===================================================================
RCS file: /cvsrepo/anoncvs/cvs/www/plus32.html,v
retrieving revision 1.7
retrieving revision 1.8
diff -c -r1.7 -r1.8
*** www/plus32.html 2003/03/30 20:23:35 1.7
--- www/plus32.html 2003/08/07 00:25:00 1.8
***************
*** 56,62 ****
Release branch created.
! Cool new xdm(8) images for 3.2.
SECURITY FIX: Incorrect argument checking in the setitimer(2) system call may allow an attacker to write to kernel memory.
A source code patch is available.
[Applied to stable]
--- 56,62 ----
Release branch created.
! Cool new xdm(1) images for 3.2.
SECURITY FIX: Incorrect argument checking in the setitimer(2) system call may allow an attacker to write to kernel memory.
A source code patch is available.
[Applied to stable]
***************
*** 72,78 ****
login_radius returns, complete with fixed license.
Still more cleanup and output trimming in the installer script.
xf86cfg(1) now runs the server with '-nolisten tcp'.
! xdm(8) now drops privileges to run as user _x11 after starting as root.
daddr -> saddr in pf(4) binat code. Oops.
[Applied to stable]
--- 72,78 ----
login_radius returns, complete with fixed license.
Still more cleanup and output trimming in the installer script.
xf86cfg(1) now runs the server with '-nolisten tcp'.
! xdm(1) now drops privileges to run as user _x11 after starting as root.
daddr -> saddr in pf(4) binat code. Oops.
[Applied to stable]
***************
*** 93,99 ****
Better handling of IPv6 deprecated addresses.
Fix the padding length for an IPv6 PADN option before a jumbo payload option.
Allow SSL session IDs of any length up to 32, removing the non-standard 16-char minimum imposed before.
! Add a /dev/X0 entry for xdm(8), allowing the mouse to work with the upcoming xdm privilege drop. One for the Upgrading Mini-faq.
Properly dump radix tree nodes in netstat(1).
Template policy support for systrace(1).
--- 93,99 ----
Better handling of IPv6 deprecated addresses.
Fix the padding length for an IPv6 PADN option before a jumbo payload option.
Allow SSL session IDs of any length up to 32, removing the non-standard 16-char minimum imposed before.
! Add a /dev/X0 entry for xdm(1), allowing the mouse to work with the upcoming xdm privilege drop. One for the Upgrading Mini-faq.
Properly dump radix tree nodes in netstat(1).
Template policy support for systrace(1).
***************
*** 192,198 ****
Various compatibility fixes and additions to ubsec(4).
ifconfig(8) can now set whether or not use of IPv6 deprecated addresses are allowed.
! _x11 user and group added for xdm(1 to use.
Pull in XFree86's fix for a serious Xlib security bug (which didn't affect OpenBSD.)
Fix parsing of NAT port ranges.
Check the interface specified with route-to/dup-to/fastroute actually exists. If it does, null terminate its name before moving on.
--- 192,198 ----
Various compatibility fixes and additions to ubsec(4).
ifconfig(8) can now set whether or not use of IPv6 deprecated addresses are allowed.
! _x11 user and group added for xdm(1) to use.
Pull in XFree86's fix for a serious Xlib security bug (which didn't affect OpenBSD.)
Fix parsing of NAT port ranges.
Check the interface specified with route-to/dup-to/fastroute actually exists. If it does, null terminate its name before moving on.
***************
*** 1076,1082 ****
www@openbsd.org
!
$OpenBSD: plus32.html,v 1.7 2003/03/30 20:23:35 deraadt Exp $