Four NetBSD Security Advisories, Fixes Released
Dan writes "The NetBSD security team has formally announced 4 security advisories and fixes for the following advisories: NetBSD-SA2003-014 Insufficient argument checking in sysctl(2); NetBSD-SA2003-015 Remote and local vulnerabilities in XFree86 font libraries;
NetBSD-SA2003-016 Sendmail - another prescan() bug CAN-2003-0694;
NetBSD-SA2003-017 OpenSSL multiple vulnerability. There is an integer overflow in the XFree86 font libraries, which could lead to potential privilege escalation and/or remote code execution. Sendmail advisory involves a prescan() bug in sendmail packages prior to 8.12.10. OpenSSL had multiple vulnerabilities, they were found by tests performed by NISCC. Finally, insufficient argument checking in sysctl(2) which could be exploited."
Gaping holes filled
Rotting corpse obsolete code
BSD end near
Trolls, here is some inspiration for future BSD trolls
P.S, I deleted my freebsd partition last night and installed Linux back on it!
Do people still actually USE FreeBSD? Wasn't it rendered obsolete by Linux YEARS ago?
BSD you grow in the ghetto, living second rate
And your eyes will sing a song of deep hate.
The places you play and where you stay
Looks like one great big alley way.
You'll admire all the numberbook takers,
Thugs, BSD pimps and pushers, and the big money makers.
BSD is dead
Dead Dead Dead Dead Dead Dead Dead
It's quite dead
1. You can not play games on it.
2. It cannot be used by my grandma.
3. It lacks a GUI of any note.
4. There is no support available for it.
5. It is an assortment of fragmented OSes.
6. It cannot be run on the x86 platform.
7. You have to compile everything and know C.
8. Support for the latest hardware is always poor.
9. It is incompatiable with GNU/Linux.
10.It is dying.
This is ridiculous, there's so many trolls, none are within my threshhold.
Anyways, this is a good advance for NetBSD, regardless of it having holes or not, getting an OS patched is always good.
Good job NetBSD, come on guys, give them some credit, they run netBSD on more platforms than almost anyone else.
Error 407 - No creative sig found
Just goes to prove BSD is dying. Nobody fucking cares enough about it to post something relevant. In fact, if it weren't for us trolls this topic would have a grand total of one comment (as of Oct 11, 12:30 AM central time)
If you BSD die-hards still aren't getting the truth about BSD, consider this:
1. Is BSD being improved at a faster rate than Linux? (no, as if FreeBSD has a multibillion dollar company like IBM backing it with 3,000 developers - ha!)
2. Are the number of BSD users increasing?
(clearly not, and i'm talking about real BSD not Mac OS X bastardised UNIX)
3. What do most open source developers use (LINUX, nerds, LINUX)
You cannot escape the truth! BSD will be dead in 5 years! I guarantee it!
This post brought to you by a Truthmaster (aka a Linux user)
1. Is BSD being improved at a faster rate than Linux? (no, as if FreeBSD has a multibillion dollar company like IBM backing it with 3,000 developers - ha!)
Well, they're both doing the same thing actually, that is to say, copying SCO code. So it is possible. Now Windows XP, there's another story, and its easier to use anyway.
3. What do most open source developers use (LINUX, nerds, LINUX)
Really they use XP, since only a few of them have actually figured out how to get Internet access working under Linux.
You cannot escape the truth! BSD will be dead in 5 years! I guarantee it!
Thats true at least. But its the least of your problems. I would point to a $699 licensing fee which you need to pay, as a more pressing issue.
I already payed it. What, do you think I would use a pirated version of linux?
BTW XP is great, its my 2nd most used OS (I use it for kazaa and most of my gay porn site is written in dreamweaver) I also run IE in vmware since mozilla is a steaming piece of shit.
but all that aside, BSD *is* dying. We can all agree on that.
Isn't it entirely disrespectful to the dead? We don't have a bobhope.slashdot.org now do we? Get some manners people.
That BSD daemon is so hot, I just want to suck his dick while jerking myself off and then bend him over and stick my dick in his tight red asshole. The fact that I'm an excellent artist only makes matters worse, since I tend to draw him during my Math class in sexually explicit positions instead of taking notes like I should, and I think people are noticing because they give me odd looks and this one guy even asked me if I was gay. Can somebody help me get rid of these urges? I'm sure they're perfectly healthy (hey, what slashdotter *hasn't* had a crush on another guy) but it's starting to intrude on my social life and I'd rather it not. Thanxz, AC
XOXOXOXOXOXOXO
Why you'd want to run an OS designed and coded by niggers is beyond me.
What's left for me to see
In my ship I sailed so far
What can the answer be
Don't know what the questions are.
And after all I've done
Still I cannot feel the sun
Tell me save me
In the end our lost souls must repent.
I must know it is for certain
Can it be the final curtain
As long as the wind will blow
I'll be searching high and low.
Who knows what's really true
They say the end is so near
Why are we all so cruel
We just fill ourselves with fear.
And heaven and hell will turn
All that we love shall burn
Hear me trust me
In the end our lost sould must repent.
I must know it is for certain
Can it be the final curtain
As long as the wind will blow
I'll be searching high and low
Final curtain
Final curtain
If you ever take a look at the patched code for one of these security advisories, you mainly see some special case code stuck in there to patch up the problem. You never see a reconsideration of the problem. I wonder how long it takes to go from a release version through BSD is dying patch after patch until a piece of code is just old and crufty and in need of wholesale replacement.
I'm so sorry.
Never let your emotions get mixed up with something as silly as a computer
operating system. It isn't healthy. So BSD fails. Big whoop. Deal with it and move on.
Hope this helps.
_d8b____________________d8b_______d8,
_?88____________________88P______`8P
__88b__________________d88
__888888b__.d888b,_d888888________88b_.d888b,
__88P_`?8b_?8b,___d8P'_?88________88P_?8b,
_d88,__d88___`?8b_88b__,88b______d88____`?8b
d88'`?88P'`?888P'_`?88P'`88b____d88'_`?888P'
______d8b________________________d8b
______88P________________________88P
_____d88________________________d88
_d888888___d8888b_d888b8b___d888888
d8P'_?88__d8b_,dPd8P'_?88__d8P'_?88
88b__,88b_88b____88b__,88b_88b__,88b
`?88P'`88b`?888P'`?88P'`88b`?88P'`88b
Actually, quite a number of improvements have been implemented *1st* on BSD, before Linux got them. Firewire, IPV6.. the list could go on quite a while.
:-P) but that I'm working on a whole different platform. Now, I can handle it having jumped between SunOS, Solaris, HPUX 9/10, Ultrix, etc. quite a bit over the years. But, I like feeling like I'm not trying to figure out new commands on every box I'm on.
I love to see people bashing BSD on these things, when it reality they are not particularly kernel related. XFree86 font libraries are an installed package, not part of the base OS. Sendmail..well, exactly *how many* sendmail bugs have been found over the years? Every OS has been hit by them, so that never surprises me. OpenSSL but... uhh, excuse me, but how many Linux's are going to be hit by this as well?
About the only one that directly relates to only NetBSD is the sysctl bug.
What I *like* about NetBSD, and why *I* choose to use it? Lets see, I have my PC NetBSD fileserver, plus several decstations, a vaxstation, 3 dec alpha's, sun 3/260, 68K mac, sun sparc's... they all run NetBSD fine, and its a consistent architecture across all the platforms... plus they are making very good headway on SMP for not only the PC platform, but sparc and mac... and trying to do it in a way that makes it, again, consistent across architectures.
I'm sorry, any OS that completely rips out its VM system and replaces it in the *middle* of a "Release" OS version (that is *not* a "minor" update or bug-fix guys) is doing *something* wrong. Everytime I switch from one "brand" of Linux to another (RedHat, Debian, etc) I get the feeling that, yeah, its still Unix (ok, Unix-like
a Truthmaster (aka a Linux user)
Wow! Becomming a Linux user makes you a truthmaster? Lets get governments everywhere on Linux then!
1) If something dead bites you, you will turn into a zombie yourself (see "Dawn of the Dead")
2) Children should not play with dead things.
3) Storing your *BSD distro install CD in formaldehyde will preserve the necrotic tissues from further rot.
4) Funerals can cost $4000. Don't forget to factor this in if you decide to go with *BSD.
They don't "use" it. They just pay to look at the corpse.
I think he meant to write Thrustmaster, aka a person who has sex with a Tux plushie.
*what" ** The f((uck* Are" "you" )talk*ing... a*bo()uT,) *"du"de *?
What do you call a gathering of BSD developers?
Answer - a funeral.
The record is clear on one thing: no operating system has ever come back from the grave. Efforts to resuscitate *BSD are one step away from spiritualists wishing to communicate with the dead. As the situation grows more desperate for the adherents of this doomed OS, the sorrow takes hold. An unremitting gloom hangs like a death shroud over a once hopeful *BSD community. The hope is gone; a mournful nostalgia has settled in. Now is the end time for *BSD.