Community Connect 3 Security Update - Microsoft Security Updates - October 2004 [HFXCC3090B]
Published Date : 19 Nov 2004��
Last Updated : 13 Feb 2020��
Content Ref: DWN314619��
Operating System
Community Connect 3 SR3, Community Connect 3 SR4, RM Smart-Tools 3 SR3, RM Smart-Tools 3 SR4
Part No
(none)
Summary
Community Connect 3 and RM Smart-Tools 3 software update to apply critical Microsoft security updates to servers and workstations.
Description
Any references to Community Connect 3 in this document apply equally to RM Smart-Tools 3.
Microsoft has released significant security updates for Microsoft Windows. HFXCC3090B contains these updates in a format easily applied to Community Connect 3 networks.
Note: HFXCC3090B is a revised version of HFXCC3090. If you have installed HFXCC3090 already, there is no need to install HFXCC3090B.
We recommend that you apply this Security Update without delay.
Before installing any software update, please refer to TEC90813 and DWN59018 in the Other Useful Articles section below. These articles detail RM's recommendations regarding software update installation and support.
Requirements
HFXCC3090B can be installed on Community Connect 3 networks with Service Release 3, 4 or 5.
This Security Update should be installed on to all Community Connect 3 servers.
Important: All servers will need to be restarted in order to install this Security Update completely. You should therefore plan to install the Security Update out-of-hours to minimise disruption to your network.
What will the Security Update change?
HFXCC3090B contains the following Microsoft� security updates:
1.MS04-030: Vulnerability in WebDAV XML Message Handler Could Lead to a Denial of Service (824151) - for Community Connect 3 servers and workstations.
2.MS04-031: Vulnerability in NetDDE Could Allow Remote Code Execution (841533) - for Community Connect 3 servers and workstations.
3.MS04-032: Security Update for Microsoft Windows (840987) - for Community Connect 3 servers and workstations.
4.MS04-034: Vulnerability in Compressed (zipped) Folders Could Allow Remote Code Execution (873376) - for Community Connect 3 servers and workstations.
5.MS04-035: Vulnerability in SMTP Could Allow Remote Code Execution (885881) - for Community Connect 3 servers.
6.MS04-036: Vulnerability in NNTP Could Allow Remote Code Execution (883935) - for Community Connect 3 servers.
7.MS04-037: Vulnerability in Windows Shell Could Allow Remote Code Execution (841356) - for Community Connect 3 servers and workstations.
8.MS04-038: Cumulative Security Update for Internet Explorer (834707) - for Community Connect 3 servers.
More information on the issues resolved by these updates is available from Microsoft's website (http://www.microsoft.com).
Note: In addition, HFXCC3090B will remove the following obsolete Windows XP packages from the network if they are present:
ListBox ComboBox Control Hotfix KB824141 (client)
ListBox and ComboBox Control Hotfix KB824141 (client)
Windows Shell Hotfix KB821557
Windows Shell Security Update KB839645 (client)
IE6 SP1 Hotfix KB832894 (client)
Who should install this Security Update?
This Security Update should be applied to all Community Connect 3 networks where HFXCC3090 has not been installed.
Platforms
HFXCC3090B should be applied to all Community Connect 3 servers including all domain controllers and all Member Servers (such as DAMMS and MIS servers).
It does not need to be applied to Community Connect 3 workstations directly but all servers and workstations will need to be restarted for the updates to be applied fully.
Download Instructions
Select the HFXCC3090B.exe file to download.
Choose to Save the file, browse to the location you wish to save it to and click Save.
When it has downloaded follow the installation instructions below to install the Security Update on each Community Connect 3 server.
Download
Filename
File Size
Download
HFXCC3090B.exe
34.16 Mb
Installation Instructions
IMPORTANT: During the installation of HFXCC3090B, the Update Package List procedure, Station Manager HealthCheck and the allocation of new Microsoft security update packages must be done manually. Please ensure that you fully complete all steps in the How to install the Security Update section of this article.
Note: If you previously started to install the Security Update but cancelled the operation, follow the installation instructions in the 'Installing after cancelling a previous install' section below.
Download HFXCC3090B.
Log on to your first Community Connect 3 domain controller as the administrator user (not SystemAdmin) and copy the Security Update to a temporary location (e.g. D:\temp).
Run the Security Update by double-clicking the self-extracting executable file (HFXCC3090B.exe). The Security Update will extract files automatically and run the RM Installation Assistant to begin the installation.
When prompted, click Continue.
The installation will proceed automatically and may take a few minutes to complete. When prompted that the RM Installation Assistant has finished, click Finish.
Restart the server.
Repeat Steps 2-6 at all your other Community Connect 3 domain controllers.
Repeat Steps 2-6 at any member servers (e.g. DAMMS or MIS servers) on the network.
When all Community Connect 3 servers have had the Security Update applied:
Open the RM Management Console at a domain controller or a workstation.
In the RM Management Console, expand Workstations, right-click on Main Site and choose to Update Package List.
Click Yes to confirm this action.
NOTE: If you have a multi-site network, run this Security Update on every server in all sites and then update the package list once only for each site.
Log in to the first Community Connect 3 domain controller server in each site as the administrator user (not SystemAdmin).
Run Windows Explorer and browse to D:\RMNetwork\RMManage\Station Manager.
Double-click on the file Healthcheck.exe, and select OK to start the Healthcheck, and OK again when it has completed.
HFXCC3090B provides new workstation packages but does not automatically allocate them. To allocate these packages open the RM Management Console and expand the Workstations node. Highlight Main Site. Right click and select Properties.
Ensure the Packages tab is selected. The Show RM System Packages box (at the bottom left of the window) must be ticked to view these packages. Select Available Packages from the dropdown Status box (located top left of the window). Select the packages (listed below in point 17) and click the Allocate button (bottom right of the window). You should allocate these new packages to all your workstations at your earliest convenience.
NOTE: If you choose to allocate the packages at a later time, you must still complete all of steps 1-14 above now, including running the Update Package List and the Station Manager health check.
The simplest way to do this is to allocate all the packages at Main Site level. If you prefer to allocate them at a lower location, ensure that you do so for all workstations. The new security packages are listed as RM system packages as follows:
�Compressed Folder Security Update KB873376
�NetDDE Security Update KB841533
�WebDAV XML Security Update KB824151
�Windows Shell Security Update KB841356
�Windows XP Security Update KB840987
Once you have allocated the packages to workstations, restart the workstations for the Microsoft� security updates to be installed.
Installing after cancelling a previous install
1.Browse to D:\RMNetwork\RMManage\RM Hotfixes\HFXCC3090B_extracted and double-click the file RM Installation Assistant.exe. (If this folder or its contents does not exist, re-run the HFXCC3090B.exe file downloaded from the RM Support website).
2.Follow the procedures in 'How to install the Security Update' from step 4 above.
IMPORTANT - Interaction with RM Service Releases
HFXCC3090B is not included in RM Service Release 4 or Service Release 5.
The components of HFXCC3090B will be included in a future Community Connect 3 Service Release or Microsoft Service Packs validated by RM.
Additional Information
HFXCC3090B is a revised version of HFXCC3090. If you have installed HFXCC3090 already, there is no need to install HFXCC3090B. HFXCC3090B is identical to HFXCC3090 except that MS04-038, Cumulative Security Update for Internet Explorer (834707), has been removed for Windows 2000 Server and Windows XP Professional. MS04-038 is provided in HFXCC3090B for Windows Server 2003.
Hibernation: One of the Microsoft� Windows� XP security updates included in HFXCC3090B introduces a minor change in functionality relating to the Hibernation feature of Microsoft Windows. Please refer to TEC293643 in the Other Useful Articles section below for more information.