Re: FreeBSD Security Advisory FreeBSD-SA-05:21.openssl

From: Kris Kennaway (kris_at_obsecurity.org)
Date: 10/12/05

  • Next message: Colin Percival: "Re: FreeBSD Security Advisory FreeBSD-SA-05:21.openssl"
    Date: Wed, 12 Oct 2005 16:56:51 -0400
    To: Vladimir Terziev <vladimir.terziev@sun-fish.com>
    
    
    

    On Wed, Oct 12, 2005 at 11:14:57AM +0300, Vladimir Terziev wrote:
    >

    > Ok, i think the FreeBSD team should isolate all statically linked ?
    > applications which are part of the operating system and which depend
    > on OpenSSL. They must be re-build (not the whole operating system)
    > in order OpenSSL changes to be applyed to them.

    AFAIK there are no statically linked openssl applications in the
    FreeBSD base system, unless someone has specifically compiled them
    that way on their own.

    Kris

    P.S. Please wrap your lines at 70 characters so that your emails may
    be easily read.

    
    



  • Next message: Colin Percival: "Re: FreeBSD Security Advisory FreeBSD-SA-05:21.openssl"

    Relevant Pages

    • Re: Start program from boot, which needs library in non-standard place
      ... just stop when the OS is no longer running. ... I'm a bit surprised sage doesn't include its own copy of openssl :-) ... The theory is, as it's supplied with the operating system, it is OK. ... source or binary form) with the major components (compiler, kernel, ...
      (comp.unix.solaris)
    • Re: SSL is broken on FreeBSD
      ... verify error:num=20:unable to get local issuer certificate ... This issue is definitely NOT about "operating system A has different ... of such system and proper usage of openssl utility. ...
      (FreeBSD-Security)
    • RE: CVE-2014-0160?
      ... Your server appears to be patched against this bug. ... Is there any reason why nightly security patches are not enabled by default in FreeBSD? ... OpenSSL 1.0.0 branch is NOT vulnerable ... Some operating system distributions that have shipped with potentially vulnerable OpenSSL version: ...
      (FreeBSD-Security)
    • How to start using a free OS (was: Why Debian)
      ... I think there is some confusion that is introduced when we call a distribution like Debian an "operating system," which used to be a term used for the software that interacts with hardware, loads and runs other software, controls basic resources, etc. Debian is a collection of thousands of pieces of software, most of which are what used to be called "applications" and would have been considered separate from the "operating system". ... There are good reasons for this, we all know that it makes a lot of sense to have a common distribution and update system for the OS, libraries, applications, all of the dependencies worked out and updates coordinated; and that this is really only possible with free software. ...
      (Debian-User)
    • Re: Powerpoint crash on inserting picture
      ... Make sure you search the PowerPoint forum (although, ... Perhaps we should set an expectation: If you upgrade an operating system ... frequent, and applications have not been so complex, so for the most part, ... Mac users have "gotten away with it". ...
      (microsoft.public.mac.office.word)