Debian 3.0r2 Released
FrankoBoy writes "As announced on DistroWatch, Debian 3.0r2 has been released this weekend, with some security issues fixed... and Rock 'n Diamonds dropped because of license problems. Here's the official announcement. This release had been slowed by an attack on Debian boxes discussed Friday."
Why are they releasing 3.0r2 now? Aren't they going to release 3.1 on December 1st? Has sarge been set back?
apt-get update
apt-get upgrade
Long live Schrodinger's cat...
Actually, the parent makes me wonder.
There have been a string of cracks against open source/free software interests recently: FSF, Linux kernel CVS, now Debian. I wonder if it's the same person/group behind these attacks, or if there's any pattern to the exploits. Has anybody looked into this possibility? If so, what have they found?
That wasn't one of mine, but I've been auditing a lot of Debian packages recently.
Games are an easy target as many of them are setgid(games); so that they may access a global high-score file.
Most of the vulnerabilities I've found have been in games - easy to start with the low hanging fruit and work your way up ;)
I switched to Debian several years ago after reading a Slashdot article announcing a new Debian release. I had already moved from Slackware to RedHat before that, and was never really impressed with the latter. I fell in love with Debian right away, and was always impressed with the project's desire to do things right.
;-)
Debian has its own ways of doing things, and as with any other distribution, you will be more productive if you learn and conform to these conventions rather than fighting them.
I wonder how many people will give Debian a try after reading this article. Hopefully those who do will find the experience as rewarding as I have