Sophos UTM: Up2date 9.507 and 9.508 released

By | 01/03/2018

Sophos has released two updates today (only ftp atm. not staged rool out), for the UTM software, here are the release notes:

9.507:

Up2Date 9.507001 package description:

Remark:
System will be rebooted

News:
Maintenance Release

Bugfixes:
Fix [NUTM-6920]: [Basesystem] Support for new SG1xx(w) models
Fix [NUTM-9174]: [WAF] Certificate dropdown is visible for virtual webserver using HTTP

RPM packages contained:
pciutils-ids-2015.10.07-3.1.1884.g871a7b6.rb9.noarch.rpm
perf-tools-3.12.74-0.275164236.gb090b6e.rb6.i686.rpm
tools-9.50-24.gdbef91b.rb4.i686.rpm
ep-init-9.50-36.g12cf826.rb4.noarch.rpm
ep-mdw-9.50-974.gb5c323c.rb7.i686.rpm
ep-tools-9.50-29.g73dfad1.rb4.i686.rpm
ep-webadmin-9.50-1322.g64a4b92.rb8.i686.rpm
kernel-smp-3.12.74-0.275164236.gb090b6e.rb6.i686.rpm
kernel-smp64-3.12.74-0.275164236.gb090b6e.rb5.x86_64.rpm
ep-release-9.507-1.noarch.rpm

 

9.508

Up2Date 9.508010 package description:

Remarks:
System will be rebooted
Configuration will be upgraded
Connected APs will perform firmware upgrade

News:
Maintenance Release

Bugfixes:
Fix [NUTM-8739]: [Access & Identity] Argos segfault and coredump after update to v9.502
Fix [NUTM-9164]: [Access & Identity] SSLVPN installation packages fail to copy user profile during installation
Fix [NUTM-9344]: [Access & Identity] All users are locked when a lockout policy via GPO was set
Fix [NUTM-9047]: [Basesystem] VLAN interface on the bridge doesn’t come up when slave becomes the master
Fix [NUTM-9296]: [Configuration Management] Report Auditor is unable to open the dashboard in UTM
Fix [NUTM-9397]: [Configuration Management] Log Remote Archiving via SCP fails when used with OpenSSH >= 7.0
Fix [NUTM-9497]: [Documentation] ATP – Invalid status display on Webadmin for Japanese,Russian,Spanish language
Fix [NUTM-4174]: [Email] POP3 spool cleanup does not work
Fix [NUTM-8794]: [Email] Wrong MIME Type detection
Fix [NUTM-8937]: [Email] Upgrade SMIME
Fix [NUTM-9046]: [Email] SPX binary error with Office365
Fix [NUTM-9098]: [Email] Mail stuck in work queue
Fix [NUTM-9252]: [Email] Patch Exim for CVE-2014-2972 and CVE-2016-9963
Fix [NUTM-9259]: [Email] POP3 Proxy coredump in “libc_start_main”
Fix [NUTM-9337]: [Email] Selecting an AD Server for AD Recipient Verification in SMTP isn’t possible after update to v9.506
Fix [NUTM-9382]: [Email] WebAdmin user not able to disable the “Recipient Verification” in SMTP Routing
Fix [NUTM-9303]: [HA/Cluster] HA “max_nodes” option set to 3 causes named to fail to start
Fix [NUTM-9405]: [HA/Cluster] Interface MAC addresses shouldn’t get replicated on slave node if virtual_mac is set to 0
Fix [NUTM-3497]: [Network] BGP soft-reconfiguration not working
Fix [NUTM-8118]: [Network] After upgrading to 9.500 “Service Monitor not running – restarted” notifications being received
Fix [NUTM-8432]: [Network] Local Privilege Escalation via confd Service
Fix [NUTM-8604]: [Network] Changing a bridge IP address causes bridge to go down when using vlans
Fix [NUTM-8887]: [Network] DNS group objects doesn’t delete old IP addresses
Fix [NUTM-9064]: [Network] Network monitoring daemon constantly restarts since upgrade to 9.503
Fix [NUTM-9177]: [Network] Disabled static routes are being put into the routing table
Fix [NUTM-9465]: [Network] Wrong/Old IPv6 Tunnel Broker URLs in Webadmin
Fix [NUTM-8759]: [Sandboxd] Add support for Sandstorm’s Asia data centre
Fix [NUTM-9006]: [UI Framework] Not possible to download different SSLVPN User Profiles in one Firefox session
Fix [NUTM-6955]: [WebAdmin] Error text appears in dialog when trying to view user object usage
Fix [NUTM-8567]: [WebAdmin] Update to ImageMagick-7.0.7-11
Fix [NUTM-9116]: [WebAdmin] Object information can’t be displayed for specific objects
Fix [NUTM-9128]: [WebAdmin] PCI Scan failing on UserPortal due to missing HSTS and CSP
Fix [NUTM-9430]: [WebAdmin] Issue with X-Content-Type-Options header presented by UTM
Fix [NUTM-7201]: [Web] HTTP Proxy connections hang in CLOSE_WAIT state
Fix [NUTM-8638]: [Web] Add group visibility in log with unlimited AD groups
Fix [NUTM-8746]: [Web] After changing group membership, old one is still available from winbind
Fix [NUTM-8886]: [Web] TLS Input/output error when connecting to web site
Fix [NUTM-9113]: [Web] HTTP Proxy coredump on 9.505
Fix [NUTM-9166]: [Web] HTTP Proxy coredump on function deny_ntlm_auth
Fix [NUTM-9332]: [Web] DNSExpire coredump causes slow browsing
Fix [NUTM-9416]: [Web] HTTP Proxy coredump on 9.506 with signal SIGFPE Arithmetic Exception
Fix [NUTM-3127]: [Wireless] AP55/100 connection issues – disconnected due to excessive missing ACKs
Fix [NUTM-6640]: [Wireless] Fix visibility of Fast Transition option in different security modes
Fix [NUTM-7013]: [Wireless] Frequent disconnects on guest wifi network after >1 week
Fix [NUTM-8243]: [Wireless] Update dropbear SSH Server to fix CVE-2016-7409, CVE-2016-7408, CVE-2016-7407, CVE-2016-7406
Fix [NUTM-8299]: [Wireless] UTM stops broadcasting SSIDs for the built-in wireless after upgrade to 9.5
Fix [NUTM-8781]: [Wireless] W-appliance – wireless network connection issue with Bridge to AP LAN
Fix [NUTM-8827]: [Wireless] Internal wireless not broadcasting SSID after updating to 9.503
Fix [NUTM-8832]: [Wireless] Integrated wireless adapter can be deleted
Fix [NUTM-8930]: [Wireless] Unable to see the SSID and connect to local wifi on 2.4 Ghz band
Fix [NUTM-8940]: [Wireless] kernel: [ xxxx.xxxxx] CPU: 0 PID: 13902 Comm: iw Tainted: G W O 3.12.74-0.265397234.g263c982.rb6-smp64 #1
Fix [NUTM-8945]: [Wireless] SG115w SSID not broadcasted since updated to 9.503

 

Up2Date Information for Wireless Firmware 11.0.003

As part of UTM 9.508, the wireless firmware is updated to 11.0.003.

Bugfixes

  • NUTM-9338 [Wireless] Client is not getting disconnected if MAC address is removed from whitelist

RPM packages contained:
libsaviglue-9.50-30.gcbaaef9.rb5.i686.rpm
ImageMagick-7.0.7.11-1.0.g4aad586.rb8.i686.rpm
firmwares-bamboo-9400-0.281123335.g69adc75.rb3.i586.rpm
hostapd-2.2-1.0.283568788.g8e3ec32.rb3.i686.rpm
perf-tools-3.12.74-0.283050698.g2cded84.rb2.i686.rpm
python-distribute-0.6.35-1.1.0.265284374.g834b879.rb5.i686.rpm
python-pip-1.4.1-2.2.1.2008.g2292a89.rb9.i686.rpm
rubygem-sophos-iaas-1.0.0-1.0.276625640.g43ab577.rb4.i686.rpm
samba-4.6.8-3.g6ab67fd.rb3.i686.rpm
ep-reporting-9.50-53.ga26ab50.rb7.i686.rpm
ep-reporting-resources-9.50-53.ga26ab50.rb7.i686.rpm
ep-aua-9.50-65.gf891614.rb9.i686.rpm
ep-awed-9.50-51.g858e47c.rb3.i686.rpm
ep-awslogsd-1.0.0-0.282320123.g96f2996.noarch.rpm
ep-confd-9.50-1783.g3d03b39.rb1.i686.rpm
ep-cssd-9.50-53.g9ef40f1.rb7.i686.rpm
ep-endpoint-0.5-0.281015665.g2564949.rb3.i686.rpm
ep-ha-9.50-10.gb8bb909.rb3.i686.rpm
ep-ha-aws-9.50-613.g43ab577.rb4.noarch.rpm
ep-init-9.50-37.g8416237.rb7.noarch.rpm
ep-libs-9.50-27.ge4684c7.rb6.i686.rpm
ep-localization-afg-9.50-62.ga045778.rb1.i686.rpm
ep-localization-ang-9.50-62.ga045778.rb1.i686.rpm
ep-localization-asg-9.50-62.ga045778.rb1.i686.rpm
ep-localization-atg-9.50-62.ga045778.rb1.i686.rpm
ep-localization-aug-9.50-62.ga045778.rb1.i686.rpm
ep-logging-9.50-16.gd1adf4f.rb3.i686.rpm
ep-mdw-9.50-1032.g87f2c9e.i686.rpm
ep-sandboxd-9.50-0.280366889.g97a408b.rb6.i686.rpm
ep-screenmgr-9.50-3.g07035cc.rb28.i686.rpm
ep-service-monitor-1.0-55.gffa2035.rb4.i686.rpm
ep-webadmin-9.50-1393.gf1c4482.i686.rpm
ep-webadmin-contentmanager-9.50-80.ge11e919.rb12.i686.rpm
ep-chroot-httpd-9.50-36.ga251857.rb4.noarch.rpm
ep-chroot-smtp-9.50-135.g9d449a8.rb4.i686.rpm
chroot-smtp-9.50-21.g5bd8e30.rb5.i686.rpm
ep-chroot-pop3-9.50-22.gbd8238f.rb5.i686.rpm
ep-httpproxy-9.50-516.g76b19d2.rb3.i686.rpm
net-snmp-chroot-5.7.3-731.g2292a89.rb9.i686.rpm
kernel-smp-3.12.74-0.283050698.g2cded84.rb2.i686.rpm
kernel-smp64-3.12.74-0.283050698.g2cded84.rb2.x86_64.rpm
ep-release-9.508-10.noarch.rpm

 

Download here:

ftp://ftp.astaro.com/UTM/v9/up2date/

Leave a Reply

Your email address will not be published. Required fields are marked *