On Tue, Aug 25, 2009 at 12:33:10PM -0500, David Taveras wrote: Hi,
> > I understand that 2.2.13 is already being worked out in MAIN, which is > awesome... but iam speaking historical remainings of these known > vulnerabilities since they where introduced throughout the life of 2.2.9 and > the present with 2.2.11 > Does the community work on releasing the patches to the listed > vulnerabilities with the new apache 2.2.13 ? Does this mean that Iam > vulnerable to all of these within the 2.2.9/2.2.11 currently... if so I > would understand this is due to insufficient human resources but I just need > to know where iam standing at to take the necessary precautions and not > assume everything as a OPENBSD_4_5 user. the update to 2.2.13 carries all the fixes as the upstream does, as it updates the port to use the source (distfile) of 2.2.13. felix -- GPG/PGP: D9AC74D0 / 076E 1E87 3E05 1C7F B1A0 8A48 0D31 9BD3 D9AC 74D0 http://hazardous.org/~fkr - f...@hazardous.org - f...@silc|irc - FKR-RIPE https://www.bytemine.net/ - bytemine - BSD based Hosting/Solutions/Ideas