Return to errata.html CVS log | Up to [local] / www |
version 1.454, 2003/10/04 16:37:51 | version 1.455, 2003/10/04 16:53:48 | ||
---|---|---|---|
|
|
||
This does not affect OpenSSH. | This does not affect OpenSSH. | ||
<a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/3.3/common/007_asn1.patch">A source code patch exists which remedies the problem</a>.<br> | <a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/3.3/common/007_asn1.patch">A source code patch exists which remedies the problem</a>.<br> | ||
<a name=pfnorm></a> | <a name=pfnorm></a> | ||
<li><font color="#009000"><strong>006: SECURITY FIX: October 1, 2003</strong></font><br> | <li><font color="#009000"><strong>006: SECURITY FIX: September 24, 2003</strong></font><br> | ||
Three cases of potential access to freed memory have been found in | Three cases of potential access to freed memory have been found in | ||
<a href="http://www.openbsd.org/cgi-bin/man.cgi?query=ssl&sektion=4">pf</a>. | <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=ssl&sektion=4">pf</a>. | ||
At least one of them could be used to panic pf with active scrub rules remotely. | At least one of them could be used to panic pf with active scrub rules remotely. |