===================================================================
RCS file: /cvsrepo/anoncvs/cvs/www/plus27.html,v
retrieving revision 1.3
retrieving revision 1.4
diff -c -r1.3 -r1.4
*** www/plus27.html 2000/05/26 17:48:37 1.3
--- www/plus27.html 2000/05/26 21:21:45 1.4
***************
*** 84,90 ****
Install isakmpd(8) sample files.
Correct proctitle updating in sshd(8).
Change pmax dc(4) driver to dz(4), to avoid name conflict.
! Do not use an undocumented semconfig(2) system call in ipcs(1), in fact, remove the system call altogether.
More mount(8) tweaks for dealing with weird paths.
Fix more pkg_add(1) bugs.
Support another RCC ServerWorks PCI host bridge.
--- 84,90 ----
Install isakmpd(8) sample files.
Correct proctitle updating in sshd(8).
Change pmax dc(4) driver to dz(4), to avoid name conflict.
! SECURITY FIX: Do not use an undocumented semconfig(2) system call in ipcs(1), in fact, remove the system call altogether. A source code patch is available.
More mount(8) tweaks for dealing with weird paths.
Fix more pkg_add(1) bugs.
Support another RCC ServerWorks PCI host bridge.
***************
*** 466,478 ****
Deal with getcwd(3) returning NULL in at(1).
Rename ip4.allow sysctl(8) to ipip.allow. This variable no longer controls any explictly configured IP-over-IP tunnels.
Deal with getcwd(3) returning NULL in the supfilesrv.
! DRIVER IMPROVEMENT: Intel fxp(4) cards with nsphy could not negotiate and maintain 100mbit link. A source code patch is available.
Fix a buffer overflow in the i386 bootblocks!
Fix vi(1) recover script to use sysopen(), to avoid magic in perl open().
Fix race condition in make(1) (only applies to make -j, which noone in OpenBSD ever uses).
Reduce console loggin in sshd(8).
Fix sshd -i.
! SECURITY FIX: Systems with procfs enabled and mounted contain a root hole due to a tricky exploit.A source code patch is available.
Fix a possible NULL dereference in execve(2).
gcc 2.95.2
add rip6query(8).
--- 466,478 ----
Deal with getcwd(3) returning NULL in at(1).
Rename ip4.allow sysctl(8) to ipip.allow. This variable no longer controls any explictly configured IP-over-IP tunnels.
Deal with getcwd(3) returning NULL in the supfilesrv.
! DRIVER IMPROVEMENT: Intel fxp(4) cards with nsphy could not negotiate and maintain 100mbit link. A source code patch is available.
Fix a buffer overflow in the i386 bootblocks!
Fix vi(1) recover script to use sysopen(), to avoid magic in perl open().
Fix race condition in make(1) (only applies to make -j, which noone in OpenBSD ever uses).
Reduce console loggin in sshd(8).
Fix sshd -i.
! SECURITY FIX: Systems with procfs enabled and mounted contain a root hole due to a tricky exploit. A source code patch is available.
Fix a possible NULL dereference in execve(2).
gcc 2.95.2
add rip6query(8).
***************
*** 544,550 ****
Make some macros in m4(1) special.
Improve column handling in ls(1).
V6 support in systat(1).
! Y2K FIX: The at(1) command was unable to parse some kinds of dates. A source code patch is available.
Improve sleep(1) for out-of-range values.
Do not use kvm snooping in rtsold(8).
Fix ftp(1) URL support accidentally broken by KAME.
--- 544,550 ----
Make some macros in m4(1) special.
Improve column handling in ls(1).
V6 support in systat(1).
! Y2K FIX: The at(1) command was unable to parse some kinds of dates. A source code patch is available.
Improve sleep(1) for out-of-range values.
Do not use kvm snooping in rtsold(8).
Fix ftp(1) URL support accidentally broken by KAME.
***************
*** 557,565 ****
Using weak symbols, support a real libpthread.
The mknod(8) -m option should ignore the umask.
More man page cleanups, as always.
! Y2K FIX: A minor problem; the sparc eeprom(8) command is not Y2K compliant. A source code patch is available.
Permit midi compilation without other audio code.
! Y2K FIX: A minor problem in the logging support for the adduser(8) command. A source code patch is available.
In config(8), permit multiple maxuser definitions. Newest overrides older ones.
Use the dc(4) driver instead for a few other tulip-like cards.
Change libc syslog() code to try to reopen the socket if a send fails. This handles the case of a restarted syslogd(8) better.
--- 557,565 ----
Using weak symbols, support a real libpthread.
The mknod(8) -m option should ignore the umask.
More man page cleanups, as always.
! Y2K FIX: A minor problem; the sparc eeprom(8) command is not Y2K compliant. A source code patch is available.
Permit midi compilation without other audio code.
! Y2K FIX: A minor problem in the logging support for the adduser(8) command. A source code patch is available.
In config(8), permit multiple maxuser definitions. Newest overrides older ones.
Use the dc(4) driver instead for a few other tulip-like cards.
Change libc syslog() code to try to reopen the socket if a send fails. This handles the case of a restarted syslogd(8) better.
***************
*** 579,585 ****
Remove PIC versions of libarch and libresolv from the distribution.
Correctly copy pkthdr in m_split().
Fix udp multicast option handling.
! DRIVER IMPROVEMENT: Fix mii autoselect support for 3c900b. A source code patch is available.
Fix signed errors in df(1).
Repair netstat -ss.
Optional swap encryption support in uvm; see new options(4) page.
--- 579,585 ----
Remove PIC versions of libarch and libresolv from the distribution.
Correctly copy pkthdr in m_split().
Fix udp multicast option handling.
! DRIVER IMPROVEMENT: Fix mii autoselect support for 3c900b. A source code patch is available.
Fix signed errors in df(1).
Repair netstat -ss.
Optional swap encryption support in uvm; see new options(4) page.
***************
*** 655,662 ****
Overflows is split(1), jot(1), ssio, telnet(1), file(1).
SiS 900/7016 Ethernet from FreeBSD. See sis(4)
Tape support and major code changes to atapiscsi(4).
! The third ssh jumbo patch is now available. Numerous (non-security) additions/changes have been made to OpenSSH since the OpenBSD 2.6 release. A jumbo patch is available which adds many features.
! The second ssh jumbo patch is now available. Numerous (non-security) additions/changes have been made to OpenSSH since the OpenBSD 2.6 release. A jumbo patch is available which adds many features.
Some overflows in patch(1).
Buffer overflow in dnsquery(1).
Buffer overflow in error(1).
--- 655,662 ----
Overflows is split(1), jot(1), ssio, telnet(1), file(1).
SiS 900/7016 Ethernet from FreeBSD. See sis(4)
Tape support and major code changes to atapiscsi(4).
! The third ssh jumbo patch is now available. Numerous (non-security) additions/changes have been made to OpenSSH since the OpenBSD 2.6 release. A jumbo patch is available which adds many features.
! The second ssh jumbo patch is now available. Numerous (non-security) additions/changes have been made to OpenSSH since the OpenBSD 2.6 release. A jumbo patch is available which adds many features.
Some overflows in patch(1).
Buffer overflow in dnsquery(1).
Buffer overflow in error(1).
***************
*** 665,671 ****
Fix off-by-one in apply(1).
Fix bug in pr(1).
Make soft updates mostly work with UVM.
! SECURITY FIX: The USA version of the ssl library package, called sslUSA26, contained buffer overflows. A binary patch is available for people who installed before December 3.
Remove ctm(1) from the src tree -- look for it in ports now.
libkvm.old hacks for UVM.
Fix utmp handling in ftpd(8), for when running in daemon mode.
--- 665,671 ----
Fix off-by-one in apply(1).
Fix bug in pr(1).
Make soft updates mostly work with UVM.
! SECURITY FIX: The USA version of the ssl library package, called sslUSA26, contained buffer overflows. A binary patch is available for people who installed before December 3.
Remove ctm(1) from the src tree -- look for it in ports now.
libkvm.old hacks for UVM.
Fix utmp handling in ftpd(8), for when running in daemon mode.
***************
*** 675,681 ****
DPT SmartCache III/IV SCSI PCI/EISA driver.
mkisofs 1.11.3
Fix mangled files for put command in ftpd(8).
! RELIABILITY FIX: Be more careful in poll(2). A source patch is available.
ncurses-5.0-19991127
Enable TI16750 UART support.
driver for ISA hostess 4-channel serial card.
--- 675,681 ----
DPT SmartCache III/IV SCSI PCI/EISA driver.
mkisofs 1.11.3
Fix mangled files for put command in ftpd(8).
! RELIABILITY FIX: Be more careful in poll(2). A source patch is available.
ncurses-5.0-19991127
Enable TI16750 UART support.
driver for ISA hostess 4-channel serial card.
***************
*** 689,695 ****
Parsing error fix to calendar(1).
Some more m4(1) fixes.
Set SO_REUSEADDR and SO_LINGER on forwarded ports in ssh(1).
! SECURITY FIX: Limit newaliases run to root and trusted users. A source patch is available.
SSH_ASKPASS support in ssh-add(1).
Numerous ssh(1) and sshd(8) improvements... too many to mention.
Newer version of the isp(4) driver.
--- 689,695 ----
Parsing error fix to calendar(1).
Some more m4(1) fixes.
Set SO_REUSEADDR and SO_LINGER on forwarded ports in ssh(1).
! SECURITY FIX: Limit newaliases run to root and trusted users. A source patch is available.
SSH_ASKPASS support in ssh-add(1).
Numerous ssh(1) and sshd(8) improvements... too many to mention.
Newer version of the isp(4) driver.
***************
*** 726,735 ****
top(1) should use stathz, not hz, for calculating process run times.
Shrink the puc(4) dmesg output.
Add OSS audio support to the BSD/OS emulation.
! A kernel reliability fix for the alpha. A patch is available.
! A kernel reliability fix for all m68k architectures. A patch is available (which all m68k architectures share).
! Numerous (non-security) additions/changes have been made to OpenSSH since the OpenBSD 2.6 release. A jumbo patch is available which adds many features.
! A kernel reliability fix for the sparc. A patch is available.
Counter overflow fix to scp(1).
Merge dvdio.h support into cdio.h, and cleanup various unportabile bits.
Various other ssh(1) cleanups.
--- 726,735 ----
top(1) should use stathz, not hz, for calculating process run times.
Shrink the puc(4) dmesg output.
Add OSS audio support to the BSD/OS emulation.
! A kernel reliability fix for the alpha. A patch is available.
! A kernel reliability fix for all m68k architectures. A patch is available (which all m68k architectures share).
! Numerous (non-security) additions/changes have been made to OpenSSH since the OpenBSD 2.6 release. A jumbo patch is available which adds many features.
! A kernel reliability fix for the sparc. A patch is available.
Counter overflow fix to scp(1).
Merge dvdio.h support into cdio.h, and cleanup various unportabile bits.
Various other ssh(1) cleanups.
***************
*** 742,751 ****
Have sshd check check the user's personal ~/.ssh/known_hosts file.
NOTE: OpenSSH does not have the ssh 1.2.27 rsa bug.
Install a shared libperl.
! Fix m4, accidentally broken in 2.6. A patch is available.
! Users should not be able to change the media configuration of interfaces. A patch is available.
Add strtok_r(3).
! newsyslog race condition fixes. A patch is available.
Various make(1) fixes.
screen blanker code for the amiga.
Default network name in wi(4) is "", not "ANY".
--- 742,751 ----
Have sshd check check the user's personal ~/.ssh/known_hosts file.
NOTE: OpenSSH does not have the ssh 1.2.27 rsa bug.
Install a shared libperl.
! Fix m4, accidentally broken in 2.6. A patch is available.
! Users should not be able to change the media configuration of interfaces. A patch is available.
Add strtok_r(3).
! newsyslog race condition fixes. A patch is available.
Various make(1) fixes.
screen blanker code for the amiga.
Default network name in wi(4) is "", not "ANY".
***************
*** 807,813 ****
www@openbsd.org
!
$OpenBSD: plus27.html,v 1.3 2000/05/26 17:48:37 deraadt Exp $