Trusted Solaris 8 2/04 Release Notes

Solaris Bug Fixes Incorporated Into the Trusted Solaris 8 2/04 Release

The Trusted Solaris 8 2/04 release includes all product patches and bug fixes that were incorporated into the Solaris 8 2/04 release. This release also includes some of the patches for the Solaris 8 2/04 release. To see the list of patches, use the showrev -p command.

Additional bug fixes that are included in the Trusted Solaris 8 2/04 release are listed in the following table. Some bug fixes are for software that is part of the Trusted Solaris release, such as CDE or the Solaris Management Console.

Table 1–1 Solaris Bug Fixes Incorporated Into the Trusted Solaris 8 2/04 Release

Solaris Bug Number 

Synopsis 

None 

Upgrade BIND to version 8.2.4 

2126367 6248413 

Need to support pam_passwd_auth.so.1. passwd asks wrong password for root if running NIS+.

4353832 

fsck gives up too easily.

4392163 

Some ftp clients expose in.ftpd EPRT bug.

4471907 

libresolv() does not init in an IPv6-only environment.

4500613 

Remove res_npquery() function prototype.

4509659 

ufs: dnlc contains many “.” entries.

4617431 

Mozilla dumps core when using libresolv2.

4671383 

ufs create/mkdir/edquota deadlock

4705157 

in.rwhod is too trusting of input format.

4705393 

newgrp is vulnerable to buffer overflow.

4723351 

ufs: file link count is 0. 

4765506 

NIS+ has problems when password is longer than 8 characters. 

4786448 6182042 

/usr/dt/bin/dtaction segfaults

4789213 

stat() succeeds on dir/. even when dir is mode 000.

4803148 

ufs has issues reading its own directories. 

4805635 

root can change end user password in NIS+ without entering its own password.

4830406 

passwd utility does not handle NIS+ subdomains correctly.

4863307 

nsupdate fails with more than 14 NS records for Bind 8.2.2 and 8.2.4

4873939 

PAM and compat do not work after applying patch 108993-18. 

4879704 

ndc cannot switch off tracing with notrace when in.named is under heavy load.

4879822 

in.named core dumps, Solaris 8, Bind v. 8.2.2-P5

4887906 

pam_sm_chauthtok() returns 13 (PAM_USER_UNKNOWN) if lastchg=0 for local users.

4889619 

Unreferenced files seen by fsck on a cleanly unmounted filesystem.

4913437 

Changing password in NIS+ fails on clients with “Permission denied”. 

4917860 6182042 

DtSvc:potential buffer overflow hole. 

4933407 

Resolvers do not follow referrals (SUNW_CHAINING fix).

4941011 

nslookup view command fails with sed: command garbled.

4954379 

Sendmail contains buffer overflow in ruleset parsing. 

4977110 

passwd does not work with compat entries in /etc/nsswitch.conf.

4981868 

passwd with NIS+ back end chooses wrong uid/credentials for update

5007891 

Solaris 8 passwd command may SEGV on NIS+ master servers.

5014993 

User logins may fail when nsswitch compat mode is used with NIS+ or LDAP 

5044522 

Root is able to change user password if number of attempts is greater than max_attempts in NIS+. 

5055875 

Buffer overflow in auth_to_local rules.

5092678 6182042 

libDtSvc contains a buffer overflow when dealing with DTDATABASESEARCHPATH

5108531 

Multiple PASV allow multiple port bound causes running out of ports. 

5086486 5098146 

Buffer overflows in Xpm code in libXm (CESA-2004-003 / CAN-2004-0687).

5086488 5098146 

Integer overflows in Xpm code in libXm (CESA-2004-003 / CAN-2004-0688).

6234932 

telnet.c buffer overflow.