まっちゃだいふくの日記

セキュリティのこと、ITの気になった記事をリンクしています。

Deep Security 12.0 update 29リリース@ "Bypass Network Scanner"ルールの追加、各種修正対応

Deep Security Manager - 12.0 update 29

Deep Security Manager - 12.0 update 29
Release date: October 4, 2022
Build number: 12.0.540

Resolved issues

  • The Anti-Malware host report would incorrectly state Anti-Malware is online when the Deep Security console shows Anti-Malware Offline. SF05780825/SEG-149707/DSSEG-7706
  • Deep Security Manager sometimes generated unexpected "Computer Updated" system events. SF05496967/SEG-138407/DSSEG-7678

Security updates

Security updates are included in this release. For more information about how we protect against vulnerabilities, visit Vulnerability Responses. Please note, in line with responsible disclosure practices, CVE details will only be made available for select security updates once patches have been made available for all impacted releases. DSSEG-7705

  • Highest CVSS: 9.1
  • Highest severity: Critical
What's new in Deep Security Manager? | Deep Security

Deep Security Linux Agent - 12.0 update 29

Deep Security Agent - 12.0 update 29
Release date: October 4, 2022
Build number: 12.0.0-2626

Enhancements

  • Improved Intrusion Prevention performance when the "Bypass Network Scanner" rule is applied. SEG-132057/DSSEG-7621

Resolved issues

  • Message "Newly applied ruleset will block some running processes on restart" was incorrectly shown during agent upgrade. DSSEG-7653
  • Log Inspection Engine would go offline when using '$' character in match or regex fields together with variables. SEG-146965/SEG-146966/DSSEG-7665
  • Valid IPv6 addresses reserved for IPv4/IPv6 translation would raise "Invalid IPv6 Address" errors. SEG-147969/DSSEG-7673

Security updates

Security updates are included in this release. For more information about how we protect against vulnerabilities, visit Vulnerability Responses. Please note, in line with responsible disclosure practices, CVE details will only be made available for select security updates once patches have been made available for all impacted releases. VRTS-7090/DSSEG-7647

  • Highest CVSS: 4.6
  • Highest severity: Medium
What's new in Deep Security Agent? | Deep Security

Deep Security Windows Agent - 12.0 update 29

Deep Security Agent - 12.0 update 29
Release date: October 4, 2022
Build number: 12.0.0-2626

Enhancements

  • Improved Intrusion Prevention performance when the "Bypass Network Scanner" rule is applied. SEG-132057/DSSEG-7621

Resolved issues

  • Message "Newly applied ruleset will block some running processes on restart" was incorrectly shown during agent upgrade. DSSEG-7653
  • Log Inspection Engine would go offline when using '$' character in match or regex fields together with variables. SEG-146965/SEG-146966/DSSEG-7665
  • Valid IPv6 addresses reserved for IPv4/IPv6 translation would raise "Invalid IPv6 Address" errors. SEG-147969/DSSEG-7673

Security updates

Security updates are included in this release. For more information about how we protect against vulnerabilities, visit Vulnerability Responses. Please note, in line with responsible disclosure practices, CVE details will only be made available for select security updates once patches have been made available for all impacted releases. VRTS-7090/DSSEG-7647

  • Highest CVSS: 4.6
  • Highest severity: Medium
What's new in Deep Security Agent? | Deep Security

Deep Security UNIX Agent - 12.0 update 29

Deep Security Agent - 12.0 update 29
Release date: October 4, 2022
Build number: 12.0.0-2626

Enhancements

  • Improved Intrusion Prevention performance when the "Bypass Network Scanner" rule is applied. SEG-132057/DSSEG-7621

Resolved issues

  • Message "Newly applied ruleset will block some running processes on restart" was incorrectly shown during agent upgrade. DSSEG-7653
  • Log Inspection Engine would go offline when using '$' character in match or regex fields together with variables. SEG-146965/SEG-146966/DSSEG-7665
  • Valid IPv6 addresses reserved for IPv4/IPv6 translation would raise "Invalid IPv6 Address" errors. SEG-147969/DSSEG-7673

Security updates

Security updates are included in this release. For more information about how we protect against vulnerabilities, visit Vulnerability Responses. Please note, in line with responsible disclosure practices, CVE details will only be made available for select security updates once patches have been made available for all impacted releases. VRTS-7090/DSSEG-7647

  • Highest CVSS: 4.6
  • Highest severity: Medium
What's new in Deep Security Agent? | Deep Security