Impact of the Debian OpenSSL vulnerability
Posted May 17, 2008 7:03 UTC (Sat) by
BackSeat (subscriber, #1886)
In reply to:
Impact of the Debian OpenSSL vulnerability by Miravlix
Parent article:
Impact of the Debian OpenSSL vulnerability
a clueless guy decided to mess with code he didn't understand.
So what should this "clueless guy" do when he wants to make a change? He should have checked with the OpenSSL folk to ask if there was a problem in making the change. Which is exactly what he did. You may want to read the other LWN articles on this vulnerability: no one is saying that the Debian maintainer is innocent, but he certainly isn't the only one who should accept some responsibility for what happened.
(
Log in to post comments)