Skip Navigation

  • Home
  • Contact us
  • FAQ
  • Glossary
  • Public key
  • Sitemap
  • Cymraeg
  • What's new
CPNI - Centre for the Protection of National Infastructure

Advanced search

  • About CPNI
  • The threats
  • Security planning
  • Methods of attack
  • Protecting your assets
  • Products and services
    • CSIRTUK advisories
      • Advisories archive
    • General protective security publications
    • InfoSec briefings
    • InfoSec technical notes
    • InfoSec vulnerability disclosures
    • Good practice guidelines
    • Viewpoints
    • Information exchanges
    • Risk Management Delivery Group
  • Research
Home > Products and services > CSIRTUK advisories > Advisories archive > August 2006 > SUN(SM) ALERT WEEKLY SUMMARY REPORT Week of 20-Aug-2006 - 26-Aug-2006

August 2006

SUN(SM) ALERT WEEKLY SUMMARY REPORT Week of 20-Aug-2006 - 26-Aug-2006

ID: 00579
Ref: 554/2006
Date: 29 August 2006:15:02:12
Version: 1

Title: SUN(SM) ALERT WEEKLY SUMMARY REPORT Week of 20-Aug-2006 - 26-Aug-2006
Abstract:
Vendors affected: Sun
Operating systems affected: Sun
Applications affected: Sun

Title
=====

SUN(SM) ALERT WEEKLY SUMMARY REPORT
Week of 20-Aug-2006 - 26-Aug-2006

Detail
======

Welcome to the Sun(SM) Alert Weekly Summary Report, the newsletter
that provides you with a weekly listing of newly released and
updated Sun Alert Notifications. It is being distributed
to inform you about critical hardware and software issues that
could impact the availability, security, and data integrity of
your computing environment.




SUN(SM) ALERT WEEKLY SUMMARY REPORT

Week of 20-Aug-2006 - 26-Aug-2006

Welcome to the Sun(SM) Alert Weekly Summary Report, the newsletter
that provides you with a weekly listing of newly released and
updated Sun Alert Notifications. It is being distributed
to inform you about critical hardware and software issues that
could impact the availability, security, and data integrity of
your computing environment.

==================================================================
ISSUE HIGHLIGHTS

* Changes to Patch Access on SunSolve

* Newly Released Sun Alert Notifications

* Updated Sun Alert Notifications

* Additional Sun Alert Information

==================================================================

- -------------------------------------------------------------------
Changes to Patch Access on SunSolve
- -------------------------------------------------------------------

Starting in mid July 2006, Sun is changing its methods to access Sun
Software Updates (patches). It will become easier and simpler for
you. You will only need a Sun Online Account to access Software
Updates. For customers who use Anonymous FTP, please be aware that
access to Sun Software Updates via anonymous FTP will no longer be
available as of late August 2006.

For more information, go to:

* http://sunsolve.sun.com/search/document.do?assetkey=1-9-82023-1

* http://sunsolve.sun.com/search/document.do?assetkey=1-9-83061-1

For questions, contact: patchpolicy@sun.com

- -------------------------------------------------------------------
Newly Released Sun Alert Notifications
- -------------------------------------------------------------------
(Total Released: 11)

Sun Alert ID: 102502 (RESOLVED)
Synopsis: Certain 3rd Party Applications May Break on
Transition From ipge to e1000g Network Driver
Product: Solaris 10 Operating System
Category: Availability
Date Released: 24-Aug-2006
Date Closed: 24-Aug-2006

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102502-1

- -------------------------------------------------------------------
Sun Alert ID: 102513 (RESOLVED)
Synopsis: pkgadd(1M) May Set Incorrect Permissions if The
pkgmap(4) File Contains a "?" in The "Mode" Field
Product: Solaris 10 Operating System
Category: Security
Date Released: 25-Aug-2006
Date Closed: 25-Aug-2006

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102513-1

- -------------------------------------------------------------------
Sun Alert ID: 102514 (RESOLVED)
Synopsis: Security Vulnerability May Allow Users With the
"File System Management" RBAC Profile to Gain
Elevated Privileges
Product: Solaris 9 Operating System, Solaris 8 Operating
System
Category: Security
Date Released: 21-Aug-2006
Date Closed: 21-Aug-2006

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102514-1

- -------------------------------------------------------------------
Sun Alert ID: 102519 (RESOLVED)
Synopsis: Security Vulnerability Due to Buffer Overflow in
The format(1M) Command May Allow Privilege
Elevation For Certain RBAC Profiles
Product: Solaris 9 Operating System, Solaris 10 Operating
System, Solaris 8 Operating System
Category: Security
Date Released: 21-Aug-2006
Date Closed: 21-Aug-2006

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102519-1

- -------------------------------------------------------------------
Sun Alert ID: 102550
Synopsis: Multiple Security Vulnerabilites in Mozilla 1.4 and
1.7 for Solaris and for Sun JDS for Linux
Product: Mozilla v1.7, Solaris 10 Operating System, Sun Java
Desktop System Release 2, Mozilla 1.4 for Solaris
Category: Security
Date Released: 22-Aug-2006

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102550-1

- -------------------------------------------------------------------
Sun Alert ID: 102556
Synopsis: Failed Upgrade on a Sun StorEdge 6920 May Lead to
Loss of Configuration
Product: Sun StorEdge 6920 System
Category: Availability
Date Released: 25-Aug-2006

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102556-1
(before accessing this Sun Alert document please login to a
SunSolve Online Account with a Sun Spectrum Support Contract
at http://sunsolve.sun.com -> "Login")

- -------------------------------------------------------------------
Sun Alert ID: 102557 (RESOLVED)
Synopsis: Java Plug-in and Java Web Start May Allow Applets
and Applications to Run With Unpatched JRE
Product: Java 2 Platform, Standard Edition
Category: Security
Date Released: 21-Aug-2006
Date Closed: 21-Aug-2006

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102557-1

- -------------------------------------------------------------------
Sun Alert ID: 102582
Synopsis: Sun Fire T2000 With System Firmware Patch 123482-01
Will Not Allow DVD-boot or Net-boot of Solaris 10
1/06 or Solaris 10 6/06
Product: Sun Fire T2000 Server
Category: Availability, Availability
Date Released: 21-Aug-2006

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102582-1

- -------------------------------------------------------------------
Sun Alert ID: 102588 (RESOLVED)
Synopsis: V440 system generates "WARNING: Using Debug SEEPROM
for CPU 1 Disabling auto-boot"
Product: Sun Fire V440 Server
Category: Availability
Date Released: 25-Aug-2006
Date Closed: 25-Aug-2006

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102588-1

- -------------------------------------------------------------------
Sun Alert ID: 102589
Synopsis: Gigaswift Driver Patch Without Sun Trunking Utility
(3.1) Patch May Cause a System Panic
Product: Sun Trunking 1.3 Software
Category: Availability, Availability
Date Released: 24-Aug-2006

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102589-1

- -------------------------------------------------------------------
Sun Alert ID: 102593 (RESOLVED)
Synopsis: Security Vulnerability in the Sun Java System
Content Delivery Server May Allow Unauthorized Data
Access
Product: Sun Java System Content Delivery Server 5.0, Sun
Java System Content Delivery Server 2004Q1
Category: Security
Date Released: 24-Aug-2006
Date Closed: 24-Aug-2006

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102593-1


- -------------------------------------------------------------------
Updated Sun Alert Notifications
- -------------------------------------------------------------------
(Total Updated: 0)

- --------------------------------
Additional Sun Alert Information
- --------------------------------

* Accessing Sun Alert Notifications

Sun Alert Notifications are accessed on http://sun.com/sunsolve
under SunSolve Collections, Advanced Search, Browse Documents or
Security Sun Alerts


* Sun Alert Patch Report

http://sun.com/sunsolve/sunalert_patches.html

This is a comprehensive report of patches mentioned in the Resolution
section of Sun Alert documents and is available from SunSolve on the
Patch Portal page. It is updated daily and organized by product.


******************************************************************

Thanks for tuning in to the Sun Alert Weekly Summary Report!

Best regards,
Sun Alert Program Office
Sun Microsystems, Inc.


ALSO ON SUN.COM --------------------------------------------------
My Sun Connection: http://sun.com/mysunconnection
Products & Services: http://sun.com/products
Business & Industry Solutions: http://sun.com/solutions
Support & Training: http://sun.com/supportraining/
Downloads: http://sun.com/download
Documentation: http://sun.com/documentation
Research: http://sun.com/research
News: http://sun.com/news
Sun[sm] Store: http://sun.com/store

Resources for
* Developers: http://sun.com/developers
* System Admins: http://sun.com/bigadmin
* Partners: http://sun.com/partners
* Executives: http://sun.com/executives
* Investors: http://sun.com/investors
- ------------------------------------------------------------------

Copyright 2006 Sun Microsystems, Inc. All rights reserved.

Sun, Sun Microsystems, the Sun Logo, My Sun, iForce, Sun Fire, and
Sun StorEdge are trademarks or registered trademarks of Sun
Microsystems, Inc. in the United States and other countries. All
SPARC trademarks are used under license and are trademarks or
registered trademarks of SPARC International, Inc. in the United
States and other countries. Products bearing SPARC trademarks are
based upon an architecture developed by Sun Microsystems, Inc.

:::::::::::::::::::::: We make the net work ::::::::::::::::::::::
  • Accessibility |
  • Terms and conditions |
  • Privacy statement |
  • Data protection act |
  • Freedom of information |