Archive for February, 2008

AIX 5.3 : Security advisories (2008.02.28) AIX libc inet_network buffer overflow

Friday, February 29th, 2008

You have received this email because you are subscribed to support bulletins for selected topics. Following are updates for one or more of the topics you requested.

AIX 5.3 : Security advisories (2008.02.28)

AIX libc inet_network buffer overflow

—–BEGIN PGP SIGNED MESSAGE—–
Hash: SHA1

IBM SECURITY ADVISORY

First Issued: Wed Feb 27 12:22:34 CST 2008
===============================================================================
VULNERABILITY SUMMARY

VULNERABILITY: AIX libc inet_network buffer overflow

PLATFORMS: AIX 5.2, 5.3, 6.1

SOLUTION: Apply the fix as described below.

THREAT: A remote attacker may execute arbitrary code.

CVE Number: CVE-2008-0122
===============================================================================
DETAILED INFORMATION

I. DESCRIPTION

There is an off-by-one error in the AIX libc implementation of the
inet_network function. Programs which call this function will be
vulnerable. Please refer to the following links for more
information:

http://security.freebsd.org/advisories/FreeBSD-SA-08:02.libc.asc
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0122

The successful exploitation of this vulnerability allows a
remote user to execute arbitrary code.

The following library is vulnerable:

/usr/ccs/lib/libc.a

II. PLATFORM VULNERABILITY ASSESSMENT

To determine if your system is vulnerable, execute the following
command:

lslpp -L bos.rte.libc

The following fileset levels are vulnerable:

AIX Fileset Lower Level Upper Level
————————————————
bos.rte.libc 5.2.0.0 5.2.0.109
bos.rte.libc 5.3.0.0 5.3.0.66
bos.rte.libc 5.3.7.0 5.3.7.3
bos.rte.libc 6.1.0.0 6.1.0.3

NOTE: AIX 5.3 TL6 SP6 and AIX 5.3 TL7 SP3 will not contain this
fix when they are released. An updated ifix will be released when
the service packs are released.

III. SOLUTIONS

A. APARS

IBM has assigned the following APARs to this problem:

AIX Level APAR number Availability
—————————————————
5.2.0 IZ15564 05/07/08
5.3.0 IZ15567 05/28/08
5.3.7 IZ15566 05/28/08
6.1.0 IZ15565 04/09/08

Subscribe to the APARs here:

http://www.ibm.com/support/docview.wss?uid=isg1IZ15564
http://www.ibm.com/support/docview.wss?uid=isg1IZ15567
http://www.ibm.com/support/docview.wss?uid=isg1IZ15566
http://www.ibm.com/support/docview.wss?uid=isg1IZ15565

By subscribing, you will receive periodic email alerting you
to the status of the APAR, and a link to download the fix once
it becomes available.

B. FIXES

Fixes are available. The fixes can be downloaded via ftp
from:

ftp://aix.software.ibm.com/aix/efixes/security/libc_ifix.tar

The link above is to a tar file containing this signed
advisory, fix packages, and PGP signatures for each package.
The fixes below include prerequisite checking. This will
enforce the correct mapping between the fixes and AIX
Technology Levels.

AIX Level Interim Fix
——————————————————————-
5.2.0 TL8 IZ15564_08.080219.epkg.Z
5.2.0 TL9 IZ15564_09.080219.epkg.Z
5.2.0 TL10 IZ15564_10.080219.epkg.Z
5.3.0 TL5 IZ15567_05.080219.epkg.Z
5.3.0 TL6 IZ15567_06.080219.epkg.Z
5.3.7 IZ15566_07.080219.epkg.Z
6.1.0 IZ15565_00.080219.epkg.Z

To extract the fixes from the tar file:

tar xvf libc_ifix.tar
cd libc_ifix

Verify you have retrieved the fixes intact:

The checksums below were generated using the “sum”, “cksum”,
“csum -h MD5″ (md5sum), and “csum -h SHA1″ (sha1sum) commands
and are as follows:

sum filename
————————————
29751 3152 IZ15564_08.080219.epkg.Z
19549 3172 IZ15564_09.080219.epkg.Z
52071 3186 IZ15564_10.080219.epkg.Z
53605 4731 IZ15565_00.080219.epkg.Z
44251 4047 IZ15566_07.080219.epkg.Z
11422 3565 IZ15567_05.080219.epkg.Z
51632 4007 IZ15567_06.080219.epkg.Z

cksum filename
——————————————
2980046000 3226933 IZ15564_08.080219.epkg.Z
1510474728 3247126 IZ15564_09.080219.epkg.Z
168637892 3261516 IZ15564_10.080219.epkg.Z
683046070 4843871 IZ15565_00.080219.epkg.Z
2090894068 4143462 IZ15566_07.080219.epkg.Z
1361113499 3649666 IZ15567_05.080219.epkg.Z
1757932115 4102745 IZ15567_06.080219.epkg.Z

csum -h MD5 (md5sum) filename
———————————————————-
652e8276e898720487b6d71072601b66 IZ15564_08.080219.epkg.Z
0dce26937a5c37af54f7530beb7e4c09 IZ15564_09.080219.epkg.Z
4c315531586da4fce4ff752ee067408f IZ15564_10.080219.epkg.Z
22c2ad002375f05f59c25f68e36a27a3 IZ15565_00.080219.epkg.Z
76c61645664e64acdb89e739b8a42daf IZ15566_07.080219.epkg.Z
985dc8bbcb71f09b8874944f302e4498 IZ15567_05.080219.epkg.Z
359417df76c8e1ae31d281c49e112daf IZ15567_06.080219.epkg.Z

csum -h SHA1 (sha1sum) filename
——————————————————————
37ce37b514f046dea0990540b787350d2b037e9e IZ15564_08.080219.epkg.Z
18ac4146cd3eadeb3c0ecbee11d720efc29a4076 IZ15564_09.080219.epkg.Z
b852a9ae018fe380f07048b20510f794b15b1610 IZ15564_10.080219.epkg.Z
79d367b661490c226a08acb7e0dc87f223addbc5 IZ15565_00.080219.epkg.Z
3cbe8222775007e860fc9b5227d79c3d773d54e3 IZ15566_07.080219.epkg.Z
d2e334e464c4b49fe731cc586dd786a3a79dd33a IZ15567_05.080219.epkg.Z
c54d19e8d7114ab40101025f43bfc8b27f18eb38 IZ15567_06.080219.epkg.Z

To verify the sums, use the text of this advisory as input to
csum, md5sum, or sha1sum. For example:

csum -h SHA1 -i Advisory.asc
md5sum -c Advisory.asc
sha1sum -c Advisory.asc

These sums should match exactly. The PGP signatures in the tar
file and on this advisory can also be used to verify the
integrity of the fixes. If the sums or signatures cannot be
confirmed, contact IBM AIX Security at
security-alert@austin.ibm.com and describe the discrepancy.

C. INTERIM FIX INSTALLATION

IMPORTANT: If possible, it is recommended that a mksysb backup
of the system be created. Verify it is both bootable and
readable before proceeding.

Interim fixes have had limited functional and regression
testing but not the full regression testing that takes place
for Service Packs; thus, IBM does not warrant the fully
correct functionality of an interim fix.

Interim fix management documentation can be found at:

http://www14.software.ibm.com/webapp/set2/sas/f/aix.efixmgmt/home.html

To preview an interim fix installation:

emgr -e ipkg_name -p # where ipkg_name is the name of the
# interim fix package being previewed.

To install an interim fix package:

emgr -e ipkg_name -X # where ipkg_name is the name of the
# interim fix package being installed.

IV. WORKAROUNDS

There are no workarounds.

V. OBTAINING FIXES

AIX security fixes can be downloaded from:

ftp://aix.software.ibm.com/aix/efixes/security

AIX fixes can be downloaded from:

http://www.ibm.com/eserver/support/fixes/fixcentral/main/pseries/aix

NOTE: Affected customers are urged to upgrade to the latest
applicable Technology Level and Service Pack.

VI. CONTACT INFORMATION

If you would like to receive AIX Security Advisories via email,
please visit:

http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd

Comments regarding the content of this announcement can be
directed to:

security-alert@austin.ibm.com

To request the PGP public key that can be used to communicate
securely with the AIX Security Team you can either:

A. Send an email with “get key” in the subject line to:

security-alert@austin.ibm.com

B. Download the key from a PGP Public Key Server. The key ID is:

0xA6A36CCC

Please contact your local IBM AIX support center for any
assistance.

eServer is a trademark of International Business Machines
Corporation. IBM, AIX and pSeries are registered trademarks of
International Business Machines Corporation. All other trademarks
are property of their respective holders.

VII. ACKNOWLEDGMENTS

Bjoern A. Zeeb and Nate Eldredge reported this vulnerability.

—–BEGIN PGP SIGNATURE—–
Version: GnuPG v1.4.7 (AIX)

iD8DBQFHxaux8lficKajbMwRAsluAKCrkdmO+5HaA5hkipVg8ggOPk4p2wCgqpx5
kAwT79qZol922sZOcCEcqTE=
=xbvQ
—–END PGP SIGNATURE—–

Related sites

Supported products list

Support for UNIX servers

Other subscription services

APAR subscriptions

Subscription options

Update your profile

Unsubscribe

IBM and AIX are registered trademarks of International Business Machines Corporation in the United States and other countries.
ALL INFORMATION IS PROVIDED BY IBM ON AN “AS IS” BASIS ONLY. IBM PROVIDES NO REPRESENTATIONS OR WARRANTIES, EXPRESS OR IMPLIED, INCLUDING THE IMPLIED WARRANTIES OF FITNESS FOR A PARTICULAR PURPOSE, MERCHANTABILITY AND NONINFRINGMENT. This document may be copied provided all text is included and copies contain IBM’s copyright notice and any other notices provided herein.

AIX 5.3 : Security advisories (2008.02.28) AIX X server multiple vulnerabilities

Friday, February 29th, 2008


—–BEGIN PGP SIGNED MESSAGE—–
Hash: SHA1

IBM SECURITY ADVISORY

First Issued: Wed Feb 27 10:57:32 CST 2008
===============================================================================
VULNERABILITY SUMMARY

VULNERABILITY: AIX X server multiple vulnerabilities

PLATFORMS: AIX 5.2, 5.3, 6.1

SOLUTION: Apply the fix or workaround as described below.

THREAT: An attacker may execute arbitrary code with root
privileges.

CVE Numbers: CVE-2007-6427, CVE-2007-6428, CVE-2007-6429, CVE-2008-0006
===============================================================================
DETAILED INFORMATION

I. DESCRIPTION

There are multiple vulnerabilities in the AIX X server. Please
refer to the following links for more information:

http://lists.freedesktop.org/archives/xorg/2008-January/031918.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-6427
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-6428
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-6429
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0006

Please note that AIX does not have the vulnerabilities described
in CVE-2007-5760 and CVE-2007-5958.

The successful exploitation of these vulnerabilities allows a
non-privileged user to execute code with root privileges. If the
X server is configured to allow remote connections, remote attacks
are possible.

The following commands are vulnerable:

/usr/bin/X11/X

II. PLATFORM VULNERABILITY ASSESSMENT

To determine if your system is vulnerable, execute the following
command:

lslpp -L X11.base.rte

The following fileset levels are vulnerable:

AIX Fileset Lower Level Upper Level
————————————————
X11.base.rte 5.2.0.0 5.2.0.106
X11.base.rte 5.3.0.0 5.3.0.62
X11.base.rte 5.3.7.0 5.3.7.1
X11.base.rte 6.1.0.0 6.1.0.2

III. SOLUTIONS

A. APARS

IBM has assigned the following APARs to this problem:

AIX Level APAR number Availability
—————————————————
5.2.0 IZ13652 05/07/08
5.3.0 IZ13653 03/12/08
5.3.7 IZ13654 03/12/08
6.1.0 IZ13655 04/09/08

Subscribe to the APARs here:

http://www.ibm.com/support/docview.wss?uid=isg1IZ13652
http://www.ibm.com/support/docview.wss?uid=isg1IZ13653
http://www.ibm.com/support/docview.wss?uid=isg1IZ13654
http://www.ibm.com/support/docview.wss?uid=isg1IZ13655

By subscribing, you will receive periodic email alerting you
to the status of the APAR, and a link to download the fix once
it becomes available.

B. FIXES

Fixes are available. The fixes can be downloaded via ftp
from:

ftp://aix.software.ibm.com/aix/efixes/security/X_ifix.tar

The link above is to a tar file containing this signed
advisory, fix packages, and PGP signatures for each package.
The fixes below include prerequisite checking. This will
enforce the correct mapping between the fixes and AIX
Technology Levels.

AIX Level Interim Fix
——————————————————————-
5.2.0 TL8 IZ13652_08.080214.epkg.Z
5.2.0 TL9 IZ13652_09.080214.epkg.Z
5.2.0 TL10 IZ13652_10.080214.epkg.Z
5.3.0 TL5 IZ13653_05.080214.epkg.Z
5.3.0 TL6 IZ13653_06.080214.epkg.Z
5.3.7 IZ13654_07.080214.epkg.Z
6.1.0 IZ13655_00.080214.epkg.Z

To extract the fixes from the tar file:

tar xvf X_ifix.tar
cd X_ifix

Verify you have retrieved the fixes intact:

The checksums below were generated using the “sum”, “cksum”,
“csum -h MD5″ (md5sum), and “csum -h SHA1″ (sha1sum) commands
and are as follows:

sum filename
————————————
29454 1764 IZ13652_08.080214.epkg.Z
54867 1763 IZ13652_09.080214.epkg.Z
22131 1765 IZ13652_10.080214.epkg.Z
46384 1820 IZ13653_05.080214.epkg.Z
48056 1819 IZ13653_06.080214.epkg.Z
56839 1820 IZ13654_07.080214.epkg.Z
22144 2214 IZ13655_00.080214.epkg.Z

cksum filename
——————————————
84291091 1805551 IZ13652_08.080214.epkg.Z
1431371517 1805065 IZ13652_09.080214.epkg.Z
2007335003 1806825 IZ13652_10.080214.epkg.Z
3474601132 1863121 IZ13653_05.080214.epkg.Z
313288505 1862398 IZ13653_06.080214.epkg.Z
1719442596 1862767 IZ13654_07.080214.epkg.Z
2099107711 2267095 IZ13655_00.080214.epkg.Z

csum -h MD5 (md5sum) filename
———————————————————-
b4c94b67e0a89ecbf98de04ff3712505 IZ13652_08.080214.epkg.Z
67a53991b8a550ea02395538710c359e IZ13652_09.080214.epkg.Z
1100c184ecb2bdc769d8740f719bb991 IZ13652_10.080214.epkg.Z
435a4283d8a4fcc0ce73c3fb1fe41890 IZ13653_05.080214.epkg.Z
8e7489e24303e88f37c6d61ee37da51d IZ13653_06.080214.epkg.Z
f2e0627a31898c914215ded8caa0205b IZ13654_07.080214.epkg.Z
e30e32047ebdf153831a0187ad7cdea9 IZ13655_00.080214.epkg.Z

csum -h SHA1 (sha1sum) filename
——————————————————————
6e2477ebe0717d08084975388b760f04718f7a65 IZ13652_08.080214.epkg.Z
5829afefa835ac36217492ec962171d03844347a IZ13652_09.080214.epkg.Z
6588e81f74ebe6b39cc10d9e5ab588462b3f1abf IZ13652_10.080214.epkg.Z
19360313640f5438a46743360a53d27e485cb5d7 IZ13653_05.080214.epkg.Z
50d788358b316cff38705970a9a783fe846b8751 IZ13653_06.080214.epkg.Z
c8392c5558059157607949180838eaeb4be763d0 IZ13654_07.080214.epkg.Z
d6ba687715bb0c3a6e438b63d0115836d4e35b50 IZ13655_00.080214.epkg.Z

To verify the sums, use the text of this advisory as input to
csum, md5sum, or sha1sum. For example:

csum -h SHA1 -i Advisory.asc
md5sum -c Advisory.asc
sha1sum -c Advisory.asc

These sums should match exactly. The PGP signatures in the tar
file and on this advisory can also be used to verify the
integrity of the fixes. If the sums or signatures cannot be
confirmed, contact IBM AIX Security at
security-alert@austin.ibm.com and describe the discrepancy.

C. INTERIM FIX INSTALLATION

IMPORTANT: If possible, it is recommended that a mksysb backup
of the system be created. Verify it is both bootable and
readable before proceeding.

Interim fixes have had limited functional and regression
testing but not the full regression testing that takes place
for Service Packs; thus, IBM does not warrant the fully
correct functionality of an interim fix.

Interim fix management documentation can be found at:

http://www14.software.ibm.com/webapp/set2/sas/f/aix.efixmgmt/home.html

To preview an interim fix installation:

emgr -e ipkg_name -p # where ipkg_name is the name of the
# interim fix package being previewed.

To install an interim fix package:

emgr -e ipkg_name -X # where ipkg_name is the name of the
# interim fix package being installed.

IMPORTANT: The ifix requires the user to restart the X-Server.
The X-Server can be restarted in CDE by exiting CDE and
selecting restart.

IV. WORKAROUNDS

The X server can be disabled and then killed with the following
commands:

/usr/dt/bin/dtconfig -d
/usr/dt/bin/dtconfig -kill

The X server can be restored after applying the fix with the
following commands:

/usr/dt/bin/dtconfig -e
/usr/bin/startsrc -s dtsrc

V. OBTAINING FIXES

AIX security fixes can be downloaded from:

ftp://aix.software.ibm.com/aix/efixes/security

AIX fixes can be downloaded from:

http://www.ibm.com/eserver/support/fixes/fixcentral/main/pseries/aix

NOTE: Affected customers are urged to upgrade to the latest
applicable Technology Level and Service Pack.

VI. CONTACT INFORMATION

If you would like to receive AIX Security Advisories via email,
please visit:

http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd

Comments regarding the content of this announcement can be
directed to:

security-alert@austin.ibm.com

To request the PGP public key that can be used to communicate
securely with the AIX Security Team you can either:

A. Send an email with “get key” in the subject line to:

security-alert@austin.ibm.com

B. Download the key from a PGP Public Key Server. The key ID is:

0xA6A36CCC

Please contact your local IBM AIX support center for any
assistance.

eServer is a trademark of International Business Machines
Corporation. IBM, AIX and pSeries are registered trademarks of
International Business Machines Corporation. All other trademarks
are property of their respective holders.

VII. ACKNOWLEDGMENTS

Vulnerabilities described by CVE-2007-6427, CVE-2007-6428 and
CVE-2007-6429 were reported to iDefense Labs by regenrecht.

CVE-2008-0006 was reported to CERT/CC by Takuya Shiozaki

—–BEGIN PGP SIGNATURE—–
Version: GnuPG v1.4.7 (AIX)

iD8DBQFHxZx/8lficKajbMwRAgFdAJ4i5P3YY1mWHmbbLgI9mtKfU/oaZQCfQ0AC
XC/4CZlf4y2Ek7gqT/7XdU0=
=RdPN
—–END PGP SIGNATURE—–

AIX 6.1 : Security advisories (2008.02.27)

Thursday, February 28th, 2008

AIX libc inet_network buffer overflow

—–BEGIN PGP SIGNED MESSAGE—–
Hash: SHA1

IBM SECURITY ADVISORY

First Issued: Wed Feb 27 12:22:34 CST 2008
===============================================================================
VULNERABILITY SUMMARY

VULNERABILITY: AIX libc inet_network buffer overflow

PLATFORMS: AIX 5.2, 5.3, 6.1

SOLUTION: Apply the fix as described below.

THREAT: A remote attacker may execute arbitrary code.

CVE Number: CVE-2008-0122
===============================================================================
DETAILED INFORMATION

I. DESCRIPTION

There is an off-by-one error in the AIX libc implementation of the
inet_network function. Programs which call this function will be
vulnerable. Please refer to the following links for more
information:

http://security.freebsd.org/advisories/FreeBSD-SA-08:02.libc.asc
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0122

The successful exploitation of this vulnerability allows a
remote user to execute arbitrary code.

The following library is vulnerable:

/usr/ccs/lib/libc.a

II. PLATFORM VULNERABILITY ASSESSMENT

To determine if your system is vulnerable, execute the following
command:

lslpp -L bos.rte.libc

The following fileset levels are vulnerable:

AIX Fileset Lower Level Upper Level
————————————————
bos.rte.libc 5.2.0.0 5.2.0.109
bos.rte.libc 5.3.0.0 5.3.0.66
bos.rte.libc 5.3.7.0 5.3.7.3
bos.rte.libc 6.1.0.0 6.1.0.3

NOTE: AIX 5.3 TL6 SP6 and AIX 5.3 TL7 SP3 will not contain this
fix when they are released. An updated ifix will be released when
the service packs are released.

III. SOLUTIONS

A. APARS

IBM has assigned the following APARs to this problem:

AIX Level APAR number Availability
—————————————————
5.2.0 IZ15564 05/07/08
5.3.0 IZ15567 05/28/08
5.3.7 IZ15566 05/28/08
6.1.0 IZ15565 04/09/08

Subscribe to the APARs here:

http://www.ibm.com/support/docview.wss?uid=isg1IZ15564
http://www.ibm.com/support/docview.wss?uid=isg1IZ15567
http://www.ibm.com/support/docview.wss?uid=isg1IZ15566
http://www.ibm.com/support/docview.wss?uid=isg1IZ15565

By subscribing, you will receive periodic email alerting you
to the status of the APAR, and a link to download the fix once
it becomes available.

B. FIXES

Fixes are available. The fixes can be downloaded via ftp
from:

ftp://aix.software.ibm.com/aix/efixes/security/libc_ifix.tar

The link above is to a tar file containing this signed
advisory, fix packages, and PGP signatures for each package.
The fixes below include prerequisite checking. This will
enforce the correct mapping between the fixes and AIX
Technology Levels.

AIX Level Interim Fix
——————————————————————-
5.2.0 TL8 IZ15564_08.080219.epkg.Z
5.2.0 TL9 IZ15564_09.080219.epkg.Z
5.2.0 TL10 IZ15564_10.080219.epkg.Z
5.3.0 TL5 IZ15567_05.080219.epkg.Z
5.3.0 TL6 IZ15567_06.080219.epkg.Z
5.3.7 IZ15566_07.080219.epkg.Z
6.1.0 IZ15565_00.080219.epkg.Z

To extract the fixes from the tar file:

tar xvf libc_ifix.tar
cd libc_ifix

Verify you have retrieved the fixes intact:

The checksums below were generated using the “sum”, “cksum”,
“csum -h MD5″ (md5sum), and “csum -h SHA1″ (sha1sum) commands
and are as follows:

sum filename
————————————
29751 3152 IZ15564_08.080219.epkg.Z
19549 3172 IZ15564_09.080219.epkg.Z
52071 3186 IZ15564_10.080219.epkg.Z
53605 4731 IZ15565_00.080219.epkg.Z
44251 4047 IZ15566_07.080219.epkg.Z
11422 3565 IZ15567_05.080219.epkg.Z
51632 4007 IZ15567_06.080219.epkg.Z

cksum filename
——————————————
2980046000 3226933 IZ15564_08.080219.epkg.Z
1510474728 3247126 IZ15564_09.080219.epkg.Z
168637892 3261516 IZ15564_10.080219.epkg.Z
683046070 4843871 IZ15565_00.080219.epkg.Z
2090894068 4143462 IZ15566_07.080219.epkg.Z
1361113499 3649666 IZ15567_05.080219.epkg.Z
1757932115 4102745 IZ15567_06.080219.epkg.Z

csum -h MD5 (md5sum) filename
———————————————————-
652e8276e898720487b6d71072601b66 IZ15564_08.080219.epkg.Z
0dce26937a5c37af54f7530beb7e4c09 IZ15564_09.080219.epkg.Z
4c315531586da4fce4ff752ee067408f IZ15564_10.080219.epkg.Z
22c2ad002375f05f59c25f68e36a27a3 IZ15565_00.080219.epkg.Z
76c61645664e64acdb89e739b8a42daf IZ15566_07.080219.epkg.Z
985dc8bbcb71f09b8874944f302e4498 IZ15567_05.080219.epkg.Z
359417df76c8e1ae31d281c49e112daf IZ15567_06.080219.epkg.Z

csum -h SHA1 (sha1sum) filename
——————————————————————
37ce37b514f046dea0990540b787350d2b037e9e IZ15564_08.080219.epkg.Z
18ac4146cd3eadeb3c0ecbee11d720efc29a4076 IZ15564_09.080219.epkg.Z
b852a9ae018fe380f07048b20510f794b15b1610 IZ15564_10.080219.epkg.Z
79d367b661490c226a08acb7e0dc87f223addbc5 IZ15565_00.080219.epkg.Z
3cbe8222775007e860fc9b5227d79c3d773d54e3 IZ15566_07.080219.epkg.Z
d2e334e464c4b49fe731cc586dd786a3a79dd33a IZ15567_05.080219.epkg.Z
c54d19e8d7114ab40101025f43bfc8b27f18eb38 IZ15567_06.080219.epkg.Z

To verify the sums, use the text of this advisory as input to
csum, md5sum, or sha1sum. For example:

csum -h SHA1 -i Advisory.asc
md5sum -c Advisory.asc
sha1sum -c Advisory.asc

These sums should match exactly. The PGP signatures in the tar
file and on this advisory can also be used to verify the
integrity of the fixes. If the sums or signatures cannot be
confirmed, contact IBM AIX Security at
security-alert@austin.ibm.com and describe the discrepancy.

C. INTERIM FIX INSTALLATION

IMPORTANT: If possible, it is recommended that a mksysb backup
of the system be created. Verify it is both bootable and
readable before proceeding.

Interim fixes have had limited functional and regression
testing but not the full regression testing that takes place
for Service Packs; thus, IBM does not warrant the fully
correct functionality of an interim fix.

Interim fix management documentation can be found at:

http://www14.software.ibm.com/webapp/set2/sas/f/aix.efixmgmt/home.html

To preview an interim fix installation:

emgr -e ipkg_name -p # where ipkg_name is the name of the
# interim fix package being previewed.

To install an interim fix package:

emgr -e ipkg_name -X # where ipkg_name is the name of the
# interim fix package being installed.

IV. WORKAROUNDS

There are no workarounds.

V. OBTAINING FIXES

AIX security fixes can be downloaded from:

ftp://aix.software.ibm.com/aix/efixes/security

AIX fixes can be downloaded from:

http://www.ibm.com/eserver/support/fixes/fixcentral/main/pseries/aix

NOTE: Affected customers are urged to upgrade to the latest
applicable Technology Level and Service Pack.

VI. CONTACT INFORMATION

If you would like to receive AIX Security Advisories via email,
please visit:

http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd

Comments regarding the content of this announcement can be
directed to:

security-alert@austin.ibm.com

To request the PGP public key that can be used to communicate
securely with the AIX Security Team you can either:

A. Send an email with “get key” in the subject line to:

security-alert@austin.ibm.com

B. Download the key from a PGP Public Key Server. The key ID is:

0xA6A36CCC

Please contact your local IBM AIX support center for any
assistance.

eServer is a trademark of International Business Machines
Corporation. IBM, AIX and pSeries are registered trademarks of
International Business Machines Corporation. All other trademarks
are property of their respective holders.

VII. ACKNOWLEDGMENTS

Bjoern A. Zeeb and Nate Eldredge reported this vulnerability.

—–BEGIN PGP SIGNATURE—–
Version: GnuPG v1.4.7 (AIX)

iD8DBQFHxaux8lficKajbMwRAsluAKCrkdmO+5HaA5hkipVg8ggOPk4p2wCgqpx5
kAwT79qZol922sZOcCEcqTE=
=xbvQ
—–END PGP SIGNATURE—–

AIX X server multiple vulnerabilities 2008.02.27

Wednesday, February 27th, 2008

AIX X server multiple vulnerabilities

—–BEGIN PGP SIGNED MESSAGE—–
Hash: SHA1

IBM SECURITY ADVISORY

First Issued: Wed Feb 27 10:57:32 CST 2008
===============================================================================
VULNERABILITY SUMMARY

VULNERABILITY: AIX X server multiple vulnerabilities

PLATFORMS: AIX 5.2, 5.3, 6.1

SOLUTION: Apply the fix or workaround as described below.

THREAT: An attacker may execute arbitrary code with root
privileges.

CVE Numbers: CVE-2007-6427, CVE-2007-6428, CVE-2007-6429, CVE-2008-0006
===============================================================================
DETAILED INFORMATION

I. DESCRIPTION

There are multiple vulnerabilities in the AIX X server. Please
refer to the following links for more information:

http://lists.freedesktop.org/archives/xorg/2008-January/031918.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-6427
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-6428
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-6429
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0006

Please note that AIX does not have the vulnerabilities described
in CVE-2007-5760 and CVE-2007-5958.

The successful exploitation of these vulnerabilities allows a
non-privileged user to execute code with root privileges. If the
X server is configured to allow remote connections, remote attacks
are possible.

The following commands are vulnerable:

/usr/bin/X11/X

II. PLATFORM VULNERABILITY ASSESSMENT

To determine if your system is vulnerable, execute the following
command:

lslpp -L X11.base.rte

The following fileset levels are vulnerable:

AIX Fileset Lower Level Upper Level
————————————————
X11.base.rte 5.2.0.0 5.2.0.106
X11.base.rte 5.3.0.0 5.3.0.62
X11.base.rte 5.3.7.0 5.3.7.1
X11.base.rte 6.1.0.0 6.1.0.2

III. SOLUTIONS

A. APARS

IBM has assigned the following APARs to this problem:

AIX Level APAR number Availability
—————————————————
5.2.0 IZ13652 05/07/08
5.3.0 IZ13653 03/12/08
5.3.7 IZ13654 03/12/08
6.1.0 IZ13655 04/09/08

Subscribe to the APARs here:

http://www.ibm.com/support/docview.wss?uid=isg1IZ13652
http://www.ibm.com/support/docview.wss?uid=isg1IZ13653
http://www.ibm.com/support/docview.wss?uid=isg1IZ13654
http://www.ibm.com/support/docview.wss?uid=isg1IZ13655

By subscribing, you will receive periodic email alerting you
to the status of the APAR, and a link to download the fix once
it becomes available.

B. FIXES

Fixes are available. The fixes can be downloaded via ftp
from:

ftp://aix.software.ibm.com/aix/efixes/security/X_ifix.tar

The link above is to a tar file containing this signed
advisory, fix packages, and PGP signatures for each package.
The fixes below include prerequisite checking. This will
enforce the correct mapping between the fixes and AIX
Technology Levels.

AIX Level Interim Fix
——————————————————————-
5.2.0 TL8 IZ13652_08.080214.epkg.Z
5.2.0 TL9 IZ13652_09.080214.epkg.Z
5.2.0 TL10 IZ13652_10.080214.epkg.Z
5.3.0 TL5 IZ13653_05.080214.epkg.Z
5.3.0 TL6 IZ13653_06.080214.epkg.Z
5.3.7 IZ13654_07.080214.epkg.Z
6.1.0 IZ13655_00.080214.epkg.Z

To extract the fixes from the tar file:

tar xvf X_ifix.tar
cd X_ifix

Verify you have retrieved the fixes intact:

The checksums below were generated using the “sum”, “cksum”,
“csum -h MD5″ (md5sum), and “csum -h SHA1″ (sha1sum) commands
and are as follows:

sum filename
————————————
29454 1764 IZ13652_08.080214.epkg.Z
54867 1763 IZ13652_09.080214.epkg.Z
22131 1765 IZ13652_10.080214.epkg.Z
46384 1820 IZ13653_05.080214.epkg.Z
48056 1819 IZ13653_06.080214.epkg.Z
56839 1820 IZ13654_07.080214.epkg.Z
22144 2214 IZ13655_00.080214.epkg.Z

cksum filename
——————————————
84291091 1805551 IZ13652_08.080214.epkg.Z
1431371517 1805065 IZ13652_09.080214.epkg.Z
2007335003 1806825 IZ13652_10.080214.epkg.Z
3474601132 1863121 IZ13653_05.080214.epkg.Z
313288505 1862398 IZ13653_06.080214.epkg.Z
1719442596 1862767 IZ13654_07.080214.epkg.Z
2099107711 2267095 IZ13655_00.080214.epkg.Z

csum -h MD5 (md5sum) filename
———————————————————-
b4c94b67e0a89ecbf98de04ff3712505 IZ13652_08.080214.epkg.Z
67a53991b8a550ea02395538710c359e IZ13652_09.080214.epkg.Z
1100c184ecb2bdc769d8740f719bb991 IZ13652_10.080214.epkg.Z
435a4283d8a4fcc0ce73c3fb1fe41890 IZ13653_05.080214.epkg.Z
8e7489e24303e88f37c6d61ee37da51d IZ13653_06.080214.epkg.Z
f2e0627a31898c914215ded8caa0205b IZ13654_07.080214.epkg.Z
e30e32047ebdf153831a0187ad7cdea9 IZ13655_00.080214.epkg.Z

csum -h SHA1 (sha1sum) filename
——————————————————————
6e2477ebe0717d08084975388b760f04718f7a65 IZ13652_08.080214.epkg.Z
5829afefa835ac36217492ec962171d03844347a IZ13652_09.080214.epkg.Z
6588e81f74ebe6b39cc10d9e5ab588462b3f1abf IZ13652_10.080214.epkg.Z
19360313640f5438a46743360a53d27e485cb5d7 IZ13653_05.080214.epkg.Z
50d788358b316cff38705970a9a783fe846b8751 IZ13653_06.080214.epkg.Z
c8392c5558059157607949180838eaeb4be763d0 IZ13654_07.080214.epkg.Z
d6ba687715bb0c3a6e438b63d0115836d4e35b50 IZ13655_00.080214.epkg.Z

To verify the sums, use the text of this advisory as input to
csum, md5sum, or sha1sum. For example:

csum -h SHA1 -i Advisory.asc
md5sum -c Advisory.asc
sha1sum -c Advisory.asc

These sums should match exactly. The PGP signatures in the tar
file and on this advisory can also be used to verify the
integrity of the fixes. If the sums or signatures cannot be
confirmed, contact IBM AIX Security at
security-alert@austin.ibm.com and describe the discrepancy.

C. INTERIM FIX INSTALLATION

IMPORTANT: If possible, it is recommended that a mksysb backup
of the system be created. Verify it is both bootable and
readable before proceeding.

Interim fixes have had limited functional and regression
testing but not the full regression testing that takes place
for Service Packs; thus, IBM does not warrant the fully
correct functionality of an interim fix.

Interim fix management documentation can be found at:

http://www14.software.ibm.com/webapp/set2/sas/f/aix.efixmgmt/home.html

To preview an interim fix installation:

emgr -e ipkg_name -p # where ipkg_name is the name of the
# interim fix package being previewed.

To install an interim fix package:

emgr -e ipkg_name -X # where ipkg_name is the name of the
# interim fix package being installed.

IMPORTANT: The ifix requires the user to restart the X-Server.
The X-Server can be restarted in CDE by exiting CDE and
selecting restart.

IV. WORKAROUNDS

The X server can be disabled and then killed with the following
commands:

/usr/dt/bin/dtconfig -d
/usr/dt/bin/dtconfig -kill

The X server can be restored after applying the fix with the
following commands:

/usr/dt/bin/dtconfig -e
/usr/bin/startsrc -s dtsrc

V. OBTAINING FIXES

AIX security fixes can be downloaded from:

ftp://aix.software.ibm.com/aix/efixes/security

AIX fixes can be downloaded from:

http://www.ibm.com/eserver/support/fixes/fixcentral/main/pseries/aix

NOTE: Affected customers are urged to upgrade to the latest
applicable Technology Level and Service Pack.

VI. CONTACT INFORMATION

If you would like to receive AIX Security Advisories via email,
please visit:

http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd

Comments regarding the content of this announcement can be
directed to:

security-alert@austin.ibm.com

To request the PGP public key that can be used to communicate
securely with the AIX Security Team you can either:

A. Send an email with “get key” in the subject line to:

security-alert@austin.ibm.com

B. Download the key from a PGP Public Key Server. The key ID is:

0xA6A36CCC

Please contact your local IBM AIX support center for any
assistance.

eServer is a trademark of International Business Machines
Corporation. IBM, AIX and pSeries are registered trademarks of
International Business Machines Corporation. All other trademarks
are property of their respective holders.

VII. ACKNOWLEDGMENTS

Vulnerabilities described by CVE-2007-6427, CVE-2007-6428 and
CVE-2007-6429 were reported to iDefense Labs by regenrecht.

CVE-2008-0006 was reported to CERT/CC by Takuya Shiozaki

—–BEGIN PGP SIGNATURE—–
Version: GnuPG v1.4.7 (AIX)

iD8DBQFHxZx/8lficKajbMwRAgFdAJ4i5P3YY1mWHmbbLgI9mtKfU/oaZQCfQ0AC
XC/4CZlf4y2Ek7gqT/7XdU0=
=RdPN
—–END PGP SIGNATURE—–

SUN ALERT WEEKLY SUMMARY REPORT Week of 17-Feb-2008 to 23-Feb-2008

Monday, February 25th, 2008

SUN ALERT WEEKLY SUMMARY REPORT

Week of 17-Feb-2008 to 23-Feb-2008

Welcome to the Sun Alert Weekly Summary Report, the newsletter
that provides you with a weekly listing of newly released and
updated Sun Alert Notifications. It is being distributed
to inform you about critical hardware and software issues that
could impact the availability, security, and data integrity of
your computing environment.

==================================================================
ISSUE HIGHLIGHTS

* Newly Released Sun Alerts for 3 Release Phases:

Preliminary, Workaround and Resolved

* Updated Sun Alerts

* Additional Information

=================================================================
New Preliminary Sun Alert Notifications
None

=================================================================
New Workaround Sun Alert Notifications
(Total Workaround: 3)

Sun Alert ID: 231804
Title: Certain Solaris 10 CDE Patches Cause the Installation of
SUNWdtlog to Fail When Creating Zones
Product: Solaris 10 Operating System
Category: Availability
Release Phase: Workaround
Workaround Date: 19-Feb-2008

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-231804-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.

—————————————————————–

Sun Alert ID: 233283
Title: Solaris 10 Kernel Update Patches Remove Contents of
“/etc/inet/secret/ike.preshared” File
Product: Solaris 10 Operating System
Category: Availability
Release Phase: Workaround
Workaround Date: 19-Feb-2008

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-233283-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.

—————————————————————–

Sun Alert ID: 233341
Title: Solaris 10 x86 Systems Using Marvell HBA Controllers May
Experience Panic or Hang
Product: Solaris 10 Operating System
Category: Availability
Release Phase: Workaround
Workaround Date: 21-Feb-2008

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-233341-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.

=================================================================
New Resolved Sun Alert Notifications
(Total Resolved: 2)

Sun Alert ID: 231803
Title: Security Vulnerability in the Solaris 10 DTrace Dynamic
Tracing Framework May Allow Unauthorized Kernel Level
Tracing
Product: Solaris 10 Operating System
Category: Security
Release Phase: Resolved
Resolved Date: 18-Feb-2008

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-231803-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.

—————————————————————–

Sun Alert ID: 233281
Title: Incorrect Patches or Sequence of Installation May
Disable N2 Hardware Encryption for IPsec on T5120 and
T5220
Product: Solaris 10 Operating System
Category: Availability
Release Phase: Resolved
Resolved Date: 19-Feb-2008

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-233281-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.

=================================================================
Updated Sun Alert Notifications
(Total Updated: 5)

Sun Alert ID: 200044 Previous ID: 103052
Title: With Sun StorEdge SAN 4.4.11, 4.4.12, and 4.4.13,
fcp_offline_delay May Not be Set During Boot
Product: Sun StorageTek SAN 4.4.8 Software
Category: Availability
Release Phase: Workaround
Workaround Date: 29-Aug-2007
Last Updated: 19-Feb-2008

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-200044-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.

—————————————————————–

Sun Alert ID: 200649 Previous ID: 103189
Title: Installing Certain Solaris 10 Samba Patches Causes
“inetd” Services to Fail in Non-global Zones
Product: Solaris 10 Operating System
Category: Availability
Release Phase: Workaround
Workaround Date: 21-Dec-2007
Last Updated: 19-Feb-2008

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-200649-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.

—————————————————————–

Sun Alert ID: 200859 Previous ID: 103063
Title: Security Vulnerability in BIND 8 May Allow Cache
Poisoning Attack
Product: Solaris 9 Operating System, Solaris 8 Operating System
Category: Security
Release Phase: Resolved
Resolved Date: 15-Oct-2007
Last Updated: 18-Feb-2008

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-200859-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.

—————————————————————–

Sun Alert ID: 201227 Previous ID: 103175
Title: Security Vulnerabilities in the Sun Ray Device Manager
Daemon
Product: Sun Ray Server Software 3.1, Sun Ray Server Software
3.1.1, Sun Ray Server Software 3.0, Sun Ray Server
Software 2.0
Category: Security
Release Phase: Workaround
Workaround Date: 18-Dec-2007
Last Updated: 19-Feb-2008

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-201227-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.

—————————————————————–

Sun Alert ID: 231524
Title: Security Vulnerability in Solaris 10 Perl 5.8
Product: Solaris 10 Operating System, Perl 5.8
Category: Security
Release Phase: Workaround
Workaround Date: 11-Feb-2008
Last Updated: 19-Feb-2008

To view this Sun Alert document please go to the following URL:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-231524-1
If this Sun Alert document is not publicly available, go to the
SunSpectrum Member Support Center at www.sun.com/support and
search for the Sun Alert ID above.

==================================================================
Additional Information:

Please see the following sites for recent information on the new
SunSpectrum Member Support Center and changes to SunSolve:

* SunSpectrum Member Support Center wiki
http://wikis.sun.com/display/ssmsc
* New SunSolve wiki
http://wikis.sun.com/display/sunsolve

Changes to the Online Support Center (OSC) :

* New OSC wiki http://wikis.sun.com/display/osc

==================================================================

Thanks for tuning in to the Sun Alert Weekly Summary Report!

Power6 Firmware update or upgrade fails with SRC E302F842

Friday, February 22nd, 2008

http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=18&ID=4132

Power6 Firmware update or upgrade fails with SRC E302F842
Description:

On POWER6 systems, the installation of system firmware will fail if HMC V7.3.2 with fix MH01081 is installed prior to the firmware update.

Firmware installation on POWER5 systems are not affected.

The Description files for the below code levels have been updated with additional information on this problem.

View the EM320_031 Description file.

View the EM310_069 Description file.

View the EM310_063 Description file.

NOTE: This problem will be resolved with the release of HMC V7R3.2.0 Service Pack 1.

Visit Hardware Management Console for all the latest updates.

Visit Microcode downloads for all the latest updates.

IBM Pegasus CIM Server for Director on AIX vulnerabilities

Friday, February 22nd, 2008

—–BEGIN PGP SIGNED MESSAGE—–
Hash: SHA1

IBM SECURITY ADVISORY

First Issued: Thu Feb 21 10:43:47 CST 2008
===============================================================================
VULNERABILITY SUMMARY

VULNERABILITY: IBM Pegasus CIM Server for Director on AIX vulnerabilities.

PLATFORMS: AIX 5.2, 5.3, 6.1

SOLUTION: Apply the fix or workaround as described below.

THREAT: A remote attacker may run arbitrary code with root privileges,
and/or cause a Denial of Service (DoS) attack.

CERT VU Number: n/a
CVE Number: CVE-2008-0003, CVE-2008-0495
===============================================================================
DETAILED INFORMATION

I. OVERVIEW

IBM Pegasus CIM Server for Director provides common information model
(CIM) object management. This is a framework supporting Web-Based
Enterprise Management (WBEM) services. WBEM is a platform and resource
independent standard from the Distributed Management Task Force (DMTF).
WBEM defines a CIM, and communication protocol for resource monitoring
and control.

Two vulnerabilities have been addressed in the IBM Pegasus CIM Server
for Director. The first is a stack buffer overflow flaw found in the PAM
authentication code in the CIM management server. The second is a Denial
of Service (DoS) vulnerability against the CIM service daemon itself.

II. DESCRIPTION

A stack-based buffer overflow vulnerability exists in the IBM Pegasus CIM
Server for Director in which an unauthenticated remote user could trigger
this flaw and potentially execute arbitrary code with root privileges
(CVE-2008-0003). In addition a denial-of-service (DoS) issue exists in
the IBM Pegasus CIM Server for Director.

III. IMPACT

The successful exploitation of these vulnerabilities allows a
non-privileged remote user to execute code with root privileges
and/or cause a denial of service against the CIM server.

IV. PLATFORM VULNERABILITY ASSESSMENT

To determine if your system is vulnerable, run the following commands:

lslpp -L sysmgt.pegasus.cimserver.rte

The following fileset levels are vulnerable for all supported versions
of AIX:

AIX Fileset Fileset Levels
—————————————————————-
sysmgt.pegasus.cimserver.rte 2.5.1.20
2.5.1.21
2.5.1.30

sysmgt.pegasus.cimserver.rte 2.6.1.0
2.6.1.1

V. SOLUTIONS

A. Installable images including these fixes for AIX 5.3 and AIX 6.1 will
be available for IBM Pegasus CIM Server on the IBM Director Download
website approximately in April 2008. These images will install
fileset ’sysmgt.cimserver.pegasus.rte’ level 2.6.1.20.

B. INTERIM FIXES

Interim Fixes are available. The fixes can be downloaded in two ways:

1. Via HTTP or Download Director from the IBM Director Web Download
Site:

https://www14.software.ibm.com/webapp/iwm/web/preLogin.do?source=dmp

NOTE: Once logged in to the site, the fixes can be located
using the following steps:

Fixes for Pegasus 2.6.1 on AIX:
- Select IBM Director for AIX and accept the license.
- Find the fixes in the IBM Pegasus CIM Server for Director on
AIX section:

AIX 5.2: Efix_644427.080123_AIX5.2.tar.gz
AIX 5.3: Efix_644427.080123_AIX5.3_6.1.tar.gz
AIX 6.1: Efix_644427.080123_AIX5.3_6.1.tar.gz

Fixes for Pegasus 2.5.1 on AIX:
- Select IBM Director-Archives.
- Find the fixes in the IBM Director for AIX and Linux on
POWER section:

AIX (all versions): Efix_641416.080123_AIX.tar.gz

Install instructions are included in the file:

CIM_Pegasus_Providers_AIX.README.html

2. Via FTP from the AIX Software Download Site:

ftp://aix.software.ibm.com/aix/efixes/security/pegasus_ifix.tar

The link above is to a tar file containing this signed
advisory, interim fix packages, and PGP signatures for each
package. The interim fixes below include prerequisite
checking. This will enforce the correct mapping between the
fixes and AIX Technology Levels.

Version AIX Release Interim fix
—————————————————————–
Pegasus 2.5.1 All Efix_641416.080123_AIX.tar.gz
Pegasus 2.6.1 5.2 Efix_644427.080123_AIX5.2.tar.gz
Pegasus 2.6.1 5.3, 6.1 Efix_644427.080123_AIX5.3_6.1.tar.gz

To extract the fixes from the tar file:

tar xvf pegasus_ifix.tar
cd pegasus_ifix

IMPORTANT: If possible, it is recommended that a mksysb backup
of the system be created. Verify it is both bootable and
readable before proceeding.

These interim fixes have not been fully regression tested;
thus, IBM does not warrant the fully correct functionality of
the interim fix.

Verify you have retrieved the fixes intact:

The checksums below were generated using the “sum”, “cksum”,
“csum -h MD5″ (md5sum), and “csum -h SHA1″ (sha1sum) commands
and are as follows:

sum filename
- ————————————
53770 3610 Efix_641416.080123_AIX.tar.gz
47815 169 Efix_644427.080123_AIX5.2.tar.gz
33258 169 Efix_644427.080123_AIX5.3_6.1.tar.gz

cksum filename
- ——————————————
4271833127 3695746 Efix_641416.080123_AIX.tar.gz
1284858963 172713 Efix_644427.080123_AIX5.2.tar.gz
2454864014 172998 Efix_644427.080123_AIX5.3_6.1.tar.gz

csum -h MD5 (md5sum) filename
- ———————————————————-
8d71ff3be9f60722d4f158bb0e5c2558 Efix_641416.080123_AIX.tar.gz
3aadb16572166fd190a6fb63ddbf85da Efix_644427.080123_AIX5.2.tar.gz
04c876224b116e2c23778ca941669e29 Efix_644427.080123_AIX5.3_6.1.tar.gz

csum -h SHA1 (sha1sum) filename
- ——————————————————————
1b9edb622a24c06cf8155fd836235a4a337fbfaf Efix_641416.080123_AIX.tar.gz
3c69ca8f6213312c4179e6e026cd3ebe8469b7ed Efix_644427.080123_AIX5.2.tar.gz
022a84b9bd0710bce3dc295b96ddeb0214355563 Efix_644427.080123_AIX5.3_6.1.tar.gz

To verify the sums, use the text of this advisory as input to
csum, md5sum, or sha1sum. For example:

csum -h SHA1 -i Advisory.asc
md5sum -c Advisory.asc
sha1sum -c Advisory.asc

These sums should match exactly. The PGP signatures in the tar
file and on this advisory can also be used to verify the
integrity of the fixes. If the sums or signatures cannot be
confirmed, contact IBM AIX Security at
security-alert@austin.ibm.com and describe the discrepancy.

C. INTERIM FIX INSTALLATION

Please refer to the installation instructions in the following
files:

Efix_641416_readme.html
Efix_644427_readme.html

VI. WORKAROUNDS

There are no workarounds for these vulnerabilities other than
uninstalling the affected software.

VII. OBTAINING FIXES

Security related Interim Fixes can be downloaded from:

ftp://aix.software.ibm.com/aix/efixes/security

AIX 6.1 6100-00 Service Pack 3

Tuesday, February 19th, 2008

http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=18&ID=4121

What is AIX 6100-00-03
Service Packs contain important fixes delivered between Technology Levels. 6100-00-03 is Service Pack 3 for the 6100-00 Technology Level.

How to Obtain AIX 6100-00-03
AIX 6100-00 Service Pack 3 may be obtained from the Fix packs section of the Fix Central web site, or by ordering APAR IZ13890.

Installation Tips
You must have root authority to perform the installation.

Creating a system backup is recommended before starting the installation procedure. Refer to the mksysb command in the AIX 6.1 Commands Reference manual for additional information.

The latest AIX 6.1 installation hints and tips are available from the IBM Subscription Service.
These tips contain important information that should be reviewed prior to installation.

Installation
To install all updates from this package that apply to installed filesets on your system, use the command:
smit update_all
A system reboot is required after the installation completes successfully.
To determine if the 6100-00 Service Pack 3 is installed, use the command:

oslevel -s
The output should indicate 6100-00-03-0808.

APAR Number: IZ13342 - Various filesystem corruption can be observed, if a filesystem

Friday, February 15th, 2008

APAR Number: IZ13342

——————————————————————————–

APAR status
Closed as program error.

Error description
Various filesystem corruption can be observed, if a filesystem
with AIX ACL(eav1) is shrinked.
Whole filesystem could be unusable or may lead to crashes.
Local fix
Problem summary
****************************************************************
* USERS AFFECTED:
* AIX 6.1 systems with JFS2 filesystems with AIX ACLs (eav1)
* with the bos.mp64 fileset below the level of 6.1.0.4.
****************************************************************
* PROBLEM DESCRIPTION:
* Various filesystem corruption can occur when shrinking a JFS2
* filesystem with AIX ACLs. The filesystem may become unusable
* or may lead to system crashes.
****************************************************************
* RECOMMENDATION:
* Do not attempt to shrink JFS2 filesystems with AIX ACLs before
* installing the fix for APAR IZ13342.
****************************************************************
Problem conclusion
Intitialize eA extent array properly.
Temporary fix
*********
* HIPER *
*********
Comments
APAR information
APAR number IZ13342
Reported component name AIX 610
Reported component ID 5765G6200
Reported release 610
Status CLOSED PER
PE NoPE
HIPER YesHIPER
Submitted date 2008-01-17
Closed date 2008-01-17
Last modified date 2008-02-14

APAR is sysrouted FROM one or more of the following:
IZ08676

APAR is sysrouted TO one or more of the following:

Fix information
Fixed component name AIX 610
Fixed component ID 5765G6200

Applicable component levels
R610 PSY U815292 UP08/02/14 I 1000

AIX 6.1 : High impact/highly pervasive (2008.02.14)

Thursday, February 14th, 2008

APAR Number: IZ14395
While building a NIM spot, this error might be encountered:
warning: 0042-175 c_instspot: An unexpected result was
returned by the “/usr/sbin/unmount” command:
unmount: 0506-349 Cannot unmount /dev: The requested
resource is busy

APAR Number: IZ13376
Crash in scsidisk_process_sense when using non-MPIO disks