From owner-svn-src-all@FreeBSD.ORG Thu Feb 5 19:31:43 2015 Return-Path: Delivered-To: svn-src-all@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 883961CE; Thu, 5 Feb 2015 19:31:43 +0000 (UTC) Received: from svn.freebsd.org (svn.freebsd.org [IPv6:2001:1900:2254:2068::e6a:0]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 6FAB3DBF; Thu, 5 Feb 2015 19:31:43 +0000 (UTC) Received: from svn.freebsd.org ([127.0.1.70]) by svn.freebsd.org (8.14.9/8.14.9) with ESMTP id t15JVhlg003127; Thu, 5 Feb 2015 19:31:43 GMT (envelope-from gjb@FreeBSD.org) Received: (from gjb@localhost) by svn.freebsd.org (8.14.9/8.14.9/Submit) id t15JVgWl003124; Thu, 5 Feb 2015 19:31:42 GMT (envelope-from gjb@FreeBSD.org) Message-Id: <201502051931.t15JVgWl003124@svn.freebsd.org> X-Authentication-Warning: svn.freebsd.org: gjb set sender to gjb@FreeBSD.org using -f From: Glen Barber Date: Thu, 5 Feb 2015 19:31:42 +0000 (UTC) To: src-committers@freebsd.org, svn-src-all@freebsd.org, svn-src-stable@freebsd.org, svn-src-stable-8@freebsd.org Subject: svn commit: r278275 - in stable: 8/release/doc/share/xml 9/release/doc/share/xml X-SVN-Group: stable-8 MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit X-BeenThere: svn-src-all@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: "SVN commit messages for the entire src tree \(except for " user" and " projects" \)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 05 Feb 2015 19:31:43 -0000 Author: gjb Date: Thu Feb 5 19:31:41 2015 New Revision: 278275 URL: https://svnweb.freebsd.org/changeset/base/278275 Log: Add the 'security.url' macro to stable/9 and stable/8 branches, and replace hard-coded (and inconsistent) URLs in security.xml and errata.xml. Prefer https:// over http://. Sponsored by: The FreeBSD Foundation Modified: stable/8/release/doc/share/xml/errata.xml stable/8/release/doc/share/xml/release.ent stable/8/release/doc/share/xml/security.xml Changes in other areas also in this revision: Modified: stable/9/release/doc/share/xml/errata.xml stable/9/release/doc/share/xml/release.ent stable/9/release/doc/share/xml/security.xml Modified: stable/8/release/doc/share/xml/errata.xml ============================================================================== --- stable/8/release/doc/share/xml/errata.xml Thu Feb 5 19:17:37 2015 (r278274) +++ stable/8/release/doc/share/xml/errata.xml Thu Feb 5 19:31:41 2015 (r278275) @@ -19,14 +19,14 @@ - FreeBSD-EN-13:01.fxp + FreeBSD-EN-13:01.fxp 28 June 2013 Fixed a problem where &man.dhclient.8; would infinitely try to intialize &man.fxp.4; - FreeBSD-EN-13:02.vtnet + FreeBSD-EN-13:02.vtnet 28 June 2013 Fixed a problem frames sent to additional MAC addresses are not forwarded to the &man.vtnet.4; @@ -34,80 +34,80 @@ - FreeBSD-EN-13:04.freebsd-update + FreeBSD-EN-13:04.freebsd-update 26 October 2013 Multiple fixes - FreeBSD-EN-13:05.freebsd-update + FreeBSD-EN-13:05.freebsd-update 28 November 2013 Fix INDEX generation - FreeBSD-EN-14:01.random + FreeBSD-EN-14:01.random 14 January 2014 Disable hardware RNGs by default - FreeBSD-EN-14:02.mmap + FreeBSD-EN-14:02.mmap 14 January 2014 Fix incorrect coalescing of stack entry - FreeBSD-EN-14:03.pkg + FreeBSD-EN-14:03.pkg 15 May 2014 Add pkg bootstrapping, configuration and public keys - FreeBSD-EN-14:04.kldxref + FreeBSD-EN-14:04.kldxref 15 May 2014 Improve build repeatability for &man.kldxref.8; - FreeBSD-EN-14:06.exec + FreeBSD-EN-14:06.exec 3 June 2014 Fix triple-fault when executing from a threaded process - FreeBSD-EN-14:08.heimdal + FreeBSD-EN-14:08.heimdal 24 June 2014 Fix gss_pseudo_random() interoperability issue - FreeBSD-EN-14:09.jail + FreeBSD-EN-14:09.jail 8 July 2014 Fix jail fails to start if WITHOUT_INET/WITHOUT_INET6 is use - FreeBSD-EN-14:10.tzdata + FreeBSD-EN-14:10.tzdata 21 October 2014 Time zone data file update - FreeBSD-EN-14:12.zfs + FreeBSD-EN-14:12.zfs 4 November 2014 Fix NFSv4 and ZFS cache consistency issue - FreeBSD-EN-14:13.freebsd-update + FreeBSD-EN-14:13.freebsd-update 23 December 2014 Fix directory deletion issue Modified: stable/8/release/doc/share/xml/release.ent ============================================================================== --- stable/8/release/doc/share/xml/release.ent Thu Feb 5 19:17:37 2015 (r278274) +++ stable/8/release/doc/share/xml/release.ent Thu Feb 5 19:31:41 2015 (r278275) @@ -22,6 +22,9 @@ + + + - + Modified: stable/8/release/doc/share/xml/security.xml ============================================================================== --- stable/8/release/doc/share/xml/security.xml Thu Feb 5 19:17:37 2015 (r278274) +++ stable/8/release/doc/share/xml/security.xml Thu Feb 5 19:31:41 2015 (r278275) @@ -19,14 +19,14 @@ - FreeBSD-SA-13:07.bind + FreeBSD-SA-13:07.bind 26 July 2013 Denial of Service vulnerability in &man.named.8; - FreeBSD-SA-13:09.ip_multicast + FreeBSD-SA-13:09.ip_multicast 21 August 2013 Integer overflow in computing the size of a temporary buffer can result in a buffer which is too @@ -34,14 +34,14 @@ - FreeBSD-SA-13:10.sctp + FreeBSD-SA-13:10.sctp 21 August 2013 Fix a bug that could lead to kernel memory disclosure with SCTP state cookie - FreeBSD-SA-13:12.ifioctl + FreeBSD-SA-13:12.ifioctl 10 September 2013 In IPv6 and NetATM, stop SIOCSIFADDR, @@ -53,7 +53,7 @@ - FreeBSD-SA-13:13.nullfs + FreeBSD-SA-13:13.nullfs 10 September 2013 Prevent cross-mount hardlinks between different nullfs mounts of the same underlying @@ -61,157 +61,157 @@ - FreeBSD-SA-14:01.bsnmpd + FreeBSD-SA-14:01.bsnmpd 14 January 2014 bsnmpd remote denial of service vulnerability - FreeBSD-SA-14:02.ntpd + FreeBSD-SA-14:02.ntpd 14 January 2014 ntpd distributed reflection Denial of Service vulnerability - FreeBSD-SA-14:04.bind + FreeBSD-SA-14:04.bind 14 January 2014 BIND remote denial of service vulnerability - FreeBSD-SA-14:05.nfsserver + FreeBSD-SA-14:05.nfsserver 8 April 2014 NFS deadlock vulnerability - FreeBSD-SA-14:06.openssl + FreeBSD-SA-14:06.openssl 8 April 2014 ECDSA Cache Side-channel Attack in OpenSSL - FreeBSD-SA-14:08.tcp + FreeBSD-SA-14:08.tcp 30 April 2014 TCP reassembly vulnerability - FreeBSD-SA-14:11.sendmail + FreeBSD-SA-14:11.sendmail 5 June 2014 sendmail improper close-on-exec flag handling - FreeBSD-SA-14:12.ktrace + FreeBSD-SA-14:12.ktrace 5 June 2014 ktrace memory disclosure - FreeBSD-SA-14:14.openssl + FreeBSD-SA-14:14.openssl 5 June 2014 OpenSSL multiple vulnerabilities - FreeBSD-SA-14:16.file + FreeBSD-SA-14:16.file 5 June 2014 Multiple vulnerabilities in &man.file.1; and &man.libmagic.3; - FreeBSD-SA-14:17.kmem + FreeBSD-SA-14:17.kmem 8 July 2014 kernel memory disclosure in control message and SCTP notifications - FreeBSD-SA-14:18.openssl + FreeBSD-SA-14:18.openssl 9 September 2014 Multiple vulnerabilities in OpenSSL - FreeBSD-SA-14:19.tcp + FreeBSD-SA-14:19.tcp 16 September 2014 Denial of Service in TCP packet processing - FreeBSD-SA-14:21.routed + FreeBSD-SA-14:21.routed 21 October 2014 &man.routed.8; denial of service vulnerability - FreeBSD-SA-14:23.openssl + FreeBSD-SA-14:23.openssl 21 October 2014 Multiple vulnerabilities in OpenSSL - FreeBSD-SA-14:25.setlogin + FreeBSD-SA-14:25.setlogin 4 November 2014 kernel stack disclosure in &man.setlogin.2; and &man.getlogin.2; - FreeBSD-SA-14:26.ftp + FreeBSD-SA-14:26.ftp 4 November 2014 Remote command execution in &man.ftp.1; - FreeBSD-SA-14:28.file + FreeBSD-SA-14:28.file 10 December 2014 Multiple vulnerabilities in &man.file.1; and &man.libmagic.3; - FreeBSD-SA-14:29.bind + FreeBSD-SA-14:29.bind 10 December 2014 BIND remote denial of service vulnerability - FreeBSD-SA-14:31.ntp + FreeBSD-SA-14:31.ntp 23 December 2014 Multiple vulnerabilities in NTP suite - FreeBSD-SA-15:01.ntp + FreeBSD-SA-15:01.ntp 14 January 2015 Multiple vulnerabilities in OpenSSL - FreeBSD-SA-15:02.kmem + FreeBSD-SA-15:02.kmem 27 January 2015 Fix SCTP SCTP_SS_VALUE kernel memory corruption and disclosure vulnerability - FreeBSD-SA-15:03.sctp + FreeBSD-SA-15:03.sctp 27 January 2015 Fix SCTP stream reset vulnerability