Skip to main content

We have received an update alert for recent CVE for KB ID 4771, to install a patch. What we want to understand is not in any guide, is -

 

  1. Is this patch just for our Windows VBR server…?
  2. Are there any pre reqs.
  3. Going through the setup of the .exe from the ISO there are no checks and no reboot required, this was tested installed on a non Veeam server which may not give the correct results…?

Thanks in advance

 

Tony

Hi Tony,

 

Please find this article that describes the procedure:

Security Patch for Veeam Backup & Replication: Update to Build 12.3.2.4165 | Veeam Community Resource Hub

 

Best

Lukas


Hi ​@TonyHalligan 

the article linked by Lukas is perfect to implement the patch. 

Yesterday I replied to another similar question and you can chek here:

 

Replying to your question: 

  1. Is this patch just for our Windows VBR server…? → all solution in KB4771 switching to the patch in KB: https://www.veeam.com/kb4696 where there are all info about your question
  2. Are there any pre reqs. → This vulnerability only impacts domain-joined backup infrastructure servers added to Veeam Backup & Replication v12. Backup infrastructure servers that are not domain-joined are not impacted by this vulnerability. You can check prerequisites here: 
    https://helpcenter.veeam.com/docs/backup/vsphere/upgrade_vbr_byb.html?ver=120
  3. Going through the setup of the .exe from the ISO there are no checks and no reboot required, this was tested installed on a non Veeam server which may not give the correct results…? → Reboot is required. 

 


Hi ​@TonyHalligan,

As recommended by Veeam in the KB article shared above, a reboot is required. Kindly plan for a reboot accordingly.