===================================================================
RCS file: /cvsrepo/anoncvs/cvs/www/plus.html,v
retrieving revision 1.661
retrieving revision 1.662
diff -u -r1.661 -r1.662
--- www/plus.html 2000/10/06 19:59:43 1.661
+++ www/plus.html 2000/10/18 21:08:21 1.662
@@ -48,6 +48,9 @@
OpenBSD 2.7 released (June 15, 2000).
We are working on OpenBSD-current.
+- SECURITY FIX: Apache mod_rewrite and
+mod_vhost_alias modules could expose files on server if used.
+ A patch is available.
- SECURITY FIX: Ignore $HOME/.termlib in curses for setuid/setgid executables.
A patch is available.
[Applied to stable]
@@ -614,7 +617,7 @@
www@openbsd.org
-
$OpenBSD: plus.html,v 1.661 2000/10/06 19:59:43 deraadt Exp $
+
$OpenBSD: plus.html,v 1.662 2000/10/18 21:08:21 beck Exp $