SOFTPAQ NUMBER : SP10566 PART NUMBER: N/A FILE NAME: UPDTHMMO.BAT TITLE: Compaq Insight Management Agent Security Patch VERSION: 1A LANGUAGE: English CATEGORY: Software Solutions DIVISIONS: Systems PRODUCTS AFFECTED: Compaq Insight Management Agents for NetWare OPERATING SYSTEM: Novell NetWare 3.12, NetWare 4.x, and NetWare 5. SYSTEM CONFIGURATION: N/A PREREQUISITES: N/A EFFECTIVE DATE: June 18, 1999 ELECTRONIC DISTRIBUTION ALLOWED: Yes SOFTPAQ UTILITY VERSION: 2.x SUPERSEDES: N/A DESCRIPTION: This SoftPaq allows updating a file needed to fix a potential security issue in the web-enabled portion of the Compaq Insight Management Agents for Novell NetWare. This file read issue can allow read access to files whose location and filename are known and is located on the same file system where the agents are installed. The overflow security issue can potentially cause the NetWare server to abend. This affects the web component of the affected products for the following versions: Compaq Insight Management Agents version 4.0 to 4.23 HOW TO USE: Have all the associated files in a single directory on your hard drive and perform the following steps: 1. Use a Web Browser pointing to a server running the web enabled agents to identify your CPQHMMO.NLM version. If CPQHMMO.NLM is 1.05c or greater then NO UPDATE IS NEEDED. 2. Land the SoftPAQ onto a temporary subdirectory on a client and map a drive to the root of the SYS: volume of the target NetWare server (you must have supervisor rights). Run the UPDTHMMO.BAT batch file passing the drive letter of the target server. This will back up the current CPQHMMO.NLM as *.BK$ file and copy the 1.05c CPQHMMO.NLM onto the server. 3. At a convenient time DOWN and RESTART your server 4. Use a Web Browser to verify functionality of new web agent update. HOW TO RESTORE YOUR ORIGINAL CONFIGURATION: To restore the original version of the patched file, perform the following step: 1. Run the RESTHMMO.BAT (passing the drive letter of the target server) to restore the configuration to its original state. Copyright 1999, Compaq Computer Corporation. All rights reserved. Product names mentioned herein may be trademarks and/or registered trademarks of their respective companies