Re: [SECURITY] [DLA 1637-1] apt security update (amended)

2019-01-22 Thread Jason Guto
Would it be best practice to disable HTTP connections for apt and is the latter even possible? Thank you On Tue, Jan 22, 2019 at 9:55 AM Julian Andres Klode wrote: > > Package: apt > Version: 1.0.9.8.5 > CVE ID : CVE-2019-3462 > Debian Bug : > > (amended to refer to

Re: [SECURITY] [DLA 1637-1] apt security update (amended)

2019-01-22 Thread Jason Guto
jasongutow...@westat.com On Tue, Jan 22, 2019 at 9:55 AM Julian Andres Klode wrote: > > Package: apt > Version: 1.0.9.8.5 > CVE ID : CVE-2019-3462 > Debian Bug : > > (amended to refer to jessie in the sources.list entry below, instead of > stable) > > Max Justicz