LWN.net Logo

A second remote hole for OpenBSD

A second remote hole for OpenBSD

Posted Mar 14, 2007 23:09 UTC (Wed) by akumria (subscriber, #7773)
In reply to: A second remote hole for OpenBSD by drag
Parent article: A second remote hole for OpenBSD

And when OpenBSD say 'default install' I take it to mean all the officially supported software. Not just the default configuration they happen to ship out. This is the software that they take most seriously with audits and such things. They tend to be very serious about this sort of thing.

That's what you take it to mean but a lot of people, including me, take "default install" to mean the OpenBSD kernel and OpenSSH.

I'd say that for those two components the number of times the "default install" has been remotely compromised would be very similiar on most *BSDs and Linux. Especially as everyone is using OpenSSH.


(Log in to post comments)

A second remote hole for OpenBSD

Posted Mar 15, 2007 4:45 UTC (Thu) by k8to (subscriber, #15413) [Link]

For the record, OpenBSD does enable a few more things, like portmap, by default. So the list is *a bit* longer than that, but not much.

A second remote hole for OpenBSD

Posted Mar 16, 2007 8:25 UTC (Fri) by miod (guest, #41457) [Link]

Actually, portmap has been disabled by default since a fair number of OpenBSD releases already.

A second remote hole for OpenBSD

Posted Mar 16, 2007 15:03 UTC (Fri) by k8to (subscriber, #15413) [Link]

Just goes to show.......

Um. So uh, I guess my OpenBSD usage is a bit dated.

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds