Re: Software Management call for RFEs

2013-06-02 Thread enclair
I'd like a tool similar to portaudit in FreeBSD or debscan in Debian. This tool should list all packages which have a security issue. Currently there is yum-security-plugin but it lists packages only if an update is available. The new tool would list vulnerable packages even if no update is availab

re: How can we make security updates faster?

2012-05-29 Thread enclair
Hi, I have a suggestion, not totally related. It would be nice to have a tool which does the same thing than portaudit for FreeBSD. This tool is simple: you launch it, and it lists which packages are vulnerable. That's way you don't need to wait for a package to be in -testing or in -stable to kno