[BACK]Return to security.html CVS log [TXT][DIR] Up to [local] / www

Diff for /www/security.html between version 1.301 and 1.302

version 1.301, 2004/10/29 17:22:17 version 1.302, 2004/12/14 13:23:42
Line 228 
Line 228 
 <a href=stable.html>patch branch</a>.  <a href=stable.html>patch branch</a>.
   
 <p>  <p>
 There are no security advisories for OpenBSD 3.6 at the moment.  <ul>
   <li><a href="errata.html#pfkey">Dec 14, 2004:
           On systems running isakmpd(8) it is possible for a local
           user to cause kernel memory corruption and system panic by
           setting ipsec(4) credentials on a socket.
   </ul>
   
 <p>  <p>
 <li>  <li>
Line 241 
Line 246 
   
 <p>  <p>
 <ul>  <ul>
   <li><a href="errata35.html#pfkey">Dec 14, 2004:
           On systems running isakmpd(8) it is possible for a local
           user to cause kernel memory corruption and system panic by
           setting ipsec(4) credentials on a socket.
 <li><a href="errata35.html#radius">Sep 20, 2004:  <li><a href="errata35.html#radius">Sep 20, 2004:
         Radius-based authentication is vulnerable to spoofed replies.</a>          Radius-based authentication is vulnerable to spoofed replies.</a>
 <li><a href="errata35.html#xpm">Sep 16, 2004:  <li><a href="errata35.html#xpm">Sep 16, 2004:
Line 294 
Line 303 
 you should update your machine.  you should update your machine.
 <p>  <p>
 <ul>  <ul>
   <li><a href="errata34.html#pfkey">Dec 14, 2004:
           On systems running isakmpd(8) it is possible for a local
           user to cause kernel memory corruption and system panic by
           setting ipsec(4) credentials on a socket.
 <li><a href="errata34.html#xpm">Sep 16, 2004:  <li><a href="errata34.html#xpm">Sep 16, 2004:
         The Xpm library has vulnerabilities when parsing malicious images.</a>          The Xpm library has vulnerabilities when parsing malicious images.</a>
 <li><a href="errata34.html#httpd4"> Sep 10, 2004:  <li><a href="errata34.html#httpd4"> Sep 10, 2004:

Legend:
Removed from v.1.301  
changed lines
  Added in v.1.302