Patch-ID# 116774-04


Download this patch from My Oracle Support

Your use of the firmware, software and any other materials contained in this update is subject to My Oracle Support Terms of Use, which may be viewed at My Oracle Support.
For further information on patching best practices and resources, please see the following links:
Copyright (c) 2012, Oracle and/or its affiliates. All rights reserved.

Keywords: security ping buffer overflow
Synopsis: SunOS 5.9: ping patch
Date: Feb/05/2010


Install Requirements: NA

Solaris Release: 9

SunOS Release: 5.9

Unbundled Product:

Unbundled Release:

Xref: This patch available for x86 as patch 116775

Topic: SunOS 5.9: ping patch

Relevant Architectures: sparc

Bugs fixed with this patch:

Sun CR # Bug #
480217915141062
480771515142900
483708615152207
490227515171433


Changes incorporated in this version: 4802179

Patches accumulated and obsoleted by this patch:

Patches which conflict with this patch:

Patches required with this patch: 115683-03 (or greater)

Obsoleted by:

Files included with this patch:

/usr/sbin/ping

Problem Description:

4802179 possible memory leak in /usr/sbin/ping
 
(from 116774-03)
 
4807715 ping has potential buffer overflow.
 
(from 116774-02)
 
4902275 traceroute fails when enables -xmit or NOXMIT on virtual interface
 
(from 116774-01)
 
4837086 CMSG_FIRSTHDR should return NULL when controllen == 0


Patch Installation Instructions:
--------------------------------
 
Please refer to the man pages for instructions on using 'patchadd'
and 'patchrm' commands provided with Solaris.
 
The following example installs a patch to a standalone machine:
 
       example# patchadd /var/spool/patch/123456-07
 
The following example removes a patch from a standalone system:
 
       example# patchrm 123456-07
 
For additional examples please see the appropriate man pages. Any
other special or non-generic installation instructions should be
described below as special instructions.


Special Install Instructions:
-----------------------------
 
NOTE: To get the complete fix for BugId 4837086 (CMSG_FIRSTHDR should return 
      NULL when controllen == 0), please also install the following patches:
 
      112911-07 (or greater)  ifconfig patch
      112928-03 (or greater)  in.ndpd patch
      116506-02 (or greater)  traceroute patch
      116776-01 (or greater)  mipagent patch
      116778-01 (or greater)  in.ripngd patch


NOTE: The list of 'patches required with this patch' (above) has been
modified from the list specified at patch creation time. The reason for
the modification is that one or more of the required patches was
either never released or withdrawn after its release. The following
substitutions (which are guaranteed to satisfy the original requirements)
were therefore made:

115683-03 replaces 115683-02




README -- Last modified date: Saturday, November 10, 2012