diff --git a/website/content/en/releases/13.0R/errata.adoc b/website/content/en/releases/13.0R/errata.adoc index 28e669eea7..7c4b4df90f 100644 --- a/website/content/en/releases/13.0R/errata.adoc +++ b/website/content/en/releases/13.0R/errata.adoc @@ -1,112 +1,119 @@ --- title: "FreeBSD 13.0-RELEASE Errata" sidenav: download --- :release: 13.0-RELEASE :releaseNext: 13.1-RELEASE :releaseBranch: 13-STABLE = FreeBSD {release} Errata == Abstract This document lists errata items for FreeBSD {release}, containing significant information discovered after the release or too late in the release cycle to be otherwise included in the release documentation. This information includes security advisories, as well as news relating to the software or documentation that could affect its operation or usability. An up-to-date version of this document should always be consulted before installing this version of FreeBSD. This errata document for FreeBSD {release} will be maintained until the release of FreeBSD {releaseNext}. == Table of Contents * <> * <> * <> * <> * <> [[intro]] == Introduction This errata document contains "late-breaking news" about FreeBSD {release} Before installing this version, it is important to consult this document to learn about any post-release discoveries or problems that may already have been found and fixed. Any version of this errata document actually distributed with the release (for example, on a CDROM distribution) will be out of date by definition, but other copies are kept updated on the Internet and should be consulted as the "current errata" for this release. These other copies of the errata are located at https://www.FreeBSD.org/releases/, plus any sites which keep up-to-date mirrors of this location. Source and binary snapshots of FreeBSD {releaseBranch} also contain up-to-date copies of this document (as of the time of the snapshot). For a list of all FreeBSD CERT security advisories, see https://www.FreeBSD.org/security/. [[security]] == Security Advisories [width="100%",cols="40%,30%,30%",options="header",] |=== |Advisory |Date |Topic |link:https://www.FreeBSD.org/security/advisories/FreeBSD-SA-21:11.smap.asc[FreeBSD-SA-21:11.smap] |26 May 2021 |Mitigation bypass |link:https://www.FreeBSD.org/security/advisories/FreeBSD-SA-21:12.libradius.asc[FreeBSD-SA-21:12.libradius] |26 May 2021 |Denial of service |link:https://www.FreeBSD.org/security/advisories/FreeBSD-SA-21:13.bhyve.asc[FreeBSD-SA-21:13.bhyve] |24 August 2021 |Missing error handling in bhyve(8) device models |link:https://www.FreeBSD.org/security/advisories/FreeBSD-SA-21:14.ggatec.asc[FreeBSD-SA-21:14.ggatec] |24 August 2021 |Remote code execution in ggatec(8) |link:https://www.FreeBSD.org/security/advisories/FreeBSD-SA-21:15.libfetch.asc[FreeBSD-SA-21:15.libfetch] |24 August 2021 |libfetch out of bounds read |link:https://www.FreeBSD.org/security/advisories/FreeBSD-SA-21:16.openssl.asc[FreeBSD-SA-21:16.openssl] |24 August 2021 |Multiple vulnerabilities in OpenSSL |link:https://www.FreeBSD.org/security/advisories/FreeBSD-SA-22:01.vt.asc[FreeBSD-SA-22:01.vt] |11 January 2022 |vt console buffer overflow |link:https://www.FreeBSD.org/security/advisories/FreeBSD-SA-22:02.wifi.asc[FreeBSD-SA-22:02.wifi] |15 March 2022 |Multiple WiFi issues |link:https://www.FreeBSD.org/security/advisories/FreeBSD-SA-22:03.openssl.asc[FreeBSD-SA-22:03.openssl] |15 March 2022 |OpenSSL certificate parsing infinite loop |link:https://www.FreeBSD.org/security/advisories/FreeBSD-SA-22:04.netmap.asc[FreeBSD-SA-22:04.netmap] |6 April 2022 |Potential jail escape vulnerabilities in netmap |link:https://www.FreeBSD.org/security/advisories/FreeBSD-SA-22:05.bhyve.asc[FreeBSD-SA-22:05.bhyve] |6 April 2022 |Bhyve e82545 device emulation out-of-bounds write |link:https://www.FreeBSD.org/security/advisories/FreeBSD-SA-22:06.ioctl.asc[FreeBSD-SA-22:06.ioctl] |6 April 2022 |mpr/mps/mpt driver ioctl heap out-of-bounds write |link:https://www.FreeBSD.org/security/advisories/FreeBSD-SA-22:07.wifi_meshid.asc[FreeBSD-SA-22:07.wifi_meshid] |6 April 2022 |802.11 heap buffer overflow |link:https://www.FreeBSD.org/security/advisories/FreeBSD-SA-22:08.zlib.asc[FreeBSD-SA-22:08.zlib] |6 April 2022 |zlib compression out-of-bounds write +|link:https://www.FreeBSD.org/security/advisories/FreeBSD-SA-22:09.elf.asc[FreeBSD-SA-22:09.elf] |9 August 2022 |Out of bound read in elf_note_prpsinfo() +|link:https://www.FreeBSD.org/security/advisories/FreeBSD-SA-22:10.aio.asc[FreeBSD-SA-22:10.aio] |9 August 2022 |AIO credential reference count leak +|link:https://www.FreeBSD.org/security/advisories/FreeBSD-SA-22:11.vm.asc[FreeBSD-SA-22:11.vm] |9 August 2022 |Memory disclosure by stale virtual memory mapping +|link:https://www.FreeBSD.org/security/advisories/FreeBSD-SA-22:12.lib9p.asc[FreeBSD-SA-22:12.lib9p] |9 August 2022 |Missing bounds check in 9p message handling |=== [[errata]] == Errata Notices [width="100%",cols="40%,30%,30%",options="header",] |=== |Errata |Date |Topic |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-21:12.divert.asc[FreeBSD-EN-21:12.divert] |26 May 2021 |Kernel double free when transmitting on a divert socket |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-21:13.mpt.asc[FreeBSD-EN-21:13.mpt] |26 May 2021 |mpt(4) I/O errors with a large maxphys value |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-21:14.pms.asc[FreeBSD-EN-21:14.pms] |26 May 2021 |pms(4) data corruption |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-21:15.virtio.asc[FreeBSD-EN-21:15.virtio] |26 May 2021 |virtio(4) device probing fails |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-21:16.bc.asc[FreeBSD-EN-21:16.bc] |26 May 2021 |dc update |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-21:17.libradius.asc[FreeBSD-EN-21:17.libradius] |1 June 2021 |Incorrect validation in rad_get_attr(3) |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-21:18.libc{plus}{plus}.asc[FreeBSD-EN-21:18.libc{plus}{plus}] |30 June 2021 |Missing C{plus}{plus}20 headers in libc{plus}{plus} |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-21:19.libcasper.asc[FreeBSD-EN-21:19.libcasper] |30 June 2021 |libcasper assertion failure |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-21:20.vlan.asc[FreeBSD-EN-21:20.vlan] |30 June 2021 |Missing backwards compatibility in vlan(4) |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-21:21.ipfw.asc[FreeBSD-EN-21:21.ipfw] |30 June 2021 |Kernel panic with ipfw link-layer filtering enabled |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-21:22.linux_futex.asc[FreeBSD-EN-21:22.linux_futex] |30 June 2021 |Linux compatibility layer futex(2) system call vulnerability |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-21:23.virtio_blk.asc[FreeBSD-EN-21:23.virtio_blk] |24 August 2021 |virtio_blk(4) fails to attach on some hypervisors |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-21:24.libcrypto.asc[FreeBSD-EN-21:24.libcrypto] |24 August 2021 |OpenSSL 1.1.1e API functions not exported |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-21:25.bhyve.asc[FreeBSD-EN-21:25.bhyve] |24 August 2021 |Fix NVMe iovec construction for large IOs |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-21:26.libevent.asc[FreeBSD-EN-21:26.libevent] |4 November 2021 |libevent1 ABI breakage |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-21:27.caroot.asc[FreeBSD-EN-21:27.caroot] |4 November 2021 |Root certificate bundle update |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-21:28.vmci.asc[FreeBSD-EN-21:28.vmci] |4 November 2021 |Fix kernel panic in vmci driver initialization |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-21:29.tzdata.asc[FreeBSD-EN-21:29.tzdata] |4 November 2021 |Timezone database information update |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-22:01.fsck_ffs.asc[FreeBSD-EN-22:01.fsck_ffs] |11 January 2022 |fsck_ffs fails to correct certain errors |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-22:02.xsave.asc[FreeBSD-EN-22:02.xsave] |11 January 2022 |Incorrect XSAVE state size |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-22:03.hyperv.asc[FreeBSD-EN-22:03.hyperv] |11 January 2022 |vPCI compatibility improvements with certain Hyper-V releases |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-22:05.tail.asc[FreeBSD-EN-22:05.tail] |11 January 2022 |tail -F fails to follow some types of log rotation |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-22:06.libalias.asc[FreeBSD-EN-22:06.libalias] |11 January 2022 |Incorrect fragmented IPv4 packet handling in libalias |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-22:07.la57.asc[FreeBSD-EN-22:07.la57] |1 February 2022 |Intel CPU LA57 boot failure |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-22:10.zfs.asc[FreeBSD-EN-22:10.zfs] |15 March 2022 |ZFS writes fail to update file size |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-22:11.zfs.asc[FreeBSD-EN-22:11.zfs] |15 March 2022 |ZFS lseek(2) inconsistencies |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-22:12.zfs.asc[FreeBSD-EN-22:12.zfs] |15 March 2022 |ZFS panic upon concurrent 'zfs list' calls |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-22:13.zfs.asc[FreeBSD-EN-22:13.zfs] |21 March 2022 |ZFS data loss |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-22:14.tzdata.asc[FreeBSD-EN-22:14.tzdata] |22 March 2022 |Timezone database information update |link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-22:15.pf.asc[FreeBSD-EN-22:15.pf] |6 April 2022 |pf(4) tables may fail to load +|link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-22:17.cam.asc[FreeBSD-EN-22:17.cam] |9 August 2022 |Kernel memory corruption during SCSI error recovery +|link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-22:18.wifi.asc[FreeBSD-EN-22:18.wifi] |9 August 2022 |WiFi patch update +|link:https://www.FreeBSD.org/security/advisories/FreeBSD-EN-22:19.pam_exec.asc[FreeBSD-EN-22:19.pam_exec] |9 August 2022 |NULL pointer dereference in pam_exec(8) |=== [[open-issues]] == Open Issues No open issues. [[late-news]] == Late-Breaking News [2021-04-05] A very late issue was discovered in the [.filename]#/usr/bin/dc# program. The "P" command does not correctly pop the top of stack value and this will break complex scripts that continue after printing a result. The [.filename]#/usr/bin/bc# program is not affected, since it does not depend on dc as its execution engine. [2021-04-14] An issue was discovered where during an upgrade, when the kernel is new but [.filename]#/sbin/ifconfig# is still the previous version, VLAN interfaces are configured with an invalid ethernet protocol type. This causes the VLAN interfaces to send invalid traffic, resulting in non-functional networking. Once the updated [.filename]#/sbin/ifconfig# binary is installed, VLANs are created correctly. When depending on network access via VLANs during the upgrade, it is suggested to install the new world (run the second `freebsd-update install`) before rebooting.