[BACK]Return to security.html CVS log [TXT][DIR] Up to [local] / www

Diff for /www/security.html between version 1.288 and 1.289

version 1.288, 2004/05/30 19:49:08 version 1.289, 2004/05/30 22:40:51
Line 225 
Line 225 
   
 <p>  <p>
 <ul>  <ul>
   <li><a href=errata.html#kerberos> May 30, 2004:
           kdc(8) performs inadequate checking of request fields, leading
           to the possibility of principal impersonation from other
           Kerberos realms if they are trusted with a cross-realm trust.</a>
 <li><a href=errata.html#xdm> May 26, 2004:  <li><a href=errata.html#xdm> May 26, 2004:
         xdm(1) ignores the requestPort resource and creates a          xdm(1) ignores the requestPort resource and creates a
         listening socket regardless of the setting in xdm-config</a>.          listening socket regardless of the setting in xdm-config</a>.
Line 252 
Line 256 
   
 <p>  <p>
 <ul>  <ul>
   <li><a href=errata34.html#kerberos> May 30, 2004:
           kdc(8) performs inadequate checking of request fields, leading
           to the possibility of principal impersonation from other
           Kerberos realms if they are trusted with a cross-realm trust.</a>
 <li><a href=errata34.html#cvs2> May 20, 2004:  <li><a href=errata34.html#cvs2> May 20, 2004:
         A buffer overflow in the cvs(1) server has been found,          A buffer overflow in the cvs(1) server has been found,
         which can be used by CVS clients to execute arbitrary code on          which can be used by CVS clients to execute arbitrary code on

Legend:
Removed from v.1.288  
changed lines
  Added in v.1.289