New errata: SA-04:07.cvs, SA-04:08.heimdal.

This commit is contained in:
Bruce A. Mah 2004-05-09 23:07:08 +00:00
parent 8d285b6ea7
commit 0cc1863c86

View File

@ -203,6 +203,20 @@
for a more detailed description and instructions on how to patch
existing systems.</para>
<para>(9 May 2004) Two programming errors in
<application>CVS</application> can allow a server to overwrite
arbitrary files on the client, and a client to read arbitrary
files on the server when accessing remote CVS repositories.
More details, including patch and upgrade information, can be
found in security advisory <ulink
url="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-04:07.cvs.asc">FreeBSD-SA-04:07</ulink>.</para>
<para>(9 May 2004) <application>Heimdal</application> may, under
some circumstances, not perform adequate checking of
authentication across autonomous realms. For more information,
see security advisory <ulink
url="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-04:08.heimdal.asc">FreeBSD-SA-04:08</ulink>.</para>
]]>
</sect1>