=================================================================== RCS file: /cvsrepo/anoncvs/cvs/www/errata28.html,v retrieving revision 1.32 retrieving revision 1.33 diff -c -r1.32 -r1.33 *** www/errata28.html 2003/10/24 22:12:40 1.32 --- www/errata28.html 2003/11/21 16:55:16 1.33 *************** *** 8,13 **** --- 8,14 ---- + *************** *** 50,61 **** consult the OpenBSD FAQ.
!
! !
  • All architectures

    !

  • ! 013: SECURITY FIX: Dec 18, 2000
    Procfs contained numerous overflows, which could lead an intruder to root permissions. Procfs is NOT enabled by default in OpenBSD.
    A source code patch exists which remedies the problem.

    !

  • ! 011: RELIABILITY FIX: Dec 13, 2000
    The crypto subsystem could incorrectly fail to run certain software ciphers, if a hardware card existed in the machine.
    A source code patch exists which remedies the problem.

    !

  • ! 010: RELIABILITY FIX: Dec 11, 2000
    A crash could occur during fast routing, if IPSEC was enabled.
    A source code patch exists which remedies the problem.

    !

  • ! 009: SECURITY FIX: Dec 10, 2000
    Another problem exists in the Kerberos libraries.
    A source code patch exists which remedies the problem.

    !

  • ! 008: SECURITY FIX: Dec 7, 2000
    Two problems have recently been discovered in the KerberosIV code.

    1. A symlink problem was discovered in the KerberosIV password checking routines /usr/bin/su and /usr/bin/login, which makes it possible for a *************** *** 233,247 **** A source code patch exists which remedies the problem.

    ! !

  • 005: SECURITY FIX: Dec 4, 2000
    OpenBSD 2.8's ftpd contains a one-byte overflow in the replydirname() function.
    A source code patch exists which remedies the problem.
    You can view the OpenBSD Advisory here.

    ! !

  • 004: RELIABILITY FIX: Nov 17, 2000
    First off, AES (Rijndael) encryption and decryption were broken for IPsec and swap encryption.
    Secondly, the AES code did not work properly on big endian machines.
    --- 233,247 ---- A source code patch exists which remedies the problem.

    !

  • ! 005: SECURITY FIX: Dec 4, 2000
    OpenBSD 2.8's ftpd contains a one-byte overflow in the replydirname() function.
    A source code patch exists which remedies the problem.
    You can view the OpenBSD Advisory here.

    !

  • ! 004: RELIABILITY FIX: Nov 17, 2000
    First off, AES (Rijndael) encryption and decryption were broken for IPsec and swap encryption.
    Secondly, the AES code did not work properly on big endian machines.
    *************** *** 255,275 **** A source code patch exists which remedies this problem.

    ! !

  • i386

    ! !

    i386

    ! !

  • mac68k

    ! !

  • sparc

    ! !

  • amiga

    ! !

  • pmax

    ! !

  • hp300

    ! !

  • mvme68k

    ! !

  • powerpc

    ! !

  • vax

    ! !

  • sun3

    -


  • --- 287,430 ----

    ! !

    mac68k

    ! !

    sparc

    ! !

    amiga

    ! !

    pmax

    ! !

    hp300

    ! !

    mvme68k

    ! !

    powerpc

    ! !

    vax

    ! !

    sun3



    *************** *** 450,456 ****
    OpenBSD www@openbsd.org !
    $OpenBSD: errata28.html,v 1.32 2003/10/24 22:12:40 david Exp $ --- 449,455 ----
    OpenBSD www@openbsd.org !
    $OpenBSD: errata28.html,v 1.33 2003/11/21 16:55:16 henning Exp $