RNG broken in FreeBSD
-
I just picked up this security advisory https://lists.freebsd.org/pipermail/freebsd-current/2015-February/054580.html which basically says that the random number generator in the underlying FreeBSD is broken for the last four months. Since the latest pfSense's kernel is build on January 22nd, 2015, I think we are affected by this bug.
Are you already aware of this bug? Is it possible to upgrade the kernel via (auto-)update?
- O.
-
Read the whole thread.
-
Ah, okay, sorry.
So, pfSense 2.2 kernel is not build between r273872 and r278907?
-
Someone from ESF should chime in but I highly doubt they're building from -current. And I have no doubt they're building their own kernels so the build date will probably be more recent than the latest 10.1-RELEASE.
-
OIC, thanks for clarification. :)
-
As posted by the doktor on the other thread:
https://redmine.pfsense.org/issues/4437#note-2
Nothing to see here. The perils of -current.