The following packages will be removed from Portage in 48 hours, unless
someone steps up to fix the corresponding security bugs - and takeover
upstream when it's dead :)

app-emulation/glukalka (bug 70666)
No upstream and vulnerable to multiple tempfile vulns and race
conditions, this package has been masked since 2004-11-26, with noone
missing it.

net-ftp/junkie (bug 74696)
No upstream and vulnerable to remote execution of code, this package has
been masked since 2004-12-30, no complaints received.

net-p2p/napshare (bug 74703)
Vulnerable to remote execution of code, the new version does not compile
correctly and no maintainer stepped up. This package has been masked
since 2005-01-07, apparently noone is missing it.

media-video/gv4l (bug 82631)
No upstream answer, and vulnerable to various local problems, this
package has been masked since 2005-03-18, nobody asked for it.

net-misc/dyndnsupdate (bug 84659)
No upstream and vulnerable to remote execution of code, this package has
been masked since 2005-03-21, with everyone switching to more secure
alternatives.

-- 
Thierry Carrez (Koon)
Operational Manager, Gentoo Linux Security

Attachment: signature.asc
Description: OpenPGP digital signature

Reply via email to