[Full-Disclosure] FreeBSD Security Advisory FreeBSD-SA-03:14.arp

Michael Scheidell scheidell at secnap.net
Wed Sep 24 14:48:23 PDT 2003


> 
> Do one of the following:
> 
> 1) Upgrade your vulnerable system to 4-STABLE; or to the RELENG_5_1,
> RELENG_5_0, RELENG_4_8, or RELENG_4_7 security branch dated after the
> correction date.

just did, and now my multihomed FBSD 4.8 system has no route

net route add default (my router) does 0. zip, noda, nothing

no errors, and netstat -rn doesn't show ANY default route.

copying over an 'arp-deficient' kernel fixes it.

> 2) To patch your present system:
> 
> The following patch has been verified to apply to FreeBSD 5-CURRENT,
> 4.9-PRERELEASE, and 4.8 systems.

don't.. not until they fix multihomed systems.

-- 
Michael Scheidell, CEO
SECNAP Network Security, LLC 
Sales: 866-SECNAPNET / (1-866-732-6276)
Main: 561-368-9561 / www.secnap.net
Looking for a career in Internet security?
http://www.secnap.net/employment/



More information about the freebsd-stable mailing list