A FreeBSD security release has just been announced here:
ftp://ftp.freebsd.org/pub/FreeBSD/CERT/ad...08.realpath.ascThis is a hole that originally was reported with reference to wu-ftpd but in fact has wider consequences in that any application that uses libc system binaries built with the unpatched realpath.c libc source are vulnerable. With that a make world is in order. The system won't be down for more than a few minutes with luck, although the method I'm going for might make the system volatile(!) so this could involve a reboot at worst.