Patch-ID# 109328-05 Keywords: security ypserv ypxfr clnt_call ypserv_resolv ypxfrd map handling Synopsis: SunOS 5.8: ypserv, ypxfr and ypxfrd patch Date: Sep/23/2004 Install Requirements: Reconfigure after installation Solaris Release: 8 SunOS Release: 5.8 Unbundled Product: Unbundled Release: Xref: This patch available for x86 as patch 109329 Topic: SunOS 5.8: ypserv, ypxfr and ypxfrd patch Relevant Architectures: sparc BugId's fixed with this patch: 4203989 4373365 4737417 4890530 4951399 Changes incorporated in this version: 4951399 Patches accumulated and obsoleted by this patch: Patches which conflict with this patch: Patches required with this patch: Obsoleted by: Files included with this patch: /usr/lib/netsvc/yp/ypserv /usr/lib/netsvc/yp/ypxfr /usr/lib/netsvc/yp/ypxfrd Problem Description: 4951399 ypserv prints do_accept : can't open connection : Interrupted system call (from 109328-04) 4890530 ypserv should only answer bind requests from clients in /var/yp/securenets (from 109328-03) 4737417 ypxfrd security issue with map handling (from 109328-02) 4373365 ypserv responds on the incorrect port (from 109328-01) 4203989 ypserv on SS20 with 100 meg card running Solaris 7 or higher spawns hundreds of ypserv processes Patch Installation Instructions: -------------------------------- For Solaris 2.0-2.6 releases, refer to the Install.info file and/or the README within the patch for instructions on using the generic 'installpatch' and 'backoutpatch' scripts provided with each patch. For Solaris 7-9 releases, refer to the man pages for instructions on using 'patchadd' and 'patchrm' scripts provided with Solaris. Any other special or non-generic installation instructions should be described below as special instructions. The following example installs a patch to a standalone machine: example# patchadd /var/spool/patch/104945-02 The following example removes a patch from a standalone system: example# patchrm 104945-02 For additional examples please see the appropriate man pages. Special Install Instructions: ----------------------------- Please stop and restart the yp services after patch installation. As root: # /usr/lib/netsvc/yp/ypstop # /usr/lib/netsvc/yp/ypstart README -- Last modified date: Thursday, September 23, 2004