Home / mailingsPDF  

SUN ALERT WEEKLY SUMMARY REPORT

Posted on 21 December 2009
Sun Alerts

Week of 13-Dec-2009 to 19-Dec-2009

Welcome to the Sun Alert Weekly Summary Report, the newsletter
that provides you with a weekly listing of newly released and
updated Sun Alert Notifications. It is being distributed
to inform you about critical hardware and software issues that
could impact the availability, security, and data integrity of
your computing environment.

==================================================================
ISSUE HIGHLIGHTS - New http://wikis.sun.com/x/EAF9B

* New and Updated Sun Alerts for 3 Release Phases:

Preliminary, Workaround and Resolved

Note: To read past newsletters go to sunsolve.sun.com,
hit Accept, use Advanced Search with keywords "weekly
summary report newsletter", Sort by Date, and select the
Sun Alert Notifications collection.

=================================================================
New Preliminary Sun Alert Notifications
None


=================================================================
New Workaround Sun Alert Notifications
(Total Workaround: 4)

Sun Alert ID: 274090
Title: Logical Domains (LDoms) Manager (ldm(1M)) 1.2 Patch
142840-03 (WITHDRAWN) May Cause the Control Domain to
Panic When the ldmd Service is Re-enabled
Product: Logical Domains Manager 1.2
Category: Data Loss, Availability
Release Phase: Workaround
Workaround Date: 15-Dec-2009

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-274090-1

-----------------------------------------------------------------

Sun Alert ID: 274110
Title: Security Vulnerability in the Apache 1.3 "mod_perl"
Module Component "Status.pm" May Lead to Unauthorized
Access to Data
Product: Solaris 8 Operating System, Solaris 9 Operating System,
Solaris 10 Operating System, OpenSolaris
Category: Security
Release Phase: Workaround
Workaround Date: 15-Dec-2009

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-274110-1

-----------------------------------------------------------------

Sun Alert ID: 274250
Title: Multiple Security Vulnerabilities in the Adobe Flash
Player for Solaris May Lead to a Denial of Service
(DoS) or Arbitrary Code Execution (Adobe Security
Bulletin APSB09-19)
Product: Solaris 10 Operating System, OpenSolaris
Category: Security
Release Phase: Workaround
Workaround Date: 15-Dec-2009

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-274250-1

-----------------------------------------------------------------

Sun Alert ID: 274390
Title: An Integer Overflow Vulnerability in GIMP(1) May Lead to
Denial of Service (DoS) or Execution of Arbitrary Code
Product: Solaris 10 Operating System, OpenSolaris
Category: Security
Release Phase: Workaround
Workaround Date: 15-Dec-2009

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-274390-1


=================================================================
New Resolved Sun Alert Notifications
(Total Resolved: 4)

Sun Alert ID: 240888
Title: GRUB ZFS Does Not Unset "bootfs" After a Failed Boot
Attempt
Product: Solaris 10 Operating System, OpenSolaris
Category: Availability
Release Phase: Resolved
Resolved Date: 16-Dec-2009

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-240888-1

-----------------------------------------------------------------

Sun Alert ID: 266908
Title: Security vulnerability in Solaris Pidgin (see
pidgin(1)), Versions Prior to 2.5.9 may Lead to
Execution of Arbitrary Code or a Denial of Service
(DoS) Condition
Product: Solaris 10 Operating System, OpenSolaris
Category: Security
Release Phase: Resolved
Resolved Date: 15-Dec-2009

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-266908-1

-----------------------------------------------------------------

Sun Alert ID: 269468
Title: Security Vulnerability in Mozilla Thunderbird Related to
SSL Certificates May Cause Arbitrary Code Execution
Product: Solaris 10 Operating System, OpenSolaris
Category: Security
Release Phase: Resolved
Resolved Date: 16-Dec-2009

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-269468-1

-----------------------------------------------------------------

Sun Alert ID: 273630
Title: Multiple Security Vulnerabilities in the libexpat
Library May Lead to a Denial of Service (DoS) Condition
Product: Solaris 10 Operating System, OpenSolaris
Category: Security
Release Phase: Resolved
Resolved Date: 14-Dec-2009

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-273630-1


=================================================================
Updated Sun Alert Notifications
(Total Updated: 2 )


Sun Alert ID: 265908
Title: A Security Vulnerability in the ZFS Filesystem May Allow
An Unprivileged User to Take Ownership of Files
Belonging to Another User
Product: Solaris 10 Operating System, OpenSolaris
Category: Security
Release Phase: Resolved
Resolved Date: 14-Oct-2009
Last Updated: 14-Dec-2009

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-265908-1

-----------------------------------------------------------------

Sun Alert ID: 272629
Title: Security Vulnerability in the Timeout Mechanism of
Solaris sshd(1M) may Lead to a Denial of Service (DoS)
Product: Solaris 10, OpenSolaris
Category: Security
Release Phase: Resolved
Resolved Date: 23-Nov-2009
Last Updated: 17-Dec-2009

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-272629-1


==================================================================

For more information on the Sun Alert program, please visit:

http://wikis.sun.com/x/EAF9B

RSS Feed :

http://www.sun.com/rss/?t=3&pgID=1&trss=Sun%20Alerts%20-%20New&uri=http:
//cds-srv.sun.com:8700/rss/insert/public/sunalert_insert.xml


Sun Alert Patch Report -- TEXT version is available at:

https://supportuploads.sun.com/download?directory=downloads&file=SApatches%2dpub%2etxt

or go to http://supportfiles.sun.com/download and enter the following
file name, SApatches-pub.txt, from the directory named "downloads".


==================================================================
Thanks for tuning in to the Sun Alert Weekly Summary Report!

Best regards,
Sun Alert Program Office
Sun Microsystems, Inc.
sunalert-newsletter@sun.com

 

TOP