=================================================================== RCS file: /cvsrepo/anoncvs/cvs/www/errata.html,v retrieving revision 1.463 retrieving revision 1.464 diff -c -r1.463 -r1.464 *** www/errata.html 2003/11/04 16:01:21 1.463 --- www/errata.html 2003/11/10 04:36:49 1.464 *************** *** 59,65 ****
  • 005: RELIABILITY FIX: November 4, 2003
    It is possible for a local user to cause a system panic by executing a specially crafted binary with an invalid header.
    ! A source code patch exists which remedies the problem.

  • 004: RELIABILITY FIX: November 1, 2003
    --- 59,66 ----
  • 005: RELIABILITY FIX: November 4, 2003
    It is possible for a local user to cause a system panic by executing a specially crafted binary with an invalid header.
    ! ! A source code patch exists which remedies the problem.

  • 004: RELIABILITY FIX: November 1, 2003
    *************** *** 69,81 **** or potentially run arbitrary code as the user www (although it is believed that ProPolice will prevent code execution).
    ! A source code patch exists which remedies the problem.

  • 003: RELIABILITY FIX: November 1, 2003
    It is possible for a local user to cause a system panic by flooding it with spoofed ARP requests.
    ! A source code patch exists which remedies the problem.

  • 002: SECURITY FIX: November 1, 2003
    --- 70,84 ---- or potentially run arbitrary code as the user www (although it is believed that ProPolice will prevent code execution).
    ! ! A source code patch exists which remedies the problem.

  • 003: RELIABILITY FIX: November 1, 2003
    It is possible for a local user to cause a system panic by flooding it with spoofed ARP requests.
    ! ! A source code patch exists which remedies the problem.

  • 002: SECURITY FIX: November 1, 2003
    *************** *** 83,89 **** attacker to mount a denial of service attack against applications linked with ssl(3). This does not affect OpenSSH.
    ! A source code patch exists which remedies the problem.

  • 001: DOCUMENTATION FIX: November 1, 2003
    --- 86,93 ---- attacker to mount a denial of service attack against applications linked with ssl(3). This does not affect OpenSSH.
    ! ! A source code patch exists which remedies the problem.

  • 001: DOCUMENTATION FIX: November 1, 2003
    *************** *** 185,191 ****
    OpenBSD www@openbsd.org !
    $OpenBSD: errata.html,v 1.463 2003/11/04 16:01:21 brad Exp $ --- 189,195 ----
    OpenBSD www@openbsd.org !
    $OpenBSD: errata.html,v 1.464 2003/11/10 04:36:49 nick Exp $