Subject: UnixWare 7.1.1: proc driver supplement Advisory number: n/a Issue date: n/a ftp://stage.caldera.com/pub/security/sse/ptf7626a Dear SCO Customer, Support Level Supplement (SLS) ptf7626, the UnixWare 7.1.1 proc driver supplement, addresses the following problems: - ul99-20814 Address space of privileged processes was accessible by regular users. Privileged processes could then be traced opening several security holes. This has been fixed by making address space inaccessible to regular users. - ul99-20009 Privileged processes could core dump. Sensitive data is often located inside the core files of privileged processes. This has been fixed by no longer allowing privileged processes to core dump Contents -------- /etc/conf/pack.d/proc/Driver_atup.o /etc/conf/pack.d/proc/Driver_mp.o Software Notes and Recommendations ---------------------------------- ptf7626 should only be installed on: UnixWare 7.1.1 Installation Instructions ------------------------- 1. Download the ptf7626a.Z file to the /tmp directory on your machine. 2. As root, uncompress the file and add the package to your system using these commands: $ su Password: # uncompress /tmp/ptf7626a.Z # pkgadd -d /tmp/ptf7626a # rm /tmp/ptf7626a 3. Reboot the system after installing this package. The release notes displayed prior to installation can be found in: /var/sadm/pkg/ptf7626/install/ptf7626.txt Removal Instructions -------------------- 1. As root, remove the package using these commands: $ su Password: # pkgrm ptf7626 2. Reboot the system after removing this package. If you have questions regarding this supplement, or the product on which it is installed, please contact your software supplier.