From owner-freebsd-security@FreeBSD.ORG Mon Aug 13 20:07:07 2012 Return-Path: Delivered-To: freebsd-security@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id A7008106564A for ; Mon, 13 Aug 2012 20:07:07 +0000 (UTC) (envelope-from des@des.no) Received: from smtp.des.no (smtp.des.no [194.63.250.102]) by mx1.freebsd.org (Postfix) with ESMTP id 6213F8FC12 for ; Mon, 13 Aug 2012 20:07:06 +0000 (UTC) Received: from ds4.des.no (smtp.des.no [194.63.250.102]) by smtp.des.no (Postfix) with ESMTP id 51D616EB4; Mon, 13 Aug 2012 22:07:05 +0200 (CEST) Received: by ds4.des.no (Postfix, from userid 1001) id 2631E80D5; Mon, 13 Aug 2012 22:07:05 +0200 (CEST) From: =?utf-8?Q?Dag-Erling_Sm=C3=B8rgrav?= To: Manolis Kiagias References: <0B65D7562F9DA04FAC3F15C508BF67136B90E09E1F@ESESSCMS0355.eemea.ericsson.se> <001701cd7648$c2520350$46f609f0$@com> <5024f984.45ca320a.1838.4155SMTPIN_ADDED@mx.google.com> <86pq6xs0zb.fsf@ds4.des.no> <20120812163448.GA88577@DataIX.net> <86vcgm7fsw.fsf@ds4.des.no> <50295C95.7020301@gmail.com> Date: Mon, 13 Aug 2012 22:07:05 +0200 In-Reply-To: <50295C95.7020301@gmail.com> (Manolis Kiagias's message of "Mon, 13 Aug 2012 22:59:17 +0300") Message-ID: <867gt27dzq.fsf@ds4.des.no> User-Agent: Gnus/5.13 (Gnus v5.13) Emacs/23.4 (berkeley-unix) MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: quoted-printable Cc: freebsd-security@freebsd.org Subject: Re: getting the running patch level X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Security issues \[members-only posting\]" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 13 Aug 2012 20:07:07 -0000 Manolis Kiagias writes: > One could also set the environment variable UNAME_r to the correct > value (either in system wide e.g. /etc/profile or to a specific user > dot files). If your goal is to have uname(1) return the correct value, yes, except it won't always work. For instance, sudo(1) (and probably also su(1), but I never use it) will strip it from the environment and will *not* run /etc/profile before the requested command. > Or, since the correct value is always in newvers.sh, if src is present > in the system a periodic script could update it automatically. We can't assume that src is present. > The manual updating will cause more confusion in the long run - > people tend to forget these things... Nobody suggested manually updating anything. DES --=20 Dag-Erling Sm=C3=B8rgrav - des@des.no