Hello?
Derek D. Martin
ddm at pizzashack.org
Fri Aug 9 12:44:59 EDT 2002
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Is this thing on? :)
I haven't seen any traffic from this list lately. I just discovered
that the list address had changed, and now I wonder if that's not (at
least partly) why...
I also feel I'd be remiss to not point out to the list maintainers
that GNU Mailman has a long history of security vulnerabilities. The
version currently in use, 2.0.9, is known to be vulnerable to a number
of cross-site scripting attacks. The actual threat to the server, or
to the user community, posed by those attacks is fairly low. Previous
recent versions, however, have also had more serious bugs found in
them that allowed access to arbitrary accounts. It makes me wonder
what else is hiding in the code...
For those who haven't noticed, the new address for posting to the list
is:
gnhlug-discuss at mail.gnhlug.org
- --
Derek Martin ddm at pizzashack.org
- ---------------------------------------------
I prefer mail encrypted with PGP/GPG!
GnuPG Key ID: 0x81CFE75D
Retrieve my public key at http://pgp.mit.edu
Learn more about it at http://www.gnupg.org
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.6 (GNU/Linux)
Comment: For info see http://www.gnupg.org
iD8DBQE9U/GLdjdlQoHP510RAnwRAJ40bHlf7goqtUx1pjGVn2Veof25ggCgsICu
FEicYvn2u8F4E0ExlBVloZw=
=wqXQ
-----END PGP SIGNATURE-----
More information about the gnhlug-discuss
mailing list