Security Pack NB_ORA_45_9S2_F.hp11.11.tar provides security-related fixes for Veritas NetBackup (tm) DataCenter / BusinesServer 4.5FP for Oracle Database Agent on HP-UX 11.11 platforms.

Article:TECH47100  |  Created: 2006-01-22  |  Updated: 2013-10-23  |  Article URL http://www.symantec.com/docs/TECH47100
Article Type
Technical Solution

Product(s)

Environment

Issue



Security Pack NB_ORA_45_9S2_F.hp11.11.tar provides security-related fixes for Veritas NetBackup (tm) DataCenter / BusinesServer 4.5FP for Oracle Database Agent on HP-UX 11.11 platforms.

Solution



ORA 4.5FP_6/4.5FP_9S1443 Pack NB_ORA_45_9S2_F README OEBU March 23, 2006
Requirement: NB_CLT_45_9S2_F
================================================================================
This Security Pack provides updates and fixes for VERITAS NetBackup (tm) for
Oracle Database Agent.

================================================================================



=================
PACK DEPENDENCIES
=================

-- 4.5 FP6 must be installed prior to installing this pack.

-- NB_CLT_45_9S2_F must be installed prior to installing this pack.

-- Installation of this pack requires version 1.8.2.26 of the
Vrts_pack.install.


I. DOWNLOAD INSTRUCTIONS
II. INSTALLATION INSTRUCTIONS
III. UNINSTALL INSTRUCTIONS
IV. DESCRIPTION OF PROBLEMS FIXED
Current Pack


=========================
I. DOWNLOAD INSTRUCTIONS
=========================
1) Download NB_ORA_45_9S2_F_<6 digit number>.<platform>.tar into the /tmp
directory.

where <6 digit number> is an internal tracking identifier

where <platform> is: alpha, dg_ux, hp11.00, hp11.11, linux2.2,
rs6000_433, rs6000_51, sgi65, solaris2.6

2) Extract NB_ORA_45_9S2_F_<6 digit number>.<platform>.tar
/bin/tar -xvf NB_ORA_45_9S2_F_<6 digit number>.<platform>.tar

This will create the files:
Vrts_pack.install
VrtsNB_ORA_45_9S2_F.README
VrtsNB_ORA_45_9S2_F.<platform>.tar.Z



==============================
II. INSTALLATION INSTRUCTIONS
==============================
There are two ways to install database agent pack software.

1. Remote Installation: Loads the software on a master server with
the intent of pushing database software out to affected clients.

2. Local Installation: Loads and installs the software only to this
local machine.

---

Remote Installation:

1. Log in as the Oracle user on the clients to receive the pack software
and shut down all Oracle instances. (Recommended)

As root on the NetBackup Master server:

2. Install the NB_ORA_45_9S2_F pack binaries.

cd /tmp
/bin/sh Vrts_pack.install

Pick option 1 (Remote Installation) when prompted for the installation
method.

3. Run update_dbclients to push pack software affected database agent
clients. For more information on how to run update_dbclients,
refer to the NetBackup for Oracle System Administrator's Guide.

4. For every client to which you pushed the pack software in step 3,
the following steps must be performed:

a. Log in as the Oracle user on the client and copy the library to
the LIBOBK_LOCATION.

If LIBOBK_LOCATION is not the same as /usr/openv/netbackup/bin

cp /usr/openv/netbackup/bin/libobk.[so,sl] ${LIBOBK_LOCATION}

cp /usr/openv/netbackup/bin/oracle_link ${LIBOBK_LOCATION}

b. Make the library visible to Oracle.

For RMAN:
Verify that the Oracle library is a link to the LIBOBK_LOCATION
library. If it is not, create a link:

ln -s ${LIBOBK_LOCATION}/libobk.[a,so,sl,so.1,so64,so64.1,sl64,a64] \
${ORACLE_HOME}/lib/libobk.[a,so,sl,so.1]

where LIBOBK_LOCATION is the pathname of the existing
NetBackup for Oracle library. LIBOBK_LOCATION is typically
/usr/openv/netbackup/bin.

c. Restart any Oracle instances.

----

Local Installation:

Warning: Before installation - If production rman scripts are found in
the /usr/openv/netbackup/ext/db_ext/oracle/samples/rman, please save them
in another location to prevent them from being overwritten.

1. Log in as the Oracle user and shut down all Oracle instances.(Required)

As root on the NetBackup for Oracle client:

2. Install the NB_ORA_45_9S2_F pack binaries.

cd /tmp
/bin/sh Vrts_pack.install

If the pack is being installed on a master server, pick option 2,
Local Installation, when prompted.

This will install the updated NetBackup files for the Oracle library
in /usr/openv/netbackup/bin.

3. Execute the Oracle install script.

/usr/openv/netbackup/bin/install_oracle

4. Copy the library to the LIBOBK_LOCATION.

If LIBOBK_LOCATION is not the same as /usr/openv/netbackup/bin

cp /usr/openv/netbackup/bin/libobk.[so,sl] ${LIBOBK_LOCATION}

cp /usr/openv/netbackup/bin/oracle_link ${LIBOBK_LOCATION}

5. Make the library visible to Oracle.

For RMAN:
Verify that the Oracle library is a link to the LIBOBK_LOCATION library.
If it is not, create a link:

ln -s ${LIBOBK_LOCATION}/libobk.[a,so,sl,so.1,so64,so64.1,sl64,a64] \
${ORACLE_HOME}/lib/libobk.[a,so,sl,so.1]

where LIBOBK_LOCATION is the pathname of the existing
NetBackup for Oracle library. LIBOBK_LOCATION is typically
/usr/openv/netbackup/bin.

6. Log in as the Oracle user and restart any Oracle instances.

For help linking the NetBackup for Oracle library, refer to
the support technote 233482, available on www.support.veritas.com.



============================
III. UNINSTALL INSTRUCTIONS
============================
1) Close the NetBackup user interfaces.

If a database agent is being used, such as Oracle,
ensure that the database services are stopped.

2) Change directory to the pack save directory.
Substitute the pack name for ${PACK} in the following command:

cd /usr/openv/pack/${PACK}/save

3) Run the un-install script:

./Vrts_pack.uninstall

4) Verify that the pack uninstalled successfully by checking
/usr/openv/pack/pack.history.

5) Only perform this step if the pack was originally pushed to remote
clients using update_dbclients. Please run update_dbclients after
the pack was successfully uninstalled on the master server.



==================================
IV. DESCRIPTION OF PROBLEMS FIXED
==================================
The following are descriptions of the problems fixed. Please read the entire
document before installing.

README Conventions:

Description
Describes a particular problem or feature contained in this pack.

** Description **
Describes a problem that can lead to potential data loss. Please read
these problem descriptions carefully.

Workaround
Any available workarounds to a problem are also listed. Workarounds
can be used INSTEAD of applying the patch, however, Symantec strongly
recommends the "best practice" of being at the latest patch level.

Additional Notes
Any additional information regarding this problem is included.


=============
Current pack
=============

================================================================================
Etrack Incident = ET542279 ET542261 ET542257 ET542275 ET536743 ET542255 ET542263 ET542265 ET542267 ET542269
ET542248 ET546392 ET546392 ET542499 ET542271

Description:
Multiple buffer overflow vulnerabilities have been identified in daemons
that run on Veritas NetBackup master, media, and client servers. An
attacker, if able to access a vulnerable Veritas NetBackup server and
successfully exploit these issues, could potentially execute arbitrary
code resulting in possible unauthorized and elevated privilege access to
the targeted system.

For more information relating to this vulnerability notification, refer to
TechNote 281521 on the Symantec Support web site.
================================================================================



Attachments

NB_ORA_45_9S2_F_282596.hp11.11.tar (2.2 MBytes)


Legacy ID



282596


Article URL http://www.symantec.com/docs/TECH47100


Terms of use for this information are found in Legal Notices