Applications Systems

Serv-U 15.1.6 HotFix 2

These are the release notes for Serv-U 15.1.6 HotFix 2.

First published date

2/27/2019 4:57 PM

Last published date

2/27/2019 4:57 PM

Overview

This SolarWinds hot fix addresses the following security and functionality issues:
  • Serv-U incorrectly deletes files from directories with delete rules in some situations
  • Serv-U crashes while importing a user to a collection, if the user already exists in another collection 
  • Serv-U deletes user accounts while moving them from Domain Users section to the non-existing ODBC database
  • Serv-U crashes when sending e-mail under SSL certified HTTP session
  • Risk of inappropriate SSL error handling on Socket level
  • Missing records in the Domain Logs, stored on disk
  • Resolves other security related issues

Product section

Storage Resource Monitor

Resolution

This fix requires updating Serv-U and a number of files implementing WEB/Console Client. Within the Serv-U folder there is a folder for each supported platform. Please use the files for your appropriate platform when updating Serv-U. The folder contains files with the appropriate directory structure (if necessary) to upgrade your installation.

This fix requires Serv-U one of the following versions:

  • 15.1.6.25
  • 15.1.6.32 (Hotfix 1)

This fix contains the thirty six files for Windows and thirty two files for Linux:

Windows:

<Serv-U-InstallDir>\Serv-U.exe
<Serv-U-InstallDir>\Serv-U.dll
<Serv-U-InstallDir>\Serv-U-RES.dll
<Serv-U-InstallDir>\RhinoNET.dll
<Serv-U-InstallDir>\RhinoRES.dll
<Serv-U-InstallDir>\Client\Admin\DomainActivity.htm
<Serv-U-InstallDir>\Client\Admin\DomainLimits.htm
<Serv-U-InstallDir>\Client\Admin\ServerLimits.htm
<Serv-U-InstallDir>\Client\Admin\Include\GroupSubDialogs.htm
<Serv-U-InstallDir>\Client\Admin\Include\UserSubDialogs.htm
<Serv-U-InstallDir>\Client\Common\Java\WebClientPro.jar
<Serv-U-InstallDir>\Client\Common\Java\Libs\RhinoJavaCore.jar
<Serv-U-InstallDir>\Client\Common\Scripts\BasicGrid.js
<Serv-U-InstallDir>\Client\Common\Scripts\FileList.js
<Serv-U-InstallDir>\Client\FVJV\FTP_Voyager_JV.jar
<Serv-U-InstallDir>\Client\FVJV\Launch.jnlp
<Serv-U-InstallDir>\Client\FVJV\Images\FVJV_16x16.png
<Serv-U-InstallDir>\Client\FVJV\Images\FVJV_24x24.png
<Serv-U-InstallDir>\Client\FVJV\Images\FVJV_32x32.png
<Serv-U-InstallDir>\Client\FVJV\Images\FVJV_36x36.png
<Serv-U-InstallDir>\Client\FVJV\Images\FVJV_48x48.png
<Serv-U-InstallDir>\Client\FVJV\Images\FVJV_64x64.png
<Serv-U-InstallDir>\Client\FVJV\lib\jide-action.jar
<Serv-U-InstallDir>\Client\FVJV\lib\jide-common.jar
<Serv-U-InstallDir>\Client\FVJV\lib\jide-dock.jar
<Serv-U-InstallDir>\Client\Web Client\ListDir.htm
<Serv-U-InstallDir>\Client\Web Client\ListMedia.m3u
<Serv-U-InstallDir>\Client\Web Client\Include\Upload.htm
<Serv-U-InstallDir>\Client\Web Client\Include\WCCommonJSContain.js
<Serv-U-InstallDir>\Client\Web Client\Include\WCJQueryContain.js
<Serv-U-InstallDir>\Client\Web Client\Include\ThumbScroll\jquery.jcarousel.pack.js
<Serv-U-InstallDir>\Client\Web Client\Mobile\MListDir.htm
<Serv-U-InstallDir>\Client\Web Client\Mobile\MobileUpload.htm
<Serv-U-InstallDir>\Client\Web Client\Mobile\Scripts\Mobile.js
<Serv-U-InstallDir>\Client\Web Client\Share\GuestUpload.htm
<Serv-U-InstallDir>\Client\Web Client\Share\OutgoingWizard.htm

   Linux:

<Serv-U-InstallDir>/Serv-U
<Serv-U-InstallDir>/Client/Admin/DomainActivity.htm
<Serv-U-InstallDir>/Client/Admin/DomainLimits.htm
<Serv-U-InstallDir>/Client/Admin/ServerLimits.htm
<Serv-U-InstallDir>/Client/Admin/Include/GroupSubDialogs.htm
<Serv-U-InstallDir>/Client/Admin/Include/UserSubDialogs.htm
<Serv-U-InstallDir>/Client/Common/Java/WebClientPro.jar
<Serv-U-InstallDir>/Client/Common/Java/Libs/RhinoJavaCore.jar
<Serv-U-InstallDir>/Client/Common/Scripts/BasicGrid.js
<Serv-U-InstallDir>/Client/Common/Scripts/FileList.js
<Serv-U-InstallDir>/Client/FVJV/FTP_Voyager_JV.jar
<Serv-U-InstallDir>/Client/FVJV/Launch.jnlp
<Serv-U-InstallDir>/Client/FVJV/Images/FVJV_16x16.png
<Serv-U-InstallDir>/Client/FVJV/Images/FVJV_24x24.png
<Serv-U-InstallDir>/Client/FVJV/Images/FVJV_32x32.png
<Serv-U-InstallDir>/Client/FVJV/Images/FVJV_36x36.png
<Serv-U-InstallDir>/Client/FVJV/Images/FVJV_48x48.png
<Serv-U-InstallDir>/Client/FVJV/Images/FVJV_64x64.png
<Serv-U-InstallDir>/Client/FVJV/lib/jide-action.jar
<Serv-U-InstallDir>/Client/FVJV/lib/jide-common.jar
<Serv-U-InstallDir>/Client/FVJV/lib/jide-dock.jar
<Serv-U-InstallDir>/Client/Web Client/ListDir.htm
<Serv-U-InstallDir>/Client/Web Client/ListMedia.m3u
<Serv-U-InstallDir>/Client/Web Client/Include/Upload.htm
<Serv-U-InstallDir>/Client/Web Client/Include/WCCommonJSContain.js
<Serv-U-InstallDir>/Client/Web Client/Include/WCJQueryContain.js
<Serv-U-InstallDir>/Client/Web Client/Include/ThumbScroll/jquery.jcarousel.pack.js
<Serv-U-InstallDir>/Client/Web Client/Mobile/MListDir.htm
<Serv-U-InstallDir>/Client/Web Client/Mobile/MobileUpload.htm
<Serv-U-InstallDir>/Client/Web Client/Mobile/Scripts/Mobile.js
<Serv-U-InstallDir>/Client/Web Client/Share/GuestUpload.htm
<Serv-U-InstallDir>/Client/Web Client/Share/OutgoingWizard.htm
 

Install the HotFix    

  1. Shut down all running Serv-U processes. 
    1. Right-click the tray icon, and select Stop Serv-U. 
    2. Right-click the tray icon, and select Exit Tray.
  2. Navigate to the Serv-U installation directory.

For Windows, the default installation directory is:

C:\Program Files\RhinoSoft\Serv-U

or:      

 C:\Program Files\RhinoSoft.com\Serv-U

For Linux, the default installation directory is:

/usr/local/Serv-U

  1. Back up the following files in the installation directory to a separate location:

    Windows:
    Client\*.* 
    Serv-U.exe 
    Serv-U.dll
    Serv-U-RES.dll
    RhinoNET.dll
    RhinoRES.dll

    Linux:
    Client/*.* 
    Serv-U

  2. Extract the hot fix .zip file to a temporary location.
  3. Open the folder in the extracted hot fix for the platform Serv-U is installed on.
For example, open the Windows 64-bit folder if Serv-U is installed on a 64-bit version of Windows.
  1. On Linux, modify the permissions of the files by executing the following command:
chmod u+xs Serv-U
  1. Copy the hot fix contents to the Serv-U installation directory, overwriting the existing files.
  2. Restart the Serv-U tray application.
  3. Right-click the tray icon and select Start Serv-U.
The hotfix is installed.

Uninstall the HotFix 

 

  1. Shut down all running Serv-U processes. 
    1. Right-click the tray icon, and select Stop Serv-U. 
    2. Right-click the tray icon, and select Exit Tray.
  2. Locate the files backed up during the installation procedure above.
  3. Navigate to the Serv-U installation directory.
For Windows, the default installation directory is:
C:\Program Files\RhinoSoft\Serv-U
or:
C:\Program Files\RhinoSoft.com\Serv-U
For Linux, the default installation directory is: 
/usr/local/Serv-U
  1. Copy the backed up to the Serv-U installation directory, overwriting the existing files.            
  2. Restart the Serv-U tray application. 
  3. Right-click the tray icon, and select Start Serv-U. 
The Hot Fix is uninstalled.

Our thanks to ZX Security consulting and Missing Link Security for their assistance in these updates.  
   
For more information, contact Technical Support at https://www.serv-u.com/support