Is there a mechanism built into rpm or apt that will warn (or prevent) a user from installing a package contains a known security threat?
I'm thinking of an RPM like openssl-1.0.1e-15.el6.x86_64.rpm. Seems odd that it can float out there forever waiting for someone to use it, probably following outdated installation instructions for some offbeat secure software.