logoalt Hacker News

cyberpunkyesterday at 9:06 PM2 repliesview on HN

This is from April 28th, it was patched in 15.0R-p7.


Replies

itsthefrankyesterday at 9:10 PM

-p8 is the current patch level for 15.0-RELEASE so if people have been keeping on top of patching this is already two reboots in the past.

loegyesterday at 9:21 PM

Just yesterday, cperciva was bragging about the FreeBSD approach to security: https://news.ycombinator.com/item?id=48056853 You can certainly argue the response here was well-coordinated, but having an LPE in a nearly 50-year old core syscall like execve() isn't ideal from a security perspective. (That is: security response isn't the entire picture; culture and bug surface matter too.)

show 5 replies