Re: Security liabilities (Re: radiusd-freeradius history and future)

2003-11-12 Thread Paul Hampson
On Tue, Nov 11, 2003 at 07:44:01PM -0500, Matt Zimmerman wrote: On Wed, Nov 12, 2003 at 09:18:38AM +1100, Paul Hampson wrote: On Tue, Nov 11, 2003 at 04:30:50PM -0500, Matt Zimmerman wrote: CAN-2001-1376 and CAN-2001-1377 made the rounds last Spring, with advisories from Red Hat,

Re: Security liabilities (Re: radiusd-freeradius history and future)

2003-11-12 Thread Steve Langasek
On Tue, Nov 11, 2003 at 07:44:01PM -0500, Matt Zimmerman wrote: This is exactly the kind of situation I don't want going forward...there is so much neglected software in Debian that bugs like these sometimes go unnoticed, or even if they are noticed, the maintainer doesn't care enough about

Security liabilities (Re: radiusd-freeradius history and future)

2003-11-11 Thread Matt Zimmerman
On Wed, Nov 12, 2003 at 09:18:38AM +1100, Paul Hampson wrote: On Tue, Nov 11, 2003 at 04:30:50PM -0500, Matt Zimmerman wrote: CAN-2001-1376 and CAN-2001-1377 made the rounds last Spring, with advisories from Red Hat, FreeBSD, SuSE, Conectiva, CERT, etc. These affected multiple RADIUS