Mr N Manager Support Online Demo Site [359918]
Logout(Remember Me)
Support
RM Home
Support
Sections
My Support Calls
Search Library
Drivers and Downloads
Guide to Support Online
FAQs
Events
Technical Rating:�
Support Home PageSupport
Print This PagePrint This Page
Add to 'My Library' Add to 'My Library'

Security Update for Microsoft security updates - April 2005 [HFXCC3118]
Published Date : 04 May 2005�� Last Updated : 13 Feb 2020�� Content Ref: DWN399678��





Description

Any references to Community Connect� 3 in this document apply equally to RM Smart-Tools 3.

Microsoft have released significant security updates for Microsoft Windows. HFXCC3118 contains these updates in a format easily applied to Community Connect 3 networks.

We recommend that you apply this Security Update without delay.

Important:  Service Release 4 (SR4) must already be installed on the network before installing this Security Update. HFXCC3110B must also be installed before installing this Security Update.

Before installing any software updates, please refer to TEC90813 and DWN59018 in the Other Useful Articles section below. These articles detail RM's recommendations regarding sofware update installation and support.


Requirements
  • HFXCC3118 should be installed on Community Connect 3 networks with Service Release 4 (SR4) or above.
  • HFXCC3118 also requires HFXCC3110B to have been installed on the network.
  • This Security Update should be installed on to all Community Connect 3 servers.

Note:  All servers will need to be restarted in order to install this Security Update completely. You should therefore plan to install the Security Update out-of-hours to minimise disruption to your network.


What will the Security Update change?

HFXCC3118 contains the following Microsoft security updates: 

  • MS05-016: Vulnerability in Windows Shell that Could Allow Remote Code Execution (893086) - for Community Connect 3 servers and workstations.
  • MS05-017: Vulnerability in Message Queuing Could Allow Code Execution (892944) - for Community Connect 3 servers and workstations.
  • MS05-018: Vulnerabilities in Windows Kernel Could Allow Elevation of Privilege and Denial of Service (890859) - for Community Connect 3 servers and workstations.
  • MS05-019: Vulnerabilities in TCP/IP Could Allow Remote Code Execution and Denial of Service (893066) - for Community Connect 3 servers and workstations.
  • MS05-020: Cumulative Security Update for Internet Explorer (890923) - for Community Connect 3 servers and workstations.

More information on the issues resolved by these updates is available from Microsoft's Web site (http://www.microsoft.com).

Note: The updates provided in HFXCC3118 supersede several previously-released Microsoft security updates; as such, the following Community Connect 3 workstation packages will be removed from networks (if they are present) during this Security Update's installation:

  • Windows XP Security Update KB890047
  • Windows XP SP1 Security Update KB891711
  • Windows XP Security Update KB840987
  • ListBox and ComboBox Control Hotfix KB824141 (client)
  • ListBox ComboBox Control Hotfix KB824141 (client)
  • IE6 SP1 Cumulative Security Update KB867282
  • IE6 SP2 Cumulative Security Update KB867282

Who should install this Security Update?

If you are running a Community Connect 3 network, you should apply this Security Update without delay.

Service Release 4 (SR4) and HFXCC3110B must already be installed on the network before installing this Security Update. 

HFXCC3118 should be applied to all Community Connect 3 servers including all domain controllers and all Member Servers (such as DAMMS and MIS servers). It does not need to be applied to Community Connect 3 workstations directly but all servers and workstations will need to be restarted for the updates to be applied fully.



Download Instructions

  1. Click the HFXCC3118.exe file link to download the Security Update.
  2. Choose to Save the file, browse to the temporary location you wish to save it to (for example D:\temp) and click Save.
  3. When it has downloaded, follow the Installation Instructions below to install the Security Update.


Download

FilenameFile SizeDownload
HFXCC3118.exe44.40 Mb Download


Installation Instructions

Important: During the installation of HFXCC3118, the Station Manager Healthcheck and the allocation of new Microsoft security update packages must be done manually. Please ensure that you fully complete all steps in these Installation Instructions.

If you previously started to install the Security Update but cancelled the operation, follow the installation instructions in the 'Installing after cancelling a previous install' section below.

  1. Download HFXCC3118.
  2. Log on to your first Community Connect 3 domain controller as Administrator (not as a system administrator) and copy the Security Update to a temporary location (for example D:\temp).
  3. Run the Security Update by double-clicking the self-extracting executable file HFXCC3118.exe. The Security Update will extract files automatically and run the RM Installation Assistant to begin the installation.
  4. When prompted, click Continue.
  5. The installation will proceed automatically. When prompted that the RM Installation Assistant has finished, click Finish. After installation, the server will need to be rebooted for the Microsoft security updates to be applied fully.
  6. Repeat steps 2 to 5 at all your other Community Connect 3 domain controllers.
  7. Also repeat steps 2 to 5 at any Member Servers (for example DAMMS or MIS servers) on the network.
  8. When all Community Connect 3 domain controllers have had the Security Update applied, log on to the first Community Connect 3 domain controller server in each site as Administrator (not as a system administrator). Run Windows Explorer and browse to D:\RMNetwork\RMManage\Station Manager. Double-click the file Healthcheck.exe, and select OK to start the Healthcheck, and OK again when it has completed.
  9. HFXCC3118 provides new workstation packages but does not automatically allocate them. You should allocate these new packages to all your workstations at your earliest convenience using the RM Management Console. You can allocate the packages at Main Site level, for example. Note: If you choose to allocate the packages at a later time, you must still complete all of steps 1 to 8 above now, including running the Station Manager Healthcheck.

         The new security packages are listed as RM system packages as follows:

    • IE6 SP1 Cumulative Security Update KB890923.
    • IE6 SP2 Cumulative Security Update KB890923.
    • Windows XP Security Update KB890859.
    • Windows XP Security Update KB893066.
    • Windows XP Security Update KB893086.
    • Windows XP SP1 Security Update KB892944.

Note: Some of these updates are Windows XP Service Pack-related. Any packages that are not required by a workstation will be listed as NOT_INSTALLED (OS VERSION) in that workstation's station INI file.

  1. Once you have allocated the packages to workstations, restart the workstations for the packages to be installed.

Installing after cancelling a previous install
  1. Browse to D:\RMNetwork\RMManage\RM Hotfixes\HFXCC3118_extracted and double-click the file RM Installation Assistant.exe. If this folder or its contents does not exist, re-run the HFXCC3118.exe file downloaded from the RM Support Web site.
  2. Follow the procedures in 'Installation Instructions' from step 4 above.

Important - Interaction with RM Service Releases

Some of the components of HFXCC3118 are included in RM Service Release 6 for Community Connect 3.

HFXCC3118 is not included in Community Connect 3 Service Release 4 or Community Connect 3 Windows XP Service Pack 2.

It will not need to be re-applied if it is installed prior to Community Connect 3 Windows XP Service Pack 2 and Community Connect 3 Windows XP Service Pack 2 is then installed at a later date.



Download File Contents

See the Description section for full list. HFXCC3118 contains six new workstation packages and a component to update servers with the relevant Microsoft security updates. Three of the workstation packages are applicable to workstations running either Windows XP SP1 or XP SP2. The other three, however, are operating system-specific. 



More Information

Some security updates released by Microsoft in April 2005 are not included in HFXCC3118. These are:

  1. MS05-021 - Vulnerability in Exchange Server Could Allow Remote Code Execution (894549) - RM is investigating providing this update separately for Microsoft Exchange servers.
  2. MS05-022 - Vulnerability in MSN Messenger Could Lead to Remote Code Execution (896597) - this update affects MSN Messenger version 6.2 only.
  3. MS05-023 - Vulnerabilities in Microsoft Word May Lead to Remote Code Execution (890169) - RM is investigating providing updates to support Microsoft Office updates separate to this Community Connect 3 hotfix.


Other Useful Articles

Security Update for Microsoft security updates - February 2005 [HFXCC3110B] (DWN398639)

FEEDBACK
Did the information in this article help answer your question?
�Yes
�No
Please add any comments about this article in the box below. If you answered No then it is important you tell us why so that we can change the article if required. We can only respond if you log in to the RM Support website or provide your contact details. Note: If you need help with a technical query, please log a call online or telephone our support team.
Thank you for your feedback, which is sent directly to the RM Knowledge team. We address every message received with the intention of improving our Knowledge Library articles. If you have an unresolved technical issue, please contact RM Support.


If this article has not helped provide a solution then it is also possible to log a call...



Document Keywords:�windows, 2000, sr4, service release 4, microsoft hotfix, windows server 2003, w2k3, w2ksp3, w2ksp4, xpsp1, xpsp1a, xpsp2, critical, security bulletin, update, hfx, hfx hfx118, 118, hotfix 118, hfxcc3118, ms05-016, ms05-017, ms05-018, ms05-019, ms05-020, ms05-021, ms05-022, ms05-023, 893086, kb893086, 892944, kb892944, 890859, kb890859, 893066, kb893066, 890923, kb890923, 894549, kb894549, 896597, kb896597, 890169, kb890169, vulnerability, remote code execution, elevation of privilege, windows shell, message queuing, windows kernel, tcp/ip, internet explorer cumulative update, exchange server, msn messenger, microsoft word, word 2000, word 2002, word 2003


Please read - important disclaimer information.
http://www.rm.com/_RMVirtual/Includes/csredirect.asp?cref=&title=Standard Content Disclaimer


Top Of PageTop of page