This is a hotfix for customers running Citrix Hypervisor 8.2 Cumulative Update 1.
All customers who are affected by the issues described in CTX463901 - Citrix Hypervisor Security Bulletin for CVE-2020-35498 should install this hotfix.
Note: This hotfix is available only to customers on the Customer Success Services program.
Download Citrix Hypervisor 8.2 Cumulative Update 1 hotfixes from the product downloads pages.
Component | Details |
---|---|
Prerequisite | None |
Post-update tasks | Restart Host |
Content live patchable** | No |
Baselines for Live Patch | N/A |
Revision History |
Published on Sep 13, 2022 |
** Available to Enterprise Customers. |
This security hotfix addresses the vulnerabilities as described in the Security Bulletin above.
In addition. this hotfix fixes the following issue:
This hotfix also includes the following previously released hotfixes:
Customers should use either XenCenter or the Citrix Hypervisor Command Line Interface (CLI) to apply this hotfix. As with any software update, back up your data before applying this update. Citrix recommends updating all servers within a pool sequentially. Upgrading of servers should be scheduled to minimize the amount of time the pool runs in a "mixed state" where some servers are upgraded and some are not. Running a mixed pool of updated and non-updated servers for general operation is not supported.
There are three mechanisms to install a hotfix:
The Automated Updates feature is available for Citrix Hypervisor Premium Edition customers, or to those who have access to XenServer through their Citrix Virtual Apps and Desktops entitlement. For information about installing a hotfix using the Automated Updates feature, see the Applying Automated Updates in the Citrix Hypervisor documentation.
For information about installing a hotfix using the Download update from Citrix option, see Applying an Update to a Pool in the Citrix Hypervisor documentation.
The following section contains instructions on option (3) installing a hotfix that you have downloaded to disk:
Follow the on-screen recommendations to resolve any update prechecks that have failed. If you want XenCenter to automatically resolve all failed prechecks, click Resolve All. When the prechecks have been resolved, click Next.
Note: If you click Cancel at this stage, the Install Update wizard reverts the changes and removes the update file from the server.
xe -sCitrix Hypervisor assigns the update file a UUID which this command prints. Note the UUID.<server>
-u<username>
-pw<password>
update-upload file-name=<filename>
/XS82ECU1017.iso
c87afbcc-344f-470b-951b-0ddd7a0042c7
xe update-pool-apply uuid=c87afbcc-344f-470b-951b-0ddd7a0042c7
Alternatively, if you need to update and restart servers in a rolling manner, you can apply the update file to an individual server by running the following:
xe update-apply host=<server>
uuid=c87afbcc-344f-470b-951b-0ddd7a0042c7
xe update-list -sIf the update is successful, the hosts field contains the UUIDs of the servers to which this update was successfully applied. This should be a complete list of all servers in the pool.<server>
-u root -pw<password>
name-label=XS82ECU1017
xe update-pool-clean uuid=c87afbcc-344f-470b-951b-0ddd7a0042c7
This source code is not necessary for hotfix installation. It is provided to fulfill licensing obligations.
Download the hotfix source from the following link: XS82ECU1017-sources.iso.
Component | Details |
---|---|
Hotfix Filename | XS82ECU1017.iso |
Hotfix File sha256 | 06208f92627b6a7311abd0668191742696c863987044ed669c4e97d24ae75071 |
Hotfix Source Filename | XS82ECU1017-sources.iso |
Hotfix Source File sha256 | 0ca25de0aa334bb35147cc3de068a1e3886fde21aadd83cd8fed8a786ab0d952 |
Hotfix Zip Filename | XS82ECU1017.zip |
Hotfix Zip File sha256 | 8556dbbb9154c1eec5489ba076410c416bdc79bcd1895469b3e66d6e153b33fe |
Size of the Zip file | 2.78 MB |
openvswitch-2.5.3-2.3.12.x86_64.rpm |
For more information, see Citrix Hypervisor Documentation.
If you experience any difficulties, contact Citrix Technical Support.