[Techtalk] Zlib exploit

Malcolm rannirl-lc at otherkin.net
Tue Mar 12 13:25:03 EST 2002


On Tuesday 12 March 2002 12:39 pm,  Raven, corporate courtesan wrote:

> > Now, is zlib I compiled really installed over the old one or are
> > the two sitting in parallel?  And I didn't break apt/dpkg forever
> > by compiling it from source, did I? :)

> 	It probably did install right over the old one; that's what my
> Debian system did.  Take a look at the timestamp on the files; that
> will tell you.  And no, you didn't break apt, but apt won't know
> about this new version.  When the patched version comes out for
> Debian you may have to manually force an upgrade of that package,
> but after that you should be fine again.

Except that apt will know about the -older- version, so it will 
upgrade the package, overwriting the compiled version. (Unless apt 
checks the timestamps or something, which I'd be surprised at). 
That's only a problem if your compiled version is a newer version 
than the package, which would not be the case here.



-- 
Yea, though I walk through the valley of the Shadow of Death, I
shall fear no evil, for yea I am the meanest bitch in the valley....
- Marian Collentine

<<------------------------------------------------------------------>>
<<  This email is monitored by the US government under the auspice  >>
<< of the USA act. For private communication, ask me for my PGP key >>
<< ----- PGP: envelopes for email - www.pgp.com www.gnupg.org ----- >>



More information about the Techtalk mailing list