On Wed, Jun 26, 2002 at 10:41:00PM +0200, Jacek 'Denat' Wysocki wrote: > > Ja tam na razie czekam na rozwoj wypadkow i nie upgraduje na zapas. > > IMHO, zbyt krytyczna usługa żeby sobie pozwalać na zwłokę.
Podobno staruteńkie SSH z Potato nie jest wrażliwe na ten bug. Z listy debian-isp: "It is interesting to note that it appears that the ssh 1.2.3-9.4 used with stable wasn't even vulnerable. (But I guess it is a good idea to have a chrooted, unprivileged child process to deal with the ssh connection before authentication.) Jeremy C. Reed" Wanted -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

