Patch-ID# 103210-21 Keywords: security Xsun SUNWxwplt xserver EPS DPS Synopsis: OpenWindows 3.5: Server (Xsun, libX11) Patch Date: Aug/13/97 Solaris Release: 2.5 SunOS Release: 5.5 Unbundled Product: OpenWindows Unbundled Release: 3.5 Relevant Architectures: sparc BugId's fixed with this patch: 1197532 1236764 4017413 4026015 4010744 4012465 1261277 4006666 1261221 1256655 1232440 1239872 1229238 1245095 1248661 1239081 1260016 1251860 1254709 1251340 1249475 1249057 1243445 1236588 1232904 1230511 1232824 1235117 4036289 4043113 4019277 4039053 4038922 4042030 4058716 1266793 Changes incorporated in this version: 1266793 Patches accumulated and obsoleted by this patch: 103246-04 103507-02 103381-02 Patches which conflict with this patch: Patches required with this patch: Obsoleted by: Files included with this patch: /usr/openwin/bin/xlock /usr/openwin/bin/xterm /usr/openwin/bin/xwd /usr/openwin/bin/Xsun /usr/openwin/lib/libdga.so.1 /usr/openwin/lib/libX11.so.4 /usr/openwin/lib/X11/DPSF3Bitmaps.upr /usr/openwin/lib/X11/PostScript.VM /usr/openwin/server/lib/libmi.so.1 /usr/openwin/server/lib/libmhc.so.1 /usr/openwin/server/lib/libmpg.so.1 /usr/openwin/server/lib/libserverdps.so.1 /usr/openwin/server/modules/ddxSUNWcg6.so.1 /usr/openwin/server/modules/ddxSUNWdials.so.1 /usr/openwin/server/modules/ddxSUNWdialsCompat.so.1 /usr/openwin/lib/libX11.a /usr/openwin/lib/libp/libX11.a Problem Description: 1266793 Solaris 2.x libX11 security vulnerability Incorporated from previous version: 4038922 Unable to display monochrome EPS file correctly in dpsexec 4042030 Ansys53 won't run under Solaris 2.5 if patch 103210-08 or above installed 4058716 WinTach demo crashes Xsun 4039053 application crashes with BadDrawable error on FFB under CDE1.2 4043113 User defined cursor's image does not properly refresh large cursor. 4019277 Pro/E crashes X server with ZX graphics 4036289 xlock has a security problem. 1197532 xterm pty may disagree with actual window size 1236764 Xsun dumps core in FreeCell 4017413 Double buffer program does not refresh correctly on Solaris 2.5. 4026015 Xsun crashes with geode 3.0 on Solaris 2.5 with GX. 4010744 Xpr doesn't work properly with multivisual 4012465 Stippled fillpolygon doesn't render when the window is resized. 1261277 Xsun will crash if you are using sundial and Sunbutton 4006666 recursive mutex locks in quark routines can cause hang 1261221 Proprietary fonts don't render correctly in Solaris2.5 1256655 pfa fonts min/max bounds different between 2.4 and S2.5 1232440 S24 crashes if you run netscape 2.0beta3 and resize netscape 1239872 Cannot use iso8859-9 Type 1 and pcf bitmap fonts together 1229238 DPS fonts occasionally render incorrectly 1245095 Main window not redrawn correctly after unmapping 1248661 DGA overlay windows leak file descriptors 1239081 Program dies in dga init on FFB with overlay 1260016 Keyboard is in strange state when the X server crashes. 1251860 On TGX+ motifanim can't draw correctly. 1254709 XPutImage to a GC tile pixmap does not work correctly on GX+/TGX+. 1251340 starting and leaving xgl applications crashes the X server on ZX 1249475 Xserver sometimes hung up when run with 24 depth and TrueColor 1249057 Xsun banner incorrectly shows FCS 1243445 XPutImage from a bitmap image to a pixmap is wrong in a GX+. 1236588 XDrawString() doesn't draw correctly with TGX if window is clipped 1232904 X events lost with transparent (input only) window on main window 1230511 Stripes appear running xlib app that uses 2x2 tile on GX+ and TGX+ 1232824 Xsun dumps core on GX+ when dxlib is enabled in running x11perf. 1235117 Application "Builder Xcessory" works on 2.4 but crashes on 2.5 Patch Installation Instructions: -------------------------------- Refer to the Install.info file for instructions on using the generic 'installpatch' and 'backoutpatch' scripts provided with each patch. Any other special or non-generic installation instructions should be described below as special instructions. Special Install Instructions: ----------------------------- NOTE: Patch 103210 fixes bug 1245095 for all current MPG devices except ffb. The ffb patch for the fix is 103506. For ffb, install this patch AND 103506.