Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 12 Jun 2005 20:41:14 +0900 (JST)
From:      Hiroki Sato <hrs@FreeBSD.org>
To:        simon@FreeBSD.org
Cc:        cvs-src@FreeBSD.org, src-committers@FreeBSD.org, hrs@FreeBSD.org, cvs-all@FreeBSD.org, bmah@FreeBSD.org
Subject:   Re: cvs commit: src/release/doc/en_US.ISO8859-1/relnotes/common new.sgml
Message-ID:  <20050612.204114.95014473.hrs@allbsd.org>
In-Reply-To: <20050612101544.GJ821@zaphod.nitro.dk>
References:  <200506111727.j5BHRE8S000759@repoman.freebsd.org> <20050612101544.GJ821@zaphod.nitro.dk>

next in thread | previous in thread | raw e-mail | index | archive | help
----Security_Multipart0(Sun_Jun_12_20_41_14_2005_294)--
Content-Type: Multipart/Mixed;
	boundary="--Next_Part(Sun_Jun_12_20_41_14_2005_225)--"
Content-Transfer-Encoding: 7bit

----Next_Part(Sun_Jun_12_20_41_14_2005_225)--
Content-Type: Text/Plain; charset=us-ascii
Content-Transfer-Encoding: 7bit

"Simon L. Nielsen" <simon@FreeBSD.org> wrote
  in <20050612101544.GJ821@zaphod.nitro.dk>:

si> On 2005.06.11 17:27:14 +0000, Hiroki Sato wrote:
si> > hrs         2005-06-11 17:27:14 UTC
si> > 
si> >   FreeBSD src repository
si> > 
si> >   Modified files:
si> >     release/doc/en_US.ISO8859-1/relnotes/common new.sgml 
si> >   Log:
si> >   Document SA-05:10, SA-05:11, and SA-05:12.
si> 
si> So how about the errata documents - should we just change it to the
si> brief format we discussed?

 I tried to make a patch based on Bruce's idea (attached).
 Simple cut-n-paste from SAs is enough to update this.
 How about this?

 We have to add them manually for the time being until we
 utilize an XML database or so, anyway.

-- 
| Hiroki SATO

----Next_Part(Sun_Jun_12_20_41_14_2005_225)--
Content-Type: Text/Plain; charset=us-ascii
Content-Transfer-Encoding: 7bit
Content-Disposition: inline; filename="errata_RELENG_5.diff"

Index: article.sgml
===================================================================
RCS file: /home/ncvs/src/release/doc/en_US.ISO8859-1/errata/article.sgml,v
retrieving revision 1.69.2.20
diff -d -u -I\$FreeBSD:.*\$ -I\$NetBSD:.*\$ -I\$OpenBSD:.*\$ -I\$DragonFly:.*\$ -I\$Id:.*\$ -I\$Translation:.*\$ -I\$hrs:.*\$ -r1.69.2.20 article.sgml
--- article.sgml	23 May 2005 03:35:17 -0000	1.69.2.20
+++ article.sgml	12 Jun 2005 11:41:04 -0000
@@ -94,14 +94,50 @@
   <sect1 id="security">
     <title>Security Advisories</title>
 
-    <para>(22 May 2005) An information disclosure vulnerability has
-      been discovered in processors using Hyper-Threading Technology
-      (HTT).  For more information, as well as a patch that adds a
-      boot-time tunable variable that disables the use of HTT by
-      default, consult security advisory
-      <ulink url="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:09.htt.asc">FreeBSD-SA-05:09.htt</ulink>.
-      </para>
+    <para>The following security advisories pertain to &os; &release.bugfix;.
+      For more information, consult the individual advisories.</para>
+
+    <informaltable frame="none">
+      <tgroup cols="2">
+	<thead>
+	  <row>
+	    <entry>Advisory</entry>
+	    <entry>Date</entry>
+	    <entry>Topic</entry>
+	  </row>
+	</thead>
+
+	<tbody>
+	  <row>
+	    <entry><ulink url="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:09.htt.asc"
+		>SA-05:09.htt</ulink></entry>
+	    <entry>22&nbsp;May&nbsp;2005</entry>
+	    <entry><para>information disclosure when using HTT</para></entry>
+	  </row>
 
+	  <row>
+	    <entry><ulink url="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:10.tcpdump.asc"
+		>SA-05:10.tcpdump</ulink></entry>
+	    <entry>9&nbsp;Jun&nbsp;2005</entry>
+	    <entry><para>Infinite loops in tcpdump protocol decoding</para></entry>
+	  </row>
+
+	  <row>
+	    <entry><ulink url="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:11.gzip.asc"
+		>SA-05:11.gzip</ulink></entry>
+	    <entry>9&nbsp;Jun&nbsp;2005</entry>
+	    <entry><para>gzip directory traversal and permission race vulnerabilities</para></entry>
+	  </row>
+
+	  <row>
+	    <entry><ulink url="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:12.bind9.asc"
+		>SA-05:12.bind9</ulink></entry>
+	    <entry>9&nbsp;Jun&nbsp;2005</entry>
+	    <entry><para>BIND 9 DNSSEC remote denial of service vulnerability</para></entry>
+	  </row>
+	</tbody>
+      </tgroup>
+    </informaltable>
   </sect1>
 
   <sect1 id="open-issues">

----Next_Part(Sun_Jun_12_20_41_14_2005_225)----

----Security_Multipart0(Sun_Jun_12_20_41_14_2005_294)--
Content-Type: application/pgp-signature
Content-Transfer-Encoding: 7bit

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.0 (FreeBSD)

iD8DBQBCrB9aTyzT2CeTzy0RArLpAJ0Ux4SbSeiDdHGyYKTyixUNzdca0gCeNpQw
eWeedMBSeiTWvM991XTr6Pg=
=Wat5
-----END PGP SIGNATURE-----

----Security_Multipart0(Sun_Jun_12_20_41_14_2005_294)----



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20050612.204114.95014473.hrs>