diff --git a/release/doc/en_US.ISO8859-1/errata/article.sgml b/release/doc/en_US.ISO8859-1/errata/article.sgml index 9575bb57f452..a97d7a47437e 100644 --- a/release/doc/en_US.ISO8859-1/errata/article.sgml +++ b/release/doc/en_US.ISO8859-1/errata/article.sgml @@ -115,6 +115,24 @@ found in security advisory FreeBSD-SA-03:01. + A timing-based attack on OpenSSL, + could allow a very powerful attacker access to plaintext + under certain circumstances. This problem has been corrected in + &os; &release.current; with an upgrade + to OpenSSL 0.9.7. On supported + security fix branches, this problem has been corrected with the + import of OpenSSL 0.9.6i. See security + advisory FreeBSD-SA-03:02 + for more details. + + It may be possible to recover the shared secret key used by + the implementation of the syncookies feature. + This reduces its effectiveness in dealing with TCP SYN flood + denial-of-service attacks. Workaround information and fixes are + given in security advisory FreeBSD-SA-03:03. +