Return to errata36.html CVS log | Up to [local] / www |
version 1.2, 2005/05/18 02:30:20 | version 1.3, 2005/06/16 02:42:45 | ||
---|---|---|---|
|
|
||
<a name="vax"></a> | <a name="vax"></a> | ||
<ul> | <ul> | ||
<li><a name="getsockopt"></a> | |||
<font color="#009000"><strong>017: RELIABILITY FIX: June 15, 2005</strong></font> <i>All architectures</i><br> | |||
As discovered by Stefan Miltchev calling | |||
<a href="http://www.openbsd.org/cgi-bin/man.cgi?query=getsockopt&sektion=2">getsockopt(2)</a> | |||
to get | |||
<a href="http://www.openbsd.org/cgi-bin/man.cgi?query=ipsec&sektion=4">ipsec(4)</a> | |||
credentials for a socket can result in a kernel panic. | |||
<br> | |||
<a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/3.6/common/017_getsockopt.patch"> | |||
A source code patch exists which remedies this problem</a>.<br> | |||
<p> | |||
<li><a name="cvs"></a> | <li><a name="cvs"></a> | ||
<font color="#009000"><strong>016: SECURITY FIX: April 28, 2005</strong></font> <i>All architectures</i><br> | <font color="#009000"><strong>016: SECURITY FIX: April 28, 2005</strong></font> <i>All architectures</i><br> | ||
Fix a buffer overflow, memory leaks, and NULL pointer dereference in | Fix a buffer overflow, memory leaks, and NULL pointer dereference in |