Index: stable/10/release/doc/share/xml/errata.xml =================================================================== --- stable/10/release/doc/share/xml/errata.xml (revision 308134) +++ stable/10/release/doc/share/xml/errata.xml (revision 308135) @@ -1,109 +1,116 @@ Errata Date Topic FreeBSD-EN-16:06.libc 4 May 2016 Performance regression in libc &man.hash.3; FreeBSD-EN-16:07.ipi 4 May 2016 Excessive latency in x86 IPI delivery FreeBSD-EN-16:08.zfs 4 May 2016 Memory leak in ZFS FreeBSD-EN-16:09.freebsd-update 25 July 2016 Fix &man.freebsd-update.8; support of &os; 11.0-RELEASE FreeBSD-EN-16:10.dhclient 11 August 2016 Better handle unknown options received from aDHCP server FreeBSD-EN-16:11.vmbus 11 August 2016 Avoid using spin locks for channel message locks FreeBSD-EN-16:12.hv_storvsc 11 August 2016 Enable INQUIRY result check only on Windows 10 host systems FreeBSD-EN-16:13.vmbus 11 August 2016 Register time counter early enough for TSC freq calibration FreeBSD-EN-16:14.hv_storvsc 11 August 2016 Disable incorrect callout in &man.hv.storvsc.4; FreeBSD-EN-16:15.vmbus 11 August 2016 Better handle the GPADL setup failure in Hyper-V FreeBSD-EN-16:16.hv_storvsc 11 August 2016 Fix SCSI INQUIRY checks and error handling + + + FreeBSD-EN-16:17.vm + 25 October 2016 + Several virtual memory issues + Index: stable/10/release/doc/share/xml/security.xml =================================================================== --- stable/10/release/doc/share/xml/security.xml (revision 308134) +++ stable/10/release/doc/share/xml/security.xml (revision 308135) @@ -1,100 +1,136 @@ Advisory Date Topic FreeBSD-SA-16:09.ntp 29 April 2016 Multiple ntp vulnerabilities. FreeBSD-SA-16:17.openssl 29 April 2016 Multiple OpenSSL vulnerabilities. FreeBSD-SA-16:18.atkbd 17 May 2016 Keyboard driver buffer overflow FreeBSD-SA-16:19.sendmsg 17 May 2016 Incorrect argument handling in &man.sendmsg.2; FreeBSD-SA-16:20.linux 31 May 2016 Kernel stack disclosure in Linux compatibility layer FreeBSD-SA-16:21.43bsd 31 May 2016 Kernel stack disclosure in 4.3BSD compatibility layer FreeBSD-SA-16:22.libarchive 31 May 2016 Absolute path traversal vulnerability FreeBSD-SA-16:23.libarchive 31 May 2016 Absolute path traversal vulnerability FreeBSD-SA-16:24.ntp 3 June 2016 Multiple ntp vulnerabilties FreeBSD-SA-16:25.bspatch 25 July 2016 heap overflow vulnerability + + + FreeBSD-SA-16:26.openssl + 23 September 2016 + Multiple vulnerabilities + + + + FreeBSD-SA-16:27.openssl + 26 September 2016 + Regression in OpenSSL + suite + + + + FreeBSD-SA-16:29.bspatch + 10 October 2016 + Heap overflow vulnerability + + + + FreeBSD-SA-16:30.portsnap + 10 October 2016 + Multiple vulnerabilities + + + + FreeBSD-SA-16:31.libarchive + 10 October 2016 + Multiple vulnerabilities + Index: stable/11/release/doc/share/xml/errata.xml =================================================================== --- stable/11/release/doc/share/xml/errata.xml (revision 308134) +++ stable/11/release/doc/share/xml/errata.xml (revision 308135) @@ -1,28 +1,29 @@ Errata Date Topic - No errata notices. -   -   + FreeBSD-EN-16:18.loader + 25 October 2016 + Loader may hang during boot Index: stable/11/release/doc/share/xml/security.xml =================================================================== --- stable/11/release/doc/share/xml/security.xml (revision 308134) +++ stable/11/release/doc/share/xml/security.xml (revision 308135) @@ -1,28 +1,29 @@ Advisory Date Topic - No advisories. -   -   + FreeBSD-SA-16:32.bhyve + 25 October 2016 + Privilege escalation vulnerability Index: stable/9/release/doc/share/xml/security.xml =================================================================== --- stable/9/release/doc/share/xml/security.xml (revision 308134) +++ stable/9/release/doc/share/xml/security.xml (revision 308135) @@ -1,457 +1,501 @@ Advisory Date Topic FreeBSD-SA-14:18.openssl 9 September 2014 Multiple vulnerabilities FreeBSD-SA-14:19.tcp 16 September 2014 Denial of Service in TCP packet processing. FreeBSD-SA-14:20.rtsold 21 October 2014 Remote buffer overflow vulnerability. FreeBSD-SA-14:21.routed 21 October 2014 Remote denial of service vulnerability. FreeBSD-SA-14:22.namei 21 October 2014 Memory leak in sandboxed namei lookup. FreeBSD-SA-14:23.openssl 21 October 2014 Multiple vulerabilities. FreeBSD-SA-14:25.setlogin 04 November 2014 Kernel stack disclosure. FreeBSD-SA-14:26.ftp 04 November 2014 Remote code execution. FreeBSD-SA-14:28.file 10 December 2014 Multiple vulnerabilities in &man.file.1; and &man.libmagic.3; FreeBSD-SA-14:29.bind 10 December 2014 Remote denial of service vulnerability FreeBSD-SA-14:31.ntp 23 December 2014 Multiple vulnerabilities FreeBSD-SA-15:01.openssl 14 January 2015 Multiple vulnerabilities FreeBSD-SA-15:02.kmem 27 January 2015 SCTP kernel memory corruption and disclosure vulnerability FreeBSD-SA-15:03.sctp 27 January 2015 SCTP stream reset vulnerability FreeBSD-SA-15:04.igmp 25 February 2015 Integer overflow in IGMP protocol FreeBSD-SA-15:05.igmp 25 February 2015 Remote denial of service vulnerability FreeBSD-SA-15:06.openssl 19 March 2015 Multiple vulnerabilities FreeBSD-SA-15:07.ntp 7 April 2015 Multiple vulnerabilities FreeBSD-SA-15:09.ipv6 7 April 2015 Router advertisement Denial of Service FreeBSD-SA-15:10.openssl 16 June 2015 Multiple vulnerabilities FreeBSD-SA-15:11.bind 7 July 2015 Resolver remote denial of service FreeBSD-SA-15:13.tcp 21 July 2015 resource exhaustion due to sessions stuck in LAST_ACK state. FreeBSD-SA-15:15.tcp 28 July 2015 resource exhaustion in TCP reassembly FreeBSD-SA-15:16.openssh 28 July 2015 Multiple vulnerabilities FreeBSD-SA-15:17.bind 28 July 2015 Remote denial of service vulnerability FreeBSD-SA-15:19.routed 5 August 2015 Remote denial of service vulnerability FreeBSD-SA-15:20.expat 18 August 2015 Fix multiple integer overflows in &man.libbsdxml.3;. FreeBSD-SA-15:21.amd64 25 August 2015 Fix local privilege escalation in IRET handler. FreeBSD-SA-15:22.openssh 25 August 2015 Multiple vulnerabilities FreeBSD-SA-15:23.bind 2 September 2015 Remote denial of service vulnerability FreeBSD-SA-15:24.rpcbind 29 September 2015 Remote denial of service FreeBSD-SA-15:25.ntp 26 October 2015 Multiple vulnerabilities FreeBSD-SA-15:26.openssl 5 December 2015 Multiple vulnerabilities FreeBSD-SA-15:27.bind 16 December 2015 Remote denial of service FreeBSD-SA-16:01.sctp 14 January 2016 ICMPv6 error message vulnerability FreeBSD-SA-16:02.ntp 14 January 2016 Panic threshold bypass vulnerability FreeBSD-SA-16:03.linux 14 January 2016 Incorrect futex handling FreeBSD-SA-16:04.linux 14 January 2016 &man.setgroups.2; system call vulnerability FreeBSD-SA-16:05.tcp 14 January 2016 MD5 signature denial of service FreeBSD-SA-16:06.bsnmpd 14 January 2016 Insecure default configuration file permissions FreeBSD-SA-16:07.openssh 14 January 2016 OpenSSH client information leak FreeBSD-SA-16:08.bind 27 January 2016 Remote denial of service vulnerability. FreeBSD-SA-16:09.ntp 27 January 2016 Multiple vulnerabilities. FreeBSD-SA-16:10.linux 27 January 2016 &man.issetugid.2; system call vulnerability. FreeBSD-SA-16:11.openssl 30 January 2016 SSLv2 cipher suite downgrade vulnerability. FreeBSD-SA-16:12.openssl 7 March 2016 Multiple vulnerabilities FreeBSD-SA-16:13.bind 10 March 2016 Multiple vulnerabilities FreeBSD-SA-16:14.openssh-xauth 16 March 2016 OpenSSH xauth injection vulnerability FreeBSD-SA-16:15.sysarch 16 March 2016 Incorrect argument validation in &man.sysarch.2; FreeBSD-SA-16:09.ntp 29 April 2016 Multiple ntp vulnerabilities. FreeBSD-SA-16:17.openssl 29 April 2016 Multiple OpenSSL vulnerabilities. FreeBSD-SA-16:18.atkbd 17 May 2016 Keyboard driver buffer overflow FreeBSD-SA-16:19.sendmsg 17 May 2016 Incorrect argument handling in &man.sendmsg.2; FreeBSD-SA-16:20.linux 31 May 2016 Kernel stack disclosure in Linux compatibility layer FreeBSD-SA-16:21.43bsd 31 May 2016 Kernel stack disclosure in 4.3BSD compatibility layer FreeBSD-SA-16:22.libarchive 31 May 2016 Absolute path traversal vulnerability FreeBSD-SA-16:23.libarchive 31 May 2016 Absolute path traversal vulnerability FreeBSD-SA-16:24.ntp 3 June 2016 Multiple ntp vulnerabilties FreeBSD-SA-16:25.bspatch 25 July 2016 heap overflow vulnerability + + + FreeBSD-SA-16:26.openssl + 23 September 2016 + Multiple vulnerabilities + + + + FreeBSD-SA-16:27.openssl + 26 September 2016 + Regression in OpenSSL + suite + + + + FreeBSD-SA-16:28.bind + 10 October 2016 + BIND denial of + service + + + + FreeBSD-SA-16:29.bspatch + 10 October 2016 + Heap overflow vulnerability + + + + FreeBSD-SA-16:30.portsnap + 10 October 2016 + Multiple vulnerabilities + + + + FreeBSD-SA-16:31.libarchive + 10 October 2016 + Multiple vulnerabilities +