Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 14 Jun 2015 10:35:08 -0400
From:      Matthew Seaman <matthew@FreeBSD.org>
To:        freebsd-security@freebsd.org
Subject:   Re: FreeBSD Security Advisory FreeBSD-SA-15:10.openssl
Message-ID:  <557D911C.8060101@FreeBSD.org>
In-Reply-To: <557ce708.2119ec0a.12bc.7872@mx.google.com>
References:  <201506120743.t5C7hUdu035884@freefall.freebsd.org> <557ce708.2119ec0a.12bc.7872@mx.google.com>

next in thread | previous in thread | raw e-mail | index | archive | help
This is an OpenPGP/MIME signed message (RFC 4880 and 3156)
--m34R7us1Njelx4bRBJPNUuu1Dwfbw68Dx
Content-Type: text/plain; charset=windows-1252
Content-Transfer-Encoding: quoted-printable

On 13/06/2015 22:28, rollingbits (Lucas) wrote:
> On Fri, Jun 12, 2015 at 07:43:30AM +0000, FreeBSD Security Advisories w=
rote:
>> 1) Upgrade your vulnerable system to a supported FreeBSD stable or
>> release / security branch (releng) dated after the correction date.
>=20
> Do I need rebuild my packages too?

You need to rebuild and re-install the ports version of OpenSSL, if
you're using it.

You need to rebuild and re-install anything that is statically linked
against OpenSSL libraries (either ports or base).  This is trickier than
it sounds, because you need to either look at the source code /
Makefiles for the software, or use nm(1), objdump(1) or similar to check
for symbols from OpenSSL libraries in your statically linked binaries.
Fortunately, static linking against OpenSSL is a pretty unusual thing to =
do.

Having done the above, you need to restart anything that loads OpenSSL
shared libraries.  That tends to be most network-aware software, so in
many cases it might be easier to just reboot.

	Cheers,

	Matthew



--m34R7us1Njelx4bRBJPNUuu1Dwfbw68Dx
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: OpenPGP digital signature
Content-Disposition: attachment; filename="signature.asc"

-----BEGIN PGP SIGNATURE-----
Version: GnuPG/MacGPG2 v2.0.20 (Darwin)
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=Ixx+
-----END PGP SIGNATURE-----

--m34R7us1Njelx4bRBJPNUuu1Dwfbw68Dx--



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?557D911C.8060101>