Date: 08 Jul 2000 06:53:03 +0200 From: Cyrille Lefevre <clefevre@no-spam.citeweb.net> To: Cy Schubert - ITSD Open Systems Group <Cy.Schubert@uumail.gov.bc.ca> Cc: freebsd-ports@FreeBSD.ORG Subject: Re: ports/19503: isc-dhcp3 port root exploit Message-ID: <puopb4uo.fsf@pc166.gits.fr> In-Reply-To: Cy Schubert - ITSD Open Systems Group's message of "Mon, 26 Jun 2000 06:40:04 -0700 (PDT)" References: <200006261340.GAA91530@freefall.freebsd.org>
next in thread | previous in thread | raw e-mail | index | archive | help
Cy Schubert - ITSD Open Systems Group <Cy.Schubert@uumail.gov.bc.ca> writes: > The following reply was made to PR ports/19503; it has been noted by GNATS. > > From: Cy Schubert - ITSD Open Systems Group <Cy.Schubert@uumail.gov.bc.ca> > To: Will Andrews <andrews@technologist.com> > Cc: Cy.Schubert@uumail.gov.bc.ca, FreeBSD-gnats-submit@FreeBSD.ORG > Subject: Re: ports/19503: isc-dhcp3 port root exploit > Date: Mon, 26 Jun 2000 06:32:55 -0700 > > In message <20000625150950.A85886@argon.gryphonsoft.com>, Will Andrews > writes: > > On Sun, Jun 25, 2000 at 08:20:26AM -0700, Cy.Schubert@uumail.gov.bc.ca wrote: > > > >Synopsis: isc-dhcp3 root exploit > > > > isc-dhcp3 is not vulnerable, according to your quote. However, > > isc-dhcp2 IS vulnerable and needs to be updated. > > The advisory makes the statement, "this exploit is present in all > versions of the ISC DHCP client prior to 2.0pl1 and 3.0b1pl14". > Because of this statement, the version 2 port needs to be updated to > 2.0pl1 and the version 3 port needs to be updated to 3.0b1pl14. well. update your port tree. mine says : # cd /usr/ports # make search key=isc-dhcp3 Port: isc-dhcp3-3.0.b1.14 Path: /usr/ports/net/isc-dhcp3 Info: ISC Dynamic Host Configuration Protocol client and server code Maint: obrien@FreeBSD.org Index: net B-deps: bind-8.2.2.p5 R-deps: so, it was just up to date on time you send your message :) # cd /usr/ports/net/isc-dhcp3 # cvs log Makefile ... revision 1.34 date: 2000/06/25 21:08:07; author: obrien; state: Exp; lines: +7 -3 Update to 3.0b1pl14 PR: 19493, 18475 Submitted by: Cyrille Lefevre <clefevre@citeweb.net> ... Cyrille. -- home:mailto:clefevre@no-spam.citeweb.net Supprimer "no-spam." pour me repondre. work:mailto:Cyrille.Lefevre@no-spam.edf.fr Remove "no-spam." to answer me back. To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-ports" in the body of the message
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?puopb4uo.fsf>