package auditing in fedora

Sam Varshavchik mrsam at courier-mta.com
Fri Aug 3 10:56:47 UTC 2007


Jaigh Jaddo writes:

> 
> Is there a tool similar to freeBSD's portaudit? Something that will  
> report packages that have known vulnerabilities.

No. For the simple reason that a known vulnerability results in an updated 
package. If you want to make sure that you're not running any known 
vulnerability, run "yum update".


-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/fedora-list/attachments/20070803/30171e0b/attachment-0001.sig>


More information about the fedora-list mailing list