head 1.2;
access;
symbols
RELENG_9_1_0_RELEASE:1.1.4.4
RELENG_8:1.1.0.6
RELENG_9_1:1.1.0.4
RELENG_9:1.1.0.2;
locks; strict;
comment @# @;
1.2
date 2012.11.17.01.50.13; author svnexp; state Exp;
branches;
next 1.1;
1.1
date 2012.10.01.11.26.49; author gabor; state Exp;
branches
1.1.2.1
1.1.4.1
1.1.6.1;
next ;
1.1.2.1
date 2012.10.02.06.37.46; author gabor; state dead;
branches;
next 1.1.2.2;
1.1.2.2
date 2012.10.02.06.37.46; author gabor; state Exp;
branches;
next 1.1.2.3;
1.1.2.3
date 2012.11.17.11.36.29; author svnexp; state Exp;
branches;
next 1.1.2.4;
1.1.2.4
date 2012.12.18.06.57.20; author svnexp; state Exp;
branches;
next 1.1.2.5;
1.1.2.5
date 2012.12.25.06.11.18; author svnexp; state Exp;
branches;
next ;
1.1.4.1
date 2012.10.11.15.49.42; author gabor; state dead;
branches;
next 1.1.4.2;
1.1.4.2
date 2012.10.11.15.49.42; author gabor; state Exp;
branches;
next 1.1.4.3;
1.1.4.3
date 2012.11.17.08.47.19; author svnexp; state Exp;
branches;
next 1.1.4.4;
1.1.4.4
date 2012.11.30.16.19.18; author svnexp; state dead;
branches;
next ;
1.1.6.1
date 2012.10.19.03.01.25; author gjb; state dead;
branches;
next 1.1.6.2;
1.1.6.2
date 2012.10.19.03.01.25; author gjb; state Exp;
branches;
next 1.1.6.3;
1.1.6.3
date 2012.11.17.10.36.13; author svnexp; state Exp;
branches;
next ;
desc
@@
1.2
log
@Switching exporter and resync
@
text
@
%entities;
%release;
]]>
]]>
]]>
]>
&os; &release; Errata
The &os; Project
$FreeBSD: head/release/doc/en_US.ISO8859-1/errata/article.xml 241096 2012-10-01 11:26:49Z gabor $
2000
2001
2002
2003
2004
2005
The &os; Documentation Project
&tm-attrib.freebsd;
&tm-attrib.intel;
&tm-attrib.sparc;
&tm-attrib.general;
This document lists errata items for &os;
containing significant information discovered after the release
or too late in the release cycle to be otherwise included in the
release documentation.
This information includes security advisories, as well as news
relating to the software or documentation that could affect its
operation or usability. An up-to-date version of this document
should always be consulted before installing this version of
&os;.
This errata document for &os;
will be maintained until the release of &os; &release.next;.
Introduction
This errata document contains late-breaking news
about &os;
Before installing this version, it is important to consult this
document to learn about any post-release discoveries or problems
that may already have been found and fixed.
Any version of this errata document actually distributed
with the release (for example, on a CDROM distribution) will be
out of date by definition, but other copies are kept updated on
the Internet and should be consulted as the current
errata
for this release. These other copies of the
errata are located at , plus any sites
which keep up-to-date mirrors of this location.
Source and binary snapshots of &os; &release.branch; also
contain up-to-date copies of this document (as of the time of
the snapshot).
For a list of all &os; CERT security advisories, see or .
Security Advisories
No advisories.
]]>
No advisories.
]]>
No advisories.
]]>
Open Issues
No open issues.
]]>
No open issues.
]]>
No open issues.
]]>
Late-Breaking News
No news.
]]>
No news.
]]>
No news.
]]>
@
1.1
log
@SVN rev 241096 on 2012-10-01 11:26:49Z by gabor
- Rename .sgml files to .xml to track the recent doc changes
MFC after: 1 day
@
text
@d40 1
a40 1
$FreeBSD$
@
1.1.6.1
log
@file article.xml was added on branch RELENG_8 on 2012-10-19 03:02:13 +0000
@
text
@d1 180
@
1.1.6.2
log
@SVN rev 241718 on 2012-10-19 03:01:25Z by gjb
- Rename .sgml files to .xml to track the recent doc changes.
- Fix Makefiles and entities where necessary to get build to
complete without errors.
*** NOTE: This is _NOT_ an MFC, but direct commit to stable/8. ***
Hat: doceng
@
text
@a0 179
%entities;
%release;
]]>
]]>
]]>
]>
&os; &release; Errata
The &os; Project
$FreeBSD$
2011
The &os; Documentation Project
&tm-attrib.freebsd;
&tm-attrib.intel;
&tm-attrib.sparc;
&tm-attrib.general;
This document lists errata items for &os;
containing significant information discovered after the release
or too late in the release cycle to be otherwise included in the
release documentation.
This information includes security advisories, as well as news
relating to the software or documentation that could affect its
operation or usability. An up-to-date version of this document
should always be consulted before installing this version of
&os;.
This errata document for &os;
will be maintained until the release of &os; &release.next;.
Introduction
This errata document contains late-breaking news
about &os;
Before installing this version, it is important to consult this
document to learn about any post-release discoveries or problems
that may already have been found and fixed.
Any version of this errata document actually distributed
with the release (for example, on a CDROM distribution) will be
out of date by definition, but other copies are kept updated on
the Internet and should be consulted as the current
errata
for this release. These other copies of the
errata are located at , plus any sites
which keep up-to-date mirrors of this location.
Source and binary snapshots of &os; &release.branch; also
contain up-to-date copies of this document (as of the time of
the snapshot).
For a list of all &os; CERT security advisories, see or .
Security Advisories
No advisory.
Open Issues
No open issue.
Late-Breaking News and Corrections
A bug in OpenSSL that could cause
it to parse past the end of the message was found at the late
stage of &release.bugfix; release process. The &release.bugfix;
includes a fix for this issue by importing relevant parts from
the OpenSSL CVS. This could be triggered by an incorrectly
formatted ClientHello SSL/TLS handshake messages. The details
can be found at .
@
1.1.6.3
log
@## SVN ##
## SVN ## Exported commit - http://svnweb.freebsd.org/changeset/base/ 242909
## SVN ## CVS IS DEPRECATED: http://wiki.freebsd.org/CvsIsDeprecated
## SVN ##
## SVN ## ------------------------------------------------------------------------
## SVN ## r242909 | dim | 2012-11-12 07:47:19 +0000 (Mon, 12 Nov 2012) | 20 lines
## SVN ##
## SVN ## MFC r242625:
## SVN ##
## SVN ## Remove duplicate const specifiers in many drivers (I hope I got all of
## SVN ## them, please let me know if not). Most of these are of the form:
## SVN ##
## SVN ## static const struct bzzt_type {
## SVN ## [...list of members...]
## SVN ## } const bzzt_devs[] = {
## SVN ## [...list of initializers...]
## SVN ## };
## SVN ##
## SVN ## The second const is unnecessary, as arrays cannot be modified anyway,
## SVN ## and if the elements are const, the whole thing is const automatically
## SVN ## (e.g. it is placed in .rodata).
## SVN ##
## SVN ## I have verified this does not change the binary output of a full kernel
## SVN ## build (except for build timestamps embedded in the object files).
## SVN ##
## SVN ## Reviewed by: yongari, marius
## SVN ##
## SVN ## ------------------------------------------------------------------------
## SVN ##
@
text
@d41 1
a41 1
$FreeBSD: stable/8/release/doc/en_US.ISO8859-1/errata/article.xml 241718 2012-10-19 03:01:25Z gjb $
@
1.1.4.1
log
@file article.xml was added on branch RELENG_9_1 on 2012-10-11 22:24:09 +0000
@
text
@d1 180
@
1.1.4.2
log
@SVN rev 241445 on 2012-10-11 15:49:42Z by gabor
MFC r241096:
- Rename files to track the XML migration in the doc tree and make the
release notes build again
Approved by: re (hrs)
@
text
@a0 339
%entities;
%release;
]]>
]]>
]]>
]>
&os; &release; Errata
The &os; Project
$FreeBSD$
2012
The &os; Documentation Project
&tm-attrib.freebsd;
&tm-attrib.intel;
&tm-attrib.sparc;
&tm-attrib.general;
This document lists errata items for &os;
containing significant information discovered after the release
or too late in the release cycle to be otherwise included in the
release documentation.
This information includes security advisories, as well as news
relating to the software or documentation that could affect its
operation or usability. An up-to-date version of this document
should always be consulted before installing this version of
&os;.
This errata document for &os;
will be maintained until the release of &os; &release.next;.
Introduction
This errata document contains late-breaking news
about &os;
Before installing this version, it is important to consult this
document to learn about any post-release discoveries or problems
that may already have been found and fixed.
Any version of this errata document actually distributed
with the release (for example, on a CDROM distribution) will be
out of date by definition, but other copies are kept updated on
the Internet and should be consulted as the current
errata
for this release. These other copies of the
errata are located at , plus any sites
which keep up-to-date mirrors of this location.
Source and binary snapshots of &os; &release.branch; also
contain up-to-date copies of this document (as of the time of
the snapshot).
For a list of all &os; CERT security advisories, see or .
Security Advisories
Problems described in the following security advisories have
been fixed in &release.current;. For more information, consult
the individual advisories available from .
Advisory
Date
Topic
SA-11:01.mountd
20 April 2011
Network ACL mishandling in &man.mountd.8;
SA-11:02.bind
28 May 2011
BIND remote DoS with large RRSIG RRsets and negative
caching
SA-11:04.compress
28 September 2011
Errors handling corrupt compress file in
&man.compress.1; and &man.gzip.1;
SA-11:05.unix
28 September 2011
Buffer overflow in handling of UNIX socket
addresses
SA-11:06.bind
23 December 2011
Remote packet Denial of Service against &man.named.8;
servers
SA-11:07.chroot
23 December 2011
Code execution via chrooted ftpd
SA-11:08.telnetd
23 December 2011
telnetd code execution vulnerability
SA-11:09.pam_ssh
23 December 2011
pam_ssh improperly grants access when user account has
unencrypted SSH private keys
SA-11:10.pam
23 December 2011
pam_start() does not validate
service names
Open Issues
In some releases prior to &release.current;, upgrading
by using &man.freebsd-update.8; can fail. This issue has
been fixed by a change in Errata Notice EN-12:01. For more
information, see
&os; &release.current; includes
several changes to improve resource management of PCI
devices. Some x86 machines may not boot or may have devices
that no longer attach when using ACPI as a result of these
changes. This can be worked around by setting a
&man.loader.8; tunable
debug.acpi.disabled to
hostres. To do this, enter the following
lines at the loader prompt:
set debug.acpi.disabled="hostres"
boot
Or, put the following line into
/boot/loader.conf:
debug.acpi.disabled="hostres"
A &man.devctl.4; event upon arrival of a &man.ugen.4;
device has been changed. The event now includes
ugen and cdev
variables instead of device-name. This
change can prevent the following &man.devd.8; rule which
worked in a previous releases from working:
attach 0 {
match "device-name" "ugen[0-9]+.[0-9]+";
action "/path/to/script /dev/$device-name";
}
This should be updated to the following:
attach 0 {
match "subsystem" "DEVICE";
match "type" "ATTACH";
match "cdev" "ugen[0-9]+.[0-9]+";
action "/path/to/script /dev/$cdev";
}
The &os; &release.current; Release Notes should have
mentioned that SSM (Source-Specific Multicast) MLDv2 now
uses ALLOW_NEW_SOURCES and
BLOCK_OLD_SOURCES record types to signal
a join or a leave by default. This conforms RFC 4604,
Using Internet Group Management Protocol Version 3
(IGMPv3) and Multicast Listener Discovery Protocol Version 2
(MLDv2) for Source-Specific Multicast
. A new
&man.sysctl.8; variable
net.inet6.mld.use_allow which controls
the behavior has been added. The default value is
1 (use
ALLOW_NEW_SOURCES and
BLOCK_OLD_SOURCES).
&release.current; fails to configure an interface
specified in the &man.rc.conf.5; variable
ipv6_prefix_IF
when the interface does not have a corresponding
ifconfig_IF_ipv6
variable. This problem will be fixed in the future
releases. To work around this problem on &release.current;,
add an
ifconfig_IF_ipv6
line for each interface specified in
ipv6_prefix_IF
as the following:
ipv6_prefix_em0="2001:db8:1:0 2001:db8:2:0"
ifconfig_em0_ipv6="inet6 auto_linklocal"
In &release.current; the &os; USB subsystem supports USB
3.0 by the &man.xhci.4; driver. However, a bug that could
prevent it from working with a USB 3.0 hub has been found
and fixed after the release date. This means
&release.current; and prior do not work with a USB 3.0 hub.
This problem has been fixed in HEAD and will be merged into
the 9-STABLE branch.
Late-Breaking News
No news.
]]>
No news.
]]>
No news.
]]>
@
1.1.4.3
log
@Switch importer
@
text
@d40 1
a40 1
$FreeBSD: releng/9.1/release/doc/en_US.ISO8859-1/errata/article.xml 241445 2012-10-11 15:49:42Z gabor $
@
1.1.4.4
log
@## SVN ##
## SVN ## Exported commit - http://svnweb.freebsd.org/changeset/base/243705
## SVN ## CVS IS DEPRECATED: http://wiki.freebsd.org/CvsIsDeprecated
## SVN ##
## SVN ## ------------------------------------------------------------------------
## SVN ## r243705 | hrs | 2012-11-30 16:15:35 +0000 (Fri, 30 Nov 2012) | 18 lines
## SVN ##
## SVN ## - Bump versions and revert XML migration of the release documents in
## SVN ## releng/9.1 branch. The doc tree release/9.1.0 for this release still uses
## SVN ## SGML toolchain[1].
## SVN ##
## SVN ## - Add SVNROOT{BASE,SRC,DOC,PORTS} for subversion repository URLs and
## SVN ## BRANCH{SRC,DOC,PORTS} for the branches to generate-release.sh, and
## SVN ## remove -p, -r, -d options. The revision to be built should be specified
## SVN ## in the URL.
## SVN ##
## SVN ## - Add {WORLD,KERNEL}_FLAGS to generate-release.sh. These were supported in
## SVN ## the old release build framework.
## SVN ##
## SVN ## - Disable to use binary package for docproj port during a release build.
## SVN ## This package should be built successfully.
## SVN ##
## SVN ## Pointy hat to: hrs [1]
## SVN ## Approved by: re (implicitly)
## SVN ##
## SVN ## ------------------------------------------------------------------------
## SVN ##
@
text
@@
1.1.2.1
log
@file article.xml was added on branch RELENG_9 on 2012-10-02 06:38:22 +0000
@
text
@d1 180
@
1.1.2.2
log
@SVN rev 241122 on 2012-10-02 06:37:46Z by gabor
MFC r241096:
- Rename .sgml files to .xml to track the recent doc changes
@
text
@a0 339
%entities;
%release;
]]>
]]>
]]>
]>
&os; &release; Errata
The &os; Project
$FreeBSD$
2012
The &os; Documentation Project
&tm-attrib.freebsd;
&tm-attrib.intel;
&tm-attrib.sparc;
&tm-attrib.general;
This document lists errata items for &os;
containing significant information discovered after the release
or too late in the release cycle to be otherwise included in the
release documentation.
This information includes security advisories, as well as news
relating to the software or documentation that could affect its
operation or usability. An up-to-date version of this document
should always be consulted before installing this version of
&os;.
This errata document for &os;
will be maintained until the release of &os; &release.next;.
Introduction
This errata document contains late-breaking news
about &os;
Before installing this version, it is important to consult this
document to learn about any post-release discoveries or problems
that may already have been found and fixed.
Any version of this errata document actually distributed
with the release (for example, on a CDROM distribution) will be
out of date by definition, but other copies are kept updated on
the Internet and should be consulted as the current
errata
for this release. These other copies of the
errata are located at , plus any sites
which keep up-to-date mirrors of this location.
Source and binary snapshots of &os; &release.branch; also
contain up-to-date copies of this document (as of the time of
the snapshot).
For a list of all &os; CERT security advisories, see or .
Security Advisories
Problems described in the following security advisories have
been fixed in &release.current;. For more information, consult
the individual advisories available from .
Advisory
Date
Topic
SA-11:01.mountd
20 April 2011
Network ACL mishandling in &man.mountd.8;
SA-11:02.bind
28 May 2011
BIND remote DoS with large RRSIG RRsets and negative
caching
SA-11:04.compress
28 September 2011
Errors handling corrupt compress file in
&man.compress.1; and &man.gzip.1;
SA-11:05.unix
28 September 2011
Buffer overflow in handling of UNIX socket
addresses
SA-11:06.bind
23 December 2011
Remote packet Denial of Service against &man.named.8;
servers
SA-11:07.chroot
23 December 2011
Code execution via chrooted ftpd
SA-11:08.telnetd
23 December 2011
telnetd code execution vulnerability
SA-11:09.pam_ssh
23 December 2011
pam_ssh improperly grants access when user account has
unencrypted SSH private keys
SA-11:10.pam
23 December 2011
pam_start() does not validate
service names
Open Issues
In some releases prior to &release.current;, upgrading
by using &man.freebsd-update.8; can fail. This issue has
been fixed by a change in Errata Notice EN-12:01. For more
information, see
&os; &release.current; includes
several changes to improve resource management of PCI
devices. Some x86 machines may not boot or may have devices
that no longer attach when using ACPI as a result of these
changes. This can be worked around by setting a
&man.loader.8; tunable
debug.acpi.disabled to
hostres. To do this, enter the following
lines at the loader prompt:
set debug.acpi.disabled="hostres"
boot
Or, put the following line into
/boot/loader.conf:
debug.acpi.disabled="hostres"
A &man.devctl.4; event upon arrival of a &man.ugen.4;
device has been changed. The event now includes
ugen and cdev
variables instead of device-name. This
change can prevent the following &man.devd.8; rule which
worked in a previous releases from working:
attach 0 {
match "device-name" "ugen[0-9]+.[0-9]+";
action "/path/to/script /dev/$device-name";
}
This should be updated to the following:
attach 0 {
match "subsystem" "DEVICE";
match "type" "ATTACH";
match "cdev" "ugen[0-9]+.[0-9]+";
action "/path/to/script /dev/$cdev";
}
The &os; &release.current; Release Notes should have
mentioned that SSM (Source-Specific Multicast) MLDv2 now
uses ALLOW_NEW_SOURCES and
BLOCK_OLD_SOURCES record types to signal
a join or a leave by default. This conforms RFC 4604,
Using Internet Group Management Protocol Version 3
(IGMPv3) and Multicast Listener Discovery Protocol Version 2
(MLDv2) for Source-Specific Multicast
. A new
&man.sysctl.8; variable
net.inet6.mld.use_allow which controls
the behavior has been added. The default value is
1 (use
ALLOW_NEW_SOURCES and
BLOCK_OLD_SOURCES).
&release.current; fails to configure an interface
specified in the &man.rc.conf.5; variable
ipv6_prefix_IF
when the interface does not have a corresponding
ifconfig_IF_ipv6
variable. This problem will be fixed in the future
releases. To work around this problem on &release.current;,
add an
ifconfig_IF_ipv6
line for each interface specified in
ipv6_prefix_IF
as the following:
ipv6_prefix_em0="2001:db8:1:0 2001:db8:2:0"
ifconfig_em0_ipv6="inet6 auto_linklocal"
In &release.current; the &os; USB subsystem supports USB
3.0 by the &man.xhci.4; driver. However, a bug that could
prevent it from working with a USB 3.0 hub has been found
and fixed after the release date. This means
&release.current; and prior do not work with a USB 3.0 hub.
This problem has been fixed in HEAD and will be merged into
the 9-STABLE branch.
Late-Breaking News
No news.
]]>
No news.
]]>
No news.
]]>
@
1.1.2.3
log
@## SVN ##
## SVN ## Exported commit - http://svnweb.freebsd.org/changeset/base/ 242902
## SVN ## CVS IS DEPRECATED: http://wiki.freebsd.org/CvsIsDeprecated
## SVN ##
## SVN ## ------------------------------------------------------------------------
## SVN ## r242902 | dteske | 2012-11-11 23:29:45 +0000 (Sun, 11 Nov 2012) | 10 lines
## SVN ##
## SVN ## Fix a regression introduced by SVN r211417 that saw the breakage of a feature
## SVN ## documented in usr.sbin/sysinstall/help/shortcuts.hlp (reproduced below):
## SVN ##
## SVN ## If /usr/sbin/sysinstall is linked to another filename, say
## SVN ## `/usr/local/bin/configPackages', then the basename will be used
## SVN ## as an implicit command name.
## SVN ##
## SVN ## Reviewed by: adrian (co-mentor)
## SVN ## Approved by: adrian (co-mentor)
## SVN ##
## SVN ## ------------------------------------------------------------------------
## SVN ##
@
text
@d40 1
a40 1
$FreeBSD: stable/9/release/doc/en_US.ISO8859-1/errata/article.xml 241122 2012-10-02 06:37:46Z gabor $
@
1.1.2.4
log
@## SVN ## Exported commit - http://svnweb.freebsd.org/changeset/base/244379
## SVN ## CVS IS DEPRECATED: http://wiki.freebsd.org/CvsIsDeprecated
## SVN ##
## SVN ## ------------------------------------------------------------------------
## SVN ## r244379 | hrs | 2012-12-18 06:55:13 +0000 (Tue, 18 Dec 2012) | 4 lines
## SVN ##
## SVN ## - Trim old entries.
## SVN ## - Update errata items.
## SVN ## - Bump &release.*;
## SVN ##
## SVN ## ------------------------------------------------------------------------
## SVN ##
@
text
@d1 19
a30 4
%entities;
a31 3
%release;
]>
d34 1
a34 11
&os;
Errata
d40 1
a40 1
$FreeBSD: stable/9/release/doc/en_US.ISO8859-1/errata/article.xml 244379 2012-12-18 06:55:13Z hrs $
d135 5
a139 4
d149 4
a152 4
SA-12:01.openssl
3 May 2012
OpenSSL multiple vulnerabilities
d156 5
a160 4
SA-12:02.crypt
30 May 2012
Incorrect crypt() hashing
d164 5
a168 4
SA-12:03.bind
12 June 2012
Incorrect handling of zero-length RDATA fields in &man.named.8;
d172 5
a176 4
SA-12:04.sysret
12 June 2012
Privilege escalation when returning from kernel
d180 5
a184 4
SA-12:05.bind
6 August 2012
&man.named.8; DNSSEC validation Denial of Service
d188 4
a191 4
SA-12:06.bind
22 November 2012
Multiple Denial of Service vulnerabilities with &man.named.8;
d195 4
a198 4
SA-12:07.hostapd
22 November 2012
Insufficient message length validation for EAP-TLS messages
d202 13
a214 4
SA-12:08.linux
22 November 2012
Linux compatibility layer input validation error
d221 102
d326 5
d332 5
d338 1
@
1.1.2.5
log
@## SVN ## Exported commit - http://svnweb.freebsd.org/changeset/base/244671
## SVN ## CVS IS DEPRECATED: http://wiki.freebsd.org/CvsIsDeprecated
## SVN ##
## SVN ## ------------------------------------------------------------------------
## SVN ## r244671 | hrs | 2012-12-25 06:07:34 +0000 (Tue, 25 Dec 2012) | 4 lines
## SVN ##
## SVN ## Add Errata items:
## SVN ## - mfi(4) driver overflow issue,
## SVN ## - typos in Installation Instructions.
## SVN ##
## SVN ## ------------------------------------------------------------------------
## SVN ##
@
text
@d38 1
a38 1
$FreeBSD: stable/9/release/doc/en_US.ISO8859-1/errata/article.xml 244671 2012-12-25 06:07:34Z hrs $
d208 1
a208 28
[November 2, 2012] The current &man.mfi.4; driver has an
overflow bug when handling disks larger than 2^32 sectors in
SYSPD volumes, also known as JBODs, which will cause data
corruption. This bug has been fixed on this &os;-CURRENT but
was too late for inclusion in this release. An Errata Notice
for &release.current; is planned.
[December 25, 2012] The Installtion Instructions had the
following wrong information about upgrading procedure. All of
them have been fixed in the online version.
The link URL of upgrading section in the Release
Notes
, branch names where upcoming Security
Advisories or Errata Notices will be applied, and a
command line argument of &man.freebsd-update.8; were ones
for 9.0-RELEASE, not for &release.current;.
The list of releases supported by &man.freebsd-update.8;
utility were incorrect. For 9.X, The following versions are
supported: 9.0-RELEASE,
9.1-BETA1, and
9.1-RC[123].
@