Marcin Juszkiewicz December 21st, 2005
Few days ago Dropbear author released 0.47 version and security fix for older versions. Today I added fixed dropbear 0.45-r2 into ‘upgrades’ feed on our main mirror.
Upgrade is recommended.
Upstream note:
This release also fixes a potential security issue, which may allow authenticated users to run arbitrary code as the server user. I’m unsure exactly how likely it is to be exploitable, but anyone who’s running a multi-user server is advised to upgrade.
Marcin Juszkiewicz December 1st, 2005
From time to time I have to moderate comments and during that I notice that many users use comments system instead of bugtrackers. This way we will lose many errors or fixes because time which we have to spend on checking all source where users complain result in less time used for bugfixing, developing.
If you flashed OpenZaurus and something does not work then report it in OpenEmbedded bugtracker with info which machine you have, which distro, which flavour of distro (opie/gpe/bootstrap) and how you find bug, is it reproductable etc. Too much info is better then too less.
You do not have to be a developer to report but if you find a bug and not report it then do not complain about it.