===================================================================
RCS file: /cvsrepo/anoncvs/cvs/www/security.html,v
retrieving revision 1.58
retrieving revision 1.59
diff -u -r1.58 -r1.59
--- www/security.html 1998/05/05 18:44:41 1.58
+++ www/security.html 1998/05/05 19:00:48 1.59
@@ -115,10 +115,10 @@
in OpenBSD current.
@@ -130,22 +130,29 @@
OpenBSD 2.2; they may or may not work on OpenBSD 2.1).
-- Incorrect handling of IPSEC packets if IPSEC is
- enabled (patch included).
-
- Buffer overflow in xterm and Xaw
-(CERT advisory VB-98.04) (patch included).
-
- Intel P5 f00f lockup (patch included).
-
- Sourcerouted Packet Acceptance.
+
- Dec 10, 1997: Intel P5 f00f lockup
+ (patch included).
+
- Feb 9, 1998: MIPS ld.so flaw (patch included).
+
- Feb 13, 1998: Setuid coredump & Ruserok()
+ flaw (patch included).
+
- Feb 19, 1998: Sourcerouted Packet
+ Acceptance.
A patch is available here.
-
- Setuid coredump & Ruserok() flaw (patch included).
-
- Read-write mmap() flaw.
+
- Feb 26, 1998: Read-write mmap() flaw.
Revision 3 of the patch is available here
-
- MIPS ld.so flaw (patch included).
-
- Accidental NFS filesystem export (patch included).
-
- Overflow in named fake-iquery (patch included).
-
- Overflow in ping -R (patch included).
-
- Buffer overflow in uucpd (patch included).
-
- Buffer mismanagement in lprm (patch included).
+
- Mar 2, 1998: Accidental NFS filesystem
+ export (patch included).
+
- Mar 30, 1998: Overflow in named fake-iquery
+ (patch included).
+
- Mar 31, 1998: Overflow in ping -R (patch included).
+
- Apr 22, 1998: Buffer overflow in uucpd
+ (patch included).
+
- Apr 22, 1998: Buffer mismanagement in lprm
+ (patch included).
+
- May 1, 1998: Buffer overflow in xterm
+ and Xaw (CERT advisory VB-98.04) (patch included).
+
- May 5, 1998: Incorrect handling of IPSEC
+ packets if IPSEC is enabled (patch included).
@@ -161,9 +168,10 @@
make it hard for us to provide patches).
@@ -221,7 +229,7 @@
www@openbsd.org
-$OpenBSD: security.html,v 1.58 1998/05/05 18:44:41 deraadt Exp $
+$OpenBSD: security.html,v 1.59 1998/05/05 19:00:48 deraadt Exp $