Skip site navigation (1)Skip section navigation (2)
Date:      08 Jul 2000 06:53:03 +0200
From:      Cyrille Lefevre <clefevre@no-spam.citeweb.net>
To:        Cy Schubert - ITSD Open Systems Group <Cy.Schubert@uumail.gov.bc.ca>
Cc:        freebsd-ports@FreeBSD.ORG
Subject:   Re: ports/19503: isc-dhcp3 port root exploit
Message-ID:  <puopb4uo.fsf@pc166.gits.fr>
In-Reply-To: Cy Schubert - ITSD Open Systems Group's message of "Mon, 26 Jun 2000 06:40:04 -0700 (PDT)"
References:  <200006261340.GAA91530@freefall.freebsd.org>

next in thread | previous in thread | raw e-mail | index | archive | help
Cy Schubert - ITSD Open Systems Group <Cy.Schubert@uumail.gov.bc.ca> writes:

> The following reply was made to PR ports/19503; it has been noted by GNATS.
> 
> From: Cy Schubert - ITSD Open Systems Group <Cy.Schubert@uumail.gov.bc.ca>
> To: Will Andrews <andrews@technologist.com>
> Cc: Cy.Schubert@uumail.gov.bc.ca, FreeBSD-gnats-submit@FreeBSD.ORG
> Subject: Re: ports/19503: isc-dhcp3 port root exploit 
> Date: Mon, 26 Jun 2000 06:32:55 -0700
> 
>  In message <20000625150950.A85886@argon.gryphonsoft.com>, Will Andrews 
>  writes:
>  > On Sun, Jun 25, 2000 at 08:20:26AM -0700, Cy.Schubert@uumail.gov.bc.ca wrote:
>  > > >Synopsis:       isc-dhcp3 root exploit
>  > 
>  > isc-dhcp3 is not vulnerable, according to your quote.  However,
>  > isc-dhcp2 IS vulnerable and needs to be updated.
> 
>  The advisory makes the statement, "this exploit is present in all 
>  versions of the ISC DHCP client prior to 2.0pl1 and 3.0b1pl14".  
>  Because of this statement, the version 2 port needs to be updated to 
>  2.0pl1 and the version 3 port needs to be updated to 3.0b1pl14.

well. update your port tree. mine says :

# cd /usr/ports
# make search key=isc-dhcp3
Port:   isc-dhcp3-3.0.b1.14
Path:   /usr/ports/net/isc-dhcp3
Info:   ISC Dynamic Host Configuration Protocol client and server code
Maint:  obrien@FreeBSD.org
Index:  net
B-deps: bind-8.2.2.p5
R-deps: 

so, it was just up to date on time you send your message :)

# cd /usr/ports/net/isc-dhcp3
# cvs log Makefile
...
revision 1.34
date: 2000/06/25 21:08:07;  author: obrien;  state: Exp;  lines: +7 -3
Update to 3.0b1pl14

PR:             19493, 18475
Submitted by:   Cyrille Lefevre <clefevre@citeweb.net>
...

Cyrille.
-- 
home:mailto:clefevre@no-spam.citeweb.net Supprimer "no-spam." pour me repondre.
work:mailto:Cyrille.Lefevre@no-spam.edf.fr Remove "no-spam." to answer me back.


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-ports" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?puopb4uo.fsf>