version 1.7, 2003/03/30 20:23:35 |
version 1.8, 2003/08/07 00:25:00 |
|
|
|
|
<li>Release branch created. |
<li>Release branch created. |
<!-- ^^^ 20021003 --> |
<!-- ^^^ 20021003 --> |
<li>Cool new <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=xdm&sektion=8">xdm(8)</a> images for 3.2. |
<li>Cool new <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=xdm&sektion=1">xdm(1)</a> images for 3.2. |
<li><font color="#e00000"><strong>SECURITY FIX: Incorrect argument checking in the <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=setitimer&sektion=2">setitimer(2)</a> system call may allow an attacker to write to kernel memory.</strong></font><br> |
<li><font color="#e00000"><strong>SECURITY FIX: Incorrect argument checking in the <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=setitimer&sektion=2">setitimer(2)</a> system call may allow an attacker to write to kernel memory.</strong></font><br> |
<a href="errata31.html#kerntime">A source code patch is available</a>.<br> |
<a href="errata31.html#kerntime">A source code patch is available</a>.<br> |
<a href="stable.html"><font color="#00b000">[Applied to stable]</font></a> |
<a href="stable.html"><font color="#00b000">[Applied to stable]</font></a> |
|
|
<li>login_radius returns, complete with fixed license. |
<li>login_radius returns, complete with fixed license. |
<li>Still more cleanup and output trimming in the installer script. |
<li>Still more cleanup and output trimming in the installer script. |
<li><a href="http://www.openbsd.org/cgi-bin/man.cgi?query=xf86cfg&sektion=1">xf86cfg(1)</a> now runs the server with '-nolisten tcp'. |
<li><a href="http://www.openbsd.org/cgi-bin/man.cgi?query=xf86cfg&sektion=1">xf86cfg(1)</a> now runs the server with '-nolisten tcp'. |
<li><a href="http://www.openbsd.org/cgi-bin/man.cgi?query=xdm&sektion=8">xdm(8)</a> now drops privileges to run as user _x11 after starting as root. |
<li><a href="http://www.openbsd.org/cgi-bin/man.cgi?query=xdm&sektion=1">xdm(1)</a> now drops privileges to run as user _x11 after starting as root. |
<!-- ^^^ 20020928 --> |
<!-- ^^^ 20020928 --> |
<li>daddr -> saddr in <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=pf&sektion=4">pf(4)</a> binat code. Oops.<br> |
<li>daddr -> saddr in <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=pf&sektion=4">pf(4)</a> binat code. Oops.<br> |
<a href="stable.html"><font color="#00b000">[Applied to stable]</font></a> |
<a href="stable.html"><font color="#00b000">[Applied to stable]</font></a> |
|
|
<li>Better handling of IPv6 deprecated addresses. |
<li>Better handling of IPv6 deprecated addresses. |
<li>Fix the padding length for an IPv6 PADN option before a jumbo payload option. |
<li>Fix the padding length for an IPv6 PADN option before a jumbo payload option. |
<li>Allow SSL session IDs of any length up to 32, removing the non-standard 16-char minimum imposed before. |
<li>Allow SSL session IDs of any length up to 32, removing the non-standard 16-char minimum imposed before. |
<li>Add a /dev/X0 entry for <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=xdm&sektion=8">xdm(8)</a>, allowing the mouse to work with the upcoming xdm privilege drop. One for the Upgrading Mini-faq. |
<li>Add a /dev/X0 entry for <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=xdm&sektion=1">xdm(1)</a>, allowing the mouse to work with the upcoming xdm privilege drop. One for the Upgrading Mini-faq. |
<li>Properly dump radix tree nodes in <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=netstat&sektion=1">netstat(1)</a>. |
<li>Properly dump radix tree nodes in <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=netstat&sektion=1">netstat(1)</a>. |
<!-- ^^^ 20020923 --> |
<!-- ^^^ 20020923 --> |
<li>Template policy support for <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=systrace&sektion=1">systrace(1)</a>. |
<li>Template policy support for <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=systrace&sektion=1">systrace(1)</a>. |
|
|
<li>Various compatibility fixes and additions to <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=ubsec&sektion=4">ubsec(4)</a>. |
<li>Various compatibility fixes and additions to <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=ubsec&sektion=4">ubsec(4)</a>. |
<li><a href="http://www.openbsd.org/cgi-bin/man.cgi?query=ifconfig&sektion=8">ifconfig(8)</a> can now set whether or not use of IPv6 deprecated addresses are allowed. |
<li><a href="http://www.openbsd.org/cgi-bin/man.cgi?query=ifconfig&sektion=8">ifconfig(8)</a> can now set whether or not use of IPv6 deprecated addresses are allowed. |
<!-- ^^^ 20020904 --> |
<!-- ^^^ 20020904 --> |
<li>_x11 user and group added for <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=xdm&sektion=1">xdm(1</a> to use. |
<li>_x11 user and group added for <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=xdm&sektion=1">xdm(1)</a> to use. |
<li>Pull in XFree86's fix for a serious Xlib security bug (which didn't affect OpenBSD.) |
<li>Pull in XFree86's fix for a serious Xlib security bug (which didn't affect OpenBSD.) |
<li>Fix parsing of NAT port ranges. |
<li>Fix parsing of NAT port ranges. |
<li>Check the interface specified with route-to/dup-to/fastroute actually exists. If it does, null terminate its name before moving on. |
<li>Check the interface specified with route-to/dup-to/fastroute actually exists. If it does, null terminate its name before moving on. |