cancel
Showing results for 
Search instead for 
Did you mean: 

Are earlier versions vulnerable to recent Security Alerts

Bob_Emmons
Level 2
We still have over 100 NT servers running older versions (7.x, 8.x) of Backup Exec. These are targetted to be replaced with Windows 2003 servers and currently supported versions of Backup before year-end. For now we need to know definitively if the older versions are affected by the recently published vulnerabilities. We need to know whether we need to go to the time and expense of upgrading these servers and the related agents NOW, as we do a crash rollout of the hotfix. Can someone please offer an answer?
4 REPLIES 4

Renuka_-
Level 6
Employee
Hello,

In order to patch the server for the vulnerabilities found in backup exec you need to upgrade to minimum version 9.1.
Please refer to the following link for more details on the patches available:
http://seer.support.veritas.com/docs/277429.htm

Additional Information :
For information on the recent VERITAS Backup Exec security vulnerabilities, including links to the downloads for the necessary hotfixes, please refer to the following document:
Patch summary for Security Advisories VX05-001, VX05-002, VX05-003, VX05-005, VX05-006, VX05-007

http://seer.support.veritas.com/docs/277429.htm

NOTE : If we do not receive your reply within two business days, this post would be marked assumed answeredand would be moved toanswered questions pool.

Ken_Putnam
Level 6
Since the whole way of using the Remote Agent changed from v8 -> v9, previous versions should be unaffected.

Bob_Emmons
Level 2
Because of the large number of production servers running the backlevel agents, in order to justify this interruption to the production environment, I need a definitive statement from the company that versions prior to version 9.x are vulnerable. I already know what's involved in upgrading to be able to apply the fix, I need to know that it's absolutely necessary.

Amruta_Purandar
Level 6
Hello,

SYMANTEC has limited testing to the supported versions of Backup Exec for Windows Servers, in determining what vulnerabilities exist for which product. At the time of this document’s publish date, the supported versions are 9.0 revisions 4367 & 4454, 9.1 revision 4691, and 10.0 revision 5484.


Additional Information :
For information on the recent VERITAS Backup Exec security vulnerabilities, including links to the downloads for the necessary hotfixes, please refer to the following document:
Patch summary for Security Advisories VX05-001, VX05-002, VX05-003, VX05-005, VX05-006, VX05-007

http://seer.support.veritas.com/docs/277429.htm

NOTE : If we do not receive your reply within two business days, this post would be marked assumed answered and would be moved to answered questions pool.