<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Debian Linux &#8216;Major security flaw&#8217;</title>
	<atom:link href="http://www.p2pnet.net/story/16079/feed" rel="self" type="application/rss+xml" />
	<link>http://www.p2pnet.net/story/16079</link>
	<description>p2pnet.net - reader powered</description>
	<lastBuildDate>Tue, 24 Nov 2009 04:43:11 -0600</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.4</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Reader's Write</title>
		<link>http://www.p2pnet.net/story/16079/comment-page-1#comment-498704</link>
		<dc:creator>Reader's Write</dc:creator>
		<pubDate>Fri, 30 May 2008 03:17:40 +0000</pubDate>
		<guid isPermaLink="false">http://www.p2pnet.net/story/16079#comment-498704</guid>
		<description>old, very old...</description>
		<content:encoded><![CDATA[<p>old, very old&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Reader's Write</title>
		<link>http://www.p2pnet.net/story/16079/comment-page-1#comment-498188</link>
		<dc:creator>Reader's Write</dc:creator>
		<pubDate>Thu, 29 May 2008 21:19:25 +0000</pubDate>
		<guid isPermaLink="false">http://www.p2pnet.net/story/16079#comment-498188</guid>
		<description>This happens several times a week with microsoft/apple (and they take longer to relese patches)

But it dose highlight why you should not use automated code security tools which fixed the code by removing randomness when it was actually needed.

It also shows that you should pass code patches up the chain as this would have caught the problem and after the real ssl team had a good lol moment seeing this patch they would have told the author of this patch why.</description>
		<content:encoded><![CDATA[<p>This happens several times a week with microsoft/apple (and they take longer to relese patches)</p>
<p>But it dose highlight why you should not use automated code security tools which fixed the code by removing randomness when it was actually needed.</p>
<p>It also shows that you should pass code patches up the chain as this would have caught the problem and after the real ssl team had a good lol moment seeing this patch they would have told the author of this patch why.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
