package auditing in fedora

Sam Varshavchik mrsam at courier-mta.com
Fri Aug 3 10:56:47 UTC 2007


Jaigh Jaddo writes:

> 
> Is there a tool similar to freeBSD's portaudit? Something that will  
> report packages that have known vulnerabilities.

No. For the simple reason that a known vulnerability results in an updated 
package. If you want to make sure that you're not running any known 
vulnerability, run "yum update".


-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
Url : http://lists.fedoraproject.org/pipermail/users/attachments/20070803/30171e0b/attachment-0002.bin 


More information about the users mailing list