fbsd11 & sshv1
Piotr Kubaj
pkubaj at anongoth.pl
Wed Feb 1 12:11:32 UTC 2017
> You mean like net/tcpdump398, which was forked from net/tcpdump because
> some people liked its output format better than that of tcpdump 4, and
> then forgotten, and is known to have dozens of security vulnerabilities?
We shouldn't forbid people to shoot themselves in their heads. If someone needs it, they should get, especially since it won't require much maintainance.
Just repocopy the port and mark as deprecated and vulnerable next time there's a CVE in OpenSSH.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: not available
URL: <http://lists.freebsd.org/pipermail/freebsd-security/attachments/20170201/a5baa2d9/attachment.sig>
More information about the freebsd-security
mailing list