UCF STIG Viewer Logo

The Sun Ray server software is not current with the latest available patches.


Overview

Finding ID Version Rule ID IA Controls Severity
V-16103 SUN0130 SV-17091r1_rule ECSC-1 Medium
Description
Sun Ray software patches mitigate many known vulnerabilities. To ensure that attackers cannot take advantage of known Sun Ray vulnerabilities, applicable software patches must be applied as they are released.
STIG Date
Sun Ray 4 STIG 2015-04-02

Details

Check Text ( C-17147r1_chk )
On the Sun Ray server perform the following:

# /opt/SUNWut/lib/utspatches

Should return the following:
127554-02
127557-01

OR

# patchadd –p | grep

SRSS Patches need to be at one of the following:
Solaris/SPARC 127553
Solaris/x86 127554
Linux/x86 127555

SRWC 2.0 Patches need to be at one of the following:
Solaris/SPARC 127556
Solaris/x86 127557
Linux/x86 127558


If the preceding patches are not returned, this is a finding. Check Sun Microsystems’s website for updated patches that may have been released after this checklist.

Fix Text (F-16209r1_fix)
Implement the latest patches for the Sun Ray system. Check Sun Microsystem's website for updated patches that may have been released after this checklist.