Microsoft Security Updates for Community Connect 3 - February 2011 [HFXCC3269]
Published Date : 25 Feb 2011��
Last Updated : 13 Feb 2020��
Content Ref: DWN1950652��
Operating System
Community Connect 3 SR5, Community Connect 3 SR6, RM Smart-Tools 3 SR5, RM Smart-Tools 3 SR6
Part No
(none)
Summary
Community Connect 3 Security Update to apply critical Microsoft Security Updates to servers and workstations.
Description
Any reference to Community Connect� 3 in this document apply equally to RM Smart-Tools 3.
Microsoft� has released significant Security Updates for Windows�. HFXCC3269 contains these updates in a format easily applied to Community Connect 3 networks. Note: We recommend that you apply this Security Update without delay. Before installing any Software Update, please refer to TEC90813 and DWN59018 in the Other Useful Articles section below. These articles detail RM's recommendations regarding Software Update installation and support.
Known issues
At the time of writing this article there were no known issues related to HFXCC3269.
Requirements
HFXCC3269 should be installed on Community Connect 3 networks with Service Release 5 (SR5) or above.
This Security Update should be installed on to all Community Connect 3 servers.
Note: All servers and workstations will need to be restarted in order to install this Security Update completely. You should therefore plan to install the Security Update out-of-hours to minimise disruption to your network.
What will the Security Update change?
HFXCC3269 contains the following Microsoft Security Updates:
MS10-001 - Vulnerability in the Embedded OpenType Font Engine Could Allow Remote Code Execution (972270)
MS11-003 - Cumulative Security Update for Internet Explorer (2482017)
MS11-005 - Vulnerability in Active Directory Could Allow Denial of Service (2478953)
MS11-006 - Vulnerability in Windows Shell Graphics Processing Could Allow Remote Code Execution (2483185)
MS11-007 - Vulnerability in the OpenType Compact Font Format (CFF) Driver Could Allow Remote Code Execution (2485376)
MS11-008 - Vulnerabilities in Microsoft Visio Could Allow Remote Code Execution (2451879)
MS11-010 - Vulnerability in Windows Client/Server Run-time Subsystem Could Allow Elevation of Privilege (2476687)
MS11-011 - Vulnerabilities in Windows Kernel Could Allow Elevation of Privilege (2393802)
MS11-012 - Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Elevation of Privilege (2479628)
MS11-013 - Vulnerabilities in Kerberos Could Allow Elevation of Privilege (2496930)
MS11-014 - Vulnerability in Local Security Authority Subsystem Service Could Allow Local Elevation of Privilege (2478960)
More information on the issues resolved by these updates is available from the Microsoft website: http://www.microsoft.com/.
Notes:
HFXCC3269 may not contain all the Security Updates released by Microsoft in February 2011. Please read the More Information section below for further details.
The updates provided in HFXCC3269 supersede previously released Microsoft Security Updates; as such, the following Community Connect 3 workstation packages will be removed from networks (if present) during this Security Update's installation:
XP SP2 and SP3 Security Update KB961371
XP SP3 IE6 Security Update 2416400
XP SP3 IE7 Security Update 2416400
XP SP3 IE8 Security Update 2416400
Windows XP SP3 Security Update KB2286198
XP SP3 Security Update 2296199
XP SP3 Security Update 2436673
XP SP2 and SP3 Security Update KB978037
XP SP3 Security Update KB981852
Who should install this Security Update?
If you are running a Community Connect 3 network, you should apply this Security Update without delay.
HFXCC3269 should be applied to all Community Connect 3 servers including all domain controllers and all Member Servers (such as DAMMS and MIS servers, or servers running MicrosoftExchange. It does not need to be applied to Community Connect 3 workstations directly, but all servers and workstations will need to be restarted for the Microsoft Security Updates to be applied fully.
Note: HFXCC3269 should not be directly applied to RM Client Connect Terminal Servers. For information on how to apply the server updates to these servers see the 'Installing on Terminal Servers' section below.
Important: All your Community Connect 3 servers will need to be restarted in order to install this Security Update completely. You should therefore plan to install the Security Update out-of-hours to minimise disruption to your network.
Download Instructions
Click the HFXCC3269.exe file link below to download the Security Update.
Choose to Save the file, browse to the temporary location you wish to save it to (for example D:\temp) and click Save.
When it has downloaded, follow the installation instructions below to install the Security Update.
Download
Filename
File Size
Download
HFXCC3269.exe
127.13 Mb
Installation Instructions
Important: During the installation of HFXCC3269, the Station Manager HealthCheck and the allocation of new Microsoft Security Update packages must be done manually. Please ensure that you fully complete all steps in the installation instructions. If you previously started to install the Security Update but cancelled the operation, follow the installation instructions in the 'Installing after cancelling a previous install' section below.
Download HFXCC3269.exe.
Log on to your first Community Connect 3 domain controller as a system administrator and copy the Security Update to a temporary location (for example D:\temp).
Run the Security Update by double-clicking the self-extracting executable file (HFXCC3269.exe). The Security Update will extract files automatically and run the RM Installation Assistant to begin the installation.
When prompted, click Continue.
The installation will proceed automatically. When prompted that the RM Installation Assistant has finished, click Finish.
Repeat steps 2-5 at all your other Community Connect 3 domain controllers.
Repeat steps 2-5 at any Member Servers (e.g. DAMMS or MIS servers) on the network.
Note: After installation at a server, the server will need to be rebooted for the Microsoft Security Updates to be applied fully. It is recommended that you ensure each domain controller has rebooted successfully before applying the Software Update to the next server.
When all Community Connect 3 domain controllers have had HFXCC3269 applied, log on to the first Community Connect 3 domain controller server in each site as the system administrator. Run Microsoft Windows Explorer and browse to D:\RMNetwork\RMManage\Station Manager. Double-click on the file Healthcheck.exe, and select OK to start the health check and OK again when it has completed.
HFXCC3269 provides new workstation packages but does not automatically allocate them. You should allocate these new packages to all your workstations at your earliest convenience.
Note: If you choose to allocate the packages at a later time, you must still complete all of steps 1 to 8 above now, including running the Station Manager HealthCheck.
The new Security Packages are listed as available packages as follows in the RM Management Console (RMMC):
System Packages:
Vista Security Updates - February 2011
XP SP2 and SP3 Security Update 972270
XP SP3 IE6 Security Update 2482017
XP SP3 IE7 Secutiry Update 2482017
XP SP3 IE8 Security Update 2482017
XP SP3 Security Update 2393802
XP SP3 Security Update 2476687
XP SP3 Security Update 2478960
XP SP3 Security Update 2479628
XP SP3 Security Update 2483185
XP SP3 Security Update 2485376
XP SP3 Security Update 2496930
Applications:
Microsoft Visio 2002 SP2 Security Update 2451879
MS Office Visio 2003 SP3 Security Update 2451879
MS Office Visio 2007 SP2 Security Update 2451879
Note: If you do not see the above packages in the RM Management Console, please run an Update Package List. To do this, please refer TEC731836 in the Other Useful Articles section below.
Once you have allocated the packages to workstations, restart the workstations at your convenience for the updates to be installed.
Installing after cancelling a previous install
Browse to D:\RMNetwork\RMManage\RM Hotfixes\HFXCC3269_extracted and double-click the file RM Installation Assistant.exe.
Note: If this folder or its contents do not exist, re-run the HFXCC3269.exe file downloaded from the RM Support website as in step 1 of the installation instructions section above.
Follow the procedures from step 4 in the installation instructions section above.
Installing on Terminal Servers
Note: If you have a Terminal Server on your network, please follow the instructions below:
Install the RM Security Updates on to your Community Connect 3 domain controllers as described above.
Log on to the Terminal Server and browse to the following folder on one of your domain controllers: \\<DC_Server_Name>\RMManage\RM Hotfixes\HFXCC3269_extracted\Utilities\Server Updates\v1.83.0.0\
Double-click the Server_Updates.vbs file to install the Microsoft Security Updates.
Note: The Server_Updates.vbs script will run silently on a Terminal Server, however you can check for completion using the following process:
Log on to the Terminal Server as Systemadmin.
From the Start menu, select Run and type eventvwr then press return.
From the right-hand pane, double-click the System event log.
In the list of events you should see a number of events with the Source 'NTServicePack' and event ID 4377 which will correspond with the date and time the ServerUpdates.vbs was run. (The number of entries will vary with each update as only updates relevant to the Terminal Server and any other updates relevant to applications installed on these servers, will be installed).
Important - Interaction with RM Service Releases
The components of HFXCC3269 will be included in a future Community Connect 3 Service Release or Microsoft Service Pack validated by RM.
The Security Update can be installed on to networks running Community Connect 3 with Service Release 5 or above.
HFXCC3269 is not included in Service Release 5 or 6. It will need to be re-appliedif originally installed before Service Release 6 is installed.
Note: The application Software Updates will need to be re-applied if the related Microsoft application is installed or re-installed after the Software Updates were applied.
Download File Contents
See the Description section for a full list. HFXCC3269 contains new relevant workstation and server Microsoft Security Updates.
More Information
Software pre-requisites
Please find below details of the software pre-requisites:
Vista Security Updates - February 2011 (System requirements: Windows Vista/Vista SP1/Vista SP2)
XP SP2 and SP3 Security Update 972270 (System requirements: Windows XP SP2/XP SP3)
XP SP3 IE6 Security Update 2482017 (System requirements: IE6 on Windows XP SP3)
XP SP3 IE7 Security Update 2482017 (System requirements: IE7 on Windows XP SP3)
XP SP3 IE8 Security Update 2482017 (System requirements: IE8 on Windows XP SP3)
XP SP3 Security Update 2393802 (System requirements: Windows XP SP3)
XP SP3 Security Update 2476687 (System requirements: Windows XP SP3)
XP SP3 Security Update 2478960 (System requirements: Windows XP SP3)
XP SP3 Security Update 2479628 (System requirements: Windows XP XP SP3)
XP SP3 Security Update 2483185 (System requirements: Windows XP SP3)
XP SP3 Security Update 2485376 (System requirements: Windows XP SP3)
XP SP3 Security Update 2496930 (System requirements: Windows XP SP3)
Microsoft Visio 2002 SP2 Security Update 2451879 (System requirements: Windows 2000;Windows NT;Windows Server 2003;Windows XP)
MS Office Visio 2003 SP3 Security Update 2451879 (System requirements: Windows 2000;Windows Server 2003;Windows Vista;Windows XP)
MS Office Visio 2007 SP2 Security Update 2451879 (System requirements: Windows 7;Windows Server 2003;Windows Vista;Windows XP)
Vista Security Updates - February 2011 package includes:
Windows6.0-KB972270-x86.msu (System requirements: Windows Vista SP1/Vista SP2)
Windows6.0-KB2393802-x86.msu (System requirements: Windows Vista SP1/Vista SP2)
Windows6.0-KB2479628-x86.msu (System requirements: Windows Vista SP1/Vista SP2)
Windows6.0-KB2483185-x86.msu (System requirements: Windows Vista SP1/Vista SP2)
Windows6.0-KB2485376-x86.msu (System requirements: Windows Vista SP1/Vista SP2)
Windows6.0-KB2482017-x86.msu (System requirements: Windows Vista SP1/Vista SP2, Internet Explorer 7)
IE8-Windows6.0-KB2482017-x86.msu (System requirements: Windows Vista SP1/Vista SP2, Internet Explorer 8)
Note: To uninstall an update (MSU) installed by Windows Vista Security Update (MSI):
From the Start menu, choose Control Panel and then click Security.
Under Windows Update, click 'View installed updates' and select from the list of updates.