===================================================================
RCS file: /cvsrepo/anoncvs/cvs/www/errata38.html,v
retrieving revision 1.12
retrieving revision 1.13
diff -u -r1.12 -r1.13
--- www/errata38.html 2006/09/08 20:35:11 1.12
+++ www/errata38.html 2006/09/09 03:04:22 1.13
@@ -75,6 +75,17 @@
+-
+016: SECURITY FIX: September 8, 2006 All architectures
+Due to incorrect PKCS#1 v1.5 padding validation in OpenSSL, it is possible for
+an attacker to construct an invalid signature which OpenSSL would accept as a
+valid PKCS#1 v1.5 signature.
+CVE-2006-4339
+
+
+A source code patch exists which remedies this problem.
+
+
-
015: SECURITY FIX: September 8, 2006 All architectures
Two Denial of Service issues have been found with BIND.
@@ -285,7 +296,7 @@
www@openbsd.org
-
$OpenBSD: errata38.html,v 1.12 2006/09/08 20:35:11 brad Exp $
+
$OpenBSD: errata38.html,v 1.13 2006/09/09 03:04:22 brad Exp $