From owner-freebsd-hackers Sat Oct 14 20:14:10 1995 Return-Path: owner-hackers Received: (from root@localhost) by freefall.freebsd.org (8.6.12/8.6.6) id UAA28012 for hackers-outgoing; Sat, 14 Oct 1995 20:14:10 -0700 Received: from who.cdrom.com (who.cdrom.com [192.216.222.3]) by freefall.freebsd.org (8.6.12/8.6.6) with ESMTP id UAA28005 ; Sat, 14 Oct 1995 20:14:05 -0700 Received: from relay-4.mail.demon.net (relay-4.mail.demon.net [158.152.1.64]) by who.cdrom.com (8.6.12/8.6.11) with SMTP id UAA28359 ; Sat, 14 Oct 1995 20:13:06 -0700 Received: from post.demon.co.uk by relay-4.mail.demon.net id sg.ak22688; 13 Oct 95 2:16 +0100 Received: from relay-4.mail.demon.net by relay-3.mail.demon.net id aa27913; 13 Oct 95 2:14 +0100 Received: (karl@localhost) by bagpuss.demon.co.uk (3.1/3.1) id NAA21217; Thu, 12 Oct 1995 13:11:05 +0100 From: Karl Strickland Message-Id: <199510121211.NAA21217@bagpuss.demon.co.uk> Subject: Re: TCP/IP Spoofing etc. To: Dima Ruban Date: Thu, 12 Oct 1995 13:11:04 +0100 (BST) Cc: roberto@keltia.freenix.fr, pete@puffin.pelican.com, julian@ref.tfs.com, hackers@freebsd.org In-Reply-To: <199510110046.RAA13618@freefall.freebsd.org> from "Dima Ruban" at Oct 10, 95 05:46:37 pm X-Mailer: ELM [version 2.4 PL23] Content-Type: text Content-Length: 1087 Sender: owner-hackers@freebsd.org Precedence: bulk > > Ollivier Robert writes: > > > > It seems that Pete Carah said: > > > The latest cert report was a summary of the 'announced' bugs which are > > > still outstanding on popular systems... I don't know which ones we are > > > susceptible to; we are using the latest (or next-latest) sendmail which > > > has plugged many of them. > > > > Speaking of sendmail, can we import 8.7.1 in -CURRENT ? > > 8.7.1 has a bit different sendmail.cf .... I would suggest waiting a while before importing sendmail 8.7.x. Apparently an awful lot of code has changed or been-added since 8.6.12, and as far as I know, nobody has performed a security audit on the 8.7.1 code yet. Unless there are compelling reasons to go to 8.7.1 now, I would say 'better with the devil you know', at least for the time being. -- ------------------------------------------+----------------------------------- Mailed using ELM on FreeBSD | Karl Strickland PGP 2.3a Public Key Available. | Internet: karl@bagpuss.demon.co.uk |