Exchange 2013 2016 2019 Security Update Juli 2021

Exchange 2013 2016 2019 Security Update Juli 2021

Microsoft Exchange Server

Seit dem 13. Juli 2021 stehen die neuen Sicherheitsupdates für Exchange Server zur Verfügung. Zur Schließung der Schwachstellen, sollten die Updates schnellstmöglich installiert werden.

Exchange 2013 2016 2019 Security Update Juli 2021

Exchange Server 2013:

CVE-2021-31196 | Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2021-34470 | Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2021-34473 | Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2021-34523 | Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2021-31206 | Microsoft Exchange Server Remote Code Execution Vulnerability

Exchange Server 2016:

CVE-2021-34470 | Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2021-33768 | Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2021-34473 | Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2021-34523 | Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2021-31206 | Microsoft Exchange Server Remote Code Execution Vulnerability

Exchange Server 2019:

CVE-2021-34470 | Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2021-33768 | Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2021-34473 | Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2021-34523 | Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2021-31206 | Microsoft Exchange Server Remote Code Execution Vulnerability

Download der Security Updates:

Download Security Update For Exchange Server 2019 Cumulative Update 10 (KB5004780)
Download Security Update For Exchange Server 2019 Cumulative Update 9 (KB5004780)
Download Security Update For Exchange Server 2016 Cumulative Update 21 (KB5004779)
Download Security Update For Exchange Server 2016 Cumulative Update 20 (KB5004779)
Download Security Update For Exchange Server 2013 Cumulative Update 23 (KB5004778)

Installationshinweise zum Security Update

Zuerst sollte jegliche Anti-Viren-Software kurzzeitig deaktiviert werden. Der Windows Defender lässt sich mit diesem Befehl deaktivieren.

Set-MpPreference -DisableRealtimeMonitoring $true

Exchange Security Update als Admin ausführen

Das Update selbst muss mit administrativen Rechten wie sonst auch installiert werden. Sonst kann es passieren, das Dateien während des Installationsprozesses nicht korrekt ausgetauscht werden können.

Exchange 2013 2016 2019 Security Update Juli 2021

Some files that needed to be updates are currently in use.

Ein Exchange Security Update sollte niemals über die Exchange Management Shell ausgeführt werden. Sobald die Shell geöffnet ist, können laufende Prozesse durch den Installer nicht beendet werden. Bitte entscheidet euch nicht dazu auf Ignore zu drücken!

The following applications are using files that needed to be updates by this setup

Exchange Funktionen prüfen

Nach erfolgter Installation sollte wie auch nach einem CU überprüft werden, ob die Exchange Dienste und Komponenten einwandfrei laufen.

Exchange Server Funktionen prüfen

# Exchange Server Dienste prüfen
Get-Service | Where {$_.DisplayName -Like “*Exchange*”} | Format-Table DisplayName, Name, Status
Get-Service *MSExchange*
Test-ServiceHealth

# MAPI Test
Test-MAPIConnectivity -Server SRVEX
Get-MailboxDatabase | Test-MAPIConnectivity

# Replikation überprüfen
Get-DatabaseAvailabilityGroup | Select -ExpandProperty:Servers | Test-ReplicationHealth

# Prüfen ob alle Komponenten aktiv sind
Get-ServerComponentState -Identity SRVEX | select @{N=’Exchange’;E={SRVEX}}, Component,State

# Zertifikatproblem speziell bei diesem SU

ASSERT: HMACProvider.GetCertificates:protectionCertificates.Length<1

ASSERT HMACProvider.GetCertificates:protectionCertificates.Length<1

Probleme mit dem Server Auth Zertifikat (OAuth) können wie folgt gelöst werden.
Zum Beispiel bei Event-IDs: 1003, 1309, 2005

Die vollständige Fehlermeldung zu ASSERT: HMACProvider lautet:

ASSERT: HMACProvider.GetCertificates:protectionCertificates.Length<1
Description: An unhandled exception occurred during the execution of the current web request. Please review the stack trace for more information about the error and where it originated in the code.

Exception Details: Microsoft.Exchange.Diagnostics.ExAssertException: ASSERT: HMACProvider.GetCertificates:protectionCertificates.Length<1

Source Error:

An unhandled exception was generated during the execution of the current web request. Information regarding the origin and location of the exception can be identified using the exception stack trace below.

Stack Trace:

[ExAssertException: ASSERT: HMACProvider.GetCertificates:protectionCertificates.Length<1] Microsoft.Exchange.Diagnostics.ExAssert.AssertInternal(String formatString, Object[] parameters) +235
Microsoft.Exchange.Diagnostics.ExAssert.RetailAssert(Boolean condition, String formatString, T1 parameter1, T2 parameter2) +90
Microsoft.Exchange.Clients.Common.HmacProvider.GetCertificates() +359
Microsoft.Exchange.Clients.Common.HmacProvider.GetHmacProvider() +140
Microsoft.Exchange.Clients.Common.HmacProvider.ComputeHmac(Byte[][] messageArrays) +14
Microsoft.Exchange.HttpProxy.FbaModule.SetCadataCookies(HttpApplication httpApplication) +1032
Microsoft.Exchange.HttpProxy.FbaFormPostProxyRequestHandler.HandleFbaFormPost(
BackEndServer backEndServer) +3581
Microsoft.Exchange.HttpProxy.FbaFormPostProxyRequestHandler.ShouldContinueProxy() +20
Microsoft.Exchange.HttpProxy.ProxyRequestHandler.BeginProxyRequestOrRecalculate() +257
Microsoft.Exchange.HttpProxy.ProxyRequestHandler.InternalOnCalculate
TargetBackEndCompleted(TargetCalculationCallbackBeacon beacon) +1528
Microsoft.Exchange.HttpProxy.<>c__DisplayClass280_0.<OnCalculateTargetBackEndCompleted>b__0() +303
Microsoft.Exchange.Common.IL.ILUtil.DoTryFilterCatch(Action tryDelegate, Func`2 filterDelegate, Action`1 catchDelegate) +35
Microsoft.Exchange.HttpProxy.ProxyRequestHandler.CallThreadEntranceMethod(Action method) +59

[AggregateException: One or more errors occurred.] Microsoft.Exchange.HttpProxy.ProxyRequestHandler.EndProcessRequest(IAsyncResult result) +413
System.Web.CallHandlerExecutionStep.InvokeEndHandler(IAsyncResult ar) +231
System.Web.CallHandlerExecutionStep.OnAsyncHandlerCompletion(IAsyncResult ar) +172——————————————————————————–
Version Information: Microsoft .NET Framework Version:4.0.30319; ASP.NET Version:4.8.4330.0

Nicht vergessen den AV-Schutz zu prüfen!

Dokumentiert habe ich die Prüfung in diesem Artikel Exchange Server 2019 Installation Cumulative Updates

Exchange Versionsnummern

Product NameRelease DateBuild Number shortBuild Number long
Exchange Server 2013 CU23September 28, 202115.0.1497.2315.00.1497.023
Exchange Server 2013 CU23 Feb23SUFebruary 14, 202315.0.1497.4715.00.1497.047
Exchange Server 2013 CU23 Jan23SUJanuary 10, 202315.0.1497.4515.00.1497.045
Exchange Server 2013 CU23 Nov22SUNovember 08, 202215.0.1497.4415.00.1497.044
Exchange Server 2013 CU23 Oct22SUOctober 11, 202215.0.1497.4215.00.1497.042
Exchange Server 2013 CU23 Aug22SUAugust 9, 202215.0.1497.4015.00.1497.040
Exchange Server 2013 CU23 Mar22SUMarch 8, 202215.0.1497.3315.00.1497.033
Exchange Server 2013 CU23 Jan22SUJanuar 11, 202215.0.1497.2815.00.1497.028
Exchange Server 2013 CU23 Nov21SUNovember 08, 202115.0.1497.2615.00.1497.026
Exchange Server 2013 CU23 Oct21SUOctober 12, 202115.0.1497.2415.00.1497.024
Exchange Server 2016 CU23 (2022H1)April 20, 202215.1.2507.615.01.2507.006
Exchange Server 2016 CU23 March24SUMarch 12, 202415.1.2507.3715.01.2507.037
Exchange Server 2016 CU23 Nov23SUNovember 14, 202315.1.2507.3515.01.2507.035
Exchange Server 2016 CU23 Oct23SUOctober 10, 202315.1.2507.3415.01.2507.034
Exchange Server 2016 CU23 Aug23SUAugust 8, 202315.1.2507.3115.01.2507.031
Exchange Server 2016 CU23 Jun23SUJune 13, 202315.1.2507.2715.01.2507.027
Exchange Server 2016 CU23 Mar23SUMarch 14, 202315.1.2507.2315.01.2507.023
Exchange Server 2016 CU23 Feb23SUFebruary 14, 202315.1.2507.2115.01.2507.021
Exchange Server 2016 CU23 Jan23SUJanuary 10, 202315.1.2507.1715.01.2507.017
Exchange Server 2016 CU23 Nov22SUNovember 8, 202215.1.2507.1615.01.2507.016
Exchange Server 2016 CU23 Oct22SUOctober 11, 202215.1.2507.1315.01.2507.013
Exchange Server 2016 CU23 Aug22SUAugust 9, 202215.1.2507.1215.01.2507.012
Exchange Server 2016 CU22September 28, 202115.1.2308.815.00.1497.023
Exchange Server 2016 CU22 Mar22SUMarch 8, 202215.1.2375.2415.01.2375.024
Exchange Server 2016 CU22 Jan22SUJanuar 11, 202215.1.2375.1815.01.2375.018
Exchange Server 2016 CU22 Nov21SUNovember 08, 202115.1.2375.1715.01.2375.017
Exchange Server 2016 CU22 Oct21SUOctober 12, 202115.1.2375.1215.01.2375.012
Exchange Server 2019 CU12 (2022H1)April 20, 202215.2.1118.715.02.1118.007
Exchange Server 2019 CU14 SU1March 12, 202415.2.1544.915.02.1544.009
Exchange Server 2019 CU14 Feb24February 13, 202415.2.1544.415.2.1544.004
Exchange Server 2019 CU13 Nov23SUNovember 14, 202315.2.1258.2815.02.1258.028
Exchange Server 2019 CU13 Oct23SUOctober 10, 202315.2.1258.2715.02.1258.027
Exchange Server 2019 CU13 Aug23SU2August 8, 202315.2.1258.2315.02.1258.023
Exchange Server 2019 CU13 Jun23SU1June 13, 202315.2.1258.1615.02.1258.016
Exchange Server 2019 CU13 May23May 3, 202315.2.1258.1215.02.1258.012
Exchange Server 2019 CU12 Mar23SU7March 14, 202315.2.1118.2615.02.1118.026
Exchange Server 2019 CU12 Feb23SU6February 14, 202315.2.1118.2515.02.1118.025
Exchange Server 2019 CU12 Jan23SUJanuary 10, 202315.2.1118.2115.02.1118.021
Exchange Server 2019 CU12 Nov22SUNovember 8, 202215.2.1118.2015.02.1118.020
Exchange Server 2019 CU12 Oct22SUOctober 11, 202215.2.1118.1515.02.1118.015
Exchange Server 2019 CU12 Aug22SUAugust 9, 202215.2.1118.1215.02.1118.012
Exchange Server 2019 CU11September 28, 202115.2.986.515.02.0986.005
Exchange Server 2019 CU11 Mar22SUMarch 8, 202215.2.986.2215.02.0986.022
Exchange Server 2019 CU11 Janu22SUJanuar 11, 202215.2.986.1515.02.0986.015
Exchange Server 2019 CU11 Nov21SUNovember 08, 202115.2.986.1415.02.0986.014
Exchange Server 2019 CU11 Oct21SUOctober 12, 202115.2.986.915.02.0986.009

Exchange 2013 2016 2019 Security Update KB5003435