FreeBSD Security Advisory FreeBSD-SA-15:05.bind

jungle Boogie jungleboogie0 at gmail.com
Wed Feb 25 18:11:57 UTC 2015


Hi Security Officials of FreeBSD,
On 24 February 2015 at 22:29, FreeBSD Security Advisories
<security-advisories at freebsd.org> wrote:
> 2) To update your vulnerable system via a binary patch:
>
> Systems running a RELEASE version of FreeBSD on the i386 or amd64
> platforms can be updated via the freebsd-update(8) utility:
>
> # freebsd-update fetch
> # freebsd-update install


My recommendation as a self check:

Recommend users run freebsd-version -k and freebsd-version -u and
indicate in the SA what they should see as a result.

I know you don't want to give a false sense of security but when the
result of following the prescribed advice is:
freebsd-update install
Installing updates...install:
///usr/src/crypto/openssl/util/mkbuildinf.pl: No such file or
directory

It may be ideal to let users know how to check their systems.

-- 
-------
inum: 883510009027723
sip: jungleboogie at sip2sip.info
xmpp: jungle-boogie at jit.si


More information about the freebsd-security mailing list