Patch-ID# 113924-02 Keywords: security font server Synopsis: X11 6.6.1_x86: security font server patch Date: Dec/18/2002 Install Requirements: None Solaris Release: 9_x86 SunOS Release: 5.9_x86 Unbundled Product: X11 Unbundled Release: 6.6.1_x86 Xref: This patch available for SPARC as 113923 Topic: Relevant Architectures: i386 BugId's fixed with this patch: 4764193 Changes incorporated in this version: 4764193 Patches accumulated and obsoleted by this patch: Patches which conflict with this patch: Patches required with this patch: Obsoleted by: Files included with this patch: /usr/openwin/bin/xfs Problem Description: 4764193 CERT Advisory CA-2002-34: xfs crashes on bad request (refix) (from 113924-01) 4764193 xfs crashes on bad request Patch Installation Instructions: -------------------------------- Refer to the man pages for instructions on using 'patchadd' and 'patchrm' scripts provided with Solaris. Any other special or non-generic installation instructions should be described below as special instructions. The following example installs a patch to a standalone machine: example# patchadd /var/spool/patch/104945-02 The following example removes a patch from a standalone system: example# patchrm 104945-02 For additional examples please see the appropriate man pages. Special Install Instructions: ----------------------------- The X Window System Font Server, xfs, is normally started automatically from inetd on Solaris when a request for a font service is received. Therefore, to protect a running system against bug 4764193, after installing this patch, you must either reboot or stop all running xfs instances. Xsun clients using the font server will detect the font server shutdown and reconnect automatically to a new instance of the font server. Unfortunately, some other font clients, such as some versions of Xvnc, will not reconnect automatically and will need to be stopped before killing the font server and restarted again after the font server is restarted. (If xfs is still being run from inetd, inetd will automatically restart on the first connection attempt.) To kill the font server, as root, run the command: pkill -x xfs README -- Last modified date: Friday, March 28, 2003