swh:1:snp:2ca5d6eff8f04a671c0d5b13646cede522c64b7d

sort by:
Revision Author Date Message Commit Date
98d5e3a Correct a bug in the handling of backslash characters in smbfs which can allow an attacker to escape from a chroot(2). Approved by: so (cperciva) Security: FreeBSD-SA-06:16.smbfs 31 May 2006, 22:35:32 UTC
9c00db0 MFC: Correct a local information leakage bug affecting AMD FPUs. Security: FreeBSD-SA-06:14.fpu Approved by: so (cperciva) 19 April 2006, 07:03:14 UTC
939e54e Add missing code needed for the detection of IPSec packet replays. [1] Correctly identify the user running opiepasswd(1) when the login name differs from the account name. [2] Modify timeout handling logic in sendmail(8) to correct a reported signal handling race condition. [3] Approved by: so (cperciva) Security: FreeBSD-SA-06:11.ipsec [1] Security: FreeBSD-SA-06:12.opie [2] Security: FreeBSD-SA-06:13.sendmail [3] 22 March 2006, 16:03:25 UTC
701a843 Correct a remote kernel panic when processing zero-length RPC records via TCP. Security: FreeBSD-SA-06:10.nfs Approved by: so (cperciva) 01 March 2006, 14:23:07 UTC
f120375 Correct insecure temporary file usage in texindex. [06:01] Correct insecure temporary file usage in ee. [06:02] Correct a race condition when setting file permissions, sanitize file names by default, and fix a buffer overflow when handling files larger than 4GB in cpio. [06:03] Security: FreeBSD-SA-06:01.texindex Security: FreeBSD-SA-06:02.ee Security: FreeBSD-SA-06:03.cpio Approved by: so (cperciva) 11 January 2006, 08:08:08 UTC
4a61a39 Correct a man-in-the-middle SSL version rollback vulnerability. Security: FreeBSD-SA-05:21.openssl Approved by: so@ (cperciva) 11 October 2005, 11:51:45 UTC
5937bdb Fix two more temporary file usage bogons which were apparently fixed but not MFCed to RELENG_4_10 earlier. Approved by: so (cperciva) Security: FreeBSD-SA-05:20.cvsbug 09 September 2005, 19:24:22 UTC
e2542ef MFC: Correct insecure temporary file usage. Security: FreeBSD-SA-05:20.cvsbug Approved by: so (cperciva) 07 September 2005, 13:44:36 UTC
3b4fa93 Correct bzip2 denial of service and permission race vulnerabilities. Obtained from: Redhat, Steve Grubb via RedHat Security: CAN-2005-0953, CAN-2005-1260 Security: FreeBSD-SA-05:14.bzip2 Approved by: obrien Correct TCP connection stall denial-of-service vulnerabilities. MFC: rev 1.270 of tcp_input.c, rev 1.25 of tcp_seq.h by ps: When a TCP packets containing a timestamp is received, inadequate checking of sequence numbers is performed, allowing an attacker to artificially increase the internal "recent" timestamp for a connection. A TCP packets with the SYN flag set is accepted for established connections, allowing an attacker to overwrite certain TCP options. Security: CAN-2005-0356, CAN-2005-2068 Security: FreeBSD-SA-05:15.tcp Approved by: so (cperciva) 29 June 2005, 21:46:15 UTC
286fa4d Correct directory traversal and race condition vulnerabilities in gzip. Security: FreeBSD-SA-05:11.gzip Security: CAN-2005-0988, CAN-2005-1228 Obtained from: Steve Grubb via RedHat, Debian Approved by: so (nectar) 08 June 2005, 21:31:16 UTC
3561194 Add a knob for disabling/enabling HTT, "machdep.hyperthreading_allowed". Default off due to information disclosure on multi-user systems. Submitted by: cperciva Reviewed by: jhb Approved by: security-officer 13 May 2005, 00:08:30 UTC
61e8aee MFC: Fix two issues which were missed in FreeBSD-SA-05:08.kmem. Reported by: Uwe Doering Approved by: so (cperciva) 08 May 2005, 10:35:56 UTC
a54b7d9 If we are going to 1. Copy a NULL-terminated string into a fixed-length buffer, and 2. copyout that buffer to userland, we really ought to 0. Zero the entire buffer first. Security: FreeBSD-SA-05:08.kmem Approved by: so (cperciva) 06 May 2005, 02:50:35 UTC
ccf99f1 Correctly validate inputs to the i386_get_ldt syscall. Security: FreeBSD-SA-05:07.ldt Approved by: so (cperciva) 06 May 2005, 02:40:32 UTC
d28faa6 Correct improper permissions on /dev/iir. The earlier permissions of 0644 allowed for people to do Evil Things via ioctl(2). Security: FreeBSD-SA-05:06.iir Approved by: so (cperciva) 06 May 2005, 02:34:01 UTC
afa08bc MFC: Correct multiple security related errors: a buffer overflow, NULL pointer dereferences, possible use of uninitialized variables, and memory leaks. Security: CAN-2005-0753 Security: FreeBSD-SA-05:05.cvs Approved by: so (cperciva) 22 April 2005, 18:17:22 UTC
34ca2ff Zero the ifr.ifr_name buffer in ifconf() in order to avoid accidental disclosure of kernel memory to userland. Security: FreeBSD-SA-05:04.ifconf Approved by: so (cperciva) 15 April 2005, 01:53:14 UTC
f08af52 MFC revision 1.103. Security: FreeBSD-SA-05:02.sendfile Approved by: so (nectar) 04 April 2005, 23:54:33 UTC
56d8ad9 MFC src/contrib/telnet/telnet.c 1.16: Correct buffer overflows in telnet(1). Security: CAN-2005-0468, CAN-2005-0469 Approved by: security-officer 28 March 2005, 15:58:28 UTC
5e47205 FreeBSD-SA-04:17.procfs: MFC (in the spirit of) revision 1.54 of src/sys/fs/procfs/procfs_status.c Approved by: so (nectar) 01 December 2004, 21:35:57 UTC
283fe36 FreeBSD-SA-04:16.fetch: MFC revision 1.75 of src/usr.bin/fetch/fetch.c Bump newvers.sh and document in UPDATING. Approved by: so 18 November 2004, 12:06:51 UTC
531bd29 Correct several vulnerabilities in CVS 1.11.5 (CAN-2004-0414, CAN-2004-0416, CAN-2004-0417, CAN-2004-0418, CAN-2004-0778 and others). Approved by: so 19 September 2004, 22:28:14 UTC
a461140 FreeBSD-SA-04:13.linux: MFC revision 1.116 of sys/compat/linux/linux_ioctl.c Bump newvers.sh and document in UPDATING. Approved by: so (des) 30 June 2004, 17:34:38 UTC
5b4fc2e Add note about p1 and what it fixes. Caught by: kuriyama Approved by: so (implicit) 26 June 2004, 04:39:46 UTC
88b7a89 MFS of fix to twe(4) driver. Fixes problem seen on 6xxx series controllers where driver repeatedly submits the same request if the cmd queue gets full. This will be handled as an Errata Notice. Commits being MFS-ed: sys/dev/twe/twe.c 1.1.2.10 sys/dev/twe/twe_freebsd.c 1.2.2.9 sys/dev/te/twevar.h 1.1.2.8 Submitted by: ps, vkashyap Reviewed by: re Approved by: so 26 June 2004, 02:22:24 UTC
033f468 This commit was manufactured by cvs2svn to create branch 'RELENG_4_10'. 16 June 2004, 09:47:28 UTC
e87d542 MFS of rev 1.73.2.91, note 4.10-RELEASE date. Approved by: re (implicit) 27 May 2004, 06:21:52 UTC
1fe2e8e Fix version number when referring to the current FreeBSD release. Approved by: re (scottl) 25 May 2004, 15:47:50 UTC
ad05e06 Trim the package list down some due to overflow problems. Approved by: re 25 May 2004, 15:20:10 UTC
f6cc8f2 Add errata for the 4.10 release Approved by: re 25 May 2004, 14:20:51 UTC
544bc71 Update __FreeBSD_version for 4.10. Note that it is 491000. Approved by: re 25 May 2004, 05:33:40 UTC
df8933c Update for 4.10-RELEASE Approved by: re 25 May 2004, 05:30:47 UTC
eca3028 Update for 4.10 Approved by: re 25 May 2004, 05:29:02 UTC
5b1a2e5 Update for 4.10 Approved by: re 25 May 2004, 05:27:16 UTC
4cd2515 MFS of Rev. 1.187.2.29, adding sysctl "vm.old_msync" to allow users to choose the old msync(... MS_INVALIDATE) heuristics if needed. Approved by: re (scottl) 22 May 2004, 23:09:19 UTC
325b823 Bump &release.current;. Approved by: re (implicitly) 22 May 2004, 00:23:31 UTC
9403b33 Add a link to the errata document for convenience. Approved by: re (implicitly) 22 May 2004, 00:22:41 UTC
3eb01fa Merge from RELENG_4: * Remove a long obsolete paragraph from the BUGS section. * Bump the date. Requested by: alc Approved by: re@ (scottl) 21 May 2004, 02:19:21 UTC
2ddeb7c Merge updated patch from vendor branch (1.1.1.17) Approved by: re 20 May 2004, 13:17:42 UTC
5e2eaf9 MFC: rev 1.124. Fix "thundering herd" problem in accept. Approved by: re (scottl) 19 May 2004, 19:40:17 UTC
b870938 MFC: Add support for new chip Id's. Submitted by: gibbs Approved by: re (kensmith) 19 May 2004, 18:25:46 UTC
3eeda6f Merge parser fix from vendor branch (rev 1.1.1.16) Approved by: re 19 May 2004, 06:16:53 UTC
4d9a2fb MFS: Wait 1 second after loading modules to let slow devices probe. Approved by: re (implicit) 16 May 2004, 04:21:59 UTC
0f14be6 MFS of rev 1.187.2.27: Change vm_map_clean(... MS_INVALIDATE) to not delete dirty pages. Approved by: re (bmah) 14 May 2004, 23:06:25 UTC
ed1aaba MFS of rev 1.65.2.15: Implement IO_INVAL in the vnode op for writing by marking the buffer as "no cache". Approved by: re (bmah) 14 May 2004, 23:05:23 UTC
b2d7640 MFS of rev 1.64.2.4: Change ffs_realloccg() to set the valid bits for the extended part of the fragment to zero the valid parts of a VM_IO buffer. Approved by: re (bmah) 14 May 2004, 23:03:50 UTC
900bfa1 MFC: Belatedly catch up to XFree86 4.3 layout Approved by: re@ 13 May 2004, 09:41:17 UTC
3bcf2a2 MFC: Use better way of hiding FR for sppp without fr support. We should hide it since we do not have fr support in FreeBSD's sppp, but we have it in Cronyx's sppp. Requested by: Dmitry Morozovsky <marck at rinet dot ru> Tested by: rik, Dmitry Morozovsky <marck at rinet dot ru> Approved by: re 12 May 2004, 17:19:15 UTC
6d84755 Remove reference to hints file since we don't have it in RELENG_4 Correct information about kernel configuration for these devices. Pointy hat: rik Pointed by: Dmitry Morozovsky <marck at rinet dot ru> Approved by: re 12 May 2004, 17:13:32 UTC
eae63d1 1. Fixed potential problem that would cause out-of-order requests in twe_startio. 2. Fixed possible race condition in twe_start. 3. Changed version. Submitted by: scottl Reviewed by: vkashyap Approved by: re 12 May 2004, 03:37:43 UTC
80e4966 MFS rev. 1.8.2.5: Fix BSS buffer overflow in makeargv(). Approved by: re (kensmith) 12 May 2004, 03:30:00 UTC
43ca188 MFS rev. 1.13.2.13: Fix two buffer overflows caused by off-by-one errors: avoid writing a null character 1 byte past the end of cmdline[] when libedit is being used for input, and avoid writing a null pointer 1 element past the end of margv[]. Approved by: re (kensmith) 12 May 2004, 03:14:00 UTC
9c797f5 MFS rev. 1.3.2.1: Fix a BSS buffer overflow caused by makeargv() writing past the end of margv[] when an input line contains 20 or more space-separated words. Approved by: re (kensmith) 12 May 2004, 03:05:19 UTC
83e4075 MFC: SA-04:08, SA-04:09. Approved by: re (implicitly) 09 May 2004, 22:45:54 UTC
9f2e144 MFRELENG_4: Add 4.10 entry so that pkg_add -r fetches from the right package set. main.c 1.29.2.21->1.29.2.22 PR: 66251 Submitted by: eik Approved by: re 08 May 2004, 23:59:16 UTC
56a99ef Regen. Approved by: re 06 May 2004, 18:16:38 UTC
5689f17 MFS: Zire 31 support Approved by: re (kensmith) 06 May 2004, 18:14:50 UTC
3308596 MFS umass.c 1.11.2.31: Add support 2 devices(USB-DVD-R drives) - Logitec LDR-H443SU2 - IO-DATA DVR-UEH8 Approved by: re(kensmith) 06 May 2004, 13:16:06 UTC
10fc620 Merge from RELENG_4: Atomically load and clear the bge status block. Approved by: re (scottl) 06 May 2004, 01:55:21 UTC
35edeff Correct a heap buffer overflow in k5admind(8) when built with Kerberos IV support. Obtained from: Heimdal CVS Approved by: re 05 May 2004, 20:48:57 UTC
3c7a51a Merge from 4-STABLE 1.1.1.2.2.4 config.c, 1.1.1.2.2.5 kdc.8, 1.1.1.2.2.4 kdc_locl.h, 1.1.1.2.2.5 kerberos5.c, 1.1.1.3.2.5 krb5-protos.h, 1.1.1.3.2.3 rd_req.c, 1.1.1.3.2.3 transited.c: Correctly validate the transited field in Kerberos tickets. Approved by: re 05 May 2004, 20:48:19 UTC
0ebdcb2 MFS of rev. 1.187.2.26 Approved by: re (scottl) 05 May 2004, 19:38:28 UTC
161ee3e MFS: Add URLS_ABSOLUTE=YES into the doc.1 target. Approved by: re (implicitly) 05 May 2004, 13:14:19 UTC
2d2d2a2 MFS revision 1.8.2.2: Dereferencing NULL pointers considered harmful. Approved by: re (kensmith) 04 May 2004, 13:34:30 UTC
9cc9c6b MF-RELENG_4 of rev 1.1.2.36. Adjustments to package sets for upcoming release. Approved by: re (scottl) 03 May 2004, 01:28:12 UTC
7ee4cee Add information about new DISC?_LABEL and DISC?_NAME variables. Caught by: ru Approved by: re (scottl in principle) 30 April 2004, 13:32:18 UTC
6521ed7 Merge Warner's commit that added FreeBSD copyright notice. Permission from: imp Approved by: re (implicit) 30 April 2004, 12:50:48 UTC
b17f6b7 MFS: mmap(2) security fix, and random ephemeral port allocation. Update release note: KDE 3.2.2. Approved by: re (implicitly) 30 April 2004, 11:58:51 UTC
a59b023 MF-RELENG_4 of rev 1.536.2.113. Adding ability to tweak CD labels using Makefile. Approved by: re (scottl) 30 April 2004, 04:21:00 UTC
52601be Merging Alan Cox's fixes to mmap(2) into the 4.10 release. RELENG_4 commit versions being merged: Revision Changes Path 1.35.2.10 +2 -2 src/sys/alpha/alpha/pmap.c 1.250.2.25 +3 -2 src/sys/i386/i386/pmap.c 1.33.2.6 +2 -2 src/sys/vm/pmap.h 1.187.2.25 +3 -2 src/sys/vm/vm_map.c Approved by: re (scottl) 30 April 2004, 03:05:36 UTC
668c0eb MFC 1.143-1.146: Randomize ephemeral source ports. Approved by: re 24 April 2004, 23:03:14 UTC
9fdf921 Update various entities for 4.10-RELEASE. Approved by: re (implicitly) 24 April 2004, 16:41:20 UTC
d3aded7 This commit was manufactured by cvs2svn to create branch 'RELENG_4_10'. 24 April 2004, 13:56:22 UTC
5f44c36 Update copyright and version number for 4.10-RC. Approved by: re (implicitly) 24 April 2004, 13:37:53 UTC
15df630 MFS tcp_usrreq.c 1.51.2.22: Don't skip the splx() call in *_usr_bind() and *_usr_connect() if the socket address length check fails. Submitted by: pjd Approved by: re (kensmith) 24 April 2004, 04:52:38 UTC
cf2611e Update copyright date. Approved by: re (bmah) 22 April 2004, 21:16:17 UTC
b8f0dc5 We are at 4.10-RC now. Approved by: re (implicit) 21 April 2004, 12:48:08 UTC
99f9b2d This commit was manufactured by cvs2svn to create branch 'RELENG_4_10'. 21 April 2004, 11:08:56 UTC
f540ac9 This commit was manufactured by cvs2svn to create branch 'RELENG_4_10'. 07 April 2004, 12:36:51 UTC
8f96791 This commit was manufactured by cvs2svn to create branch 'RELENG_4_10'. 22 March 2004, 23:59:56 UTC
d567b5a This commit was manufactured by cvs2svn to create branch 'RELENG_4_10'. 07 January 2003, 04:28:56 UTC
ef866fc This branch has changed this year too. 07 January 2003, 04:28:55 UTC
a0e5bbd oops, can't commit packet tag changes yet 07 January 2003, 01:35:07 UTC
65bdf4f MFC: fix memory allocation problems and enable public key support Sponsored by: Vernier Networks 07 January 2003, 00:59:09 UTC
54ae913 MFC: Remove redundant documentation. PR: 46253 Submitted by: Jeroen Ruigrok van der Werven <asmodai@wxs.nl> 06 January 2003, 23:33:59 UTC
2493171 MFC: Correct order of alignment in EXAMPLES. PR: 42760 Submitted by: Christian Brueffer <chris@unixpages.org> 06 January 2003, 23:32:22 UTC
e7b75ba MFC lexing and parsing fixes, revamped #if state machine, plus agreement between documentation and exit codes (which I failed to mention in the commit message for rev 1.12 of unifdef.c). 06 January 2003, 22:52:00 UTC
b3c72ed Update release documentation copyright dates. 06 January 2003, 22:09:00 UTC
a147353 MFC: Major update to the refuse files. PR: 44164 Submitted by: Sergei Kolobov <sergei@kolobov.com> 06 January 2003, 21:59:12 UTC
12ae243 MFC Add the ida(4) manual page now that its been reviewed by jlemon. 06 January 2003, 21:34:50 UTC
eceb809 MFC: revision 1.60 06 January 2003, 17:10:45 UTC
f5b3a4b MFC: rev 1.64, allow vinum partitions to overlap. Required by now to enable a hack that allows for a vinum root FS. 06 January 2003, 13:50:44 UTC
02f5661 MFC: GC 'char sigmap[]' (it is no longer used) 06 January 2003, 11:28:54 UTC
810d448 MFC: fcntl64 fixes 06 January 2003, 09:19:43 UTC
c012567 MFC: - Add fwcrom to conf/files. - Fix panic in device attach. 06 January 2003, 06:03:03 UTC
0c25d66 MFC: Sync with -current: o Add 'flipr' o Fix 'searchheaders' o Manpage cleanup o Misc. source cleanups 06 January 2003, 05:46:04 UTC
6b69e95 This commit was manufactured by cvs2svn to create branch 'RELENG_4'. 06 January 2003, 04:51:21 UTC
45a25ef Sync with current: MFC revisions 1.2 and 1.3. Submitted by: marius@alchemy.franken.de 05 January 2003, 19:59:39 UTC
076a1e6 Sync with current. That is to say MFC versions 1.3 and 1.4 to fix compiler warnings and grab the ppi(4) headers from the correct place. Submitted by: marius@alchemy.franken.de 05 January 2003, 19:45:29 UTC
8d4f308 Belated MFC of the belated entry for the amdpm(4). 05 January 2003, 19:22:34 UTC
back to top