<?xml version="1.0" encoding="ISO-8859-1"?>
<rss version="0.92">
  <channel>
    <title>OpenBSD 42 Errata</title>
    <link>http://www.openbsd.org/errata42.html</link>
    <description>OpenBSD 42 Errata</description>
    <language>en-us</language>
    <managingEditor>mike@erdelynet.com</managingEditor>

    <image>
      <title>erdelynet.com</title>
      <url>http://erdelynet.com/images/puffy96x83.gif</url>
      <link>http://www.openbsd.org/errata42.html</link>
      <width>96</width>
      <height>83</height>
      <description>OpenBSD 42 Errata</description>
    </image>

    <item>
      <title>014 RELIABILITY 014_pcb</title>
      <link>http://www.openbsd.org/errata42.html#014_pcb</link>
      <category>RELIABILITY</category>
      <architecture>All architectures</architecture>
      <pubDate>July 29, 2008</pubDate>
      <description><![CDATA[
 Some kinds of IPv6 usage would leak kernel memory (in particular, this path  was exercised by the named(8) patch for port randomization).  Since INET6 is  enabled by default, this condition affects all systems. <br> <a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/4.2/common/014_pcb.patch"> A source code patch exists which remedies this problem</a>.<br>
]]></description>
    </item>

    <item>
      <title>013 SECURITY 013_bind</title>
      <link>http://www.openbsd.org/errata42.html#013_bind</link>
      <category>SECURITY</category>
      <architecture>All architectures</architecture>
      <pubDate>July 23, 2008</pubDate>
      <description><![CDATA[
 <strong>2nd revision, July 23, 2008</strong><br> A vulnerability has been found with BIND. An attacker could use this vulnerability to poison the cache of a recursive resolving name server. <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1447">CVE-2008-1447</a>. <br> <a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/4.2/common/013_bind.patch"> A source code patch exists which remedies this problem</a>.<br>
]]></description>
    </item>

    <item>
      <title>012 SECURITY 012_xorg2</title>
      <link>http://www.openbsd.org/errata42.html#012_xorg2</link>
      <category>SECURITY</category>
      <architecture>All architectures</architecture>
      <pubDate>July 15, 2008</pubDate>
      <description><![CDATA[
 Multiple vulnerabilities have been discovered in X.Org.<br> RENDER Extension heap buffer overflow, RENDER Extension crash, RENDER Extension memory corruption, MIT-SHM arbitrary memory read, RECORD and Security extensions memory corruption. <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2360">CVE-2008-2360</a>, <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2361">CVE-2008-2361</a>, <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2362">CVE-2008-2362</a>, <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1379">CVE-2008-1379</a>, <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1377">CVE-2008-1377</a>. <br> <a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/4.2/common/012_xorg2.patch"> A source code patch exists which remedies this problem</a>.<br>
]]></description>
    </item>

    <item>
      <title>011 SECURITY 011_openssh2</title>
      <link>http://www.openbsd.org/errata42.html#011_openssh2</link>
      <category>SECURITY</category>
      <architecture>All architectures</architecture>
      <pubDate>April 3, 2008</pubDate>
      <description><![CDATA[
 Avoid possible hijacking of X11-forwarded connections with sshd(8) by refusing to listen on a port unless all address families bind successfully.<br> <a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/4.2/common/011_openssh2.patch"> A source code patch exists which remedies this problem</a>.<br>
]]></description>
    </item>

    <item>
      <title>010 SECURITY 010_openssh</title>
      <link>http://www.openbsd.org/errata42.html#010_openssh</link>
      <category>SECURITY</category>
      <architecture>All architectures</architecture>
      <pubDate>March 30, 2008</pubDate>
      <description><![CDATA[
 sshd(8) would execute ~/.ssh/rc even when a sshd_config(5) <em>ForceCommand</em> directive was in effect, allowing users with write access to this file to execute arbitrary commands. This behaviour was documented, but was an unsafe default and an extra hassle for administrators.<br> <a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/4.2/common/010_openssh.patch"> A source code patch exists which remedies this problem</a>.<br>
]]></description>
    </item>

    <item>
      <title>009 SECURITY 009_ppp</title>
      <link>http://www.openbsd.org/errata42.html#009_ppp</link>
      <category>SECURITY</category>
      <architecture>All architectures</architecture>
      <pubDate>March 7, 2008</pubDate>
      <description><![CDATA[
 Buffer overflow in ppp command prompt parsing.<br> <a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/4.2/common/009_ppp.patch"> A source code patch exists which remedies this problem</a>.<br>
]]></description>
    </item>

    <item>
      <title>008 RELIABILITY 008_ip6rthdr</title>
      <link>http://www.openbsd.org/errata42.html#008_ip6rthdr</link>
      <category>RELIABILITY</category>
      <architecture>All architectures</architecture>
      <pubDate>February 25, 2008</pubDate>
      <description><![CDATA[
 Malformed IPv6 routing headers can cause a kernel panic.<br> <a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/4.2/common/008_ip6rthdr.patch"> A source code patch exists which remedies this problem</a>.<br>
]]></description>
    </item>

    <item>
      <title>007 RELIABILITY 007_tcprespond</title>
      <link>http://www.openbsd.org/errata42.html#007_tcprespond</link>
      <category>RELIABILITY</category>
      <architecture>All architectures</architecture>
      <pubDate>February 22, 2008</pubDate>
      <description><![CDATA[
 Incorrect assumptions in tcp_respond can lead to a kernel panic.<br> <a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/4.2/common/007_tcprespond.patch"> A source code patch exists which remedies this problem</a>.<br>
]]></description>
    </item>

    <item>
      <title>006 SECURITY 006_xorg</title>
      <link>http://www.openbsd.org/errata42.html#006_xorg</link>
      <category>SECURITY</category>
      <architecture>All architectures</architecture>
      <pubDate>February 8, 2008</pubDate>
      <description><![CDATA[
 <strong>2nd revision, February 10, 2008</strong><br> Multiple vulnerabilities have been discovered in X.Org.<br> XFree86 Misc extension out of bounds array index, File existence disclosure, Xinput extension memory corruption, TOG-cup extension memory corruption, MIT-SHM and EVI extensions integer overflows, PCF Font parser buffer overflow. <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5760">CVE-2007-5760</a>, <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5958">CVE-2007-5958</a>, <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-6427">CVE-2007-6427</a>, <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-6428">CVE-2007-6428</a>, <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-6429">CVE-2007-6429</a>, <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0006">CVE-2008-0006</a>. <br> <a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/4.2/common/006_xorg.patch"> A source code patch exists which remedies this problem</a>.<br>
]]></description>
    </item>

    <item>
      <title>005 RELIABILITY 005_ifrtlabel</title>
      <link>http://www.openbsd.org/errata42.html#005_ifrtlabel</link>
      <category>RELIABILITY</category>
      <architecture>All architectures</architecture>
      <pubDate>January 11, 2008</pubDate>
      <description><![CDATA[
 A missing NULL pointer check can lead to a kernel panic.<br> <a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/4.2/common/005_ifrtlabel.patch"> A source code patch exists which remedies this problem</a>.<br>
]]></description>
    </item>

    <item>
      <title>004 RELIABILITY 004_pf</title>
      <link>http://www.openbsd.org/errata42.html#004_pf</link>
      <category>RELIABILITY</category>
      <architecture>All architectures</architecture>
      <pubDate>November 27, 2007</pubDate>
      <description><![CDATA[
 A memory leak in pf can lead to machine lockups.<br> <a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/4.2/common/004_pf.patch"> A source code patch exists which remedies this problem</a>.<br>
]]></description>
    </item>

    <item>
      <title>003 CD BOOT FAILURE ON OLDER COMPUTERS  003_i386_boot</title>
      <link>http://www.openbsd.org/errata42.html#003_i386_boot</link>
      <category>CD BOOT FAILURE ON OLDER COMPUTERS </category>
      <architecture>i386 only</architecture>
      <pubDate>October 30, 2007</pubDate>
      <description><![CDATA[
 Some older BIOSes are unable to boot CD1 (ie. the commercial release sold by the project, not the CD images available on the net). A workaround using CD2 (amd64 architecture) is as follows. (An amd64 machine is <i>NOT</i> required for this to work.)<br> <br>  <ol> <li>Insert CD2 and tell your computer to boot it;<br> <li>When the <tt>boot></tt> prompt appears, stop the automatic boot by pressing the space bar;<br> <li>Remove CD2 and insert CD1;<br> <li>Erase the character you typed to stop the boot, type<br> <tt><b>boot /4.2/i386/bsd.rd</b></tt><br> then press <i>Enter</i>. </ol> 
]]></description>
    </item>

    <item>
      <title>002 SECURITY 002_openssl</title>
      <link>http://www.openbsd.org/errata42.html#002_openssl</link>
      <category>SECURITY</category>
      <architecture>All architectures</architecture>
      <pubDate>October 10, 2007</pubDate>
      <description><![CDATA[
 The SSL_get_shared_ciphers() function in OpenSSL contains an off-by-one overflow.<br> <a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/4.2/common/002_openssl.patch"> A source code patch exists which remedies this problem</a>.<br>
]]></description>
    </item>

    <item>
      <title>001 SECURITY 001_dhcpd</title>
      <link>http://www.openbsd.org/errata42.html#001_dhcpd</link>
      <category>SECURITY</category>
      <architecture>All architectures</architecture>
      <pubDate>October 8, 2007</pubDate>
      <description><![CDATA[
 Malicious DHCP clients could cause dhcpd(8) to corrupt its stack<br> A DHCP client that claimed to require a maximum message size less than the minimum IP MTU could cause dhcpd(8) to overwrite stack memory. <br> <a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/4.2/common/001_dhcpd.patch"> A source code patch exists which remedies this problem</a>.<br>
]]></description>
    </item>

  </channel>
</rss>
