aboutsummaryrefslogtreecommitdiff
path: root/UPDATING
diff options
context:
space:
mode:
authorSimon L. B. Nielsen <simon@FreeBSD.org>2009-01-13 21:19:27 +0000
committerSimon L. B. Nielsen <simon@FreeBSD.org>2009-01-13 21:19:27 +0000
commit8dab95485b6418eab464682d6ee0b91d2b3f11a3 (patch)
tree50235f609c51a54840e71b096ddfb834b5d943fc /UPDATING
parentc1371bc72e952b0e094cd5dd0dae7ff069f73b07 (diff)
downloadsrc-8dab95485b6418eab464682d6ee0b91d2b3f11a3.tar.gz
src-8dab95485b6418eab464682d6ee0b91d2b3f11a3.zip
Correct ntpd(8) cryptographic signature bypass [SA-09:04].
Correct BIND DNSSEC incorrect checks for malformed signatures [SA-09:04]. Security: FreeBSD-SA-09:03.ntpd Security: FreeBSD-SA-09:04.bind Obtained from: ISC [SA-09:04] Approved by: so (simon)
Notes
Notes: svn path=/releng/6.4/; revision=187194
Diffstat (limited to 'UPDATING')
-rw-r--r--UPDATING6
1 files changed, 6 insertions, 0 deletions
diff --git a/UPDATING b/UPDATING
index 7f71eac65c23..d26d2a49f97f 100644
--- a/UPDATING
+++ b/UPDATING
@@ -8,6 +8,12 @@ Items affecting the ports and packages system can be found in
/usr/ports/UPDATING. Please read that file before running
portupgrade.
+20090113: p9 FreeBSD-SA-09:03.ntpd, FreeBSD-SA-09:04.bind
+ Correct ntpd cryptographic signature bypass. [09:03]
+
+ Correct BIND DNSSEC incorrect checks for malformed
+ signatures. [09:04]
+
20090107: p2 FreeBSD-SA-09:01.lukemftpd, FreeBSD-SA-09:02.openssl
Prevent cross-site forgery attacks on lukemftpd(8) due to splitting
long commands into multiple requests. [09:01]