Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 16 May 2002 12:49:04 -0500
From:      "Jacques A. Vidrine" <nectar@FreeBSD.org>
To:        security@FreeBSD.ORG
Subject:   Re: Patch/Announcement for DHCPD remote root hole?
Message-ID:  <20020516174904.GB92757@hellblazer.nectar.cc>
In-Reply-To: <20020516045909.GC7616@laptop.lambertfam.org>
References:  <4.3.2.7.2.20020515101500.00e7fee0@nospam.lariat.org> <4.3.2.7.2.20020509175155.024efc00@nospam.lariat.org> <4.3.2.7.2.20020509175155.024efc00@nospam.lariat.org> <20020515105453K.matusita@jp.FreeBSD.org> <4.3.2.7.2.20020515101500.00e7fee0@nospam.lariat.org> <4.3.2.7.2.20020515132552.0313bbb0@nospam.lariat.org> <20020516045909.GC7616@laptop.lambertfam.org>

next in thread | previous in thread | raw e-mail | index | archive | help
On Thu, May 16, 2002 at 12:59:10AM -0400, Scott Lambert wrote:
> Until we get binary patch kits, we just can't do the same thing for 
> the OS.  I am assuming that someone has taken the trouble of diff'ing
> the install images between patch levels to see how many files, and 
> what that translates to in megabytes, would be required for a tarball
> that just unpacks over all changed files.  I am also assuming that it is
> prohibitively large since it is a simple, brute force method.
> 
> My iBook came with OS X 10.1.1.  I had to download 40 MB of patches to 
> get to 10.1.2.  Reboot.  Download 5 MB of patches to get to 10.1.3.
> Reboot.  Download 2.5MB of patches to get to 10.1.4.  That's not counting
> the updates to the included software.

Hmm, I just posted another message in this thread with pointers to
packages you might play with.  The patches are cumulative, so they are
larger each time-- but at least you only need the latest.

> The last time I installed Solaris, it was a similar process except that 
> the patch sets always got larger due to their cumulative nature.  

Oh yeah, like that.

Individuals who would like to work on and contribute to making this a
robust, ongoing thing can drop us a line at <security-officer@FreeBSD.org>!

Cheers,
-- 
Jacques A. Vidrine <n@nectar.cc>                     http://www.nectar.cc/
NTT/Verio SME           .      FreeBSD UNIX      .        Heimdal Kerberos
jvidrine@verio.net      .   nectar@FreeBSD.org   .           nectar@kth.se

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20020516174904.GB92757>