On Tue, Dec 30, 2003 at 12:22:38PM +0100, Axel Thimm wrote: > o Red Hat never made rpm.org's errata official for any reasons they > may have. I suggest asking why. Probably they do not consider the > rpm upgrades stable enough. This is a strong signal not to go that > way. It's a weak signal at best. I think it's more likely that Red Hat QA had their hands full with security updates and didn't want to spend any time/resources QA-ing bug fix packages for RPM. In fact, Red Hat didn't even bother releasing an update to fix this security problem in logwatch in Red Hat 8.0: https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=83097 IME, the rpm.org errata are definitely more stable than what ships with Red Hat 8.0/9. -Barry K. Nathan <barryn@xxxxxxxxx>