<?xml version="1.0" encoding="iso-8859-1" ?>
<?xml-stylesheet title="XSL_formatting" type="text/xsl" href="/images/lists/rssstyle2.xsl"?>
<rss version="2.0">
<channel>
<title>Gentoo | Security</title>
<description>Mailing List Archive by Gossamer Threads</description>
<link>http://www.gossamer-threads.com/lists/gentoo/security/</link>
<language>en-us</language>
<copyright>(c) Gossamer Threads Inc. All rights reserved.</copyright>
<lastBuildDate>13 Feb  2012 03:38:01 -0800</lastBuildDate>
<ttl>120</ttl>
<image>
<title>Gossamer Threads | Gentoo | Security</title>
<width>75</width>
<height>23</height>
<link>http://www.gossamer-threads.com/lists/gentoo/security/</link>
<url>http://www.gossamer-threads.com/images/lists/rss_logo.jpg</url>
</image>
<item>
<title>[no subject]</title>
<description></description>
<pubDate>08 Dec  2011 22:21:59 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/gentoo/security/244096</link>
</item><item>
<title>Re: CVE-2011-4313 - BIND 9 Resolver crashes after logging an error in query.c</title>
<description>On Nov 17, 2011, at 1:30 AM, David Sommerseth wrote: &amp;gt; &amp;gt; Hi, &amp;gt; &amp;gt; This is a very fresh CVE, and I wondered if this has caught your attention? &amp;gt; When</description>
<pubDate>17 Nov  2011 00:48:23 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/gentoo/security/242696</link>
</item><item>
<title>CVE-2011-4313 - BIND 9 Resolver crashes after logging an error in query.c</title>
<description>Hi, This is a very fresh CVE, and I wondered if this has caught your attention? When would it be reasonable to expect an update for this issue? ISC</description>
<pubDate>16 Nov  2011 23:30:03 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/gentoo/security/242692</link>
</item><item>
<title>Re: No GLSA since January?!?</title>
<description>Rich Freeman wrote, on 08/27/2011 03:06 PM: &amp;gt; However, that isn&amp;#039;t really what we&amp;#039;re discussing here. What we&amp;#039;re &amp;gt; talking about is GLSAs vs no GLSAs.</description>
<pubDate>27 Aug  2011 06:34:27 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/gentoo/security/237182</link>
</item><item>
<title>Re: No GLSA since January?!?</title>
<description>On Sat, Aug 27, 2011 at 8:34 AM, Tobias Heinlein &amp;lt;keytoaster@gentoo.org&amp;gt; wrote: &amp;gt; I have read that idea multiple times now, each of them by people not</description>
<pubDate>27 Aug  2011 06:06:43 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/gentoo/security/237181</link>
</item><item>
<title>Re: No GLSA since January?!?</title>
<description>Rich Freeman wrote, on 08/27/2011 02:13 PM: &amp;gt; Note that I&amp;#039;m basically advocating ditching the tool. A tool is good &amp;gt; when it improves productivity.</description>
<pubDate>27 Aug  2011 05:34:39 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/gentoo/security/237180</link>
</item><item>
<title>Re: No GLSA since January?!?</title>
<description>On Sat, Aug 27, 2011 at 4:49 AM, Christian Kauhaus &amp;lt;kc@gocept.com&amp;gt; wrote: &amp;gt; So in consequence I would appreciate to have both mechanisms: a timely &amp;gt; u</description>
<pubDate>27 Aug  2011 05:13:02 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/gentoo/security/237179</link>
</item><item>
<title>Re: No GLSA since January?!?</title>
<description>Am 26.08.2011 20:08, schrieb Kevin Bryan: &amp;gt; SECURITY_FIXES=&amp;quot;&amp;lt;www-plugins/adobe-flash-10.1.102.64&amp;quot; &amp;gt; SECURITY_REF=&amp;quot;CVE:2010-2169 http://...&amp;quot; &amp;gt; SECURITY</description>
<pubDate>27 Aug  2011 01:49:09 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/gentoo/security/237175</link>
</item><item>
<title>Re: No GLSA since January?!?</title>
<description>But Alex, this could be a great improvement in system at all. This can help administrators to measure better its systems, and may be &amp;quot;force&amp;quot; developer</description>
<pubDate>26 Aug  2011 16:38:50 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/gentoo/security/237171</link>
</item><item>
<title>Re: No GLSA since January?!?</title>
<description>On Friday 26 August 2011 16:02:56 Kevin Bryan wrote: &amp;gt; I was not considering the entire process, just the part that really &amp;gt; impacts me: identifying v</description>
<pubDate>26 Aug  2011 15:27:33 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/gentoo/security/237168</link>
</item><item>
<title>Re: No GLSA since January?!?</title>
<description>I like this approach but I have no idea about how this could be performed. ACCEPT_RISKS=&amp;quot;remote dos&amp;quot; emerge ... Sounds very cool to me. Daniel On</description>
<pubDate>26 Aug  2011 13:40:49 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/gentoo/security/237163</link>
</item><item>
<title>Re: No GLSA since January?!?</title>
<description>-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 I was not considering the entire process, just the part that really impacts me: identifying vulnerable</description>
<pubDate>26 Aug  2011 13:02:56 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/gentoo/security/237162</link>
</item><item>
<title>Re: No GLSA since January?!?</title>
<description>On Friday, August 26, 2011 08:07:57 PM Alex Legler wrote: &amp;gt; On Friday 26 August 2011 20:00:15 Joost Roeleveld wrote: &amp;gt; &amp;gt; On Friday, August 26, 2011 07</description>
<pubDate>26 Aug  2011 12:30:02 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/gentoo/security/237161</link>
</item><item>
<title>Re: No GLSA since January?!?</title>
<description>Alex. For WEB vulnerability discovering, one of the most important to us is Nessus to search and confronting against CVE database. Sometimes, Nessus</description>
<pubDate>26 Aug  2011 12:27:03 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/gentoo/security/237160</link>
</item><item>
<title>Re: No GLSA since January?!?</title>
<description>On Friday 26 August 2011 15:22:40 Daniel A. Avelino wrote: &amp;gt; &amp;gt; When I think about automation, I had in mind something that could help &amp;gt; &amp;gt; developers</description>
<pubDate>26 Aug  2011 11:44:06 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/gentoo/security/237159</link>
</item><item>
<title>Re: No GLSA since January?!?</title>
<description>Hi Kevin. That is an interesting idea. So one could check about vulnerabilies solutions _before_ package installation. And better. This could give us</description>
<pubDate>26 Aug  2011 11:41:58 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/gentoo/security/237155</link>
</item><item>
<title>Re: No GLSA since January?!?</title>
<description>On Friday 26 August 2011 14:08:38 Kevin Bryan wrote: &amp;gt; Although I like having the summary information about what the &amp;gt; vulnerability is, if I&amp;#039;m only r</description>
<pubDate>26 Aug  2011 11:40:29 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/gentoo/security/237154</link>
</item><item>
<title>Re: No GLSA since January?!?</title>
<description>On Fri, Aug 26, 2011 at 2:57 PM, Alex Legler &amp;lt;a3li@gentoo.org&amp;gt; wrote: &amp;gt; On Friday 26 August 2011 14:18:20 Daniel A. Avelino wrote: &amp;gt; &amp;gt; Alex. &amp;gt; &amp;gt; &amp;gt; &amp;gt;</description>
<pubDate>26 Aug  2011 11:22:40 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/gentoo/security/237153</link>
</item><item>
<title>Re: No GLSA since January?!?</title>
<description>-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Although I like having the summary information about what the vulnerability is, if I&amp;#039;m only reading the</description>
<pubDate>26 Aug  2011 11:08:38 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/gentoo/security/237152</link>
</item><item>
<title>Re: No GLSA since January?!?</title>
<description>On Friday 26 August 2011 20:00:15 Joost Roeleveld wrote: &amp;gt; On Friday, August 26, 2011 07:06:35 PM Christian Kauhaus wrote: &amp;gt; &amp;gt; Am 26.08.2011 18:55, sc</description>
<pubDate>26 Aug  2011 11:07:57 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/gentoo/security/237151</link>
</item><item>
<title>Re: No GLSA since January?!?</title>
<description>On Friday 26 August 2011 14:18:20 Daniel A. Avelino wrote: &amp;gt; Alex. &amp;gt; &amp;gt; May be a call for volunteers more &amp;quot;intense&amp;quot; could improve the manpower. This &amp;gt;</description>
<pubDate>26 Aug  2011 10:57:29 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/gentoo/security/237150</link>
</item><item>
<title>Re: No GLSA since January?!?</title>
<description>Alex. May be a call for volunteers more &amp;quot;intense&amp;quot; could improve the manpower. This could be a more easy start point to address, no?. I work too in so</description>
<pubDate>26 Aug  2011 10:18:20 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/gentoo/security/237149</link>
</item><item>
<title>Re: No GLSA since January?!?</title>
<description>Am 26.08.2011 18:55, schrieb Alex Legler: &amp;gt; Compared to other distributions, our advisories have been rather detailed with &amp;gt; lots of manually research</description>
<pubDate>26 Aug  2011 10:06:35 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/gentoo/security/237148</link>
</item><item>
<title>Re: No GLSA since January?!?</title>
<description>On Friday 26 August 2011 18:12:00 Christian Kauhaus wrote: &amp;gt; Hi, &amp;gt; &amp;gt; I&amp;#039;m wondering that may favorite Linux distro hasn&amp;#039;t had any security &amp;gt; announcem</description>
<pubDate>26 Aug  2011 09:55:43 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/gentoo/security/237145</link>
</item><item>
<title>Re: No GLSA since January?!?</title>
<description>Dear Christian Everything is secure. No reason to write GLSAs or to panic. ;)  Chris Am 26.08.2011 um 18:12 schrieb Christian Kauhaus: &amp;gt; Hi, &amp;gt; &amp;gt;</description>
<pubDate>26 Aug  2011 09:43:19 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/gentoo/security/237144</link>
</item>
</channel>
</rss>

