Home / mailingsPDF  

SUN(SM) ALERT WEEKLY SUMMARY REPORT

Posted on 11 June 2007
Sun Alerts

Week of 03-Jun-2007 - 09-Jun-2007

Welcome to the Sun(SM) Alert Weekly Summary Report, the newsletter
that provides you with a weekly listing of newly released and
updated Sun Alert Notifications. It is being distributed
to inform you about critical hardware and software issues that
could impact the availability, security, and data integrity of
your computing environment.

==================================================================
ISSUE HIGHLIGHTS

* Newly Released Sun Alert Notifications

* Updated Sun Alert Notifications

* Additional Sun Alert Information

* Changes to Patch Access on SunSolve

==================================================================

-------------------------------------------------------------------
Newly Released Sun Alert Notifications
-------------------------------------------------------------------
(Total Released: 9)

Sun Alert ID: 102834 (RESOLVED)
Synopsis: A Security Vulnerability in How xscreensaver(1)
Interacts With GNOME Assistive Technology May Allow
Arbitrary Command Execution
Product: Solaris 10 Operating System
Category: Security
Date Released: 04-Jun-2007
Date Closed: 04-Jun-2007

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102834-1

-------------------------------------------------------------------
Sun Alert ID: 102902 (RESOLVED)
Synopsis: Security Vulnerability in the Authentication
Mechanism for Solaris Management Console (SMC) May
Lead to Escalation of Privileges
Product: Solaris 9 Operating System, Solaris 10 Operating
System, Solaris 8 Operating System
Category: Security
Date Released: 05-Jun-2007
Date Closed: 05-Jun-2007

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102902-1

-------------------------------------------------------------------
Sun Alert ID: 102903 (RESOLVED)
Synopsis: Security Vulnerability in the Logging Mechanism for
Solaris Management Console (SMC) May Lead to
Escalation of Privileges
Product: Solaris 9 Operating System, Solaris 10 Operating
System, Solaris 8 Operating System
Category: Security
Date Released: 05-Jun-2007
Date Closed: 05-Jun-2007

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102903-1

-------------------------------------------------------------------
Sun Alert ID: 102935 (RESOLVED)
Synopsis: Cisco MDS 9140 Switch Without SANOS 3.1.x May
Reload Firmware Unexpectedly, Causing Loss of
Availability
Product: Cisco MDS 9140 Multilayer Fabric Switch
Category: Availability
Date Released: 04-Jun-2007
Date Closed: 04-Jun-2007

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102935-1

-------------------------------------------------------------------
Sun Alert ID: 102949
Synopsis: StorageTek 5220 Controller Trays may not Recognize
Drive Types in the Expansion Tray
Product: Sun StorageTek 5220 NAS Appliance
Category: Availability
Date Released: 06-Jun-2007

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102949-1
(before accessing this Sun Alert document please login to a
SunSolve Online Account with a Sun Spectrum Support Contract
at http://sunsolve.sun.com -> "Login")

-------------------------------------------------------------------
Sun Alert ID: 102955
Synopsis: Security Vulnerability in JavaScript Engine in
Mozilla 1.7 for Solaris 8, 9 and 10
Product: Mozilla v1.7, Solaris 9 Operating System, Solaris
10 Operating System, Solaris 8 Operating System
Category: Security
Date Released: 07-Jun-2007

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102955-1

-------------------------------------------------------------------
Sun Alert ID: 102956 (RESOLVED)
Synopsis: Expired Vendor Key for Sun StorageTek Operations
Manager 5.1 May Disable Array Management
Product: Sun StorageTek Operations Manager v5.1
Category: Availability
Date Released: 08-Jun-2007
Date Closed: 08-Jun-2007

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102956-1

-------------------------------------------------------------------
Sun Alert ID: 102961
Synopsis: Security Vulnerability in scp(1) May Allow
Execution of Unintended Commands
Product: Solaris 9 Operating System, Solaris 10 Operating
System
Category: Security
Date Released: 08-Jun-2007

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102961-1

-------------------------------------------------------------------
Sun Alert ID: 102962
Synopsis: Security Vulnerability in the sshd(1M) Protocol
Version 1 Implementation May Allow a Denial of
Service to the Host
Product: Solaris 9 Operating System, Solaris 10 Operating
System
Category: Security
Date Released: 08-Jun-2007

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102962-1


-------------------------------------------------------------------
Updated Sun Alert Notifications
-------------------------------------------------------------------
(Total Updated: 3)

Sun Alert ID: 102694 (RESOLVED)
Synopsis: A Solaris 10 Race Condition May Cause cron(1M) Jobs
and Logins to Fail
Product: Solaris 10 Operating System
Category: Availability
Date Released: 02-Nov-2006, 04-Jun-2007
Date Closed: 04-Jun-2007

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102694-1

-------------------------------------------------------------------
Sun Alert ID: 102790 (RESOLVED)
Synopsis: Sun Ultra 20 and Sun Fire X2100 With Specific
Configurations May Experience "Silent Data
Corruption"
Product: Sun Fire X2100 Server, Sun Ultra 20 Workstation
Category: Data Loss
Date Released: 01-Feb-2007, 07-Jun-2007
Date Closed: 07-Jun-2007

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102790-1

-------------------------------------------------------------------
Sun Alert ID: 102929 (RESOLVED)
Synopsis: Security Vulnerability With snmpd(1M) When
Processing Certain AgentX Subagent Requests
Product: Solaris 10 Operating System
Category: Security
Date Released: 24-May-2007, 04-Jun-2007
Date Closed: 04-Jun-2007

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102929-1

------------------------------------------------------------------
Additional Sun Alert Information
------------------------------------------------------------------

* Accessing Sun Alert Notifications

Sun Alert Notifications are accessed on http://sun.com/sunsolve
under SunSolve Collections, Advanced Search, Browse Documents or
Security Sun Alerts


* Sun Alert Patch Report

http://sun.com/sunsolve/sunalert_patches.html

This is a comprehensive report of patches mentioned in the Resolution
section of Sun Alert documents and is available from SunSolve on the
Patch Portal page. It is updated daily and organized by product.


-------------------------------------------------------------------
*IMPORTANT UPDATE* Changes to Solaris 8 and 9 Patch Access on SunSolve
-------------------------------------------------------------------

Beginning March 31, 2007, Sun is changing the way users will access
Solaris 8 and 9 Software Updates (patches) to be consistent with the way users access Solaris 10 Software Updates.

Users will still be required to have a Sun Online Account and accept
a Software License Agreement in order to access any Software Updates,
but in addition users will be required to purchase a Solaris Subscription or Sun System Service Plan in order to access Solaris 8
and 9 Software Updates.

No Solaris Subscription or Sun System Service Plan will be required for security patches and device drivers, which will remain available without charge.

For more information, go to:

http://sunsolve.sun.com/search/document.do?assetkey=1-9-83061-1

For questions, contact: patchpolicy@sun.com


******************************************************************

Thanks for tuning in to the Sun Alert Weekly Summary Report!

Best regards,
Sun Alert Program Office
Sun Microsystems, Inc.


ALSO ON SUN.COM --------------------------------------------------
My Sun Connection: http://sun.com/mysunconnection
Products & Services: http://sun.com/products
Business & Industry Solutions: http://sun.com/solutions
Support & Training: http://sun.com/supportraining/
Downloads: http://sun.com/download
Documentation: http://sun.com/documentation
Research: http://sun.com/research
News: http://sun.com/news
Sun[sm] Store: http://sun.com/store

Resources for
* Developers: http://sun.com/developers
* System Admins: http://sun.com/bigadmin
* Partners: http://sun.com/partners
* Executives: http://sun.com/executives
* Investors: http://sun.com/investors
------------------------------------------------------------------

Copyright 2007 Sun Microsystems, Inc. All rights reserved.

Sun, Sun Microsystems, the Sun Logo, My Sun, iForce, Sun Fire, and
Sun StorEdge are trademarks or registered trademarks of Sun
Microsystems, Inc. in the United States and other countries. All
SPARC trademarks are used under license and are trademarks or
registered trademarks of SPARC International, Inc. in the United
States and other countries. Products bearing SPARC trademarks are
based upon an architecture developed by Sun Microsystems, Inc.

 

TOP