Jeffrey Smelser wrote:
I see... ;)

Hmm, I am going to have to go home tonight and look into this.. revdep IS suppose to detect this. Or is this one thats static??

Static, like I said, is where I am not sure of.. and I don't use mod_ssl at home so I would have to install this..

Anyone know?

When mod_ssl compiles, it staticly links in openssl. That is, it makes a copy of the openssl library parts that it uses, and links it inside it's own binary. I assume it does this so that it can function as an apache loadable module - maybe there's issues with a loadable modules being dynamically linked elsewhere, who knows :)


But from Tom's report, it does indeed seem to be statically linked. In this (rare?) case, I agree that the GLSA should have pointed it out, or created a new revision of mod_ssl, (how they would cause it to be emerged after the new openssl, I have no idea).

MAL


-- [EMAIL PROTECTED] mailing list



Reply via email to