On Thu, Dec 04, 2003 at 07:26:57PM +0200, guy keren wrote:
> due to a security bug found in rsync, when running in daemon mode, i
> temporarily disabled the 'rsyncd' service (which runs 'rsync --daemon') on
> IGLU's server.

Thanks!
 
> Ilya - i couldn't see where are the soruces that rsync was compiled from.
> however, it looks like the rsync binary was replaced on 21-november - any
> idea who replaced it and why?

21st November was the time when I upgraded to most recent rsync
following the recommendation of BeyondSecurity's audit (thanks
Aviram!).

Today, as soon as I read the security alert, I upgraded rsync on IGLU
and started it again.

Reply via email to