Re: FreeBSD Security Advisory FreeBSD-SA-06:13.sendmail



Hello Ruslan,

Friday, March 24, 2006, 2:56:28 PM, you wrote:

This doesn't change sendmail's identification string - it's still "8.13.1"
on RELENG_4_11, which makes detection of unpatched systems more difficult
to sysadmin. Wouldn't be wise to add, say, "-p1" to this string in
version.c?
RE> It depends on what you think about whether it's good or not
RE> that it's undetectable. I prefer it to be not-detectable.

After update I have seen version numbers (8.13.1 for RELENG_4_11 and
8.13.4 for RELENG_6_0). Got check for the safe version on sendmail.org
- 8.13.6 and ... rebuilt new sendmail again manually.

Some people have decided, that there was a mistake.
IMHO, it was necessary to fix version numbers.
Everyone know, how it to hide.

--
Best regards,
Yaroslav Shvets
mailto: freebsd@xxxxxxxxxx
icq: 105666


_______________________________________________
freebsd-security@xxxxxxxxxxx mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-security
To unsubscribe, send any mail to "freebsd-security-unsubscribe@xxxxxxxxxxx"



Relevant Pages

  • Re: FreeBSD Security Advisory FreeBSD-SA-06:13.sendmail
    ... On Fri, 24 Mar 2006, Ruslan Ermilov wrote: on RELENG_4_11, which makes detection of unpatched systems more difficult ... Wouldn't be wise to add, say, "-p1" to this string in ... I meant just this - to sysadmin, ...
    (FreeBSD-Security)
  • Re: FreeBSD Security Advisory FreeBSD-SA-06:13.sendmail
    ... which makes detection of unpatched systems more difficult ... to sysadmin. ... Wouldn't be wise to add, say, "-p1" to this string in version.c? ...
    (FreeBSD-Security)
  • Re: [sol9] quota question
    ... Words to the wise, njh@physiol.ox.ac.uk (Neil Hoggarth) wrote: ... The sysadmin would appear to have set for you a ... cannot access the other home dirs, and I better am not able to, they ...
    (comp.sys.sun.admin)