Hacker News new | ask | show | jobs
by jbk 2709 days ago
Absolutely not: the installer blocks downgrade attacks.
1 comments

I’m not talking about a downgrade attack. I’m talking about upgrading to a known vulnerable version. You are at version X, attacker upgrades you to known vulnerable version X+1, even though the real latest version X+2 has a fix.