LWN.net Logo

Cascading security updates

Cascading security updates

Posted Feb 28, 2008 7:15 UTC (Thu) by jimparis (subscriber, #38647)
Parent article: Cascading security updates

One example of cascading chaos was with Zlib vulnerabilities such as CAN-2005-2096 and CAN-2005-1849. So many packages statically link to zlib that binary scanners were developed to try to find them all. If I remember correctly this has resulted in a strong preference (at least within Debian) to always link zlib dynamically whenever possible, to avoid such problems in the future.


(Log in to post comments)

Copyright © 2008, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds