Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 13 May 2019 10:32:05 -0600
From:      Brett Glass <brett@lariat.org>
To:        Gareth de Vaux <security@lordcow.org>
Cc:        FreeBSD-security@freebsd.org
Subject:   Re: POC and patch for the CVE-2018-15473
Message-ID:  <201905131632.KAA27384@mail.lariat.net>
In-Reply-To: <20190513161311.GA3080@lordcow.org>
References:  <201905131551.JAA27159@mail.lariat.net> <20190513161311.GA3080@lordcow.org>

index | next in thread | previous in thread | raw e-mail

At 10:13 AM 5/13/2019, you wrote:

>On Mon 2019-05-13 (09:51), Brett Glass wrote:
> > Is the FreeBSD port of OpenSSH 7.8 available for FreeBSD 11-STABLE
> > from the ports collection and as a binary package? If not, shouldn't it be?
>
>Yes, you can use the original at /usr/ports/security/openssh-portable

On my FreeBSD 11-STABLE boxes, the "distinfo" file for the 
"openssh-portable" port shows the version as "openssh-7.9p1". So, 
this is not 7.8 (which was tested with 12.0, at least, if not 11.x) 
and also has not been specifically tailored for FreeBSD. Am I 
likely to see any issues with the use of existing configuration 
files, performance, or features? Just asking, as a precaution, to 
ensure that I do not find myself with an unreachable machine if I 
install on a remote server.

--Brett Glass 



help

Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?201905131632.KAA27384>