Trusted Solaris 8 Release Notes

Patches and Bug Fixes

The Trusted Solaris 8 release includes the following product patches and bug fixes:

Table 1-1 Product Patches and Bug Fixes Integrated in Trusted Solaris 8

Product 

Patch/Bug Number 

Synopsis 

CDE 1.4.1 

108219-01108220-01/4257350 

dtaction has potential buffer overflow problems 

 

4337474 

CDE exit failed 

 

4340269 

When trying to exit session, get TT_ERR_NO_MATCH error 

Solaris Management Console 2.0 

4353350 

Rights are displayed in wrong order in Rights Tabs 

4335699 

Help needs to be up-to-date and accurate 

4353356 

Context help slows down user interface 

Solaris 8 Update 1 

All patches incorporated into the Solaris 8 Update 1 release. See Solaris 8 (SPARC Platform Edition) 6/00 Release Notes Update or Solaris 8 (Intel Platform Edition) 6/00 Release Notes Update for details.

103640-34105402-29/4295834 

network: NETPATH security problem in libnsl 

 

106938-04106939-04/4299852 

network: Four vulnerabilities have been found in BIND. 

 

107115-05107116-05/4310991 

utility: netpr: Buffer overflow in netpr_send_message() 

 

107709-07107710-06/4270182 

smartcard: AuthenticationFailureTrap not generated during testing of security 

 

108301-02108302-02/4254347 

network: in.tftpd stops service and gets stuck in endless loop executing read 

 

108482-02108483-02/4282985 

network: snoop may be exploited to gain root access 

 

108529-02/4331306 

kernel: Transferring large amounts of data using cpio to a partition on a 20Gbyte disk causes a panic. 

 

4237487 

utility: libprint has buffer overflows and other security problems 

 

4302198 

kernel: Solaris 8 kernel panic when servicing interrupt from hme device 

 

4313067 

libcurses: setupterm has buffer overflow 

 

4318294 

nisplus: Operations on NIS+ master slow when bug fix 4165775 is introduced 

 

4324685 

smartcard: Error message displayed when smart card is inserted 

 

4325934 

kernel: boot -r with PCMCIA modem cards installed causes a panic on the Sparc Ultra 2 

 

4330206 

kernel: Framebuffers fails to power manage Estar-compliant monitors 

 

4331401 

audit: segmentation violation in au_user_mask() 

 

4339366 

sysadmin: Security vulnerability in ufsrestore allows root compromise 

 

4341092 

network: in.named buffer overflow vulnerabilities 

 

4343216 

smartcard: Security problem in ocfserv 

 

4344275 

audit: Preselection will work in 64-bit mode. 

 

4353727  

AnswerBook2: AB 1.4.2 create admin user interactive shell 

 

4353965 

audit: CDE logout / exit fails with Tooltalk message 

 

4366956 

library: NLSPATH gettext introduces problems when used printf format specifier 

 

4364261 

consolidation: sprintf and gettext do not mix 

 

4373273 

audit: praudit has problems with certain audit records 

Trusted Solaris 7 -- Trusted Solaris 8 contains all the patches released for Trusted Solaris 7.