OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: Does the patching procedure work?

From: Giorgos Keramidas (keramidaceid.upatras.gr)
Date: Wed Mar 05 2003 - 21:20:45 CST


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 2003-03-05 10:13, Brett Glass <brettlariat.org> wrote:
>At 09:55 AM 3/5/2003, Igor Roshchin wrote:
>>I saw a similar behavior (with about the same number of offsets
>>and failed hunks) when I tried to patch an older (8.11.x) sendmail.
>>If that's indeed the case, you can download a set of patches from
>>www.sendmail.org directly (for the right version).
>>I am not sure what 4.7 was originally shipped with.
>>The set of patches in FreeBSD's advisory is for the latest 8.12.x (.6?)
>
> The patches on www.sendmail.org don't apply properly to
> /usr/src/contrib/sendmail.

The patches have to be applied in a different directory, namely in
/usr/src/contrib/sendmail/src, with `patch -p1' instead of `patch -p0'
one directory above that. This is true for the patches of
sendmail.org that apply to the following versions of Sendmail:

= patch for sendmail 8.12
  ftp://ftp.sendmail.org/pub/sendmail/sendmail.8.12.security.cr.patch

= patch for sendmail 8.11
  ftp://ftp.sendmail.org/pub/sendmail/sendmail.8.11.6.security.cr.patch

= patch for sendmail 8.10
  ftp://ftp.sendmail.org/pub/sendmail/sendmail.8.11.6.security.cr.patch

The only patch that applies in /usr/src/contrib/sendmail with `patch -p0'
instead of /usr/src/contrib/sendmail/src is:

= patch for sendmail 8.9
  ftp://ftp.sendmail.org/pub/sendmail/sendmail.8.9.3.security.cr.patch

- - Giorgos
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.1 (FreeBSD)

iD8DBQE+Zr6N1g+UGjGGA7YRAvPfAKCV7VV61+d3jz2ZRYLG6mngg9xkhwCdHLhb
kbir9qj8mE4HSg6P5Wg6M1s=
=HLzI
-----END PGP SIGNATURE-----

To Unsubscribe: send mail to majordomoFreeBSD.org
with "unsubscribe freebsd-security" in the body of the message