FreeBSD The Power to Serve

FreeBSD 14.0-RELEASE Errata

Abstract

This document lists errata items for FreeBSD 14.0-RELEASE, containing significant information discovered after the release or too late in the release cycle to be otherwise included in the release documentation. This information includes security advisories, as well as news relating to the software or documentation that could affect its operation or usability. An up-to-date version of this document should always be consulted before installing this version of FreeBSD.

This errata document for FreeBSD 14.0-RELEASE will be maintained until the release of FreeBSD 14.1-RELEASE.

Introduction

This errata document contains "late-breaking news" about FreeBSD 14.0-RELEASE. Before installing this version, it is important to consult this document to learn about any post-release discoveries or problems that may already have been found and fixed.

Any version of this errata document actually distributed with the release (for example, on a CDROM distribution) will be out of date by definition, but other copies are kept updated on the Internet and should be consulted as the "current errata" for this release. These other copies of the errata are located at https://www.FreeBSD.org/releases/, plus any sites which keep up-to-date mirrors of this location.

Source and binary snapshots of FreeBSD 14-STABLE also contain up-to-date copies of this document (as of the time of the snapshot).

For a list of all FreeBSD CERT security advisories, see https://www.FreeBSD.org/security/.

Security Advisories

Advisory Date Topic

FreeBSD-SA-23:17.pf

5 December 2023

TCP spoofing vulnerability in pf(4)

FreeBSD-SA-23:18.nfsclient

12 December 2023

NFS client data corruption and kernel memory disclosure

FreeBSD-SA-23:19.openssh

19 December 2023

Prefix Truncation Attack in the SSH protocol

FreeBSD-SA-24:01.bhyveload

14 February 2024

bhyveload(8) host file access

FreeBSD-SA-24:02.tty

14 February 2024

jail(2) information leak

FreeBSD-SA-24:03.unbound

28 March 2024

Multiple vulnerabilities in unbound

FreeBSD-SA-24:04.openssh

1 July 2024

OpenSSH pre-authentication remote code execution

FreeBSD-SA-24:05.pf

7 August 2024

pf incorrectly matches different ICMPv6 states in the state table

FreeBSD-SA-24:06.ktrace

7 August 2024

ktrace(2) fails to detach when executing a setuid binary

FreeBSD-SA-24:07.nfsclient

7 August 2024

NFS client accepts file names containing path separators

FreeBSD-SA-24:08.openssh

7 August 2024

OpenSSH pre-authentication async signal safety issue

FreeBSD-SA-24:09.libnv

4 September 2024

Multiple vulnerabilities in libnv

FreeBSD-SA-24:10.bhyve

4 September 2024

bhyve(8) privileged guest escape via TPM device passthrough

FreeBSD-SA-24:11.ctl

4 September 2024

Multiple issues in ctl(4) CAM Target Layer

FreeBSD-SA-24:12.bhyve

4 September 2024

bhyve(8) privileged guest escape via USB controller

FreeBSD-SA-24:13.openssl

4 September 2024

Possible DoS in X.509 name checks in OpenSSL

FreeBSD-SA-24:14.umtx

4 September 2024

umtx Kernel panic or Use-After-Free

FreeBSD-SA-24:15.bhyve

19 September 2024

bhyve(8) out-of-bounds read access via XHCI emulation

FreeBSD-SA-24:16.libnv

19 September 2024

Integer overflow in libnv

Errata Notices

Errata Date Topic

FreeBSD-EN-23:15.sanitizer

1 December 2023

Clang sanitizer failure with ASLR enabled

FreeBSD-EN-23:16.openzfs

1 December 2023

OpenZFS data corruption

FreeBSD-EN-23:17.ossl

5 December 2023

ossl(4)'s AES-GCM implementation may give incorrect results

FreeBSD-EN-23:18.openzfs

5 December 2023

High CPU usage by ZFS kernel threads

FreeBSD-EN-23:19.pkgbase

5 December 2023

Incorrect pkgbase version number for FreeBSD 14.0

FreeBSD-EN-23:20.vm

5 December 2023

Incorrect results from the kernel physical memory allocator

FreeBSD-EN-23:21.tty

5 December 2023

tty(4) IUTF8 causes a kernel panic

FreeBSD-EN-23:22.vfs

5 December 2023

ZFS snapshot directories not accessible over NFS

FreeBSD-EN-24:01.tzdata

14 February 2024

Timezone database information update

FreeBSD-EN-24:02.libutil

14 February 2024

Login class resource limits and CPU mask bypass

FreeBSD-EN-24:03.kqueue

14 February 2024

kqueue_close(2) page fault on exit using rfork(2)

FreeBSD-EN-24:04.ip

14 February 2024

Kernel panic triggered by bind(2)

FreeBSD-EN-24:05.tty

28 March 2024

TTY Kernel Panic

FreeBSD-EN-24:06.wireguard

28 March 2024

Insufficient barriers in WireGuard if_wg(4)

FreeBSD-EN-24:07.clang

28 March 2024

Clang crash when certain optimization is enabled

FreeBSD-EN-24:08.kerberos

28 March 2024

Kerberos segfaults when using weak crypto

FreeBSD-EN-24:11.ldns

19 June 2024

LDNS uses nameserver commented out in resolv.conf

FreeBSD-EN-24:14.ifconfig

7 August 2024

Incorrect ifconfig netmask assignment

FreeBSD-EN-24:15.calendar

4 September 2024

cron(8) / periodic(8) session login

FreeBSD-EN-24:16.pf

19 September 2024

Incorrect ICMPv6 state handling in pf

Open Issues

No open issues.

Late-Breaking News

No late-breaking news.


Last modified on: September 20, 2024 by Philip Paeps