From owner-freebsd-questions@FreeBSD.ORG Mon Dec 19 15:12:04 2005 Return-Path: X-Original-To: freebsd-questions@freebsd.org Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 0A55616A41F for ; Mon, 19 Dec 2005 15:12:04 +0000 (GMT) (envelope-from ertr1013@student.uu.se) Received: from pne-smtpout2-sn2.hy.skanova.net (pne-smtpout2-sn2.hy.skanova.net [81.228.8.164]) by mx1.FreeBSD.org (Postfix) with ESMTP id 95EAC43D64 for ; Mon, 19 Dec 2005 15:12:02 +0000 (GMT) (envelope-from ertr1013@student.uu.se) Received: from falcon.midgard.homeip.net (83.253.29.241) by pne-smtpout2-sn2.hy.skanova.net (7.2.069.1) id 43A6B33B0000ADA6 for freebsd-questions@freebsd.org; Mon, 19 Dec 2005 16:12:02 +0100 Received: (qmail 48936 invoked by uid 1001); 19 Dec 2005 16:12:01 +0100 Date: Mon, 19 Dec 2005 16:12:01 +0100 From: Erik Trulsson To: rihad Message-ID: <20051219151201.GA48891@falcon.midgard.homeip.net> Mail-Followup-To: rihad , freebsd-questions@freebsd.org References: <43A6CA19.5020100@mail.ru> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <43A6CA19.5020100@mail.ru> User-Agent: Mutt/1.5.11 Cc: freebsd-questions@freebsd.org Subject: Re: ports security branch X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 19 Dec 2005 15:12:04 -0000 On Mon, Dec 19, 2005 at 06:56:25PM +0400, rihad wrote: > Is there a security branch for the FreeBSD ports collection? No, the ports tree is not branched at all. > Let's say, > I installed FreeBSD 6.0 together with all needed -RELEASE > ports/packages. Running security/portaudit after a while reveals that > some of the installed packages have vulnerabilities. Am I on my own to > go grab the fresh ports tree, and upgrade the affected software, > suffering all the intricacies of the move by myself? Yes, although sysutils/portmanager can be of some help when upgrading your ports. > Debian GNU/Linux > has its security package updates, OpenBSD has a separately maintained > "errata" ports branch (you still get to download a newer release of the > software, though (IIRC)). -- Erik Trulsson ertr1013@student.uu.se