[Midnightbsd-cvs] [MidnightBSD/src] ca1183: Create stable branch for MidnightBSD 0.6

Lucas Holt noreply at github.com
Mon Mar 16 11:51:06 EDT 2020


  Branch: refs/heads/stable/0.6
  Home:   https://github.com/MidnightBSD/src
  Commit: ca1183bc6a065bd11c6ebc640f905299b4323a96
      https://github.com/MidnightBSD/src/commit/ca1183bc6a065bd11c6ebc640f905299b4323a96
  Author: Lucas Holt <luke at foolishgames.com>
  Date:   2015-04-19 (Sun, 19 Apr 2015)

  Changed paths:

  Log Message:
  -----------
  Create stable branch for MidnightBSD 0.6


  Commit: f9536cbb742612af9d12e401aaaf9346f03f72a4
      https://github.com/MidnightBSD/src/commit/f9536cbb742612af9d12e401aaaf9346f03f72a4
  Author: Lucas Holt <luke at foolishgames.com>
  Date:   2015-04-26 (Sun, 26 Apr 2015)

  Changed paths:
    M usr.sbin/mtree/Makefile

  Log Message:
  -----------
  link mtree


  Commit: 9c6bda2e6a59b25d9557a52b85b9d622b02fd824
      https://github.com/MidnightBSD/src/commit/9c6bda2e6a59b25d9557a52b85b9d622b02fd824
  Author: Lucas Holt <luke at foolishgames.com>
  Date:   2015-04-26 (Sun, 26 Apr 2015)

  Changed paths:
    M UPDATING

  Log Message:
  -----------
  mark the 0.6 release


  Commit: c29c1179e90f8dafd5158dee2016e8faca31f2e8
      https://github.com/MidnightBSD/src/commit/c29c1179e90f8dafd5158dee2016e8faca31f2e8
  Author: Lucas Holt <luke at foolishgames.com>
  Date:   2015-06-10 (Wed, 10 Jun 2015)

  Changed paths:
    M usr.bin/file/config.h

  Log Message:
  -----------
  fix version number. we updated in 2014 to 5.19 but did not rebuild file


  Commit: cab6ec2e251e25fa313aa9b9ae4e5a612771c9ff
      https://github.com/MidnightBSD/src/commit/cab6ec2e251e25fa313aa9b9ae4e5a612771c9ff
  Author: Lucas Holt <luke at foolishgames.com>
  Date:   2015-06-12 (Fri, 12 Jun 2015)

  Changed paths:
    M UPDATING

  Log Message:
  -----------
  MidnightBSD 0.6.1 RELEASE. Fix several OpenSSL security issues by importing OpenSSL 0.9.8zg


  Commit: dfe6a92df3ce177c96e6437e3b4fbb36715e5fba
      https://github.com/MidnightBSD/src/commit/dfe6a92df3ce177c96e6437e3b4fbb36715e5fba
  Author: Lucas Holt <luke at foolishgames.com>
  Date:   2015-06-12 (Fri, 12 Jun 2015)

  Changed paths:
    M sys/conf/newvers.sh

  Log Message:
  -----------
  bump version for OpenSSL patch


  Commit: 8f7349ca342cb2c9774d654ba8a96ba5c1d1e389
      https://github.com/MidnightBSD/src/commit/8f7349ca342cb2c9774d654ba8a96ba5c1d1e389
  Author: Lucas Holt <luke at foolishgames.com>
  Date:   2015-06-13 (Sat, 13 Jun 2015)

  Changed paths:
    M crypto/openssl/CHANGES
    M crypto/openssl/Makefile
    M crypto/openssl/Makefile.bak
    M crypto/openssl/NEWS
    M crypto/openssl/README
    M crypto/openssl/crypto/asn1/a_int.c
    M crypto/openssl/crypto/asn1/tasn_new.c
    M crypto/openssl/crypto/asn1/x_x509.c
    M crypto/openssl/crypto/bn/bn.h
    M crypto/openssl/crypto/bn/bn_err.c
    M crypto/openssl/crypto/bn/bn_print.c
    M crypto/openssl/crypto/bn/bn_rand.c
    M crypto/openssl/crypto/bn/bn_shift.c
    M crypto/openssl/crypto/cms/cms_smime.c
    M crypto/openssl/crypto/dsa/dsa_ossl.c
    M crypto/openssl/crypto/dso/dso_lib.c
    M crypto/openssl/crypto/ec/ec2_smpl.c
    M crypto/openssl/crypto/ec/ec_check.c
    M crypto/openssl/crypto/ec/ec_key.c
    M crypto/openssl/crypto/ec/ec_lib.c
    M crypto/openssl/crypto/ec/ecp_smpl.c
    M crypto/openssl/crypto/ec/ectest.c
    M crypto/openssl/crypto/objects/obj_dat.c
    M crypto/openssl/crypto/ocsp/ocsp_vfy.c
    M crypto/openssl/crypto/opensslv.h
    M crypto/openssl/crypto/pem/pem_pk8.c
    M crypto/openssl/crypto/pkcs7/pk7_doit.c
    M crypto/openssl/crypto/x509/x509_lu.c
    M crypto/openssl/crypto/x509/x509_vfy.c
    M crypto/openssl/doc/crypto/BN_rand.pod
    M crypto/openssl/doc/crypto/BN_set_bit.pod
    M crypto/openssl/doc/crypto/pem.pod
    M crypto/openssl/e_os2.h
    M crypto/openssl/fips/rsa/fips_rsa_eay.c
    M crypto/openssl/openssl.spec
    M crypto/openssl/ssl/d1_lib.c
    M crypto/openssl/ssl/s3_clnt.c
    M crypto/openssl/ssl/s3_srvr.c
    M crypto/openssl/ssl/ssl.h
    M crypto/openssl/ssl/ssl_err.c
    M crypto/openssl/ssl/ssl_locl.h
    M crypto/openssl/ssl/ssl_sess.c
    M crypto/openssl/util/mkerr.pl

  Log Message:
  -----------
  openssl 0.9.8zg


  Commit: 97b7456168b3382f60d9ec0d72dbcebd780233c7
      https://github.com/MidnightBSD/src/commit/97b7456168b3382f60d9ec0d72dbcebd780233c7
  Author: Lucas Holt <luke at foolishgames.com>
  Date:   2015-06-21 (Sun, 21 Jun 2015)

  Changed paths:
    M .gitattributes
    M UPDATING
    M cddl/lib/libzpool/Makefile
    M sys/cddl/compat/opensolaris/kern/opensolaris_kstat.c
    M sys/cddl/compat/opensolaris/sys/dkio.h
    M sys/cddl/compat/opensolaris/sys/kstat.h
    M sys/cddl/compat/opensolaris/sys/time.h
    M sys/cddl/contrib/opensolaris/uts/common/fs/zfs/arc.c
    M sys/cddl/contrib/opensolaris/uts/common/fs/zfs/dsl_scan.c
    M sys/cddl/contrib/opensolaris/uts/common/fs/zfs/spa.c
    M sys/cddl/contrib/opensolaris/uts/common/fs/zfs/sys/spa_impl.h
    A sys/cddl/contrib/opensolaris/uts/common/fs/zfs/sys/trim_map.h
    M sys/cddl/contrib/opensolaris/uts/common/fs/zfs/sys/vdev.h
    M sys/cddl/contrib/opensolaris/uts/common/fs/zfs/sys/vdev_impl.h
    M sys/cddl/contrib/opensolaris/uts/common/fs/zfs/sys/zio.h
    M sys/cddl/contrib/opensolaris/uts/common/fs/zfs/sys/zio_impl.h
    A sys/cddl/contrib/opensolaris/uts/common/fs/zfs/trim_map.c
    M sys/cddl/contrib/opensolaris/uts/common/fs/zfs/vdev.c
    M sys/cddl/contrib/opensolaris/uts/common/fs/zfs/vdev_geom.c
    M sys/cddl/contrib/opensolaris/uts/common/fs/zfs/vdev_label.c
    M sys/cddl/contrib/opensolaris/uts/common/fs/zfs/vdev_mirror.c
    M sys/cddl/contrib/opensolaris/uts/common/fs/zfs/vdev_raidz.c
    M sys/cddl/contrib/opensolaris/uts/common/fs/zfs/zil.c
    M sys/cddl/contrib/opensolaris/uts/common/fs/zfs/zio.c
    M sys/conf/newvers.sh
    M sys/modules/zfs/Makefile

  Log Message:
  -----------
  MFC: Trim support for ZFS


  Commit: 2e6b246ac7b51b91e06965b04a470d01dc397fc7
      https://github.com/MidnightBSD/src/commit/2e6b246ac7b51b91e06965b04a470d01dc397fc7
  Author: Lucas Holt <luke at foolishgames.com>
  Date:   2015-07-22 (Wed, 22 Jul 2015)

  Changed paths:
    M UPDATING
    M sys/conf/newvers.sh
    M sys/netinet/tcp_output.c

  Log Message:
  -----------
  MidnightBSD 0.6.3 RELEASE

TCP connections transitioning to the LAST_ACK state can become permanently
stuck due to mishandling of protocol state in certain situations, which in
turn can lead to accumulated consumption and eventual exhaustion of system
resources, such as mbufs and sockets.


  Commit: cf5a1125aa85aed9887cd526c2d8a42e6f9d6e9a
      https://github.com/MidnightBSD/src/commit/cf5a1125aa85aed9887cd526c2d8a42e6f9d6e9a
  Author: Lucas Holt <luke at foolishgames.com>
  Date:   2015-07-29 (Wed, 29 Jul 2015)

  Changed paths:
    M sys/netinet/tcp_reass.c
    M sys/netinet/tcp_subr.c
    M sys/netinet/tcp_var.h

  Log Message:
  -----------
  TCP Resassemly resource exhaustion bug:

There is a mistake with the introduction of VNET, which converted the
global limit on the number of segments that could belong to reassembly
queues into a per-VNET limit.  Because mbufs are allocated from a
global pool, in the presence of a sufficient number of VNETs, the
total number of mbufs attached to reassembly queues can grow to the
total number of mbufs in the system, at which point all network
traffic would cease.

Obtained from: FreeBSD 8


  Commit: 94155411d3c31c26e566cd66a27ef56a520bc5ec
      https://github.com/MidnightBSD/src/commit/94155411d3c31c26e566cd66a27ef56a520bc5ec
  Author: Lucas Holt <luke at foolishgames.com>
  Date:   2015-07-29 (Wed, 29 Jul 2015)

  Changed paths:
    M UPDATING
    M crypto/openssh/auth2-chall.c
    M crypto/openssh/sshconnect.c
    M sys/conf/newvers.sh

  Log Message:
  -----------
  MidnightBSD 0.6.4

        OpenSSH

        Fix two security vulnerabilities:
        OpenSSH clients does not correctly verify DNS SSHFP records when a server
        offers a certificate. [CVE-2014-2653]

        OpenSSH servers which are configured to allow password authentication
        using PAM (default) would allow many password attempts. A bug allows
        MaxAuthTries to be bypassed. [CVE-2015-5600]


  Commit: 17ed6ebd8b3ffd49bd909a7d1691d172e50bd307
      https://github.com/MidnightBSD/src/commit/17ed6ebd8b3ffd49bd909a7d1691d172e50bd307
  Author: Lucas Holt <luke at foolishgames.com>
  Date:   2015-08-06 (Thu, 06 Aug 2015)

  Changed paths:
    M UPDATING
    M sbin/routed/if.c
    M sbin/routed/input.c
    M sbin/routed/main.c
    M sbin/routed/output.c
    M sbin/routed/parms.c
    M sbin/routed/radix.c
    M sbin/routed/rdisc.c
    M sbin/routed/routed.8
    M sbin/routed/table.c
    M sbin/routed/trace.c
    M sys/conf/newvers.sh

  Log Message:
  -----------
  MidnightBSD 0.6.5 release. Fix a security issue with routed.  If you do not use routed, you can skip this one.


  Commit: e3d3740b030e0279af4c4fd6f8e05c5ea89298a7
      https://github.com/MidnightBSD/src/commit/e3d3740b030e0279af4c4fd6f8e05c5ea89298a7
  Author: Lucas Holt <luke at foolishgames.com>
  Date:   2015-08-18 (Tue, 18 Aug 2015)

  Changed paths:
    M UPDATING
    M contrib/expat/lib/xmlparse.c
    M sys/conf/newvers.sh

  Log Message:
  -----------
  MidnightBSD 0.6.6 RELEASE. - Fix a security issue with expat


  Commit: d9668293c8d2b5f28a62f0ae5de7bd5c0d6436dc
      https://github.com/MidnightBSD/src/commit/d9668293c8d2b5f28a62f0ae5de7bd5c0d6436dc
  Author: Lucas Holt <luke at foolishgames.com>
  Date:   2015-08-25 (Tue, 25 Aug 2015)

  Changed paths:
    M UPDATING
    M sys/amd64/amd64/exception.S
    M sys/amd64/amd64/machdep.c
    M sys/amd64/amd64/trap.c

  Log Message:
  -----------
  fix a security issue on amd64 where the GS segment CPU register can be changed via  userland value in kernel mode by using an IRET with #SS or #NP exceptions.


  Commit: 40ecea00d7d66ca7d45b0f25ad7ba226a1b55ce6
      https://github.com/MidnightBSD/src/commit/40ecea00d7d66ca7d45b0f25ad7ba226a1b55ce6
  Author: Lucas Holt <luke at foolishgames.com>
  Date:   2015-08-25 (Tue, 25 Aug 2015)

  Changed paths:
    M UPDATING
    M crypto/openssh/monitor.c
    M crypto/openssh/monitor_wrap.c
    M crypto/openssh/mux.c
    M sys/conf/newvers.sh

  Log Message:
  -----------
  MidnightBSD 0.6.7 RELEASE

Fix security issues with amd64 register handling and OpenSSH /w pam enabled (default).

See UPDATING for details.


  Commit: d22d9e009d22f248bf5a48faef9c564fce47d90c
      https://github.com/MidnightBSD/src/commit/d22d9e009d22f248bf5a48faef9c564fce47d90c
  Author: Lucas Holt <luke at foolishgames.com>
  Date:   2015-08-25 (Tue, 25 Aug 2015)

  Changed paths:
    M UPDATING

  Log Message:
  -----------
  fix dates


  Commit: 870b4fc13aa2e98a504e6e1b224212a5c688b683
      https://github.com/MidnightBSD/src/commit/870b4fc13aa2e98a504e6e1b224212a5c688b683
  Author: Lucas Holt <luke at foolishgames.com>
  Date:   2015-09-30 (Wed, 30 Sep 2015)

  Changed paths:
    M UPDATING
    M usr.sbin/rpcbind/rpcb_svc_com.c

  Log Message:
  -----------
  In rpcbind(8), netbuf structures are copied directly, which would result in
two netbuf structures that reference to one shared address buffer.  When one
of the two netbuf structures is freed, access to the other netbuf structure
would result in an undefined result that may crash the rpcbind(8) daemon.


Compare: https://github.com/MidnightBSD/src/compare/ca1183bc6a06%5E...870b4fc13aa2


More information about the Midnightbsd-cvs mailing list