Somewhat belatedly, regen from errata/article.sgml 1.69.2.20.

This commit is contained in:
Bruce A. Mah 2005-05-26 14:56:43 +00:00
parent 3f8471baa5
commit 4230f2b8d3
Notes: svn2git 2020-12-08 03:00:23 +00:00
svn path=/www/; revision=24649

View file

@ -20,7 +20,7 @@ alink="#0000FF">
Documentation Project</p>
<p class="PUBDATE">$FreeBSD: src/release/doc/en_US.ISO8859-1/errata/article.sgml,v
1.69.2.18 2005/05/07 04:22:54 bmah Exp $<br />
1.69.2.20 2005/05/23 03:35:17 bmah Exp $<br />
</p>
<div class="LEGALNOTICE"><a id="TRADEMARKS" name="TRADEMARKS"></a>
@ -87,7 +87,12 @@ target="_top">ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/</a>.</p>
<hr />
<h2 class="SECT1"><a id="SECURITY" name="SECURITY">2 Security Advisories</a></h2>
<p>No advisories.</p>
<p>(22 May 2005) An information disclosure vulnerability has been discovered in
processors using Hyper-Threading Technology (HTT). For more information, as well as a
patch that adds a boot-time tunable variable that disables the use of HTT by default,
consult security advisory <a
href="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:09.htt.asc"
target="_top">FreeBSD-SA-05:09.htt</a>.</p>
</div>
<div class="SECT1">
@ -104,15 +109,15 @@ target="_top">ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/</a>.</p>
<p>(6 May 2005) An error in the default permissions on the <tt
class="FILENAME">/dev/iir</tt> device node, which allowed unprivileged local users to
send commands to the hardware supported by the <a
href="http://www.FreeBSD.org/cgi/man.cgi?query=iir&sektion=4&manpath=FreeBSD+5.3-stable"><span
class="CITEREFENTRY"><span class="REFENTRYTITLE">iir</span>(4)</span></a> driver.
href="http://www.FreeBSD.org/cgi/man.cgi?query=iir&amp;sektion=4&amp;manpath=FreeBSD+5.3-stable">
<span class="CITEREFENTRY"><span class="REFENTRYTITLE">iir</span>(4)</span></a> driver.
Although the error was fixed prior to 5.4-RELEASE, it was applied too late in the release
cycle to be mentioned in the release notes. For more information, see security advisory
<a href="ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:06.iir.asc"
target="_top">FreeBSD-SA-05:06.iir</a>.</p>
<p>(6 May 2005) A bug in the validation of <a
href="http://www.FreeBSD.org/cgi/man.cgi?query=i386_get_ldt&sektion=2&manpath=FreeBSD+5.3-stable">
href="http://www.FreeBSD.org/cgi/man.cgi?query=i386_get_ldt&amp;sektion=2&amp;manpath=FreeBSD+5.3-stable">
<span class="CITEREFENTRY"><span class="REFENTRYTITLE">i386_get_ldt</span>(2)</span></a>
system call input arguments, which may allow kernel memory may be disclosed to the user
process, has been fixed. This bug was fixed prior to 5.4-RELEASE, although not in time to