Patch-ID# 115343-02 NOTE: *********************************************************************** READ THE TERMS OF THE AGREEMENT ("AGREEMENT") IN THE LEGAL_LICENSE.TXT FILE CAREFULLY BEFORE USING THIS SOFTWARE. BY USING THE SOFTWARE, YOU AGREE TO THE TERMS OF THIS AGREEMENT. IF YOU DO NOT AGREE TO ALL OF THE TERMS, PROMPTLY DESTROY THE UNUSED SOFTWARE. *********************************************************************** Keywords: sasl Synopsis: SunOS 5.9_x86: Simple Authentication and Security Layer (2.18) Date: Sep/29/2005 Install Requirements: NA Solaris Release: 9_x86 SunOS Release: 5.9_x86 Unbundled Product: Unbundled Release: Xref: This patch available for sparc as patch 115342 Topic: Relevant Architectures: i386 BugId's fixed with this patch: 4848190 4854483 4854829 4857400 4857455 5075530 6186738 6235303 6235309 Changes incorporated in this version: 6186738 5075530 6235303 6235309 Patches accumulated and obsoleted by this patch: Patches which conflict with this patch: Patches required with this patch: Obsoleted by: Files included with this patch: /usr/lib/mps/sasl2/libdigestmd5.so /usr/lib/mps/sasl2/libgssapiv2.so /usr/lib/mps/sasl2/libsasl.so Problem Description: 6186738 SASL overrides system dlopen functions 5075530 Natvie LDAP 2 client and DS 5.2 fail to BIND, using SASL and DIGEST-MD5 6235303 Missing parameter checking in DIGEST-MD5 causes core dump 6235309 Netscape variant of SASL LOGIN mechanism not working (from 115343-01) 4857455 Crashing bug in SASL auxprop handling. 4857400 sasl_checkpass fails to do authorization check. 4854829 Poor Digest-Md5 performance (Linux and Solaris). 4854483 IMAP/POP server allows user to login even if mailUserStatus or inetUserStatus is inactive. 4848190 IMAP Server Crashes, if the user keys in a wrong password more than twice. Patch Installation Instructions: -------------------------------- Refer to the man pages for instructions on using 'patchadd' and 'patchrm' scripts provided with Solaris. Any other special or non-generic installation instructions should be described below as special instructions. The following example installs a patch to a standalone machine: example# patchadd /var/spool/patch/104945-02 The following example removes a patch from a standalone system: example# patchrm 104945-02 For additional examples please see the appropriate man pages. Special Install Instructions: -------------------- None. README -- Last modified date: Thursday, September 29, 2005