From owner-freebsd-security@FreeBSD.ORG Wed May 1 02:54:51 2013 Return-Path: Delivered-To: freebsd-security@FreeBSD.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by hub.freebsd.org (Postfix) with ESMTP id 29DC1DEF; Wed, 1 May 2013 02:54:51 +0000 (UTC) (envelope-from m-freebsd@fuglos.org) Received: from m.fuglos.org (m.fuglos.org [217.11.61.114]) by mx1.freebsd.org (Postfix) with ESMTP id E22F2133A; Wed, 1 May 2013 02:54:50 +0000 (UTC) Received: by m.fuglos.org (Postfix, from userid 1001) id 988E235C3F7; Wed, 1 May 2013 04:47:49 +0200 (CEST) Received: from localhost (localhost [127.0.0.1]) by m.fuglos.org (Postfix) with ESMTP id 2F4B735B857; Wed, 1 May 2013 04:47:49 +0200 (CEST) Date: Wed, 1 May 2013 04:47:48 +0200 (CEST) From: Melanie Schulte X-X-Sender: mel@m.fuglos.org To: freebsd-security@FreeBSD.org Subject: Re: FreeBSD Security Advisory FreeBSD-SA-13:05.nfsserver In-Reply-To: <20130430224850.GA1579@glenbarber.us> Message-ID: References: <201304292055.r3TKtcEs039958@freefall.freebsd.org> <201304292208.QAA16119@lariat.net> <20130430034603.GF1588@glenbarber.us> <201304300416.WAA20729@lariat.net> <20130430042415.GG1588@glenbarber.us> <201304301936.NAA02519@lariat.net> <20130430211531.GA1621@glenbarber.us> <201304302241.QAA05359@lariat.net> <20130430224850.GA1579@glenbarber.us> User-Agent: Alpine 2.00 (BSF 1167 2008-08-23) MIME-Version: 1.0 Content-Type: TEXT/PLAIN; format=flowed; charset=US-ASCII Cc: Glen Barber X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.14 Precedence: list List-Id: "Security issues \[members-only posting\]" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 01 May 2013 02:54:51 -0000 Hi, > I disagree that there is a problem, however, since users building a > custom kernel should _not_ use freebsd-update(8) for kernel > upgrades. Could you please elaborate on that? I have also built my own kernel on my servers and I must have missed the section in the handbook saying that running a custom kernel implies that freebsd-update should not be used. Given a security problem, I don't want to spend hours recompiling my base system whereas freebsd-update fixed the problem in seconds. Thanks, melanie