Sign In
Forgot Password

Don’t have an account? Create One.

Flex 4.1.20

Patch Critical

Abstract

Security Patch 2 for Veritas Flex Appliance 4.1

Description

4.1.20 is a package of security updates for Veritas Flex Appliance 4.1 and 4.1.10.

 

4.1.20 includes all fixes present in 4.1.10.

By installing 4.1.20 on 4.1, the appliance is upgraded directly to 4.1.20 in a single upgrade step, without first upgrading to 4.1.10.

 

4.1.20 can be installed only on Flex Appliance 4.1 and 4.1.10.

 

Veritas strongly recommends to install this patch to have the latest security updates.

Overview

Veritas Flex Appliance 4.1.20 (henceforth also referred as 4.1.20) is a security patch that consists of security updates for Veritas Flex Appliance 4.1 and Veritas Flex Appliance 4.1.10 (4.1.10). It is strongly recommended to install 4.1.20 on Veritas Flex Appliance 4.1 and 4.1.10 as quickly as possible to keep the Veritas Flex Appliances secure and operating efficiently.

 

Description

4.1.20 is a package of security updates for Veritas Flex Appliance 4.1 and 4.1.10.

 

4.1.20 includes all the fixes present in 4.1.10.

By installing 4.1.20 on 4.1, the appliance is upgraded directly to 4.1.20 in a single upgrade step, without first upgrading to 4.1.10.

 

4.1.20 can be installed only on Veritas Flex Appliance 4.1 and 4.1.10.

 

Customers can download 4.1.20 (VRTSflex-update-4.1.20-20240605085625.x86_64.rpm) from the following Veritas Download Center link: https://www.veritas.com/support/en_US/downloads/update.UPD327376

 

Note:

  • 4.1.20 installation is not supported with Appliance Management Server (AMS)
  • Upgrade via NetInsights / System Health Insights (NI/SHI) is not supported for 4.1.20

 

Installation Time

Upgrading to 4.1.20 takes about five minutes per node.

 

Installation Instructions

To install 4.1.20, follow the steps below:

  1. On the Flex Appliance Console, click the Repository icon in the left-side navigation bar and navigate to the Appliance updates tab.
  2. Upload the security patch to the repository. See managing the repository for details. Security patch update does not require restarting the nodes.
  3. Under the Appliance updates tab on the Repository page, select the node that you want to update and click Update. You can monitor the progress of the update under the Activity Monitor.
  4. Repeat the update (Step 3) on the other node if you have a multi-node appliance.
  5. The update is now complete.
  6. Remove the patch from the repository after the upgrade is successful.

 

If 4.1.20 fails to install, it will automatically rollback. The appliance administrator will need to initiate a reboot after the installation failure.

 

Note:

  • The installation does not require stopping or relocating any running instances.
  • The installation does not require restarting the nodes.
  • The installation does not support system commit or system rollback.

 

Vulnerabilities Fixed

Following vulnerabilities are fixed in 4.1.20:

 

Security Risk

Vulnerability id

 High

CVE-2023-50868, CVE-2023-28450, CVE-2022-48624, CVE-2023-50447,

CVE-2023-40547, CVE-2023-4408, CVE-2023-50387, CVE-2023-52425

 Medium

CVE-2022-3094, CVE-2022-3287, CVE-2021-43618, CVE-2024-28834,

CVE-2023-40551, CVE-2023-40550, CVE-2023-40549, CVE-2023-40548,

CVE-2023-40546, CVE-2023-4641

 

 

Applies to the following product releases

Update files

File name Description Version Platform Size