From b79b44a90fdd9f28bf0606c38f2c92dfedeaa5cf Mon Sep 17 00:00:00 2001 From: "Bruce A. Mah" Date: Thu, 20 Mar 2003 18:57:30 +0000 Subject: [PATCH] New release/errata notes: SA-03:05. --- release/doc/en_US.ISO8859-1/errata/article.sgml | 6 ++++++ release/doc/en_US.ISO8859-1/relnotes/article.sgml | 6 ++++++ release/doc/en_US.ISO8859-1/relnotes/common/new.sgml | 6 ++++++ 3 files changed, 18 insertions(+) diff --git a/release/doc/en_US.ISO8859-1/errata/article.sgml b/release/doc/en_US.ISO8859-1/errata/article.sgml index 8145e5188188..3e5d48b5b71e 100644 --- a/release/doc/en_US.ISO8859-1/errata/article.sgml +++ b/release/doc/en_US.ISO8859-1/errata/article.sgml @@ -141,6 +141,12 @@ to patches, can be found in security advisory FreeBSD-SA-03:04. + The XDR encoder/decoder does incorrect bounds-checking, + which could allow a remote attacker to cause a + denial-of-service. For bugfix information, see security + advisory FreeBSD-SA-03:05. + diff --git a/release/doc/en_US.ISO8859-1/relnotes/article.sgml b/release/doc/en_US.ISO8859-1/relnotes/article.sgml index db8f85ce07a8..7b023041c8a5 100644 --- a/release/doc/en_US.ISO8859-1/relnotes/article.sgml +++ b/release/doc/en_US.ISO8859-1/relnotes/article.sgml @@ -124,6 +124,12 @@ url="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-03:04.sendmail.asc">FreeBSD-SA-03:04. &merged; + A bounds-checking bug in the XDR implementation, which could + allow a remote attacker to cause a denial-of-service, has been + fixed. For more details see security advisory FreeBSD-SA-03:05. + &merged; + diff --git a/release/doc/en_US.ISO8859-1/relnotes/common/new.sgml b/release/doc/en_US.ISO8859-1/relnotes/common/new.sgml index db8f85ce07a8..7b023041c8a5 100644 --- a/release/doc/en_US.ISO8859-1/relnotes/common/new.sgml +++ b/release/doc/en_US.ISO8859-1/relnotes/common/new.sgml @@ -124,6 +124,12 @@ url="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-03:04.sendmail.asc">FreeBSD-SA-03:04. &merged; + A bounds-checking bug in the XDR implementation, which could + allow a remote attacker to cause a denial-of-service, has been + fixed. For more details see security advisory FreeBSD-SA-03:05. + &merged; +