HP Tru64 UNIX and TruCluster Server Version 5.1B-5 Patch Summary and Release Notes (March 2009)

Patch 27080.00
OSFTCLBASE540
Corrects a potential security vulnerability where, under certain circumstances,
system integrity may be compromised. This may be in the form of improper file
access.
Patch 27083.00
OSFTRUETYPE540
Corrects a potential file permissions vulnerability and a potential buffer overflow
in the X Window System. The potential vulnerabilities are locally exploitable,
resulting in unauthorized privileged access.
Corrects a potential file permissions vulnerability and a potential buffer overflow
in the X Window System. The potential vulnerabilities are locally exploitable,
resulting in unauthorized privileged access.
Patch 27084.00
OSFUUCP540
Corrects a problem with the uucp command in which it changes the time stamps
of the destination file when the destination file already exists as a directory.
Enables the tip command to log into the member-specific log file.
Corrects the path for the aculog file and gives the file appropriated permissions.
Makes start up scripts in /sbin/init.d world readable.
Corrects several potential security vulnerabilities where, under certain
circumstances, system integrity may be compromised. These may be in the form
of improper file or privilege management.
Corrects a potential security vulnerability where, under certain circumstances,
system integrity may be compromised when a buffer overflow occurs in the uucp
utility. Buffer overflows are sometimes exploited in an attempt to subvert the
function of a privileged program and possibly execute commands at the elevated
privileges if the program file has the setuid privilege.
Provides protection against a class of potential security vulnerabilities called buffer
overflows. Buffer overflows are sometimes exploited in an attempt to subvert the
function of a privileged program and possibly execute commands at the elevated
privileges if the program file has the setuid privilege. This patch allows a system
administrator to enable memory management protections that limit potential
buffer overflow vulnerabilities.
196 Tru64 UNIX Patches