> For the complete documentation index, see [llms.txt](https://book.bsdcn.org/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://book.bsdcn.org/release/freebsd-9.0-release/9.0-errata.md).

# FreeBSD 9.0-RELEASE 勘误

**FreeBSD 项目**

版权 © 2012 FreeBSD 文档项目

```ini
$FreeBSD: stable/9/release/doc/en_US.ISO8859-1/errata/article.sgml 230254 2012-01-17 02:49:23Z hrs $
```

FreeBSD 是 FreeBSD 基金会的注册商标。

Intel、Celeron、EtherExpress、i386、i486、Itanium、Pentium 和 Xeon 是 Intel Corporation 及其子公司在美国和其他国家的商标或注册商标。

SPARC、SPARC64、SPARCengine 和 UltraSPARC 是 SPARC 国际公司在美国及其他国家的商标。SPARC 国际公司拥有所有 SPARC 商标，并根据许可协议允许其成员适当使用这些商标。

许多制造商和销售商用于区分其产品的标识被声明为商标。本文档中出现这些标识时，如果 FreeBSD 项目已知该商标声明，这些标识后面会加上“™”或“®”符号。

## 摘要

本文列出 FreeBSD 9.0-RELEASE 的勘误项，包含发行后或在发行周期后期发现的、未能纳入发行版文档的重要信息。这些信息包括安全公告，以及与可能影响软件或文档运行或可用性相关的消息。在安装本版本 FreeBSD 之前，应始终查阅本文档的最新版本。

FreeBSD 9.0-RELEASE 的勘误文档将维护至 FreeBSD 9.1-RELEASE 发行。

## 引言

本勘误文档包含关于 FreeBSD 9.0-RELEASE 的“最新消息”。在安装本版本之前，务必查阅本文档，以了解可能在发布后已经发现并修复的问题。

随发行版实际分发的任何勘误文档副本（例如在 CDROM 发行版上）按定义均已过时，但其他副本在互联网上保持更新，应作为本发行版的“当前勘误”查阅。这些其他勘误副本位于 <http://www.FreeBSD.org/releases/>，以及任何保持该位置最新镜像的站点。

FreeBSD 9.0-STABLE 的源代码和二进制快照也包含本文档的最新副本（截至快照生成时）。

所有 FreeBSD CERT 安全公告列表，请参阅 <https://www.FreeBSD.org/security/> 或 `ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/`。

## 安全公告

以下安全公告中描述的问题已在 9.0-RELEASE 中修复。更多信息，请参阅 <http://security.FreeBSD.org/> 上提供的各个公告。

| 公告                                                                                        | 日期               | 主题                                                                                                                                                                                         |
| ----------------------------------------------------------------------------------------- | ---------------- | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ |
| [SA-11:01.mountd](http://security.freebsd.org/advisories/FreeBSD-SA-11:01.mountd.asc)     | 2011 年 4 月 20 日  | [mountd(8)](https://man.freebsd.org/cgi/man.cgi?query=mountd\&sektion=8\&format=html) 中的网络 ACL 处理错误                                                                                        |
| [SA-11:02.bind](http://security.freebsd.org/advisories/FreeBSD-SA-11:02.bind.asc)         | 2011 年 5 月 28 日  | 使用大型 RRSIG RRsets 和负缓存导致的 BIND 远程拒绝服务攻击                                                                                                                                                    |
| [SA-11:04.compress](http://security.freebsd.org/advisories/FreeBSD-SA-11:04.compress.asc) | 2011 年 9 月 28 日  | [compress(1)](https://man.freebsd.org/cgi/man.cgi?query=compress\&sektion=1\&format=html) 和 [gzip(1)](https://man.freebsd.org/cgi/man.cgi?query=gzip\&sektion=1\&format=html) 中的压缩文件损坏处理错误 |
| [SA-11:05.unix](http://security.freebsd.org/advisories/FreeBSD-SA-11:05.unix.asc)         | 2011 年 9 月 28 日  | 处理 UNIX 套接字地址时的缓冲区溢出                                                                                                                                                                       |
| [SA-11:06.bind](http://security.freebsd.org/advisories/FreeBSD-SA-11:06.bind.asc)         | 2011 年 12 月 23 日 | 针对 [named(8)](https://man.freebsd.org/cgi/man.cgi?query=named\&sektion=8\&format=html) 服务器的远程数据包拒绝服务攻击                                                                                     |
| [SA-11:07.chroot](http://security.freebsd.org/advisories/FreeBSD-SA-11:07.chroot.asc)     | 2011 年 12 月 23 日 | 通过 chrooted ftpd 执行代码                                                                                                                                                                      |
| [SA-11:08.telnetd](http://security.freebsd.org/advisories/FreeBSD-SA-11:08.telnetd.asc)   | 2011 年 12 月 23 日 | telnetd 代码执行漏洞                                                                                                                                                                             |
| [SA-11:09.pam\_ssh](http://security.freebsd.org/advisories/FreeBSD-SA-11:09.pam_ssh.asc)  | 2011 年 12 月 23 日 | `pam_ssh` 在用户账户拥有未加密的 SSH 私钥时错误地授予访问权限                                                                                                                                                     |
| [SA-11:10.pam](http://security.freebsd.org/advisories/FreeBSD-SA-11:10.pam.asc)           | 2011 年 12 月 23 日 | `pam_start()` 未对服务名称进行验证                                                                                                                                                                   |

## 待解决问题

* 在 9.0-RELEASE 之前的某些版本中，使用 [freebsd-update(8)](https://man.freebsd.org/cgi/man.cgi?query=freebsd-update\&sektion=8\&format=html) 升级可能失败。该问题已通过勘误通知 EN-12:01 修复。更多信息，请参阅 <http://security.freebsd.org/advisories/FreeBSD-EN-12:01.freebsd-update.asc>
* \[amd64, i386] FreeBSD 9.0-RELEASE 包含若干改进 PCI 设备资源管理的变更。由于这些变更，某些 x86 机器在使用 ACPI 时可能无法启动，或某些设备可能不再能挂接。可通过将 [loader(8)](https://man.freebsd.org/cgi/man.cgi?query=loader\&sektion=8\&format=html) 可调参数 `debug.acpi.disabled` 设置为 `hostres` 来绕过此问题。为此，请在 loader 提示符下输入以下行：

  ```sh
  set debug.acpi.disabled="hostres"
  boot
  ```

  或将以下行放入 **/boot/loader.conf**：

  ```sh
  debug.acpi.disabled="hostres"
  ```
* [ugen(4)](https://man.freebsd.org/cgi/man.cgi?query=ugen\&sektion=4\&format=html) 设备到达时的 [devctl(4)](https://man.freebsd.org/cgi/man.cgi?query=devctl\&sektion=4\&format=html) 事件已变更。该事件现在包含变量 `ugen` 和 `cdev`，而不再使用变量 `device-name`。此变更可能导致以下 [devd(8)](https://man.freebsd.org/cgi/man.cgi?query=devd\&sektion=8\&format=html) 规则（在以前的版本中可用）无法工作：

  ```sh
  attach 0 {
      match "device-name" "ugen[0-9]+.[0-9]+";
      action "/path/to/script /dev/$device-name";
  }
  ```

  应将其更新为以下形式：

  ```sh
  attach 0 {
      match "subsystem" "DEVICE";
      match "type" "ATTACH";
      match "cdev" "ugen[0-9]+.[0-9]+";
      action "/path/to/script /dev/$cdev";
  }
  ```
* FreeBSD 9.0-RELEASE 发行说明本应提及，SSM（Source-Specific Multicast）MLDv2 现在默认使用 `ALLOW_NEW_SOURCES` 和 `BLOCK_OLD_SOURCES` 记录类型来发出加入或离开信号。这符合 RFC 4604“Using Internet Group Management Protocol Version 3 (IGMPv3) and Multicast Listener Discovery Protocol Version 2 (MLDv2) for Source-Specific Multicast”。已新增 [sysctl(8)](https://man.freebsd.org/cgi/man.cgi?query=sysctl\&sektion=8\&format=html) 变量 `net.inet6.mld.use_allow` 控制此行为。默认值为 `1`（使用 `ALLOW_NEW_SOURCES` 和 `BLOCK_OLD_SOURCES`）。
* 当接口未定义对应的变量 `ifconfig_<em0>_ipv6` 时，9.0-RELEASE 无法配置 [rc.conf(5)](https://man.freebsd.org/cgi/man.cgi?query=rc.conf\&sektion=5\&format=html) 变量 `ipv6_prefix_<em0>` 中指定的接口。此问题将在后续版本中修复。要在 9.0-RELEASE 上绕过此问题，请为 `ipv6_prefix_<em0>` 中指定的每个接口添加 `ifconfig_<em0>_ipv6` 行，如下所示：

  ```sh
  ipv6_prefix_em0="2001:db8:1:0 2001:db8:2:0"
  ifconfig_em0_ipv6="inet6 auto_linklocal"
  ```
* 在 9.0-RELEASE 中，FreeBSD USB 子系统通过 [xhci(4)](https://man.freebsd.org/cgi/man.cgi?query=xhci\&sektion=4\&format=html) 驱动程序支持 USB 3.0。然而，发行日期后发现并修复了一个可能阻止其与 USB 3.0 集线器配合使用的错误。这意味着 9.0-RELEASE 及更早版本无法与 USB 3.0 集线器配合使用。该问题已在 HEAD 中修复，并将合并至 9-STABLE 分支。

## 最新消息

无消息。

此文件和其他与版本相关的文档可从 <http://www.FreeBSD.org/releases/> 下载。

关于 FreeBSD 的问题，请在联系 <questions@FreeBSD.org> 之前先阅读 [文档](http://www.freebsd.org/docs.html)。

所有 FreeBSD 9.0-STABLE 用户应订阅 <stable@FreeBSD.org> 邮件列表。

如有关于本文档的疑问，请发送电子邮件至 <doc@FreeBSD.org>。


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://book.bsdcn.org/release/freebsd-9.0-release/9.0-errata.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
