HomeProductsSupportServicesTrainingPartnersCompanyContact     


assuriaONLINE Customer and Partner resources Logon / register

     

 

 
 Title:                        XPU 43 Release information
 
 Number:                  11       Date:
    31st march 2006
 

 

Title.

XPU 43 Release information

 

Introduction

This Assuria Bulletin announces the availability of XPU 43, which provides updated security content and bug corrections.

 This XPU provides new and updated checks for Windows, AIX 5L and Red Hat Enterprise agents. Updated Patch databases are provided for Solaris, HP-UX and AIX 5L.

 XPU 43 is fully compatible with the ISS System Scanner range of products, and is managed by the ISS System Scanner Console.

 

 Features of this release

 Console:

Console Database update with updated information on new and existing checks.   Updated Policy Navigators for Red Hat Enterprise Linux, Windows 2000 and Windows 2003. 

 

Console update

    o Database update

      - Updated information on new and existing checks

     o Policy Navigators

      - Microsoft Windows 2000     

      - Microsoft Windows Server 2003

      - Red Hat Enterprise Linux

      - IBM AIX 4.3 and later

     o Updated Console Configuration File

      - xpu_config

 

 

Agents
 

Agent updates

Updates are included for the following agents:

  • Microsoft Windows 2000 (Server and Professional)

  • Microsoft Windows Server 2003

  • Red Hat Enterprise Linux (Versions 3 & 4)

  • IBM AIX

  • HP HP-UX 11

  • Sun Solaris on SPARC (Versions 7, 8 & 9)

 Date Execution Prevention (DEP) problem reported in Assuria Bulletin 09.

A replacement checker.exe file is shipped for the Windows Server 2003 agent. This sets page execution permission so as to avoid false-positive Data Execution Prevention (DEP) exceptions when executing System Scanner’s password checking functionality on a processor running Windows 2003 with service pack 1 installed and hardware DEP enabled. Without this fix, such exceptions caused the LSASS system process to crash and the operating system to initiate a controlled shutdown. The fix resolves the issue described in Assuria Bulletin 09 and replaces the workarounds described there.

 XPU_Config file.

A replacement xpu_config file is shipped for the console. Previous XPU 36, shipped by ISS in 2005, replaces the agent service executable (ntsmnetd.exe) on all Windows platforms. In doing so, it correctly causes the agent service to shutdown and restart. However when a sequence of XPUs including XPU 36 was applied to a Windows agent, the console was failing to wait for this restart before pushing the next XPU to the agent. The consequence was that the following XPU push could fail in an unpredictable fashion. It is recommended that customers apply XPU 43 to their consoles before pushing XPU 36 to any agents not yet updated.

 IBM AIX Fixes

The update to the IBM AIX agent includes a set of checks, and a policy (aix-fixes) that runs them, which are being release as a beta release. These checks introduce a new mechanism for checking for the absence of AIX fixes on AIX 5.1, 5.2 and 5.3. At this release the aix-fixes policy is not included into any of the Initial-* or Maintenance-* policies, and hence these checks will only be run is the aix-fixes policy is explicitly requested.

 

 

 

Agent updates

Updates are included for the following agents:

     o Microsoft Windows 2000 (Server and Professional)

    o Microsoft Windows Server 2003

    o Red Hat Enterprise Linux (Versions 3 & 4)

    o IBM AIX

    o HP HP-UX 11

    o Sun Solaris on SPARC (Versions 7, 8 & 9)

 

 Microsoft Windows 2000 (Server and Professional):

    o Updated Checks

      - win-no-security-updates

     o X-Press Update Files

      - rulesets/unarchivePolicy

      - signatures/rulesets/unarchivePolicy.sgn

      - lib/xpud3_43.zip

      - lib/xpud3_43.sgn

 

 

Microsoft Windows Server 2003:

    o New Checks

      - win-ms05kb914798-update

    o Updated Policies

      - Initial-1

      - Initial-All

      - Maintenance-1

      - Maintenance-All

      - versionChecks

    o Updated Checker Engine

      - checker.exe

     o X-Press Update Files

      - rulesets/unarchivePolicy

      - signatures/rulesets/unarchivePolicy.sgn

      - lib/xpud3_43.zip

      - lib/xpud3_43.sgn

 

 Red Hat Enterprise Linux (Versions 3 & 4)

    o New Checks

      - RHSA-2006-0016

      - RHSA-2006-0044

      - RHSA-2006-0052

      - RHSA-2006-0129

      - RHSA-2006-0132

      - RHSA-2006-0195

      - RHSA-2006-0197

      - RHSA-2006-0204

      - RHSA-2006-0232

      - RHSA-2006-0262

        o Updated Policies

      - Initial-1

      - Initial-All

      - Maintenance-1

      - Maintenance-All

      - rhsa

      o X-Press Update Files

      - rulesets/unarchivePolicy

      - signatures/rulesets/unarchivePolicy.sgn

      - lib/xpud3_43.zip

      - lib/xpud3_43.sgn

 

 IBM AIX

    o New Checks

      - aix-IY63363-fix

      - aix-IY63364-fix

      - aix-IY63365-fix

     o Updated Policies

      - aix-fixes

     o X-Press Update Files

      - rulesets/unarchivePolicy

      - signatures/rulesets/unarchivePolicy.sgn

      - lib/xpud3_43.zip

      - lib/xpud3_43.sgn
 

 HP HP-UX 11

    o Updated Patch Database

      - bin/patch_HP-UX.data

      - bin/patch_HP-UX.re

    o X-Press Update Files

      - rulesets/unarchivePolicy

      - signatures/rulesets/unarchivePolicy.sgn

      - lib/xpud3_43.zip

      - lib/xpud3_43.sgn
 

 Sun Solaris on SPARC (Versions 7, 8 & 9)

    o Updated Patch Database

      - bin/patch_Solaris.data

      - bin/patch_Solaris.ref

    o X-Press Update Files

      - rulesets/unarchivePolicy

      - signatures/rulesets/unarchivePolicy.sgn

      - lib/xpud3_43.zip

      - lib/xpud3_43.sgn
 

 

 
Assuria Limited, Reading Science & Technology Centre, The University of Reading, Earley Gate, Reading, RG6 6BZ, UK. 
Telephone +44 118 935 7395     Fax +44 118 935 7330     Web www.assuria.co.u

 


System Scanner and X-Press Update are registered trademarks of Internet Security Systems Inc. of Atlanta, Georgia, USA
© Copyright Assuria Limited.  All rights reserved.



27/01/2008

Legal notice | Site map | Contact Assuria

©
Copyright 2006 - Assuria Limited.  All rights reserved