#centos - Wed 16 May 2007 between 00:23 and 00:37



MauricioFyes, for me...
g_harrisrun 4.4 it's about as stable as you can get
EvolutionMauricioF: see the topic about backporting.
guigouz_MauricioF: centos rebuilds redaht packages.
MauricioFg_harris: ok, understood
g_harris5.0 is not bad so far, I'm running it and even deploying it on 5 servers saturday if they get my software out of beta that is
guigouz_MauricioF: people at redhat backport patches for vulnerabilities to theit stable version, and keep doing that for 7 years.
MauricioFguigouz_: ok! ;)
guigouz_MauricioF: that means they fix the older package, without introducing new bugs. also, your config files and other dependencies won't break.
MauricioFguigouz_: good!!
guigouz_: do u think that httpd 2.0.52 is ok?
guigouz_MauricioF: I only backport stuff in extreme rare cases, and it's often "rpm --rebuild some.src.rpm"
MauricioF: yes, it's fine.
MauricioFjust i don't want risks
g_harrisso uhm if not centos then... what?
MauricioFg_harris: i'm working with centos because asked a new client
g_harrisso what do you consider less risky?
just curious centos is what I switched to because I got tired of the treadmill upgrades that were fedora core
MauricioFg_harris: oh... good info...
just i saw in secunia.com
php vuls
and... i thought may be httpd too... ok i didn't find anything about httpd yet...but....
EvolutionMauricioF: the version numbers on centos and RHEL often lie, as fixes are backported.
version numbers stay low, but the security issue is fixed.
you'll find the CVE entries in the announcements, and usually the changelog.
donavanEvolution, there is a URL in the /topic
MauricioFEvolution: ok, understood
Evolutiondonavan: http://www.rafb.net/paste ?
donavantry the "understanding backporting" link
MauricioFanybody updated php-4.3.9 to 4.4.7 ? because i saw this.... http://www.securityfocus.com/bid/23813
and i've php php-mysql php-pear
ivazquezDid you check the package changelog to see if a fix has been applied?
MauricioFivazquez: oops... i didn't ...ok i understand now CentOS's philosophy...
ivazquezActually, it's RH's philosophy. CentOS just makes it available to the masses.
evil_steve"if it ain't broke, backport it", right?
donavanivazquez, RH is available to the masses
ivazquezFor a price.
MauricioFivazquez: ok, just a CentOS newbie's mistake...
ivazquezNo worries, just clarifying.
MauricioFivazquez: tks a lot

Page: 3 10 17 24 

IrcArchive