version 1.17, 2010/03/12 13:35:51 |
version 1.18, 2010/03/31 17:05:43 |
|
|
<a name="zaurus"></a> |
<a name="zaurus"></a> |
|
|
<ul> |
<ul> |
|
<li><a name="014_kerberos"></a> |
|
<font color="#009000"><strong>014: RELIABILITY FIX: March 31, 2010</strong></font> <i>All architectures</i><br> |
|
When decrypting packets, the internal decryption functions were not |
|
paranoid enough in checking for underruns, which could potentially |
|
lead to crashes. |
|
<br> |
|
<a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/4.5/common/014_kerberos.patch"> |
|
A source code patch exists which remedies this problem</a>.<br> |
|
<p> |
|
|
<li><a name="013_ftpd"></a> |
<li><a name="013_ftpd"></a> |
<font color="#009000"><strong>013: RELIABILITY FIX: March 12, 2010</strong></font> <i>All architectures</i><br> |
<font color="#009000"><strong>013: RELIABILITY FIX: March 12, 2010</strong></font> <i>All architectures</i><br> |
Due to a null pointer dereference, it would be possible to crash ftpd when |
Due to a null pointer dereference, it would be possible to crash ftpd when |