Re: [Security-Discuss] Re: [Security Announce] MDKSA-2004:124 - Updated xorg-x11 packages fix libXpm overflow vulnerabilities
Vincent Danen <vdanen-7Aj/b8uzpy6AmYF/[email protected]>
| Newsgroups | gmane.linux.mandrake.security.general |
|---|---|
| Message-ID | <[email protected]> |
On 5-Nov-04, at 9:58 AM, Anne Wilson wrote:
>> And there's the kicker, isn't it? You *do* have a choice as to
>> whether
>> or not you install updates on Friday or wait until Monday. =)
>
> Fair enough. It was worth kicking around and thinking about it, but
> you are
> absolutely right. By now we should know the likelihood of things
> going badly
> wrong, and it's the only time I've known it do so in well over 2
> years. It's
> only right that we take our own decisions.
Yeah.. now if every update we put out had issues, well, then I could
understand some concern (then again, I think I'd be swiftly fired if
that were the case). But, in the end, it's up to when to install it,
as it fits within your own updates strategy. That we cannot dictate to
you, we can only try to accomodate as many people as possible.
--
*Please note gpg keyid FE6F2AFD has been replaced with keyid FEE30AD4*
"lynx -source http://linsec.ca/vdanen.asc | gpg --import"
{FEE30AD4 : 7F6C A60C 06C2 4811 FA1C A2BC 2EBC 5E32 FEE3 0AD4}
PGP.sig
(application/pgp-signature, 186 B) - not displayed