|
Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com |
From: Joe Clarke (marcus
marcuscom.com)Date: Fri Jan 04 2002 - 11:32:29 CST
On Fri, 2002-01-04 at 11:16, Matthias Schuendehuette wrote:
> Hi Joe,
>
> Am Donnerstag, 3. Januar 2002 22:07 schrieben Sie:
> > On Thu, 2002-01-03 at 15:59, Matthias Schuendehuette wrote:
> > > I looked at the published Patch in FreBSD-SA-00:52 but couldn't
> > > find the Sourcecode Sequence to be patched any more (I wasn't
> > > wondering).
> >
> > Is this what you're looking for:
> >
> > ftp://ftp.freebsd.org/pub/FreeBSD/CERT/patches/SA-00%3A52/tcp-iss.pat
> >ch
>
> as I've mentioned above, I *found* that patch but if you look at the
> source files to patch you'll recognize that they're completely
> different now and that the patch doesn't succeed anymore (which isn't
> surprising for noone IMHO).
>
> I think, the point is what ISS states as 'predictable'... I'll wait
> what our iss-service declares - I can't imagine that 4.5-PRERELEASE is
> worse than 4.1.1-STABLE concerning 'tcp prediction'.
Later FreeBSD 4.x's use arc4random for ISS. It get all 9's from nmap,
and is completely unguessable. Upgrading to 4.4-RELEASE or 4.5-PRE will
set you up.
Joe
>
> Ciao/BSD - Matthias
>
> --
> ***************************************************************************
> * Matthias Schuendehuette msch
snafu.de *
> * Solmsstrasse 44 *
> * D-10961 Berlin Engineering Systems Support and Operation *
> * Germany (Powered by FreeBSD 4.5-PRERELEASE) *
> ***************************************************************************
>
> To Unsubscribe: send mail to majordomo
FreeBSD.org
> with "unsubscribe freebsd-stable" in the body of the message
>
To Unsubscribe: send mail to majordomo
FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]