diff --git a/en/releases/4.7R/errata.html b/en/releases/4.7R/errata.html index 1dc01df927..b3bc2a7f8f 100644 --- a/en/releases/4.7R/errata.html +++ b/en/releases/4.7R/errata.html @@ -1,35 +1,36 @@ - - + + - + FreeBSD 4.7-RELEASE Errata - - + + - +
-

FreeBSD 4.7-RELEASE - Errata

+

FreeBSD + 4.7-RELEASE Errata

The FreeBSD Project

- +

$FreeBSD: src/release/doc/en_US.ISO8859-1/errata/article.sgml,v - 1.1.2.89 2002/11/14 18:13:13 bmah Exp $
+ 1.1.2.93 2003/01/10 17:07:05 bmah Exp $

-
+
- +

This document lists errata items for FreeBSD 4.7-RELEASE, containing significant information @@ -46,9 +47,10 @@

-
+
-

1 Introduction

+

1 + Introduction

This errata document contains ``late-breaking news'' about FreeBSD 4.7-RELEASE. Before installing this version, @@ -61,55 +63,56 @@ will be out of date by definition, but other copies are kept updated on the Internet and should be consulted as the ``current errata'' for this release. These other copies of - the errata are located at http://www.FreeBSD.org/releases/, plus any sites - which keep up-to-date mirrors of this location.

+ the errata are located at http://www.FreeBSD.org/releases/, plus + any sites which keep up-to-date mirrors of this + location.

Source and binary snapshots of FreeBSD 4-STABLE also contain up-to-date copies of this document (as of the time of the snapshot).

For a list of all FreeBSD CERT security advisories, see - http://www.FreeBSD.org/security/ or ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/.

+ http://www.FreeBSD.org/security/ or ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/.

-
+
-

2 Security +

2 Security Advisories

Buffer overflows in kadmind(8) and k5admin could potentially cause the administrative server to execute arbitrary code. Bugfix and workaround information can be - found in security advisory FreeBSD-SA-02:40.

-

Errors in - smrsh(8), which could - allow users to circumvent restrictions on what programs can - be executed, were fixed in FreeBSD 4.7-RELEASE. Because the - applicable security (Errors in + smrsh(8), which + could allow users to circumvent restrictions on what + programs can be executed, were fixed in FreeBSD + 4.7-RELEASE. Because the applicable security advisory (FreeBSD-SA-02:41) was not issued after the release, this fact was not included in the release notes.

-

Buffer overflows in the DNS - resolver(3), which could - cause some applications to fail, have been corrected. This - change was not mentioned in the release notes, as the - applicable security advisory (Buffer overflows in the DNS + resolver(3), which + could cause some applications to fail, have been corrected. + This change was not mentioned in the release notes, as the + applicable security advisory (FreeBSD-SA-02:42) was not issued until after the release.

@@ -117,88 +120,118 @@ class="APPLICATION">BIND included with FreeBSD 4.7-RELEASE. More information, including bugfixes and workaround suggestions, can be found in security advisory - FreeBSD-SA-02:43.

+ +

A file descriptor leak in the + fpathconf(2) system + call, can allow a local user to crash the system or cause a + privilege escalation. Bugfix information can be found in + security advisory FreeBSD-SA-02:44.

-
+
-

3 Late-Breaking - News

+

3 + Late-Breaking News

-

Due to licensing issues uncovered late in FreeBSD - 4.7-RELEASE's release cycle, the - matcd(4) driver was - removed.

+

Due to concerns over the licensing terms for the + matcd(4) driver + uncovered late in FreeBSD 4.7-RELEASE's release cycle, the + + matcd(4) driver was + removed. These issues are being addressed and this driver + may reappear in a future release of FreeBSD.

The srelease distribution - contains object files for - sysinstall(8) in the release/sysinstall directory. These - files were generated during the release building process - but, for some reason, were not removed from the + contains object files for + sysinstall(8) in + the release/sysinstall directory. + These files were generated during the release building + process but, for some reason, were not removed from the distribution files. They are harmless.

-

The - databases/rdfdb and +

The + databases/rdfdb and mail/ssmtp packages included in the 4.7-RELEASE package set cannot be installed correctly. A workaround is to build and install these programs using the Ports Collection.

-

The +

The net/gnomeicu package included in the 4.7-RELEASE package set may not run correctly, due - to a missing dependency on the + to a missing dependency on the net/gnet package. To work - around this problem, install + around this problem, install net/gnet either from a package or the Ports Collection, preferably before - installing + installing net/gnomeicu.

The release notes for FreeBSD 4.7-RELEASE incorrectly stated that the -J option to - xargs(1) is deprecated. - In fact, there are no plans to remove this option.

+ href="http://www.FreeBSD.org/cgi/man.cgi?query=xargs&sektion=1&manpath=FreeBSD+4.6-stable"> + xargs(1) is + deprecated. In fact, there are no plans to remove this + option.

+ +

+ ftpd(8) has a bug + in its virtual hosting function triggered if /etc/ftphosts defines a virtual host + whose IP address can resolve back to a hostname. In that + case the daemon will be exiting on SIGSEGV (signal 11) if started from + inetd(8), or may + malfunction unpredictably if running stand-alone. This bug + has been fixed in FreeBSD 4.7-STABLE.

-
+

This file, and other release-related - documents, can be downloaded from http://snapshots.jp.FreeBSD.org/.

+ documents, can be downloaded from http://snapshots.jp.FreeBSD.org/.

For questions about FreeBSD, read the documentation - before contacting <questions@FreeBSD.org>.

+ before contacting <questions@FreeBSD.org>.

All users of FreeBSD 4-STABLE - should subscribe to the <stable@FreeBSD.org> mailing - list.

+ should subscribe to the <stable@FreeBSD.org> + mailing list.

For questions about this documentation, - e-mail <doc@FreeBSD.org>.

-
-
+ e-mail <doc@FreeBSD.org>.

+
+