This is a hotfix for customers running Citrix Hypervisor 8.1. This hotfix supersedes Hotfix XS81E008.
All customers who are affected by the issues described in CTX282314 - Citrix Hypervisor Multiple Security Updates should install this hotfix.
Note: This hotfix is available only to customers on the Customer Success Services program.
Note: Ensure that you use XenCenter 8.1.2 or later to install this hotfix. The latest version of XenCenter is available from the Citrix Hypervisor Download site.
Component | Details |
---|---|
Prerequisite | None |
Post-update tasks* | Restart Host |
Content live patchable** | No |
Baselines for Live Patch | N/A |
Revision History | Published on Oct 09, 2020 |
** Available to Enterprise Customers. |
This security hotfix addresses the vulnerabilities as described in the Security Bulletin above. In addition, it resolves the following issue:
If you have already installed hotfix XS81E008, but do not use the Hypervisor Introspection (HVI) feature of Citrix Hypervisor, your host is not affected by this issue. As a result, you do not need to install this hotfix at this time and instead can do so at your convenience.
This hotfix also includes the following previously released hotfixes:
Customers should use either XenCenter or the Citrix Hypervisor Command Line Interface (CLI) to apply this hotfix. As with any software update, back up your data before applying this update. Citrix recommends updating all hosts within a pool sequentially. Upgrading of hosts should be scheduled to minimize the amount of time the pool runs in a "mixed state" where some hosts are upgraded and some are not. Running a mixed pool of updated and non-updated hosts for general operation is not supported.
Note: The attachment to this article is a zip file. It contains the hotfix update package only. Click the following link to download the source code for any modified open source components XS81E009-sources.iso. The source code is not necessary for hotfix installation: it is provided to fulfill licensing obligations.
There are three mechanisms to install a hotfix:
The Automated Updates feature is available for Citrix Hypervisor Premium Edition customers, or to those who have access to XenServer through their Citrix Virtual Apps and Desktops entitlement. For information about installing a hotfix using the Automated Updates feature, see the Applying Automated Updates in the Citrix Hypervisor documentation.
For information about installing a hotfix using the Download update from Citrix option, see Applying an Update to a Pool in the Citrix Hypervisor documentation.
The following section contains instructions on option (3) installing a hotfix that you have downloaded to disk:
Follow the on-screen recommendations to resolve any update prechecks that have failed. If you want XenCenter to automatically resolve all failed prechecks, click Resolve All. When the prechecks have been resolved, click Next.
Note: If you click Cancel at this stage, the Install Update wizard reverts the changes and removes the update file from the host.
xe -s <server> -u <username> -pw <password> update-upload file-name=<filename>\XS81E009.iso
Citrix Hypervisor assigns the update file a UUID which this command prints. Note the UUID.b4610439-4ac5-4fbd-a2f9-1544a015d51c
xe update-pool-apply uuid=b4610439-4ac5-4fbd-a2f9-1544a015d51c
Alternatively, if you need to update and restart hosts in a rolling manner, you can apply the update file to an individual host by running the following:
xe update-apply host=<host> uuid=b4610439-4ac5-4fbd-a2f9-1544a015d51c
xe update-list -s <server> -u root -pw <password> name-label=XS81E009
If the update is successful, the hosts field contains the UUIDs of the hosts to which this update was successfully applied. This should be a complete list of all hosts in the pool.xe update-pool-clean uuid=b4610439-4ac5-4fbd-a2f9-1544a015d51c
Component | Details |
---|---|
Hotfix Filename | XS81E009.iso |
Hotfix File sha256 | 3e0993027f3ddeb7b2edda11ab46cb52f931bff0cc92cf15423e6e8795cf4397 |
Hotfix Source Filename | XS81E009-sources.iso |
Hotfix Source File sha256 | f0bbdbf99bdbebdd2af287fe72271aa1e38d1a0c779863187d3fc6ae479e6dde |
Hotfix Zip Filename | XS81E009.zip |
Hotfix Zip File sha256 | e1d584839acadb9ee07a3bad119855481af5ab4cea3936149ab26bb67c9dd108 |
Size of the Zip file | 8.17 MB |
microcode_ctl-2.1-26.xs12.x86_64.rpm |
xen-dom0-libs-4.13.0-8.8.x86_64.rpm |
xen-dom0-tools-4.13.0-8.8.x86_64.rpm |
xen-hypervisor-4.13.0-8.8.x86_64.rpm |
xen-libs-4.13.0-8.8.x86_64.rpm |
xen-tools-4.13.0-8.8.x86_64.rpm |
For more information, see Citrix Hypervisor Documentation.
If you experience any difficulties, contact Citrix Technical Support.