>> i just rebuilt my system from the 2.9 patch branch. i followed
>> the instructins in /usr/src, but am a little paranoid. is there
>> any way to check whether my sendmail binary is clean of the exploit?
>> i just discovered that my openbsd-proto.mc file was updated, so
>> that was a good sign.
>You could keep the old binary and compare its checksum with the new one.
>You could also simply look at cvsweb, get the diff and see if it is applied.
>--
>A079 88E9 3617 838D ED65 A7D1 277D D529 DC80 5C44
the diff was applied, i was just worried that i may have not cleaned
out the object files (i dunno whether that was necessary or not), and
that maybe that binary wasn't rebuilt w/ the patch. the timestamp was
different, but the size was the same as the old binary (i saved a ls
-l output).