|
| | Subject: | Re: [SECURITY] [DSA 1291-1] New samba packages fix multiple vulnerabilities | | Group: | Debian-security | | From: | Noah Meyerhans | | Date: | 16 May 2007 |
On Wed, May 16, 2007 at 09:39:56PM +0200, Thomas Korber wrote:
> Moritz Muehlenhoff <jmm> writes:
>
> >> Nice work on getting this out. Is sarge going to get an update, is it
> >> even affected? I've looked into CVE-2007-2444, and
> >> http://www.securityfocus.com/bid/23974/ says that the version in sarge
> >> is affected.
>
> > Sarge is still missing a few builds.
>
> And what about updated packages for sparc and arm? My samba daemon runs
> on an old Ultra 60... :-)
For the moment you may be better off without the update. See e.g. bug
424629. (obviously if you machines get rooted then this isn't much
help...)
noah
|