[11139] in bugtraq
Re: [linux-security] [RHSA-1999:023-01] Potential security
daemon@ATHENA.MIT.EDU (Edward S. Marshall)
Tue Jul 27 01:52:30 1999
Mime-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII
Message-Id: <Pine.LNX.4.10.9907252301361.18592-100000@labyrinth.logic.net>
Date: Sun, 25 Jul 1999 23:05:07 -0500
Reply-To: "Edward S. Marshall" <emarshal@LOGIC.NET>
From: "Edward S. Marshall" <emarshal@LOGIC.NET>
X-To: BUGTRAQ@SECURITYFOCUS.COM
To: BUGTRAQ@SECURITYFOCUS.COM
In-Reply-To: <"H_NhM1.0.yC1.YrZct"@lists.redhat.com>
On Sun, 25 Jul 1999 aleph1@UNDERGROUND.ORG wrote:
[...]
> 2. Bug IDs fixed:
[...]
None listed.
[...]
> 7. Problem description:
>
> At the request of the gnumeric maintainer a new version is being released by
> Red Hat which addresses potential security issues with the version of
> gnumeric shipped in Red Hat Linux 6.0.
[..]
No useful data.
> 10. References:
[...]
None listed.
Am I the only one who noticed and was concerned that this alert contained
absolutely no useful information about the nature of the security problem
found?
I don't blindly update software just because the vendor told me to, on the
assumption that "it must be good for me". I don't suspect a lot of people
on this list do either...
--
Edward S. Marshall <emarshal@logic.net> [ What goes up, must come down. ]
http://www.logic.net/~emarshal/ [ Ask any system administrator. ]