From nobody Wed Aug 27 14:58:41 2025 X-Original-To: dev-commits-doc-all@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4cBnjF3xNVz66PJW for ; Wed, 27 Aug 2025 14:58:41 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R12" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4cBnjF31Gqz3J3v; Wed, 27 Aug 2025 14:58:41 +0000 (UTC) (envelope-from git@FreeBSD.org) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1756306721; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=OmzWLYzAL0yMoubhVFtmjVPBSydEBYURFXXo5cSkkhA=; b=m6+ONv42sYSZCdPQluTx+qkjO8as++zxCi1ZU3jFUYPbmIbkK1488KxgfEnCeObaYf8JVy ano4+evoHtMojIO4TJAZRLKmni6jTTuH0GuG+KwG58s/Hdijm/hslG+HYnVy4Bbmw5y1zw KGNolonpt3NaGEU4mBm15nboJ5ywyNgbGhGEqOMg8kbjygbMwp+mUaYUE2WgjBkG1dqL1j 04RAlxEjiZq1ct/qPeiQmiK4l3hSUbiYC/xS5kyzhxYMSnKllJeu7KP7Ii4VlRVS+wtNmM qgKjJr0y16wLZM9STNuMdh6wpoEn/Unjh5zPGcMH1sO5DyzDmGMn/L42JlAzkA== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1756306721; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=OmzWLYzAL0yMoubhVFtmjVPBSydEBYURFXXo5cSkkhA=; b=xzolqA/ISukQcqAQh2HDDK/W3ruFDskM4NtUmo+RVzIKRN+hP/LH7tQdYxULSIt1+Z+uFt N3YT1R/lg6ELy8RY3/Jz+XcLAll8BdnDoYhLrW5cXM5FuMDh2Hb5+LGbQvT8+3kBbqX4I9 xbBxNbeWvfRrjzYXTmVlkqs6jHpMOl1JBizkRJXLwEpeb24bC7JJrzsl+YZCyBgHRRnPeX jCcXT1q/atF85gyG1vcgILIW8oBZlrrQeJSm5bVnE41il/S1JxDwZUgP5p0evI7R8uqBOp AelUIvutPpHQLJPBaFAZV4DwWagBvCw3dOwBbXBqcfO/t9eo0bbImkuXQ+36vQ== ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1756306721; a=rsa-sha256; cv=none; b=U59JFVvRqFvStpDZMIckYrD+sPKYVWSHI1v1g146rmXTtAfaCExbkQBZ9hsov/QWItiald K2NfA+ttpdNtoHIlArKoWzbxtrSVVRPESYrRBiAnlJ59VPYo7HNbBzxkljmlzbKV5w9U16 hsAptWIj3GKAVkwPH/JYahPq23k7QOCSPAAsqr4ebo1N/qwlEO/rgOf1PiNmCNNmadE65S 1FudUXsMk/zZMKImhgkmavTHJ4v99mLag2Y+GrnG4pkIWmkMSlJsshzb2Q3BAVvAOHQutn FYQMB/zbMciLxjwUSh19JAPCP7QOhHBZGoXmjTgUT0AE//5pL0OJFOHOUbW3Dw== ARC-Authentication-Results: i=1; mx1.freebsd.org; none Received: from gitrepo.freebsd.org (gitrepo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:5]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 4cBnjF2XBLzBRv; Wed, 27 Aug 2025 14:58:41 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from gitrepo.freebsd.org ([127.0.1.44]) by gitrepo.freebsd.org (8.18.1/8.18.1) with ESMTP id 57REwfxv032389; Wed, 27 Aug 2025 14:58:41 GMT (envelope-from git@gitrepo.freebsd.org) Received: (from git@localhost) by gitrepo.freebsd.org (8.18.1/8.18.1/Submit) id 57REwfuh032386; Wed, 27 Aug 2025 14:58:41 GMT (envelope-from git) Date: Wed, 27 Aug 2025 14:58:41 GMT Message-Id: <202508271458.57REwfuh032386@gitrepo.freebsd.org> To: doc-committers@FreeBSD.org, dev-commits-doc-all@FreeBSD.org From: Muhammad Moinur Rahman Subject: git: 6587a1d1d8 - main - release/15.0R/relnotes: Update release notes List-Id: Commit messages for all branches of the doc repository List-Archive: https://lists.freebsd.org/archives/dev-commits-doc-all List-Help: List-Post: List-Subscribe: List-Unsubscribe: X-BeenThere: dev-commits-doc-all@freebsd.org Sender: owner-dev-commits-doc-all@FreeBSD.org MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 8bit X-Git-Committer: bofh X-Git-Repository: doc X-Git-Refname: refs/heads/main X-Git-Reftype: branch X-Git-Commit: 6587a1d1d8bb1b998f241b7e5f868f3e30fa731d Auto-Submitted: auto-generated The branch main has been updated by bofh: URL: https://cgit.FreeBSD.org/doc/commit/?id=6587a1d1d8bb1b998f241b7e5f868f3e30fa731d commit 6587a1d1d8bb1b998f241b7e5f868f3e30fa731d Author: Muhammad Moinur Rahman AuthorDate: 2025-08-27 14:57:55 +0000 Commit: Muhammad Moinur Rahman CommitDate: 2025-08-27 14:58:34 +0000 release/15.0R/relnotes: Update release notes Approved by: re (implicit) Sponsored by: The FreeBSD Foundation Event: Oslo Hackathon 202508 --- website/content/en/releases/15.0R/relnotes.adoc | 113 +++++++++++++++--------- 1 file changed, 73 insertions(+), 40 deletions(-) diff --git a/website/content/en/releases/15.0R/relnotes.adoc b/website/content/en/releases/15.0R/relnotes.adoc index d91e1fae8e..29f78cc9d7 100644 --- a/website/content/en/releases/15.0R/relnotes.adoc +++ b/website/content/en/releases/15.0R/relnotes.adoc @@ -175,25 +175,33 @@ This section lists the various Security Advisories and Errata Notices since {rel |29 October 2024 |Certificate revocation list man:fetch[1] option fails -| https://www.freebsd.org/security/advisories/FreeBSD-SA-25:01.openssh.asc[FreeBSD-SA-25:01.openssh] -| 2025-01-29 -| OpenSSH Keystroke Obfuscation Bypass +|https://www.freebsd.org/security/advisories/FreeBSD-SA-25:01.openssh.asc[FreeBSD-SA-25:01.openssh] +|29 January 2025 +|OpenSSH Keystroke Obfuscation Bypass -| https://www.freebsd.org/security/advisories/FreeBSD-SA-25:02.fs.asc[FreeBSD-SA-25:02.fs] -| 2025-01-29 -| Buffer overflow in some filesystems via NFS +|https://www.freebsd.org/security/advisories/FreeBSD-SA-25:02.fs.asc[FreeBSD-SA-25:02.fs] +|29 January 2025 +|Buffer overflow in some filesystems via NFS -| https://www.freebsd.org/security/advisories/FreeBSD-SA-25:03.etcupdate.asc[FreeBSD-SA-25:03.etcupdate] -| 2025-01-29 -| Unprivileged access to system files +|https://www.freebsd.org/security/advisories/FreeBSD-SA-25:03.etcupdate.asc[FreeBSD-SA-25:03.etcupdate] +|29 January 2025 +|Unprivileged access to system files -| https://www.freebsd.org/security/advisories/FreeBSD-SA-25:04.ktrace.asc[FreeBSD-SA-25:04.ktrace] -| 2025-01-29 -| Uninitialized kernel memory disclosure via man:ktrace[2] +|https://www.freebsd.org/security/advisories/FreeBSD-SA-25:04.ktrace.asc[FreeBSD-SA-25:04.ktrace] +|29 January 2025 +|Uninitialized kernel memory disclosure via man:ktrace[2] -| https://www.freebsd.org/security/advisories/FreeBSD-SA-25:05.openssh.asc[FreeBSD-SA-25:05.openssh] -| 2025-02-21 -| Multiple vulnerabilities in OpenSSH +|https://www.freebsd.org/security/advisories/FreeBSD-SA-25:05.openssh.asc[FreeBSD-SA-25:05.openssh] +|21 February 2025 +|Multiple vulnerabilities in OpenSSH + +|https://www.freebsd.org/security/advisories/FreeBSD-SA-25:06.xz.asc[FreeBSD-SA-25:06.xz] +|02 July 2025 +|Use-after-free in multi-threaded xz decoder + +|https://www.freebsd.org/security/advisories/FreeBSD-SA-25:07.libarchive.asc[FreeBSD-SA-25:07.libarchive] +|08 August 2025 +|Integer overflow in libarchive leading to double free |=== [[errata]] @@ -286,7 +294,7 @@ This section lists the various Security Advisories and Errata Notices since {rel |19 June 2024 |Lock order reversal in killpg causing livelock -|https://www.freebsd.org/security/advisories/FreeBSD-EN-24:13.libc++.asc[FreeBSDS-EN-24:13:libc++] +|https://www.freebsd.org/security/advisories/FreeBSD-EN-24:13.libc\+\+.asc[FreeBSDS-EN-24:13:libc++] |19 June 2024 |Incorrect size passed to heap allocated std::string delete @@ -306,37 +314,61 @@ This section lists the various Security Advisories and Errata Notices since {rel |20 October 2024 |XDG runtime directory's file descriptor leak at login -| https://www.freebsd.org/security/advisories/FreeBSD-EN-25:01.rpc.asc[FreeBSD-EN-25:01.rpc] -| 2025-01-29 +|https://www.freebsd.org/security/advisories/FreeBSD-EN-25:01.rpc.asc[FreeBSD-EN-25:01.rpc] +|29 January 2025 | NULL pointer dereference in the NFSv4 client -| https://www.freebsd.org/security/advisories/FreeBSD-EN-25:02.audit.asc[FreeBSD-EN-25:02.audit] -| 2025-01-29 -| System call auditing disabled by DTrace +|https://www.freebsd.org/security/advisories/FreeBSD-EN-25:02.audit.asc[FreeBSD-EN-25:02.audit] +|29 January 2025 +|System call auditing disabled by DTrace + +|https://www.freebsd.org/security/advisories/FreeBSD-EN-25:03.tzdata.asc[FreeBSD-EN-25:03.tzdata] +|29 January 2025 +|Timezone database information update + +|https://www.freebsd.org/security/advisories/FreeBSD-EN-25:04.tzdata.asc[FreeBSD-EN-25:04.tzdata] +|10 April 2025 +|Timezone database information update + +|https://www.freebsd.org/security/advisories/FreeBSD-EN-25:05.expat.asc[FreeBSD-EN-25:05.expat] +|10 April 2025 +|Update expat to 2.7.1 + +|https://www.freebsd.org/security/advisories/FreeBSD-EN-25:06.daemon.asc[FreeBSD-EN-25:06.daemon] +|10 April 2025 +|man:daemon[8] missing signals + +|https://www.freebsd.org/security/advisories/FreeBSD-EN-25:07.openssl.asc[FreeBSD-EN-25:07.openssl] +|10 April 2025 +|Update OpenSSL to 3.0.16 + +|https://www.freebsd.org/security/advisories/FreeBSD-EN-25:08.caroot.asc[FreeBSD-EN-25:08.caroot] +|10 April 2025 +|Root certificate bundle update -| https://www.freebsd.org/security/advisories/FreeBSD-EN-25:03.tzdata.asc[FreeBSD-EN-25:03.tzdata] -| 2025-01-29 -| Timezone database information update +|https://www.freebsd.org/security/advisories/FreeBSD-EN-25:09.libc.asc[FreeBSD-EN-25:09:libc] +|02 July 2025 +|Dynamically-loaded C++ libraries crashing at exit -| https://www.freebsd.org/security/advisories/FreeBSD-EN-25:04.tzdata.asc[FreeBSD-EN-25:04.tzdata] -| 2025-04-10 -| Timezone database information update +|https://www.freebsd.org/security/advisories/FreeBSD-EN-25:10.zfs.asc[FreeBSD-EN-25:10:zfs] +|02 July 2025 +|Corruption in ZFS replication streams from encrypted datasets -| https://www.freebsd.org/security/advisories/FreeBSD-EN-25:05.expat.asc[FreeBSD-EN-25:05.expat] -| 2025-04-10 -| Update expat to 2.7.1 +|https://www.freebsd.org/security/advisories/FreeBSD-EN-25:11.ena.asc[FreeBSD-EN-25:11:ena] +|02 July 2025 +|ena resets and kernel panic on Nitro v4 or newer instances -| https://www.freebsd.org/security/advisories/FreeBSD-EN-25:06.daemon.asc[FreeBSD-EN-25:06.daemon] -| 2025-04-10 -| man:daemon[8] missing signals +|https://www.freebsd.org/security/advisories/FreeBSD-EN-25:12.efi.asc[FreeBSD-EN-25:12:efi] +|08 August 2025 +|man:bsdinstall[8] not copying the correct loader on systems with IA32 UEFI firmware. -| https://www.freebsd.org/security/advisories/FreeBSD-EN-25:07.openssl.asc[FreeBSD-EN-25:07.openssl] -| 2025-04-10 -| Update OpenSSL to 3.0.16 +|https://www.freebsd.org/security/advisories/FreeBSD-EN-25:13.wlan_tkip.asc[FreeBSD-EN-25:13:wlan_tkip] +|08 August 2025 +|net80211 TKIP crypto support fails for some drivers -| https://www.freebsd.org/security/advisories/FreeBSD-EN-25:08.caroot.asc[FreeBSD-EN-25:08.caroot] -| 2025-04-10 -| Root certificate bundle update +|https://www.freebsd.org/security/advisories/FreeBSD-EN-25:14.route.asc[FreeBSD-EN-25:14:route] +|08 August 2025 +|man:route[8] monitor buffers too much when redirected to a file |=== [[userland]] @@ -414,7 +446,8 @@ gitref:3a2ec5957ea9[repository=src] === Contributed Software One True Awk (man:awk[1]) has been updated to 2nd Edition, with new -csv support and UTF-8 support. -gitref:daf917daba9c[repository=src] +The snapshot used is 20250804. +gitref:b45a181a74c8[repository=src] The man:sendmail[8] suite has been upgraded to version 8.18.1, addressing CVE-2023-51765. gitref:58ae50f31e95[repository=src]