=================================================================== RCS file: /cvsrepo/anoncvs/cvs/www/errata28.html,v retrieving revision 1.32 retrieving revision 1.33 diff -u -r1.32 -r1.33 --- www/errata28.html 2003/10/24 22:12:40 1.32 +++ www/errata28.html 2003/11/21 16:55:16 1.33 @@ -8,6 +8,7 @@ + @@ -50,12 +51,11 @@ consult the OpenBSD FAQ.
-
- -
  • All architectures

    + +

    All architectures

    - -

  • 013: SECURITY FIX: Dec 18, 2000
    +
  • +013: SECURITY FIX: Dec 18, 2000
    Procfs contained numerous overflows, which could lead an intruder to root permissions. Procfs is NOT enabled by default in OpenBSD.
    A source code patch exists which remedies the problem.

    - -

  • 011: RELIABILITY FIX: Dec 13, 2000
    +
  • +011: RELIABILITY FIX: Dec 13, 2000
    The crypto subsystem could incorrectly fail to run certain software ciphers, if a hardware card existed in the machine.
    A source code patch exists which remedies the problem.

    - -

  • 010: RELIABILITY FIX: Dec 11, 2000
    +
  • +010: RELIABILITY FIX: Dec 11, 2000
    A crash could occur during fast routing, if IPSEC was enabled.
    A source code patch exists which remedies the problem.

    - -

  • 009: SECURITY FIX: Dec 10, 2000
    +
  • +009: SECURITY FIX: Dec 10, 2000
    Another problem exists in the Kerberos libraries.
    A source code patch exists which remedies the problem.

    - -

  • 008: SECURITY FIX: Dec 7, 2000
    +
  • +008: SECURITY FIX: Dec 7, 2000
    Two problems have recently been discovered in the KerberosIV code.

    1. A symlink problem was discovered in the KerberosIV password checking routines /usr/bin/su and /usr/bin/login, which makes it possible for a @@ -233,15 +233,15 @@ A source code patch exists which remedies the problem.

    - -

  • 005: SECURITY FIX: Dec 4, 2000
    +
  • +005: SECURITY FIX: Dec 4, 2000
    OpenBSD 2.8's ftpd contains a one-byte overflow in the replydirname() function.
    A source code patch exists which remedies the problem.
    You can view the OpenBSD Advisory here.

    - -

  • 004: RELIABILITY FIX: Nov 17, 2000
    +
  • +004: RELIABILITY FIX: Nov 17, 2000
    First off, AES (Rijndael) encryption and decryption were broken for IPsec and swap encryption.
    Secondly, the AES code did not work properly on big endian machines.
    @@ -255,21 +255,21 @@ A source code patch exists which remedies this problem.

    - -

  • i386

    + +

    i386

    - -

  • mac68k

    + +

    mac68k

    - -

  • sparc

    + +

    sparc

    - -

  • amiga

    + +

    amiga

    - -

  • pmax

    + +

    pmax

    - -

  • hp300

    + +

    hp300

    - -

  • mvme68k

    + +

    mvme68k

    - -

  • powerpc

    + +

    powerpc

    - -

  • vax

    + +

    vax

    - -

  • sun3

    + +

    sun3

    -


  • @@ -450,7 +449,7 @@
    OpenBSD www@openbsd.org -
    $OpenBSD: errata28.html,v 1.32 2003/10/24 22:12:40 david Exp $ +
    $OpenBSD: errata28.html,v 1.33 2003/11/21 16:55:16 henning Exp $