Tuesday, July 27, 2004

portaudit -- system to check installed packages for known vulnerabilities
portaudit checks installed packages for known vulnerabilities and generates reports including references to security advisories. Its audience are system administrators or individual users.

portaudit uses a database maintained by port committers and the FreeBSD security team to check if security advisories for any installed packages exist. Note that a current ports tree (or any local copy of the ports tree) is not required for operation.

This package also installs a script into /usr/local/etc/periodic/security that regularly updates this database and includes a report of vulnerable packages in the daily security report.

If you have a vulnerable package installed, you are advised to update or deinstall it immediately.

0 Comments:

Post a Comment

<< Home