Home / mailings SUN ALERT WEEKLY SUMMARY REPORT
Posted on 22 September 2008
Sun AlertsWeek of 14-Sep-2008 to 20-Sep-2008
Welcome to the Sun Alert Weekly Summary Report, the newsletter
that provides you with a weekly listing of newly released and
updated Sun Alert Notifications. It is being distributed
to inform you about critical hardware and software issues that
could impact the availability, security, and data integrity of
your computing environment.
==================================================================
ISSUE HIGHLIGHTS
* New and Updated Sun Alerts for 3 Release Phases:
Preliminary, Workaround and Resolved
Note: To read past newsletters go to sunsolve.sun.com,
hit Accept, use Advanced Search with keywords "weekly
summary report newsletter", Sort by Date, and select the
Sun Alert Notifications collection.
=================================================================
New Preliminary Sun Alert Notifications
(Total Preliminary: 1)
Sun Alert ID: 242267
Title: Security Vulnerability in the ACL (acl(2))
Implementation for UFS File Systems May Allow a Local
User to Panic the System
Product: Solaris 8 Operating System, Solaris 9 Operating System,
Solaris 10 Operating System, OpenSolaris
Category: Security
Release Phase: Preliminary
Preliminary Date: 18-Sep-2008
To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-242267-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.
=================================================================
New Workaround Sun Alert Notifications
None
=================================================================
New Resolved Sun Alert Notifications
(Total Resolved: 7)
Sun Alert ID: 200386 Previous ID: 101918
Title: Security Vulnerability in the Logging Output of Sun Java
System Access Manager
Product: Sun Java System Access Manager 2004Q2, Sun Java System
Access Manager 6 2005Q1, Sun Java System Identity
Server 6.1
Category: Security
Release Phase: Resolved
Resolved Date: 19-Sep-2008
To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-200386-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.
-----------------------------------------------------------------
Sun Alert ID: 200664 Previous ID: 103117
Title: On Some Sun4v Platforms with Patch125369-02 (or later),
"showfaults" on the Service Processor May Display the
Motherboard as the Faulty FRU Instead of the Actual
Faulty FRU
Product: Solaris 10 Operating System
Category: Availability
Release Phase: Resolved
Resolved Date: 15-Sep-2008
To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-200664-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.
-----------------------------------------------------------------
Sun Alert ID: 201251
Title: Cross-site Scripting (XSS) Vulnerability in the Sun Java
System Access Manager Administration Console
Product: Sun Java System Access Manager 7.1, Sun Java System
Access Manager 7 2005Q4
Category: Security
Release Phase: Resolved
Resolved Date: 19-Sep-2008
To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-201251-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.
-----------------------------------------------------------------
Sun Alert ID: 237987
Title: Manipulated Tag Files used with Solaris Text Editors May
Lead to Execution of Arbitrary Code
Product: Solaris 8 Operating System , Solaris 9 Operating System,
Solaris 10 Operating System
Category: Security
Release Phase: Resolved
Resolved Date: 17-Sep-2008
To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-237987-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.
-----------------------------------------------------------------
Sun Alert ID: 240708
Title: Multiple Security Vulnerabilities in rdesktop May Lead
to Execution of Arbitrary Code or Denial of Service
(DOS)
Product: OpenSolaris
Category: Security
Release Phase: Resolved
Resolved Date: 16-Sep-2008
To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-240708-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.
-----------------------------------------------------------------
Sun Alert ID: 241686
Title: A Security Vulnerability within the SunMC PRM Web Page
may result in a Denial of Service (DoS)
Product: Sun Management Center 3.6.1, Sun Management Center 4.0
Category: Security
Release Phase: Resolved
Resolved Date: 15-Sep-2008
To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-241686-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.
-----------------------------------------------------------------
Sun Alert ID: 242106
Title: On Certain Sun Enterprise, Blade, and Netra Servers, TOD
may Advance as Much As One Second Every Fifteen Minutes
Product: Sun SPARC Enterprise T5120 Server, Sun SPARC Enterprise
T5220 Server, Sun SPARC Enterprise T5140 Server, Sun
SPARC Enterprise T5240 Server, Sun Blade T6320 Server
Module, Sun Netra CP3260 ATCA Blade Server, Sun Netra
T5220 Server
Category: Availability, Data Loss
Release Phase: Resolved
Resolved Date: 17-Sep-2008
To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-242106-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.
=================================================================
Updated Sun Alert Notifications
(Total Updated: 1)
Sun Alert ID: 234601
Title: Solaris 10 Under Certain Conditions, Dynamic
Reconfiguration (DR) "deleteboard" and "moveboard"
Operations May Hang on a SPARC Enterprise
M4000/M5000/M8000/M9000
Product: SPARC Enterprise M4000, SPARC Enterprise M5000, SPARC
Enterprise M8000, SPARC Enterprise M9000, Solaris 10
Operating System
Category: Availability
Release Phase: Resolved
Resolved Date: 11-Jun-2008
Last Updated: 15-Sep-2008
To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-234601-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.
==================================================================
* NEW RSS Feed:
http://www.sun.com/rss/?t=3&pgID=1&trss=Sun%20Alerts%20-%20New&uri=http:
//cds-srv.sun.com:8700/rss/insert/public/sunalert_insert.xml
* Sun Alert Patch Report
This report is no longer available on SunSolve, however a new TEXT version is
available at:
https://supportuploads.sun.com/download?directory=downloads&file=SApatches%2dpub%2etxt
or go to http://supportfiles.sun.com/download and enter the following
file name, SApatches-pub.txt, from the directory named "downloads".
==================================================================
Thanks for tuning in to the Sun Alert Weekly Summary Report!
Best regards,
Sun Alert Program Office
Sun Microsystems, Inc.
sunalert-newsletter@sun.com