linux_base

Kris Kennaway kris at obsecurity.org
Fri Jan 7 11:52:09 PST 2005


On Fri, Jan 07, 2005 at 02:44:39PM -0500, Warner Joseph wrote:
> 
> Hi,
> 
> I'm running 4.8-RELEASE-p27 and had a question
> regarding my current install of linux_base
> 
> #portupgrade -l "<" doesn't reveal this package needs upgrading
> but portaudit -a says:
> 
> Affected package: linux_base-6.1_6
> Type of problem: xpm -- image decoding vulnerabilities.
> Reference:
> <http://www.FreeBSD.org/ports/portaudit/ef253f8b-0727-11d9-b45d-000c41e2cdad
> .html>
> 
> I've followed that url, googled and searched the -questions archive
> but can't find any information regarding how to correct this.
> 
> Can anyone point me in the right direction?

linux_base-6 will never have the security vulnerability fixed because
it's not supported by redhat.  linux_base contains redhat 8.x which is
also out of support, but does not currently have security problems.
It will be updated to something more modern after 4.11-RELEASE.

Kris

-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 187 bytes
Desc: not available
Url : http://lists.freebsd.org/pipermail/freebsd-questions/attachments/20050107/c9b0bed5/attachment.bin


More information about the freebsd-questions mailing list