From agent99@sgi.com Thu Jul 17 20:19:18 2003 From: SGI Security Coordinator To: agent99@sgi.com Cc: bugtraq@securityfocus.com, full-disclosure@lists.netsys.com, vulnwatch@vulnwatch.org Newsgroups: comp.sys.sgi.announce, comp.security.unix, comp.sys.sgi.admin, comp.security.announce Date: Wed, 16 Jul 2003 15:15:16 -0700 Subject: [Full-Disclosure] Multiple Vulnerabilities in Name Service Daemon (nsd) on IRIX -----BEGIN PGP SIGNED MESSAGE----- ______________________________________________________________________________ SGI Security Advisory Title : Multiple Vulnerabilities in Name Service Daemon (nsd) Number : 20030701-01-P Date : July 16, 2003 Reference: CVE CAN-2003-0176, CAN-2003-0177, CAN-2003-0572, CAN-2003-0573 Reference: SGI BUGS 844401, 866833, 862096, 849491 Fixed in : IRIX 6.5.21 or patches 5123 through 5133 and 5156 ______________________________________________________________________________ SGI provides this information freely to the SGI user community for its consideration, interpretation, implementation and use. SGI recommends that this information be acted upon as soon as possible. SGI provides the information in this Security Advisory on an "AS-IS" basis only, and disclaims all warranties with respect thereto, express, implied or otherwise, including, without limitation, any warranty of merchantability or fitness for a particular purpose. In no event shall SGI be liable for any loss of profits, loss of business, loss of data or for any indirect, special, exemplary, incidental or consequential damages of any kind arising from your use of, failure to use or improper use of any of the instructions or information in this Security Advisory. ______________________________________________________________________________ - ----------------------- - --- Issue Specifics --- - ----------------------- It's been reported that there are several vulnerabilities in the IRIX Name Service Daemon (nsd): o nsd on NIS master can die while being UDP portscanned (BUG 844401) http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2003-0176 o /etc/group doesn't honor "-" (minus) entries (BUG 849491) http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2003-0177 o nsd dynamic maps can be made to consume all memory (BUG 866833) http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2003-0572 o nsd DNS callbacks don't do enough sanity checking (BUG 862096) http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2003-0573 SGI has investigated the issues and recommends the following steps for neutralizing the exposure. It is HIGHLY RECOMMENDED that these measures be implemented on ALL vulnerable SGI systems. These issues have been corrected in patches and in future releases of IRIX. - -------------- - --- Impact --- - -------------- The /usr/etc/nsd daemon is installed by default on IRIX 6.5 systems as part of eoe.sw.base. To determine the version of IRIX you are running, execute the following command: # /bin/uname -R That will return a result similar to the following: # 6.5 6.5.16f The first number ("6.5") is the release name, the second ("6.5.16f" in this case) is the extended release name. The extended release name is the "version" we refer to throughout this document. - ---------------------------- - --- Temporary Workaround --- - ---------------------------- There is no effective workaround available for these problems. SGI recommends either upgrading to IRIX 6.5.21 when available or installing the appropriate patch from the listing below. - ---------------- - --- Solution --- - ---------------- SGI has provided a series of patches for these vulnerabilities. Our recommendation is to upgrade to IRIX 6.5.21 when available, or install the appropriate patch. OS Version Vulnerable? Patch # Other Actions ---------- ----------- ------- ------------- IRIX 3.x unknown Note 1 IRIX 4.x unknown Note 1 IRIX 5.x unknown Note 1 IRIX 6.0.x unknown Note 1 IRIX 6.1 unknown Note 1 IRIX 6.2 unknown Note 1 IRIX 6.3 unknown Note 1 IRIX 6.4 unknown Note 1 IRIX 6.5 yes Notes 2 & 3 IRIX 6.5.1 yes Notes 2 & 3 IRIX 6.5.2 yes Notes 2 & 3 IRIX 6.5.3 yes Notes 2 & 3 IRIX 6.5.4 yes Notes 2 & 3 IRIX 6.5.5 yes Notes 2 & 3 IRIX 6.5.6 yes Notes 2 & 3 IRIX 6.5.7 yes Notes 2 & 3 IRIX 6.5.8 yes Notes 2 & 3 IRIX 6.5.9 yes Notes 2 & 3 IRIX 6.5.10 yes Notes 2 & 3 IRIX 6.5.11 yes Notes 2 & 3 IRIX 6.5.12 yes Notes 2 & 3 IRIX 6.5.13 yes Notes 2 & 3 IRIX 6.5.14 yes Notes 2 & 3 IRIX 6.5.15m yes 5123 Notes 2 & 4 IRIX 6.5.15f yes 5124 Notes 2 & 4 IRIX 6.5.16m yes 5125 Notes 2 & 4 IRIX 6.5.16f yes 5126 Notes 2 & 4 IRIX 6.5.17m yes 5127 Notes 2 & 4 IRIX 6.5.17f yes 5128 Notes 2 & 4 IRIX 6.5.18m yes 5129 Notes 2 & 4 IRIX 6.5.18f yes 5130 Notes 2 & 4 IRIX 6.5.19m yes 5131 Notes 2 & 4 IRIX 6.5.19f yes 5132 Notes 2 & 4 IRIX 6.5.20m yes 5133 Notes 2 & 4 IRIX 6.5.20f yes 5156 Notes 2 & 4 IRIX 6.5.21 no NOTES 1) This version of the IRIX operating has been retired. Upgrade to an actively supported IRIX operating system. See http://support.sgi.com/ for more information. 2) If you have not received an IRIX 6.5.X CD for IRIX 6.5, contact your SGI Support Provider or URL: http://support.sgi.com/ 3) Upgrade to IRIX 6.5.21 when available. 4) Upgrade to IRIX 6.5.21 when available or install the patch. ##### Patch File Checksums #### The actual patch will be a tar file containing the following files: Filename: README.patch.5123 Algorithm #1 (sum -r): 07428 10 README.patch.5123 Algorithm #2 (sum): 59463 10 README.patch.5123 MD5 checksum: DB94972FC93A3061EAB96A44B82FB11E Filename: patchSG0005123 Algorithm #1 (sum -r): 33724 11 patchSG0005123 Algorithm #2 (sum): 40691 11 patchSG0005123 MD5 checksum: 0ADA4CC536EBD49BA42542EC137A4456 Filename: patchSG0005123.dev_sw Algorithm #1 (sum -r): 33908 2830 patchSG0005123.dev_sw Algorithm #2 (sum): 28943 2830 patchSG0005123.dev_sw MD5 checksum: D11ACA062445A8587D515144A34AC01D Filename: patchSG0005123.eoe_man Algorithm #1 (sum -r): 44210 22 patchSG0005123.eoe_man Algorithm #2 (sum): 54110 22 patchSG0005123.eoe_man MD5 checksum: 455ACC65FFDE0AAB3624849823601787 Filename: patchSG0005123.eoe_sw Algorithm #1 (sum -r): 34073 14342 patchSG0005123.eoe_sw Algorithm #2 (sum): 55208 14342 patchSG0005123.eoe_sw MD5 checksum: 5C72B2F0E73BB2B04D1C84473E010DB1 Filename: patchSG0005123.eoe_sw64 Algorithm #1 (sum -r): 46753 5363 patchSG0005123.eoe_sw64 Algorithm #2 (sum): 38609 5363 patchSG0005123.eoe_sw64 MD5 checksum: 881B0570216D0FCDB4E0F263B182E4EB Filename: patchSG0005123.idb Algorithm #1 (sum -r): 62430 11 patchSG0005123.idb Algorithm #2 (sum): 24476 11 patchSG0005123.idb MD5 checksum: 69C48F36FCCDA53B2D9AD575F1E0BC9B Filename: patchSG0005123.irix_dev_sw Algorithm #1 (sum -r): 23972 12 patchSG0005123.irix_dev_sw Algorithm #2 (sum): 58374 12 patchSG0005123.irix_dev_sw MD5 checksum: 73AA79860CCD51D093967C9CAF32047B Filename: patchSG0005123.nfs_sw Algorithm #1 (sum -r): 24501 201 patchSG0005123.nfs_sw Algorithm #2 (sum): 16081 201 patchSG0005123.nfs_sw MD5 checksum: 8FD24FC5DBC3CCB2075A5B7E515FB643 Filename: README.patch.5124 Algorithm #1 (sum -r): 34793 10 README.patch.5124 Algorithm #2 (sum): 58931 10 README.patch.5124 MD5 checksum: DF4B5B9FA34C7FD81A1A24095D98322C Filename: patchSG0005124 Algorithm #1 (sum -r): 22982 10 patchSG0005124 Algorithm #2 (sum): 9532 10 patchSG0005124 MD5 checksum: C7687285FF77E982938AE642B152EA13 Filename: patchSG0005124.dev_sw Algorithm #1 (sum -r): 32912 2873 patchSG0005124.dev_sw Algorithm #2 (sum): 45957 2873 patchSG0005124.dev_sw MD5 checksum: B61D8DDA3C122AAA6D163FD4C1E89BE6 Filename: patchSG0005124.eoe_man Algorithm #1 (sum -r): 44210 22 patchSG0005124.eoe_man Algorithm #2 (sum): 54110 22 patchSG0005124.eoe_man MD5 checksum: 455ACC65FFDE0AAB3624849823601787 Filename: patchSG0005124.eoe_sw Algorithm #1 (sum -r): 09924 14590 patchSG0005124.eoe_sw Algorithm #2 (sum): 20413 14590 patchSG0005124.eoe_sw MD5 checksum: BBEA08425E5DEA1CC26597C255240934 Filename: patchSG0005124.eoe_sw64 Algorithm #1 (sum -r): 17107 5444 patchSG0005124.eoe_sw64 Algorithm #2 (sum): 13995 5444 patchSG0005124.eoe_sw64 MD5 checksum: FF6427A2193FF5979526B57B8E9A43F1 Filename: patchSG0005124.idb Algorithm #1 (sum -r): 08511 11 patchSG0005124.idb Algorithm #2 (sum): 24836 11 patchSG0005124.idb MD5 checksum: EEF5D53CE286BAE804284F5EC3096CE5 Filename: patchSG0005124.irix_dev_sw Algorithm #1 (sum -r): 23972 12 patchSG0005124.irix_dev_sw Algorithm #2 (sum): 58374 12 patchSG0005124.irix_dev_sw MD5 checksum: 73AA79860CCD51D093967C9CAF32047B Filename: patchSG0005124.nfs_sw Algorithm #1 (sum -r): 31082 201 patchSG0005124.nfs_sw Algorithm #2 (sum): 53770 201 patchSG0005124.nfs_sw MD5 checksum: 2794364325FEEC4F7263C8BB0D5EFB27 Filename: README.patch.5125 Algorithm #1 (sum -r): 51398 10 README.patch.5125 Algorithm #2 (sum): 58988 10 README.patch.5125 MD5 checksum: 13A89A91606B6C23D5ADDF0B0606022B Filename: patchSG0005125 Algorithm #1 (sum -r): 47172 10 patchSG0005125 Algorithm #2 (sum): 1384 10 patchSG0005125 MD5 checksum: 586A9DABDA656E63092A7730BD54EA10 Filename: patchSG0005125.dev_sw Algorithm #1 (sum -r): 36012 2812 patchSG0005125.dev_sw Algorithm #2 (sum): 59842 2812 patchSG0005125.dev_sw MD5 checksum: 6219D187B71339541D2E1566CF9C6D98 Filename: patchSG0005125.eoe_man Algorithm #1 (sum -r): 44210 22 patchSG0005125.eoe_man Algorithm #2 (sum): 54110 22 patchSG0005125.eoe_man MD5 checksum: 455ACC65FFDE0AAB3624849823601787 Filename: patchSG0005125.eoe_sw Algorithm #1 (sum -r): 56514 14345 patchSG0005125.eoe_sw Algorithm #2 (sum): 43063 14345 patchSG0005125.eoe_sw MD5 checksum: 60AEEBBFD4DA4735F8B71C8C5D2DF8DC Filename: patchSG0005125.eoe_sw64 Algorithm #1 (sum -r): 13726 5363 patchSG0005125.eoe_sw64 Algorithm #2 (sum): 27936 5363 patchSG0005125.eoe_sw64 MD5 checksum: 19C14CDE6B1A5FD7672DB82146ECBFF6 Filename: patchSG0005125.idb Algorithm #1 (sum -r): 16472 11 patchSG0005125.idb Algorithm #2 (sum): 24558 11 patchSG0005125.idb MD5 checksum: C69326AA42223301CEAC9833C8F441D2 Filename: patchSG0005125.irix_dev_sw Algorithm #1 (sum -r): 23972 12 patchSG0005125.irix_dev_sw Algorithm #2 (sum): 58374 12 patchSG0005125.irix_dev_sw MD5 checksum: 73AA79860CCD51D093967C9CAF32047B Filename: patchSG0005125.nfs_sw Algorithm #1 (sum -r): 08168 201 patchSG0005125.nfs_sw Algorithm #2 (sum): 15822 201 patchSG0005125.nfs_sw MD5 checksum: 58E0368676D003AF1527028615BFD5DB Filename: README.patch.5126 Algorithm #1 (sum -r): 50624 10 README.patch.5126 Algorithm #2 (sum): 58994 10 README.patch.5126 MD5 checksum: 038782B489D49488BC603F8824A76072 Filename: patchSG0005126 Algorithm #1 (sum -r): 29237 10 patchSG0005126 Algorithm #2 (sum): 8003 10 patchSG0005126 MD5 checksum: 3D871C95148CCDB0AC4C3ED2CC6429F7 Filename: patchSG0005126.dev_sw Algorithm #1 (sum -r): 06976 2877 patchSG0005126.dev_sw Algorithm #2 (sum): 45262 2877 patchSG0005126.dev_sw MD5 checksum: AFF86106B4DEB04FC3D11EE645C9A6F8 Filename: patchSG0005126.eoe_man Algorithm #1 (sum -r): 44210 22 patchSG0005126.eoe_man Algorithm #2 (sum): 54110 22 patchSG0005126.eoe_man MD5 checksum: 455ACC65FFDE0AAB3624849823601787 Filename: patchSG0005126.eoe_sw Algorithm #1 (sum -r): 34976 14598 patchSG0005126.eoe_sw Algorithm #2 (sum): 26723 14598 patchSG0005126.eoe_sw MD5 checksum: 16EC5FF522B1AD7F70028D11A7BAD5E2 Filename: patchSG0005126.eoe_sw64 Algorithm #1 (sum -r): 37986 5443 patchSG0005126.eoe_sw64 Algorithm #2 (sum): 20267 5443 patchSG0005126.eoe_sw64 MD5 checksum: 558BF84CA9E478A89F0F4F2929BBC944 Filename: patchSG0005126.idb Algorithm #1 (sum -r): 64344 11 patchSG0005126.idb Algorithm #2 (sum): 24894 11 patchSG0005126.idb MD5 checksum: D8C5558AE15133C1DBB7FC545B46D569 Filename: patchSG0005126.irix_dev_sw Algorithm #1 (sum -r): 23972 12 patchSG0005126.irix_dev_sw Algorithm #2 (sum): 58374 12 patchSG0005126.irix_dev_sw MD5 checksum: 73AA79860CCD51D093967C9CAF32047B Filename: patchSG0005126.nfs_sw Algorithm #1 (sum -r): 25442 201 patchSG0005126.nfs_sw Algorithm #2 (sum): 52582 201 patchSG0005126.nfs_sw MD5 checksum: BB84130542873B40172810AA211DC017 Filename: README.patch.5127 Algorithm #1 (sum -r): 24907 10 README.patch.5127 Algorithm #2 (sum): 965 10 README.patch.5127 MD5 checksum: 84993270968A0E080F2C7F38D0824888 Filename: patchSG0005127 Algorithm #1 (sum -r): 14647 10 patchSG0005127 Algorithm #2 (sum): 4767 10 patchSG0005127 MD5 checksum: D143B443B03FD6E25E9968D0DB444D1A Filename: patchSG0005127.dev_sw Algorithm #1 (sum -r): 03637 2869 patchSG0005127.dev_sw Algorithm #2 (sum): 2648 2869 patchSG0005127.dev_sw MD5 checksum: B67A350E3C8B1AF9DA4A34E97CCA4D37 Filename: patchSG0005127.eoe_man Algorithm #1 (sum -r): 50132 22 patchSG0005127.eoe_man Algorithm #2 (sum): 58583 22 patchSG0005127.eoe_man MD5 checksum: 10ED274CED785FFBB334B2D0F0E4CF98 Filename: patchSG0005127.eoe_sw Algorithm #1 (sum -r): 12546 14748 patchSG0005127.eoe_sw Algorithm #2 (sum): 56301 14748 patchSG0005127.eoe_sw MD5 checksum: BCA72B9F82A0E79ADCFAD4CA8D5E3C51 Filename: patchSG0005127.eoe_sw64 Algorithm #1 (sum -r): 06880 5507 patchSG0005127.eoe_sw64 Algorithm #2 (sum): 15607 5507 patchSG0005127.eoe_sw64 MD5 checksum: 98529D03841EC38C3821C1237F9D9B9C Filename: patchSG0005127.idb Algorithm #1 (sum -r): 40444 11 patchSG0005127.idb Algorithm #2 (sum): 24862 11 patchSG0005127.idb MD5 checksum: 5B3C15AB51316FEC38ED0718B8035C51 Filename: patchSG0005127.irix_dev_sw Algorithm #1 (sum -r): 23972 12 patchSG0005127.irix_dev_sw Algorithm #2 (sum): 58374 12 patchSG0005127.irix_dev_sw MD5 checksum: 73AA79860CCD51D093967C9CAF32047B Filename: patchSG0005127.nfs_sw Algorithm #1 (sum -r): 34615 201 patchSG0005127.nfs_sw Algorithm #2 (sum): 5213 201 patchSG0005127.nfs_sw MD5 checksum: 0E66C9118E3E06575479AA6FD7747762 Filename: README.patch.5128 Algorithm #1 (sum -r): 63969 10 README.patch.5128 Algorithm #2 (sum): 59081 10 README.patch.5128 MD5 checksum: B1420F70D4569D9BD1C5A0E132030AC3 Filename: patchSG0005128 Algorithm #1 (sum -r): 34622 10 patchSG0005128 Algorithm #2 (sum): 49837 10 patchSG0005128 MD5 checksum: EB7EC19CE6436141402AB016729E0F56 Filename: patchSG0005128.dev_sw Algorithm #1 (sum -r): 56287 2916 patchSG0005128.dev_sw Algorithm #2 (sum): 30151 2916 patchSG0005128.dev_sw MD5 checksum: 7A58EDB446B87CD73CAA2E4753EB9DBA Filename: patchSG0005128.eoe_man Algorithm #1 (sum -r): 50132 22 patchSG0005128.eoe_man Algorithm #2 (sum): 58583 22 patchSG0005128.eoe_man MD5 checksum: 10ED274CED785FFBB334B2D0F0E4CF98 Filename: patchSG0005128.eoe_sw Algorithm #1 (sum -r): 38773 14951 patchSG0005128.eoe_sw Algorithm #2 (sum): 19569 14951 patchSG0005128.eoe_sw MD5 checksum: C7F24042F3F14130ED5EAD2A42D4D7E3 Filename: patchSG0005128.eoe_sw64 Algorithm #1 (sum -r): 65086 5588 patchSG0005128.eoe_sw64 Algorithm #2 (sum): 27257 5588 patchSG0005128.eoe_sw64 MD5 checksum: D6ACD23031FA9DD0F6F81119DE62C320 Filename: patchSG0005128.idb Algorithm #1 (sum -r): 64619 11 patchSG0005128.idb Algorithm #2 (sum): 24686 11 patchSG0005128.idb MD5 checksum: 2572F07C8009647F16A5218C9724FB8A Filename: patchSG0005128.irix_dev_sw Algorithm #1 (sum -r): 23972 12 patchSG0005128.irix_dev_sw Algorithm #2 (sum): 58374 12 patchSG0005128.irix_dev_sw MD5 checksum: 73AA79860CCD51D093967C9CAF32047B Filename: patchSG0005128.nfs_sw Algorithm #1 (sum -r): 41259 201 patchSG0005128.nfs_sw Algorithm #2 (sum): 6615 201 patchSG0005128.nfs_sw MD5 checksum: C937FF1E646132A8B20B953C85D95FB1 Filename: README.patch.5129 Algorithm #1 (sum -r): 60091 9 README.patch.5129 Algorithm #2 (sum): 13959 9 README.patch.5129 MD5 checksum: 32D52A682AE9B7DA90A93D701451308D Filename: patchSG0005129 Algorithm #1 (sum -r): 32468 8 patchSG0005129 Algorithm #2 (sum): 52159 8 patchSG0005129 MD5 checksum: 6D0FA1C4B11158DDAA0F2AD623A5E36A Filename: patchSG0005129.dev_sw Algorithm #1 (sum -r): 51469 2894 patchSG0005129.dev_sw Algorithm #2 (sum): 46993 2894 patchSG0005129.dev_sw MD5 checksum: D08404FE26443108B226901F9E03EC1A Filename: patchSG0005129.eoe_man Algorithm #1 (sum -r): 10457 22 patchSG0005129.eoe_man Algorithm #2 (sum): 12877 22 patchSG0005129.eoe_man MD5 checksum: F724C951BAB9375863EE5927230BE2A6 Filename: patchSG0005129.eoe_sw Algorithm #1 (sum -r): 45562 15193 patchSG0005129.eoe_sw Algorithm #2 (sum): 6198 15193 patchSG0005129.eoe_sw MD5 checksum: A32DD3E8C8BF4AB72A105234A315159E Filename: patchSG0005129.eoe_sw64 Algorithm #1 (sum -r): 30558 5748 patchSG0005129.eoe_sw64 Algorithm #2 (sum): 49535 5748 patchSG0005129.eoe_sw64 MD5 checksum: B951FE9FF285B84292BDD2EF705B24AB Filename: patchSG0005129.idb Algorithm #1 (sum -r): 03785 8 patchSG0005129.idb Algorithm #2 (sum): 40121 8 patchSG0005129.idb MD5 checksum: 8D4AB68D05D378CE81AB41F8AA8740A6 Filename: patchSG0005129.irix_dev_sw Algorithm #1 (sum -r): 23972 12 patchSG0005129.irix_dev_sw Algorithm #2 (sum): 58374 12 patchSG0005129.irix_dev_sw MD5 checksum: 73AA79860CCD51D093967C9CAF32047B Filename: patchSG0005129.nfs_sw Algorithm #1 (sum -r): 25603 87 patchSG0005129.nfs_sw Algorithm #2 (sum): 60935 87 patchSG0005129.nfs_sw MD5 checksum: 31723E026EBFBF7DC3FC38DD965F80C5 Filename: README.patch.5130 Algorithm #1 (sum -r): 28288 9 README.patch.5130 Algorithm #2 (sum): 11634 9 README.patch.5130 MD5 checksum: 9822AC9393FDE6D8EA552F3F667332B1 Filename: patchSG0005130 Algorithm #1 (sum -r): 17421 9 patchSG0005130 Algorithm #2 (sum): 26529 9 patchSG0005130 MD5 checksum: 6D2AFDCEBF79168CC521552A8A02690B Filename: patchSG0005130.dev_sw Algorithm #1 (sum -r): 05427 2970 patchSG0005130.dev_sw Algorithm #2 (sum): 59411 2970 patchSG0005130.dev_sw MD5 checksum: 1B99B6C9EF15FAD39F50B7922AEE556C Filename: patchSG0005130.eoe_man Algorithm #1 (sum -r): 10457 22 patchSG0005130.eoe_man Algorithm #2 (sum): 12877 22 patchSG0005130.eoe_man MD5 checksum: F724C951BAB9375863EE5927230BE2A6 Filename: patchSG0005130.eoe_sw Algorithm #1 (sum -r): 48446 15437 patchSG0005130.eoe_sw Algorithm #2 (sum): 63552 15437 patchSG0005130.eoe_sw MD5 checksum: E7206600BCE98892BD14BFD49D5DAB15 Filename: patchSG0005130.eoe_sw64 Algorithm #1 (sum -r): 22574 5848 patchSG0005130.eoe_sw64 Algorithm #2 (sum): 56529 5848 patchSG0005130.eoe_sw64 MD5 checksum: E65CD5231CB52920423C1CEE86DDC161 Filename: patchSG0005130.idb Algorithm #1 (sum -r): 25196 8 patchSG0005130.idb Algorithm #2 (sum): 40127 8 patchSG0005130.idb MD5 checksum: 599D17B54EE8EDD99813924C0B041F86 Filename: patchSG0005130.irix_dev_sw Algorithm #1 (sum -r): 23972 12 patchSG0005130.irix_dev_sw Algorithm #2 (sum): 58374 12 patchSG0005130.irix_dev_sw MD5 checksum: 73AA79860CCD51D093967C9CAF32047B Filename: patchSG0005130.nfs_sw Algorithm #1 (sum -r): 42690 87 patchSG0005130.nfs_sw Algorithm #2 (sum): 30005 87 patchSG0005130.nfs_sw MD5 checksum: 31829D99D33F5DEA4B22A5BADD0A9C37 Filename: README.patch.5131 Algorithm #1 (sum -r): 21717 9 README.patch.5131 Algorithm #2 (sum): 28043 9 README.patch.5131 MD5 checksum: 956BC311CED7867C58112A4FE63D872E Filename: patchSG0005131 Algorithm #1 (sum -r): 45061 9 patchSG0005131 Algorithm #2 (sum): 31986 9 patchSG0005131 MD5 checksum: A5BA04A257910C982BEFB8165B903071 Filename: patchSG0005131.dev_man Algorithm #1 (sum -r): 28629 12 patchSG0005131.dev_man Algorithm #2 (sum): 65088 12 patchSG0005131.dev_man MD5 checksum: 76770F3C5AB120AF55F739DA42C99A40 Filename: patchSG0005131.dev_sw Algorithm #1 (sum -r): 37594 2916 patchSG0005131.dev_sw Algorithm #2 (sum): 7663 2916 patchSG0005131.dev_sw MD5 checksum: 49DFB0356D31E7A49173B2DFD7386E22 Filename: patchSG0005131.eoe_man Algorithm #1 (sum -r): 10457 22 patchSG0005131.eoe_man Algorithm #2 (sum): 12877 22 patchSG0005131.eoe_man MD5 checksum: F724C951BAB9375863EE5927230BE2A6 Filename: patchSG0005131.eoe_sw Algorithm #1 (sum -r): 24021 15461 patchSG0005131.eoe_sw Algorithm #2 (sum): 51895 15461 patchSG0005131.eoe_sw MD5 checksum: 6570F72F3B13389DCFE3B261D5490D39 Filename: patchSG0005131.eoe_sw64 Algorithm #1 (sum -r): 42154 5822 patchSG0005131.eoe_sw64 Algorithm #2 (sum): 46887 5822 patchSG0005131.eoe_sw64 MD5 checksum: FF1D83281939C38AA5D4782CC1CBECA5 Filename: patchSG0005131.idb Algorithm #1 (sum -r): 25023 11 patchSG0005131.idb Algorithm #2 (sum): 31555 11 patchSG0005131.idb MD5 checksum: 7F6F1DFBF3BC9D892BE8536ABFF15DC9 Filename: patchSG0005131.irix_dev_sw Algorithm #1 (sum -r): 18822 15 patchSG0005131.irix_dev_sw Algorithm #2 (sum): 17417 15 patchSG0005131.irix_dev_sw MD5 checksum: CE473CEC2B42634A021E1FD60DDEAE36 Filename: patchSG0005131.nfs_sw Algorithm #1 (sum -r): 37230 116 patchSG0005131.nfs_sw Algorithm #2 (sum): 10170 116 patchSG0005131.nfs_sw MD5 checksum: 6CF0A14543CC2C72A947ADE09E8831DC Filename: README.patch.5132 Algorithm #1 (sum -r): 03785 10 README.patch.5132 Algorithm #2 (sum): 38749 10 README.patch.5132 MD5 checksum: 42AA621E3AA9FD215284073487DDDAF5 Filename: patchSG0005132 Algorithm #1 (sum -r): 09660 10 patchSG0005132 Algorithm #2 (sum): 21571 10 patchSG0005132 MD5 checksum: 932EBD6E90C469E847FB879F982647E3 Filename: patchSG0005132.dev_man Algorithm #1 (sum -r): 28629 12 patchSG0005132.dev_man Algorithm #2 (sum): 65088 12 patchSG0005132.dev_man MD5 checksum: 76770F3C5AB120AF55F739DA42C99A40 Filename: patchSG0005132.dev_sw Algorithm #1 (sum -r): 42228 2967 patchSG0005132.dev_sw Algorithm #2 (sum): 8137 2967 patchSG0005132.dev_sw MD5 checksum: A4374EE6ADAD37C32FB6C471E0F780D5 Filename: patchSG0005132.eoe_man Algorithm #1 (sum -r): 10457 22 patchSG0005132.eoe_man Algorithm #2 (sum): 12877 22 patchSG0005132.eoe_man MD5 checksum: F724C951BAB9375863EE5927230BE2A6 Filename: patchSG0005132.eoe_sw Algorithm #1 (sum -r): 05267 15665 patchSG0005132.eoe_sw Algorithm #2 (sum): 20966 15665 patchSG0005132.eoe_sw MD5 checksum: 35D82A4E2002EFBD45B35DCEA481873A Filename: patchSG0005132.eoe_sw64 Algorithm #1 (sum -r): 44199 5913 patchSG0005132.eoe_sw64 Algorithm #2 (sum): 46191 5913 patchSG0005132.eoe_sw64 MD5 checksum: 1034D4120B2433B6095BC8DFCF256AB0 Filename: patchSG0005132.idb Algorithm #1 (sum -r): 28292 11 patchSG0005132.idb Algorithm #2 (sum): 42701 11 patchSG0005132.idb MD5 checksum: D62FB6398C1195BFC70E7EB29F1519C2 Filename: patchSG0005132.irix_dev_sw Algorithm #1 (sum -r): 53265 20 patchSG0005132.irix_dev_sw Algorithm #2 (sum): 48488 20 patchSG0005132.irix_dev_sw MD5 checksum: EC2C012502F478229DB3CF25C4D0343D Filename: patchSG0005132.nfs_sw Algorithm #1 (sum -r): 17948 116 patchSG0005132.nfs_sw Algorithm #2 (sum): 34176 116 patchSG0005132.nfs_sw MD5 checksum: 946F407FBEE57AB9B55432AD978F2C57 Filename: README.patch.5133 Algorithm #1 (sum -r): 03600 8 README.patch.5133 Algorithm #2 (sum): 48438 8 README.patch.5133 MD5 checksum: E221545EFF2402E830972304CEDBCD97 Filename: patchSG0005133 Algorithm #1 (sum -r): 23335 6 patchSG0005133 Algorithm #2 (sum): 51926 6 patchSG0005133 MD5 checksum: A4DF8E5EC295C7D3F645C1D54C2695BC Filename: patchSG0005133.dev_man Algorithm #1 (sum -r): 28629 12 patchSG0005133.dev_man Algorithm #2 (sum): 65088 12 patchSG0005133.dev_man MD5 checksum: 76770F3C5AB120AF55F739DA42C99A40 Filename: patchSG0005133.dev_sw Algorithm #1 (sum -r): 42657 2277 patchSG0005133.dev_sw Algorithm #2 (sum): 14611 2277 patchSG0005133.dev_sw MD5 checksum: 5F5B98E011CE5FA780A8D47F434C5303 Filename: patchSG0005133.eoe_man Algorithm #1 (sum -r): 10457 22 patchSG0005133.eoe_man Algorithm #2 (sum): 12877 22 patchSG0005133.eoe_man MD5 checksum: F724C951BAB9375863EE5927230BE2A6 Filename: patchSG0005133.eoe_sw Algorithm #1 (sum -r): 10139 14247 patchSG0005133.eoe_sw Algorithm #2 (sum): 34134 14247 patchSG0005133.eoe_sw MD5 checksum: C5E62B4E8AB284936B4CF78C47013474 Filename: patchSG0005133.eoe_sw64 Algorithm #1 (sum -r): 61645 5973 patchSG0005133.eoe_sw64 Algorithm #2 (sum): 12960 5973 patchSG0005133.eoe_sw64 MD5 checksum: 4732C523DA3844868F903E6EB0CD5559 Filename: patchSG0005133.idb Algorithm #1 (sum -r): 61065 6 patchSG0005133.idb Algorithm #2 (sum): 29320 6 patchSG0005133.idb MD5 checksum: 557BA44588692620D7D7B27574CFFD9F Filename: patchSG0005133.irix_dev_sw Algorithm #1 (sum -r): 06722 14 patchSG0005133.irix_dev_sw Algorithm #2 (sum): 61616 14 patchSG0005133.irix_dev_sw MD5 checksum: 8E5A4286AE44214766ACFBB5F78F44A2 Filename: README.patch.5156 Algorithm #1 (sum -r): 06688 9 README.patch.5156 Algorithm #2 (sum): 63310 9 README.patch.5156 MD5 checksum: 4DE177F833029A66616CD55117D74FB3 Filename: patchSG0005156 Algorithm #1 (sum -r): 07733 7 patchSG0005156 Algorithm #2 (sum): 25516 7 patchSG0005156 MD5 checksum: 51F0BE4B4B38251485E4AB8E918179CE Filename: patchSG0005156.dev_man Algorithm #1 (sum -r): 28629 12 patchSG0005156.dev_man Algorithm #2 (sum): 65088 12 patchSG0005156.dev_man MD5 checksum: 76770F3C5AB120AF55F739DA42C99A40 Filename: patchSG0005156.dev_sw Algorithm #1 (sum -r): 31660 1238 patchSG0005156.dev_sw Algorithm #2 (sum): 28831 1238 patchSG0005156.dev_sw MD5 checksum: C0103F92C1554C4727EBD9ECFD6B42B1 Filename: patchSG0005156.eoe_man Algorithm #1 (sum -r): 10457 22 patchSG0005156.eoe_man Algorithm #2 (sum): 12877 22 patchSG0005156.eoe_man MD5 checksum: F724C951BAB9375863EE5927230BE2A6 Filename: patchSG0005156.eoe_sw Algorithm #1 (sum -r): 01145 14295 patchSG0005156.eoe_sw Algorithm #2 (sum): 35030 14295 patchSG0005156.eoe_sw MD5 checksum: A30BD6238DC70B304D372A38DCD3E676 Filename: patchSG0005156.eoe_sw64 Algorithm #1 (sum -r): 50087 6019 patchSG0005156.eoe_sw64 Algorithm #2 (sum): 60696 6019 patchSG0005156.eoe_sw64 MD5 checksum: E9378C807C199192BFB61F352205DD47 Filename: patchSG0005156.idb Algorithm #1 (sum -r): 36087 6 patchSG0005156.idb Algorithm #2 (sum): 28365 6 patchSG0005156.idb MD5 checksum: FB39B55A08A92C830CD2DDC4825B5086 Filename: patchSG0005156.irix_dev_sw Algorithm #1 (sum -r): 59989 19 patchSG0005156.irix_dev_sw Algorithm #2 (sum): 27152 19 patchSG0005156.irix_dev_sw MD5 checksum: 49643AC930121AEB18C6E7BAD475586B - ------------- - --- Links --- - ------------- SGI Security Advisories can be found at: http://www.sgi.com/support/security/ and ftp://patches.sgi.com/support/free/security/advisories/ SGI Security Patches can be found at: http://www.sgi.com/support/security/ and ftp://patches.sgi.com/support/free/security/patches/ SGI patches for IRIX can be found at the following patch servers: http://support.sgi.com/ and ftp://patches.sgi.com/ SGI freeware updates for IRIX can be found at: http://freeware.sgi.com/ SGI patches and RPMs for Linux can be found at: http://support.sgi.com/ SGI patches for Windows NT or 2000 can be found at: http://support.sgi.com/ IRIX 5.2-6.4 Recommended/Required Patch Sets can be found at: http://support.sgi.com/ and ftp://patches.sgi.com/support/patchset/ IRIX 6.5 Maintenance Release Streams can be found at: http://support.sgi.com/ IRIX 6.5 Software Update CDs can be obtained from: http://support.sgi.com/ The primary SGI anonymous FTP site for security advisories and patches is patches.sgi.com. Security advisories and patches are located under the URL ftp://patches.sgi.com/support/free/security/ For security and patch management reasons, ftp.sgi.com (mirrors patches.sgi.com security FTP repository) lags behind and does not do a real-time update. - ----------------------------------------- - --- SGI Security Information/Contacts --- - ----------------------------------------- If there are questions about this document, email can be sent to security-info@sgi.com. ------oOo------ SGI provides security information and patches for use by the entire SGI community. This information is freely available to any person needing the information and is available via anonymous FTP and the Web. The primary SGI anonymous FTP site for security advisories and patches is patches.sgi.com. Security advisories and patches are located under the URL ftp://patches.sgi.com/support/free/security/ The SGI Security Headquarters Web page is accessible at the URL: http://www.sgi.com/support/security/ For issues with the patches on the FTP sites, email can be sent to security-info@sgi.com. For assistance obtaining or working with security patches, please contact your SGI support provider. ------oOo------ SGI provides a free security mailing list service called wiretap and encourages interested parties to self-subscribe to receive (via email) all SGI Security Advisories when they are released. Subscribing to the mailing list can be done via the Web (http://www.sgi.com/support/security/wiretap.html) or by sending email to SGI as outlined below. % mail wiretap-request@sgi.com subscribe wiretap end ^d In the example above, is the email address that you wish the mailing list information sent to. The word end must be on a separate line to indicate the end of the body of the message. The control-d (^d) is used to indicate to the mail program that you are finished composing the mail message. ------oOo------ SGI provides a comprehensive customer World Wide Web site. This site is located at http://www.sgi.com/support/security/ . ------oOo------ If there are general security questions on SGI systems, email can be sent to security-info@sgi.com. For reporting *NEW* SGI security issues, email can be sent to security-alert@sgi.com or contact your SGI support provider. A support contract is not required for submitting a security report. ______________________________________________________________________________ This information is provided freely to all interested parties and may be redistributed provided that it is not altered in any way, SGI is appropriately credited and the document retains and includes its valid PGP signature. -----BEGIN PGP SIGNATURE----- Version: 2.6.2 iQCVAwUBPxXMEbQ4cFApAP75AQGW7AQAngq29lvUPfivbaoYY7imtmZhngehHbMC v51qI4lYxwszDjIHlkYUXCJb+FnBLfqiVxo36VzCqoRs3PjmBeS/8eEVllWwb7CM HH8k/SQ9Pv4WF5uvuO2/k/eEdFtxajWXyr1kfjYeuEvkARPnbFh2N5NRcwJWj8on e6u7qkCjMio= =8wBi -----END PGP SIGNATURE----- _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html