Re: Ports EOL vuxml entry

2016-08-23 Thread Tim Zingelman
On Tue, 23 Aug 2016, Roger Marquis wrote: There should be a way to state that the sysadmin is aware of the outdated port and prevent pkg audit from reporting it Agreed though I expect such a report would see little use. I maintain a local patch to preserve this functionality which was in

Re: Signal 11 dumps in telnetd (freebsd 10.3 release)

2016-04-25 Thread Tim Zingelman
See if the attached patch helps. It applies cleanly to ports/security/krb5-appl, but may need adjustment for the base system telnetd. - Tim On Sun, 24 Apr 2016, Rustam wrote: I got a couple of dozen dumps in /usr/libexec/telnetd (signal 11), and I'm wondering what those could be. FreeBSD

Re: Merry Christmas from the FreeBSD Security Team

2011-12-23 Thread Tim Zingelman
On Fri, 23 Dec 2011, FreeBSD Security Officer wrote: Unfortunately my hand was forced: One of the issues (FreeBSD-SA-11:08.telnetd) is a remote root vulnerability which is being actively exploited in the wild; bugs really don't come any worse than this. On the positive side, most people have

Re: Merry Christmas from the FreeBSD Security Team

2011-12-23 Thread Tim Zingelman
On Fri, 23 Dec 2011, Colin Percival wrote: On 12/23/11 09:08, Tim Zingelman wrote: On Fri, 23 Dec 2011, FreeBSD Security Officer wrote: Unfortunately my hand was forced: One of the issues (FreeBSD-SA-11:08.telnetd) is a remote root vulnerability which is being actively exploited in the wild