FreeBSD Security Advisory FreeBSD-SA-13:05.nfsserver

Glen Barber gjb at FreeBSD.org
Tue Apr 30 04:24:18 UTC 2013


On Mon, Apr 29, 2013 at 10:16:43PM -0600, Brett Glass wrote:
> At 09:46 PM 4/29/2013, Glen Barber wrote:
> 
> >This has _always_ been the case with freebsd-update(8).
> 
> Should it be?

Yes.  freebsd-update(8) does not, and cannot, know of custom kernel
configurations.

> It seems to me that the current behavior
> 
> a) Violates POLA; and
> 

Wrong.  Users that build a custom kernel are responsible for maintaining
the custom kernel for upgrades.

> b) Puts any system with a custom kernel at serious risk if
>    surgery and/or a kernel rebuild is not done prior to the
>    next reboot. If there's a power failure, the system may
>    well not come up.

Wrong.  Previous statement applies.

Glen

-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 488 bytes
Desc: not available
URL: <http://lists.freebsd.org/pipermail/freebsd-security/attachments/20130430/6873d03f/attachment.sig>


More information about the freebsd-security mailing list