Return to errata.html CVS log | Up to [local] / www |
version 1.492, 2004/05/20 21:05:59 | version 1.493, 2004/05/26 19:56:42 | ||
---|---|---|---|
|
|
||
<a name="all"></a> | <a name="all"></a> | ||
<h3><font color="#e00000">All architectures</font></h3> | <h3><font color="#e00000">All architectures</font></h3> | ||
<ul> | <ul> | ||
<li><a name="xdm"></a> | |||
<font color="#00900"><strong>008: SECURITY FIX: May 26, | |||
2004</strong></font><br> | |||
With the introduction of IPv6 code in | |||
<a | |||
href="http://www.openbsd.org/cgi-bin/man.cgi?query=xdm&apropos=0&sektion=0&manpath=OpenBSD+Current&arch=i386&format=html">xdm(1)</a>, | |||
one test on the'requestPort' resource was deleted by accident. This | |||
makes xdm create the chooser socket even if xdmcp is disabled in | |||
xdm-config, by setting requestPort to 0. See | |||
<a href="http://bugs.xfree86.org/show_bug.cgi?id=1376">XFree86 | |||
bugzilla</a> for details. | |||
<br> | |||
<a | |||
href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/3.5/common/008_xdm.patch"> | |||
A source code patch exists which remedies this problem</a>.<br> | |||
<p> | |||
<li><a name="cvs2"></a> | <li><a name="cvs2"></a> | ||
<font color="#009000"><strong>007: SECURITY FIX: May 20, | <font color="#009000"><strong>007: SECURITY FIX: May 20, | ||
2004</strong></font><br> | 2004</strong></font><br> |