Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 7 Jul 2021 14:17:39 +0200
From:      Michael Grimm via freebsd-stable <freebsd-stable@freebsd.org>
To:        FreeBSD-STABLE Mailing List <freebsd-stable@freebsd.org>, FreeBSD ports <freebsd-ports@FreeBSD.org>
Cc:        lukasz@wasikowski.net
Subject:   security/rkhunter without hashes after recent STABLE-13 update
Message-ID:  <416D3033-138D-4BBB-84FA-FAEA2944C837@ellael.org>

next in thread | raw e-mail | index | archive | help
Hi,

I noticed that after my last upgrade to stable/13-n246157 (from =
stable/13-n246147) that /usr/local/var/lib/rkhunter/db/rkhunter.dat =
started lacking hashes.

Regarding rkhunter.conf the default setting is:

	HASH_CMD=3DSHA256

and:

	If just the command name is given, and it is one of MD5,=20
	SHA1, SHA224, SHA256, SHA384 or SHA512, then rkhunter will first =
look for the=20
	relevant command, such as 'sha256sum', and then for 'sha256'.

If I do modify the setting to ...

	HASH_CMD=3D/sbin/sha256

=E2=80=A6 rkhunter.dat shows hashes again.


Ok, that can be fixed.=20

But I wonder if my findings have something to do with security/rkhunter =
at all, because that port didn't change recently.=20

Can someone point me into the right direction, how to find out if the =
output of /sbin/sha256sum changes between stable/13-n246147 and =
stable/13-n246157?

Regards,
Michael=



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?416D3033-138D-4BBB-84FA-FAEA2944C837>