The debian-private mailing list leak, part 1. Volunteers have complained about Blackmail. Lynchings. Character assassination. Defamation. Cyberbullying. Volunteers who gave many years of their lives are picked out at random for cruel social experiments. The former DPL's girlfriend Molly de Blanc is given volunteers to experiment on for her crazy talks. These volunteers never consented to be used like lab rats. We don't either. debian-private can no longer be a safe space for the cabal. Let these monsters have nowhere to hide. Volunteers are not disposable. We stand with the victims.

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Info about ld.so



Your message dated: Sun, 20 Jul 97 14:08:27 +0200
> On Sun, Jul 20, 1997 at 12:56:36PM +0200, Olaf Kirch wrote:
> > On Fri, 18 Jul 1997 14:46:29 EDT, Erik Troan wrote:
> > > Anything longer then two workdays (i.e. not weekend days) starts to dimin
> sh
> > > the usefullness of the announcements.
> > 
> > Two or three weekdays also appears a reasonable time frame to me, too.
> > However, Mark Bolzern of WGS requests that we should make it at least
> > 7 workdays. What do other people think?
> 
> Most times, a patch is already available and people start asking about
> fixed packages. So if the announcement about the new package is given out
> too late, the different distributions will start to announce the bug-fixes
> on their own mailing-lists.
> Then the announcement from this list will get a purely PR thing and not a
> service to the Linux community.
> 
> If a ready-to-use patch is available, two or three weekdays should be enough
> to make a new binary, I think.

While that is correct, as we have seen on the example of ld.so, the group
that released advisory corrected itself on 2nd day after its release saying
that they were wrong and the version they thought was not affected actually
was vulnerabe.


I forwarded that message to vendor-sec asking if the patch information
changed, I am still waiting on replies.... Anyone? Please? Last info on
patches?


Alex




-----------------------------------------------------------------------------
Alex "Mr. Worf" Yuriev         Nationwide ISP Bandwidth:  [www.netaxs.net   ]
Net Access                     Outsourced News Reading:   [www.newsread.com ]
alex@{netaxs.com|yuriev.com}   Outsourced Shell Accounts: [shellaccounts.com]
   RIP is irrelevant. Spoofing is futile. Your routes will be aggregated.
-----------------------------------------------------------------------------


--
TO UNSUBSCRIBE FROM THIS MAILING LIST: e-mail the word "unsubscribe" to
debian-private-request@lists.debian.org . 
Trouble?  e-mail to templin@bucknell.edu .