OpenBSD Errata

Syndicate content OpenBSD Journal
The OpenBSD Community.
Updated: 2 hours 7 min ago

005 RELIABILITY

Fri, 2010/01/29 - 12:00am
By using ptrace(2) on an ancestor process, a loop in the process tree could be created, violating assumptions in other parts of the kernel and resulting in infinite loops.
Categories: *BSD, OpenBSD, Security

004 SECURITY

Thu, 2009/11/26 - 12:00am
The SSL/TLS protocol is subject to man-in-the-middle attacks related to renegotiation (see CVE-2009-3555, draft-ietf-tls-renegotiation-00). OpenSSL permitted this protocol feature by default and had no way to disable it.
Categories: *BSD, OpenBSD, Security