===================================================================
RCS file: /cvsrepo/anoncvs/cvs/www/errata47.html,v
retrieving revision 1.16
retrieving revision 1.17
diff -c -r1.16 -r1.17
*** www/errata47.html 2010/11/18 08:34:45 1.16
--- www/errata47.html 2010/12/17 16:36:18 1.17
***************
*** 87,92 ****
--- 87,102 ----
+ -
+ 009: SECURITY FIX: December 17, 2010 All architectures
+ Insufficent initialization of the pf rule structure in the ioctl
+ handler may allow userland to modify kernel memory. By default root
+ privileges are needed to add or modify pf rules.
+
+
+ A source code patch exists which remedies this problem.
+
+
-
008: RELIABILITY FIX: November 17, 2010 All architectures
Fix a flaw in the OpenSSL TLS server extension code parsing which could lead to
***************
*** 202,208 ****
www@openbsd.org
!
$OpenBSD: errata47.html,v 1.16 2010/11/18 08:34:45 jasper Exp $