Index: stable/10/release/doc/share/xml/errata.xml =================================================================== --- stable/10/release/doc/share/xml/errata.xml (revision 284858) +++ stable/10/release/doc/share/xml/errata.xml (revision 284859) @@ -1,69 +1,90 @@ Errata Date Topic FreeBSD-EN-14:13.freebsd-update 23 December 2014 Fixed directory deletion issue in &man.freebsd-update.8; FreeBSD-EN-15:01.vt 25 February 2015 &man.vt.4; crash with improper ioctl parameters FreeBSD-EN-15:02.openssl 25 February 2015 OpenSSL update FreeBSD-EN-15:03.freebsd-update 25 February 2015 &man.freebsd-update.8; updates libraries in suboptimal order FreeBSD-EN-15:04.freebsd-update 13 May 2015 &man.freebsd-update.8; does not ensure the previous upgrade has completed FreeBSD-EN-15:05.ufs 13 May 2015 Deadlock on reboot with UFS tuned with SU+J + + + FreeBSD-EN-15:06.file + 9 June 2015 + Multiple denial of service issues + + + + FreeBSD-EN-15:07.zfs + 9 June 2015 + ZFS reliability improvements + + + + FreeBSD-EN-15:08.sendmail + 18 June 2015 + Sendmail TLS/DH interoperability improvement + Index: stable/10/release/doc/share/xml/security.xml =================================================================== --- stable/10/release/doc/share/xml/security.xml (revision 284858) +++ stable/10/release/doc/share/xml/security.xml (revision 284859) @@ -1,114 +1,121 @@ Advisory Date Topic FreeBSD-SA-14:27.stdio 10 December 2014 Buffer overflow in stdio FreeBSD-SA-14:28.file 10 December 2014 Multiple vulnerabilities in &man.file.1; and &man.libmagic.3; FreeBSD-SA-14:30.unbound 17 December 2014 Remote denial of service vulnerability FreeBSD-SA-14:31.ntp 23 December 2014 Multiple vulnerabilities in NTP suite FreeBSD-SA-15:01.openssl 14 January 2015 Multiple vulnerabilities in OpenSSL FreeBSD-SA-15:02.kmem 27 January 2015 SCTP kernel memory corruption and disclosure vulnerability FreeBSD-SA-15:03.sctp 27 January 2015 SCTP stream reset vulnerability FreeBSD-SA-15:04.igmp 25 February 2015 Integer overflow in IGMP protocol FreeBSD-SA-15:06.openssl 19 March 2015 Multiple vulnerabilities FreeBSD-SA-15:07.ntp 7 April 2015 Multiple vulnerabilities FreeBSD-SA-15:08.bsdinstall 7 April 2015 Insecure default GELI key file permissions FreeBSD-SA-15:09.ipv6 7 April 2015 Router advertisement Denial of Service + + + FreeBSD-SA-15:10.openssl + 16 June 2015 + Multiple vulnerabilities + Index: stable/8/release/doc/share/xml/errata.xml =================================================================== --- stable/8/release/doc/share/xml/errata.xml (revision 284858) +++ stable/8/release/doc/share/xml/errata.xml (revision 284859) @@ -1,139 +1,153 @@ Errata Date Topic FreeBSD-EN-13:01.fxp 28 June 2013 Fixed a problem where &man.dhclient.8; would infinitely try to intialize &man.fxp.4; FreeBSD-EN-13:02.vtnet 28 June 2013 Fixed a problem frames sent to additional MAC addresses are not forwarded to the &man.vtnet.4; interface FreeBSD-EN-13:04.freebsd-update 26 October 2013 Multiple fixes FreeBSD-EN-13:05.freebsd-update 28 November 2013 Fix INDEX generation FreeBSD-EN-14:01.random 14 January 2014 Disable hardware RNGs by default FreeBSD-EN-14:02.mmap 14 January 2014 Fix incorrect coalescing of stack entry FreeBSD-EN-14:03.pkg 15 May 2014 Add pkg bootstrapping, configuration and public keys FreeBSD-EN-14:04.kldxref 15 May 2014 Improve build repeatability for &man.kldxref.8; FreeBSD-EN-14:06.exec 3 June 2014 Fix triple-fault when executing from a threaded process FreeBSD-EN-14:08.heimdal 24 June 2014 Fix gss_pseudo_random() interoperability issue FreeBSD-EN-14:09.jail 8 July 2014 Fix jail fails to start if WITHOUT_INET/WITHOUT_INET6 is use FreeBSD-EN-14:10.tzdata 21 October 2014 Time zone data file update FreeBSD-EN-14:12.zfs 4 November 2014 Fix NFSv4 and ZFS cache consistency issue FreeBSD-EN-14:13.freebsd-update 23 December 2014 Fix directory deletion issue FreeBSD-EN-15:02.openssl 25 February 2015 OpenSSL update FreeBSD-EN-15:03.freebsd-update 25 February 2015 &man.freebsd-update.8; updates libraries in suboptimal order FreeBSD-EN-15:04.freebsd-update 13 May 2015 &man.freebsd-update.8; does not ensure the previous upgrade has completed + + + FreeBSD-EN-15:06.file + 9 June 2015 + Multiple denial of service issues + + + + FreeBSD-EN-15:08.sendmail + 18 June 2015 + Sendmail TLS/DH interoperability improvement + Index: stable/8/release/doc/share/xml/security.xml =================================================================== --- stable/8/release/doc/share/xml/security.xml (revision 284858) +++ stable/8/release/doc/share/xml/security.xml (revision 284859) @@ -1,258 +1,265 @@ Advisory Date Topic FreeBSD-SA-13:07.bind 26 July 2013 Denial of Service vulnerability in &man.named.8; FreeBSD-SA-13:09.ip_multicast 21 August 2013 Integer overflow in computing the size of a temporary buffer can result in a buffer which is too small for the requested operation FreeBSD-SA-13:10.sctp 21 August 2013 Fix a bug that could lead to kernel memory disclosure with SCTP state cookie FreeBSD-SA-13:12.ifioctl 10 September 2013 In IPv6 and NetATM, stop SIOCSIFADDR, SIOCSIFBRDADDR, SIOCSIFDSTADDR and SIOCSIFNETMASK at the socket layer rather than pass them on to the link layer without validation or credential checks FreeBSD-SA-13:13.nullfs 10 September 2013 Prevent cross-mount hardlinks between different nullfs mounts of the same underlying filesystem FreeBSD-SA-14:01.bsnmpd 14 January 2014 bsnmpd remote denial of service vulnerability FreeBSD-SA-14:02.ntpd 14 January 2014 ntpd distributed reflection Denial of Service vulnerability FreeBSD-SA-14:04.bind 14 January 2014 BIND remote denial of service vulnerability FreeBSD-SA-14:05.nfsserver 8 April 2014 NFS deadlock vulnerability FreeBSD-SA-14:06.openssl 8 April 2014 ECDSA Cache Side-channel Attack in OpenSSL FreeBSD-SA-14:08.tcp 30 April 2014 TCP reassembly vulnerability FreeBSD-SA-14:11.sendmail 5 June 2014 sendmail improper close-on-exec flag handling FreeBSD-SA-14:12.ktrace 5 June 2014 ktrace memory disclosure FreeBSD-SA-14:14.openssl 5 June 2014 OpenSSL multiple vulnerabilities FreeBSD-SA-14:16.file 5 June 2014 Multiple vulnerabilities in &man.file.1; and &man.libmagic.3; FreeBSD-SA-14:17.kmem 8 July 2014 kernel memory disclosure in control message and SCTP notifications FreeBSD-SA-14:18.openssl 9 September 2014 Multiple vulnerabilities in OpenSSL FreeBSD-SA-14:19.tcp 16 September 2014 Denial of Service in TCP packet processing FreeBSD-SA-14:21.routed 21 October 2014 &man.routed.8; denial of service vulnerability FreeBSD-SA-14:23.openssl 21 October 2014 Multiple vulnerabilities in OpenSSL FreeBSD-SA-14:25.setlogin 4 November 2014 kernel stack disclosure in &man.setlogin.2; and &man.getlogin.2; FreeBSD-SA-14:26.ftp 4 November 2014 Remote command execution in &man.ftp.1; FreeBSD-SA-14:28.file 10 December 2014 Multiple vulnerabilities in &man.file.1; and &man.libmagic.3; FreeBSD-SA-14:29.bind 10 December 2014 BIND remote denial of service vulnerability FreeBSD-SA-14:31.ntp 23 December 2014 Multiple vulnerabilities in NTP suite FreeBSD-SA-15:01.ntp 14 January 2015 Multiple vulnerabilities in OpenSSL FreeBSD-SA-15:02.kmem 27 January 2015 Fix SCTP SCTP_SS_VALUE kernel memory corruption and disclosure vulnerability FreeBSD-SA-15:03.sctp 27 January 2015 Fix SCTP stream reset vulnerability FreeBSD-SA-15:04.igmp 25 February 2015 Integer overflow in IGMP protocol FreeBSD-SA-15:05.igmp 25 February 2015 Remote denial of service vulnerability FreeBSD-SA-15:06.openssl 19 March 2015 Multiple vulnerabilities FreeBSD-SA-15:07.ntp 7 April 2015 Multiple vulnerabilities FreeBSD-SA-15:09.ipv6 7 April 2015 Router advertisement Denial of Service + + + FreeBSD-SA-15:10.openssl + 16 June 2015 + Multiple vulnerabilities + Index: stable/9/release/doc/share/xml/errata.xml =================================================================== --- stable/9/release/doc/share/xml/errata.xml (revision 284858) +++ stable/9/release/doc/share/xml/errata.xml (revision 284859) @@ -1,84 +1,98 @@ Errata Date Topic FreeBSD-EN-14:10.tzdata 21 October 2014 Time zone data file update FreeBSD-EN-14:11.crypt 21 October 2014 Change &man.crypt.3; default hashing algorithm back to DES FreeBSD-EN-14:12.zfs 11 November 2014 Fix NFSv4 and ZFS cache consistency issue FreeBSD-EN-14:13.freebsd-update 23 December 2014 Fixed directory deletion issue in &man.freebsd-update.8; FreeBSD-EN-15:01.vt 25 February 2015 &man.vt.4; crash with improper ioctl parameters FreeBSD-EN-15:02.openssl 25 February 2015 OpenSSL update FreeBSD-EN-15:03.freebsd-update 25 February 2015 &man.freebsd-update.8; updates libraries in suboptimal order FreeBSD-EN-15:04.freebsd-update 13 May 2015 &man.freebsd-update.8; does not ensure the previous upgrade has completed + + + FreeBSD-EN-15:06.file + 9 June 2015 + Multiple denial of service issues + + + + FreeBSD-EN-15:08.sendmail + 18 June 2015 + Sendmail TLS/DH interoperability improvement + Index: stable/9/release/doc/share/xml/security.xml =================================================================== --- stable/9/release/doc/share/xml/security.xml (revision 284858) +++ stable/9/release/doc/share/xml/security.xml (revision 284859) @@ -1,153 +1,160 @@ Advisory Date Topic FreeBSD-SA-14:18.openssl 9 September 2014 Multiple vulnerabilities FreeBSD-SA-14:19.tcp 16 September 2014 Denial of Service in TCP packet processing. FreeBSD-SA-14:20.rtsold 21 October 2014 Remote buffer overflow vulnerability. FreeBSD-SA-14:21.routed 21 October 2014 Remote denial of service vulnerability. FreeBSD-SA-14:22.namei 21 October 2014 Memory leak in sandboxed namei lookup. FreeBSD-SA-14:23.openssl 21 October 2014 Multiple vulerabilities. FreeBSD-SA-14:25.setlogin 04 November 2014 Kernel stack disclosure. FreeBSD-SA-14:26.ftp 04 November 2014 Remote code execution. FreeBSD-SA-14:28.file 10 December 2014 Multiple vulnerabilities in &man.file.1; and &man.libmagic.3; FreeBSD-SA-14:29.bind 10 December 2014 Remote denial of service vulnerability FreeBSD-SA-14:31.ntp 23 December 2014 Multiple vulnerabilities FreeBSD-SA-15:01.openssl 14 January 2015 Multiple vulnerabilities FreeBSD-SA-15:02.kmem 27 January 2015 SCTP kernel memory corruption and disclosure vulnerability FreeBSD-SA-15:03.sctp 27 January 2015 SCTP stream reset vulnerability FreeBSD-SA-15:04.igmp 25 February 2015 Integer overflow in IGMP protocol FreeBSD-SA-15:05.igmp 25 February 2015 Remote denial of service vulnerability FreeBSD-SA-15:06.openssl 19 March 2015 Multiple vulnerabilities FreeBSD-SA-15:07.ntp 7 April 2015 Multiple vulnerabilities FreeBSD-SA-15:09.ipv6 7 April 2015 Router advertisement Denial of Service + + + FreeBSD-SA-15:10.openssl + 16 June 2015 + Multiple vulnerabilities +