Mr N Manager Support Online Demo Site [359918]
Logout(Remember Me)
Support
RM Home
Support
Sections
My Support Calls
Search Library
Drivers and Downloads
Guide to Support Online
FAQs
Events
Technical Rating:�
Support Home PageSupport
Print This PagePrint This Page
Add to 'My Library' Add to 'My Library'

Critical Hotfix for Microsoft security updates - February 2005 - for Service Release 3 customers [HFXCC3110SR3]
Published Date : 14 Apr 2005�� Last Updated : 13 Feb 2020�� Content Ref: DWN395168��





Description

Any references to Community Connect 3 in this document apply equally to RM Smart-Tools 3.

Microsoft have released significant security updates for Microsoft Windows.  HFXCC3110SR3 contains these updates in a format easily applied to Community Connect 3 networks with Service Release 3 only.

We recommend that you apply this hotfix without delay if your network is running Service Release 3.

For networks running Service Release 4 or above, please use HFXCC3110 instead. HFXCC3110 is available as DWN369009 via the link in the Other Useful Articles section below.

Before installing any hotfix, please refer to TEC90813 and DWN59018 in the Other Useful Articles section below. These articles detail RM's recommendations regarding hotfix installation and support.


Requirements
  • HFXCC3110SR3 should be installed on Community Connect 3 networks with Service Release 3 (SR3) only
  • This hotfix should be installed on all Community Connect 3 servers.

Note:  All servers will need to be restarted in order to install this hotfix completely. You should therefore plan to install the hotfix out-of-hours to minimise disruption to your network.


What will the Hotfix change?

HFXCC3110SR3 contains the following Microsoft security updates:

 

1.      MS05-002: Vulnerability in Cursor and Icon Format Handling Could Allow Remote Code Execution (891711) - for Community Connect 3 workstations;

2.      MS05-003: Vulnerability in the Indexing Service Could Allow Remote Code Execution (871250) - for Community Connect 3 workstations;

3.      MS05-007: Vulnerability in Windows Could Allow Information Disclosure (888302) - for Community Connect 3 workstations;

4.      MS05-008: Vulnerability in Windows Shell Could Allow Remote Code Execution (890047) - for Community Connect 3 servers and workstations;

5.      MS05-010: Vulnerability in the License Logging Service Could Allow Code Execution (885834) - for Community Connect 3 servers;

6.      MS05-011: Vulnerability in Server Message Block Could Allow Remote Code Execution (885250) - for Community Connect 3 servers and workstations;

7.      MS05-012: Vulnerability in OLE and COM Could Allow Remote Code Execution (873333) - for Community Connect 3 servers and workstations;

8.      MS05-013: Vulnerability in the DHTML Editing Component ActiveX Control Could Allow Remote Code Execution (891781) - for Community Connect 3 servers and Community Connect 3 workstations which have not been rebuilt as Windows XP SP2;

9.      MS05-014: Cumulative Security Update for Internet Explorer (867282) - for Community Connect 3 servers and workstations;

10.  MS05-015: Vulnerability in Hyperlink Object Library Could Allow Remote Code Execution (888113) - for Community Connect 3 servers and workstations.

 

More information on the issues resolved by these updates is available from Microsoft's website (http://www.microsoft.com).

 

Notes: MS05-002 and MS05-003 (numbers 1 and 2 above) were provided for Community Connect 3 servers in HFXCC3098.


Who should install this Hotfix?

You should apply this hotfix without delay if you are running a Community Connect 3 network running Service Release 3 (SR3).

HFXCC3110SR3 should be applied to all Community Connect 3 servers including all domain controllers and all Member Servers (such as DAMMS and MIS servers).  It does not need to be applied to Community Connect 3 workstations directly but all servers and workstations will need to be restarted for the updates to be applied fully.



Download Instructions

1.      Click the HFXCC3110SR3.exe file link to download the hotfix.

2.      Choose to Save the file, browse to the temporary location you wish to save it to (e.g. D:\temp) and click Save.

3.      When it has been downloaded, follow the installation instructions below to install the hotfix.



Download

FilenameFile SizeDownload
HFXCC3110SR3.exe31.58 Mb Download


Installation Instructions

Important: During the installation of HFXCC3110SR3, the Update Package List procedure, Station Manager HealthCheck and the allocation of new Microsoft security update packages must be done manually. Please ensure that you fully complete ALL steps in the Installation Instructions.

 

If you previously started to install the hotfix but cancelled the operation, follow the installation instructions in the 'Installing after cancelling a previous install' section below.

 

1.      Download HFXCC3110SR3.

2.      Log on to your first Community Connect 3 domain controller as Administrator (not SystemAdmin) and copy the hotfix to a temporary location (e.g. D:\temp).

3.      Run the hotfix by double-clicking the self-extracting executable file (HFXCC3110SR3.exe).  The hotfix will extract files automatically and run the RM Installation Assistant to install the hotfix.

4.      When prompted, click Continue.

5.      The installation will proceed automatically and will take several minutes to complete.  When prompted that the RM Installation Assistant has finished, click Finish.

 

NOTE: After installation at a server, the server will need to be rebooted for the hotfix to be applied fully.

 

6.      Repeat Steps 2-5 at all your other Community Connect 3 domain controllers.

7.      Also repeat steps 2-5 at any member servers (e.g. DAMMS or MIS servers) on the network.

 

NOTE: After installation at a server, the server will need to be rebooted for the hotfix to be applied fully.

 

8.      When all Community Connect 3 servers have had the hotfix applied, open the RM Management Console at a domain controller or a workstation.

9.      In the RM Management Console, expand Workstations, right-click on Main Site and choose to Update Package List. Click Yes to confirm this action. 

 

NOTE: If you have a multi-site network, run this hotfix on every server at all sites and then update the package list once per site only.

 

10.  Log in to the first Community Connect 3 domain controller server in each site as the administrator user (not SystemAdmin). Run Windows Explorer and browse to D:\RMNetwork\RMManage\Station Manager. Double-click on the file Healthcheck.exe, and select OK to start the Healthcheck, and OK again when it has completed.

11.  HFXCC3110 provides new workstation packages but does not automatically allocate them. You should allocate these new packages as applicable to all your workstations at your earliest convenience.

 

NOTE: If you choose to allocate the packages at a later time, you must still complete all of steps 1-10 above now, including running the Update Package List and the Station Manager health check.

 

The new security packages are listed as RM system packages as follows:

 

         IE6 SP1 Cumulative Security Update KB867282;

         Windows XP Security Update KB873333;

         Windows XP Security Update KB885250;

         Windows XP Security Update KB888113;

         Windows XP Security Update KB888302;

         Windows XP Security Update KB890047;

         Windows XP Security Update KB891781;

         Windows XP SP1 Security Update KB871250;

         Windows XP SP1 Security Update KB891711.

 

12.  Once you have allocated the packages to workstations, restart your workstations for the hotfixes to be installed.


Installing after cancelling a previous install

1.      Browse to D:\RMNetwork\RMManage\RM Hotfixes\HFXCC3110SR3_extracted and double-click the file RM Installation Assistant.exe. (If this folder or its contents does not exist, re-run the HFXCC3110SR3.exe file downloaded from the RM Support website).

2.      The RM Installation Assistant will initialise; click Continue to proceed with the installation.

3.      The installation should proceed automatically; click Finish when prompted.

4.      Follow the procedures in 'How to install the Hotfix' from step 5 above.


IMPORTANT - Interaction with RM Service Releases

The components of HFXCC3110SR3 will be included in a future Community Connect 3 Service Release or Microsoft Service Packs validated by RM.

The hotfix can be installed on to networks running Community Connect 3 with Service Release 3 only.

HFXCC3110SR3 is not included in Community Connect 3 SR4 or Community Connect 3 XP SP2. If you subsequently install Community Connect 3 SR4, you should then install HFXCC3110 to ensure your network is up to date.



More Information

Some security updates released by Microsoft in February 2005 are not included in HFXCC3110. These are:

 

1.      MS05-004 - ASP.NET Path Validation Vulnerability (887219) - an update to Microsoft .NET Framework which may be provided in a future update for Community Connect 3;

2.      MS05-005 - Vulnerability in Microsoft Office XP could allow Remote Code Execution (873352) - RM plans to provide this update for Office XP customers with Office XP Service Pack 3 currently in development;

3.      MS05-009 Vulnerability in PNG Processing Could Allow Remote Code Execution (890261) - RM recommends installing the Community Connect 3 XPSP2 Update Pack instead.



FEEDBACK
Did the information in this article help answer your question?
�Yes
�No
Please add any comments about this article in the box below. If you answered No then it is important you tell us why so that we can change the article if required. We can only respond if you log in to the RM Support website or provide your contact details. Note: If you need help with a technical query, please log a call online or telephone our support team.
Thank you for your feedback, which is sent directly to the RM Knowledge team. We address every message received with the intention of improving our Knowledge Library articles. If you have an unresolved technical issue, please contact RM Support.


If this article has not helped provide a solution then it is also possible to log a call...



Document Keywords:�windows, 2000, sr3, service release 3, microsoft hotfix, w2ksp3, w2ksp4, xpsp1, xpsp1a, critical, security bulletin, update, 110, hotfix 110, cc3110, ms05-002, ms05-003, ms05-004, ms05-005, ms05-006, ms05-007, ms05-008, ms05-009, ms05-010, ms05-011, ms05-012, ms05-013, ms05-014, ms05-015, 891711, kb891711, 871250, kb871250, 888302, kb888302, 890047, kb890047, 885834, kb885834, 885250, kb885250, 873333, kb873333, 891781, kb891781, 867282, kb867282, 888113, 887219, kb887219, 873352, kb873352, 890261, kb890261, community connect 3, fix, problem, solution


Please read - important disclaimer information.
http://www.rm.com/_RMVirtual/Includes/csredirect.asp?cref=&title=Standard Content Disclaimer


Top Of PageTop of page