===================================================================
RCS file: /cvsrepo/anoncvs/cvs/www/errata.html,v
retrieving revision 1.422
retrieving revision 1.423
diff -u -r1.422 -r1.423
--- www/errata.html 2002/11/06 23:37:17 1.422
+++ www/errata.html 2002/11/15 01:58:33 1.423
@@ -53,6 +53,16 @@
All architectures
+
+- 005: SECURITY FIX: November 14, 2002
+A buffer overflow in
+named(8)
+could allow an attacker to execute code with the privileges of named.
+On OpenBSD, named runs as a non-root user in a chrooted environment
+which mitigates the affects of this bug.
+A
+source code patch exists which remedies the problem.
+
- 004: RELIABILITY FIX: November 6, 2002
A logic error in the
@@ -174,7 +184,7 @@
www@openbsd.org
-
$OpenBSD: errata.html,v 1.422 2002/11/06 23:37:17 miod Exp $
+
$OpenBSD: errata.html,v 1.423 2002/11/15 01:58:33 millert Exp $