Date: Wed, 05 Mar 2003 10:18:03 -0700 From: Brett Glass <brett@lariat.org> To: David Schultz <das@FreeBSD.ORG> Cc: freebsd-security@FreeBSD.ORG Subject: Re: Does the patching procedure work? Message-ID: <4.3.2.7.2.20030305100150.048518c0@localhost> In-Reply-To: <20030305125047.GB45405@HAL9000.homeunix.com> References: <4.3.2.7.2.20030305052142.03f04200@localhost> <4.3.2.7.2.20030305050739.03f078f0@localhost> <4.3.2.7.2.20030305052142.03f04200@localhost>
next in thread | previous in thread | raw e-mail | index | archive | help
At 05:50 AM 3/5/2003, David Schultz wrote: >It looks like you've applied a patch for the wrong version of >sendmail. (Perhaps these are pre-4.6 sources, for instance.) >The easiest way to recover is probably to fetch fresh patched >sources via anoncvs or cvsup. It turns out that it was 4.5-RELEASE-p4, just a sliver before 4.6. (The system had been patched for later problems rather than upgraded, because it's a production machine.) Quite recent. (You don't want to change point versions constantly on production machines.) I was lucky I noticed the problem. The messages just rolled by, and if I hadn't scrolled back I would not have caught them. I'll bet some folks missed this and are unprotected. (The hunks that are rejected are important, but the message about dropping the comments is in one of the hunks that's accepted, so it looks as if the patch took!) What I have done on that machine is install the 4.6 binary, which seems to run just fine on 4.5 and even 4.4 (though you may need to add the misssing group). Patches should be provided back to 4.4, IMHO. --Brett To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?4.3.2.7.2.20030305100150.048518c0>