Re: A question about Security Advisories
tech-lists <[email protected]>
| Newsgroups | gmane.os.freebsd.security.general |
|---|---|
| Message-ID | <[email protected]> |
Hi, On Tue, Aug 11, 2020 at 10:21:07AM +0300, Oleksandr Kryvulia wrote: > > Hi, >Last years all Security Advisories regarding base system in the "update >your vulnerable system via a source code patch " section recommends to >rebuild a whole world instead of an affected part of a base system. This >is in a most cases an overhead. > >For example 9 years old SA-11:04 [1] offers: > >b) Execute the following commands as root: > ># cd /usr/src ># patch < /path/to/patch ># cd /usr/src/usr.bin/compress ># make obj && make depend && make && make install ># cd /usr/src/usr.bin/gzip ># make obj && make depend && make && make install > >What is a reason we stop to do it? I understand that the preferred way >now is a binary upgrade. +1 I've been wondering this as well. What is the reason for it? -- J.
signature.asc
(application/pgp-signature, 833 B)
-----BEGIN PGP SIGNATURE----- iQIzBAABCAAdFiEE8n3tWhxW11Ccvv9/s8o7QhFzNAUFAl9Q3ogACgkQs8o7QhFz NAWyCw//ZyK+2ph6IVr+0IdgpzaTvxp6rwz2ocg9alyTVvJBB+ijCcxdO7i1w2yF 4AWf5RYuJAUht5aYRIJ0ev0IBMmnoWaoP84z/fUr/lqYcD1JP4LRi1l3022KApQ8 pgyQ9JpI3AOfJHCmmRVtbZa2iXdExMCkix648QLZ7MnsbNuBGMCKXGt9AVaMcoPM 5VjmHctodedDRa7enr5o7r7SNy/0I9TcbhgYlxqPv5cwcEhz/yT6bD8+xbqpfwa7 quxCaHyqzDvqmnJKG2tups6tmDjsPd/3ON6puajUimDFg4F5Ey0eZuD8QWw7Zv0R T4zhc+7FTzVjiJzVJYB8OLQv2ssjA1DEfNVyWeHxjko+UBzvHkOBgp/QamrNcwvV xJomFibrLqAqZOBgicYWEDrAaugqkx3O3IXQEv+zlBJQE+FbS0Vm2/X5ftmwrqOi Ng3cjE6a8D4Ex5a7UEnyjUxaLyRpy1LpFea38V4j4f+nfIK8ESV0dBMThGBQ/tir UhwFDAt80kPO9dRPchCRz+jztMd5FBxpld/LhyH0wvI4A6GCenctEaWqe2JKDPq5 DkEeDfcTtL4sKfg34CSwSVw81hkfnoybp7aBQD1A3gWHbFJU3BLm2wgb1y2Lwqov 1QlR45+2ww89lqHvChYB+hUAl6rxPub1sT5Ws0/BSvYMWJQuZVE= =baJn -----END PGP SIGNATURE-----