manual patching required on Win2k?

From: Mike Coppins (mike_at_LEGOLAS.COM)
Date: 06/04/03

  • Next message: Russ: "Alert: Microsoft Security Bulletin - MS03-020"
    Date:         Wed, 4 Jun 2003 09:37:51 +0100
    To: NTBUGTRAQ@LISTSERV.NTBUGTRAQ.COM
    
    

    I think Win2k patches released by MS don't bother installing their files
    if the installer detects that the patch has been installed before. This
    is obviously a problem if one has to reinstall for example IIS.

    I'm running Win2k at home, doing a number of things. My install routine
    is outlined here:

    http://www.legolas.com/wac/install-win2k-workstation-mikec.txt

    (btw, www.legolas.com/wac/ is an obscure technical reference library I'm
    building up for Windows)

    I installed IIS (www, smtp and ftp) as I usually do, and then put SP2,
    then all patches in order of release after that. Checking smtpsvc.dll
    and the output of telnetting to the machine's port 25 gives me version
    5.0.2195.4905, which seems to be the latest version available for people
    not running SP3 (nasty EULA amongst other things).

    I made a slight screwup in my installation, and so decided to
    un/reinstall IIS SMTP the usual way (add/remove windows components), and
    then looked through the patches I had already downloaded for the ones
    that contained smtpsvc.dll. I then applied those patches in order, but
    when I checked the version of smtpsvc.dll in inetsrv, and by telnetting
    to port 25, it still showed 5.0.2195.2966. I tried reinstalling the
    patches again, but to no avail. In the end I just copied the old
    version smtp*.dll files I found with the newest versions I found in the
    patches.

    Before I reinstalled IIS SMTP I had emptied the dllcache (as it messes
    with the DirectX installation), but left the contents of
    servicepackfiles intact. The version of smtpsvc.dll was the same in
    servicepackfiles as the old one in inetsrv (5.0.2195.2966) even after
    the second round of patching.

    I think there might be a problem with how patching is done on win2k,
    that if the installer detects the patch has been installed already, it
    doesn't bother doing anything.

    Also - the latest IIS 5 cumulative patch (Q811114) doesn't patch
    smtpsvc.dll, so I'm not sure how it can be called a cumulative patch.

    --
    Mike Coppins
    mike@legolas.com
    http://www.legolas.com/
    oooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooo
    Delivery co-sponsored by TruSecure
    oooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooo
    FREE 14-DAY TRIAL of New Threat & Vulnerability Notification Service
    TruSecure's new IntelliShield(tm) web-based threat and vulnerability
    service isn't your typical alert service. Supported by TruSecure's vast
    intelligence resources - including the ICSA Labs - IntelliShield's early
    warning, analysis, decision support, and threat management tools provide
    organizations with unmatched intelligence to better protect critical
    information assets. Experience it for yourself - just click below to begin
    your FREE, NO OBLIGATION 14-day trial today!
    http://www.trusecure.com/offer/s0074/
    oooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooo
    

  • Next message: Russ: "Alert: Microsoft Security Bulletin - MS03-020"

    Relevant Pages

    • RE: [Full-Disclosure] Microsofts new warning about the old SQL server/MSDE problem
      ... > the old SQL server/MSDE problem ... >> I for one would really like to see patches that also patch an ...
      (Full-Disclosure)
    • Re: Office Installation Not Syncing to AIP
      ... Dont follow those instructions as they are for installing patches ... directly on the client and that is not what you want to do. ... not update the source admin installation point with admin updates. ... When the installer accesses the admin point to try to obtain the ...
      (microsoft.public.officeupdate)
    • MS03-026 Help Needed for NT4 Workstation!
      ... OK, I'll plead stupidity. ... I stupidly installed the patches ... Luckily, the installer did work ... >NT 4.0 workstation and the PC is hosed. ...
      (microsoft.public.security)
    • Re: Yet another Windows installer
      ... dependencies to use the same CRT DLL. ... I've looked into that, and as you predicted, I lost my brain. ... AFAIK, NSIS is capable of doing that, just no delta patches (i.e. the ... installer. ...
      (comp.lang.ruby)
    • Re: I dont have the CD with me -- why should I need it to update ins.
      ... Part of it is that the patches are kept small by being only incremental ... need for the original source file. ... There are other ways to mitigate the need, by how you install the software. ... hard drive that contains source files so that the installer doesn't need the ...
      (microsoft.public.officeupdate)