version 1.3, 2010/11/16 17:03:10 |
version 1.4, 2010/11/18 08:34:45 |
|
|
<a name="zaurus"></a> |
<a name="zaurus"></a> |
|
|
<ul> |
<ul> |
|
<li><a name="004_openssl"></a> |
|
<font color="#009000"><strong>004: RELIABILITY FIX: November 17, 2010</strong></font> <i>All architectures</i><br> |
|
Fix a flaw in the OpenSSL TLS server extension code parsing which could lead to |
|
a buffer overflow. This affects OpenSSL based TLS servers which are multi-threaded |
|
and use OpenSSL's internal caching mechanism. Servers that are multi-process |
|
and/or disable internal session caching are not affected. |
|
<br> |
|
<a href="http://ftp.openbsd.org/pub/OpenBSD/patches/4.8/common/004_openssl.patch"> |
|
A source code patch exists which remedies this problem</a>.<br> |
|
<p> |
|
|
<li><a name="003_vr"></a> |
<li><a name="003_vr"></a> |
<font color="#009000"><strong>003: RELIABILITY FIX: November 16, 2010</strong></font> <i>All architectures</i><br> |
<font color="#009000"><strong>003: RELIABILITY FIX: November 16, 2010</strong></font> <i>All architectures</i><br> |
The <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=vr&sektion=4">vr(4)</a> |
The <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=vr&sektion=4">vr(4)</a> |