Date: Thu, 24 Apr 2014 02:31:56 -0700 From: "Ronald F. Guilmette" <rfg@tristatelogic.com> To: freebsd-security@freebsd.org Subject: Re: OpenSSL static analysis, was: De Raadt + FBSD + OpenSSH + hole? Message-ID: <22727.1398331916@server1.tristatelogic.com> In-Reply-To: <CAG5KPzyBSXFPzx6PZqu-9D9%2Bifn9ERNFc5Udxa4%2BsPJ2Fg3RSw@mail.gmail.com>
next in thread | previous in thread | raw e-mail | index | archive | help
In message <CAG5KPzyBSXFPzx6PZqu-9D9+ifn9ERNFc5Udxa4+sPJ2Fg3RSw@mail.gmail.com> Ben Laurie <benl@freebsd.org> wrote: >So where are your patches to fix these issues? Moi? Sorry. I'm confused. Was there something (anything) in or amongst the comments I made have could have been construed or interpreted to indicate that I personally was able to devote time to bugfixing on these specific packages? And more to the point, didn't I explicitly note that the OpenBSD dudes are... according to published reports... already laboring away on a slimed down and reorganized version of OpenSSL? Why would I or anyone else want to spend (waste?) time hacking on this until those guys release a new, improved and altogether svelte new version? Regards, rfg
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?22727.1398331916>