OBSOLETE: SunOS 5.5.1_x86: ftp, in.ftpd, in.rexecd and in.rshd patch |
Disclaimer:
Please note:
Although OBSOLETED patches are available on SunSolve, Sun recommends using the most recent patches and the most recent revision of those patches. OBSOLETED patches do not include the latest bug fixes and/or product enhancements, and may require the installation of additional patches as a corrective measure.
Status: OBSOLETE
Patch Id: 103604-05
Summary: SunOS 5.5.1_x86: ftp, in.ftpd, in.rexecd and in.rshd patch
Date: Oct/03/97
Installation Requirements:
Solaris Release: 2.5.1_x86
Sun OS Release: 5.5.1_x86
Unbundled Product:
Unbundled Release:
Xref: This patch available for SPARC as patch 103603
Topic:
SunOS 5.5.1_x86: ftp, in.ftpd, in.rexecd and in.rshd patch
Relevant Architecture: i386
BugId's fixed with this patch:
1198215 1246408 1249667 1251275 1255435 1256632
Changes incorporated in this version:
1246408
Patches accumulated and obsoleted by this patch:
Patches which conflict with this patch:
Required Patches:
Obsoleted by:
Files Included in this Patch:
/usr/bin/ftp
/usr/sbin/in.ftpd
/usr/sbin/in.rexecd
/usr/sbin/in.rshd
Problem Description:
1246408 ftp may be used to get root access from port 20 to other machines
(from 103604-04)
1251275 ftpd,rshd,rexecd,in.uucpd on NFS client puts user in / when homedir is mounted as a non-trusted root
(from 103604-03)
1256632 ftp "nmap" function does not work
(from 103604-02)
1255435 ftp dumps core if lostpeer signal handler is called right before getreply()
1249667 ftp size increases by 8k/2 page size with every open/close session memory leak
(from 103604-01)
1198215 ftp can silently lose data when writing to nfs
Revision History:
103604-04
Patch Installation Instructions:
--------------------------------
Refer to the Install.info file within the patch for instructions on
using the generic 'installpatch' and 'backoutpatch' scripts provided
with each patch. Any other special or non-generic installation
instructions should be described below.
Special Install Instructions:
-----------------------------
None.