From owner-freebsd-security@FreeBSD.ORG Fri Sep 26 08:44:57 2003 Return-Path: Delivered-To: freebsd-security@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id AB3FB16A4B3 for ; Fri, 26 Sep 2003 08:44:57 -0700 (PDT) Received: from tx0.oucs.ox.ac.uk (tx0.oucs.ox.ac.uk [129.67.1.163]) by mx1.FreeBSD.org (Postfix) with ESMTP id 84B0944049 for ; Fri, 26 Sep 2003 08:44:51 -0700 (PDT) (envelope-from colin.percival@wadham.ox.ac.uk) Received: from scan0.oucs.ox.ac.uk ([129.67.1.162] helo=localhost) by tx0.oucs.ox.ac.uk with esmtp (Exim 4.20) id 1A2um0-0005YR-F7 for security@freebsd.org; Fri, 26 Sep 2003 16:44:48 +0100 Received: from rx0.oucs.ox.ac.uk ([129.67.1.161]) by localhost (scan0.oucs.ox.ac.uk [129.67.1.162]) (amavisd-new, port 25) with ESMTP id 21169-05 for ; Fri, 26 Sep 2003 16:44:48 +0100 (BST) Received: from gateway.wadham.ox.ac.uk ([163.1.161.253]) by rx0.oucs.ox.ac.uk with smtp (Exim 4.20) id 1A2um0-0005YF-1i for security@freebsd.org; Fri, 26 Sep 2003 16:44:48 +0100 Received: (qmail 3976 invoked by uid 0); 26 Sep 2003 15:44:48 -0000 Received: from colin.percival@wadham.ox.ac.uk by gateway by uid 71 with qmail-scanner-1.16 (sweep: 2.14/3.71. spamassassin: 2.53. Clear:. Processed in 1.12915 secs); 26 Sep 2003 15:44:48 -0000 X-Qmail-Scanner-Mail-From: colin.percival@wadham.ox.ac.uk via gateway X-Qmail-Scanner: 1.16 (Clear:. Processed in 1.12915 secs) Received: from dhcp1131.wadham.ox.ac.uk (HELO piii600.wadham.ox.ac.uk) (163.1.161.131) by gateway.wadham.ox.ac.uk with SMTP; 26 Sep 2003 15:44:47 -0000 Message-Id: <5.0.2.1.1.20030926084025.02c962c8@popserver.sfu.ca> X-Sender: cperciva@popserver.sfu.ca X-Mailer: QUALCOMM Windows Eudora Version 5.0.2 Date: Fri, 26 Sep 2003 08:44:44 -0700 To: Mike Tancsa , security@freebsd.org From: Colin Percival In-Reply-To: <6.0.0.22.0.20030926113652.07ffbe88@209.112.4.2> References: <20030924153204.GE57702@madman.celabo.org> <3F705D4D.4070404@tenebras.com> <20030923205318.GB3346@scylla.towardex.com> <20030924091603.GC22622@starjuice.net> <20030924142015.GC57288@madman.celabo.org> <20030924142717.GA9026@sheol.localdomain> <20030924153204.GE57702@madman.celabo.org> Mime-Version: 1.0 Content-Type: text/plain; charset="us-ascii"; format=flowed Subject: Re: OpenSSH: multiple vulnerabilities in the new PAM code X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Security issues [members-only posting] List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 26 Sep 2003 15:44:57 -0000 At 11:38 26/09/2003 -0400, Mike Tancsa wrote: >Are there plans for an updated advisory ? Judging by UPDATING, this is going to be addressed in a new advisory (FreeBSD-SA-03:15.openssh). >In the mean time, I take it the same build instructions apply ? Almost. des bumped the version numbers in the config files, so you might want to mergemaster. (Or not; it seems rather pointless to me.) Colin Percival