Home / mailingsPDF  

SUN ALERT WEEKLY SUMMARY REPORT

Posted on 03 March 2008
Sun Alerts

Week of 24-Feb-2008 to 01-Mar-2008

Welcome to the Sun Alert Weekly Summary Report, the newsletter
that provides you with a weekly listing of newly released and
updated Sun Alert Notifications. It is being distributed
to inform you about critical hardware and software issues that
could impact the availability, security, and data integrity of
your computing environment.

==================================================================
ISSUE HIGHLIGHTS

* Newly Released Sun Alerts for 3 Release Phases:

Preliminary, Workaround and Resolved

* Updated Sun Alerts

* Additional Information


=================================================================
New Preliminary Sun Alert Notifications
None

=================================================================
New Workaround Sun Alert Notifications
(Total Workaround: 4)

Sun Alert ID: 201251
Title: Cross-site Scripting (XSS) Vulnerability in the Sun Java
System Access Manager Administration Console
Product: Sun Java System Access Manager 7.1, Sun Java System
Access Manager 7 2005Q4
Category: Security
Release Phase: Workaround
Workaround Date: 27-Feb-2008

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-201251-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.

-----------------------------------------------------------------

Sun Alert ID: 231581
Title: Completing the SCSI Command When There is a Data
Underrun Error Condition May Result in Data
Loss/Corruption
Product: Storage Network Foundation Software
Category: Data Loss
Release Phase: Workaround
Workaround Date: 27-Feb-2008

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-231581-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.

-----------------------------------------------------------------

Sun Alert ID: 231582
Title: VxVM 5.0 MP1 System Panics in vol_kmsg_get_packed_sz()
Product: Veritas Storage Foundation 5.0 Software
Category: Availability
Release Phase: Workaround
Workaround Date: 26-Feb-2008

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-231582-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.

-----------------------------------------------------------------

Sun Alert ID: 233623
Title: Cross Site Scripting (XSS) Vulnerabilities in the Apache
1.3 and 2.0 "mod_imap" and "mod_status" Modules
Product: Solaris 8 Operating System, Solaris 9 Operating System,
Solaris 10 Operating System
Category: Security
Release Phase: Workaround
Workaround Date: 28-Feb-2008

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-233623-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.


=================================================================
New Resolved Sun Alert Notifications
(Total Resolved: 3)

Sun Alert ID: 233561
Title: Cross Site Scripting (XSS) Vulnerability in Sun Java
Server Faces (JSF) Input Handling Routines May Lead to
Elevation of Privileges
Product: Sun Java Server Faces 1.2 Software
Category: Security
Release Phase: Resolved
Resolved Date: 27-Feb-2008

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-233561-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.

-----------------------------------------------------------------

Sun Alert ID: 233602
Title: Solaris 10 Assertion Failure in ZFS May Cause a System
Panic
Product: Solaris 10 Operating System
Category: Availability
Release Phase: Resolved
Resolved Date: 26-Feb-2008

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-233602-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.

-----------------------------------------------------------------

Sun Alert ID: 233761
Title: Security Vulnerability in the ipsecah(7P) Kernel Module
May Lead to System Panic
Product: Solaris 10 Operating System
Category: Security
Release Phase: Resolved
Resolved Date: 28-Feb-2008

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-233761-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.


=================================================================
Updated Sun Alert Notifications
(Total Updated: 3)

Sun Alert ID: 201321 Previous ID: 103186
Title: Solaris 10 Systems With Certain Patches Installed May
Experience Data Integrity Issues Over TCP Loopback
Product: Solaris 10 Operating System
Category: Data Loss, Availability
Release Phase: Resolved
Resolved Date: 21-Dec-2007
Last Updated: 25-Feb-2008

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-201321-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.

-----------------------------------------------------------------

Sun Alert ID: 231701
Title: Disk Drive Off Lines and Fail modes Without Recent
Firmware Updates
Product: Sun StorEdge 3510 FC Array, , Sun StorageTek
6130/6140/6540 Arrays with CSM 200 trays,, Sun
StorageTek Flexline 240/280/380 Arrays with CSM 200
trays
Category: Availability
Release Phase: Resolved
Resolved Date: 12-Feb-2008
Last Updated: 27-Feb-2008

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-231701-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.

-----------------------------------------------------------------

Sun Alert ID: 233341
Title: Solaris 10 x86 Systems Using Marvell HBA Controllers May
Experience Panic or Hang
Product: Solaris 10 Operating System
Category: Availability
Release Phase: Workaround
Workaround Date: 21-Feb-2008
Last Updated: 29-Feb-2008

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-233341-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.


==================================================================
Additional Information:

Please see the following sites for recent information on the new
SunSpectrum Member Support Center and changes to SunSolve:

* SunSpectrum Member Support Center wiki
http://wikis.sun.com/display/ssmsc
* New SunSolve wiki
http://wikis.sun.com/display/sunsolve

Changes to the Online Support Center (OSC) :

* New OSC wiki http://wikis.sun.com/display/osc

==================================================================

Thanks for tuning in to the Sun Alert Weekly Summary Report!

Best regards,
Sun Alert Program Office
Sun Microsystems, Inc.
sunalert-newsletter@sun.com

 

TOP