Oracle Solaris Installation, Booting and Patching (MOSC)

MOSC Banner

Patch instalation to fix sudo vulnerability

edited Feb 2, 2021 12:58PM in Oracle Solaris Installation, Booting and Patching (MOSC) 5 commentsAnswered ✓

Hi:

Regarding the security vulnerability described by CVE-2021-3156, we need to upgrade to 1.9.5p2 sudo version.

I looked it up in MOS and there is patch to fix the problem: p32436807_1100_SOLARIS64.zip

Could anybody help me with the syntax to install the package?


This is the output I get:

root@xxxxxxxxx:~# pkg install -g /var/tmp/idr4690/idr4690.1.p5p idr4690

Creating Plan (Solver setup): \

pkg install: No matching version of idr4690 can be installed:

 Reject: pkg://solaris/idr4690@1

 Reason: No version matching 'incorporate' dependency security/sudo@1.8.31.1-11.4.27.0.1.82.0.4690.1 can be installed

  ----------------------------------------

  Reject: pkg://solaris/security/sudo@1.8.31.1-11.4.27.0.1.82.0.4690.1

Howdy, Stranger!

Log In

To view full details, sign in to My Oracle Support Community.

Register

Don't have a My Oracle Support Community account? Click here to get started.

Category Leaderboard

Top contributors this month

New to My Oracle Support Community? Visit our Welcome Center

MOSC Help Center