On 10/06/2017 09:04 PM, Ron Hunter-Duvar wrote:
On October 6, 2017 5:05:49 PM MDT, Unman <un...@thirdeyesecurity.org> wrote:
On Thu, Oct 05, 2017 at 12:41:32PM -0600, Ron Hunter-Duvar wrote:
...
The install disk still contains fed23 templates and you're expected to
update as soon as you have installed.

To install a new template all you have to do is :
sudo qubes-dom0-update qubes-template-fedora-25
Thanks for the tip. I don't remember seeing it in the getting started material 
I read. Doing it now.


This will install the template and you can then just switch your
serviceVMs - either using Qubes Manager, or by:
'qvm-prefs <qube> -s template <template>'.

...
Well, I did all this, and confirmed that the sys-* servicevms are all using Fedora 25, but it still has dnsmasq version 2.76. According to US-CERT, 2.78 is needed to get the vulnerability fixes. Which concerns me, given the length of time that the exploit code has been public. Surprises me too, since Debian had it out in a matter of hours.

However, it's not running in any of these, nor in dom0. Should I just uninstall it?

Thanks,
Ron

--
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To post to this group, send email to qubes-users@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/728aa211-a104-87aa-eb42-59301b562ed9%40shaw.ca.
For more options, visit https://groups.google.com/d/optout.

Reply via email to