Customer Service | Training | Contact Us
Welcome!
Login
Search Options   products areas display

Which products should be considered?

All Products

ArcCAD
ArcEditor
ArcExplorer
ArcGIS Engine
ArcGIS Explorer
ArcGIS Image Server
ArcGIS Mobile
ArcGIS Server
ArcIMS
ArcInfo Desktop
ArcInfo Workstation
ArcLogistics Route
ArcPad
ArcPad Application Builder
ArcReader
ArcSDE
ArcView
ArcView 3.x
ArcWeb Services APIs
ArcWeb Toolbar for ArcGIS
Atlas GIS
BusinessMap
BusinessMap Pro
GIS Portal Toolkit
Job Tracking for ArcGIS
MapIt
Maplex
MapObjects -- Java
MapObjects -- Windows
MapObjects IMS
MapObjects LT
MapStudio
Military Overlay Editor
NetEngine
PC ARC/INFO & DAK
PLTS
RouteMap
RouteMap IMS
SDE
Tracking Server

    Remember these settings for each visit More info

ArcInfo Workstation 9.0 Security Patch on UNIX

Date Submitted: April 26, 2005
Last Modified: June 9, 2006

Summary:

This Patch addresses possible security vulnerabilities in the ArcStorm and Geoprocessing Server features of ArcInfo Workstation 9.0 on UNIX.

Description:

Introduction

ESRI® announces the ArcInfo Workstation 9.0 Security Patch on UNIX. This Patch addresses possible security vulnerabilities in the ArcStorm and Geoprocessing Server features of ArcInfo Workstation 9.0 on UNIX. It deals specifically with the issues listed below under Issues Addressed with this Patch.

We recommend that all ArcInfo Workstation 9.0 on UNIX customers, who use ArcStorm or the Geoprocessing Server feature, download and install this Patch at their earliest convenience to ensure the highest quality experience when working with ArcInfo Workstation 9.0. ArcInfo users who do not use ArcStorm or the Geoprocessing Server do not need to apply this patch. For those users, however, we strongly recommend that the ownership of the files in $ARCHOME/bin be reviewed and any root-owned executables be switched back to the ownership of the normal ArcInfo install account. If ArcStorm and the Geoprocessing Server are not in use, there should be no root-owned executables in the $ARCHOME/bin directory.

Issues Addressed with this Patch


Files Installed in this Patch

Installing this Patch

This Patch is intended for ArcInfo users who run ArcStorm or the Geoprocessing Server feature. The installation of those features require that selected ArcInfo executables be assigned root ownership. This Patch provides new versions of those root-owned files.

ArcInfo Workstation 9.0 must be installed before you can install this Patch. During installation, you can either save the original 9.0 files or overwrite them. If you choose to save them, make sure you have enough disk space. The disk space requirements, for each platform, are displayed during the installation process.

  1. Make sure you have write access to the ArcInfo Workstation installation location, and that no one is using ArcInfo.


  2. Download the appropriate tar file to a location other than ArcInfoWorkstation installation location:
  3. File Updated Tar Files as of June 9, 2006 Size
    HP ai90-sec-patch-hp.tar
    35 MB
    IBM ai90-sec-patch-ibm.tar
    14 MB
    SGI ai90-sec-patch-sgi.tar
    21 MB
    Solaris ai90-sec-patch-solaris.tar
    18 MB
    Tru64 ai90-sec-patch-tru64.tar
    31 MB

  4. Extract the specified tar file by typing:


  5. % tar -xvf ai90-sec-patch-<Platform>.tar

  6. Start the installation by typing:


  7. % ./applypatch

    This will start the dialog for the menu-driven installation procedure. Default selections are noted in parentheses ( ). To quit the installation procedure, type 'q' at any time.

  8. Under the $ARCHOME/bin directory, become ROOT and change the ownership and permissions of the following ArcStorm executables:


  9. #chown root abservice asbuild asmaster asrecovery asuser asutility lockmgr se wservice
    #chmod 6755 abservice asbuild asmaster asrecovery asuser asutility lockmgr se wservice

  10. (Optional - Perform this step only if you chose to back up the original files when applying the patch.)

    Under the $ARCHOME/bin directory, become ROOT and change the ownership and permissions of the following files:


  11. #chown <your_user_account_name> abservice.orig asbuild.orig asmaster.orig asrecovery.orig asuser.orig asutility.orig lockmgr.orig se.orig wservice.orig

    #chmod 444 abservice.orig asbuild.orig asmaster.orig asrecovery.orig asuser.orig asutility.orig lockmgr.orig se.orig wservice.orig

How to identify which Patch is installed


Any modified UNIX executables (or libraries) being sent out as part of a Patch will return the unique identification number for that fix when checked with the "what" command for UNIX and the "strings" command for Linux. For example, to display the identification string for this Patch, type:

Patch Updates

Check the Online Support Center periodically for the availability of additional Patches. New information about this Patch will be posted here.

Getting Help

Domestic sites, please contact ESRI Technical Support at 909.793.3774, if you have any difficulty installing this Patch. International sites, please contact your local ESRI software distributor.

This website's graphical display is now viewable only with W3C standards-compliant browsers, but the content is accessible to all browsers and Internet devices. View our supported browser matrix for more information on our website display.