まっちゃだいふくの日記

セキュリティのこと、ITの気になった記事をリンクしています。

Deep Security - 12.0 update 30 がリリース@ ACS対応、"Bypass Network Scanner"ルールをパフォーマンス関係で追加、2023年6月末までのサポートなので、最後のUpdateリリースかな。

Deep Security Linux Agent - 12.0 update 30

Deep Security Agent - 12.0 update 30
Release date: May 4, 2023
Build number: 12.0.0-2932

Enhancements

  • Deep Security Agent installation now verifies if the operating system meets Azure Code Signing (ACS) requirements. For more information, see Trend Micro Server and Endpoint Protection Agent Minimum Windows Version Requirements. DSSEG-7813

Resolved issues

  • When Integrity Monitoring rules using "UserSet" or "GroupSet" were enabled for a Deep Security Agent on Windows Active Directory Domain Controllers, excessive CPU and memory consumption would sometimes occur. Deep Security Agent 12.0.0-2932 blocks these types of Integrity Monitoring rules on Windows Active Directory domain controllers and generates an "Inapplicable Integrity Monitoring Rule" event. SF06082644/SEG-155804/DSSEG-7725
  • An issue during component update sometimes caused the scan engine to be updated, even if the engine update was disabled. SF06390800/SEG-165036/DSSEG-7802
What's new in Deep Security Agent? | Deep Security

Deep Security Windows Agent - 12.0 update 29

Deep Security Agent - 12.0 update 29
Release date: October 4, 2022
Build number: 12.0.0-2626

Enhancements

  • Improved Intrusion Prevention performance when the "Bypass Network Scanner" rule is applied. SEG-132057/DSSEG-7621

Resolved issues

  • Message "Newly applied ruleset will block some running processes on restart" was incorrectly shown during agent upgrade. DSSEG-7653
  • Log Inspection Engine would go offline when using '$' character in match or regex fields together with variables. SEG-146965/SEG-146966/DSSEG-7665
  • Valid IPv6 addresses reserved for IPv4/IPv6 translation would raise "Invalid IPv6 Address" errors. SEG-147969/DSSEG-7673

Security updates

Security updates are included in this release. For more information about how we protect against vulnerabilities, visit Vulnerability Responses. Please note, in line with responsible disclosure practices, CVE details will only be made available for select security updates once patches have been made available for all impacted releases. VRTS-7090/DSSEG-7647

  • Highest CVSS: 4.6
  • Highest severity: Medium
What's new in Deep Security Agent? | Deep Security

Deep Security UNIX Agent - 12.0 update 29

Deep Security Agent - 12.0 update 29
Release date: October 4, 2022
Build number: 12.0.0-2626

Enhancements

  • Improved Intrusion Prevention performance when the "Bypass Network Scanner" rule is applied. SEG-132057/DSSEG-7621

Resolved issues

  • Message "Newly applied ruleset will block some running processes on restart" was incorrectly shown during agent upgrade. DSSEG-7653
  • Log Inspection Engine would go offline when using '$' character in match or regex fields together with variables. SEG-146965/SEG-146966/DSSEG-7665
  • Valid IPv6 addresses reserved for IPv4/IPv6 translation would raise "Invalid IPv6 Address" errors. SEG-147969/DSSEG-7673

Security updates

Security updates are included in this release. For more information about how we protect against vulnerabilities, visit Vulnerability Responses. Please note, in line with responsible disclosure practices, CVE details will only be made available for select security updates once patches have been made available for all impacted releases. VRTS-7090/DSSEG-7647

  • Highest CVSS: 4.6
  • Highest severity: Medium
What's new in Deep Security Agent? | Deep Security

Deep Security Manager - 12.0 update 30

Deep Security Manager - 12.0 update 30
Release date: May 4, 2023
Build number: 12.0.544

Enhancements

  • Deep Security Manager now receives events when an Agent upgrade fails to install due to Azure Code Signing verification. DSSEG-7837

Security updates

Security updates are included in this release. For more information about how we protect against vulnerabilities, visit Vulnerability Responses. Please note, in line with responsible disclosure practices, CVE details will only be made available for select security updates once patches have been made available for all impacted releases. DSSEG-7771/DSSEG-7841

  • Highest CVSS: 8.8
  • Highest severity: High
What's new in Deep Security Manager? | Deep Security