1 <?xml version="1.0" encoding="iso-8859-1"?>
2 <!DOCTYPE article PUBLIC "-//FreeBSD//DTD DocBook XML V5.0-Based Extension//EN"
3 "../../../share/xml/freebsd50.dtd" [
4 <!ENTITY % release PUBLIC "-//FreeBSD//ENTITIES Release Specification//EN" "release.ent">
7 <article xmlns="http://docbook.org/ns/docbook" xmlns:xlink="http://www.w3.org/1999/xlink" version="5.0">
8 <info><title>&os; &release.current; Release Notes</title>
10 <author><orgname>The &os; Project</orgname></author>
12 <pubdate>$FreeBSD$</pubdate>
16 <holder role="mailto:doc@FreeBSD.org">The &os; Documentation Project</holder>
19 <legalnotice xml:id="trademarks" role="trademarks">
29 <para>The release notes for &os; &release.current; contain a summary
30 of the changes made to the &os; base system on the
31 &release.branch; development line.
32 This document lists applicable security advisories that were issued since
33 the last release, as well as significant changes to the &os;
35 Some brief remarks on upgrading are also presented.</para>
39 <sect1 xml:id="intro">
40 <title>Introduction</title>
42 <para>This document contains the release notes for &os;
43 &release.current;. It describes recently added, changed, or
44 deleted features of &os;. It also provides some notes on
45 upgrading from previous versions of &os;.</para>
47 <para>This distribution of &os; &release.current; is a
48 &release.type; distribution. It can be found at <uri xlink:href="&release.url;">&release.url;</uri> or any of its mirrors. More
49 information on obtaining this (or other) &release.type;
50 distributions of &os; can be found in the <link xlink:href="&url.books.handbook;/mirrors.html"><quote>Obtaining
51 &os;</quote> appendix</link> to the <link xlink:href="&url.books.handbook;/">&os; Handbook</link>.</para>
53 <para>All users are encouraged to consult the release errata before
54 installing &os;. The errata document is updated with
55 <quote>late-breaking</quote> information discovered late in the
56 release cycle or after the release. Typically, it contains
57 information on known bugs, security advisories, and corrections to
58 documentation. An up-to-date copy of the errata for &os;
59 &release.current; can be found on the &os; Web site.</para>
63 <title>What's New</title>
65 <para>This section describes the most user-visible new or changed
66 features in &os; since &release.prev;.</para>
68 <para>Typical release note items document recent security
69 advisories issued after &release.prev;, new drivers or hardware
70 support, new commands or options, major bug fixes, or
71 contributed software upgrades. They may also list changes to
72 major ports/packages or release engineering practices. Clearly
73 the release notes cannot list every single change made to &os;
74 between releases; this document focuses primarily on security
75 advisories, user-visible changes, and major architectural
78 <sect2 xml:id="security">
79 <title>Security Advisories</title>
81 <para>Problems described in the following security advisories have
82 been fixed. For more information, consult the individual
83 advisories available from
84 <uri xlink:href="http://security.FreeBSD.org/">http://security.FreeBSD.org/</uri>.</para>
86 <informaltable frame="none" pgwide="1">
88 <colspec colwidth="1*"/>
89 <colspec colwidth="1*"/>
90 <colspec colwidth="3*"/>
93 <entry>Advisory</entry>
101 <entry><link xlink:href="http://security.freebsd.org/advisories/FreeBSD-SA-14:01.bsnmpd.asc">FreeBSD-SA-14:01.bsnmpd</link></entry>
102 <entry>1 January 2014</entry>
103 <entry><para>Fix &man.bsnmpd.1; remote denial of service
104 vulnerability</para></entry>
108 <entry><link xlink:href="http://security.freebsd.org/advisories/FreeBSD-SA-14:02.ntpd.asc">FreeBSD-SA-14:02.ntpd</link></entry>
109 <entry>1 January 2014</entry>
110 <entry><para>Disable <quote>monitor</quote> feature in
111 &man.ntpd.8; by default</para></entry>
115 <entry><link xlink:href="http://security.freebsd.org/advisories/FreeBSD-SA-14:04.bind.asc">FreeBSD-SA-14:04.bind</link></entry>
116 <entry>1 January 2014</entry>
117 <entry><para>Remote denial of service
118 vulnerability</para></entry>
125 <sect2 xml:id="kernel">
126 <title>Kernel Changes</title>
128 <para revision="256437">The &man.isci.4; driver is now loadable
129 via &man.kldload.8;.</para>
131 <para revision="256759">System-level &man.sysctl.8; values are
132 now exposed to the system for the &man.ixgbe.4; device.</para>
134 <para revision="256924">The &man.mfi.4; driver has been updated
135 to support MegaRAID Invader controllers.</para>
137 <para revision="257119">A kernel panic triggered in
138 <literal>zfs_root()</literal> after a failed rollback has
141 <para revision="257125">A new &man.sysctl.8;,
142 <literal>debug.devfs_iosize_max_clamp</literal> has been added
143 which enables and disables <literal>SSIZE_MAX</literal>-sized
144 I/O requests on &man.devfs.5; files.</para>
146 <para revision="257126">A new &man.sysctl.8;,
147 <literal>kern.disallow_high_osrel</literal>, has been added
148 which disables executing the images compiled on a userland
149 with a higher major version number than the major version
150 number of the running kernel.</para>
152 <para revision="257253">A kernel panic triggered by unmounting
153 a busy &man.zfs.8; filesystem has been fixed.</para>
155 <para revision="257373">A deadlock triggered by powering off
156 a USB device has been fixed.</para>
158 <para revision="258214">The &man.ata.4; driver has been updated
159 to support Intel Lynx Point PCH SMBus devices.</para>
161 <para revision="258215">The &man.ata.4; driver has been updated
162 to support Coleto Creek devices.</para>
164 <para revision="258217">The &man.ahci.4; driver has been updated
165 to support the PCI-express solid state drive in the
166 &apple; MacBook Air (model A1465).</para>
168 <para revision="258635">The &man.sysctl.8;
169 <literal>vfs.zfs.arc_meta_limit</literal> can now be changed
172 <para revision="258870">The &man.mmap.2; system call has been
173 updated to more optimally use superpages and provide support
174 for tweaking the alignment of virtual mappings.</para>
176 <para revision="258962">A workaround has been implemented
177 in the &man.bge.4; driver for hung transmission on BCM5719
178 and BCM5720 chipsets.</para>
180 <para revision="259002">A kernel panic when listing sysctls
181 on a system with <literal>INVARIANTS</literal> enabled has
184 <para revision="259466">A new &man.sysctl.8;,
185 <literal>kern.supported_archs</literal> has been added,
186 which will list the <envar>MACHINE_ARCH</envar> values
187 whose binaries can be run on the system.</para>
189 <para revision="259519">Several problems that could trigger
190 kernel panic on &man.kldload.8; and &man.kldunload.8; have
193 <para revision="260082">A kernel panic triggered by some
194 multi-threaded applications has been fixed.</para>
196 <para revision="260134">The &man.runfw.4; firmware has been
197 renamed from <literal>runfw</literal> to
198 <literal>run.fw</literal> for consistency with other firmware
201 <para revision="260433">A new &man.sysctl.8;,
202 <literal>kern.panic_reboot_wait_time</literal>, has been
203 added. This allows tuning the amount of time the system
204 will wait before rebooting after &man.panic.9;. The
205 <literal>kern.panic_reboot_wait_time</literal> value defaults
206 to the kernel configuration option,
207 <literal>PANIC_REBOOT_WAIT_TIME</literal>.</para>
209 <para revision="260644">Hardware Random Number Generators have
210 been disabled by default.</para>
212 <para revision="261483">Support for GPS ports has been added
213 to the &man.uhso.4; driver.</para>
215 <para revision="262116">A memory leak of compressed buffers
217 <literal>l2arc_write_done()</literal>.</para>
219 <para revision="262153">The &man.netmap.4; framework has been
220 updated to match the version in <literal>head/</literal>,
221 which includes netmap pipes, kqueue support, and enhanced
222 VALE switch port.</para>
224 <para revision="262175">A deadlock triggered by sending
225 a mounted &man.zfs.8; snapshot has been fixed.</para>
227 <para revision="262231">Support for SIIG X1 PCI-e has been added
228 to &man.ppc.4;.</para>
230 <para revision="262564">Support for the ext4 filesystem
231 has been enabled, supporting read-only mounts.</para>
233 <para revision="262594">A kernel panic triggered by inserting
234 a USB ethernet device on VIMAGE-enabled systems has been
237 <para revision="262988">TTM, a memory manager used by video
238 drivers, has been merged.</para>
240 <para revision="263103">Support for
241 <literal>/sys/kernel/random/uuid</literal> has been added
242 to &man.linprocfs.5;.</para>
244 <para revision="263128">A memory leak in the
245 <literal>zpool_in_use()</literal> function has been
248 <para revision="263391">The
249 <literal>extensible_dataset</literal> &man.zpool.8; feature
250 has been added. See &man.zpool-features.7; for more
253 <para revision="263408">A memory leak has been fixed in
254 <literal>libzfs</literal>.</para>
256 <sect3 xml:id="boot">
257 <title>Boot Loader Changes</title>
263 <sect3 xml:id="proc">
264 <title>Hardware Support</title>
266 <para revision="261510">Trackpad support for
267 &apple; MacBook products has been added.</para>
269 <para revision="261973">The &man.nve.4; driver has been
270 deprecated, and the &man.nfe.4; driver should be used
273 <para revision="262968">The &man.mfi.4; driver has been
274 updated to support MegaRAID Fury cards.</para>
276 <para revision="263170,263171">The Radeon KMS driver has been
279 <para revision="263340">The &man.aacraid.4; driver has been
280 updated to version 3.2.5.</para>
283 <title>Multimedia Support</title>
289 <sect4 xml:id="net-if">
290 <title>Network Interface Support</title>
292 <para revision="257611">The &man.re.4; driver has been
293 updated to add preliminary support for the RTL8106E
296 <para revision="257614,257616">The &man.re.4; driver has
297 been updated to support the RTL8168G, RTL8168GU and
298 RTL8411B chipsets.</para>
300 <para revision="257618">The &man.re.4; driver has been
301 updated to add preliminary support for the RTL8168EP
304 <para revision="258586">The &man.oce.4; driver has been
305 updated to version 10.0.664.0.</para>
307 <para revision="258898">The &man.qlxgbe.4; driver has been
308 imported from <literal>head/</literal>.</para>
310 <para revision="258936">The &man.qlxge.4; driver has been
311 imported from <literal>head/</literal>.</para>
313 <para revision="258965">The &man.bge.4; driver has been
314 updated to support the BCM5725 chipset.</para>
316 <para revision="258967">The &man.bge.4; driver has been
317 updated to support the BCM57764, BCM57767, BCM57782,
318 BCM57786 and BCM57787 chipsets.</para>
320 <para revision="259457">The &man.run.4; driver has been
321 updated to support MediaTek/Ralink chipsets RT5370 and
324 <para revision="259460">The &man.usb.4; wireless radiotap
325 headers have been realigned, allowing wireless adapters
326 to work on &arch.arm;, &arch.mips;, and other similar
327 platforms where alignment is important.</para>
329 <para revision="260119">The &man.run.4; firmware has been
330 updated to version 0.33.</para>
332 <para revision="260252">The &man.bxe.4; driver has been
333 merged from <literal>head/</literal>, providing support
334 for Broadcom NetXtreme II 10Gb PCIe adapters.</para>
336 <para revision="261865">The &man.run.4; driver has been
337 updated to include support for the MediaTek/Ralink RT3593
340 <para revision="261933">The &man.run.4; driver has been
341 updated to include support for the DLINK DWA-127 wireless
344 <para revision="262153">The &man.axge.4; driver has been
347 <para revision="262362">The &man.urndis.4; driver has been
348 imported from OpenBSD.</para>
350 <para revision="263582">The &man.bxe.4; driver has been
351 updated to version 1.78.78.</para>
356 <sect3 xml:id="net-proto">
357 <title>Network Protocols</title>
363 <sect3 xml:id="disks">
364 <title>Disks and Storage</title>
371 <title>File Systems</title>
373 <para revision="263410">The &man.zfs.8; filesystem has been
374 updated to support the <literal>bookmarks</literal>
380 <sect2 xml:id="userland">
381 <title>Userland Changes</title>
383 <para revision="257496">The &man.ddb.8; utility has been updated
384 to add <command>show ioapic</command> and <command>show all
385 ioapics</command>.</para>
387 <para revision="258183">Setting <literal>nmbcluster</literal>
388 values to their current value will now be ignored, instead of
389 failing with an error.</para>
391 <para revision="258763">The <filename
392 class="directory">/var/cache</filename> directory is now
393 created with mode <literal>0755</literal> instead of mode
394 <literal>0750</literal>, since this directory is used by
395 many third-party applications, which makes dropping group
396 privileges impossible.</para>
398 <para revision="258818">The &man.uname.1; utility has been
399 updated to include the <literal>-U</literal> and
400 <literal>-K</literal> flags, which print the
401 <envar>__FreeBSD_version</envar> for the running userland
402 and kernel, respectively.</para>
404 <para revision="258844">The &man.fetch.3; library has been
405 updated to support SNI (Server Name Identification), allowing
406 to use virtual hosts on HTTPS.</para>
408 <para revision="259243">A segmentation fault and internal
409 compiler error bug in &man.gcc.1; triggered by throwing
410 a warning before parsing any tokens has been fixed.</para>
412 <para revision="259269,259406">Several updates to &man.gcc.1;
413 have been imported from Google.</para>
415 <para revision="259448">A byte-order bug in the Heimdal
416 <literal>gss_pseudo_random()</literal> function which would
417 prevent interoperability with other
418 <application>Kerberos</application> implementations has been
419 fixed. In particular, this would prevent interoperability
420 with the MIT implementation.</para>
422 <para revision="260007">The &man.hastctl.8; utility has been
423 updated to output the current queue sizes.</para>
425 <para revision="260197">The &man.ps.1; utility will no longer
426 truncate the <literal>command</literal> output column.</para>
428 <para revision="260208">The &man.protect.1; command has been
429 added, which allows exempting processes from being killed
430 when swap is exhausted.</para>
432 <para revision="260507">The &man.gmirror.8; utility now prevents
433 deactivating the last component of a mirror.</para>
435 <para revision="260507">A new &man.gmirror.8; command,
436 <command>gmirror destroy</command>, has been added, which will
437 destroy the &man.geom.8; and erase the &man.gmirror.8;
440 <para revision="260650">The &man.etcupdate.8; utility, a tool
441 for managing updates to files in <filename
442 class="directory">/etc</filename>, has been merged from
443 <literal>head/</literal>.</para>
445 <para revision="260651">The &man.find.1; utility has been
446 updated to fix incorrect behavior with the
447 <literal>-lname</literal> and <literal>-ilname</literal>
450 <para revision="260868,260869">The
451 <literal>hw.uart.console</literal> is now always updated when
452 the comconsole setup changes.</para>
454 <para revision="260909">The &man.kldload.8; utility has been
455 updated to display a message directing to &man.dmesg.8;,
456 instead of the cryptic message <quote>Exec format
457 error</quote>.</para>
459 <para revision="261674">A bug that could trigger an infinite
460 loop in KDE and X has been fixed.</para>
462 <para revision="262076">The &man.newsyslog.8; utility has been
463 changed to use the size of the file, instead of the blocks the
464 file takes on the disk to matche the behavior documented in
465 &man.newsyslog.conf.5;.</para>
467 <para revision="262105">A bug in &man.zdb.8; which would cause
468 numeric parameters to a flag as being treated as additional
469 flags has been fixed.</para>
471 <para revision="262124">The default number of &man.nfsd.8;
472 threads has been increased from <literal>4</literal> to
473 <literal>(8 * N)</literal>, where <literal>N</literal> is
474 the number of CPUs as reported by
475 <command>sysctl -n hw.ncpu</command>.</para>
477 <para revision="262134">The &man.pciconf.8; utility now has
478 a <literal>-V</literal> flag, which lists information such
479 as serial numbers for each device.</para>
481 <para revision="262158">A bug that would allow creating
482 a &man.zfs.8; snapshot of an inconsistent dataset has been
485 <para revision="262160">Receiving a &man.zfs.8; dataset with
486 <command>zfs recv -F</command> now properly destroys any
487 snapshots that were created since the incremental source
490 <para revision="263031">Installation from a read-only
491 <envar>.OBJDIR</envar> has been fixed.</para>
493 <para revision="263031">A new shared library directory,
494 <filename class="directory">/usr/lib/private</filename>,
495 has been added for internal-use shared libraries.</para>
497 <para revision="263031">A default
498 <filename>libmap32.conf</filename> has been added, for 32-bit
501 <para revision="263032">The <literal>libucl</literal> library
502 a JSON-compatible configuration file parsing library,has been
505 <para revision="263038">The &man.pkg.7; package management
506 utility has been syncronized with <literal>head/</literal>.
507 This implements binary package signature verification when
508 bootstrapping the system with <command>pkg
509 bootstrap</command>.</para>
511 <para revision="263042">The system timezone data files have
512 been updated to version tzdata2014a.</para>
514 <para revision="263212">The NetBSD &man.make.1; utility,
515 <command>bmake</command> has been imported for compatibility
516 with the &os; Ports Collection. It is installed as
517 <command>bmake</command>, and the <command>make</command>
518 remains the &os; version.</para>
520 <para revision="263326">The &man.fetch.3; library now
521 supports <literal>Last-Modified</literal> timestamps which
522 return UTC instead of GMT.</para>
524 <para revision="263404">Aliases for the &man.zfs.8; commands
525 <literal>list -t snap</literal> and <literal>snap</literal>
526 have been added to match &oracle; Solaris 11.</para>
528 <para revision="263406">A new flag, <literal>-p</literal>, has
529 been added to the &man.zfs.8; <literal>list</literal> command,
530 providing output in a parseable form.</para>
532 <para revision="263421"><application>OpenPAM</application> has
533 been updated to Nummularia (20130907), which incorporates
534 several bug fixes and documentation improvements. The
535 &man.openpam.ttyconv.3; library has been completely
538 <sect3 xml:id="periodic-scripts">
539 <title>&man.periodic.8; Scripts</title>
545 <sect3 xml:id="rc-scripts">
546 <title>&man.rc.8; Scripts</title>
548 <para revision="256917">Support for <quote>first boot</quote>
549 scripts has been added to &man.rc.8;. See &man.rc.8; and
550 &man.rc.conf.5; for implementation details.</para>
552 <para revision="260432">The &man.rc.8; system will now
553 re-source &man.rc.conf.5; on receipt of
554 <literal>SIGALRM</literal>.</para>
559 <sect2 xml:id="contrib">
560 <title>Contributed Software</title>
562 <para revision="261375"><application>Sendmail</application> has
563 been updated to version 8.14.8.</para>
565 <para revision="262706"><application>BIND</application> has
566 been updated to version 9.9.5.</para>
568 <para revision="263286">The &man.xz.1; utility has been updated
569 to a post-5.0.5 snapshot.</para>
573 <sect2 xml:id="releng">
574 <title>Release Engineering and Integration</title>
576 <para revision="260891">As part of the release build, the
577 &man.etcupdate.8; utility will bootstrap the system, allowing
578 &man.etcupdate.8; to work after the first upgrade of a
581 <para revision="262879">The <filename>release.sh</filename>
582 script and release <filename>Makefile</filename> have been
583 updated to use &man.pkg.7; to populate the dvd installation
586 <para revision="263028">The &man.services.mkdb.8; utility has
587 been updated to support multiple byte orders. Similar to
588 &man.cap.mkdb.1;, the <filename>services.db</filename> will
589 be created with proper endinanness as part of
590 cross-architecture release builds.</para>
595 <sect1 xml:id="upgrade">
596 <title>Upgrading from previous releases of &os;</title>
599 <title>Upgrading using &man.freebsd-update.8; or a source-based
602 <para arch="amd64,i386">Binary upgrades between RELEASE versions
603 (and snapshots of the various security branches) are supported
604 using the &man.freebsd-update.8; utility. The binary upgrade
605 procedure will update unmodified userland utilities, as well
606 as an unmodified <filename>GENERIC</filename> kernel,
607 distributed as a part of an official &os; release. The
608 &man.freebsd-update.8; utility requires that the host being
609 upgraded have Internet connectivity.</para>
611 <para>Source-based upgrades (those based on recompiling the &os;
612 base system from source code) from previous versions are
613 supported using to the instructions in
614 <filename>/usr/src/UPDATING</filename>.</para>
617 <para>For more specific information about upgrading
618 instructions, see <uri xlink:href="http://www.FreeBSD.org/releases/9.3R/installation.html">http://www.FreeBSD.org/releases/9.3R/installation.html</uri>.</para>
622 <para>Upgrading &os; should, of course, only be attempted
623 after backing up <emphasis>all</emphasis> data and
624 configuration files.</para>
629 <title xml:id="upgrade-pitfalls">User-visible incompatibilities</title>
631 <para>FreeBSD 9.0 and later have several incompatibilities in
632 system configuration which you might want to know before
633 upgrading your system. <emphasis>Please read this section and
634 the <link xlink:href="http://www.freebsd.org/releases/9.0R/relnotes-detailed.html#UPGRADE">Upgrading
635 Section in 9.0-RELEASE Release Notes</link> carefully before
636 submitting a problem report and/or posting a question to the
637 FreeBSD mailing lists.</emphasis></para>