Strengthening FreeBSD: Addressing Vulnerabilities Through Synacktiv’s Code Audit

submited 25 November 2024

With funding from the Alpha-Omega Project, the FreeBSD Foundation recently partnered with the offensive security firm Synacktiv to perform an in-depth security audit of critical FreeBSD components, focusing on the bhyve hypervisor and the Capsicum security framework. The comprehensive findings from the audit, available in the full report, highlight several vulnerabilities. Most of these vulnerabilities have been addressed through official FreeBSD Project security advisories, which offer detailed information about each vulnerability, its impact, and the measures implemented to improve the security of FreeBSD systems.

The BSD community linklog
Made a script? Written a blog post? Found a useful tutorial? Share it with the BSD community here or just enjoy what everyone else has found!

Submit

25 November 2024
Strengthening FreeBSD: Addressing Vulnerabilities Through Synacktiv’s Code Audit  

With funding from the Alpha-Omega Project, the FreeBSD Foundation recently partnered with the offensive security firm Synacktiv to perform an in-depth security audit of critical FreeBSD components, focusing on the bhyve hypervisor and the Capsicum security framework. The comprehensive findings from the audit, available in the full report, highlight several vulnerabilities. Most of these vulnerabilities have been addressed through official FreeBSD Project security advisories, which offer detailed information about each vulnerability, its impact, and the measures implemented to improve the security of FreeBSD systems.

24 November 2024
Why I stopped using OpenBSD  

Last month, author decided to leave the OpenBSD as they have not been using OpenBSD for a while. A lot of people asked them why they stopped using OpenBSD, although they have been advocating it for a while. They like OpenBSD, it has values, and it is important that it exists. But it does not fit all needs anymore.

FreeBSD 14.2-BETA3  

The third BETA build for the FreeBSD 14.2 release cycle is now available. ISO images for the amd64, i386, powerpc, powerpc64, powerpc64le, powerpcspe, armv7, aarch64, and riscv64 architectures are FreeBSD mirror sites.

GhostBSD 24.10.1  

This release brings system updates from FreeBSD and better hardware compatibility with some old AMD Radeon and FirePro GPU. They resolved live session startup issues with Legacy BIOS and started to fix some issues with Update Station functionality.

Enjoying DiscoverBSD? There is more...

Subscribe to BSD Weekly, our free, once–weekly e-mail round-up of BSD news and articles. It is currated from your content on DiscoverBSD and BSDSec (a deadsimple BSD Security Advisories and Announcements).

You can also support the work on Patreon.
18 November 2024
Migrating Windows VMs  

Experience migrating a client’s Windows BIOS VMs from Proxmox to FreeBSD/uefi, using bhyve and ZFS.

FreeBSD at EuroBSDCon 2024  

How FreeBSD is advancing open source technology through firsthand insights in networking, security, automation, and enterprise solutions.

15 November 2024
OpenBSD Errata: November 15, 2024 (expat)  

Errata patches for libexpat have been released for OpenBSD 7.6 and 7.5. Binary updates for the amd64, arm64 and i386 platform are available via the syspatch utility.

BSD Now 585: Infrastructure Administration Workstation  

From Proxmox to FreeBSD - Story of a Migration, FreeBSD At 30: The History And Future Of The Most Popular BSD-Based OS, Using a dedicated administration workstation for my infrastructure, LibreSSL 4.0.0 Released, Plasma6 and FreeBSD 14, Replace gnu diff, diff3, and sdiff with BSD versions, and more.

Advancing Cloud Native Containers on FreeBSD: Podman Testing Highlights  

The FreeBSD community continuously innovates to enhance the Project’s capabilities and support cloud native applications. As part of this effort, the FreeBSD OCI Runtime Extension Working Group recently completed a time-boxed testing program for the experimental implementation of Podman, an OCI-compliant container engine, on FreeBSD. This program ran from September 2, 2024, to October 11, 2024, intending to assess the current state of Podman on FreeBSD and gather insights to guide future development.

12 November 2024
Display switch for OpenBSD laptop  

The article details a setup for automatically switching the display on an OpenBSD laptop. Author uses USB-C so if you connect your monitor(s) using VGA, DVI, HDMI or DisplayPort, this post will probably not be useful.

Valuable News – 2024/11/11  

The Valuable News weekly series is dedicated to provide summary about news, articles and other interesting stuff mostly but not always related to the UNIX/BSD/Linux systems.

load more