> 1. I didn't make the original statement, Kenny did.
Sorry... long day... a little tired.
> 2. Where did you get the idea that he implied one of the Sendmail
> developers found the bug? To quote: "A vulnerability was discovered and
> less than a week later there is a solution to it?"
Because the way he compared it to qmail, made it sound like one of the
Sendmail developers found the bug.
> Read my note again - you don't have to be the developer to find the hole.
> And it doesn't matter why or how he found it. And no, I don't know if he
> tried to find the bug in qmail or not. Nor do I care, because that's not
> what I run (actually, I run exim). All I note is that the bug was found.
> And fixed. In one week. Because it was Open Source.
And I agree with you (actually, OpenBSD had a patch for it one day after the
article was written). It was just a little off-putting to have him get so
defensive about the whole sendmail vs. qmail thing.
> jeff
> ps: I'm off of this discussion. I refuse to take part in another flame
> war over this.
I dont think anyone is trying to start a flame war. Kurth emailed the list
the bug found in sendmail to any die-hard qmail users. He never said 'see
how much sendmail sucks, what a piece of crap. use qmail.' I know it always
puts a smile on my face when an advisory comes out for a [Free,Net]BSD, and
to see in the advisory that the bug was fixed in OpenBSD since 199x.
**********************************************************
To unsubscribe from this list, send mail to
[EMAIL PROTECTED] with the following text in the
*body* (*not* the subject line) of the letter:
unsubscribe gnhlug
**********************************************************