4 ms·
ArchLinux, in its current state, is vulnerable. I suspect it will be patched soon enough. /me sends a note to the package maintainers anyway.
by hobin 15y ago
ArchLinux, in its current state, is vulnerable. I suspect it will be patched soon enough.
/me sends a note to the package maintainers anyway.
- taudelta 15y agoarch compiles with FORTIFY_SOURCE also so it's still vulnerable, just a pain to exploit
- klodolph 15y agoArchLinux doesn't have package signing, so patching sudo isn't going to get you much.
- pdkp 15y agoYes they do. It is still pretty new, and from what I understand upgrading can be a bit of a pain, but pacman 4.0 has package signing. Been using Fedora for a bit now, so haven't actually tried it yet...
- gcr 15y agoSure it does, as of earlier this year. http://www.archlinux.org/news/pacman-4-moves-to-core/ http://www.archlinux.org/news/pacman-4-moves-to-core/ Still in beta though. Not very stable.