Patch-ID# 114328-04 Keywords: security ether_ntohost() ldap rc nss_ldap.so.1 Synopsis: SunOS 5.9_x86: nss_ldap.so.1 Patch Date: Aug/27/2004 Install Requirements: Install in Single User Mode Reboot immediately after patch is installed Solaris Release: 9_x86 SunOS Release: 5.9_x86 Unbundled Product: Unbundled Release: Xref: This patch available for SPARC as patch 112960 Topic: SunOS 5.9_x86: nss_ldap.so.1 Patch Relevant Architectures: i386 BugId's fixed with this patch: 4643366 4751386 4779333 4780109 4830525 4966423 5006801 Changes incorporated in this version: 4966423 Patches accumulated and obsoleted by this patch: Patches which conflict with this patch: Patches required with this patch: Obsoleted by: Files included with this patch: /usr/lib/nss_ldap.so.1 Problem Description: 4966423 RBAC exec_attr search in LDAP: everything's wild (from 114328-03) 5006801 getprojent(3project) dumps core with LDAP project(4) database (from 114328-02) 4643366 Groups with no members broken 4779333 ldap get*ent requests may free already freed memory 4780109 __ns_ldap_firstEntry may return a cookie that is freed 4830525 Buffer overflow in nss_ldap.so.1 (from 114328-01) 4751386 ether_ntohost() fails with rc 1 when resolving data from LDAP Patch Installation Instructions: -------------------------------- For Solaris 2.0-2.6 releases, refer to the Install.info file and/or the README within the patch for instructions on using the generic 'installpatch' and 'backoutpatch' scripts provided with each patch. For Solaris 7-9 releases, refer to the man pages for instructions on using 'patchadd' and 'patchrm' scripts provided with Solaris. Any other special or non-generic installation instructions should be described below as special instructions. The following example installs a patch to a standalone machine: example# patchadd /var/spool/patch/104945-02 The following example removes a patch from a standalone system: example# patchrm 104945-02 For additional examples please see the appropriate man pages. Special Install Instructions: ----------------------------- None. README -- Last modified date: Friday, August 27, 2004