Status: RELEASED
Patch Id: 113240-13
***********************************************************************
READ THE TERMS OF THE AGREEMENT ("AGREEMENT") IN THE LEGAL_LICENSE.TXT
FILE CAREFULLY BEFORE USING THIS SOFTWARE. BY USING THE SOFTWARE, YOU
AGREE TO THE TERMS OF THIS AGREEMENT. IF YOU DO NOT AGREE TO ALL OF THE
TERMS, PROMPTLY DESTROY THE UNUSED SOFTWARE.
***********************************************************************Summary: CDE 1.5: dtsession patch
Date: Jun/20/2007
Installation Requirements:
NA
Solaris Release: 9
Sun OS Release: 5.9
Unbundled Product: CDE
Unbundled Release: 1.5
Xref: This patch is available for x86 as patch 113241
Topic:
Relevant Architecture: sparc
BugId's fixed with this patch:
4701185 4743546 4763733 4788212 4837640 4845302 4880232 4944400 5023659 5064140 6494012 6547678
Changes incorporated in this version:
6547678
Patches accumulated and obsoleted by this patch:
114497-01
Patches which conflict with this patch:
Required Patches:
Obsoleted by:
Files Included in this Patch:
/usr/dt/bin/dtsession
Problem Description:
6547678 dtsession buffer overflow
(from 113240-12)
6494012 Smartcard, Solaris 9 CDE, click on the lock screen icon crashes the session - no sunray
(from 113240-11)
5064140 bad passwd is repeated when trying to unlock cde. dtsession
(from 113240-10)
4880232 (rework) security: dtsession screen lock deferred until PAM conversation function runs
5023659 logout confirmation exits session before user input
(from 113240-09)
REMOVED bug fixes for 4944400, 4880232 and 4845302
(from 113240-08)
4944400 User's CDE session does not terminate/lock after removing smart card
(from 113240-07)
4845302 dtsession should use SCF for smartcard operations
4880232 security: dtsession screen lock deferred until PAM conversation function runs
(from 113240-06)
4837640 dtsession should not use OCF_TimeSinceValidated and OCF_UserInfoCardService
(from 113240-05)
This patch revision accumulates/obsoletes patch 114497-01.
(from 113240-04)
Merging 113240-03 and 114497-01
(from 113240-03)
4763733 dtsession crashes on restoring session with very long lines
(from 113240-02)
4743546 With 105634-08 (or greater), DIALOG_SYSTEM_MODAL can be cleared by screen saver
(from 113240-01)
4701185 session disconnects on logging in with NSCM from SunRays
(from 114497-01)
4788212 /usr/dt/bin/dtsession $HOME env overflowRevision History:
113240-11 113240-09 113240-06 113240-05 113240-10 113240-12 114497-01 113240-03 113240-08
Patch Installation Instructions:
--------------------------------
Refer to the man pages for instructions on using 'patchadd' and 'patchrm'
scripts provided with Solaris. Any other special or non-generic
installation instructions should be described below as special
instructions. The following example installs a patch to a standalone
machine:
example# patchadd /var/spool/patch/104945-02
The following example removes a patch from a standalone system:
example# patchrm 104945-02
For additional examples please see the appropriate man pages.
Special Install Instructions:
-----------------------------
NOTE 1: In order to get the complete fix for BugID 4743546 (with 105634-08
or greater, DIALOG_SYSTEM_MODAL can be cleared by screen saver),
please also install the following patch:
113244-01 (or greater) CDE 1.5: dtwm patch
NOTE 2: In order to get the complete fix for BugID 4763733 (dtsession crash
on restoring session with very long lines), logout and relogin to
make code changes take effect.
README -- Last modified date: Wednesday, June 20, 2007