|
|
|
01-13-2009, 10:10 AM
|
#1
|
Talking BlackBerry Encyclopedia
Join Date: Jan 2005
Location: LE
Model: Pearl
Carrier: T-Mobile
Posts: 202
|
Vulnerabilities in the PDF distiller - Interim Security Update 2
Please Login to Remove!
see KB from yesterday - View Document
anybody already installed the Interim Security Update 2 ?
any problems ?
|
Offline
|
|
01-13-2009, 10:14 AM
|
#2
|
Talking BlackBerry Encyclopedia
Join Date: Jun 2007
Location: Edmonton AB, Canada
Model: 9630
Carrier: Telus
Posts: 300
|
I just noticed this too. It's making the Tech news sites
BlackBerry issues interim security patch | Security - CNET News
I'm going to download and look to see if I can schedule some downtime for tonight. I'm only at 4.1.6 MR2 though, so I'll probably have to do MR3 and then this seperate patch.
__________________
Blackberry Admin
BES 5.0.2 MR4
Exchange 2010 SP1 RU2
Blackberry 9630
WES 2008 Alumni
Last edited by wunderbar; 01-13-2009 at 10:15 AM..
|
Offline
|
|
01-13-2009, 11:23 AM
|
#3
|
Wireless Sith Lord
Join Date: Jan 2007
Location: Online
Model: iOS 6
Carrier: Verizon x2
Posts: 1,458
|
PDFs blocked again..... *sigh*
__________________
DarthBBerry
6-Time BlackBerry World Champion (2007-2012)
BlackBerry® Certified Support Specialist v5.0
BlackBerry® Certified System Administrator v5.0
|
Offline
|
|
01-13-2009, 11:43 AM
|
#4
|
BlackBerry Elite
Join Date: Jan 2008
Location: Massachusetts
Model: DT60
OS: 123456789
PIN: t of blood has been taken
Carrier: AT&T-US with I dee ten tee errors
Posts: 7,325
|
I just got them.
I do not like they way they named the files. somewhat clueless.
4.1.pdf instead of 4.1.6 MR3 release notes.pdf
BlackBerry_Enterprise_Server_Version_4.1.pdf instead of 4.1.6 Interim Security Software Update 2.pdf
And it also states that you need to reapply it unless you are MR4.
So update the service pack first then the PDf fix.
__________________
I had to fall
To lose it all
But in the end
It doesn't even matter
Rocking the Motion with out lotion.
Last edited by knottyrope; 01-13-2009 at 11:54 AM..
|
Offline
|
|
01-13-2009, 12:17 PM
|
#5
|
Thumbs Must Hurt
Join Date: Apr 2008
Location: Canada
Model: 9800
PIN: N/A
Carrier: MTS
Posts: 71
|
Thanks for the heads up!!
I also just blocked pdf's again.
|
Offline
|
|
01-13-2009, 12:36 PM
|
#6
|
CrackBerry Addict
Join Date: May 2005
Model: 8900
Carrier: T-Mobile
Posts: 560
|
So basically, after the first interim fix last year, they forgot to include the fix in the subsequent MR's?
Brilliant.
Edit: Ok, maybe they are new and different. Still, what a pain.
__________________
BESX 4.1.7 on Exchange 2003: 65 Devices
BESX 5.0.3 on Exchange 2003: 2007 Devices
Last edited by mahoward; 01-13-2009 at 12:38 PM..
|
Offline
|
|
01-13-2009, 02:00 PM
|
#7
|
BBF War Game Mod
Join Date: Oct 2006
Location: Denver CO
Model: Z10
OS: 10010614
PIN: SEEKRIT innit
Carrier: AT&T
Posts: 4,294
|
Boo
__________________
Jadey : Infrastructure Architect, Denver CO
|
Offline
|
|
01-13-2009, 10:54 PM
|
#8
|
Talking BlackBerry Encyclopedia
Join Date: Jun 2007
Location: Edmonton AB, Canada
Model: 9630
Carrier: Telus
Posts: 300
|
Looks like this interm patch is harder to apply than we thought. I just downloaded it to apply it and all it is is 3 dll files. There are no instructions on how to properly apply these dll files. I assume you have to un-register the old one's delete them, then copy the new ones and re-register, but there does not appear to be any doucmentation for exactly how to apply it. I'm aborting for tonight, and will just have to disable PDF viewing on my devices for now.
__________________
Blackberry Admin
BES 5.0.2 MR4
Exchange 2010 SP1 RU2
Blackberry 9630
WES 2008 Alumni
|
Offline
|
|
01-13-2009, 11:11 PM
|
#9
|
CrackBerry Addict
Join Date: Oct 2004
Model: 9800
OS: 6.0.0.337
Carrier: (¯`·.¸at&t¸.·´¯)
Posts: 825
|
?? when i downloaded it I also downloaded the release notes which give clear instructions. I applied this yesterday with no issues. But yes you are right with your instructions anyway. except they add to stop the attachment service and the dispatcher. Unregister the 3 dll's. copy over new ones. register new ones. start services. that's it.
|
Offline
|
|
01-14-2009, 01:44 AM
|
#10
|
Knows Where the Search Button Is
Join Date: Jul 2008
Model: 9000
PIN: N/A
Carrier: TMO
Posts: 32
|
Installation script
Hi,
I build a small installation script for the PDF fix.
Just copy the new DLLs and the script together in a directory on the BES and start the script.
What it does:
1) Find BES installation directory via registry
2) Stop Blackberry Dispatcher, Blackberry Attachment Service and Blackberry Synchronization Service
3) Backup old files
4) De-register DLLs
5) Copy new files
6) Register DLLs
7) Start services
I tested it on 4.1.5 and 4.1.6 on Domino only. It may also work on Exchange, but you might have to change the service names.
Greetings,
Neo3000
__________________
BES 4.1.7 (20 servers), Domino 7.0.3 with 19000+ users
BES 5.0.2 (8 server), Exchange 2010 SP1 with 1000+ users
|
Offline
|
|
01-14-2009, 09:40 AM
|
#11
|
BlackBerry Elite
Join Date: Jan 2008
Location: Massachusetts
Model: DT60
OS: 123456789
PIN: t of blood has been taken
Carrier: AT&T-US with I dee ten tee errors
Posts: 7,325
|
Sounds like a nice script.
I might play with it for exchange today if I get some time.
__________________
I had to fall
To lose it all
But in the end
It doesn't even matter
Rocking the Motion with out lotion.
|
Offline
|
|
01-14-2009, 10:01 AM
|
#12
|
Talking BlackBerry Encyclopedia
Join Date: Jun 2007
Location: Edmonton AB, Canada
Model: 9630
Carrier: Telus
Posts: 300
|
That's very weird, because I tried to download the release notes as well, and the link wasn't working. This morning, it is. Maybe I need to double check the specific computer I was trying to download the release notes too. I dunno. As it stands I now have the release notes, and will go install the patch, and try to remove my foot from my mouth.
__________________
Blackberry Admin
BES 5.0.2 MR4
Exchange 2010 SP1 RU2
Blackberry 9630
WES 2008 Alumni
|
Offline
|
|
01-14-2009, 10:25 AM
|
#13
|
CrackBerry Addict
Join Date: May 2005
Model: 8900
Carrier: T-Mobile
Posts: 560
|
Quote:
Originally Posted by Neo3000
Hi,
I build a small installation script for the PDF fix.
Just copy the new DLLs and the script together in a directory on the BES and start the script.
What it does:
1) Find BES installation directory via registry
2) Stop Blackberry Dispatcher, Blackberry Attachment Service and Blackberry Synchronization Service
3) Backup old files
4) De-register DLLs
5) Copy new files
6) Register DLLs
7) Start services
I tested it on 4.1.5 and 4.1.6 on Domino only. It may also work on Exchange, but you might have to change the service names.
Greetings,
Neo3000
|
I was going to do this myself but thought.... bah don't have the time.
THANKS!
__________________
BESX 4.1.7 on Exchange 2003: 65 Devices
BESX 5.0.3 on Exchange 2003: 2007 Devices
|
Offline
|
|
01-14-2009, 09:34 PM
|
#14
|
New Member
Join Date: Jan 2008
Model: 8700
PIN: N/A
Carrier: -
Posts: 1
|
Is Interim Security Software Update "2" replace Interim Security Software Update "1"?
(in actuality "1" is not added)
the version of .dll files are,
Interim Security Software Update: version 4.1.4.18
Interim Security Software Update 2: version 4.1.4.19
*our BES are 4.1.4 MR6.
|
Offline
|
|
01-15-2009, 10:06 AM
|
#15
|
BlackBerry Elite
Join Date: Jan 2008
Location: Massachusetts
Model: DT60
OS: 123456789
PIN: t of blood has been taken
Carrier: AT&T-US with I dee ten tee errors
Posts: 7,325
|
Yes it replaces it.
__________________
I had to fall
To lose it all
But in the end
It doesn't even matter
Rocking the Motion with out lotion.
|
Offline
|
|
01-15-2009, 01:02 PM
|
#16
|
BlackBerry Extraordinaire
Join Date: Mar 2007
Model: Z10
OS: 10.1.0.19
Carrier: Fido
Posts: 1,068
|
Quote:
Originally Posted by knottyrope
Yes it replaces it.
|
Not according to RIM's KB... hmmmm :
View Document
|
Offline
|
|
01-15-2009, 04:58 PM
|
#17
|
Thumbs Must Hurt
Join Date: Mar 2005
Model: Torch
Carrier: ATT
Posts: 179
|
NEO3000 - I used your script with no changes at all and it worked beautifully on my BES v4.1.6 MR2 Exchange version. One BES down, 23 more to go!!
Can't thank you enough!
|
Offline
|
|
01-15-2009, 05:25 PM
|
#18
|
Thumbs Must Hurt
Join Date: Mar 2005
Model: Torch
Carrier: ATT
Posts: 179
|
Just noticed - Have to edit the script: replace 'Blackberry Attachment Service' with 'BBAttachService' .
|
Offline
|
|
01-15-2009, 05:32 PM
|
#19
|
BlackBerry Elite
Join Date: Jan 2008
Location: Massachusetts
Model: DT60
OS: 123456789
PIN: t of blood has been taken
Carrier: AT&T-US with I dee ten tee errors
Posts: 7,325
|
Quote:
Originally Posted by fadmin
|
My version is 4.1.6.12 on the DLL.
The old one (1) for SP5 was 4.1.5.18
The new one (2) for SP5 is 4.1.5.22
My guess he has PRO and it does need the newer version, hope he did not download the wrong version. This could get confusing fast.
__________________
I had to fall
To lose it all
But in the end
It doesn't even matter
Rocking the Motion with out lotion.
Last edited by knottyrope; 01-15-2009 at 05:38 PM..
|
Offline
|
|
01-19-2009, 05:03 PM
|
#20
|
Talking BlackBerry Encyclopedia
Join Date: Aug 2006
Location: stl, MO
Model: 8330
PIN: nope
Carrier: verizon
Posts: 314
|
soo....When you apply this patch is removes the pdf distiller? Cause mine is gone now...whats the deal?
__________________
Me likey BlackBerry
|
Offline
|
|
|
|