From owner-freebsd-security Tue Jul 10 8:44: 1 2001 Delivered-To: freebsd-security@freebsd.org Received: from comp1.mastery.ca (comp1.mastery.ca [209.202.88.60]) by hub.freebsd.org (Postfix) with ESMTP id 1BDAB37B406 for ; Tue, 10 Jul 2001 08:43:57 -0700 (PDT) (envelope-from rmasse@mastery.ca) Received: from 78kw954 ([209.202.88.150]) (authenticated) by comp1.mastery.ca (8.11.3/8.11.1) with ESMTP id f6AFhnJ00604; Tue, 10 Jul 2001 11:43:49 -0400 (EDT) (envelope-from rmasse@mastery.ca) Message-ID: <017001c10957$1c66fa00$3200000a@Intranet> From: "Ryan Masse" To: "jamie rishaw" Cc: "FreeBSD-Security" References: <00ff01c10950$86f94000$3200000a@Intranet> <20010710103255.D5972@playboy.com> Subject: Re: security advisories Date: Tue, 10 Jul 2001 11:43:48 -0400 X-Priority: 3 X-MSMail-Priority: Normal X-Mailer: Microsoft Outlook Express 5.50.4522.1200 X-MimeOLE: Produced By Microsoft MimeOLE V5.50.4522.1200 Sender: owner-freebsd-security@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.org complain? for those individuals with the port in question installed and who wait for an advisory to take action in updating their source would have had a possible security breach from the time realized to the time an advisory is issued. Wouldn't you want an advisory as soon the bug was found? Even though the samba bug is not of major concern what if it were more serious? Would you want to leave your mission critical servers open to attack? Ryan > Why complain about it if you already know? :) > > On Tue, Jul 10, 2001 at 10:56:40AM -0400, Ryan Masse wrote: > > shouldn't some of these advisories been issued long before now? the samba > > vunerability has been mainstream for 2+ weeks. > > > > http://us6.samba.org/samba/whatsnew/macroexploit.html > > > > Ryan > > > > > > > > To Unsubscribe: send mail to majordomo@FreeBSD.org > > with "unsubscribe freebsd-security" in the body of the message > > > > -- > jamie rishaw > sr. wan/unix engineer/ninja // playboy enterprises inc. > opinions stated are mine, and are not necessarily those of the bunny. > dance like it hurts. love like you need money. work when people are watching. > > To Unsubscribe: send mail to majordomo@FreeBSD.org > with "unsubscribe freebsd-security" in the body of the message > To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message