Page MenuHomeFreeBSD
Feed Advanced Search

May 15 2019

gordon committed rS347633: Bump patch revision for updated mds patches..
Bump patch revision for updated mds patches.
May 15 2019, 9:26 PM
gordon committed rD53030: Correct a few small details in advisories..
Correct a few small details in advisories.
May 15 2019, 7:52 PM
gordon committed rD53029: Update version of MDS advisory.
Update version of MDS advisory
May 15 2019, 6:02 PM
gordon committed rD53028: Correct announcement date..
Correct announcement date.
May 15 2019, 3:23 PM
gordon committed rD53025: Update to correct date..
Update to correct date.
May 15 2019, 1:40 PM

May 14 2019

gordon committed rD53024: Done with the large patches..
Done with the large patches.
May 14 2019, 11:49 PM
gordon committed rD53023: Add SA-19:03 to SA-19:07 and EN-19:08 to EN-19:10..
Add SA-19:03 to SA-19:07 and EN-19:08 to EN-19:10.
May 14 2019, 11:49 PM
gordon committed rD53022: I need to commit some large patches..
I need to commit some large patches.
May 14 2019, 11:48 PM
gordon committed rS347597: Bump newvers.sh and add UPDATING block..
Bump newvers.sh and add UPDATING block.
May 14 2019, 11:22 PM
gordon committed rS347595: Mitigations for Microarchitectural Data Sampling..
Mitigations for Microarchitectural Data Sampling.
May 14 2019, 11:20 PM
gordon committed rS347594: Mitigations for Microarchitectural Data Sampling..
Mitigations for Microarchitectural Data Sampling.
May 14 2019, 11:19 PM
gordon committed rS347593: Fix ICMP/ICMP6 packet filter bypass in pf..
Fix ICMP/ICMP6 packet filter bypass in pf.
May 14 2019, 11:12 PM
gordon committed rS347591: Fix IPv6 fragment reassembly panic in pf.
Fix IPv6 fragment reassembly panic in pf
May 14 2019, 11:10 PM
gordon committed rS347590: Update ntpd to 4.2.8p13 to fix authenticated denial of service..
Update ntpd to 4.2.8p13 to fix authenticated denial of service.
May 14 2019, 11:08 PM
gordon committed rS347589: Update ntpd to 4.2.8p13 to fix authenticated denial of service..
Update ntpd to 4.2.8p13 to fix authenticated denial of service.
May 14 2019, 11:05 PM
gordon committed rS347588: Update hostapd/wpa_supplicant to 2.8 to fix multiple vulnerabilities..
Update hostapd/wpa_supplicant to 2.8 to fix multiple vulnerabilities.
May 14 2019, 11:00 PM
gordon committed rS347587: Update hostapd/wpa_supplicant to 2.8 to fix multiple vulnerabilities..
Update hostapd/wpa_supplicant to 2.8 to fix multiple vulnerabilities.
May 14 2019, 10:58 PM
gordon committed rS347586: Fix insufficient filename validation in scp client.
Fix insufficient filename validation in scp client
May 14 2019, 10:54 PM
gordon committed rS347585: Fix partially matching relative paths in xinstall..
Fix partially matching relative paths in xinstall.
May 14 2019, 10:52 PM
gordon committed rS347584: Import tzdata 2019a..
Import tzdata 2019a.
May 14 2019, 10:48 PM

Mar 21 2019

gordon requested changes to D19620: Add an option to use TPM as entropy source.
Mar 21 2019, 6:10 PM
gordon added a comment to D19620: Add an option to use TPM as entropy source.

Strong agree on separating any whitespace commits from functional commits. This is especially important for security sensitive content.

Mar 21 2019, 6:09 PM

Mar 9 2019

gordon committed rS344952: Correct wording around '-' masks..
Correct wording around '-' masks.
Mar 9 2019, 12:30 AM

Mar 6 2019

gordon committed rD52844: Correct correction date..
Correct correction date.
Mar 6 2019, 4:55 PM

Feb 5 2019

gordon committed rD52797: Add SA-19:01, SA-19:02, EN-19:06, and EN-19:07..
Add SA-19:01, SA-19:02, EN-19:06, and EN-19:07.
Feb 5 2019, 6:39 PM

Jan 9 2019

gordon committed rD52759: Correct wrong year in advisory text..
Correct wrong year in advisory text.
Jan 9 2019, 8:10 PM
gordon committed rD52757: Hopefully I won't need this again..
Hopefully I won't need this again.
Jan 9 2019, 7:18 PM
gordon committed rD52756: Add EN-19:01 through EN-19:05..
Add EN-19:01 through EN-19:05.
Jan 9 2019, 7:18 PM
gordon committed rD52755: The sqlite patch is large.....
The sqlite patch is large....
Jan 9 2019, 7:17 PM

Dec 19 2018

gordon committed rD52700: Add SA-18:15 and EN-18:16 through EN-18:18..
Add SA-18:15 and EN-18:16 through EN-18:18.
Dec 19 2018, 7:51 PM

Dec 12 2018

gordon committed rD52684: Adjust section for secteam..
Adjust section for secteam.
Dec 12 2018, 7:24 PM
gordon closed D17984: Update secteam. Promote remko to Deputy. Update core team liason to reflect brooks taking the job..

Forgot to add this to the commit message to auto-close. This was committed as r52684.

Dec 12 2018, 7:24 PM

Dec 6 2018

gordon accepted D18443: Fix bugs in plugable CC algorithm and siftr sysctls..

Based on conversation with brooks, this doesn't need an advisory. Local DoS are exempt from SAs and the information leak is very low quality.

Dec 6 2018, 5:05 PM

Dec 4 2018

gordon committed rD52569: Publish FreeBSD-SA-18:14.bhyve..
Publish FreeBSD-SA-18:14.bhyve.
Dec 4 2018, 6:46 PM
gordon committed rS341488: Fix insufficient bounds checking in bhyve(8) device model. [SA-18:14.bhyve].
Fix insufficient bounds checking in bhyve(8) device model. [SA-18:14.bhyve]
Dec 4 2018, 6:38 PM
gordon committed rS341487: Fix insufficient bounds checking in bhyve(8) device model. [SA-18:14.bhyve].
Fix insufficient bounds checking in bhyve(8) device model. [SA-18:14.bhyve]
Dec 4 2018, 6:38 PM
gordon committed rS341486: MFC r341484.
MFC r341484
Dec 4 2018, 6:33 PM
gordon committed rS341485: MFC r341484.
MFC r341484
Dec 4 2018, 6:31 PM
gordon committed rS341484: Always treat firmware request and response sizes as unsigned..
Always treat firmware request and response sizes as unsigned.
Dec 4 2018, 6:29 PM

Nov 27 2018

gordon committed rD52522: Add SA-18:13 and EN-18:13 through EN-18:15..
Add SA-18:13 and EN-18:13 through EN-18:15.
Nov 27 2018, 8:02 PM
gordon committed rS341093: Fix deferred kernel loading breaks loader password. [EN-18:15.loader].
Fix deferred kernel loading breaks loader password. [EN-18:15.loader]
Nov 27 2018, 7:48 PM
gordon committed rS341091: Timezone database information update. [EN-18:14.tzdata].
Timezone database information update. [EN-18:14.tzdata]
Nov 27 2018, 7:44 PM
gordon committed rS341089: Fix ICMP buffer underwrite. [EN-18:13.icmp].
Fix ICMP buffer underwrite. [EN-18:13.icmp]
Nov 27 2018, 7:44 PM
gordon committed rS341088: Fix multiple vulnerabilities in NFS server code. [SA-18:13.nfs].
Fix multiple vulnerabilities in NFS server code. [SA-18:13.nfs]
Nov 27 2018, 7:44 PM

Nov 14 2018

gordon added a reviewer for D17984: Update secteam. Promote remko to Deputy. Update core team liason to reflect brooks taking the job.: secteam.
Nov 14 2018, 5:08 AM
gordon created D17984: Update secteam. Promote remko to Deputy. Update core team liason to reflect brooks taking the job..
Nov 14 2018, 5:07 AM

Oct 25 2018

gordon resigned from D4964: Protect calls to explicit_bzero() via by explicitly disabling the link-time and other optimizations that can cause code elimination..

I don't know enough to review this request. Maybe delphij, emaste or one of the other secteam members has more domain experience here.

Oct 25 2018, 3:23 AM

Oct 24 2018

gordon accepted D16935: rijndael (AES): Avoid leaking sensitive data on kernel stack.

Approved based on timeout from delphij.

Oct 24 2018, 6:04 PM

Oct 20 2018

gordon added a comment to D16985: Fortuna: fix a correctness issue in reseed (fortuna_pre_read).

I have no objection. I'm not sure I'm qualified to weigh in on it. If markm is okay with it, then I would go ahead with it.

Oct 20 2018, 10:57 PM
gordon accepted D17252: random(4): Match enabled sources mask to build options.

Logic looks reasonable to me. I have only read through the logic, not tested it myself.

Oct 20 2018, 10:47 PM

Sep 27 2018

gordon committed rD52312: Add errata notices EN-18:09 through EN-18:12.
Add errata notices EN-18:09 through EN-18:12
Sep 27 2018, 7:12 PM
gordon committed rS338987: Check to ensure the buffer returned is not NULL..
Check to ensure the buffer returned is not NULL.
Sep 27 2018, 6:55 PM
gordon committed rS338986: There are various cases where we modify the inp_vflag and inp_inc.inc_flags.
There are various cases where we modify the inp_vflag and inp_inc.inc_flags
Sep 27 2018, 6:50 PM
gordon committed rS338985: There are various cases where we modify the inp_vflag and inp_inc.inc_flags.
There are various cases where we modify the inp_vflag and inp_inc.inc_flags
Sep 27 2018, 6:49 PM
gordon committed rS338984: MFC r338982..
MFC r338982.
Sep 27 2018, 6:44 PM
gordon committed rS338983: MFC r338982..
MFC r338982.
Sep 27 2018, 6:42 PM
gordon committed rS338982: Clear stack allocated data structure to prevent kernel memory leak..
Clear stack allocated data structure to prevent kernel memory leak.
Sep 27 2018, 6:40 PM
gordon committed rS338981: Fix small kernel memory disclosures. [EN-18:12.mem].
Fix small kernel memory disclosures. [EN-18:12.mem]
Sep 27 2018, 6:36 PM
gordon committed rS338980: Fix DoS in listen syscall over IPv6 socket. [EN-18:11.listen].
Fix DoS in listen syscall over IPv6 socket. [EN-18:11.listen]
Sep 27 2018, 6:34 PM
gordon committed rS338979: Fix NULL pointer dereference in freebsd4_getfsstat. [EN-18:10.syscall].
Fix NULL pointer dereference in freebsd4_getfsstat. [EN-18:10.syscall]
Sep 27 2018, 6:32 PM
gordon committed rS338978: Fix regression in IPv6 fragment reassembly. [EN-18:09.ip].
Fix regression in IPv6 fragment reassembly. [EN-18:09.ip]
Sep 27 2018, 6:30 PM

Sep 12 2018

gordon committed rD52250: Add SA-18:12, EN-18:08..
Add SA-18:12, EN-18:08.
Sep 12 2018, 5:23 AM
gordon committed rS338607: Fix regression in Lazy FPU remediation. [EN-18:08.lazyfpu].
Fix regression in Lazy FPU remediation. [EN-18:08.lazyfpu]
Sep 12 2018, 5:08 AM
gordon committed rS338606: Fix improper elf header parsing. [SA-18:12.elf].
Fix improper elf header parsing. [SA-18:12.elf]
Sep 12 2018, 5:07 AM
gordon committed rS338605: MFC 338603:.
MFC 338603:
Sep 12 2018, 5:03 AM
gordon committed rS338604: MFC 338603:.
MFC 338603:
Sep 12 2018, 5:02 AM
gordon committed rS338603: Correct ELF header parsing code to prevent invalid ELF sections from.
Correct ELF header parsing code to prevent invalid ELF sections from
Sep 12 2018, 4:57 AM

Aug 24 2018

gordon added a comment to D16873: Limit the harvest rate of "fast" entropy for random(4) so as not to overload the system..

@markm Can you please specifically address the comment @jmg posted on this review (and it's ancestor)?

Aug 24 2018, 6:11 PM

Aug 23 2018

gordon added a reviewer for D16860: Use arc4rand() instead of read_random(): secteam.

Add secteam instead of just me.

Aug 23 2018, 3:48 PM

Jun 21 2018

gordon committed rD51892: Add today's advisory and notices..
Add today's advisory and notices.
Jun 21 2018, 5:38 AM
gordon committed rS335466: Fix TLB shootdown for Xen based guests. [EN-18:07.pmap].
Fix TLB shootdown for Xen based guests. [EN-18:07.pmap]
Jun 21 2018, 5:18 AM
gordon committed rS335465: Fix Lazy FPU information disclosure. [SA-18:07.lazyfpu].
Fix Lazy FPU information disclosure. [SA-18:07.lazyfpu]
Jun 21 2018, 5:17 AM

May 20 2018

gordon committed rD51679: Remove references to Perforce from the website..
Remove references to Perforce from the website.
May 20 2018, 11:11 PM
gordon closed D15392: Remove Perforce from the documentation tree..
May 20 2018, 11:11 PM
gordon committed rP470436: MFH: r469706.
MFH: r469706
May 20 2018, 12:02 AM

May 12 2018

gordon updated the diff for D15392: Remove Perforce from the documentation tree..

Address feedback from bjk.

May 12 2018, 6:36 AM
gordon added inline comments to D15392: Remove Perforce from the documentation tree..
May 12 2018, 6:35 AM
gordon committed rP469706: Perforce has removed the server components for FreeBSD..
Perforce has removed the server components for FreeBSD.
May 12 2018, 3:50 AM

May 11 2018

gordon created D15392: Remove Perforce from the documentation tree..
May 11 2018, 5:12 PM

May 8 2018

gordon committed rD51632: Add today's advisories..
Add today's advisories.
May 8 2018, 5:25 PM
gordon committed rS333375: Update timezone database information. [EN-18:06.tzdata].
Update timezone database information. [EN-18:06.tzdata]
May 8 2018, 5:18 PM
gordon committed rS333372: Fix multiple small kernel memory disclosures. [EN-18:05.mem].
Fix multiple small kernel memory disclosures. [EN-18:05.mem]
May 8 2018, 5:15 PM
gordon committed rS333371: Fix mishandling of x86 debug exceptions. [SA-18:06.debugreg].
Fix mishandling of x86 debug exceptions. [SA-18:06.debugreg]
May 8 2018, 5:12 PM

Apr 4 2018

gordon committed rD51534: Add SA-18:04.vt, SA-18:05.ipsec, EN-18:03.tzdata, EN-18:04.mem..
Add SA-18:04.vt, SA-18:05.ipsec, EN-18:03.tzdata, EN-18:04.mem.
Apr 4 2018, 5:57 AM
gordon committed rD51533: Add SA-18:04.vt, SA-18:05.ipsec, EN-18:03.tzdata, EN-18:04.mem..
Add SA-18:04.vt, SA-18:05.ipsec, EN-18:03.tzdata, EN-18:04.mem.
Apr 4 2018, 5:55 AM
gordon committed rS331987: Fix multiple small kernel memory disclosures. [EN-18:04.mem].
Fix multiple small kernel memory disclosures. [EN-18:04.mem]
Apr 4 2018, 5:43 AM
gordon committed rS331986: Update timezone database information. [EN-18:03.tzdata].
Update timezone database information. [EN-18:03.tzdata]
Apr 4 2018, 5:41 AM
gordon committed rS331985: Fix ipsec crash or denial of service. [SA-18:05.ipsec].
Fix ipsec crash or denial of service. [SA-18:05.ipsec]
Apr 4 2018, 5:38 AM
gordon committed rS331984: Fix vt console memory disclosure. [SA-18:04.vt].
Fix vt console memory disclosure. [SA-18:04.vt]
Apr 4 2018, 5:34 AM
gordon committed rS331983: MFC r331981:.
MFC r331981:
Apr 4 2018, 5:26 AM
gordon committed rS331982: MFC r331981:.
MFC r331981:
Apr 4 2018, 5:25 AM
gordon committed rS331981: Limit glyph count in vtfont_load to avoid integer overflow..
Limit glyph count in vtfont_load to avoid integer overflow.
Apr 4 2018, 5:22 AM

Mar 14 2018

gordon committed rD51482: Add FreeBSD-SA-18:03.speculative_execution..
Add FreeBSD-SA-18:03.speculative_execution.
Mar 14 2018, 4:15 AM
gordon committed rS330908: Add mitigations for two classes of speculative execution vulnerabilities.
Add mitigations for two classes of speculative execution vulnerabilities
Mar 14 2018, 4:00 AM

Mar 8 2018

gordon committed rD51472: Update SA-18:01 with revision and a new patch..
Update SA-18:01 with revision and a new patch.
Mar 8 2018, 6:17 AM
gordon committed rS330631: Bump newvers and document the updated patch for SA-18:01.ipsec.
Bump newvers and document the updated patch for SA-18:01.ipsec
Mar 8 2018, 6:17 AM

Mar 7 2018

gordon committed rD51470: Correct patches for 10.x along with updated advisory..
Correct patches for 10.x along with updated advisory.
Mar 7 2018, 5:31 PM
gordon committed rS330611: Correct patch for ipsec vulnerability..
Correct patch for ipsec vulnerability.
Mar 7 2018, 5:17 PM
gordon committed rS330609: Fixup the AH patch to properly compile..
Fixup the AH patch to properly compile.
Mar 7 2018, 4:55 PM
gordon committed rD51468: Remove myself now that I have commited the NTP patches..
Remove myself now that I have commited the NTP patches.
Mar 7 2018, 2:58 PM