Page MenuHomeFreeBSD

14.0 relnotes: Additions
ClosedPublic

Authored by olce on Nov 7 2023, 9:45 AM.
Tags
None
Referenced Files
Unknown Object (File)
Wed, Apr 24, 4:56 AM
Unknown Object (File)
Tue, Apr 23, 11:38 PM
Unknown Object (File)
Apr 9 2024, 5:35 AM
Unknown Object (File)
Apr 8 2024, 8:52 PM
Unknown Object (File)
Mar 10 2024, 6:27 PM
Unknown Object (File)
Jan 5 2024, 10:34 PM
Unknown Object (File)
Dec 28 2023, 6:06 PM
Unknown Object (File)
Dec 25 2023, 5:26 PM
Subscribers
None

Details

Summary
  • Changes to the 'security.bsd.see_jail_proc' security policy.
  • Changes to the 'security.bsd.see_other_gids' security policy.
  • Zenbleed bug/vulnerability

Sponsored by: The FreeBSD Foundation

Diff Detail

Repository
R9 FreeBSD doc repository
Lint
Lint Not Applicable
Unit
Tests Not Applicable

Event Timeline

olce requested review of this revision.Nov 7 2023, 9:45 AM
olce created this revision.

Nice, thanks for the upgrade :)

This revision is now accepted and ready to land.Nov 7 2023, 9:48 AM

Looks good, thanks! I would suggest prepending "the sysctl" to security.... in both places to make it obvious that these are sysctl names. It would probably be good to mention the tunable/sysctl controlling Zenbleed too, as there is no other reference.

This revision now requires review to proceed.Nov 7 2023, 2:47 PM

Thanks for the mitigations(7) link, I wasn't aware of that one.

Who should commit this?

website/content/en/releases/14.0R/relnotes.adoc
456

There should be a newline after each period (one sentence per line).

Commit the good diff, sorry for the noise.

olce marked an inline comment as done.Nov 7 2023, 3:11 PM

Thanks for the mitigations(7) link, I wasn't aware of that one.

Who should commit this?

you :D

(or wait to this night and I'll make the commit, np)

I can push the change for @olce.freebsd_certner.fr if you like

I can push the change for @olce.freebsd_certner.fr if you like

sure, np, thanks!

Ed, feel free. I don't remember if I've done the --author thing before.

This revision is now accepted and ready to land.Nov 7 2023, 3:34 PM
This revision was automatically updated to reflect the committed changes.