Document ID: 276156
http://support.veritas.com/docs/276156
E-Mail Colleague IconE-Mail this document to a colleague

9.0 4367 Hotfix 21 - Backup Exec for Windows Servers May 2005 Security Rollup *Requires Backup Exec 9.0 4367 Service Pack 1

Details:
To which versions of VERITAS Backup Exec (tm) for Windows Servers can this hotfix be applied?

This hotfix can only be applied to the following versions of Backup Exec for Windows Servers:

Backup Exec 9.0 for Windows Servers revision 4367

Note:  Backup Exec 9.0 for Windows Servers revision 4367 Service Pack 1 is required to install this hotfix. The install process may show the GUID of SP1 in the prompt for a prerequisite.


What issue does this hotfix resolve?

This hotfix resolves the following issues:
Security Advisories VX05-001, VX05-002, VX05-003, VX05-007

Note: Security Advisories VX05-005 and VX05-006 are not addressed by this hotfix.
An upgrade to Backup Exec 9.1 rev. 4691 for Windows Servers is recommended to address the remaining security vulnerabilities.

Please see the complete details of each security advisory in the Related Documents section below.


Which files does this hotfix update?

After installing the hotfix, the attributes of the installed files will change as indicated in the table below. Note that the date and time are stored in Universal Time. When looking at the date and time of the file(s) on the server where the hotfix was installed, they will be converted to local time. Use the Date and Time tool provided by Windows to determine the difference between universal time and local time.

Backup Exec Media Servers:

Under C:\Program Files\VERITAS\Backup Exec\NT (By default):
 
File NameDateTimeVersionSize
bengine.exe06/03/056:42:28 PM9.0.4367.211,389,200
beremote.exe06/03/056:42:22 PM9.0.4367.21299,152
beserver.exe06/03/056:43:02 PM9.0.4367.212,029,712
beclass.dll06/03/056:41:44 PM9.0.4367.21398,480
ndmpcomm.dll06/03/056:42:14 PM9.0.4367.2165,168
ndmpsrvr.dll06/03/056:42:18 PM9.0.4367.21837,264


Remote Agent for Windows Servers:

Under C:\Program Files\VERITAS\Backup Exec\RANT:
 
File NameDateTimeVersionSize
beremote.exe06/03/056:42:22 PM9.0.4367.21299,152
beclass.dll06/03/056:41:44 PM9.0.4367.21398,480
ndmpcomm.dll06/03/056:42:14 PM9.0.4367.2165,168
ndmpsrvr.dll06/03/056:42:18 PM9.0.4367.21837,264



How to install this hotfix:

This hotfix must be applied to all Backup Exec media servers.  Follow the steps listed under the section titled "Installation Procedures" to install the hotfix.

Special Installation Instructions:

This section contains additional installation instructions for this hotfix.

Remote Agent for Windows Servers

After installing this hotfix to the Backup Exec 9.0 media server, reinstall the Remote Agent for Windows Servers (RAWS) to all of the remote computers protected by Backup Exec by following the Remote Agent for Windows Servers installation procedure in the Backup Exec Administrator's Guide. If RAWS is installed on a SAP R/3 computer, see the "Agent for R/3 for Oracle" section of the Special Installation Instructions.


Microsoft Cluster

Before installing the hotfix to Backup Exec 9.0 media servers on each node of a Microsoft cluster, stop the Backup Exec services using "Cluster Administrator".


Agent for R/3 for Oracle

After installing this hotfix to the Backup Exec 9.1 media server, you must reinstall the "Remote Agent for Windows Servers" to all SAP R/3 computers being protected by Backup Exec. To reinstall the Remote Agent, type the following from the SAP R/3 server:

msiexec.exe /p "<path>\SAPR3.msp" REINSTALL=ALL REINSTALLMODE=omus

Note 1: <path> = path to the \Backup Exec\NT\Agents\R3 directory on the Backup Exec media server
Note 2: This service pack can only patch previous installations of the Backup Exec Agent for R/3 for Oracle (it does not patch the original installation source files for the Agent for R/3 for Oracle). This service pack places a "patch" file (SAPR3.msp) in the \Backup Exec\NT\Agents\R3 directory on the media server. If installing the Backup Exec Agent for R/3 for Oracle to additional SAP R/3 computers in the future, run the command above after the initial agent installation to install the patch.


Installation Procedures:

To install the hotfix on a Backup Exec media server, download the hotfix. A prompt will appear asking whether to open or save the download. Perform either of the following:

Select "Open" to automatically patch the installation of Backup Exec 9.0

- or -

Select "Save" to save the download to the computer in order to install the hotfix later


Uninstalling the Hotfix

Once installed, this Backup Exec hotfix cannot be uninstalled.


Download Now  -  2708 K
File Name: be4367RHF21_276156.exe
File Type: Patch

Click Below to Browse the FTP files by Product:
ftp.support.veritas.com/pub/support/products



Supplemental Material:

System: Ref.#Description
ETrack: 341299 Backup Exec Agent Remote Denial of Service Vulnerability
ETrack: 341298 Duplicate Handle Access Security Vulnerability
ETrack: 341300 Backup Exec Agent Remote Buffer Overflow Vulnerability


Products Applied:
 Backup Exec for Windows Servers 9.0, 9.0 4367

Last Updated: September 20 2005 01:11 PM GMT
Expires on: 365 days from publish date
Subscribe Via E-Mail IconSubscribe to receive critical updates about this document

Subjects:
 Backup Exec for Windows Servers
   Application: Backup, Patch, Remote Agent For Nt, Troubleshooting

Languages:
 Russian, English (US), French, German, Spanish, Italian, Japanese, Chinese, Korean

Operating Systems:
Windows 2000

Advanced Server Windows Powered, Datacenter Server, Professional, SAK, Server, Server Windows Powered

Windows NT

4.0 Server SP6a, 4.0 Workstation SP6a

Windows NT Small Business Server

2000, 4.5

Windows XP

Home 5.1, Pro 5.1

Windows Server 2003

DataCenter, Enterprise Server, Standard Server, Storage Server, Web Server

Windows Small Business Server 2003

Premium Edition, Standard Edition