Happy Birthday FreeBSD! Now you are 20 years old and your security is the same as 20 years ago... :)

Kimmo Paasiala kpaasial at gmail.com
Thu Jun 20 00:09:22 UTC 2013


On Thu, Jun 20, 2013 at 3:04 AM, Michael Holmes <holmesmich at gmail.com> wrote:
> On Thu, Jun 20, 2013 at 12:57 AM, Sergio Tam <tam.sergio at gmail.com> wrote:
>>
>> Hello Hunger
>>
>> I am new can you clarify a question?
>> I have not installed nmap. Its FreBSD insecure?
>> Can you do the same?
>> can you exploit freebsd without nmap?
>>
>> Regards.
>
> It's *mmap*, a POSIX standard system call for mapping memory. All
> systems running affected versions of the FreeBSD kernel are
> vulnerable.

And it's already been fixed, see:

http://www.freebsd.org/security/advisories/FreeBSD-SA-13:06.mmap.asc

It's quite laughable to use 9.1-RELEASE without any of the security
patches that have been issued after its release to showcase the
vulnerability, it just proves that the OP is a troll, a troll who
knows how to use the information to create a succesfull attack but
still a troll.


More information about the freebsd-security mailing list