Would it be possible to get the patches noted to fix these flaws? Other distros would be interested in it as well (as would upstream, I imagine). Has this been reported upstream yet? -- Vincent Danen / Red Hat Security Response Team