RSS Feed: Xerox Security Bulletins

Feed URL:   


What is an RSS Feed?

"RSS (Really Simple Syndication) Feed" is a generic term for a variety of formats (including Atom 1.0 and RSS 2.0, both of which are used by Xerox) of what are known as "syndication feeds". Syndication feeds are a way of publishing text, media files and other content in a manner that allows users to subscribe to future updates.

How do I use an RSS Feed?

Feeds are usually read with "Feed Reader" applications. There are a variety of these applications in many forms. Some web browsers and e-mail clients can read feeds, there are a number of web-based feed reader tools and there are desktop applications dedicated to reading feeds.

This page is designed to help you subscribe to a feed, in a variety of ways:

  • To subscribe in one of the web-based tools listed to the left, just click on the icon.
  • To subscribe in a desktop application, click the "View feed XML" link above.
  • Another option is to copy and paste the feed URL from the box above into your feed reader application.

Feed Content

Xerox Security Bulletin XRX14-002 v1.0
Wed Apr 16 15:38:18 2014

FreeFlow Print Server v7, v8 and v9
January 2014 Security Patch Cluster (includes Java 6 Update 71 Software)


Oracle delivers quarterly Critical Patch Updates (CPU) to address US-CERT-announced Security vulnerabilities and deliver reliability improvements to the Solaris Operating System. Oracle no longer provides these patches to the general public, but Xerox is authorized to deliver them to Customers with active FreeFlow Print Server (FFPS) Support Contracts (FSMA). Customers who may have an Oracle Support Contract for their non-FFPS Solaris Servers should not install patches that have not been customized by Xerox. Otherwise the FFPS software could be damaged and result in downtime and a lengthy re-installation service call.

This bulletin announces the availability of the following:

1. Jan 2014 Security Patch Cluster
This supersedes the October 2013 Security Patch Cluster
2. Java 6 Update 71 Software
This supersedes Java 6 Update 65 Software




Xerox Security Bulletin XRX13-002 v1.1
Mon Apr 7 08:29:52 2014

Cumulative update for Common Criteria Certification
System Software Version 061.080.221.36200 for the ColorQube 9201/9202/9203 Single Board Controller models is a cumulative update that incorporates security vulnerability fixes up through 06 Jan 2012 as well as other non-security related defect fixes. This release is Common Criteria certified (see http://www.xerox.com/information-security/common-criteria-certified/enus.html).

This system software release for the products listed below is designed to be installed by the customer. Please follow the procedures in the bulletin to install the solution. This system software version is a full system release so the patch criticality rating is not applicable.

The software release is compressed into a 441.3 MB zip file and can be accessed via the link in this bulletin document.


Xerox Security Bulletin XRX14-001 v1.1
Mon Mar 24 09:38:51 2014

Cumulative update for Common Criteria Certification

System Software Version 071.161.203.15600 for the ColorQube 8700/8900 Xerox ConnectKey Controller models is a cumulative update that incorporates security vulnerability fixes up through 10 Jun 2013 as well as other non-security related defect fixes. This release is Common Criteria certified (see http://www.xerox.com/information-security/common-criteria-certified/enus.html).

This system software release for the products listed below is designed to be installed by the customer. Please follow the procedures below to install the solution. This system software version is a full system release so the patch criticality rating is not applicable.

The software release is compressed into a 378.1 MB zip file and can be accessed via the link in this bulletin.