看板FB_security
标 题Clarrification on whether portsnap was affected by the 2012 compromise
发信站NCTU CS FreeBSD Server (Tue Nov 20 18:49:13 2012)
转信站ptt!csnews.cs.nctu!news.cs.nctu!.cs.nctucs.nctu!.org!ownorg!owner-free
Regarding the 2012 compromise, I'm a little confused as to what was and
wasn't affected:
From the release:
> or of any ports compiled from trees obtained via any means other than
> through svn.freebsd.org or one of its mirrors
Does that mean that any ports updated using the standard "portsnap
fetch" may have been affected, I'm guessing yes.
Many thanks,
John
_______________________________________________
[email protected] mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-security
To unsubscribe, send any mail to "
[email protected]"