============================================================

Similar documents
============================================================ About this release:

Release Notes for McAfee(R) VirusScan Enterprise for Linux Version Hotfix Copyright (C) 2013 McAfee, Inc. All Rights Reserved

Release Notes for McAfee(R) VirusScan(R) Enterprise for Linux Version Copyright (C) 2014 McAfee, Inc. All Rights Reserved

McAfee Security for Microsoft SharePoint Hotfix

Release Notes McAfee Change Control 7.0.0

McAfee Firewall Enterprise and 8.3.x

Release Notes for McAfee(R) Security for Lotus Domino(TM) Version 7.5 with Patch 2 Hotfix Copyright (C) 2013 McAfee, Inc. All Rights Reserved

McAfee Rogue Database Detection For use with epolicy Orchestrator Software

========================================================== Release date: December 03, This release was developed and tested with:

Endpoint Intelligence Agent 2.2.0

McAfee Security for Microsoft Exchange Hotfix Release Notes

McAfee Data Loss Prevention 9.3.1

This document contains important information about the current release. We strongly recommend that you read the entire document.

McAfee Endpoint Security

McAfee Content Security Reporter Release Notes. (McAfee epolicy Orchestrator)

McAfee Data Loss Prevention Endpoint

McAfee Application Control Windows Installation Guide. (McAfee epolicy Orchestrator)

Release Notes McAfee Application Control 6.1.2

McAfee Data Loss Prevention 9.2.2

McAfee Endpoint Security Threat Prevention Installation Guide - macos

This release of the product includes these new features that have been added since NGFW 5.5.

Release Notes McAfee Change Control 8.0.0

McAfee epolicy Orchestrator 5.x

McAfee Endpoint Security Threat Prevention Installation Guide - Linux

McAfee epolicy Orchestrator Release Notes

McAfee Firewall Enterprise

McAfee Web Gateway

McAfee File and Removable Media Protection Installation Guide

McAfee Data Loss Prevention 9.3.3

Release Notes for McAfee(R) Security for Microsoft Exchange(TM) Version 8.0 Copyright (C) 2013 McAfee, Inc. All Rights Reserved

McAfee Data Loss Prevention 9.3.2

McAfee MVISION Endpoint 1811 Installation Guide

This release of the product includes these new features that have been added since NGFW 5.5.

Data Loss Prevention Endpoint

McAfee Content Security Reporter 2.6.x Installation Guide

Boot Attestation Service 3.0.0

Release Notes McAfee Application Control 6.1.0

McAfee epolicy Orchestrator Release Notes

This release of the product includes these new features that have been added since NGFW 5.5.

Product Guide. McAfee Endpoint Upgrade Assistant 1.4.0

McAfee Endpoint Security

McAfee Firewall Enterprise 8.3.2P05

Best Practices Guide. Amazon OpsWorks and Data Center Connector for AWS

McAfee Data Protection for Cloud 1.0.1

McAfee Policy Auditor 6.2.2

Resolution: The DataChannel servlet no longer stops working, regardless of the state of the DataChannel extension.

McAfee epolicy Orchestrator Update 2

McAfee Change Control and McAfee Application Control 8.0.0

McAfee Content Security Reporter Installation Guide. (McAfee epolicy Orchestrator)

Product Guide. McAfee GetClean. version 2.0

McAfee MVISION Endpoint 1808 Installation Guide

McAfee Data Loss Prevention Endpoint 10.0

McAfee Firewall Enterprise epolicy Orchestrator Extension

Product Guide. McAfee Endpoint Upgrade Assistant 1.5.0

McAfee Data Loss Prevention Endpoint

McAfee Client Proxy Installation Guide

McAfee epolicy Orchestrator Software

McAfee Application Control Windows Installation Guide

Installing Data Exchange Layer

Migration Guide. McAfee File and Removable Media Protection 5.0.0

Network Security Platform 8.1

McAfee Endpoint Upgrade Assistant Product Guide. (McAfee epolicy Orchestrator 5.9.0)

McAfee Endpoint Security Migration Guide. (McAfee epolicy Orchestrator)

Installing Client Proxy software

McAfee Gateway Appliance Patch 7.5.3

McAfee MER for EPO 3.1 Walkthrough Guide. About this guide This guide provides information on how to use McAfee MER for EPO 3.1.

Firewall Enterprise epolicy Orchestrator

McAfee Management of Native Encryption 3.0.0

McAfee SiteAdvisor Enterprise 3.5.0

McAfee Web Gateway

MCAFEE THREAT INTELLIGENCE EXCHANGE RESILIENT THREAT SERVICE INTEGRATION GUIDE V1.0

McAfee VirusScan and McAfee epolicy Orchestrator Administration Course

McAfee Web Gateway

McAfee Boot Attestation Service 3.5.0

McAfee Network Security Platform

Stonesoft Management Center. Release Notes Revision C

McAfee Web Gateway

Network Security Platform 8.1

Installation Guide. McAfee Endpoint Security for Servers 5.0.0

McAfee Endpoint Upgrade Assistant 2.3.x Product Guide

McAfee Data Loss Prevention Endpoint 9.4.0

This release of the product includes these new features that have been added since NGFW 5.5.

McAfee Next Generation Firewall 5.9.1

McAfee Endpoint Upgrade Assistant 1.5.0

McAfee Endpoint Upgrade Assistant Product Guide. (McAfee epolicy Orchestrator)

Installation Guide. McAfee Web Gateway. for Riverbed Services Platform

McAfee Network Security Platform 8.3

NGFW Security Management Center

McAfee Change Control and McAfee Application Control 6.1.4

Network Security Platform 8.1

McAfee Endpoint Security

McAfee Database Security Hotfix 2 Release Notes

McAfee Network Security Platform 9.1

NGFW Security Management Center

McAfee Advanced Threat Defense 3.4.4

Network Security Platform 8.1

McAfee Host Intrusion Prevention Administration Course

NGFW Security Management Center

Stonesoft Management Center. Release Notes Revision B

NGFW Security Management Center

Transcription:

Release Notes for McAfee(R) VirusScan Enterprise for Linux Version 2.0.0 Hotfix 967083 Copyright (C) 2014 McAfee, Inc. All Rights Reserved. ============================================================ About this release: Thank you for using our software. This document contains important information about this release. We recommend that you read the entire document. Release date: June 23, 2014 This release was developed for use with: McAfee(R) VirusScan Enterprise for Linux: 2.0.0 with Hotfix 947660 installed. Resolved issues: The following issues are resolved in this Hotfix release of the product: VirusScan Enterprise for Linux 2.0 is not compatible with epolicy Orchestrator, which is installed in Federal Information Processing Standard (FIPS) mode. After installing the parser extension provided with this hotfix, VirusScan Enterprise for Linux is compatible with epolicy Orchestrator, which is installed in FIPS mode. The on-demand task temporary files that begin with the. character are accumulated in the /var/opt/nai/linuxshield/etc/ directory. (BZ 945659) After applying this hotfix, VirusScan Enterprise for Linux deletes all the older on-demand task temporary files in /var/opt/nai/linuxshield/etc/ directory either when starting the nails service or when starting the new on-demand scan task. CVE-2014-0224 (OpenSSL Man-in-the-Middle (MITM) vulnerability) in OpenSSL software library version 1.0.1g and earlier versions.

For more information on CVE-2014-0224, see https://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2014-0224 After applying this hotfix, the OpenSSL library version is upgraded to 1.0.1h that has a fix for the OpenSSL MITM Note: After applying this hotfix, VirusScan Enterprise for Linux generates new keys and installs the new certificate. When you launch the software interface, you will be prompted to accept the new certificate. Note: The fix provided for the following issues in the Hotfix HF960961 is merged with this Hotfix (HF967083). CVE-2014-0160 (OpenSSL Heartbeat vulnerability) in OpenSSL software library versions 1.0.1 to 1.0.1f. For more information on CVE-2014-0160, see https://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2014-0160 After applying this Hotfix, the OpenSSL library version is upgraded to 1.0.1h that has a fix for the OpenSSL Heartbeat CVE-2010-5298 (OpenSSL SSL_MODE_RELEASE_BUFFERS vulnerability) in OpenSSL software library versions 1.0.1 to 1.0.1f. For more information on CVE-2010-5298, see https://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-5298 After applying this Hotfix, the OpenSSL library version is upgraded to 1.0.1h that has a fix for the OpenSSL Release Buffer Important: McAfee strongly recommends that you reset the VirusScan Enterprise for Linux administrator password after applying this hotfix. Files included with this release: This Hotfix comprises a single compressed archive file McAfeeVSEForLinux-2.0.0.28948-HF967083-release.tar.gz which contains the following files: McAfeeVSEForLinux-2.0.0.28948-HF967083-EPO.zip =

Hotfix package that can be deployed from the epolicy Orchestrator server. McAfeeVSEForLinux-2.0.0.28948-HF967083.tar.gz = Hotfix package that can be installed manually on standalone systems and contain the following files: setuphf = Installer script. Readme-HF967083.txt = This text file. McAfeeVSEForLinux-2.0.0.28948.x86_64-payload.tar = Binaries built for 64-bit computers. LYNXSHLDPARSER.zip = The parser extension file for epolicy Orchestrator FIPS mode. Installation instructions: Requirements: To use this hotfix, you must have McAfee VirusScan Enterprise for Linux software version 2.0.0 with Hotfix 947660 installed on the computer you intend to update. This hotfix will not work with any earlier versions of the software. Standalone installation: 1. Download "McAfeeVSEForLinux-2.0.0.28948-HF967083.zip" to a temporary directory, then execute the following commands in this sequence: # unzip McAfeeVSEForLinux-2.0.0.28948-HF967083.zip # cd McAfeeVSEForLinux-2.0.0.28948-HF967083 # tar -zxvf McAfeeVSEForLinux-2.0.0.28948-HF967083-release.tar.gz # tar -zxvf McAfeeVSEForLinux-2.0.0.28948-HF967083.tar.gz For SuSE platforms: # bash setuphf For Ubuntu platforms: # sudo bash setuphf Installation through epolicy Orchestrator: 1. Download and unzip "McAfeeVSEForLinux-2.0.0.28948-HF967083.zip" to a temporary directory. 2. From the extracted folder "McAfeeVSEForLinux-2.0.0.28948-HF967083", untar the file "McAfeeVSEForLinux-2.0.0.28948-HF967083-release.tar.gz".

3. Log onto epolicy Orchestrator, then click Menu Software Master Repository. 4. Click Actions Check In Package. The Package page appears. 5. From Package type, select "Product or Update (.ZIP). 6. From File path, click Browse and select the file "McAfeeVSEForLinux-2.0.0.28948-HF967083-EPO.zip". 7. Click Open, then click Next. The Package Options page appears. 8. Select the appropriate branch, then click Save. 9. Create an Update task and deploy this hotfix package. To install the parser extension file, see instructions in the product guide of your version of epolicy Orchestrator. Removing this Hotfix: To remove this Hotfix and revert to the original setup, you must reinstall the McAfee(R) VirusScan Enterprise for Linux version 2.0.0 software. Known issues: For known issues in this product release, refer to McAfee KnowledgeBase article KB80085 at: https://kc.mcafee.com/corporate/index?page=content&id=kb80085 Finding product documentation: McAfee provides the information you need during each phase of product implementation, from installation to daily use and troubleshooting. After a product is released, information about the product is entered into the McAfee online KnowledgeBase. 1. Go to the McAfee Technical Support ServicePortal at http://mysupport.mcafee.com. 2. Under Self Service, access the type of information you need: For user documentation: 1. Click "Product Documentation." 2. Select a "Product," then select a "Version." 3. Select a product document.

For the KnowledgeBase: 1. Click "Search the KnowledgeBase" for answers to your product questions. 2. Click "Browse the KnowledgeBase" for articles listed by product and version. Copyright (C) 2014 McAfee, Inc. Do not copy without permission. McAfee and the McAfee logo are trademarks or registered trademarks of McAfee, Inc. or its subsidiaries in the United States and other countries. Other names and brands may be claimed as the property of others. 00-A