixing it > > yourself

Re: ssh vulernability

2001-10-23 Thread Peter Cordes
On Tue, Oct 23, 2001 at 01:19:58PM +0200, Philipp Schulte wrote: > On Mon, Oct 22, 2001 at 06:21:51AM -0300, Peter Cordes wrote: > > > Just as you automate everything you can, in the name of laziness, you can > > wait until stuff falls into your lap instead of going out and fixing it > > yoursel

Re: ssh vulernability

2001-10-23 Thread Philipp Schulte
On Mon, Oct 22, 2001 at 06:21:51AM -0300, Peter Cordes wrote: > Just as you automate everything you can, in the name of laziness, you can > wait until stuff falls into your lap instead of going out and fixing it > yourself, if the problem is not at all likely to lead to any real problems > for yo

Re: ssh vulernability

2001-10-23 Thread Philipp Schulte
On Mon, Oct 22, 2001 at 06:21:51AM -0300, Peter Cordes wrote: > Just as you automate everything you can, in the name of laziness, you can > wait until stuff falls into your lap instead of going out and fixing it > yourself, if the problem is not at all likely to lead to any real problems > for y

Re: ssh vulernability

2001-10-22 Thread Peter Cordes
On Mon, Oct 22, 2001 at 06:21:51AM -0300, Peter Cordes wrote: > On Fri, Oct 19, 2001 at 05:06:03PM -0700, Garrett Ellis wrote: > > I run Debian; and I applied the OpenSSH patch myself as soon as it was > > posted. > > Does anybody know of the advantages of waiting for a new .deb file to get > > ci

Re: ssh vulernability

2001-10-22 Thread Peter Cordes
On Fri, Oct 19, 2001 at 05:06:03PM -0700, Garrett Ellis wrote: > I run Debian; and I applied the OpenSSH patch myself as soon as it was posted. > Does anybody know of the advantages of waiting for a new .deb file to get > circulated are? It's easier, esp. if you don't already have source for the

Re: ssh vulernability

2001-10-22 Thread Peter Cordes
On Mon, Oct 22, 2001 at 06:21:51AM -0300, Peter Cordes wrote: > On Fri, Oct 19, 2001 at 05:06:03PM -0700, Garrett Ellis wrote: > > I run Debian; and I applied the OpenSSH patch myself as soon as it was posted. > > Does anybody know of the advantages of waiting for a new .deb file to get > > circul

Re: ssh vulernability

2001-10-22 Thread Peter Cordes
On Fri, Oct 19, 2001 at 05:06:03PM -0700, Garrett Ellis wrote: > I run Debian; and I applied the OpenSSH patch myself as soon as it was posted. > Does anybody know of the advantages of waiting for a new .deb file to get > circulated are? It's easier, esp. if you don't already have source for the

Re: ssh vulernability

2001-10-21 Thread Ethan Benson
On Sun, Oct 21, 2001 at 04:41:17PM -0500, Mike Renfro wrote: > On Fri, Oct 19, 2001 at 03:26:18PM -0800, Ethan Benson wrote: > > On Fri, Oct 19, 2001 at 06:06:34PM -0400, [EMAIL PROTECTED] wrote: > > > Has debian released a new ssh dpkg yet? > > > > no > > If this is about the buffer overflow exp

Re: ssh vulernability

2001-10-21 Thread Mike Renfro
On Fri, Oct 19, 2001 at 03:26:18PM -0800, Ethan Benson wrote: > On Fri, Oct 19, 2001 at 06:06:34PM -0400, [EMAIL PROTECTED] wrote: > > Has debian released a new ssh dpkg yet? > > no If this is about the buffer overflow exploit that's supposed to be going around now, wasn't this fixed in the follo

Re: ssh vulernability

2001-10-21 Thread Ethan Benson
On Sun, Oct 21, 2001 at 04:41:17PM -0500, Mike Renfro wrote: > On Fri, Oct 19, 2001 at 03:26:18PM -0800, Ethan Benson wrote: > > On Fri, Oct 19, 2001 at 06:06:34PM -0400, [EMAIL PROTECTED] wrote: > > > Has debian released a new ssh dpkg yet? > > > > no > > If this is about the buffer overflow ex

Re: ssh vulernability

2001-10-21 Thread Mike Renfro
On Fri, Oct 19, 2001 at 03:26:18PM -0800, Ethan Benson wrote: > On Fri, Oct 19, 2001 at 06:06:34PM -0400, [EMAIL PROTECTED] wrote: > > Has debian released a new ssh dpkg yet? > > no If this is about the buffer overflow exploit that's supposed to be going around now, wasn't this fixed in the foll

Re: ssh vulernability

2001-10-19 Thread Garrett Ellis
I run Debian; and I applied the OpenSSH patch myself as soon as it was posted. Does anybody know of the advantages of waiting for a new .deb file to get circulated are? The patch was a change to two lines of code; so I just made the changes and rebuilt OpenSSH. That's how I do all of my non-kernel

Re: ssh vulernability

2001-10-19 Thread Ethan Benson
On Fri, Oct 19, 2001 at 06:06:34PM -0400, [EMAIL PROTECTED] wrote: > Hello, > > Has debian released a new ssh dpkg yet? no -- Ethan Benson http://www.alaska.net/~erbenson/ pgpKxRSjHMTTx.pgp Description: PGP signature

ssh vulernability

2001-10-19 Thread ahall
Hello, Has debian released a new ssh dpkg yet? Thanks. Andrew

Re: ssh vulernability

2001-10-19 Thread Garrett Ellis
I run Debian; and I applied the OpenSSH patch myself as soon as it was posted. Does anybody know of the advantages of waiting for a new .deb file to get circulated are? The patch was a change to two lines of code; so I just made the changes and rebuilt OpenSSH. That's how I do all of my non-kernel

Re: ssh vulernability

2001-10-19 Thread Ethan Benson
On Fri, Oct 19, 2001 at 06:06:34PM -0400, [EMAIL PROTECTED] wrote: > Hello, > > Has debian released a new ssh dpkg yet? no -- Ethan Benson http://www.alaska.net/~erbenson/ PGP signature

ssh vulernability

2001-10-19 Thread ahall
Hello, Has debian released a new ssh dpkg yet? Thanks. Andrew -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]