From owner-freebsd-security@FreeBSD.ORG Thu Mar 23 08:44:13 2006 Return-Path: X-Original-To: freebsd-security@freebsd.org Delivered-To: freebsd-security@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 0EFD516A425 for ; Thu, 23 Mar 2006 08:44:13 +0000 (UTC) (envelope-from dmitry@atlantis.dp.ua) Received: from postman.atlantis.dp.ua (postman.atlantis.dp.ua [193.108.47.1]) by mx1.FreeBSD.org (Postfix) with ESMTP id 4D76643D5E for ; Thu, 23 Mar 2006 08:44:11 +0000 (GMT) (envelope-from dmitry@atlantis.dp.ua) Received: from smtp.atlantis.dp.ua (smtp.atlantis.dp.ua [193.108.46.231]) by postman.atlantis.dp.ua (8.13.1/8.13.1) with ESMTP id k2N8i5mu093429 for ; Thu, 23 Mar 2006 10:44:05 +0200 (EET) (envelope-from dmitry@atlantis.dp.ua) Date: Thu, 23 Mar 2006 10:44:05 +0200 (EET) From: Dmitry Pryanishnikov To: freebsd-security@freebsd.org In-Reply-To: <200603221611.k2MGBV21010114@freefall.freebsd.org> Message-ID: <20060323103739.X90993@atlantis.atlantis.dp.ua> References: <200603221611.k2MGBV21010114@freefall.freebsd.org> MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII; format=flowed X-Mailman-Approved-At: Thu, 23 Mar 2006 12:32:49 +0000 Subject: Re: FreeBSD Security Advisory FreeBSD-SA-06:13.sendmail X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Security issues \[members-only posting\]" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 23 Mar 2006 08:44:13 -0000 Hello! On Wed, 22 Mar 2006, FreeBSD Security Advisories wrote: > Path > - ------------------------------------------------------------------------- > RELENG_4 > src/contrib/sendmail/libsm/fflush.c 1.1.1.1.2.1 > src/contrib/sendmail/libsm/local.h 1.1.1.1.2.6 > src/contrib/sendmail/libsm/refill.c 1.1.1.1.2.4 This doesn't change sendmail's identification string - it's still "8.13.1" on RELENG_4_11, which makes detection of unpatched systems more difficult to sysadmin. Wouldn't be wise to add, say, "-p1" to this string in version.c? Sincerely, Dmitry -- Atlantis ISP, System Administrator e-mail: dmitry@atlantis.dp.ua nic-hdl: LYNX-RIPE