397 lines
15 KiB
HTML
397 lines
15 KiB
HTML
<?xml version="1.0" encoding="iso-8859-1"?>
|
|
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
|
|
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
|
|
<html xmlns="http://www.w3.org/1999/xhtml">
|
|
<head>
|
|
<meta name="generator" content="HTML Tidy, see www.w3.org" />
|
|
<title>FreeBSD 5.4-RELEASE Errata</title>
|
|
<meta name="GENERATOR" content="Modular DocBook HTML Stylesheet Version 1.79" />
|
|
<link rel="STYLESHEET" type="text/css" href="docbook.css" />
|
|
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
|
|
</head>
|
|
<body class="ARTICLE" bgcolor="#FFFFFF" text="#000000" link="#0000FF" vlink="#840084"
|
|
alink="#0000FF">
|
|
<div class="ARTICLE">
|
|
<div class="TITLEPAGE">
|
|
<h1 class="TITLE"><a id="AEN2" name="AEN2">FreeBSD 5.4-RELEASE Errata</a></h1>
|
|
|
|
<h3 class="CORPAUTHOR">The FreeBSD Project</h3>
|
|
|
|
<p class="COPYRIGHT">Copyright © 2000, 2001, 2002, 2003, 2004, 2005, 2006 The
|
|
FreeBSD Documentation Project</p>
|
|
|
|
<p class="PUBDATE">$FreeBSD: src/release/doc/en_US.ISO8859-1/errata/article.sgml,v
|
|
1.69.2.32 2006/02/05 20:45:04 bmah Exp $<br />
|
|
</p>
|
|
|
|
<div class="LEGALNOTICE"><a id="TRADEMARKS" name="TRADEMARKS"></a>
|
|
<p>FreeBSD is a registered trademark of the FreeBSD Foundation.</p>
|
|
|
|
<p>Intel, Celeron, EtherExpress, i386, i486, Itanium, Pentium, and Xeon are trademarks or
|
|
registered trademarks of Intel Corporation or its subsidiaries in the United States and
|
|
other countries.</p>
|
|
|
|
<p>Sparc, Sparc64, SPARCEngine, and UltraSPARC are trademarks of SPARC International, Inc
|
|
in the United States and other countries. Products bearing SPARC trademarks are based
|
|
upon architecture developed by Sun Microsystems, Inc.</p>
|
|
|
|
<p>Many of the designations used by manufacturers and sellers to distinguish their
|
|
products are claimed as trademarks. Where those designations appear in this document, and
|
|
the FreeBSD Project was aware of the trademark claim, the designations have been followed
|
|
by the ``™'' or the ``®'' symbol.</p>
|
|
</div>
|
|
|
|
<hr />
|
|
</div>
|
|
|
|
<blockquote class="ABSTRACT">
|
|
<div class="ABSTRACT"><a id="AEN22" name="AEN22"></a>
|
|
<p>This document lists errata items for FreeBSD 5.4-RELEASE, containing significant
|
|
information discovered after the release or too late in the release cycle to be otherwise
|
|
included in the release documentation. This information includes security advisories, as
|
|
well as news relating to the software or documentation that could affect its operation or
|
|
usability. An up-to-date version of this document should always be consulted before
|
|
installing this version of FreeBSD.</p>
|
|
|
|
<p>This errata document for FreeBSD 5.4-RELEASE will be maintained until the release of
|
|
FreeBSD 5.5-RELEASE.</p>
|
|
</div>
|
|
</blockquote>
|
|
|
|
<div class="SECT1">
|
|
<hr />
|
|
<h2 class="SECT1"><a id="INTRO" name="INTRO">1 Introduction</a></h2>
|
|
|
|
<p>This errata document contains ``late-breaking news'' about FreeBSD 5.4-RELEASE. Before
|
|
installing this version, it is important to consult this document to learn about any
|
|
post-release discoveries or problems that may already have been found and fixed.</p>
|
|
|
|
<p>Any version of this errata document actually distributed with the release (for
|
|
example, on a CDROM distribution) will be out of date by definition, but other copies are
|
|
kept updated on the Internet and should be consulted as the ``current errata'' for this
|
|
release. These other copies of the errata are located at <a
|
|
href="http://www.FreeBSD.org/releases/"
|
|
target="_top">http://www.FreeBSD.org/releases/</a>, plus any sites which keep up-to-date
|
|
mirrors of this location.</p>
|
|
|
|
<p>Source and binary snapshots of FreeBSD 5-STABLE also contain up-to-date copies of this
|
|
document (as of the time of the snapshot).</p>
|
|
|
|
<p>For a list of all FreeBSD CERT security advisories, see <a
|
|
href="http://www.FreeBSD.org/security/"
|
|
target="_top">http://www.FreeBSD.org/security/</a> or <a
|
|
href="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/"
|
|
target="_top">ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/</a>.</p>
|
|
</div>
|
|
|
|
<div class="SECT1">
|
|
<hr />
|
|
<h2 class="SECT1"><a id="SECURITY" name="SECURITY">2 Security Advisories</a></h2>
|
|
|
|
<p>The following security advisories pertain to FreeBSD 5.4-RELEASE. For more
|
|
information, consult the individual advisories available from <a
|
|
href="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/"
|
|
target="_top">ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/</a>.</p>
|
|
|
|
<div class="INFORMALTABLE"><a id="AEN40" name="AEN40"></a>
|
|
<table border="0" frame="void" class="CALSTABLE">
|
|
<col width="1*" />
|
|
<col width="1*" />
|
|
<col width="3*" />
|
|
<thead>
|
|
<tr>
|
|
<th>Advisory</th>
|
|
<th>Date</th>
|
|
<th>Topic</th>
|
|
</tr>
|
|
</thead>
|
|
|
|
<tbody>
|
|
<tr>
|
|
<td><a href="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-06:07.pf.asc"
|
|
target="_top">06:07.pf</a></td>
|
|
<td>25 January 2006</td>
|
|
<td>
|
|
<p>IP fragment handling panic in <a
|
|
href="http://www.FreeBSD.org/cgi/man.cgi?query=pf&sektion=4&manpath=FreeBSD+5.3-stable">
|
|
<span class="CITEREFENTRY"><span class="REFENTRYTITLE">pf</span>(4)</span></a></p>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr>
|
|
<td><a href="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-06:03.cpio.asc"
|
|
target="_top">06:03.cpio</a></td>
|
|
<td>11 January 2006</td>
|
|
<td>
|
|
<p>Multiple vulnerabilities in <a
|
|
href="http://www.FreeBSD.org/cgi/man.cgi?query=cpio&sektion=1&manpath=FreeBSD+5.3-stable">
|
|
<span class="CITEREFENTRY"><span class="REFENTRYTITLE">cpio</span>(1)</span></a></p>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr>
|
|
<td><a href="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-06:02.ee.asc"
|
|
target="_top">06:02.eex</a></td>
|
|
<td>11 January 2006</td>
|
|
<td>
|
|
<p><a
|
|
href="http://www.FreeBSD.org/cgi/man.cgi?query=ee&sektion=1&manpath=FreeBSD+5.3-stable">
|
|
<span class="CITEREFENTRY"><span class="REFENTRYTITLE">ee</span>(1)</span></a> temporary
|
|
file privilege escalation</p>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr>
|
|
<td><a
|
|
href="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-06:01.texindex.asc"
|
|
target="_top">06:01.texindex</a></td>
|
|
<td>11 January 2006</td>
|
|
<td>
|
|
<p>Texindex temporary file privilege escalation</p>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr>
|
|
<td><a href="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:09.htt.asc"
|
|
target="_top">SA-05:09.htt</a></td>
|
|
<td>22 May 2005</td>
|
|
<td>
|
|
<p>information disclosure when using HTT</p>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr>
|
|
<td><a
|
|
href="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:10.tcpdump.asc"
|
|
target="_top">SA-05:10.tcpdump</a></td>
|
|
<td>9 Jun 2005</td>
|
|
<td>
|
|
<p>Infinite loops in tcpdump protocol decoding</p>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr>
|
|
<td><a href="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:11.gzip.asc"
|
|
target="_top">SA-05:11.gzip</a></td>
|
|
<td>9 Jun 2005</td>
|
|
<td>
|
|
<p>gzip directory traversal and permission race vulnerabilities</p>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr>
|
|
<td><a href="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:13.ipfw.asc"
|
|
target="_top">SA-05:13.ipfw</a></td>
|
|
<td>29 Jun 2005</td>
|
|
<td>
|
|
<p>ipfw packet matching errors with address tables</p>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr>
|
|
<td><a
|
|
href="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:14.bzip2.asc"
|
|
target="_top">SA-05:14.bzip2</a></td>
|
|
<td>29 Jun 2005</td>
|
|
<td>
|
|
<p>bzip2 denial of service and permission race vulnerabilities</p>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr>
|
|
<td><a href="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:15.tcp.asc"
|
|
target="_top">SA-05:15.tcp</a></td>
|
|
<td>29 Jun 2005</td>
|
|
<td>
|
|
<p>TCP connection stall denial of service</p>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr>
|
|
<td><a href="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:16.zlib.asc"
|
|
target="_top">SA-05:16.zlib</a></td>
|
|
<td>6 Jul 2005</td>
|
|
<td>
|
|
<p>Buffer overflow in zlib</p>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr>
|
|
<td><a
|
|
href="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:17.devfs.asc"
|
|
target="_top">SA-05:17.devfs</a></td>
|
|
<td>20 Jul 2005</td>
|
|
<td>
|
|
<p>devfs ruleset bypass</p>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr>
|
|
<td><a href="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:18.zlib.asc"
|
|
target="_top">SA-05:18.zlib</a></td>
|
|
<td>27 Jul 2005</td>
|
|
<td>
|
|
<p>Buffer overflow in zlib</p>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr>
|
|
<td><a
|
|
href="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:19.ipsec.asc"
|
|
target="_top">SA-05:19.ipsec</a></td>
|
|
<td>27 Jul 2005</td>
|
|
<td>
|
|
<p>IPsec incorrect key usage in AES-XCBC-MAC</p>
|
|
</td>
|
|
</tr>
|
|
</tbody>
|
|
</table>
|
|
</div>
|
|
</div>
|
|
|
|
<div class="SECT1">
|
|
<hr />
|
|
<h2 class="SECT1"><a id="OPEN-ISSUES" name="OPEN-ISSUES">3 Open Issues</a></h2>
|
|
|
|
<p>No issues.</p>
|
|
</div>
|
|
|
|
<div class="SECT1">
|
|
<hr />
|
|
<h2 class="SECT1"><a id="LATE-NEWS" name="LATE-NEWS">4 Late-Breaking News</a></h2>
|
|
|
|
<p>(6 May 2005) An error in the default permissions on the <tt
|
|
class="FILENAME">/dev/iir</tt> device node, which allowed unprivileged local users to
|
|
send commands to the hardware supported by the <a
|
|
href="http://www.FreeBSD.org/cgi/man.cgi?query=iir&sektion=4&manpath=FreeBSD+5.3-stable">
|
|
<span class="CITEREFENTRY"><span class="REFENTRYTITLE">iir</span>(4)</span></a> driver.
|
|
Although the error was fixed prior to 5.4-RELEASE, it was applied too late in the release
|
|
cycle to be mentioned in the release notes. For more information, see security advisory
|
|
<a href="ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:06.iir.asc"
|
|
target="_top">FreeBSD-SA-05:06.iir</a>.</p>
|
|
|
|
<p>(6 May 2005) A bug in the validation of <a
|
|
href="http://www.FreeBSD.org/cgi/man.cgi?query=i386_get_ldt&sektion=2&manpath=FreeBSD+5.3-stable">
|
|
<span class="CITEREFENTRY"><span class="REFENTRYTITLE">i386_get_ldt</span>(2)</span></a>
|
|
system call input arguments, which may allow kernel memory may be disclosed to the user
|
|
process, has been fixed. This bug was fixed prior to 5.4-RELEASE, although not in time to
|
|
be mentioned in the release notes. For more information, see security advisory <a
|
|
href="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:07.ldt.asc"
|
|
target="_top">FreeBSD-SA-05:07.ldt</a>.</p>
|
|
|
|
<p>(6 May 2005) Several information disclosure vulnerabilities in various parts of the
|
|
kernel have been fixed in 5.4-RELEASE, although too late to be mentioned in the release
|
|
notes. For more information, see security advisory <a
|
|
href="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:08.kmem.asc"
|
|
target="_top">FreeBSD-SA-05:08.kmem</a>.</p>
|
|
|
|
<p>(24 Jun 2005) The FreeBSD/sparc64 5.4-RELEASE should have stated that the
|
|
FreeBSD/sparc64 GENERIC kernel prior to the upcoming 6.0-RELEASE officially only supports
|
|
serial consoles. This is especially true for the FreeBSD/sparc64 5.4-RELEASE GENERIC
|
|
kernel because the ofw_console(4) driver which also provides limited indirect support for
|
|
graphical consoles has been replaced with the <a
|
|
href="http://www.FreeBSD.org/cgi/man.cgi?query=uart&sektion=4&manpath=FreeBSD+5.3-stable">
|
|
<span class="CITEREFENTRY"><span class="REFENTRYTITLE">uart</span>(4)</span></a> driver
|
|
in favor better serial support.</p>
|
|
|
|
<p>Due to this limitation to serial consoles the screen will stop working after the
|
|
message ``<samp class="COMPUTEROUTPUT">jumping to kernel entry at...</samp>'' is
|
|
displayed when trying to use the FreeBSD/sparc64 5.4-RELEASE GENERIC kernel with a
|
|
graphical console, while FreeBSD itself continues working actually.</p>
|
|
|
|
<p>If you want to use FreeBSD/sparc64 with a graphical console anyway you can do one of
|
|
the following:</p>
|
|
|
|
<ul>
|
|
<li>
|
|
<p>In case your machine is equipped with a Sun Creator, Sun Creator3D, or Sun Elite3D
|
|
frame buffer card and a Sun RS232 keyboard you can install FreeBSD/sparc64 5.4-RELEASE
|
|
with a serial console and afterwards compile a custom kernel with the following
|
|
additional options:</p>
|
|
|
|
<pre class="PROGRAMLISTING">
|
|
device sc
|
|
device creator
|
|
options KBD_INSTALL_CDEV
|
|
</pre>
|
|
|
|
<p>Additionally you have to enable the <tt class="FILENAME">tty[1-7]</tt> entries in <tt
|
|
class="FILENAME">/etc/ttys</tt> like so:</p>
|
|
|
|
<pre class="PROGRAMLISTING">
|
|
ttyv0 "/usr/libexec/getty Pc" cons25 on secure
|
|
# Virtual terminals
|
|
ttyv1 "/usr/libexec/getty Pc" cons25 on secure
|
|
ttyv2 "/usr/libexec/getty Pc" cons25 on secure
|
|
ttyv3 "/usr/libexec/getty Pc" cons25 on secure
|
|
ttyv4 "/usr/libexec/getty Pc" cons25 on secure
|
|
ttyv5 "/usr/libexec/getty Pc" cons25 on secure
|
|
ttyv6 "/usr/libexec/getty Pc" cons25 on secure
|
|
ttyv7 "/usr/libexec/getty Pc" cons25 on secure
|
|
</pre>
|
|
|
|
<p>This will yield native support for these keyboards and frame buffers including VTY
|
|
switching and X Window System. Note that this really requires at least FreeBSD/sparc64
|
|
5.4-RELEASE otherwise it will not work on most of the UltraSPARC models.</p>
|
|
</li>
|
|
|
|
<li>
|
|
<p>In case your machine is equipped with a ATI Mach64 frame buffer (found on-board in
|
|
e.g. Sun Blade 100/150 and Sun Ultra 5/10 as well as on Sun PGX8 and Sun PGX64 add-on
|
|
cards) or a PS/2 or a USB keyboard update to a FreeBSD/sparc64 6.0 from June 10 2005 or
|
|
later. If you use the stock GENERIC kernel and <tt class="FILENAME">/etc/ttys</tt> from
|
|
there no further action is required.</p>
|
|
|
|
<p>This will yield native support for these keyboards and frame buffers including VTY
|
|
switching and X Window System.</p>
|
|
</li>
|
|
|
|
<li>
|
|
<p>In case your machine is equipped with hardware other than those mentioned above or you
|
|
refuse to update to FreeBSD/sparc64 6.0 you can re-enable the ofw_console(4) driver as a
|
|
last resort. To do so build a custom kernel with the following additional options:</p>
|
|
|
|
<pre class="PROGRAMLISTING">
|
|
device ofw_console
|
|
device sab
|
|
device zs
|
|
</pre>
|
|
|
|
<p>and make sure to comment out the following kernel option:</p>
|
|
|
|
<pre class="PROGRAMLISTING">
|
|
device uart
|
|
</pre>
|
|
|
|
<p>This will yield limited indirect support for any graphical console hardware, however
|
|
with poor performance, and VTY switching as well as X Window System do not work with
|
|
this. Note that ofw_console(4) is not really MPSAFE and therefore can result in panics
|
|
under certain conditions.</p>
|
|
</li>
|
|
</ul>
|
|
|
|
<p>For more details of how to recompile your kernel or update to FreeBSD 6.0, see <a
|
|
href="http://www.FreeBSD.org/doc/en_US.ISO8859-1/books/handbook/kernelconfig.html"
|
|
target="_top">Configuring the FreeBSD Kernel</a> and <a
|
|
href="http://www.freebsd.org/doc/en_US.ISO8859-1/books/handbook/cutting-edge.html"
|
|
target="_top">The Cutting Edge</a> sections in the FreeBSD Handbook, respectively.</p>
|
|
</div>
|
|
</div>
|
|
|
|
<hr />
|
|
<p align="center"><small>This file, and other release-related documents, can be
|
|
downloaded from <a
|
|
href="http://www.FreeBSD.org/snapshots/">http://www.FreeBSD.org/snapshots/</a>.</small></p>
|
|
|
|
<p align="center"><small>For questions about FreeBSD, read the <a
|
|
href="http://www.FreeBSD.org/docs.html">documentation</a> before contacting <<a
|
|
href="mailto:questions@FreeBSD.org">questions@FreeBSD.org</a>>.</small></p>
|
|
|
|
<p align="center"><small>All users of FreeBSD 5-STABLE should subscribe to the <<a
|
|
href="mailto:stable@FreeBSD.org">stable@FreeBSD.org</a>> mailing list.</small></p>
|
|
|
|
<p align="center"><small>For questions about this documentation, e-mail <<a
|
|
href="mailto:doc@FreeBSD.org">doc@FreeBSD.org</a>>.</small></p>
|
|
</body>
|
|
</html>
|
|
|