371 lines
16 KiB
HTML
371 lines
16 KiB
HTML
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
|
|
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
|
|
<html xmlns="http://www.w3.org/1999/xhtml">
|
|
<head>
|
|
<meta name="generator" content="HTML Tidy, see www.w3.org" />
|
|
<title>FreeBSD 6.1-RELEASE Errata</title>
|
|
<meta name="GENERATOR" content="Modular DocBook HTML Stylesheet Version 1.79" />
|
|
<link rel="STYLESHEET" type="text/css" href="docbook.css" />
|
|
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
|
|
</head>
|
|
<body class="ARTICLE" bgcolor="#FFFFFF" text="#000000" link="#0000FF" vlink="#840084"
|
|
alink="#0000FF">
|
|
<div class="ARTICLE">
|
|
<div class="TITLEPAGE">
|
|
<h1 class="TITLE"><a id="AEN2" name="AEN2">FreeBSD 6.1-RELEASE Errata</a></h1>
|
|
|
|
<h3 class="CORPAUTHOR">The FreeBSD Project</h3>
|
|
|
|
<p class="COPYRIGHT">Copyright © 2000, 2001, 2002, 2003, 2004, 2005, 2006, 2007 The
|
|
FreeBSD Documentation Project</p>
|
|
|
|
<p class="PUBDATE">$FreeBSD: src/release/doc/en_US.ISO8859-1/errata/article.sgml,v
|
|
1.73.2.37 2007/01/11 20:11:49 bmah Exp $<br />
|
|
</p>
|
|
|
|
<div class="LEGALNOTICE"><a id="TRADEMARKS" name="TRADEMARKS"></a>
|
|
<p>FreeBSD is a registered trademark of the FreeBSD Foundation.</p>
|
|
|
|
<p>Intel, Celeron, EtherExpress, i386, i486, Itanium, Pentium, and Xeon are trademarks or
|
|
registered trademarks of Intel Corporation or its subsidiaries in the United States and
|
|
other countries.</p>
|
|
|
|
<p>Sparc, Sparc64, SPARCEngine, and UltraSPARC are trademarks of SPARC International, Inc
|
|
in the United States and other countries. Products bearing SPARC trademarks are based
|
|
upon architecture developed by Sun Microsystems, Inc.</p>
|
|
|
|
<p>Many of the designations used by manufacturers and sellers to distinguish their
|
|
products are claimed as trademarks. Where those designations appear in this document, and
|
|
the FreeBSD Project was aware of the trademark claim, the designations have been followed
|
|
by the “™” or the “®” symbol.</p>
|
|
</div>
|
|
|
|
<hr />
|
|
</div>
|
|
|
|
<blockquote class="ABSTRACT">
|
|
<div class="ABSTRACT"><a id="AEN23" name="AEN23"></a>
|
|
<p>This document lists errata items for FreeBSD 6.1-RELEASE, containing significant
|
|
information discovered after the release or too late in the release cycle to be otherwise
|
|
included in the release documentation. This information includes security advisories, as
|
|
well as news relating to the software or documentation that could affect its operation or
|
|
usability. An up-to-date version of this document should always be consulted before
|
|
installing this version of FreeBSD.</p>
|
|
|
|
<p>This errata document for FreeBSD 6.1-RELEASE will be maintained until the release of
|
|
FreeBSD 6.2-RELEASE.</p>
|
|
</div>
|
|
</blockquote>
|
|
|
|
<div class="SECT1">
|
|
<hr />
|
|
<h2 class="SECT1"><a id="INTRO" name="INTRO">1 Introduction</a></h2>
|
|
|
|
<p>This errata document contains “late-breaking news” about FreeBSD
|
|
6.1-RELEASE. Before installing this version, it is important to consult this document to
|
|
learn about any post-release discoveries or problems that may already have been found and
|
|
fixed.</p>
|
|
|
|
<p>Any version of this errata document actually distributed with the release (for
|
|
example, on a CDROM distribution) will be out of date by definition, but other copies are
|
|
kept updated on the Internet and should be consulted as the “current errata”
|
|
for this release. These other copies of the errata are located at <a
|
|
href="http://www.FreeBSD.org/releases/"
|
|
target="_top">http://www.FreeBSD.org/releases/</a>, plus any sites which keep up-to-date
|
|
mirrors of this location.</p>
|
|
|
|
<p>Source and binary snapshots of FreeBSD 6-STABLE also contain up-to-date copies of this
|
|
document (as of the time of the snapshot).</p>
|
|
|
|
<p>For a list of all FreeBSD CERT security advisories, see <a
|
|
href="http://www.FreeBSD.org/security/"
|
|
target="_top">http://www.FreeBSD.org/security/</a> or <a
|
|
href="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/"
|
|
target="_top">ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/</a>.</p>
|
|
</div>
|
|
|
|
<div class="SECT1">
|
|
<hr />
|
|
<h2 class="SECT1"><a id="LATE-NEWS" name="LATE-NEWS">2 Update Information</a></h2>
|
|
|
|
<p>No news.</p>
|
|
</div>
|
|
|
|
<div class="SECT1">
|
|
<hr />
|
|
<h2 class="SECT1"><a id="SECURITY" name="SECURITY">3 Security Advisories</a></h2>
|
|
|
|
<p>The following security advisories pertain to FreeBSD 6.1-RELEASE. For more
|
|
information, consult the individual advisories available from <a
|
|
href="http://security.FreeBSD.org/" target="_top">http://security.FreeBSD.org/</a>.</p>
|
|
|
|
<div class="INFORMALTABLE"><a id="AEN44" name="AEN44"></a>
|
|
<table border="0" frame="void" class="CALSTABLE">
|
|
<col width="1*" />
|
|
<col width="1*" />
|
|
<col width="3*" />
|
|
<thead>
|
|
<tr>
|
|
<th>Advisory</th>
|
|
<th>Date</th>
|
|
<th>Topic</th>
|
|
</tr>
|
|
</thead>
|
|
|
|
<tbody>
|
|
<tr>
|
|
<td><a href="http://security.FreeBSD.org/advisories/FreeBSD-SA-06:15.ypserv.asc"
|
|
target="_top">SA-06:15.ypserv</a></td>
|
|
<td>31 May 2006</td>
|
|
<td>
|
|
<p>Inoperative access controls in <a
|
|
href="http://www.FreeBSD.org/cgi/man.cgi?query=ypserv&sektion=8&manpath=FreeBSD+6.0-stable">
|
|
<span class="CITEREFENTRY"><span class="REFENTRYTITLE">ypserv</span>(8)</span></a></p>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr>
|
|
<td><a href="http://security.FreeBSD.org/advisories/FreeBSD-SA-06:16.smbfs.asc"
|
|
target="_top">SA-06:16.smbfs</a></td>
|
|
<td>31 May 2006</td>
|
|
<td>
|
|
<p>smbfs chroot escape</p>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr>
|
|
<td><a href="http://security.FreeBSD.org/advisories/FreeBSD-SA-06:17.sendmail.asc"
|
|
target="_top">SA-06:17.sendmail</a></td>
|
|
<td>14 June 2006</td>
|
|
<td>
|
|
<p>Incorrect multipart message handling in Sendmail</p>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr>
|
|
<td><a href="http://security.FreeBSD.org/advisories/FreeBSD-SA-06:18.ppp.asc"
|
|
target="_top">SA-06:18.ppp</a></td>
|
|
<td>23 August 2006</td>
|
|
<td>
|
|
<p>Buffer overflow in <a
|
|
href="http://www.FreeBSD.org/cgi/man.cgi?query=sppp&sektion=4&manpath=FreeBSD+6.0-stable">
|
|
<span class="CITEREFENTRY"><span class="REFENTRYTITLE">sppp</span>(4)</span></a></p>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr>
|
|
<td><a href="http://security.FreeBSD.org/advisories/FreeBSD-SA-06:19.openssl.asc"
|
|
target="_top">SA-06:19.openssl</a></td>
|
|
<td>06 September 2006</td>
|
|
<td>
|
|
<p>Incorrect PKCS#1 v1.5 padding validation in <a
|
|
href="http://www.FreeBSD.org/cgi/man.cgi?query=crypto&sektion=3&manpath=FreeBSD+6.0-stable">
|
|
<span class="CITEREFENTRY"><span class="REFENTRYTITLE">crypto</span>(3)</span></a></p>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr>
|
|
<td><a href="http://security.FreeBSD.org/advisories/FreeBSD-SA-06:20.bind.asc"
|
|
target="_top">SA-06:20.bind</a></td>
|
|
<td>06 September 2006</td>
|
|
<td>
|
|
<p>Denial of Service in <a
|
|
href="http://www.FreeBSD.org/cgi/man.cgi?query=named&sektion=8&manpath=FreeBSD+6.0-stable">
|
|
<span class="CITEREFENTRY"><span class="REFENTRYTITLE">named</span>(8)</span></a></p>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr>
|
|
<td><a href="http://security.FreeBSD.org/advisories/FreeBSD-SA-06:21.gzip.asc"
|
|
target="_top">SA-06:21.gzip</a></td>
|
|
<td>19 September 2006</td>
|
|
<td>
|
|
<p>Multiple vulnerabilities in <a
|
|
href="http://www.FreeBSD.org/cgi/man.cgi?query=gzip&sektion=1&manpath=FreeBSD+6.0-stable">
|
|
<span class="CITEREFENTRY"><span class="REFENTRYTITLE">gzip</span>(1)</span></a></p>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr>
|
|
<td><a href="http://security.FreeBSD.org/advisories/FreeBSD-SA-06:22.openssh.asc"
|
|
target="_top">SA-06:22.openssh</a></td>
|
|
<td>30 September 2006</td>
|
|
<td>
|
|
<p>Multiple vulnerabilities in OpenSSH</p>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr>
|
|
<td><a href="http://security.FreeBSD.org/advisories/FreeBSD-SA-06:23.openssl.asc"
|
|
target="_top">SA-06:23.openssl</a></td>
|
|
<td>28 September 2006</td>
|
|
<td>
|
|
<p>Multiple problems in <a
|
|
href="http://www.FreeBSD.org/cgi/man.cgi?query=crypto&sektion=3&manpath=FreeBSD+6.0-stable">
|
|
<span class="CITEREFENTRY"><span class="REFENTRYTITLE">crypto</span>(3)</span></a></p>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr>
|
|
<td><a href="http://security.FreeBSD.org/advisories/FreeBSD-SA-06:25.kmem.asc"
|
|
target="_top">SA-06:25.kmem</a></td>
|
|
<td>6 December 2006</td>
|
|
<td>
|
|
<p>Kernel memory disclosure in <a
|
|
href="http://www.FreeBSD.org/cgi/man.cgi?query=firewire&sektion=4&manpath=FreeBSD+6.0-stable">
|
|
<span class="CITEREFENTRY"><span class="REFENTRYTITLE">firewire</span>(4)</span></a></p>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr>
|
|
<td><a href="http://security.FreeBSD.org/advisories/FreeBSD-SA-07:01.jail.asc"
|
|
target="_top">SA-07:01.jail</a></td>
|
|
<td>11 January 2007</td>
|
|
<td>
|
|
<p>Jail rc.d script privilege escalation</p>
|
|
</td>
|
|
</tr>
|
|
</tbody>
|
|
</table>
|
|
</div>
|
|
</div>
|
|
|
|
<div class="SECT1">
|
|
<hr />
|
|
<h2 class="SECT1"><a id="KNOWN-PROBLEMS" name="KNOWN-PROBLEMS">4 Known Problems and
|
|
Solutions</a></h2>
|
|
|
|
<p>(2006/05/10) The errata file distributed with FreeBSD 6.1-RELEASE mistakenly contained
|
|
the errata applicable to FreeBSD 6.0-RELEASE.</p>
|
|
|
|
<p>(2006/05/10) The release notes for FreeBSD 6.1-RELEASE gave the wrong name for the KDE
|
|
port in the item documenting the KDE upgrade. The correct name is <a
|
|
href="http://www.FreeBSD.org/cgi/url.cgi?ports/x11/kde3/pkg-descr"><tt
|
|
class="FILENAME">x11/kde3</tt></a>.</p>
|
|
|
|
<p>(2006/05/10) The release notes for FreeBSD 6.1-RELEASE should have mentioned changes
|
|
that enable the second core of dual-core i386 and amd64 CPUs by default when running an
|
|
SMP kernel.</p>
|
|
|
|
<p>(2006/05/13) A change in the <a
|
|
href="http://www.FreeBSD.org/cgi/man.cgi?query=ata&sektion=4&manpath=FreeBSD+6.0-stable"><span
|
|
class="CITEREFENTRY"><span class="REFENTRYTITLE">ata</span>(4)</span></a> driver in
|
|
FreeBSD 6.1-RELEASE modified a software interface visible from userland programs.
|
|
Programs that use the <tt class="LITERAL">IOCATAREQUEST</tt> <a
|
|
href="http://www.FreeBSD.org/cgi/man.cgi?query=ioctl&sektion=2&manpath=FreeBSD+6.0-stable">
|
|
<span class="CITEREFENTRY"><span class="REFENTRYTITLE">ioctl</span>(2)</span></a>
|
|
interface will need to be recompiled. Typically, these programs communicate directly with
|
|
ATA and ATAPI drives, such as CDROM burning or ripping tools, or monitoring utilities.
|
|
One known example is <tt class="FILENAME">smartd</tt> from the <a
|
|
href="http://www.FreeBSD.org/cgi/url.cgi?ports/sysutils/smartmontools/pkg-descr"><tt
|
|
class="FILENAME">sysutils/smartmontools</tt></a> port.</p>
|
|
|
|
<p>(2006/05/27, updated 2006/06/01) On FreeBSD/alpha, <a
|
|
href="http://www.FreeBSD.org/cgi/man.cgi?query=sysinstall&sektion=8&manpath=FreeBSD+6.0-stable">
|
|
<span class="CITEREFENTRY"><span class="REFENTRYTITLE">sysinstall</span>(8)</span></a>
|
|
sometimes does not allow a disk to be labeled. The disk is presented in <a
|
|
href="http://www.FreeBSD.org/cgi/man.cgi?query=sysinstall&sektion=8&manpath=FreeBSD+6.0-stable">
|
|
<span class="CITEREFENTRY"><span class="REFENTRYTITLE">sysinstall</span>(8)</span></a>
|
|
but actions like <span class="GUIMENUITEM">Auto</span> do not result in a disklabel being
|
|
presented. One workaround is to boot the install CD, then select <span
|
|
class="GUIMENUITEM">Fixit</span>. From the <samp class="PROMPT">Fixit#</samp> prompt, run
|
|
<a
|
|
href="http://www.FreeBSD.org/cgi/man.cgi?query=disklabel&sektion=8&manpath=FreeBSD+6.0-stable">
|
|
<span class="CITEREFENTRY"><span class="REFENTRYTITLE">disklabel</span>(8)</span></a>
|
|
manually. For example: <tt class="COMMAND">disklabel -rw da1 auto</tt> ensures a valid
|
|
disklabel is written onto <tt class="DEVICENAME">da1</tt>. Reboot from the install media.
|
|
<a
|
|
href="http://www.FreeBSD.org/cgi/man.cgi?query=sysinstall&sektion=8&manpath=FreeBSD+6.0-stable">
|
|
<span class="CITEREFENTRY"><span class="REFENTRYTITLE">sysinstall</span>(8)</span></a>
|
|
will now detect a valid disklabel on the disk and allow it to be partitioned to your
|
|
preference.</p>
|
|
|
|
<p>(2006/05/27) FreeBSD 6.1-RELEASE includes a change to some definitions in <tt
|
|
class="FILENAME">src/sys/net/if_media.h</tt> (revision 1.30.2.1). This could break
|
|
source-level compatibility with externally-maintained 10Gb Ethernet network drivers
|
|
written for FreeBSD 6.0-RELEASE. This change should have been documented in the release
|
|
notes.</p>
|
|
|
|
<p>(2006/06/01, updated 2006/07/07) A bug in the <tt class="FILENAME">rc.d/jail</tt>
|
|
startup script could cause various problems for users attempting to configure <a
|
|
href="http://www.FreeBSD.org/cgi/man.cgi?query=jail&sektion=2&manpath=FreeBSD+6.0-stable">
|
|
<span class="CITEREFENTRY"><span class="REFENTRYTITLE">jail</span>(2)</span></a>
|
|
environments at system startup time. A fix has been committed to HEAD, RELENG_6, and
|
|
RELENG_6_1. More details can be found in errata notice <a
|
|
href="ftp://ftp.FreeBSD.org/pub/FreeBSD/ERRATA/notices/FreeBSD-EN-06:01.jail.asc"
|
|
target="_top">FreeBSD-EN-06:01.jail</a>.</p>
|
|
|
|
<p>(2006/06/01, updated 2006/08/30) Deadlocks have been observed (and can be reproduced)
|
|
in some cases where snapshots and quotas are both being used on a file system. This
|
|
problem has been fixed on the HEAD and RELENG_6 branches.</p>
|
|
|
|
<p>(2006/06/01, updated 2006/08/28) A bug in the Neighbor Discovery Protocol (NDP)
|
|
implementation causes spurious error messages for point-to-point IPv6 links on FreeBSD
|
|
6.1-RELEASE. This behavior is a regression from FreeBSD 6.0-RELEASE. A solution for this
|
|
problem has been committed to HEAD, RELENG_6, and RELENG_6_1. Further details can be
|
|
found in errata notice <a
|
|
href="ftp://ftp.FreeBSD.org/pub/FreeBSD/ERRATA/notices/FreeBSD-EN-06:02.net.asc"
|
|
target="_top">FreeBSD-EN-06:02.net</a>.</p>
|
|
|
|
<p>(2006/06/01, updated 2006/11/22) Problems have been observed when trying to load
|
|
packages from multiple CDROMs inside the <a
|
|
href="http://www.FreeBSD.org/cgi/man.cgi?query=sysinstall&sektion=8&manpath=FreeBSD+6.0-stable">
|
|
<span class="CITEREFENTRY"><span class="REFENTRYTITLE">sysinstall</span>(8)</span></a>
|
|
environment. Specifically, the disk-switching functionality in <a
|
|
href="http://www.FreeBSD.org/cgi/man.cgi?query=sysinstall&sektion=8&manpath=FreeBSD+6.0-stable">
|
|
<span class="CITEREFENTRY"><span class="REFENTRYTITLE">sysinstall</span>(8)</span></a>
|
|
seems to become confused about the contents of a disk that has just been requested. This
|
|
situation has been seen primarily when installing the base system without Xorg (which
|
|
lives on the first CDROM of a multi-disk set), and then later using <a
|
|
href="http://www.FreeBSD.org/cgi/man.cgi?query=sysinstall&sektion=8&manpath=FreeBSD+6.0-stable">
|
|
<span class="CITEREFENTRY"><span class="REFENTRYTITLE">sysinstall</span>(8)</span></a> to
|
|
load some packages (such as the GNOME or KDE desktop environments) from a subsequent
|
|
CDROM that depend on Xorg. As a workaround during a new install, one should try to
|
|
install Xorg along with the base system, or at least before any other packages that
|
|
depend on it. This problem has been corrected on HEAD and RELENG_6.</p>
|
|
|
|
<p>(2006/06/01, updated 2006/08/28) An error in the statistics-keeping logic in the UMA
|
|
kernel memory allocator has led to the number of <tt class="LITERAL">requests for mbufs
|
|
denied</tt> (as reported by <tt class="COMMAND">netstat -m</tt>) to increase erroneously.
|
|
A fix for this problem has been committed to HEAD, RELENG_6, and RELENG_6_1. More
|
|
information is contained in errata notice <a
|
|
href="ftp://ftp.FreeBSD.org/pub/FreeBSD/ERRATA/notices/FreeBSD-EN-06:02.net.asc"
|
|
target="_top">FreeBSD-EN-06:02.net</a>.</p>
|
|
|
|
<p>(2006/06/01, update 2006/10/07) A longstanding bug in the i386 bootloader can cause
|
|
root file system corruption when the <a
|
|
href="http://www.FreeBSD.org/cgi/man.cgi?query=nextboot&sektion=8&manpath=FreeBSD+6.0-stable">
|
|
<span class="CITEREFENTRY"><span class="REFENTRYTITLE">nextboot</span>(8)</span></a>
|
|
utility is used and the <tt class="FILENAME">/boot/nextboot.conf</tt> configuration file
|
|
happens to be located after cylinder 1023 on the boot disk. A bugfix has been committed
|
|
to HEAD and has been merged to RELENG_6.</p>
|
|
|
|
<p>(2006/06/16, updated 2006/10/07) A locking-related bug has been observed to cause
|
|
noticeable slowdowns in NFS server performance. A fix has been committed to HEAD and
|
|
RELENG_6.</p>
|
|
|
|
<p>(2006/08/28) A local kernel panic in the network stack could be caused by not checking
|
|
the validity of a pointer before use. This problem has been fixed on HEAD, RELENG_6, and
|
|
RELENG_6_1, as described in <a
|
|
href="ftp://ftp.FreeBSD.org/pub/FreeBSD/ERRATA/notices/FreeBSD-EN-06:02.net.asc"
|
|
target="_top">FreeBSD-EN-06:02.net</a>.</p>
|
|
</div>
|
|
</div>
|
|
|
|
<hr />
|
|
<p align="center"><small>This file, and other release-related documents, can be
|
|
downloaded from <a
|
|
href="http://www.FreeBSD.org/snapshots/">http://www.FreeBSD.org/snapshots/</a>.</small></p>
|
|
|
|
<p align="center"><small>For questions about FreeBSD, read the <a
|
|
href="http://www.FreeBSD.org/docs.html">documentation</a> before contacting <<a
|
|
href="mailto:questions@FreeBSD.org">questions@FreeBSD.org</a>>.</small></p>
|
|
|
|
<p align="center"><small>All users of FreeBSD 6-STABLE should subscribe to the <<a
|
|
href="mailto:stable@FreeBSD.org">stable@FreeBSD.org</a>> mailing list.</small></p>
|
|
|
|
<p align="center"><small>For questions about this documentation, e-mail <<a
|
|
href="mailto:doc@FreeBSD.org">doc@FreeBSD.org</a>>.</small></p>
|
|
</body>
|
|
</html>
|
|
|