Enabling VIMAGE by default for FreeBSD 11?

Dag-Erling Smørgrav des at des.no
Thu Oct 16 08:52:02 UTC 2014


"Bjoern A. Zeeb" <bzeeb-lists at lists.zabbadoz.net> writes:
> Also if people are seriously thinking about virtualising pf we need to
> import the openbsd/apple pf fix from a few years ago because otherwise
> people in virtualised stacks with a /dev/pf can do ugly things.  I
> think it’s been this one:
> http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3830

There are other serious issues with our current pf (checksum corruption)
which I think can only be resolved by importing a newer version.

DES
-- 
Dag-Erling Smørgrav - des at des.no


More information about the freebsd-net mailing list