Patch-ID# 109667-07 Keywords: security xntpd ntp system clock sigpoll slewalways overflow Synopsis: SunOS 5.8: /usr/lib/inet/xntpd and /usr/sbin/ntpdate patch Date: Sep/09/2004 Install Requirements: Reconfigure after installation Solaris Release: 8 SunOS Release: 5.8 Unbundled Product: Unbundled Release: Xref: This patch available for x86 as patch 109668 Topic: SunOS 5.8: /usr/lib/inet/xntpd and /usr/sbin/ntpdate patch Relevant Architectures: sparc BugId's fixed with this patch: 4279094 4312050 4320855 4330427 4379876 4434235 4727171 4892938 5021867 Changes incorporated in this version: 4892938 Patches accumulated and obsoleted by this patch: Patches which conflict with this patch: Patches required with this patch: Obsoleted by: Files included with this patch: /usr/lib/inet/xntpd /usr/sbin/ntpdate Problem Description: 4892938 xntpd intermittently cores w/ external truetime clock on serial port (from 109667-06) 4727171 ntpdate doesn't step automatically for large negative offsets 5021867 ntpdate doesn't step automatically for negative offset of 1/2 a second (from 109667-05) 4312050 scary xntpd message (sometimes) on boot about ioctl(SIOCGxxx) failing with EINTR (from 109667-04) 4379876 The SLEWALWAYS option to xntpd needs to be user configurable. 4434235 *xntpd* contains a buffer overflow that can lead to root compromise (from 109667-03) 4320855 ntpdate does not display anything (from 109667-02) 4330427 xntpd crashes after SIGPOLL (from 109667-01) 4279094 Time daemon (xntpd) step the system clock in an abrupt adjustment Patch Installation Instructions: -------------------------------- For Solaris 2.0-2.6 releases, refer to the Install.info file and/or the README within the patch for instructions on using the generic 'installpatch' and 'backoutpatch' scripts provided with each patch. For Solaris 7-9 releases, refer to the man pages for instructions on using 'patchadd' and 'patchrm' scripts provided with Solaris. Any other special or non-generic installation instructions should be described below as special instructions. The following example installs a patch to a standalone machine: example# patchadd /var/spool/patch/104945-02 The following example removes a patch from a standalone system: example# patchrm 104945-02 For additional examples please see the appropriate man pages. Special Install Instructions: ----------------------------- Reboot the system after patch installation. This patch adds a new configuration option to the /etc/inet/ntp.conf file. The option is: slewalways yes | no If you turn this option on xntpd will try to always slew the time and will never make large steps backwards or forwards. It is advised that if you do turn on slewalways you also select: disable pll Without this option xntpd will not be able to correct time differences greater than 128ms. README -- Last modified date: Thursday, September 9, 2004