Oracle Solaris 11.4.42.113.1 Support Repository Update README 



Release Date: February 15, 2022
Published Date: February 15, 2022
Modified Date: February 15, 2022


--------------------------------------------------------------------------------

 


This README describes why you need to apply this SRU, caveats, and other 
important information that you might need to consider before applying or 
installing Oracle Solaris 11.4.42.113.1. It also contains general information 
about Oracle Solaris 11 Support Repository Update (SRU) and instructions about 
how to manage your local repository. 


--------------------------------------------------------------------------------

Contents 


* Why Apply Oracle Solaris 11.4.42.113.1
* End-of-Feature (EOF) Notices
   * EOFs Planned for Future Oracle Solaris 11.4 SRUs
   * EOFs for Oracle Solaris 11.4.42.113.1
   * EOF Summary for Oracle Solaris 11.4 SRUs 
* Before Installing Oracle Solaris 11.4.42.113.1 
* Bugs Fixed
* Packages Updated
* Superseded IDRs
* About Oracle Solaris 11 Support Repository Updates
* Determining the Oracle Solaris Version Installed on Your System
* Managing the Repository
   * How to Update Your Local Repository
* Oracle Solaris Repository Reorganization
* Further Assistance

--------------------------------------------------------------------------------

Why Apply Oracle Solaris 11.4.42.113.1 


Oracle Solaris 11.4.42.113.1 provides improvements and bug fixes that are 
applicable for all the Oracle Solaris 11.4 systems. Some of the noteworthy 
improvements in this SRU include: 


  * New features and/or modified interfaces: 
     
    Ansible 2.10 
    OpenSSL 3.0 added.   See Note 38 for more information. 
    New ldmconsole CLI option: -e (specify escape char) 
    New ldm unbind CLI option: -a (all domains) 
    LDoms support for new migration-class2, covering M7/T7/S7/M8/T8 platforms. 
    See ldm(8) for more information. 
    Option for mdb(1) leaving forked and spawned processes stopped 
    freezero(3c) and freezeroall(3c) functions added to libc 
    Execute bits removed from most shared objects 
    "split -b" enhanced to support more scaled suffixes and fractional values 
    Sphinx & Alabaster integrated 
    Docutils integrated 
    coreadm default locations for global and kernel zone cores updated to use 
    /var/cores/ 
    C.UTF-8 locale added.  See Note 35 for more information. 
    zfs get -I state 
    Improved handling of scaled sizes in pfiles(1) and plimit(1) 
    Added -h and --scale options to plimit(1), pmadvise(1), and pmap(1) 
    Support of KMIP 1.4 protocol in libkmip 
    Annotations for displaying objects in mdb 
    Python zipp integrated 
    Python typing-extensions integrated 
    importlib-metadata integrated 
    Python packaging integrated 
    zpool status/import -s to display allocated and allocatable vdev space 
    sysadm(8) evacuate detailed progress messages 
    Deprecated getpw(3c) 
    Changed cache directory for PEAR from /tmp/pear to /var/share/pear 

  * Updated versions plus security fixes: 
     
    Apache Web Server to 2.4.52, and addresses security issues (Bugs 33690282, 
    33690290) (CVE-2021-44224, CVE-2021-44790) 
    Java 7 to jdk7u331, and addresses security issues (Bug 33719067) 
    Java 8 to jdk8u321, and addresses security issues (Bug 33719084) 
    ModSecurity to version 2.9.5, and addresses a security issue (Bugs 33610846, 
    33610856) (CVE-2021-42717) 
    MySQL 5.7 to 5.7.36, and addresses a security issue (Bugs 33559879, 
    33562525) 
    NSS to 3.70, and addresses a security issue (Bugs 33357628, 33620036) 
    (CVE-2021-43527) 
    Samba to 4.13.14, and addresses a security issue (Bugs 33587792, 33557379) 
    Upgrade Django 2.2 to version 2.2.25, and addresses a security issue (Bugs 
    33649132, 33644896) (CVE-2021-44420) 
    Upgrade Django 3.2 to version 3.2.10, and addresses a security issue (Bugs 
    33649133, 33644896) (CVE-2021-44420) 
    fetchmail to 6.4.22, and addresses a security issue (Bugs 33367399, 
    33285165) (CVE-2021-39272) 
    libexif to 0.6.24, and addresses a security issue (Bugs 33626748, 33626756) 
    (CVE-2021-27815) 
    ncurses to 6.3, and addresses a security issue (Bugs 33539857, 33425972) 
    (CVE-2019-17594, CVE-2019-17595) 
    webkitgtk to 2.34.1, and addresses a security issue (Bugs 33509542, 
    33509261) 

  * Updated versions: 
     
    HPLIP to 3.21.8 (Bug 33468985) 
    Jinja2 to 3.0.1 (Bug 33327674) 
    MarkupSafe to 2.0.1 (Bug 33327682) 
    PAPS to 0.20211014 (Bug 33469366) 
    Perl Tk module to 804.036 (Bug 33522791) 
    Update gnome-desktop to 41.0 (Bug 33458612) 
    Update gnome-keyring to 40.0 (Bug 33458622) 
    Valgrind to 3.18.1 (Bug 33555035) 
    at-spi2-core to 2.40.3 (Bug 33284437) 
    atkmm to 2.28.2 (Bug 33285176) 
    bash to latest patch bash51-012 (Bug 33583177) 
    beautifulsoup4 to 4.9.3 (Bug 33318013) 
    buildbot-worker to 3.4.0 (Bug 33493473) 
    dateutil to 2.8.2 (Bug 33327656) 
    debtcollector to 2.3.0 (Bug 33327663) 
    devhelp to 41.1 (Bug 33388017) 
    diffstat to 1.64 (Bug 33615554) 
    gedit and gedit-plugins to 3.34.0 (Bug 33298228) 
    glibmm to 2.66.2 (Bug 33595525) 
    gnome-autoar to 0.4.1 (Bug 33567388) 
    gnome-backgrounds to 41.0 (Bug 33458595) 
    gnome-calculator to 3.34.0 (Bug 33298239) 
    gnome-devel-docs to 40.3 (Bug 33574072) 
    gnome-system-monitor to 41.0 (Bug 33458624) 
    gnome-user-docs to 41.0 (Bug 33574074) 
    grilo-plugins to 0.3.13 (Bug 33285763) 
    gsettings-desktop-schemas to 41.0 (Bug 33502004) 
    gsound to 1.0.3 (Bug 33285973) 
    gtk-vnc to 1.2.0 (Bug 33290042) 
    gtk3 to 3.24.30 (Bug 33590735) 
    hexedit to 1.5 (Bug 33534552) 
    hg-python mediator vendor-priority to 3.7 (Bug 33578289) 
    libgd to 2.3.3 (Bug 33535474) 
    libgee to 0.20.4 (Bug 33290438) 
    libgxps to 0.3.2 (Bug 33290582) 
    libhandy to 1.4.0 (Bug 33355914) 
    libmediaart to 1.9.5 (Bug 33566078) 
    libssh2 to 1.10.0 (Bug 33292536) 
    meld to 3.21.0 (Bug 33298255) 
    meson to 0.59.2 (Bug 33280653) 
    minor update to gnome-shell 3.38.6 (Bug 33576307) 
    msgpack to 1.0.2 (Bug 33327688) 
    mutt to 2.1.3 (Bug 33541324) 
    nano to 5.9 (Bug 33541002) 
    netifaces to 0.11.0 (Bug 33327689) 
    orca to 41.0 (Bug 33595655) 
    oslo.config to 8.7.1 (Bug 33327695) 
    oslo.context to 3.3.1 (Bug 33327697) 
    oslo.i18n to 5.1.0 (Bug 33327699) 
    oslo.log to 4.6.0 (Bug 33327701) 
    oslo.serialization to 4.2.0 (Bug 33327704) 
    oslo.utils to 4.10.0 (Bug 33327709) 
    pango to 1.48.10 (Bug 33485812) 
    pbr to 5.6.0 (Bug 33327714) 
    poppler to 21.10.0 (Bug 33465689) 
    puppetlabs-apache to 5.10.0 (Bug 33429464) 
    pygobject3 to 3.42.0 (Bug 33560878) 
    pyparsing to 2.4.7 (Bug 33327715) 
    pytz to 2021.1 (Bug 33327719) 
    rfc3986 to 1.5.0 (Bug 33327721) 
    sg3_utils to 1.46 (Bug 33538503) 
    simplejson to 3.17.5 (Bug 33327724) 
    six to 1.16.0 (Bug 33317732) 
    stevedore to 3.4.0 (Bug 33327729) 
    sushi to 41.0 (Bug 33515842) 
    totem to 3.38.2 (Bug 33504418) 
    totem-pl-parser to 3.26.6 (Bug 33505579) 
    vte to 0.66.0 (Bug 33504083) 

  * Security fixes for: 
     
    g11n/im-ibus (Bug 30304106) (CVE-2019-14822) 
    kernel/streams (Bug 33403305) 
    library/gd2 (Bug 33333583) (CVE-2021-40812) 
    library/polkit (Bug 33745389) (CVE-2021-4034) 
    utility/imagemagick (Bug 33352304) (CVE-2020-20244) 
    utility/junit (Bug 32141383) (CVE-2020-15250) 
    utility/mailman (Bug 33566458) (CVE-2021-43331, CVE-2021-43332) 
    utility/php (Bug 32321030) 
    utility/pip (Bug 33634148) (CVE-2021-3572) 
    utility/vim (Bugs 33362038, 33491803, 33549758, 33605122, 33640344, 
    33648840) 
    x11/xorg-server (Bug 33649692) (CVE-2021-4008, CVE-2021-4010, CVE-2021-4009, 
    CVE-2021-4011) 

  * The updated Java 7 and Java 8 packages are incorporated in the SRU. If the 
    update is performed using the pkg update entire@<sru number> command and you 
    have previously unlocked the consolidation/java-8/java-8-incorporation or 
    consolidation/java-7/java-7-incorporation facets, see Note 5 for the details 
    on how to update Java. If the update is performed using the pkg update 
    command, or the pkg update entire@<sru number> command without the above 
    facets unlocked, these packages will be updated. For more information and 
    bugs fixed, see Java 8 Update 321 Release Notes: 
    https://www.oracle.com/java/technologies/javase/8u321-relnotes.html and Java 
    7 Update 331 Release Notes: 
    https://www.oracle.com/java/technologies/javase/7-support-relnotes.html. For 
    further details regarding Java and Oracle Solaris, see Java Patches for 
    Solaris Packages: 
    https://support.oracle.com/knowledge/Middleware/1397756_1.html. 

For a complete list of bugs fixed in this SRU, see Bugs Fixed. 

For the list of Service Alerts that affect each Oracle Solaris 11.4 SRU, see 
Important Oracle Solaris 11.4 SRU Issues (Doc ID 2445150.1): 
https://support.oracle.com/rs?type=doc&id=2445150.1. 


--------------------------------------------------------------------------------

End-of-Feature (EOF) Notices 


This section lists features that will be removed in a future release and 
features that have been removed in a specific SRU. See also the public EOF 
document End of Feature Notices for Oracle Solaris 11: 
https://www.oracle.com/solaris/technologies/end-of-feature-notices-solaris11.html. 


--------------------------------------------------------------------------------

EOFs Planned for Future Oracle Solaris 11.4 SRUs 


The following features or components will be removed in a future Oracle Solaris 
11.4 SRU release: 


  * freetype-config 
  * Python 2.7 
  * pygtk 
  * GCC 7 
  * PHP 7.3 
  * Zenmap 

  * Ndiff 
  * Mailman 
  * Cloog 
  * Distributed Multihead X (DMX) 
  * Puppet master 
  * libzapojit 


--------------------------------------------------------------------------------

EOFs for Oracle Solaris 11.4.42.113.1 


The following features or components are no longer available as of Oracle 
Solaris 11.4.42.113.1: 


  * Node.js 12 
  * Wireless WPA supplicant 
  * Solaris Volume Manager (SVM) RCM Module 


--------------------------------------------------------------------------------

EOF Summary for Oracle Solaris 11.4 SRUs 


The following list shows the Oracle Solaris 11.4 SRU in which the feature or 
component was removed: 


  * Oracle Solaris 11.4 
     * apache-commons-logging 
  * Oracle Solaris 11.4.9 
     * rdiff-backup 
     * APR 1.5 
     * librsync 
     * ocaml 
     * PHP 5.6 
     * audiocs driver 
  * Oracle Solaris 11.4.10 
     * NVIDIA R304 driver 
     * NVIDIA Cg toolkit 
  * Oracle Solaris 11.4.12 
     * UUCP 
     * Automake 1.10 
     * pywbem 
     * idnkit2 
     * Locale Services (g11nsvc) Library 
  * Oracle Solaris 11.4.13 
     * OpenExr 
     * Ilmbase 
  * Oracle Solaris 11.4.18 
     * Ruby 2.1 and Ruby 2.3 
  * Oracle Solaris 11.4.19 
     * xscreensaver 
  * Oracle Solaris 11.4.20 
     * Google Go 1.7 
  * Oracle Solaris 11.4.21 
     * Automake 1.11 and Automake 1.15 
     * enscript 
     * libmng 
     * psif driver 
     * ICU 59.1 
     * MySQL 5.5 
  * Oracle Solaris 11.4.24 
     * Node.js 8 
     * Point-to-Point Protocol 
  * Oracle Solaris 11.4.27 
     * Python 3.4 

     * llc2 driver 
     * GCC 5 
     * NVIDIA R340 graphics driver 
     * PHP 7.1 
     * Python bindings: libxsl-27 and net-snmp-27 
     * All versions of the following Python components: 
        
         aioeventlet         os-client-config 
         amqp                oslo.concurrency 
         anyjson             oslo.messaging 
         appdirs             oslo.middleware 
         cachetools          oslo.service 
         ceilometerclient    osprofiler 
         cheetah             pathlib 
         cliff               pika 
         contextlib2         pika-pool 
         d2to1               positional 
         decorator           posix_ipc 
         django-appconf      pycadf 
         eventlet            pydns 
         filechunkio         pyrabbit 
         futures             pyscss 
         futurist            pysmi 
         greenlet            pysnmp 
         httplib2            pytest-capturelog 
         iniparse            pytest-codecheckers 
         ipython             python-editor 
         jsonpatch           python-mimeparse 
         jsonpath-rw         quantumclient 
         jsonpointer         rcssmin 
         keystoneauth1       repoze.lru 
         keystoneclient      requestsexceptions 
         keystonemiddleware  retrying 
         kombu               rjsmin 
         lesscpy             routes 
         librabbitmq         scp 
         logutils            simplegeneric 
         m2crypto            singledispatch 
         markdown            swift 
         networkx            swiftclient 
         neutronclient       tempita 
         nose-cover3         trollius 
         openstack-common    unicodecsv 
         openstacksdk        warlock 

  * Oracle Solaris 11.4.30 
     * Python 3.5 
     * Django 1.11 
     * RAD Python Client for Python 2.7 and 3.5 
     * RRDtool 
     * ANTLR 
     * gnome-doc-utils 
     * lcms 
  * Oracle Solaris 11.4.33 
     * Node.js 10 
     * GSSDP, GUPnP, GUPnP-igd 
     * telepathy-logger 
     * All versions of the following Python components: 
        
       cov-core                            pyflakes 
       cssutils                            pymemcache 
       dogpile.cache                       pytest-cov 
       dogpile.core                        requests-aws 
       fixtures                            setuptools-git 
       formencode                          sqlalchemy 
       ipaddr                              testresources 
       ldappool                            testscenarios 
       ldtp                                tox 
       linecache2                          traceback2 
       logilab-common                      twisted-web2 
       paste                               waitress 
       paste.deploy                        webtes 
       pycountry 

  * Oracle Solaris 11.4.36 
     * Device Driver Utility 
     * Direct Rendering Infrastructure (DRI) 
     * GNOME 2.0 Configuration - GConf 
     * HTTPing 
     * Wifi drivers: 
        
       arn     rum 
       atu     uath 
       iwh     ural 
       iwk     urtw 
       iwp     zyd 

  * Oracle Solaris 11.4.39 
     * MySQL 5.6 
     * Perl 5.22 and 5.26 
     * GNU parted and NTFS tools 
     * Ruby 2.5 
     * SpiderMonkey 38 and SpiderMonkey 60 
     * MCollectives 
  * Oracle Solaris 11.4.42 
     * Node.js 12 

     * Wireless WPA supplicant 
     * Solaris Volume Manager (SVM) RCM Module 

Contents 


--------------------------------------------------------------------------------

Before Installing Oracle Solaris 11.4.42.113.1 


This section provides some information about special installation and runtime 
instructions that you need to consider before installing or running Oracle 
Solaris 11.4.42.113.1. 
 
For the list of Service Alerts that affect each Oracle Solaris 11.4 SRU, see 
Important Oracle Solaris 11.4 SRU Issues (Doc ID 2445150.1): 
https://support.oracle.com/rs?type=doc&id=2445150.1. 

Note 1: Using Memory Reservation Pools for Kernel Zones (Bug 26534188) 
 
On some more heavily loaded systems that experience memory contention or 
sufficiently fragmented memory, it can be difficult for an administrator to 
guarantee that critical Kernel Zones can allocate the memory they need to boot 
or even reboot. For example, a sufficiently large ZFS ARC may make it difficult 
for a Kernel Zone to allocate the memory it needs, especially when requiring a 
larger pagesize. 
 
This may be especially pertinent in multi-tenant environments where the 
administrator of the Kernel Zone may be different from the host itself and thus 
should have no knowledge of the memory constraints on the host. 
 
By allowing memory to be reserved ahead of time early during boot when it is 
more likely that enough memory of the desired pagesize is available, the impact 
of overall system memory usage on the ability of a Kernel Zone to boot/reboot 
will be minimized. 
 
Oracle Solaris 11.4.1 adds a new SMF service, svc:/system/memory-reserve:zones, 
which has properties that allow a Solaris administrator to configure the Kernel 
Zones Memory Reserve Pool (MRP).  The service is disabled by default.  The 
properties are: 
 
 
     config/size 
     - size of the reservation to make (e.g. '64G') 
 
     config/pagesize-policy 
     - mimics the zonecfg capped-memory:pagesize-policy 
       (acceptable values are 'smallest-only', 'largest-available', and 
'largest-only' 
 
     config/type 
     - can only be 'solaris-kz' 
 
     config/lgrps 
 
 
Enabling the service instance creates the reservation using the MRP and it will 
go into maintenance with an appropriate reason logged if there is an error or 
the reservation fails. Disabling the service destroys the reservation if no 
memory from the reservation is currently allocated.  If an attempt is made to 
disable the service while there is used reserved memory, the service instance 
will drop to maintenance with an appropriate reason message. 
 
The reservation size can be adjusted and the service refreshed to grow or shrink 
the reservation.  Attempts to shrink the reservation beyond currently used 
reserved memory will drop the service instance to maintenance with an 
appropriate message.  Other configuration changes will be reflected on reboot or 
after restarting the service. 
 
To configure a Kernel Zone to allocate its memory from an MRP, a new zonecfg 
property has been introduced, capped-memory:memory-reserve.  To use this, its 
value must be set to the MRP management service instance name (e.g. 'zones').  
This property cannot be reconfigured live and is only valid for Kernel Zones.  
In addition, the capped-memory:memory-reserve property is mutually exclusive 
with the capped-memory:pagesize-policy property.  That is, if an MRP service 
instance is used, the Kernel Zone will use the pagesize of the MRP that was 
selected by the configured MRP service pagesize-policy.  If the 
capped-memory:memory-reserve property is cleared (the default), then the Kernel 
Zone will allocate from general system memory. 
 
Going forward, using this MRP service and its corresponding zonecfg property is 
the recommended way to ensure Kernel Zones are able to allocate the memory they 
need to boot.  Usage of MRP obviates the need for adjusting ZFS ARC hint 
user_reserve_hint_pct. MRP configured on target hosts can also be used to 
guarantee successful live migration. 
 
The following example shows how to configure MRP to set aside 64G of 
'largest-available' page size of memory for Kernel Zones. 
 
 
  # svccfg -s svc:/system/memory-reserve:zones setprop config/size=64g 
  # svccfg -s svc:/system/memory-reserve:zones setprop config/type=solaris-kz 
  # svccfg -s svc:/system/memory-reserve:zones setprop config/lgrps="" 
  # svccfg -s svc:/system/memory-reserve:zones refresh 
  # svcadm enable svc:/system/memory-reserve:zones 
 
 
 
The following commands configure 'myzone' Kernel Zone to use 16G of memory from 
'zones' MRP: 
 
 
  # zonecfg -z myzone info capped-memory 
  capped-memory: 
          physical: 16G 
          pagesize-policy: largest-available 
  # zonecfg -z myzone 'select capped-memory; clear pagesize-policy; set 
memory-reserve=zones; end; commit' 

Note 2: Long pause after upgrading from Oracle Solaris 11.3 to Oracle Solaris 
11.4 if /var/tmp is large (Bug 28620304) 
 
Before updating, first check the size of /var/tmp: 
 
 du -sdh /var/tmp 
 
If it is large (>1GB), the first boot of the new environment may take a very 
long time.  Note: The number of files is also a factor, e.g. 1000 1MB files 
would take more time then a 1GB file. 
 
It is therefore recommended that files are evacuated or removed from /var/tmp 
first; this action must be taken before creating an updated boot environment 
(BE). 
 
If you wish to keep your old files, then on a quiet system before upgrading, do 
the following: 
 
 mv /var/tmp /var/tmp.old 
 mkdir -m 1777 /var/tmp 
 chown root:sys /var/tmp 
 
If Oracle databases are run on this system, please be aware that an important 
state directory is maintained in /var/tmp. This directory 
(/var/tmp/.oracle) must be preserved for proper functioning of Oracle databases. 
 
If present beforehand, these directories should be moved back before beginning 
the upgrade: 
 
 mv /var/tmp.old/orbit-* /var/tmp 
 mv /var/tmp.old/keyring-* /var/tmp 
        mv /var/tmp.old/.oracle /var/tmp 
 
Then, after upgrading and rebooting: 
 
 rm -rf /var/.migrate/tmp 
 mv /var/tmp.old /var/.migrate/tmp 
 /lib/svc/share/migrate_shared_files.py /var/.migrate /var/share pseudo-fmri 
 
Note: It is not advisable to use /var/tmp as temporary storage as it is shared 
between BEs. 

Note 3: Bug metadata for Operating System and Networking components (Bug 
28644386) 
 
In the Oracle Solaris 11.4 SRU releases the bug metadata for Operating System 
and Networking components will be listed in the onset-incorporation package 
rather than the individual packages as was the case with Oracle Solaris 11.3. 
Packages in this incorporation are tightly coupled and are built and tested as a 
single unit and users are unable to 'unlock' most of these packages to mix and 
match versions. This simplifies searching for fixes and determining what 
packages you need to apply to ensure you have a fix, as now a bug search will 
match a single package - osnet-incorporation. Only the core Operating System and 
Networking packages are affected by this change; all other areas will continue 
to have the bug metadata listed in the individual packages. 

Note 4: Updating to the latest timezone package 
 
The latest timezone package is available in the support repository at 
https://pkg.oracle.com/solaris/support: https://pkg.oracle.com/solaris/support.  
It is also available as a separate download at Timezone Data File Package for 
Oracle Solaris 11 (Doc ID 2135137.1: 
https://support.oracle.com/rs?type=doc&id=2135137.1.  If a newer version is 
listed in this document, proceed with performing the following steps to update 
to the latest timezone package. 
 
Unlock the timezone package from the constraints on the system: 
 
# pkg change-facet version-lock.system/data/timezone=false 
# pkg update timezone 
 
Note: When a package is unlocked, it may no longer be updated when the system is 
updated depending upon how the update is performed.  If the update is performed 
using the pkg update entire@<sru number> command, then the timezone package will 
not be updated. If the update is performed using the pkg update command, then 
the timezone package will be updated. 
 
Once you have successfully updated the package, you should relock the package: 
 
# pkg change-facet version-lock.system/data/timezone=none

Note 5: Installing updated Java versions 
 
The latest Java packages are available in the support repository at 
https://pkg.oracle.com/solaris/support: https://pkg.oracle.com/solaris/support. 
They are also available as a separate download at Java Patches for Solaris 
Packages (Doc ID 1397756.1): 
https://support.oracle.com/rs?type=doc&id=1397756.1. If newer versions are 
listed in this document, proceed with performing the following steps to update 
to the latest versions of Java. 
 
You will first need to unlock the Java package from the constraints on the 
system, and then update the package. 
 
Note: When a package is unlocked, it may no longer be updated when the system is 
updated depending upon how the update is performed. If the update is performed 
using the pkg update entire@<sru number> command, then the Java package will not 
be updated. If the update is performed using the pkg update command, then the 
Java package will be updated. 
 
Unlock the Java 8 package from the constraints on the system: 
# pkg change-facet version-lock.consolidation/java-8/java-8-incorporation=false
# pkg update java-8-incorporation
 
Once you have successfully updated the package, you should relock the package: 
 
# pkg change-facet version-lock.consolidation/java-8/java-8-incorporation=none
 
To update Java 7 packages, unlock the constraints on the system: 
# pkg change-facet version-lock.consolidation/java-7/java-7-incorporation=false
# pkg update java-7-incorporation@1.7.0.241
 
Once you have successfully updated the package, you should relock the package: 
 
# pkg change-facet version-lock.consolidation/java-7/java-7-incorporation=none
 
Note: The version of the package at the end of the FMRI may change when new 
versions of Java 7 become available. 

Note 6: HMP and fwupdate in Oracle Solaris 11.4 SRU 
 
Note with Oracle Solaris 11.4 the fwupdate command will encrypt data sent over 
the network to ILOM and certificate checking is enabled by default.   For more 
details on fwupdate usage, command line options and obtaining SSL certificates, 
see Oracle Server CLI Tools for Oracle Solaris 11.4 User's Guide: 
https://docs.oracle.com/cd/E79568_01/html/E79574.  If appropriate, the 
certification checking can be disabled with the "--no-cert-check" command line 
option. 

Note 7: Updating from OpenSSH 7.5 to OpenSSH 7.7 
 
The update from OpenSSH 7.5 to OpenSSH 7.7 contains the following potentially 
incompatible changes: 


  * ssh(1): delete SSH protocol version 1 support, associated configuration 
    options and documentation. 
  * ssh(1)/sshd(8): remove support for the hmac-ripemd160 MAC. 
  * ssh(1)/sshd(8): remove support for the arcfour, blowfish and CAST ciphers. 
  * Refuse RSA keys <1024 bits in length and improve reporting for keys that do 
    not meet this requirement. 
  * ssh(1): do not offer CBC ciphers by default. 

  * ssh(1)/sshd(8): Drop compatibility support for some very old SSH 
    implementations, including ssh.com <=2.* and OpenSSH <= 3.*. These versions 
    were all released in or before 2001 and predate the final SSH RFCs. The 
    support in question isn't necessary for RFC-compliant SSH implementations. 

Note 8: LDoms commands may fail after upgrading M7/M8 machines to Oracle Solaris 
11.4.6 or later if system firmware is out of date (Bug 29305810) 
 
If you are running LDoms or other software accessing ILOM on SPARC machines 
installed with Oracle Solaris 11.4.6, the SysFW  should have the minimum version 
of 9.8. 
 
If this is not performed, the LDom commands may fail with: 
 
     The requested operation could not be performed because the communication 
     channel between the LDoms Manager and the system controller is down. 
     The ILOM interconnect may be disabled or down. 
 
This may also be seen in the log files: 
 
        /var/svc/log/network-ilomconfig-interconnect:default.log 
        /var/svc/log/system-sp-management:default.log 
 
with the following message: 
 
    Could not open bmc device: Resource temporarily unavailable 

Note 9: /usr/bin/grep command and -w option 
 
There has been a latent bug within the '/usr/bin/grep' command such that when 
used with the -w option it did not correctly report on the patterns it was 
supposed to match. This has been present for a while. The bug is now fixed 
however this may mean that more results are returned to any script that uses the 
command. 
 
Example 1: Use of -iw can return less lines than it should 
 
$ cat testfile 
pattern 
pattern-one 
pattern-two 
 
Prior to the fix: 
 
$ grep -w pattern testfile 
pattern 
pattern-one 
pattern-two 
$ grep -iw pattern testfile 
pattern 
 
Post fix: 
 
$ grep -w pattern testfile 
pattern 
pattern-one 
pattern-two 
$ grep -iw pattern testfile 
pattern 
pattern-one 
pattern-two 
 
 
Example 2: grep -w will omit the last line 
 
$ cat testfile 
pattern 
pattern-one 
$ grep pattern testfile 
pattern 
pattern-one 
$ grep -w pattern testfile 
pattern 
 
Post fix: 
 
$ grep -w pattern testfile 
pattern 
pattern-one 
 
Please note that /usr/xpg4/bin/grep was not affected by this issue. 

Note 10: FMRI change in support/explorer 
 
As Explorer is release agnostic, the OS portion of the FMRI will no longer be 
reported together with that for support/explorer from Explorer 19.2 onwards. 

Note 11: Python 3.7 replacing Python 2.7 
 
With the EOF of Python 2.7 (see Python 2.7 Countdown: https://pythonclock.org/), 
Python 3.7 is the new default replacement. Python 3.7 has been in the SRU since 
Oracle Solaris 11.4 SRU 12. 

Note 12: Systems with NVIDIA Fermi GPUs 
 
Systems with NVIDIA Fermi GPUs need to uninstall driver/graphics/nvidia and 
install driver/graphics/nvidiaR390. 

Note 13: Querying the solaris-11-cpu package for list of CVEs 
 
The solaris-11-cpu package which is published for each and every SRU contains a 
list of the CVEs that have been addressed in the SRUs.  The CVE list can be 
generated by running the following command: 
 
# pkg search -o value :info.cve: 
 
Or if the package is not installed: 
 
# pkg search -r -o value :info.cve: 

Note 14: snmpd.conf should be readable only to owner (Bug 30159738) 
 
When the updated system/management/snmp/net-snmp package is installed on an 
existing Solaris machine, a new file /etc/net-snmp/snmp/snmpd.conf.new is 
created. This new file will have the correct permissions. The original file 
/etc/net-snmp/snmp/snmpd.conf (which could be customized) will not be altered. 
 
Customer/System Administrators have two options to get the fix: 
 
1. Modify the permission of /etc/net-snmp/snmp/snmpd.conf as per the permissions 
of /etc/net-snmp/snmp/snmpd.conf.new. 
 
2. Merge the changes from /etc/net-snmp/snmp/snmpd.conf to the new file 
/etc/net-snmp/snmp/snmpd.conf.new. 
 
Rename /etc/net-snmp/snmp/snmpd.conf as /etc/net-snmp/snmp/snmpd.conf.old. 
 
Rename /etc/net-snmp/snmp/snmpd.conf.new as /etc/net-snmp/snmp/snmpd.conf. 

Note 15: Updates to 11.4 SRU 21 are blocked by instantclient-incorporation (Bug 
31069861) 
 
This issue is documented in Doc ID 2720920.1: 
https://support.oracle.com/rs?type=doc&id=2720920.1. 

Note 16: Solaris Server Printing in Oracle Solaris 11.4 SRU 21 
 
The printing software in Oracle Solaris 11.4 SRU 21 has been updated. See 
Migrating to latest Printing software on Oracle Solaris 11.4 SRU 21 and higher: 
https://support.oracle.com/rs?type=doc&id=2664326.1 for more information. 

Note 17: Grid Infrastructure 19 on Oracle Solaris 11.4 SRU 21 
 
In order to install Grid Infrastructure 19 on Oracle Solaris 11.4 SRU 21 please 
ensure you have Grid and DB patched to at least the January 2020 Release Update. 
See the  Master Note for Database Proactive Patch Program (Doc ID 756671.1): 
https://support.oracle.com/rs?type=doc&id=756671.1 for further details. 

Note 18: svc:/network/winbind service and Oracle Solaris 11.4 SRU 21 (31283847) 
 
If you do not have the svc:/network/winbind service enabled and you do not set 
the nss_winbind backend in nss (svc:/system/name-service/switch service) then 
you can safely skip this warning. 
 
Look up of non-existing identity in "passwd" or "group" table will hang the name 
service cache daemon, nscd, for approximately 10 minutes. This is because the 
winbind service daemon, winbindd, will re-query nss-stack again. 
 
"Hangs of approximately 10 minutes may also be seen after system boot with the 
above configuration, if services running at system boot time attempt to look up 
non existing users." 

Note 19:  Oracle Solaris 11.4 SRU 24 installation from the text-install ISO 
fails on systems with low memory (Bug 31492727) 
 
With the move to Python 3, out of memory issues can be observed when installing 
or updating to Oracle Solaris 11.4 SRU 24 from a text-install ISO.  To mitigate 
this, a minimum system requirement of 8GB RAM and 2GB of swap is recommended. 

Note 20: Potential nvme performance regressions on Oracle SPARC systems with 
Hardware BTI Mitigation enabled (31796983) 
 
Some Oracle SPARC systems with Hardware Branch Target Injection mitigation 
(HW_BTI) enabled may see performance regressions with nvme read/write operations 
of up to 20% in certain conditions. As stated in the  Protecting Platforms 
Against Speculative Execution Attacks documentation: 
https://docs.oracle.com/cd/E37838_01/html/E61021/sysauth-platformsx.html, this 
is a potential consequence of enabling this mitigation. 
 
For more information on the potential performance impacts of HW_BTI, see Doc ID 
2386271.1: https://support.oracle.com/rs?type=doc&id=2386271.1. 
 
So far, these regressions have not been seen on Fujitsu SPARC or any x86 based 
systems. 

Note 21: TLS 1.0 and TLS 1.1 are disabled in Apache Web server (Bug 28922797) 
 
From Oracle Solaris 11.4 SRU 21 onwards, usage of TLS protocol versions 1.0 and 
1.11 is intentionally no longer allowed by Apache Web Server. 

Note 22: Removal of TLS1.0 and TLS1.1 from pkg.oracle.com 
 
Due to security issues and wishing to protect our customers, TLS 1.0 to TLS 1.1 
will no longer be supported as an access method to Oracle Solaris repositories 
on pkg.oracle.com from October 2020. This means that any client directly 
accessing them must be running Oracle Solaris 11.2 or later. Further details can 
be found in Doc ID 2708452.1: 
https://support.oracle.com/rs?type=doc&id=2708452.1. 

Note 23: Known pkg update issues 
 
Known pkg update issues are documented in Important Oracle Solaris 11.4 SRU 
Issues (Doc ID 2445150.1): https://support.oracle.com/rs?type=doc&id=2445150.1.  
Be sure to read this document for the latest information, particularly if using 
non C or UTF-8 locales. 

Note 24: GNOME 3.38 in Oracle Solaris 11.4 SRU 36 
 
The GNOME desktop has been updated to GNOME 3.38.  Most everything should work 
as normal, but if you had any customization done to the Solaris desktop, ie. 
gnome-shell-extensions, those might need to be re-done post update. 
 
Starting with GNOME 3.28, upstream has removed the concept of desktop icons 
(readily noticeable if you are running gnome-classic with the file-manager, 
trash-bin icons).  If you want to re-enable them, they are available from 
extensions.gnome.org as a gnome-shell extension going forward. 

Note 25: Default python mediator change in Oracle Solaris 11.4 SRU 30 
 
Starting with Oracle Solaris 11.4 SRU 30, the default 'python' mediator value is 
now set to python version 3.7 instead of 2.7.  If you rely on `/usr/bin/python` 
being version 2.7, you will need to change the mediator back to that value: 
 
# pkg set-mediator -V 2.7 python 
 
This change doesn't affect those who explicitly set this mediator before; only 
the default is affected. 
 
Please note that Python 2.7 is slated for removal in a future SRU so the above 
solution is just a temporary one. 

Note 26: Error installing Oracle Database 12c and 18c on Oracle Solaris 11.4 SRU 
27 (32380608) 
 
Users attempting to install Oracle Database 12c or 18c on Oracle Solaris 11.4 
SRU 27 or later may see the following error at the "Create Databases" step of 
installation: 
 
oracle.install.commons.base.prereq.PrereqCheckerJob logTaskOverallResult 
INFO: Hard Limit: maximum open file descriptors: This is a prerequisite 
condition to test whether the hard limit for maximum open file descriptors is 
set correctly. 
 
The -ignorePrereqFailure flag can be used during install to allow successful 
installation. Alternatively, the following may be used as a workaround: 
 
# echo set rlim_fd_max = 65536 > /etc/system.d/oldfdlimit 
# reboot 
 
Other versions of Oracle Database are not impacted by this. 

Note 27: 32-bit Pass-Through Volatile FOSS libraries might be removed without 
warning in Oracle Solaris 11.4 SRU's 
 
32-bit FOSS libraries with declared interface stability levels of "Pass-Through 
Volatile" might be removed without warning from Oracle Solaris 11.4 SRUs. This 
may occur due to changes in the upstream products, or products they depend on, 
which make delivering 32-bit libraries unsupportable. 

Note 28: Pango 1.46.2 
With the pango update to 1.46.2, users using non-default fonts might experience 
some issues because of the dropped support for Type1 and bitmap fonts upstream 
starting in version 1.44.0.  Details of this change from the upstream community 
is discussed in Pango 1.44 and the removal of support for bitmap fonts: 
https://gitlab.gnome.org/GNOME/pango/-/issues/386. 

Note 29: Oracle Solaris Cluster customers will need to update cluster version if 
updating to Oracle Solaris 11.4 SRU 33 or later 
 
Due to changes introduced in Oracle Solaris 11.4 SRU 33, Oracle Solaris Cluster 
customers who upgrade to this SRU or higher will also need to upgrade their 
version of Oracle Solaris Cluster to Oracle Solaris Cluster 4.4 SRU 10 or 
higher.  An optional dependency has been added so that customers who have Oracle 
Solaris Cluster installed will automatically update Oracle Solaris Cluster if 
updating past Oracle Solaris 11.4 SRU 33. Customers who do not have Oracle 
Solaris Cluster installed will not be impacted. 

Note 30: /usr/bin/awk mediator link 
 
From Oracle Solaris 11.4.33 onwards /usr/bin/awk is a mediated link, allowing 
the administrator to choose if /usr/bin/awk is provided by oawk or nawk.  The 
system default is to use /usr/bin/nawk as /usr/bin/awk. 
 
Note that there are a small number of incompatible behaviors between the oawk 
and nawk implementations. 

Note 31: Change to uname(1) output in Oracle Solaris 11.4.36 
 
Starting with Oracle Solaris 11.4.36 the output of the uname(1) command when 
given the '-a' option (to display all fields) will include the current 
virtualization platform. This can also be explicitly selected by using 'uname 
-V'. This is equivalent to the values returned by the virtinfo(8) command. 

Note 32: Added support for listing Zone description via zoneadm(8) in Oracle 
Solaris 11.4.39 (ER 32832402) 
 
The Zone description is usually listed by specifying the -d option to "zoneadm 
list". The one exception is "zoneadm list -p" which produces a machine parsable 
output. The new enhancement modified "zoneadm list -p" so it prints the 
description field as the new rightmost column. 
 
Please note that while "zoneadm list -p" has always been documented as 
extensible in the zoneadm(8) manual page with regard to the number of columns 
displayed, care should be taken with existing scripts that have been using this 
interface.  It is recommended to verify that such scripts do not assume a fixed 
number of columns in the "zoneadm list -p" output. 

Note 33: Removal of wifi drivers and Direct Rendering Infrastructure (DRI) in 
Oracle Solaris 11.4.36 
 
With the wifi drivers and Direct Rendering Infrastructure (DRI) being removed in 
Oracle Solaris 11.4.36, it is recommended that bare metal laptop users 
investigate alternative methods of installing Solaris such as using VirtualBox. 
 
Solaris users who are currently using the Intel/modesetting Xorg driver to drive 
the Intel native graphics will notice the change since it will now default to 
vesa with the DRI removal. 

Note 34: vHBA discovery will fail if the LDoms guest domain is upgraded prior to 
the service domain 
 
Ensure the vHBA service domain (i.e. the one providing the vHBA services via the 
'vsan' module) is upgraded to at least Oracle Solaris 11.4 SRU 39 prior to 
upgrading any guest domains utilizing that vsan instance to SRU 39 or later. If 
the guest domain is upgraded first, the vHBA subsystem will not be able to 
discover devices and will produce the following message to the syslog each time 
it tries: 
 
WARNING: vh@0 vhba(1.2) and vsan(1.0) VIO version mismatch; Device Discovery is 
disabled. 

Note 35: C.UTF-8 locale 
 
The C.UTF-8 locale is an update to the POSIX standards-compliant C locale that 
adds the UTF-8 character set. Only the following environment variable values 
differ from the C locale: 
 
- LC_CTYPE - Covers all Unicode characters 
- LC_COLLATION - Sorts based on the Unicode character code points 

Note 36: Removal of Python 2.7 dependencies in Oracle Solaris 11.4.42 
 
Starting with Oracle Solaris 11.4.42 (Oracle Solaris 11.4 SRU 42) most 
dependencies on Python 2.7 have been removed and the Python 2.7 runtime and 
modules are no longer installed by default. Python 2.7 is not, at this time, 
automatically removed on upgrade to 11.4.42 (or later) from an earlier SRU. 
 
If you wish to remove the Python 2.7 runtime and modules and you know that no 
applications/tools depend on them you can choose to do so. 
 
A future SRU may mark the Python 2.7 runtime/modules as obsolete, which would 
result in their removal on upgrade. 

Note 37: /var/share/cores separate file system in Oracle Solaris 11.4.42 
 
From Oracle Solaris 11.4.42 onwards, the global core file directory 
/var/share/cores is a separate file system. On upgrade to 11.4.42 or later any 
existing contents of /var/share/cores will be migrated to the new file system. 
 
Before rebooting into the new BE consider removing core files that are no longer 
needed to minimize any delay while migrating files. 

Note 38: OpenSSL 3.0 in Oracle Solaris 11.4.42 
 
OpenSSL 3.0 is available in this release, via pkg:/library/security/openssl-3, 
but is not yet installed by default. Oracle Solaris 11.4 delivered consumers 
will migrate from OpenSSL 1.0.2 or 1.1.1 in future SRUs. 
 
Note that in OpenSSL 3.0 some older/weak cryptographic algorithms are no longer 
available by default, they can be made available in Oracle Solaris by installing 
the legacy provider package: pkg:/library/security/openssl-3/legacy-provider and 
changing the activate property in /etc/openssl/3/conf.d/legacymodule.cnf. 
 
For OpenSSL 3.0 with FIPS 140-2 mode of operation install the additional 
pkg:/library/security/openssl-3/fips-140-provider. 


--------------------------------------------------------------------------------

Bugs Fixed 


Each SRU provides bug fixes and incremental changes that are relative to the 
preceding release, for example Oracle Solaris 11.4. The following additional 
bugs are fixed in this SRU: 

Bug Number     Synopsis
----------     --------
15237638       nftw() is still tricked by symlinks
19215152       smp transport packet's timeout value should be tunable
20243343       zpool import and zfs set mountpoint - mntopts options should be validated
21464666       nscd.1m typo: Was nscd doesn't refresh after to update or refresh the DNS/client
21775986       Redirect from http to https does not happen if only one TLS version is selected.
21826326       vlds module has swapped arguments to memset
23076455       Cannot create new BE on server deplyed by UA image due source contains snapshots
23756660       split is super-slow due to getc
24333937       The kproc target steadfastly believes it's a crash dump, not a live kernel
24434766       rename "idmu" mapping mode to "rfc2307"
25444201       nscd.conf: Disabling hosts caching does not disable ipnodes caching
25766028       nvme interrupt: driver occasionally panics on boot on T4-1
27299690       Logging improvements phase 2
27721134       add C.UTF-8 locale to Solaris
27917592       ldmconsole needs -e to define the escape character to use
27999227       update KMIP client library (libkmip) to support KMIP specification 1.4
28029671       Add LDoms migration-class2 support for M7/T7/S7/M8/T8 platforms
29187370       KPTI should be enabled by default on all x86 systems
29213476       EOF of Solaris WIFI framework
30304106       Problem with g11n/im-ibus
30328178       Vanity net names associated with NIC physical links change during and after OS text install
31206139       nscd -f configuration-file : displays usage even though its a valid option as shown by that usage.
31272902       find(1) does not work when $PWD is too large
31378760       nscd core dumps in Solaris 11.4 (user_attr edge case in AD w/no user_attr)
31571472       find(1) does not take into account the size of the -exec command.
31709625       libzpool's taskq_member may check freed taskq
31753895       Cannot install non-global zones when two publishers each require unique ssl certificates
31860846       disable optimized Montgomery squaring procedure for SPARCv9 IALU
31991570       ldm migrate non-standard logging
32139312       prepare for nvme LED support, remove 'sas' from 'ledctl' files/APIs
32139313       'ledctl' should be based on name/color, not device/color
32141383       Problem with utility/junit
32257748       want mdb d-cmd to walk NIC driver softstate structures
32321030       Problem with utility/php
32373492       High CPU usage with KRB NFS shares
32425018       zfs get should display property values and sources of resumable datasets
32458925       deliver python 3.9 modules for pkg
32495761       auto-update-cleanup method script blows up if run directly
32560801       softtoken does not have protection against concurrent run of same operations on the same session
32575338       swap default cap of 4GB and calculated dump vol size are not suitable in general
32576052       Sense page management should be aware of removable media
32587681       nvme dma: no need to use ddi_put64() to fill in PRP list entries, etc
32668046       SMF failover_limit template description is wrong
32679276       Missing data from auto-update service log file
32702124       KMIP error number to string function
32737604       svcs manpage doesn't state next run property correctly
32740923       zpool status/import -s should be hardened against passing iostat devprops
32776637       ::devinfo should show devi_tref count
32817728       nvmex_quiesce needs to deal with MSI and MSIX interrupts
32835838       Add mremap to Solaris
32853726       Forced speed/duplex on CX-5 25Gb port doesn't work correctly
32853966       typo in error of ln(1)
32873725       zpool import -o mntopts is broken and coredumps when passed 'mountpoint'
32899707       implement sepatate bay:disk NVME binding method that is not dependent on disk@1 namespace
32911144       Improve HTTP tunneling in buildbot worker to support tls
32921734       improve bay.so 'nvme-bay-labels' suppression logic
32942237       sun4vpi.so: compensate for platforms that misuse topo-skip in their PRI/MD
32944107       nvme.conf: AIC should use AIC/NVME in NAC name
32955566       zoneadm migrate ignores SSH agent
32955820       pmcs_flush_nonio_cmds completes requests with missing data
32956938       Add Aura-9 AIC Flash Accelerator topo support
32962396       Dump fails with Samsung (SGL-mode) system disks
32972028       zpool status/import -s should also display allocated and allocatable vdev space
32973962       some current sd_panic_for_res_conflict() conditions should avoid panic
32976653       EOF Node.js 12: Removal
32980524       after running 'pktool init' the server group and client keystore dir are renamed with trailing spaces
32982852       svc-pkg-auto-update should use smf_include wrapper
32991874       sshd core dumped on 98 with ADI deferred mismatch error
32996078       zpool dump a core at nvlist_lookup_common
33004256       improve nvme driver logging
33019230       nvmex assert panic when attempting to delete submission queues during unsolicited hotplug testing
33025837       unable to revert coreadm global core pattern to default
33041676       race in nvmex_handle_fatal() could end up leaving interupts disabled
33041728       nvme driver doesn't look like it works with MSI
33041836       no naked disk node created in bay if nvme device fails to attach properly
33048535       tar extraction failed if the tar file contains the duplicated hardlink files
33059081       iotop does not show uid, pid and ppid
33065049       possible error-handling bug when starting NFS service on Cluster
33067767       disable auto-update services in nonglobal zones
33089783       errors seen in sparc install log: awk: unknown option -e ignored
33094646       rpcsec_gss would benefit from xbuf logging
33130486       deliver OpenSSL 3.0
33131523       Invalid BIOS boot device entry for bootable NVMe drive
33133011       race condition between nm_unmount() and nm_sync()
33135472       policy.conf fails pkg verify when stenciled
33135534       sshd_config fails pkg verify when stenciled
33139495       Setting handlers for SIGSEGV/SIGBUS to SIG_IGN is no longer inherited
33143824       odoc-import service in maintenance > import-index failed: 'NoneType' object is not subscriptable
33161093       disklog: automatic log collection fails during fault handling on Samsung NVMe drives
33161852       Urgent mechanism for TCP seems to be broken in Solaris 11.4
33161938       plimit options don't scale to modern memory/file sizes
33180683       Add a variable to the auto-update service to control creation of backup BEs
33183176       NLST command handler should treat paths beginning with './' as local (relative to cwd)
33189698       sync destroy that depends on zombie may deadlock with pool export
33195216       Archiveadm create fails on sshd HostKeyAlgorithms option
33195316       The zonecfg description property rejects some ASCII characters
33206610       number of ARC evict threads should be increased
33209188       pkg://solaris/system/library/accountsservices have incorrect permissions
33211291       Document new LDoms migration-class2 support for M7/T7/S7/M8/T8 platforms
33214314       UAR install fails with IndexError: pop from empty list
33217870       zoneadm list -p and -d shouldn't be mixed together
33239798       mlxne driver defaults on SPARC need improving
33240811       file should show zone name and image type from KZ dump images
33247266       Install image services going in to maintenance still raise ASR
33247886       libumem disables ADI when only adistack is enabled
33248337       irssi uses unacceptable OpenSSL defaults
33249446       implement an initialization window for INTEL ADP that set RDY too early
33250317       proftpd uses unacceptable OpenSSL defaults
33252665       libumem cannot find 64 bit symbols on SPARC
33254885       mutt uses unacceptable OpenSSL ciphers
33254928       pkg/depot uses unacceptable TLS protocols
33264354       sysadm evacuate should provide detailed progress messages
33265468       intrd mem leaks on T[57] LDoms
33266956       vsan should not return TLs when a TargetPort is disabled under MPxIO
33267223       chgrp(1) & system(5) should stop describing rstchown system option
33268871       fetchmail uses unacceptable OpenSSL defaults
33272944       vntsd(8) man page: adding a new vntsd smf. property ---escape character
33274810       EOF PHP 7.3: Move to legacy state
33280653       update meson to 0.59.2
33284437       Update at-spi2-core to 2.40.3
33285165       Problem with utility/fetchmail
33285176       Update atkmm to 2.28.2
33285391       update gtksourceview to 4.8.1 and do a pkg rename
33285763       Update grilo-plugins to 0.3.13
33285973       Update gsound to 1.0.3
33286284       Add freezero() to zero buffers when freeing them
33290042       Update gtk-vnc to 1.2.0
33290438       Update libgee to 0.20.4
33290582       Update libgxps to 0.3.2
33292536       Update libssh2 to 1.10.0
33297685       deadman panic due to predictor not running during a shortage
33298228       update gedit and gedit-plugins to 3.34.0
33298239       update gnome-calculator to 3.34.0
33298255       update meld to 3.21.0
33316806       Puppet packaging changes and EOF of Puppet 5.5 master
33317070       EOF Zenmap & Ndiff: Move to legacy state
33317308       EOF Mailman: Move to legacy state
33317480       winbind recursion avoidance is incompatible with nscd
33317732       Upgrade six to 1.16.0
33318013       Upgrade beautifulsoup4 to 4.9.3
33318192       sysadm evacuate messages order can be confusing
33319294       consistency with 'nsid' for device endian, 'ns' for native endian
33323953       LDoms MIB: add new migration-class2 support for M7/T7/S7/M8/T8 platforms
33327656       Upgrade dateutil to 2.8.2
33327663       Upgrade debtcollector to 2.3.0
33327674       Upgrade Jinja2 to 3.0.1
33327682       Upgrade MarkupSafe to 2.0.1
33327688       Upgrade msgpack to 1.0.2
33327689       Upgrade netifaces to 0.11.0
33327695       Upgrade oslo.config to 8.7.1
33327697       Upgrade oslo.context to 3.3.1
33327699       Upgrade oslo.i18n to 5.1.0
33327701       Upgrade oslo.log to 4.6.0
33327704       Upgrade oslo.serialization to 4.2.0
33327709       Upgrade oslo.utils to 4.10.0
33327714       Upgrade pbr to 5.6.0
33327715       Upgrade pyparsing to 2.4.7
33327719       Upgrade pytz to 2021.1
33327721       Upgrade rfc3986 to 1.5.0
33327724       Upgrade simplejson to 3.17.5
33327729       Upgrade stevedore to 3.4.0
33329330       More man pages should list privileges or profiles instead of "super user"
33330962       EOF cloog: move to legacy state
33333583       Problem with library/gd2
33336661       EMC LUNZ failure since S11.4 SRU36
33337280       EOF of Distributed Multihead X (DMX): Move to legacy state
33337470       Disable DMX support in xdpyinfo
33346961       failed to remove a file with xattrs from ZFS filesystem when data quota is exceeded
33352055       zvboot does not upgrade correctly after 11.5 to 11.4 transition
33352304       Problem with utility/imagemagick
33353492       CX-5 driver support for cqe compression
33355914       Update libhandy to 1.4.0
33357628       update NSS to 3.70
33362038       Problem with utility/vim
33362988       Update SCons to version 4.2.0
33367210       Performance impact in st_103 vdbench with synchronous IO
33367399       Update fetchmail to version 6.4.22
33375380       ptools should use nicenum/nicestr
33376965       Deprecate getpw(3c)
33378684       Updated coreadm default settings
33387332       Live debugging a program with ADI errors gives mdb an ADI error
33387788       Solaris NFS client READDIRPLUS storm after Isilon NFS server upgrade
33387843       drop support for unused nicenum() insurance policy options
33388017       update devhelp to 41.1
33388210       update to several gnome/applications
33391370       nicenum() needs to respect i18n
33403305       Problem with kernel/streams
33411562       vdev paths auto-correct should use consistent pool config
33415685       Deliver python packaging in Solaris
33425972       Problem with library/ncurses
33426477       Deliver python importlib-metadata in Solaris
33426479       Deliver python typing-extensions in Solaris
33426480       Deliver python zipp in Solaris
33429320       beadm destroy shows slightly different message in Japanese
33429464       update puppetlabs-apache to 5.10.0
33430933       Problem with utility/apache
33430955       Problem with utility/apache
33431575       add ansible(1) man page and deliver it with Ansible
33440018       Remove gconf-cache from distro_const/profile/generic.xml
33448793       ::whatis -l and -b options not documented in ::help whatis
33454309       radadrgen breaks in presence of new C.UTF-8 locale
33455893       EOF the RCM SVM module
33458595       Update gnome-backgrounds to 41.0
33458612       Update gnome-desktop to 41.0
33458622       Update gnome-keyring to 40.0
33458624       Update gnome-system-monitor to 41.0
33460505       OCI instance firewall config should restrict iSCSI connections
33462950       Problem with utility/nodejs
33462983       Upgrade Node.js to version 16.11.1
33462986       Upgrade Node.js to version 14.18.1
33465689       Update poppler to version 21.10.0
33468985       Upgrade HPLIP to 3.21.8
33469366       Upgrade PAPS to 0.20211014
33473523       zfs need not disable fast reboot in zio_suspend() context
33480886       Add $TZ information to sulog(5) man page
33483345       Deliver Sphinx in Solaris
33483348       Deliver Alabaster Sphinx theme in Solaris
33483352       Deliver Docutils in Solaris
33485812       update pango to 1.48.10
33491046       PCI-E timeout completion panics on OCI E2/3/4 bare metal instances
33491803       Problem with utility/vim
33493473       Update buildbot-worker to version 3.4.0
33497828       NGZ cannot import ZFS pool if hostid is set
33498733       split should use nicestr() and needs a general refresh
33502004       Update gsettings-desktop-schemas to 41.0
33504083       Update vte to 0.66.0
33504418       Update totem to 3.38.2
33505579       Update totem-pl-parser to 3.26.6
33507931       EOF libzapojit: Move to legacy state
33509261       Problem with library/webkitgtk
33509496       cloud-init script for OCI broken since STB108N211021
33509542       update webkitgtk to 2.34.1
33514079       Add command to unbind all guests
33515842       Update sushi to 41.0
33521676       Zones cannot access repos using port 80
33522791       Update Perl Tk module to 804.036
33526438       update CA certificates as of Mozilla NSS changeset ed21a4b608a6
33531722       LC_CTYPE is missing for C.UTF-8 locale
33534552       Update hexedit to version 1.5
33535474       Upgrade libgd to version 2.3.3
33536078       HostKey directives may be omitted from sshd_config
33537167       Document new options for ldm unbind
33538330       Problem with utility/smf
33538503       Update sg3_utils to version 1.46
33539857       Update to ncurses 6.3
33541002       Update nano to version 5.9
33541324       Update mutt to version 2.1.3
33549758       Problem with utility/vim
33553032       mlxng hang when card is configured in IB mode
33553358       environ(7) should document default TZ
33555035       Update Valgrind to 3.18.1
33557379       Problem with utility/samba
33559536       mdb should allow truncated options
33559879       Upgrade MySQL 5.7 to 5.7.36 in Solaris
33560878       Update pygobject3 to 3.42.0
33562525       Problem with database/mysql
33563268       Remove of pkg:/library/samba/libsmbclient
33564099       secret-tool(1) reads passwords up to 8 characters from terminal
33564202       pwhash is core dumping if -a or -u arguments are invalid
33566078       update libmediaart to 1.9.5
33566458       Problem with utility/mailman
33567388       update gnome-autoar to 0.4.1
33569979       Unable to apply new coreadm configurations
33570149       auto-update should avoid maintenance for temporary issues
33573669       luxadm -e dev_reset <LU> command returns with failure
33574072       Update gnome-devel-docs to 40.3
33574074       Update gnome-user-docs to 41.0
33576307       minor update to gnome-shell 3.38.6
33578289       Update hg-python mediator vendor-priority to 3.7
33583177       Update bash to latest patch bash51-012
33587792       Samba: uprev to 4.13.14
33587809       Changing Current Speed not persistent through reboots/power-off for Emulex 7115461 (32G)
33589642       After rebooting global zone Some zones went to maintenance state
33590735       update gtk3 to 3.24.30
33595525       Update glibmm to 2.66.2
33595655       Update orca to 41.0
33605122       Problem with utility/vim
33610846       Upgrade ModSecurity to version 2.9.5
33610856       Problem with utility/apache
33615554       Upgrade diffstat to 1.64
33616803       zonecfg(8) should say roozpool/zpool resources may create ZFS mirror
33616839       solaris(7) man page should not have SUB-COMMANDS section
33616881       solaris(7) man page does not say rootzpool resource is not live reconfigurable
33620036       Problem with library/nss
33621156       rpool-config missing 3rd outcome of curl invocation, falsely triggering zpool reguid
33626748       update libexif to 0.6.24
33626756       Problem with library/libexif
33634148       Problem with utility/pip
33640344       Problem with utility/vim
33644896       Problem with python-mod/django
33648840       Problem with utility/vim
33649132       Upgrade Django 2.2 to version 2.2.25
33649133       Upgrade Django 3.2 to version 3.2.10
33649692       Problem with x11/xorg-server
33667206       Deliver /etc/X11/xinit/xinitrc as executable
33684653       Powertop may endlessly create new DTrace states till panic
33690282       Upgrade Apache Web Server to version 2.4.52
33690290       Problem with utility/apache
33719067       Problem with gate-stuff/javavm
33719084       Problem with gate-stuff/javavm
33745389       Problem with library/polkit

For the complete Oracle Solaris 11.4 release history, see Oracle Solaris 11.4 
SRU Index: https://support.oracle.com/rs?type=doc&id=2433412.1. 


  * Oracle Solaris 11.4.1.4.0 ReadMe (Doc ID 2449090.1): 
    https://support.oracle.com/rs?type=doc&id=2449090.1 
  * Oracle Solaris 11.4.2.3.0 ReadMe (Doc ID 2458059.1): 
    https://support.oracle.com/rs?type=doc&id=2458059.1 
  * Oracle Solaris 11.4.3.5.0 ReadMe (Doc ID 2472200.1): 
    https://support.oracle.com/rs?type=doc&id=2472200.1 
  * Oracle Solaris 11.4.4.4.0 ReadMe (Doc ID 2483313.1): 
    https://support.oracle.com/rs?type=doc&id=2483313.1 
  * Oracle Solaris 11.4.5.3.0 ReadMe (Doc ID 2492782.1): 
    https://support.oracle.com/rs?type=doc&id=2492782.1 
  * Oracle Solaris 11.4.6.4.0 ReadMe (Doc ID 2507241.1): 
    https://support.oracle.com/rs?type=doc&id=2507241.1 
  * Oracle Solaris 11.4.7.4.0 ReadMe (Doc ID 2517183.1): 
    https://support.oracle.com/rs?type=doc&id=2517183.1 
  * Oracle Solaris 11.4.7.5.0 ReadMe (Doc ID 2526480.1): 
    https://support.oracle.com/rs?type=doc&id=2526480.1 
  * Oracle Solaris 11.4.8.5.0 ReadMe (Doc ID 2529131.1): 
    https://support.oracle.com/rs?type=doc&id=2529131.1 
  * Oracle Solaris 11.4.9.5.0 ReadMe (Doc ID 2547299.1): 
    https://support.oracle.com/rs?type=doc&id=2547299.1 
  * Oracle Solaris 11.4.10.3.0 ReadMe (Doc ID 2555953.1): 
    https://support.oracle.com/rs?type=doc&id=2555953.1 
  * Oracle Solaris 11.4.11.4.0 ReadMe (Doc ID 2565314.1): 
    https://support.oracle.com/rs?type=doc&id=2565314.1 
  * Oracle Solaris 11.4.12.5.0 ReadMe (Doc ID 2577197.1): 
    https://support.oracle.com/rs?type=doc&id=2577197.1) 
  * Oracle Solaris 11.4.13.4.0 ReadMe (Doc ID 2587604.1): 
    https://support.oracle.com/rs?type=doc&id=2587604.1 
  * Oracle Solaris 11.4.14.5.0 ReadMe (Doc ID 2597515.1): 
    https://support.oracle.com/rs?type=doc&id=2597515.1 
  * Oracle Solaris 11.4.15.5.0 ReadMe (Doc ID 2610388.1): 
    https://support.oracle.com/rs?type=doc&id=2610388.1 
  * Oracle Solaris 11.4.16.4.0 ReadMe (Doc ID 2619598.1): 
    https://support.oracle.com/rs?type=doc&id=2619598.1 
  * Oracle Solaris 11.4.17.3.0 ReadMe (Doc ID 2627197.1): 
    https://support.oracle.com/rs?type=doc&id=2627197.1 
  * Oracle Solaris 11.4.18.4.0 ReadMe (Doc ID 2638296.1): 
    https://support.oracle.com/rs?type=doc&id=2638296.1 
  * Oracle Solaris 11.4.19.3.0 ReadMe (Doc ID 2648236.1): 
    https://support.oracle.com/rs?type=doc&id=2648236.1 
  * Oracle Solaris 11.4.20.4.0 ReadMe (Doc ID 2657243.1): 
    https://support.oracle.com/rs?type=doc&id=2657243.1 
  * Oracle Solaris 11.4.21.69.0 ReadMe (Doc ID 2669880.1): 
    https://support.oracle.com/rs?type=doc&id=2669880.1 
  * Oracle Solaris 11.4.22.69.4 ReadMe (Doc ID 2679802.1): 
    https://support.oracle.com/rs?type=doc&id=2679802.1 
  * Oracle Solaris 11.4.23.69.3 ReadMe (Doc ID 2686737.1): 
    https://support.oracle.com/rs?type=doc&id=2686737.1 
  * Oracle Solaris 11.4.24.75.2 ReadMe (Doc ID 2699976.1): 
    https://support.oracle.com/rs?type=doc&id=2699976.1 
  * Oracle Solaris 11.4.25.75.3 ReadMe (Doc ID 2709276.1): 
    https://support.oracle.com/rs?type=doc&id=2709276.1 
  * Oracle Solaris 11.4.26.75.4 ReadMe (Doc ID 2719236.1): 
    https://support.oracle.com/rs?type=doc&id=2719236.1 
  * Oracle Solaris 11.4.27.82.1 ReadMe (Doc ID 2728201.1): 
    https://support.oracle.com/rs?type=doc&id=2728201.1 
  * Oracle Solaris 11.4.28.82.3 ReadMe (Doc ID 2735560.1): 
    https://support.oracle.com/rs?type=doc&id=2735560.1 
  * Oracle Solaris 11.4.29.82.3 ReadMe (Doc ID 2743495.1): 
    https://support.oracle.com/rs?type=doc&id=2743495.1 
  * Oracle Solaris 11.4.30.88.3 ReadMe (Doc ID 2751881.1): 
    https://support.oracle.com/rs?type=doc&id=2751881.1 
  * Oracle Solaris 11.4.31.88.5 ReadMe (Doc ID 2760965.1): 
    https://support.oracle.com/rs?type=doc&id=2760965.1 
  * Oracle Solaris 11.4.32.88.3 ReadMe (Doc ID 2769930.1): 
    https://support.oracle.com/rs?type=doc&id=2769930.1 
  * Oracle Solaris 11.4.33.94.0 ReadMe (Doc ID 2776059.1): 
    https://support.oracle.com/rs?type=doc&id=2776059.1 
  * Oracle Solaris 11.4.34.94.4 ReadMe (Doc ID 2783564.1): 
    https://support.oracle.com/rs?type=doc&id=2783564.1 
  * Oracle Solaris 11.4.35.94.4 ReadMe (Doc ID 2791494.1): 
    https://support.oracle.com/rs?type=doc&id=2791494.1 
  * Oracle Solaris 11.4.36.101.2 ReadMe (Doc ID 2801088.1): 
    https://support.oracle.com/rs?type=doc&id=2801088.1 
  * Oracle Solaris 11.4.37.101.1 ReadMe (Doc ID 2805294.1): 
    https://support.oracle.com/rs?type=doc&id=2805294.1 
  * Oracle Solaris 11.4.38.101.6 ReadMe (Doc ID 2814737.1): 
    https://support.oracle.com/rs?type=doc&id=2814737.1 
  * Oracle Solaris 11.4.39.107.1 ReadMe (Doc ID 2820383.1): 
    https://support.oracle.com/rs?type=doc&id=2820383.1 
  * Oracle Solaris 11.4.40.107.3 ReadMe (Doc ID 2826723.1): 
    https://support.oracle.com/rs?type=doc&id=2826723.1 
  * Oracle Solaris 11.4.41.107.2 ReadMe (Doc ID 2833485.1): 
    https://support.oracle.com/rs?type=doc&id=2833485.1 


--------------------------------------------------------------------------------

Packages Updated 


The following packages are updated in this SRU: 

Package Name, Summary
---------------------
compress/zip: Info-Zip (zip)
consolidation/osnet/osnet-incorporation: OS/Net consolidation incorporation
consolidation/userland/userland-incorporation: userland consolidation incorporation (consolidation/userland/userland-incorporation)
data/sgml-common: Common SGML catalog and DTD files
data/shared-mime-info: shared-mime-info database
data/xml-common: Common XML catalog and DTD files
database/mysql-57: MySQL 5.7 Database Management System
database/mysql-57/client: MySQL 5.7 Client Executables
database/mysql-57/embedded: MySQL 5.7 embedded library
database/mysql-57/library: MySQL 5.7 client libraries and plugins
database/mysql-57/tests: MySQL 5.7 testsuite
database/oracle/instantclient-121: Oracle Instant Client runtime
database/oracle/instantclient-122: Oracle Instant Client runtime
database/oracle/instantclient-183: Oracle Instant Client runtime
database/oracle/instantclient/jdbc-supplement-121: Oracle Instant Client JDBC supplement
database/oracle/instantclient/jdbc-supplement-122: Oracle Instant Client JDBC supplement
database/oracle/instantclient/jdbc-supplement-183: Oracle Instant Client JDBC supplement
database/oracle/instantclient/odbc-supplement-121: Oracle Instant Client ODBC supplement
database/oracle/instantclient/odbc-supplement-122: Oracle Instant Client ODBC supplement
database/oracle/instantclient/odbc-supplement-183: Oracle Instant Client ODBC supplement
desktop/pdf-viewer/poppler-viewer: Poppler PDF viewer
desktop/remote-desktop/tigervnc: TigerVNC client
desktop/system-monitor/gnome-system-monitor: The GNOME tool to manage running processes and monitor system resources
desktop/xdg/desktop-file-utils: Utilities for manipulating .desktop files
developer/build/cmake: A cross-platform, open-source make system
developer/build/meson: Meson Build System
developer/build/scons: SCons - software construction tool
developer/debug/scat: solariscat - Crash dump anlysis tool
developer/debug/valgrind: Valgrind, debugging and profiling tool
developer/documentation-tool/docutils: Docutils - Python Documentation Utilities
developer/documentation-tool/sphinx: Sphinx - Python documentation generator
developer/documentation-tool/sphinx/alabaster: A configurable sidebar-enabled Sphinx theme
developer/gnome/devhelp: API documentation browser
developer/icu: International Components for Unicode
developer/java/jdk: Java Platform Standard Edition Development Kit (VERSION) java -version will display 1.7.0_331-b06
developer/java/jdk-7: Java Platform Standard Edition Development Kit (1.7.0_331-b06)
developer/java/jdk-8: Java Platform Standard Edition Development Kit (1.8.0_321-b07)
developer/java/junit: Junit - Java unit testing framework
developer/meld: meld - graphical diff and merge tool
developer/nasm: Netwide Assembler
developer/opensolaris/pkg5: Dependencies required to build the pkg(7) project
developer/oracle/instantclient/sdk-121: Oracle Instant Client SDK
developer/oracle/instantclient/sdk-122: Oracle Instant Client SDK
developer/oracle/instantclient/sdk-183: Oracle Instant Client SDK
developer/python/pylint: pylint - python code static checker
developer/python/pylint-27: pylint - python code static checker
developer/python/pylint-37: pylint - python code static checker
developer/python/pylint-39: pylint - python code static checker
developer/sbsigntool: sbsigntool is a UEFI utility
developer/test/buildbot-worker: Worker daemon for the Buildbot continuous integration framework
developer/versioning/mercurial: The Mercurial Source Control Management System
developer/versioning/mercurial-27: The Mercurial Source Control Management System
developer/versioning/mercurial-37: The Mercurial Source Control Management System
developer/versioning/mercurial/hg-git: Hg-Git Mercurial extension
developer/versioning/mercurial/hg-git-27: Hg-Git Mercurial extension
developer/versioning/mercurial/hg-git-37: Hg-Git Mercurial extension
developer/versioning/mercurial58: The Mercurial Source Control Management System
diagnostic/acpidump: acpidump - utilities used to display ACPI tables
diagnostic/constype: constype - print type of console
diagnostic/nmap: Network exploration tool and security / port scanner.
diagnostic/nmap/zenmap: Network exploration and security / port scanner GUI
diagnostic/wireshark: Graphical network protocol analyzer
diagnostic/wireshark/tshark: Command-line network protocol analyzer
diagnostic/wireshark/wireshark-common: Libraries and Tools used by Wireshark and TShark Network protocol analyzers
documentation/gnome/gnome-devel-docs: GNOME developer documentation
documentation/gnome/gnome-user-docs: The GNOME Desktop User Documentation
editor/gedit: GNOME text editor
editor/gedit/gedit-plugins: gedit plugins
editor/gvim: Vi IMproved (GUI)
editor/hexedit: Hexedit - a command-line binary file editor
editor/nano: nano: a small text editor
editor/vim: Vi IMproved
editor/vim/vim-core: Vi IMproved (core executables)
file/lndir: lndir: create a shadow directory of symbolic links to another directory tree
firmware/system/fallback-boot: Fallback Boot image
gnome/accessibility/orca: Orca screen reader/magnifier
gnome/disk-analyzer/baobab: The GNOME Disk Usage Analyzer
gnome/gnome-calculator: The GNOME Desktop Calculator
gnome/gnome-calendar: Gnome Calendar
gnome/gnome-font-viewer: GNOME Font Viewer and Thumbnailer
gnome/gnome-keyring: A collection of components in GNOME for storing secrets, passwords, keys, and certificates
gnome/gnome-screenshot: The GNOME Screenshot Tool
gnome/gnome-shell: GNOME 3 User Shell
gnome/gsettings-desktop-schemas: A collection of GSettings schemas for settings shared by various components of the GNOME Desktop
gnome/media/totem: A video playback application designed to work with GNOME 3
gnome/theme/background/os-backgrounds: Default Oracle Solaris background for the GNOME desktop
gnome/theme/background/os-backgrounds-extra: Extra Oracle Solaris backgrounds for the GNOME desktop
group/system/solaris-desktop: Oracle Solaris Desktop
group/system/solaris-large-server: Oracle Solaris Large Server
group/system/solaris-small-server: Oracle Solaris Small Server
image/gnome-backgrounds: Selection of backgrounds for the GNOME desktop
image/gnuplot: gnuplot - plotting utility
image/graphviz: Graph visualization software
image/graphviz/graphviz-java: Java bindings for Graphviz
image/graphviz/graphviz-lua: Lua bindings for Graphviz
image/graphviz/graphviz-perl: Perl bindings for Graphviz
image/graphviz/graphviz-perl-532: Perl 5.32 bindings for Graphviz
image/graphviz/graphviz-php: PHP bindings for Graphviz
image/graphviz/graphviz-php-73: PHP 7.3 bindings for Graphviz
image/graphviz/graphviz-php-74: PHP 7.4 bindings for Graphviz
image/graphviz/graphviz-python: Python bindings for Graphviz
image/graphviz/graphviz-python-27: Python 2.7 bindings for Graphviz
image/graphviz/graphviz-python-37: Python 3.7 bindings for Graphviz
image/graphviz/graphviz-python-39: Python 3.9 bindings for Graphviz
image/graphviz/graphviz-ruby: Ruby bindings for Graphviz
image/graphviz/graphviz-sharp: C# bindings for Graphviz
image/graphviz/graphviz-tcl: Tcl bindings for Graphviz
image/imagemagick: ImageMagick - Image Manipulation Utilities and Libraries
image/library/libexif: An EXIF tag parsing library for digital cameras
image/library/libjpeg: jpeg - The Independent JPEG Groups JPEG software
image/library/libpng: Portable Network Graphics library
image/library/libpng14: Portable Network Graphics library version 1.4
image/library/libpng16: Portable Network Graphics library version 1.6
image/library/librsvg: A library to render SVG files using cairo
image/viewer/eog: Eye of GNOME is the GNOME image viewer
legacy/database/mysql-55: MySQL 5.5 Database Management System
legacy/database/mysql-55/client: MySQL 5.5 Client Executables
legacy/database/mysql-55/library: MySQL 5.5 client libraries and plugins
legacy/database/mysql-55/tests: MySQL 5.5 testsuite
library/c++/glibmm: C++ API for the glib2 library
library/cloog: CLooG - The Chunky LOOp Generator
library/desktop/at-spi2-core: The Assistive Technology Service Provider Interface (AT-SPI) Core
library/desktop/c++/atkmm: The official C++ interface for the ATK accessibility toolkit library
library/desktop/gdk-pixbuf: GdkPixbuf library for image loading and manipulation
library/desktop/gnome-autoar: gnome-autoar
library/desktop/graphene: A thin layer of graphic data types
library/desktop/grilo-plugins: A collection of plugins for Grilo
library/desktop/gsound: Library for playing system sounds
library/desktop/gtk-vnc: A GTK widget for VNC clients
library/desktop/gtk2: GTK+ toolkit Version 2.x
library/desktop/gtk2/gtk-backend-cups: GTK+ 2.x - GIMP toolkit libraries - CUPS Print Backend
library/desktop/gtk3: GTK+, or the GIMP Toolkit, is a multi-platform toolkit for creating graphical user interfaces
library/desktop/gtk3/gtk-backend-cups: GTK+ 3.x - GIMP toolkit libraries - CUPS Print Backend
library/desktop/gtksourceview: GNOME syntax highlighting text widget for GTK3
library/desktop/libdazzle: library providing special effects API for GNOME3
library/desktop/libgdata: A GLib-based library for accessing online service APIs using the GData protocol
library/desktop/libgee: A utility library providing GObject-based interfaces and classes for commonly used data structures
library/desktop/libgweather: The location/timezone/weather library/database for GNOME
library/desktop/libgxps: A GObject-based library for handling and rendering XPS documents
library/desktop/libhandy: Building blocks for modern adaptive GNOME applications
library/desktop/pango: Pango international text layout library
library/desktop/webkitgtk4: A library port of the WebKit rendering engine
library/gd: The Graphics Draw Library
library/gmp: GNU Multiple Precision Bignum Library
library/gnome/gnome-desktop: Base GNOME Desktop Component Functionality
library/gnome/libmediaart: The GNOME media art extraction and cache management library
library/gnome/libsecret: A library for storing and retrieving passwords and other secrets
library/gnome/libzapojit: A GLib/GObject wrapper for online service APIs
library/gnome/sushi: The GNOME file previewer for Nautilus
library/gnome/vte3: The GNOME virtual terminal emulator widget library for GTK3+
library/graphics/pixman: Pixman: The pixel-manipulation library for X and Cairo.
library/icu: International Components for Unicode
library/java/java-demo: Java Sample and Demonstration Applications (VERSION) java -version will display 1.7.0_331-b06
library/java/java-demo-7: Java Sample and Demonstration Applications (1.7.0_331-b06)
library/java/java-demo-8: Java Sample and Demonstration Applications (1.8.0_321-b07)
library/javascript/d3: A Javascript visualization library for HTML and SVG
library/lasso: Lasso library
library/libmozjs-78: Mozilla's SpiderMonkey engine JavaScript library v78
library/libssh2: libssh2 - client-side C library implementing the SSH2 protocol
library/media-player/totem-pl-parser: A GObject-based library to parse and write a variety of playlist formats
library/motif: Motif toolkit
library/myspell/dictionaries: Myspell and Hunspell spell dictionary files
library/ncurses: A CRT screen handling and optimization package.
library/perl-5/alien-libxml2-532: Alien::Libxml2 - Install the C libxml2 library on your system
library/perl-5/openscap-532: Perl 5.32 bindings for the Open implementation of SCAP
library/perl-5/perl-tk: CPAN Perl Tk module
library/perl-5/perl-tk-532: CPAN Perl Tk module
library/perl-5/sun-solaris-532: Perl Sun::Solaris Modules
library/print/cups-libs: Common Unix Print System (CUPS) runtime libraries
library/python/asn1crypto: Python ASN.1 library
library/python/asn1crypto-27: Python ASN.1 library
library/python/asn1crypto-37: Python ASN.1 library
library/python/asn1crypto-39: Python ASN.1 library
library/python/astroid: astroid - Python Abstract Syntax Tree New Generation
library/python/astroid-27: astroid - Python Abstract Syntax Tree New Generation
library/python/astroid-37: astroid - Python Abstract Syntax Tree New Generation
library/python/astroid-39: astroid - Python Abstract Syntax Tree New Generation
library/python/atomicwrites: Atomic file writes.
library/python/atomicwrites-27: Atomic file writes.
library/python/atomicwrites-37: Atomic file writes.
library/python/atomicwrites-39: Atomic file writes.
library/python/babel: Internationalization Utilities for Python
library/python/babel-37: Internationalization Utilities for Python
library/python/babel-39: Internationalization Utilities for Python
library/python/bandit: bandit - python code static checker
library/python/bandit-37: bandit - python code static checker
library/python/bandit-39: bandit - python code static checker
library/python/beautifulsoup4: Screen-scraping library
library/python/beautifulsoup4-27: Screen-scraping library
library/python/beautifulsoup4-37: Screen-scraping library
library/python/beautifulsoup4-39: Screen-scraping library
library/python/cryptography: Python crytographic recipes and primitives
library/python/cryptography-27: Python crytographic recipes and primitives
library/python/cryptography-37: Python crytographic recipes and primitives
library/python/cryptography-39: Python crytographic recipes and primitives
library/python/dateutil: Extensions to the standard datetime module
library/python/dateutil-27: Extensions to the standard datetime module
library/python/dateutil-37: Extensions to the standard datetime module
library/python/dateutil-39: Extensions to the standard datetime module
library/python/dbus-python: Python bindings for D-Bus
library/python/dbus-python-37: Python 3.7 bindings for D-Bus
library/python/dbus-python-39: Python 3.9 bindings for D-Bus
library/python/debtcollector: A collection of Python deprecation patterns and strategies
library/python/debtcollector-27: A collection of Python deprecation patterns and strategies
library/python/debtcollector-37: A collection of Python deprecation patterns and strategies
library/python/debtcollector-39: A collection of Python deprecation patterns and strategies
library/python/django: Django Python web framework
library/python/django-37: Django Python web framework
library/python/django-39: Django Python web framework
library/python/funcsigs: Python function signatures from PEP362 for Python 2.6, 2.7 and 3.2+
library/python/funcsigs-27: Python function signatures from PEP362 for Python 2.6, 2.7 and 3.2+
library/python/gst-python-1: Python bindings for GStreamer 1
library/python/gst-python-1-37: Python 3.7 bindings for GStreamer 1
library/python/gst-python-1-39: Python 3.9 bindings for GStreamer 1
library/python/importlib-metadata: Read metadata from Python packages.
library/python/importlib-metadata-37: Read metadata from Python packages.
library/python/importlib-metadata-39: Read metadata from Python packages.
library/python/jinja2: Full featured template engine for Python
library/python/jinja2-27: Full featured template engine for Python
library/python/jinja2-37: Full featured template engine for Python
library/python/jinja2-39: Full featured template engine for Python
library/python/mako: Template library written in Python
library/python/mako-37: Template library written in Python
library/python/mako-39: Template library written in Python
library/python/markupsafe: Python HTML string module.
library/python/markupsafe-27: Python HTML string module.
library/python/markupsafe-37: Python HTML string module.
library/python/markupsafe-39: Python HTML string module.
library/python/mccabe: McCabe checker, plugin for Python code checkers
library/python/mccabe-27: McCabe checker, plugin for Python code checkers
library/python/mccabe-37: McCabe checker, plugin for Python code checkers
library/python/mccabe-39: McCabe checker, plugin for Python code checkers
library/python/msgpack: MessagePack (de)serializer
library/python/msgpack-27: MessagePack (de)serializer
library/python/msgpack-37: MessagePack (de)serializer
library/python/msgpack-39: MessagePack (de)serializer
library/python/net-snmp-37: The Net-SNMP - Python 3.7 bindings
library/python/net-snmp-39: The Net-SNMP - Python 3.9 bindings
library/python/netifaces: Portable access to network interfaces from Python
library/python/netifaces-27: Portable access to network interfaces from Python
library/python/netifaces-37: Portable access to network interfaces from Python
library/python/netifaces-39: Portable access to network interfaces from Python
library/python/openscap-37: Python 3.7 bindings for the Open implementation of SCAP
library/python/oslo.config: Oslo configuration library
library/python/oslo.config-27: Oslo configuration library
library/python/oslo.config-37: Oslo configuration library
library/python/oslo.config-39: Oslo configuration library
library/python/oslo.context: Oslo context library
library/python/oslo.context-27: Oslo context library
library/python/oslo.context-37: Oslo context library
library/python/oslo.context-39: Oslo context library
library/python/oslo.i18n: Oslo internationalization utilities
library/python/oslo.i18n-27: Oslo internationalization utilities
library/python/oslo.i18n-37: Oslo internationalization utilities
library/python/oslo.i18n-39: Oslo internationalization utilities
library/python/oslo.log: Oslo log library
library/python/oslo.log-27: Oslo log library
library/python/oslo.log-37: Oslo log library
library/python/oslo.log-39: Oslo log library
library/python/oslo.serialization: Oslo JSON serialization library
library/python/oslo.serialization-27: Oslo JSON serialization library
library/python/oslo.serialization-37: Oslo JSON serialization library
library/python/oslo.serialization-39: Oslo JSON serialization library
library/python/oslo.utils: Oslo utility library
library/python/oslo.utils-27: Oslo utility library
library/python/oslo.utils-37: Oslo utility library
library/python/oslo.utils-39: Oslo utility library
library/python/packaging: Core utilities for Python packages.
library/python/packaging-37: Core utilities for Python packages.
library/python/packaging-39: Core utilities for Python packages.
library/python/pbr: Python Build Reasonableness
library/python/pbr-27: Python Build Reasonableness
library/python/pbr-37: Python Build Reasonableness
library/python/pbr-39: Python Build Reasonableness
library/python/pip: A tool for installing and managing Python packages
library/python/pip-27: A tool for installing and managing Python packages
library/python/pip-37: A tool for installing and managing Python packages
library/python/pip-39: A tool for installing and managing Python packages
library/python/pluggy: A minimalist production ready plugin system.
library/python/pluggy-27: A minimalist production ready plugin system.
library/python/pluggy-37: A minimalist production ready plugin system.
library/python/pluggy-39: A minimalist production ready plugin system.
library/python/pyatspi2: Python API to AT-SPI on D-Bus
library/python/pyatspi2-27: Python API to AT-SPI on D-Bus
library/python/pyatspi2-34: Python API to AT-SPI on D-Bus
library/python/pyatspi2-35: Python API to AT-SPI on D-Bus
library/python/pyatspi2-37: Python API to AT-SPI on D-Bus
library/python/pyatspi2-39: Python API to AT-SPI on D-Bus
library/python/pycairo: Python bindings for the Cairo graphics library
library/python/pycairo-27: Python 2.7 bindings for the Cairo graphics library
library/python/pycairo-37: Python 3.7 bindings for the Cairo graphics library
library/python/pycairo-39: Python 3.9 bindings for the Cairo graphics library
library/python/pygobject-27: Python 2.7 bindings for the GObject library
library/python/pygobject-3: Python bindings for GLib/Gobject/GIO/GTK+
library/python/pygobject-3-37: Python 3.7 bindings for GLib/Gobject/GIO/GTK+
library/python/pygobject-3-39: Python 3.9 bindings for GLib/Gobject/GIO/GTK+
library/python/pyparsing: Python parsing module
library/python/pyparsing-27: Python parsing module
library/python/pyparsing-37: Python parsing module
library/python/pyparsing-39: Python parsing module
library/python/python-mysql: MySQL database connector for Python
library/python/python-mysql-27: MySQL database connector for Python
library/python/python-mysql-37: MySQL database connector for Python
library/python/python-mysql-39: MySQL database connector for Python
library/python/python-twisted: Event-based framework for internet applications
library/python/python-twisted-27: Event-based framework for internet applications
library/python/python-twisted-37: Event-based framework for internet applications
library/python/python-twisted-39: Event-based framework for internet applications
library/python/pytz: Python time zone library
library/python/pytz-27: Python time zone library
library/python/pytz-37: Python time zone library
library/python/pytz-39: Python time zone library
library/python/rfc3986: Validating URI References per RFC 3986.
library/python/rfc3986-27: Validating URI References per RFC 3986.
library/python/rfc3986-37: Validating URI References per RFC 3986.
library/python/rfc3986-39: Validating URI References per RFC 3986.
library/python/setuptools_scm: Package to manage versions by scm tags
library/python/setuptools_scm-27: Package to manage versions by scm tags
library/python/setuptools_scm-37: Package to manage versions by scm tags
library/python/setuptools_scm-39: Package to manage versions by scm tags
library/python/simplejson: JSON (JavaScript Object Notation) encoder/decoder for Python
library/python/simplejson-27: JSON (JavaScript Object Notation) encoder/decoder for Python
library/python/simplejson-37: JSON (JavaScript Object Notation) encoder/decoder for Python
library/python/simplejson-39: JSON (JavaScript Object Notation) encoder/decoder for Python
library/python/six: Python 2 and 3 compatibility utilities
library/python/six-27: Python 2 and 3 compatibility utilities
library/python/six-37: Python 2 and 3 compatibility utilities
library/python/six-39: Python 2 and 3 compatibility utilities
library/python/stevedore: Manage dynamic plugins for Python applications
library/python/stevedore-27: Manage dynamic plugins for Python applications
library/python/stevedore-37: Manage dynamic plugins for Python applications
library/python/stevedore-39: Manage dynamic plugins for Python applications
library/python/testtools: Tasteful testing for Python
library/python/testtools-37: Tasteful testing for Python
library/python/testtools-39: Tasteful testing for Python
library/python/tkinter-39: Python 3.9 bindings to tcl/tk
library/python/typing-extensions: Backported and Experimental Type Hints for Python.
library/python/typing-extensions-37: Backported and Experimental Type Hints for Python.
library/python/typing-extensions-39: Backported and Experimental Type Hints for Python.
library/python/wrapt: A Python module for decorators, wrappers and monkey patching.
library/python/wrapt-27: A Python module for decorators, wrappers and monkey patching.
library/python/wrapt-37: A Python module for decorators, wrappers and monkey patching.
library/python/wrapt-39: A Python module for decorators, wrappers and monkey patching.
library/python/zipp: Backport of pathlib-compatible object wrapper for zip files.
library/python/zipp-37: Backport of pathlib-compatible object wrapper for zip files.
library/python/zipp-39: Backport of pathlib-compatible object wrapper for zip files.
library/sdl: libsdl - Simple DirectMedia Layer
library/security/nss: Network Security Services libraries and header files
library/security/openssl: OpenSSL - a Toolkit for Secure Sockets Layer (SSL v2/v3) and Transport Layer (TLS v1) protocols and general purpose cryptographic library
library/security/openssl-11: OpenSSL - a Toolkit for Transport Layer (TLS v1+) protocols and general purpose cryptographic library
library/security/openssl-3: OpenSSL - a Toolkit for Transport Layer (TLS v1+) protocols and general purpose cryptographic library
library/security/openssl-3/fips-140-provider: FIPS-140 provider for OpenSSL 3 library
library/security/openssl-3/legacy-provider: legacy provider for OpenSSL 3 library
library/security/openssl/openssl-fips-140: FIPS 140-2 Capable OpenSSL libraries
mail/fetchmail: fetch mail from a POP, IMAP, ETRN, or ODMR-capable server
mail/mailman: GNU Mailing List Manager
mail/mutt: The Mutt E-Mail Client
mail/thunderbird: Mozilla Thunderbird Email/Newsgroup Client
network/chat/irssi: irssi - a terminal based IRC client
network/dns/bind: BIND DNS tools
network/firewall/firewall-pflog: pflog - PF packet log daemon
network/open-fabrics: Oracle Solaris OpenFabrics userland libraries and applications
network/ssh: OpenSSH client and associated utilities
package/pkg: Image Packaging System
package/pkg-37: Python 3.7 support modules for the Image Packaging System
package/pkg-39: Python 3.9 support modules for the Image Packaging System
package/pkg/depot: IPS Depot
package/pkg/system-repository: IPS System Repository
package/pkg/zones-proxy: System Repository Zone support
print/cups: Common Unix Print System (CUPS)
print/filter/hplip: hplip - HP Linux Printing
print/filter/poppler: Poppler PDF rendering tool
print/paps: paps text to PostScript converter
runtime/java/jre: Java Platform Standard Edition Runtime Environment (VERSION) java -version will display 1.7.0_331-b06
runtime/java/jre-7: Java Platform Standard Edition Runtime Environment (1.7.0_331-b06)
runtime/java/jre-8: Java Platform Standard Edition Runtime Environment (1.8.0_321-b07)
runtime/nodejs: Node.js
runtime/nodejs/nodejs-14: Node.js
runtime/nodejs/nodejs-16: Node.js
runtime/python-39: The Python interpreter, libraries and utilities
security/compliance/openscap: Open implementation of SCAP; a line of standards managed by NIST
service/network/dns/bind: BIND DNS name server and configuration tools.
service/network/ftp: FTP Server and Utilities
service/network/ptp: Precision Time Protocol (PTP) IEEE 1588-2008 (Version 2)
service/network/samba: samba - A Windows SMB/CIFS fileserver for UNIX
service/network/ssh: OpenSSH servers and SSH (Secure Shell) services
shell/bash: GNU Bourne-Again shell (bash)
shell/tcsh: Tenex C-shell (tcsh)
source/locale/localedef: localedef source data
support/critical-patch-update/solaris-11-cpu: Oracle Solaris 11.4.42.113.1 Critical Patch Update 2022.2-1
system/data/timezone: Timezone Definition
system/display-manager/desktop-startup: Desktop startup scripts in xinitrc.d
system/display-manager/gdm: GNOME Display Manager (GDM)
system/font/daewoo-misc: Korean bitmap fonts from Daewoo Electronics
system/font/isas-misc: Institute of Software, Academia Sinica GB2312-80 bitmap fonts
system/font/jis-misc: Japanese Industrial Standard 9051-1984 bitmap fonts
system/font/misc-meltho: Meltho Syriac fonts
system/font/sun-ja-bitmap: Sun Japanese Bitmap fonts
system/font/sun-ja-bitmap-unicode: Sun Japanese Bitmap fonts - Unicode
system/font/truetype/anonymous-pro: Anonymous Pro Fonts
system/font/truetype/arabeyes: Arabeyes Arabic TrueType fonts
system/font/truetype/arphic-ukai: Chinese TrueType font
system/font/truetype/arphic-uming: Chinese TrueType font
system/font/truetype/baekmuk: Baekmuk Korean fonts
system/font/truetype/bh-luxi: Luxi font family from Bigelow & Holmes
system/font/truetype/bitstream-vera: Bitstream Vera fonts
system/font/truetype/bpg-georgian: BPG Georgian fonts
system/font/truetype/croscorefonts: Google Croscore Fonts
system/font/truetype/freefont: GNU FreeFont fonts
system/font/truetype/gentium: Gentium font
system/font/truetype/google-droid: Droid font family from Google's Android project
system/font/truetype/hanyang-ko: HanYang Korean TrueType fonts
system/font/truetype/hanyang-ko-core: HanYang Korean TrueType core fonts
system/font/truetype/indic-fonts-core: Indic TrueType fonts
system/font/truetype/ipafont: IPA Font Mincho and Gothic
system/font/truetype/kacst: Kacst Fonts
system/font/truetype/liberation: Liberation fonts
system/font/truetype/thai-scalable: Thai TrueType fonts
system/font/truetype/unfonts-ko-core: Un-Fonts Korean TrueType fonts
system/font/truetype/unfonts-ko-extra: Un-Fonts Korean TrueType fonts
system/font/truetype/unifont: Unifont
system/font/truetype/wqy-zenhei: WenQuanYi Zen Hei Chinese TrueType font
system/font/xorg/cyrillic: Cyrillic bitmap fonts from X.Org Foundation
system/font/xorg/iso8859-1: X.Org Foundation X11 iso8859-1 bitmap fonts
system/font/xorg/iso8859-10: X.Org Foundation X11 iso8859-10 bitmap fonts
system/font/xorg/iso8859-11: X.Org Foundation X11 iso8859-11 bitmap fonts
system/font/xorg/iso8859-13: X.Org Foundation X11 iso8859-13 bitmap fonts
system/font/xorg/iso8859-14: X.Org Foundation X11 iso8859-14 bitmap fonts
system/font/xorg/iso8859-15: X.Org Foundation X11 iso8859-15 bitmap fonts
system/font/xorg/iso8859-16: X.Org Foundation X11 iso8859-16 bitmap fonts
system/font/xorg/iso8859-2: X.Org Foundation X11 iso8859-2 bitmap fonts
system/font/xorg/iso8859-3: X.Org Foundation X11 iso8859-3 bitmap fonts
system/font/xorg/iso8859-4: X.Org Foundation X11 iso8859-4 bitmap fonts
system/font/xorg/iso8859-5: X.Org Foundation X11 iso8859-5 bitmap fonts
system/font/xorg/iso8859-7: X.Org Foundation X11 iso8859-7 bitmap fonts
system/font/xorg/iso8859-8: X.Org Foundation X11 iso8859-8 bitmap fonts
system/font/xorg/iso8859-9: X.Org Foundation X11 iso8859-9 bitmap fonts
system/font/xorg/xorg-core: X.Org Foundation X11 core fonts
system/input-method/ibus: IBus - Intelligent Input Bus
system/library/accountsservice: AccountsService
system/library/polkit: polkit authorization toolkit
system/locale: language support components
system/management/ansible: IT automation platform
system/management/cloudbase-init: Portable OpenStack Cloud Initialization Service
system/management/puppet: Puppet agent - The Puppet daemon that runs on the target system (node).
system/management/puppet-master: Puppet master - configuration management toolkit
system/management/puppet/puppetlabs-apache: Apache Puppet Module
system/management/puppet/puppetlabs-concat: Concat Puppet Module
system/management/puppet/puppetlabs-inifile: Inifile Puppet Module
system/management/puppet/puppetlabs-mysql: Mysql Puppet Module
system/management/puppet/puppetlabs-ntp: NTP Puppet Module
system/management/puppet/puppetlabs-stdlib: Stdlib Puppet Module
system/management/snmp/net-snmp: Net-SNMP Agent files and libraries
system/management/snmp/net-snmp/addons: Net-SNMP addon libraries
system/management/snmp/net-snmp/demo: Net-SNMP demo modules
system/storage/sg3_utils: Utilities for devices that use SCSI command sets
terminal/luit: luit - Locale and ISO 2022 support for Unicode terminals
terminal/pconsole: Parallel console
text/convmv: Filename Encoding Conversion Tool
text/diffstat: A utility which provides statistics based on the output of diff
text/gnu-gettext: GNU gettext
text/texinfo: Documentation system for on-line information and printed output
web/browser/firefox: Mozilla Firefox Web browser
web/curl: The CURL Network Utility and Library
web/data/firefox-bookmarks: Firefox's default bookmark
web/java-servlet/tomcat-8: Tomcat Servlet/JSP Container
web/java-servlet/tomcat-8/tomcat-admin: Tomcat Servlet/JSP Container - admin applications
web/java-servlet/tomcat-8/tomcat-examples: Tomcat Servlet/JSP Container - example applications
web/php-73: PHP scripting language
web/php-74: PHP scripting language
web/php-80: PHP scripting language
web/php-common: common components for PHP
web/server/apache-24: Apache Web Server V2.4
web/server/apache-24/module/apache-dbd: SQL database connections plugin for Apache Web Server V2.4
web/server/apache-24/module/apache-gss: Kerberos authenticating plugin for Apache Web Server V2.4
web/server/apache-24/module/apache-ldap: LDAP support plugins for Apache Web Server V2.4
web/server/apache-24/module/apache-lua: Lua support plugin for Apache Web Server V2.4
web/server/apache-24/module/apache-mellon: SAML2.0 authentication module for Apache
web/server/apache-24/module/apache-security: Mod Security plugin for Apache Web Server V2.4
web/server/apache-24/module/apache-ssl: SSL (default) support plugin for Apache Web Server V2.4
web/server/apache-24/module/apache-ssl-fips-140: SSL FIPS 140-2 support plugin for Apache Web Server V2.4
x11/colormap-utilities: X Colormap utilities
x11/demo: X Window System demo programs
x11/diagnostic/x11-info-clients: X Window System diagnostic and information display clients
x11/diagnostic/xscope: xscope - X Window Protocol Viewer
x11/documentation/xorg-docs: X Window System common documentation
x11/header/x11-protocols: X Window System protocol definitions
x11/keyboard/accessx: AccessX keyboard accessibility configuration program.
x11/keyboard/xkb-utilities: X Window System X Keyboard Extension (XKB) Utilities
x11/library/libdmx: libdmx - X Window System DMX (Distributed Multihead X) extension library
x11/library/libxevie: libXevie - X Event Interception Extension (XEvIE) client library
x11/library/libxfixes: libXfixes - XFIXES extension client library
x11/library/libxfont: libXfont - library for X servers and utilities to access font files
x11/library/libxfont2: libXfont2 - version 2 of the library for X servers and utilities to access font files
x11/library/libxft: libXft - X FreeType library
x11/library/libxp: libXp - X Print Client Library
x11/library/libxpresent: Xlib compatible API for the Present extension
x11/library/libxrender: libXrender - library for the Render Extension to the X11 protocol
x11/library/libxtst: libXtst - X Test and Record extensions client library
x11/library/libxv: libXv - X Video (Xv) extension client library
x11/library/libxxf86vm: libXxf86vm - XFree86-VidMode X extension client library
x11/library/toolkit/libxt: libXt - X Toolkit Intrinsics library
x11/modeline-utilities: Utilities for generating modelines
x11/server/xdmx: Xdmx - Distributed Multihead X
x11/server/xephyr: Xephyr - X server displaying to a window on a pre-existing X display
x11/server/xorg: Xorg - X11R7 X server
x11/server/xorg/driver/xorg-input-keyboard: xf86-input-kbd - Keyboard input driver for the Xorg X server
x11/server/xorg/driver/xorg-input-vmmouse: xf86-input-vmmouse - VMWare guest mouse input driver for the Xorg X server
x11/server/xorg/driver/xorg-input-void: xf86-input-void - null input driver for Xorg server
x11/server/xorg/driver/xorg-video: Xorg server video drivers group
x11/server/xorg/driver/xorg-video-ast: xf86-video-ast - ASpeed Technologies graphics driver for Xorg X server
x11/server/xorg/driver/xorg-video-cirrus: xf86-video-cirrus - Cirrus Logic video driver for the Xorg X server
x11/server/xorg/driver/xorg-video-dummy: xf86-video-dummy - virtual/offscreen frame buffer driver for the Xorg X server
x11/server/xorg/driver/xorg-video-openchrome: xf86-video-openchrome - VIA Unichrome video driver for the Xorg X server
x11/server/xserver-common: X server common files
x11/server/xvfb: Xvfb - virtual framebuffer X server
x11/server/xvnc: TigerVNC X11/VNC server
x11/session/smproxy: smproxy - X Session Manager Proxy
x11/session/xinit: xinit & startx - X Window System manual session startup
x11/x11-server-utilities: X11 server state utilities
x11/x11-window-dump: X11 Window Dump (screenshot) utilities
x11/xclipboard: xclipboard & xcutsel tools for clipboard management
x11/xconsole: xconsole - monitor system console messages with X
x11/xmag: xmag - magnify parts of the screen


--------------------------------------------------------------------------------

Superseded IDRs 


When a bug fix that is included in an Interim Diagnostic Relief (IDR) is 
addressed in a SRU, the IDR is superseded. Prior to updating this SRU, you do 
not necessarily need to remove the IDR that has been superseded. Running the pkg 
update command updates the system to the latest SRU and removes the relevant IDR 
from the system. However, the update fails if an IDR exists in the system and 
the IDR has not been superseded. 
 
The following IDRs are superseded in this SRU: 


   * 4400.1
   * 4530.1
   * 4652.2
   * 4720.2
   * 4730.2
   * 4732.2
   * 4763.3
   * 4785.2
   * 4830.2
   * 4840.1
   * 4851.5
   * 4873.1
   * 4875.1
   * 4876.1
   * 4885.2
   * 4895.3
   * 4896.1
   * 4898.1
   * 4900.1
   * 4907.1
   * 4939.1
   * 4941.1
   * 4944.2
   * 4945.1
   * 4947.1
   * 4949.1
   * 4951.1
   * 4953.1
   * 4956.1
   * 4960.1
   * 4961.1
   * 4963.1
   * 4964.1
   * 4968.1
   * 4969.1
   * 4973.2
   * 4979.1
   * 4985.1
   * 4986.1
   * 4987.1
   * 4991.1
   * 4996.1


--------------------------------------------------------------------------------

About Oracle Solaris 11 Support Repository Updates 


Oracle Solaris 11 uses the Image Packaging System (IPS) repository to update all 
packages that are available in your system. Customers with a support contract 
have access to the support repository to periodically update their Oracle 
Solaris 11 systems. Updates from the Oracle Solaris 11 support repository are 
available as support repository updates (SRUs) and each SRU provides a 
comprehensive set of important bug fixes and enhancements. Oracle Solaris 
updates and SRUs together provide a high quality, long-term support train for 
all Oracle Solaris 11 customers. 
 
The update path for Oracle Solaris 11 11/11 users is to update to Oracle Solaris 
11.4 and apply subsequent SRUs. For the complete list of Oracle Solaris 11.4 
SRUs and downloads, see Oracle Solaris 11.4 SRU Index: 
https://support.oracle.com/rs?type=doc&id=2433412.1. 
 
Some important points to consider before applying or installing SRUs: 


  * SRUs can be installed on systems covered by an appropriate Oracle support 
    contract. 
  * SRUs are updates to Oracle Solaris, but are not complete images. They 
    provide bug fixes and incremental changes that are relative to the preceding 
    release, for example Oracle Solaris 11.4. 
  * The SRU repository must include the base packages for the Oracle Solaris 11 
    Update that they apply to. 
  * If a subset of the SRUs are added to a repository, only those SRUs can be 
    installed provided that the corresponding Oracle Solaris 11 Update base 
    packages are included in the repository. 
  * If the base packages for the relevant Oracle Solaris 11 Update are not 
    included in the repository containing the SRUs, failures will occur during 
    various packaging operations. 
  * SRUs are released and available for download on a monthly basis. 
  * The release date of every third SRU coincides with Oracle's quarterly 
    Critical Patch Update (CPU). The CPU Documentation: 
    http://www.oracle.com/technetwork/topics/security/alerts-086861.html 
    references security vulnerabilities fixed in each SRU. This Critical Patch 
    Update Advisory lists all relevant Oracle products. 
     
    To see the latest CPU, click the Critical Patch Update listed in the table. 
    To see the security vulnerabilities that are fixed in recent Oracle Solaris 
    SRUs, scroll down in the CPU document and click the "Oracle and Sun Systems 
    Products Suite" link. This document also has a reference section to 
    historical information for older Oracle Solaris SRUs. 

  * SRUs must be applied during proactive maintenance to prevent issues, or when 
    asked by Oracle Support for reactive break/fix maintenance situations. 
    Customers should schedule such maintenance windows at least in line with the 
    Oracle Critical Patch Update cycle, or more frequently as required by the 
    industry and/or company compliance requirements. Note also that at times 
    Oracle may release security vulnerability fixes outside of the normal 
    Critical Patch Update cycle. 
  * If a system has an Interim Diagnostic Relief (IDR) installed, check if the 
    issues addressed by the IDR are fixed in the SRU that you plan to install. 
    If the issues are not fixed, you need to request a new IDR for that SRU 
    several weeks in advance of the planned maintenance window. 
  * The SRU zip files on MOS provide an alternative download option to 
    synchronize network based repository. 

For latest support products news, and SRU availability email notifications, use 
the My Oracle Support Hot Topics E-Mail: 
https://support.oracle.com/rs?type=doc&id=793436.1#aref_section23 feature. 
 
For a complete list of Oracle Solaris 11.4 SRUs and downloads, see Oracle 
Solaris 11.4 SRU Index: https://support.oracle.com/rs?type=doc&id=2433412.1. 
 
For instructions about applying SRUs to a system and managing a package 
repository, see Managing The Repository. 


--------------------------------------------------------------------------------

Determining the Oracle Solaris Version Installed on Your System 


To check the Oracle Solaris version installed on your system, use the pkg list 
entire command. 
 
  # pkg list entire 
  NAME (PUBLISHER)   VERSION 
  entire          11.4-11.4.1.0.1.3.0 
 
Oracle Solaris 11.4 SRU versions use a different naming convention than Oracle 
Solaris 11.3 SRU.  It follows the 7-digit 
Release.Update.SRU.reserved.reserved.Build.Respin format. In the example, 
11.4-11.4.1.0.1.3.0 indicates Oracle Solaris 11.4, SRU version 1, reserved 0, 
reserved 1, build 3, and no respin. 
 
For more information, see the Oracle Solaris 11 package branch version scheme: 
https://support.oracle.com/rs?type=doc&id=1378134.1. 


--------------------------------------------------------------------------------

Managing the Repository 


Some important points to consider before applying or installing the repository 
zip file: 


  * The minimum OS level required for the system to run this repository is 
    Oracle Solaris 11.1. 
  * The repository is provided as zip files. They contain only the latest 
    revision of IPS packages that have been added or changed since the initial 
    release of Oracle Solaris 11.4. The destination repository for the SRU must, 
    at a minimum, contain the 11.4 GA packages; otherwise the verification of 
    the repository will report missing dependency errors. 
  * This SRU is provided in two parts: Oracle Solaris IPS Repository 
    Installation Guide and Oracle Solaris IPS Repository. The Oracle Solaris IPS 
    Repository Installation Guide contains the install script and readme files. 
    The Oracle Solaris IPS Repository contains the zip files of the repository. 
    You must download both parts from MOS: 
    https://support.oracle.com/rs?type=doc&id=2433412.1 to add the packages to 
    an existing repository. 
  * The zip file associated with this README must be used in conjunction with an 
    existing local copy of the Oracle Solaris support repository. 
  * It is necessary to have a valid solaris publisher set before performing an 
    update. For instructions to create an Oracle Solaris 11.4 package 
    repository, see Copying and Creating Oracle Solaris 11.4 Package 
    Repositories: https://docs.oracle.com/cd/E37838_01/html/E60982/index.html. 

The example commands listed in this section should be executed with root 
privileges or by using sudo(1M) or pfexec(1) commands. 


--------------------------------------------------------------------------------

How to Update Your Local Repository 


Download the SRU's IPS Repository Installation Guide and IPS Repository patches 
from MOS. 
 
Perform the following steps to update your local system with the contents of the 
SRU zip file: 


 1. Become an administrator. 
     
    For more information, see How to Use Your Assigned Administrative Rights in 
    Securing Users and Processes in Oracle Solaris 11.4: 
    https://docs.oracle.com/cd/E37838_01/html/E61023/rbactask-28.html. 

 2. Verify locale setting. 
     
    Verify that the locale setting is set to either C or en_US.UTF-8. 
     
    $ locale 
     
    If it isn't one of the two recommended settings, update it now: 
     
    $ export LANG=C 

 3. Run the install-repo.ksh script that is included in the IPS Repository 
    Installation Guide patch to update your existing repository. 
     
    $ install-repo.ksh [-c] [-v] -d full_path_to_existing_s11_4_repo 
     
    For example: 
     
    $ install-repo.ksh -c -v -d /export/support-repo 

 4. If the repository is managed by pkgserv, restart the appropriate service. 
     
    $ svcadm restart svc:/application/pkg/server:your_repo_instance 

 5. If an existing repository is not set, add the repository to the system. 
     
    $ pkg set-publisher -g file:///full_path_to_existing_s11_4_repo solaris 

 6. Update the packages. 
     
    $ pkg update 


For more information about using the install-repo.ksh script, see the 
README-zipped-repo.txt file. 
 
For more information about managing your repository, see the following 
resources: 


  * Updating and Maintaining Oracle Solaris 11: 
    https://support.oracle.com/rs?type=doc&id=1559737.2 
  * Oracle Solaris 11 Image Packaging System (IPS) Frequently Asked Questions 
    (FAQ): https://support.oracle.com/rs?type=doc&id=1433186.1 


--------------------------------------------------------------------------------

Oracle Solaris Repository Reorganization 


Over the past few years the release and particularly the support repositories 
for Oracle Solaris have grown considerably as new releases and SRUs have been 
added. Users who copy our entire repositories via pkgrecv may be downloading 
many packages that they will not need and this leads to increased download 
times. Packages for Oracle Solaris 11.2 and older releases are no longer 
available from the support and release repositories. 
 
However, we realize that some folks might still need access to this (rather old) 
software and so that can be accessed via two new repositories: 
 
     http://pkg.oracle.com/solaris/legacy/release 
     https://pkg.oracle.com/solaris/legacy/support 
 
Note: You can configure these repositories as before, just specifying the new 
URI/Origins. For the legacy/support repository, use your existing 
certificate/key pair. 


--------------------------------------------------------------------------------

Further Assistance 


The documentation for Oracle Solaris 11.4 can be found at: Oracle Solaris 11.4 
Information Library: https://docs.oracle.com/cd/E37838_01/ 
 
If you have a support plan with Oracle, please contact your service 
representative for further assistance. Community discussion of this product can 
be found at: 
Oracle Solaris Installation, Booting, and Patching (MOSC): 
https://community.oracle.com/community/support/oracle_sun_technologies/oracle_solaris_installation__booting_and_patching 
 
Source code for open source software components in Oracle Solaris 11.4 SRUs can 
be found on the Oracle Solaris 11.4 SRU Index: 
https://support.oracle.com/rs?type=doc&id=2433412.1 page. 


--------------------------------------------------------------------------------

 


Copyright è 2022, Oracle and/or its affiliates. 

This software and related documentation are provided under a license agreement 
containing restrictions on use and disclosure and are protected by intellectual 
property laws. Except as expressly permitted in your license agreement or 
allowed by law, you may not use, copy, reproduce, translate, broadcast, modify, 
license, transmit, distribute, exhibit, perform, publish, or display any part, 
in any form, or by any means. Reverse engineering, disassembly, or decompilation 
of this software, unless required by law for interoperability, is prohibited. 
 
The information contained herein is subject to change without notice and is not 
warranted to be error-free. If you find any errors, please report them to us in 
writing. 
 
If this is software or related documentation that is delivered to the U.S. 
Government or anyone licensing it on behalf of the U.S. Government, the 
following notice is applicable: 
 
U.S. GOVERNMENT END USERS. Oracle programs, including any operating system, 
integrated software, any programs installed on the hardware, and/or 
documentation, delivered to U.S. Government end users are "commercial computer 
software" pursuant to the applicable Federal Acquisition Regulation and 
agency-specific supplemental regulations. As such, use, duplication, disclosure, 
modification, and adaptation of the programs, including any operating system, 
integrated software, any programs installed on the hardware, and/or 
documentation, shall be subject to license terms and license restrictions 
applicable to the programs. No other rights are granted to the U.S. Government. 
This software or hardware is developed for general use in a variety of 
information management applications. It is not developed or intended for use in 
any inherently dangerous applications, including applications that may create a 
risk of personal injury. If you use this software or hardware in dangerous 
applications, then you shall be responsible to take all appropriate fail-safe, 
backup, redundancy, and other measures to ensure its safe use. Oracle 
Corporation and its affiliates disclaim any liability for any damages caused by 
use of this software or hardware in dangerous applications. 
 
Oracle and Java are registered trademarks of Oracle and/or its affiliates. Other 
names may be trademarks of their respective owners. 
 
Intel and Intel Xeon are trademarks or registered trademarks of Intel 
Corporation. All SPARC trademarks are used under license and are trademarks or 
registered trademarks of SPARC International, Inc. AMD, Opteron, the AMD logo, 
and the AMD Opteron logo are trademarks or registered trademarks of Advanced 
Micro Devices. UNIX is a registered trademark of The Open Group. 
 
This software or hardware and documentation may provide access to or information 
on content, products, and services from third parties. Oracle Corporation and 
its affiliates are not responsible for and expressly disclaim all warranties of 
any kind with respect to third-party content, products, and services. Oracle 
Corporation and its affiliates will not be responsible for any loss, costs, or 
damages incurred due to your access to or use of third-party content, products, 
or services. 

