Return to errata.html CVS log | Up to [local] / www |
version 1.504, 2004/08/25 21:03:34 | version 1.505, 2004/08/26 07:11:38 | ||
---|---|---|---|
|
|
||
<a name="all"></a> | <a name="all"></a> | ||
<h3><font color="#e00000">All architectures</font></h3> | <h3><font color="#e00000">All architectures</font></h3> | ||
<ul> | <ul> | ||
<li><a name="bridge"></a> | |||
<font color="#009000"><strong>016: RELIABILITY FIX: August 26, 2004</strong></font><br> | |||
As | |||
<a href="http://marc.theaimsgroup.com/?l=bugtraq&m=109345131508824&w=2">reported</a> | |||
by Vafa Izadinia | |||
<a href="http://www.openbsd.org/cgi-bin/man.cgi?query=bridge&apropos=0&sektion=4&manpath=OpenBSD+Current&arch=i386&format=html">bridge(4)</a> | |||
with IPsec processing enabled can be crashed remotely by a single ICMP echo traversing the bridge. | |||
<br> | |||
<a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/3.5/common/016_bridge.patch"> | |||
A source code patch exists which remedies this problem</a>.<br> | |||
<p> | |||
<li><a name="icmp"></a> | <li><a name="icmp"></a> | ||
<font color="#009000"><strong>015: RELIABILITY FIX: August 25, 2004</strong></font><br> | <font color="#009000"><strong>015: RELIABILITY FIX: August 25, 2004</strong></font><br> | ||
Improved verification of ICMP errors in order to minimize the impact of ICMP attacks | Improved verification of ICMP errors in order to minimize the impact of ICMP attacks |