Re: [openssh-unix-announce] Re: Upcoming OpenSSH vulnerability (fwd)

From: Brett Glass (brett@lariat.org)
Date: 06/25/02


Date: Mon, 24 Jun 2002 20:06:27 -0600 (MDT)
From: Brett Glass <brett@lariat.org>
To: dinoex@freebsd.org, nectar@freebsd.org, piechota@argolis.org

Theo has made it quite clear both in his announcement and in private mail:
Anyone who wants to be safe MUST get a version of OpenSSH with "privilege
separation" running before next week. The latest version in the Ports tree
appears to be 3.3p1, while the packages are older. Theo recommends 3.3.1p,
so we should make sure that this version is available both as a port and
as a binary package by week's end. I doubt that this will be hard to do,
since FreeBSD is very close to OpenBSD and NetBSD API-wise.

--Brett

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message



Relevant Pages

  • ENOUGH!!! Re: [openssh-unix-announce] Re: Upcoming OpenSSH vulnerability (fwd)
    ... >>>Release now and let the community help you fix the bug (since ... >>>apparently it's so complicated that you can't fix it right away on your ... People don't get that what Theo is doing is very fair. ... with "unsubscribe freebsd-security" in the body of the message ...
    (FreeBSD-Security)
  • Re: Hogwash
    ... Theo de Raadt wrote: ... No candy for a week. ... with "unsubscribe freebsd-security" in the body of the message ...
    (FreeBSD-Security)