18.08.2013 Views

Hot Fix Readme (Adapt) - Business Intelligence

Hot Fix Readme (Adapt) - Business Intelligence

Hot Fix Readme (Adapt) - Business Intelligence

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

CHF16<br />

ADAPT00692724<br />

Description:<br />

Patch ID: 39,329,696<br />

The Crystal Reports Designer has potential to be exploited by an attacker to execute arbitrary code on an affected system.<br />

This problem is due to a buffer overflow. Exploitation of this vulnerability would require that the attacker coerce the target user<br />

into opening a malicious RPT file. When opening a malicious RPT file in the Crystal Reports Designer, the Designer enters an<br />

infinite loop, and then either it terminates unexpectedly without displaying an appropriate dialog box, or it displays the following<br />

error message: "buffer overrun... you must terminate the process."<br />

This problem also occurs in the version of Crystal Reports that is packaged with Visual Studio .NET.<br />

New Behavior:<br />

This problem is resolved.<br />

Known Limitations:<br />

Customer <strong>Hot</strong><strong>Fix</strong>es and Service Packs are not designed for OEM versions of <strong>Business</strong>Objects software. Do not apply these<br />

updates if you are using an OEM version. To determine if you are using an OEM version, refer to the following web page:<br />

http://support.businessobjects.com/updates/warning_oem.asp.<br />

ADAPT00694038<br />

Description:<br />

Patch ID: 39,406,149<br />

On the logon page of the Java version of InfoView, the error message associated with an incorrect Central Management Server<br />

(CMS) name is displayed but not encoded.<br />

This problem could permit malicious code to enter the system because the error message contains the user-specified CMS<br />

name.<br />

New Behavior:<br />

This problem is resolved.<br />

The error message is now encoded when an unknown script is detected.<br />

ADAPT00694683<br />

Description:<br />

Patch ID: 39,418,845<br />

When a user views the security on any strategy from the Security Tab in Strategy builder the applet freezes, hence it is not<br />

properly displayed.<br />

New Behavior:<br />

When a user views the security on any strategy from the Security Tab in Strategy builder the applet will not freeze, hence it will<br />

be properly displayed and the fix will prevent future database corruption.<br />

ADAPT00697921<br />

Description:<br />

Patch ID: 39,495,491<br />

When the Designer SDK is used to export a universe to a subfolder, the export fails.<br />

New Behavior:<br />

This problem is resolved.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!