{"Up2Date": {"bugs": ["NC-87665 [API Framework, UI Framework] Pre-auth RCE (CVE-2022-1040)", "NC-89091 [API Framework] Resolved multiple post-auth SQLi vulnerabilities in Webadmin (CVE-2022-1807)", "NC-55945 [Authentication] Value of average live user in users graph of Diagnostics should not floating point", "NC-71484 [Authentication] Password change puts user outside group under SSL VPN profile", "NC-76046 [Authentication] Maximum length for radius server is supported to 48 chars", "NC-79468 [Authentication] Outdated users stuck in Live Users on XG", "NC-81298 [Authentication] User authentication issue with Captive Portal ", "NC-85151 [Authentication] Opcode failing getting \"Failed because of Invalid Parameters\" resulting error in Full Sync", "NC-72341 [Backup-Restore] Unable to restore backup from CR50iNG to XG230 ", "NC-78646 [Backup-Restore] Firmware upgrade fails due to unique index", "NC-79361 [Backup-Restore] Unable to import backup due to tblconfiguration issue", "NC-81768 [Backup-Restore] Failed to restore due to Key (key)=(config CPULIMIT_RULE) is duplicated", "NC-85547 [CaptivePortal] Sign in message and Logout Option not appearing with custom captive portal", "NC-81430 [CM, UI Framework] Userportal host injection reported", "NC-89079 [CM] fwcm-eventd agent is not listening the IP Address UP event", "NC-83392 [CM (Join to Cloud)] Backup is not getting generated with [] brackets", "NC-84231 [Core Utils] Receiving a duplicate copy of the same executive schedule reports. ", "NC-89218 [Core Utils] Resolved post-auth shell injection in Webadmin via OpenSSL (CVE-2022-1292)", "NC-82972 [CSC] Appliance went in a hang state.", "NC-51929 [DDNS] DDNS does not apply to some new gTLD", "NC-80660 [DHCP] DHCP IP lease Issue", "NC-66163 [Email] Report received with garbled characters ", "NC-69997 [Email] Notification test mail has wrong encoded subject when web admin GUI language set to Traditional Chinese or Simplified Chinese.", "NC-71379 [Email] MTA doesn't provide the full certificate chain", "NC-74228 [Email] Cannot display quarantine due to \\x1E? in subject ", "NC-77175 [Email] Email attachment stripped when SPX is applied", "NC-79667 [Email] SPX Encrypted email body information is missing", "NC-80178 [Email] Error related to UTF-8 characters", "NC-81069 [Email] Import fails for the entity 'MtaBlockedSenders'", "NC-83347 [Email, FQDN] Not able to add  lx63.hoststar.hosting to email server under notification settings.   ", "NC-85346 [Email] Smarthost authentication failed in server_plain authenticator: nsgenc decryption failed", "NC-87240 [Email] Avira Engine error with axpx files", "NC-90702 [Email] SASI detection problems when too many hits are returned", "NC-73975 [Firewall]  FP fw_fp_track_conn and fw_fp_reclaim_conn errors seen during httperf conn rate test - (flow 2)", "NC-81517 [Firewall] Policy test for firewall not showing correct results", "NC-82215 [Firewall] Device freeze issue (0010:queued_spin_lock_slowpath+0x14b/0x170)", "NC-82332 [Firewall] Kernel panic - unable to handle kernel NULL pointer \"ip_route_me_harder\"", "NC-82566 [Firewall] Kernel crash after update to v18.5MR2 - RIP:0010:_raw_read_lock_bh+0x14/0x30", "NC-83470 [Firewall, VFP-Firewall] Unable to handle kernel NULL pointer dereference at 0000000000000003 in XG750 during Connection Rate Test", "NC-86093 [Firewall] Duplicate firewall rule group  Similar as NC-67119", "NC-90024 [Firewall] Backup restore/migration fails due when multiple local ACL rules are configured", "NC-91295 [Firewall] Zones tab showing blank after deleting zone created on second page", "NC-88207 [Firmware Management] Firmware update fails when space is used in filename", "NC-83581 [Gateway Management] Need correction in the spelling ", "NC-82225 [HA] Unable to establish the HA correctly on fiber ports", "NC-81492 [Interface Management] Networkd service is DEAD which cause network outage", "NC-76960 [IPS-DAQ] IPS service could not be started due to DAQ ", "NC-76758 [IPS-DAQ-NSE] Some TLS flows are being delayed through a specific service provider", "NC-86451 [IPS-DAQ-NSE] Unable access web server via XG with SSL/TLS inspection error \"Dropped due to TLS internal error\" occurred.", "NC-78356 [IPsec] Clientless Bookmark to ssh server will not connect over IPsec site-to-site", "NC-78406 [IPsec] XFRM interface showing as disable even though associated route base vpn tunnel is connected and established", "NC-79128 [IPsec] Memory increase to 90% over 20-25 days", "NC-80114 [IPsec] Export configuration with VPN Connection(No Encryption component)", "NC-81944 [IPsec] WWAN is not connecting after random disconnect event if xfrm interface is created on WWAN", "NC-83065 [IPsec] System generated traffic getting impacted when route precedence set to VPN and remote subnet to 'Any'", "NC-86249 [IPsec] The \"ANY\" object in Strongswan does not equal any IP address", "NC-88404 [IPsec] Tunnel not auto came up after reboot happened in HA appliance", "NC-83177 [IPS Ruleset Management] Unable to toggle IPS switch in 18.5MR2", "NC-89996 [Logging] IPS policy redirection from Log viewer", "NC-62696 [Logging Framework] Sentry reported coredump in oppostgres_output/oppostgres_close", "NC-81234 [Logging Framework] Incorrect unit in live connections", "NC-84951 [Network Utils] Webadmin - Diagnostic - Route lookup is broken", "NC-85412 [PPPoE] PPPoE issue on v18.5 MR2", "NC-80042 [RED] Unable to update system-host for RED tunnels", "NC-73682 [SDWAN Routing] ping: sendto: Operation not permitted, when network is included in Policy Route", "NC-83366 [SDWAN Routing] Disabling the captcha on VPN zone not working for RBVPN with SD-WAN routing", "NC-90548 [SDWAN Routing] API call to ON/OFF SD-WAN route does the opposite in v18", "NC-71761 [Security] Resolved multiple XSS vulnerabilities (CVE-2021-25267)", "NC-85339 [Security] Resolved multiple XSS vulnerabilities via company name (CVE-2021-25268)", "NC-73873 [SNMP] SNMPD crash in netsnmp_add_varbind_to_cache", "NC-81155 [SNMP] Duplicate entry in MIB file", "NC-85423 [SNMP] Kernel crash on XG125 with SNMP high memory consumption", "NC-83469 [SSLVPN] Dashboard does not reflect the remote user\u2019s detail", "NC-87596 [SSLVPN] SSL VPN not working \u2013 (Site to Site and Remote Access) ", "NC-78563 [WAF] WAF not redirecting page to proper domain when there are multiple domains listed in WAF rule", "NC-87800 [WAF] Upgrade Apache to 2.4.53+ (18.5)", "NC-74847 [Web] Snort crashing with a segfault due to a blank conf file", "NC-78292 [Web] User cannot authenticate with Kerberos if member of large number of groups", "NC-79354 [Web] skein segfault in connect_to_server", "NC-79417 [Web] SSL/TLS rules cannot be seen on GUI", "NC-83662 [Web] Alert message in Users page \u2013 Administrator account unprotected by Multifactor authentication- what number represents", "NC-84218 [Web] Cannot enable OTP for admin user that is not userid 3", "NC-81956 [WebInSnort] http/s traffic to internal server on 8080 is dropped by ips tcphold", "NC-83584 [WebInSnort] IPS segfault in libnsg_tcphold_preproc", "NC-84604 [Wireless] Unable to restore backup from SG230 to XGS2300 due to access point database issue", "NC-87659 [Wireless] Legacy AP roaming key decryption is failing when fast transition is enable"], "news": ["Maintenance Release", ".", "Support multicast-decrement-ttl enable/disable to control TTL value in static multicast route forwarding use cases. This can prevent multicast traffic getting dropped due to expiring TTL value at the time of forwarding.", "Increased default multicast group limit to 250 to support more numbers of OSPF neighbours. The same can be changed via CLI \u201cmulticast-group-limit\u201d.", "Added QMI driver support for Cellular WAN", "Improved log file handling and CSC logging for better troubleshooting", "Zero-Day Protection - An additional data center location for cloud-based machine learning file analysis is now available in Asia Pacific :- Sydney, Australia.", "Several important security, performance and reliability enhancements"], "version": "SFOS 18.5.4 MR4-Build418"}}
