* ____________________________________________________________________________ * * ID: 1 * PRODUCT: AXWMAC * RELEASE: 11.1 * DESC: MAC-COMMON AGENT VULNERABILITY * SYSTEMS AFFECTED: MAC * SOLUTION TEXT: PRODUCT: BAB for Windows Agent for MAC OS X RELEASE: 11.1 APAR #: QO63682 DATE: 31 JAN 2005 PROBLEM DESCRIPTION: MAC-COMMON AGENT VULNERABILITY ---------------------------------------------------- A security vulnerability had been found in the BrightStor ARCserve Backup (BAB) Common Agent. This vulnerability was reported to CA by iDEFENSE. This patch eliminates this security vulnerability and should be applied to all systems that have BAB common agent component installed; the common agent is typically installed on systems that have the base product or any type of BAB agents (file system, database, or application). PREREQS: None MPREREQS: None COREQS: None MCOREQS: None SUPERSEDED: None HYPER: YES DISTRIBUTION CODE: A (A=Available, I=Internal) PROBLEM RESOLUTION: Follow the instructions below: 1. Copy the fix file to a temporary directory on a Windows server and uncompress as follows: cazipxp -u QO63682.caz 2. Ftp caagentd to your MAC server. 3. Shutdown BrightStor ARCserve Backup common agent ( caagent stop ). 4. Copy the fix file to a temporary directory on a WIndows server and uncompress as follows: cazipxp -u QO63682.caz 5. Ftp caagentd to your MAC server. 6. Change directory to BrightStor ARCserve Backup common agent home directory. (Note: run ls -l /usr/bin/caagent to identify the common agent home directory. By default the common agent home directory is /opt/CA/BABcmagt) 7. Save the original files: cp -p caagentd caagentd_pre.QO63682 8. Copy in the new files: cp /tmp/QO63682/cagentd . 9. Start BrightStor ARCserve Backup common agent (caagent start). PRODUCT(S) AFFECTED: BAB for Windows Agent for MAC OS X Release 11.1 DOWNLOAD INFORMATION: --------------------- NODE: ftp.ca.com PATH: /CAproducts/unicenter/AXWBAS/mac/GA/QO63682 FILES: QO63682.D2I QO63682.CAZ UPDATED ROUTINES: --------------- caagentd 153272 WED DEC 15 18:16:48 2004 * ____________________________________________________________________________ * * MAC VERSION: 0 EFFECTIVE: 01/31/2005 ACTION: A *** NO ZAPS FOR THIS VERSION ***