> 1.  I didn't make the original statement, Kenny did.

Sorry... long day... a little tired.

> 2.  Where did you get the idea that he implied one of the Sendmail
> developers found the bug?  To quote:  "A vulnerability was discovered and
> less than a week later there is a solution to it?"

Because the way he compared it to qmail, made it sound like one of the
Sendmail developers found the bug.

> Read my note again - you don't have to be the developer to find the hole.
> And it doesn't matter why or how he found it.  And no, I don't know if he
> tried to find the bug in qmail or not.  Nor do I care, because that's not
> what I run (actually, I run exim).  All I note is that the bug was found.
> And fixed.  In one week.  Because it was Open Source.

And I agree with you (actually, OpenBSD had a patch for it one day after the
article was written). It was just a little off-putting to have him get so
defensive about the whole sendmail vs. qmail thing.

> jeff
> ps:  I'm off of this discussion.  I refuse to take part in another flame
> war over this.

I dont think anyone is trying to start a flame war. Kurth emailed the list
the bug found in sendmail to any die-hard qmail users. He never said 'see
how much sendmail sucks, what a piece of crap. use qmail.' I know it always
puts a smile on my face when an advisory comes out for a [Free,Net]BSD, and
to see in the advisory that the bug was fixed in OpenBSD since 199x.



**********************************************************
To unsubscribe from this list, send mail to
[EMAIL PROTECTED] with the following text in the
*body* (*not* the subject line) of the letter:
unsubscribe gnhlug
**********************************************************

Reply via email to