Patch-ID# 112808-09 NOTE: *********************************************************************** READ THE TERMS OF THE AGREEMENT ("AGREEMENT") IN THE LEGAL_LICENSE.TXT FILE CAREFULLY BEFORE USING THIS SOFTWARE. BY USING THE SOFTWARE, YOU AGREE TO THE TERMS OF THIS AGREEMENT. IF YOU DO NOT AGREE TO ALL OF THE TERMS, PROMPTLY DESTROY THE UNUSED SOFTWARE. *********************************************************************** Keywords: security tooltalk ttsession login hangs made ipv6 aware Synopsis: CDE1.5: Tooltalk patch Date: Jan/23/2006 Install Requirements: NA Solaris Release: 9 SunOS Release: 5.9 Unbundled Product: CDE Unbundled Release: 1.5 Xref: This patch is available for x86 as patch 113797 Topic: Relevant Architectures: sparc BugId's fixed with this patch: 4668701 4707187 4713445 4722127 4741187 4744289 4784893 4865325 4871091 4915560 6206423 6235250 6328571 Changes incorporated in this version: 6328571 Patches accumulated and obsoleted by this patch: 113796-02 Patches which conflict with this patch: Patches required with this patch: Obsoleted by: Files included with this patch: /usr/openwin/bin/rpc.ttdbserverd /usr/openwin/bin/tt_type_comp /usr/openwin/bin/ttauth /usr/openwin/bin/ttcp /usr/openwin/bin/ttdbck /usr/openwin/bin/ttmv /usr/openwin/bin/ttrm /usr/openwin/bin/ttsession /usr/openwin/bin/tttar /usr/openwin/bin/tttrace /usr/openwin/lib/libtt.so.2 /usr/openwin/lib/sparcv9/libtt.so.2 Problem Description: 6328571 Inefficient code in while loop (from 112808-08) 6235250 ttsession cores with a corrupted .TTauthority file (from 112808-07) 6206423 CDE login prevented by illegal DNS queries (from 112808-06) 4915560 rpc.ttdbserverd is non-responsive after patching (from 112808-05) 4871091 dtmail cannot open attached mail (from 112808-04) 4865325 dtmessaging cannot be started on Solaris 9 (Merging patches 112808-03 and 113796-02; then obsoleting patch 113796-02.) (from 112808-03) 4713445 buffer overflow in the ToolTalk library (from 112808-02) 4707187 multiple vulnerabilities in Tooltalk database server (from 112808-01) 4668701 64bit ToolTalk clients cannot connect with ttsession (from 113796-02) 4784893 ttsession fails to start on login 4722127 (rework) Tooltalk needs to be made IPv6 aware 4741187 (rework) ttsession fails to connect during CD0/DVD installation for sparc and intel 4744289 (rework) can't login with CDE: ttsession hangs (from 113796-01) 4722127 Tooltalk needs to be made IPv6 aware 4741187 ttsession fails to connect during CD0/DVD installation for sparc and intel 4744289 can't login with CDE: ttsession hangs Patch Installation Instructions: -------------------------------- Refer to the man pages for instructions on using 'patchadd' and 'patchrm' scripts provided with Solaris. Any other special or non-generic installation instructions should be described below as special instructions. The following example installs a patch to a standalone machine: example# patchadd /var/spool/patch/104945-02 The following example removes a patch from a standalone system: example# patchrm 104945-02 For additional examples please see the appropriate man pages. Special Install Instructions: ----------------------------- For bug 4713445: Please be sure to stop the rpc.ttdbserverd deamon prior to installation and after removal of the patch. README -- Last modified date: Monday, January 23, 2006