Forum Home
Press F1
 
Thread ID: 36669 2003-08-16 03:48:00 for all those Red Hat users there is a update for you stu140103 (137) Press F1
Post ID Timestamp Content User
168128 2003-08-16 03:48:00 up2date updated to fix incorrect package signing logic

Red Hat has released an update for its up2date package manager and installer. The versions of up2date shipped in Red Hat 8.0 and 9.0 have been found to have faulty logic when presented with unsigned packages, installing any unsigned packages if they are provided from Red hat Network servers. The default behaviour is supposed to be that up2date will only install properly signed packages. More details and links to the updated up2date packages are in the Red Hat security advisory linked below.

up2date improperly checks GPG signature of packages redhat.com (s0.tx.co.nz)
stu140103 (137)
1