Author: kcd-guest Date: 2014-09-07 22:41:42 +0000 (Sun, 07 Sep 2014) New Revision: 28634
Modified: hardening/subgoal-daemons.txt Log: Remove obsolete packages, document version fixed Modified: hardening/subgoal-daemons.txt =================================================================== --- hardening/subgoal-daemons.txt 2014-09-07 21:14:11 UTC (rev 28633) +++ hardening/subgoal-daemons.txt 2014-09-07 22:41:42 UTC (rev 28634) @@ -21,8 +21,6 @@ amule and archfs -asterisk -at autofs autossh avr-evtd @@ -31,7 +29,6 @@ bcron beanstalkd binkd -bip bird bitlbee bluemon @@ -40,12 +37,6 @@ bozohttpd busybox-syslogd c-icap -cfengine2 -cherokee -clamsmtp -collectd -conntrack -consolekit crossfire ctrlproxy cvsd @@ -57,7 +48,6 @@ dancer-services dante dbndns -dbus dhis-dns-engine dhis-mx-sendmail-engine dhis-server @@ -65,18 +55,14 @@ djbdns dma dnsproxy -dovecot dsyslog dynamips eggdrop ekeyd esmtp -exim4 ez-ipupdate fldigi -fprobe freepops -freeradius gamin gammu gconf @@ -132,7 +118,6 @@ maradns masqmail mathopd -memcached micro-httpd milter-greylist mini-httpd @@ -151,7 +136,6 @@ net-snmp netatalk netplug -nfdump nfs-utils ngetty ngircd @@ -191,20 +175,16 @@ shishi sl-modem sleepd -slony1 -slony1-2 smcroute snmptrapfmt sphinxsearch squidguard -stunnel4 sup swapspace synergy sysrqd sysstat sysvinit -tcpd tcpspy telepathy-gabble telepathy-haze @@ -213,12 +193,9 @@ telepathy-sofiasip telnetd-ssl tetrinet-server -thttpd timidity timps -tor tracker -transmission-daemon tsocks ttysnoop udev @@ -231,14 +208,12 @@ uucp uw-imap v86d -varnish vtun warsow-server webfs wicd-cli wims wmaloader -wu-ftpd xfce4-session xfce4-volumed xfstt @@ -249,7 +224,6 @@ xserver-xephyr xymon yubikey-server-c -zabbix zephyr Candidates: @@ -257,24 +231,53 @@ fair (#725360) Partially fixed: +asterisk 1:1.8.8.2~dfsg-1 #653944, hardening flags disabled since 1:11.5.1~dfsg-1 +balance , no pie and bindnow +bip 0.8.9-1, need only bindnow +cfengine2 , FTBFS with -Werror=format-security +cfengine3 , FTBFS with -Werror=format-security +cherokee, removed from the archive +clamsmtp 1.10-11, no pie and bindnow +consolekit 0.4.5-3, no pie and bindnow +fprobe , no pie and bindnow +conntrack 1:1.2.1-1, no pie and bindnow +mediatomb 0.12.1-4, no pie and bindnow +memcached 1.4.13-0.1 #655134, no pie and bindnow +perdition 1.19~rc5-1 #655412, no pie and bindnow +ntp 1:4.2.6.p3+dfsg-2, no pie and bindnow +pound 2.6-2 #654833, no pie and bindnow +varnish 3.0.2-2 #663064, no pie and bindnow +trafficserver 3.0.2-1 +tcpd 7.6.q-22, no pie and bindnow +tor 0.2.2.7-alpha-2 Resolved/fixed: aiccu 20070115-15 #644408 amanda 1:3.3.1-1 apache2 2.2.12-1, sometimes partial apt-cacher-ng 0.6.12-1 +at 3.1.13-2 avahi bind9 1:9.5.0.dfsg.P2-2 +collectd 4.10.7-1 #656271 cron 3.0pl1-121 +dbus 1.5.10-1 +dovecot 1:2.0.18-1 #653530 +dnsmasq 2.62-1 +exim4 4.80~rc2-1, false positive with blhc fetchmail 6.3.21-3 +freeradius 2.1.12+dfsg-1 #657838 +haproxy inetutils 2:1.9-1 isc-dhcp 4.2.2-2 krb5 1.10+dfsg~beta1-1 #655248 lighttpd 1.4.30-1 loqui 0.5.1-2 memcachedb 1.2.0-9 +minidlna 1.0.25+dfsg-1 nagios-plugins 1.4.15-5 nbd 1:3.0-1 +nfdump nginx 1.1.14-1 openldap 2.4.25-4 #644427 openssh 1:5.2p1-1 @@ -286,17 +289,23 @@ squid 2.7.STABLE7-1 squid3 partial sslh 1.10-1 +stunnel4 3:4.53-1 suricata 1.0-1 tcpdump 4.0.0-6 tinc 1.0.19-1 tinyproxy 1.8.3-2 +transmission-daemon 2.51-2 #671569 trousers 0.3.8-1 vsftpd 2.3.5-2 #644295 xdm 1:1.1.11-1 w3m 0.5.3-5 inspircd 2.0.5-0.1 radvd 1:1.9.1-1.1 #665715 +redis-server 2:2.8.14-1 #760567 +slony1-2 sniffit 0.3.7.beta-17 (#649817) +zabbix 1:2.0.1+dfsg-1 Not relevant: sks ocaml + _______________________________________________ Secure-testing-commits mailing list Secure-testing-commits@lists.alioth.debian.org http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits