=================================================================== RCS file: /cvsrepo/anoncvs/cvs/www/errata.html,v retrieving revision 1.317 retrieving revision 1.318 diff -u -r1.317 -r1.318 --- www/errata.html 2001/03/18 18:18:46 1.317 +++ www/errata.html 2001/03/19 16:37:04 1.318 @@ -50,24 +50,24 @@ The readline library shipped with OpenBSD allows history files creation with a permissive umask. This can lead to the leakage of sensitive information in applications that use passwords and the like during user interaction -(one such application is mysql). +(one such application is mysql).
A source code patch exists which remedies the problem.

  • 023: SECURITY FIX: Mar 2, 2001
    -Insufficient checks in the IPSEC AH IPv4 option handling code can lead to a buffer overrun leading to a remote DoS. This option is not on by default. +Insufficient checks in the IPSEC AH IPv4 option handling code can lead to a buffer overrun leading to a remote DoS. This option is not on by default.
    A source code patch exists which remedies the problem.

  • 021: SECURITY FIX: Feb 22, 2001
    There is a buffer overflow in sudo. -It is not currently known whether this is exploitable. +It is not currently known whether this is exploitable.
    A source code patch exists which remedies the problem.

  • 020: IMPLEMENTATION FIX: Feb 15, 2001
    -Client side ident protocol was broken in libwrap, affecting anything using libwrap including tcpd. The effect of this was that libwrap would never retrieve and log ident values from remote hosts on connections. +Client side ident protocol was broken in libwrap, affecting anything using libwrap including tcpd. The effect of this was that libwrap would never retrieve and log ident values from remote hosts on connections.
    A source code patch exists which remedies the problem.

    @@ -357,7 +357,7 @@ OpenBSD www@openbsd.org -
    $OpenBSD: errata.html,v 1.317 2001/03/18 18:18:46 millert Exp $ +
    $OpenBSD: errata.html,v 1.318 2001/03/19 16:37:04 jason Exp $