From owner-freebsd-questions@FreeBSD.ORG Fri Jan 7 20:14:43 2005 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 7250116A4CE for ; Fri, 7 Jan 2005 20:14:43 +0000 (GMT) Received: from mail.shs.siemens.com (mail.shs.siemens.com [64.46.248.224]) by mx1.FreeBSD.org (Postfix) with ESMTP id E421843D39 for ; Fri, 7 Jan 2005 20:14:42 +0000 (GMT) (envelope-from Joseph.Warner@siemens.com) Received: from mlvv9m1x.shs.siemens.com (unknown [165.226.204.11]) by mail.shs.siemens.com (Postfix) with ESMTP id 82E6439B0E for ; Fri, 7 Jan 2005 15:04:07 -0500 (EST) Received: from MLVV9MBA.ww005.siemens.net (mlvv9mba.smshsc.net [165.226.204.44])j07K46AO011415 for ; Fri, 7 Jan 2005 15:04:06 -0500 Received: from MLVV099a.ww005.siemens.net ([165.226.248.184]) by 165.226.204.44 with InterScan Messaging Security Suite; Fri, 07 Jan 2005 15:00:51 -0500 Received: by mlvv099a.ww005.siemens.net with Internet Mail Service (5.5.2657.72) id ; Fri, 7 Jan 2005 15:04:03 -0500 Message-ID: From: Warner Joseph To: "'Kris Kennaway'" Date: Fri, 7 Jan 2005 15:03:54 -0500 MIME-Version: 1.0 X-Mailer: Internet Mail Service (5.5.2657.72) Content-Type: text/plain cc: "'freebsd-questions@freebsd.org'" Subject: RE: linux_base X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 07 Jan 2005 20:14:43 -0000 Thanks Kris, unless I've misunderstood...am I at risk by using linux_base-6 and if so how can I correct this? #portupgrade -rR linux_base doesn't do anything and because of hardware limitations I can't upgrade to a major release. -Joe #-----Original Message----- #From: Kris Kennaway [mailto:kris@obsecurity.org] #Sent: Friday, January 07, 2005 12:53 PM #To: Warner Joseph #Cc: 'freebsd-questions@freebsd.org' #Subject: Re: linux_base # # #On Fri, Jan 07, 2005 at 02:44:39PM -0500, Warner Joseph wrote: #> #> Hi, #> #> I'm running 4.8-RELEASE-p27 and had a question #> regarding my current install of linux_base #> #> #portupgrade -l "<" doesn't reveal this package needs upgrading #> but portaudit -a says: #> #> Affected package: linux_base-6.1_6 #> Type of problem: xpm -- image decoding vulnerabilities. #> Reference: #> # .html> #> #> I've followed that url, googled and searched the -questions archive #> but can't find any information regarding how to correct this. #> #> Can anyone point me in the right direction? # #linux_base-6 will never have the security vulnerability fixed because #it's not supported by redhat. linux_base contains redhat 8.x which is #also out of support, but does not currently have security problems. #It will be updated to something more modern after 4.11-RELEASE. # #Kris # # ------------------------------------------------------------------------------- This message and any included attachments are from Siemens Medical Solutions USA, Inc. and are intended only for the addressee(s). The information contained herein may include trade secrets or privileged or otherwise confidential information. Unauthorized review, forwarding, printing, copying, distributing, or using such information is strictly prohibited and may be unlawful. If you received this message in error, or have reason to believe you are not authorized to receive it, please promptly delete this message and notify the sender by e-mail with a copy to Central.SecurityOffice@shs.siemens.com Thank you