LWN.net Logo

Red Hat open-sources SPICE

Red Hat open-sources SPICE

Posted Dec 11, 2009 2:35 UTC (Fri) by mmcgrath (guest, #44906)
In reply to: Red Hat open-sources SPICE by rahvin
Parent article: Red Hat open-sources SPICE

> Now Redhat you need to release the details of the system breech you had and said you would release the details on but have yet to fulfill that obligation.

I don't remember Red Hat ever saying that. The Fedora Project said they would, and they did.


(Log in to post comments)

Red Hat open-sources SPICE

Posted Dec 11, 2009 11:07 UTC (Fri) by drag (subscriber, #31333) [Link]

Yes.. If I remember correctly the breach was that a Fedora developer lost
control of his SSH key which lead to the compromise of a Fedora signing
server.

This _may_ have lead to the compromise of the signing keys and if you were
using some non-official repositories for your Redhat systems then there was
a slight possibility that the attacker could of wormed his way onto one of
those servers in the same way. It did not have anything to do with Redhat
'proper' other then that Fedora is ran buy a bunch of Redhat folks.

Copyright © 2012, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds