Date Submitted: June 9, 2006
Last Modified: June 9, 2006
This Patch addresses possible security vulnerabilities in the ArcStorm and Geoprocessing Server features of ArcInfo Workstation on UNIX.
ESRI® announces the ArcInfo Workstation 9.1 Security Patch on UNIX. This
Patch addresses possible security vulnerabilities in the ArcStorm and Geoprocessing
Server features of ArcInfo Workstation 9.1 on UNIX. It deals specifically with
the issues listed below under Issues Addressed with this Patch.
We recommend that all ArcInfo Workstation 9.1 on UNIX customers, who use ArcStorm
or the Geoprocessing Server feature, download and install this Patch at their
earliest convenience to ensure the highest quality experience when working with
ArcInfo Workstation 9.1. ArcInfo users who do not use ArcStorm or the Geoprocessing
Server do not need to apply this patch. For those users, however, we strongly
recommend that the ownership of the files in $ARCHOME/bin be reviewed and any
root-owned executables be switched back to the ownership of the normal ArcInfo
install account. If ArcStorm and the Geoprocessing Server are not in use, there
should be no root-owned executables in the $ARCHOME/bin directory.
asbuild
asmaster
asrecovery
asuser
asutility
lockmgr
se
This Patch is intended for ArcInfo users who run ArcStorm or the Geoprocessing Server feature. The installation of those features require that selected ArcInfo executables be assigned root ownership. This Patch provides new versions of those root-owned files.
ArcInfo Workstation 9.1 must be installed before you can install this Patch. During installation, you can either save the original 9.1 files or overwrite them. If you choose to save them, make sure you have enough disk space. The disk space requirements, for each platform, are displayed during the installation process.
| File | Size |
| HP ai91-sec-patch-hp.tar |
35 MB
|
| IBM ai91-sec-patch-ibm.tar |
14 MB
|
| Solaris ai91-sec-patch-solaris.tar |
18 MB
|
| Tru64 ai91-sec-patch-tru64.tar |
31 MB
|
% tar -xvf ai91-sec-patch-<Platform>.tar
% ./applypatch
This will start the dialog for the menu-driven installation procedure. Default selections are noted in parentheses ( ). To quit the installation procedure, type 'q' at any time.
#chown root asbuild asmaster asrecovery asuser asutility lockmgr se
#chmod 6755 asbuild asmaster asrecovery asuser asutility lockmgr se
#chown <your_user_account_name> asbuild.orig asmaster.orig asrecovery.orig
asuser.orig asutility.orig lockmgr.orig se.orig
#chmod 444 asbuild.orig asmaster.orig asrecovery.orig asuser.orig asutility.orig
lockmgr.orig se.orig
Any modified UNIX executables (or libraries) being sent out as part of a Patch will return the unique identification number for that fix when checked with the "what" command for UNIX and the "strings" command for Linux. For example, to display the identification string for this Patch, type:
%what se | grep QFE
QFE-WS-91-CQ00290998
Check the Online Support Center periodically for the availability of additional Patches. New information about this Patch will be posted here.
Domestic sites, please contact ESRI Technical Support at 909.793.3774, if you have any difficulty installing this Patch. International sites, please contact your local ESRI software distributor.