question about security updates

Jason jhelfman at e-e.com
Wed Aug 26 16:08:49 UTC 2009


I was wondering in the case of openssl:

http://security.freebsd.org/advisories/FreeBSD-SA-09:08.openssl.asc

Corrected:      2009-04-22 14:07:14 UTC (RELENG_7, 7.2-PRERELEASE)
                 2009-04-22 14:07:14 UTC (RELENG_7_2, 7.2-RC2)
                 2009-04-22 14:07:14 UTC (RELENG_7_1, 7.1-RELEASE-p5)
                 2009-04-22 14:07:14 UTC (RELENG_7_0, 7.0-RELEASE-p12)
                 2009-04-22 14:07:14 UTC (RELENG_6, 6.4-STABLE)
                 2009-04-22 14:07:14 UTC (RELENG_6_4, 6.4-RELEASE-p4)
                 2009-04-22 14:07:14 UTC (RELENG_6_3, 6.3-RELEASE-p10)
CVE Name:       CVE-2009-0590


I see that in release 7_2, that this was corrected. Does this mean that
if I were to download the 7.2 iso, that this patch would already be applied
to this release?

To me, it seems that anything that isn't *-RELEASE-p? would be applied to
the distributed iso, but I could be wrong.

Thanks,
Jason


More information about the freebsd-questions mailing list