Re: (Case MB46439) [SECURITY] [DSA 2641-2] libapache2-mod-perl2 update related to DSA 2641-1

2013-03-20 Thread David Dejaeghere
I hope that is a golden ticket. I want to visit the chocolate factory! 2013/3/20 Mythic Beasts > Thank you for your mail to Mythic Beasts Support. Your query has been > received, and we will respond shortly. Please preserve the case number > in the subject line of any replies regarding this ti

Re: about bash and Debian Lenny

2014-10-01 Thread David Dejaeghere
What part of: "Debian GNU/Linux 5.0 has been superseded by Debian 6.0 ("squeeze"). Security updates have been discontinued as of February 6th, 2012. " http://www.debian.org/releases/lenny/index.en.html , didnt you understand? :) There are much more security issues than shellshock alone with Debian

Re: about bash and Debian Lenny

2014-10-01 Thread David Dejaeghere
With Qmail exposed and being an attack vector I would advice to build your own updated bash package. You wont get official security updates. 2014-10-01 14:06 GMT+02:00 Nikolay Hristov : > On 10/01/2014 02:58 PM, Konstantin Khomoutov wrote: > >> On Wed, 1 Oct 2014 14:45:55 +0300 >> Nikolay Hristov

Re: about bash and Debian Lenny

2014-10-01 Thread David Dejaeghere
Also about not thrusting people, you are sending to this list with your company email address and tell everyone here you have an exploitable qmail setup running. Be carefull with the information you make public. Regards, David 2014-10-01 14:17 GMT+02:00 David Dejaeghere : > With Qmail expo