Resolved issues

Prev Next

The following issues were resolved in the Email Security - Server 10.0.0 release.

Tracking number

Summary

COM-12986

New logs could not be generated due to the Log Manager Create button being disabled and the progress showed "Archive being created". The issues are resolved.

COM-23960

The physical disk serial number did not match the output of show media disk. This issue is resolved.

COM-28958

The archived object name has been changed on Email Security - Server Web UI.

COM-29773

Upgrading previously created certs under FireEye org name is not supported.

COM-29863

Apache has been upgraded to overcome the vulnerability described in IAVM 2022-A-0124.

COM-29874

Vulnerabilities CVE-2022-22965, CVE-2022-22963, and CVE-2022-22950 are resolved.

COM-29002

The show log continuous command was not generating the expected output. The issue is resolved.

COM-29377

The Velocity Engine has been upgraded to address the Velocity Sandbox Bypass issue (CVE-2020-13936).

COM-29624

Some appliances could not connect to HelixConnect. This issue is resolved.

COM-29702

CEF logs did not have the cs6 field extension. This issue is resolved.

COM-30030

Alert notifications and alert logs were delayed when many detections occurred simultaneously. This issue is resolved.

COM-30031

The Apache vulnerability described in IAVM 2022-A-0230 has been addressed.

COM-30144

The SMTP alerts using TLS failed to authenticate if the password contained a # character. This issue is resolved.

COM-30244

mgmtd could not be recovered if a failure occurred. The issue is resolved. mgmtd can now be recovered by rebooting the system after a failure.

COM-30325

SNMP settings used to reset to default values on reloading the site or logging out. The issue is resolved.

COM-30344

TLS version 1.1 was not secure enough in compliance mode for CC-NDcPP 2022 certification. The issue is resolved. TLS is upgraded to version 1.2.

COM-30537

CVE-2021-46848 vulnerability has been addressed.

COM-30604

Delimiter between multiple SSH Allow users was not effective. The issue was resolved.

COM-30641

The full file path was included in the "filename" field in the metadata that was sent to cloud.fireeye.com. This issue has been resolved.

COM-30743

License update was producing the error message, "Internal error fetching licenses". The issue is resolved.

COM-30788

You can now view datastreaming logs from the CLI using the show datastreaming log command.

COM-30884

The MVX cluster failed to return verdicts for emails submitted by some vEX sensors. This issue is resolved.

COM-30894

Issues of generating empty static reports have been fixed.

COM-30935

SNMPv3 allowed the creation of a user with an invalid SNMP key. This issue is resolved.

COM-30950

The original file names were being truncated in the malware analysis table during local and remote transfer. The issue is resolved.

COM-31007

Apache has been upgraded to overcome the vulnerability described in CVE-2023-24998.

COM-31187

Advanced URL Defense reported an error on the sensor appliance. The issue is resolved.

EMPS-14721

URL Extraction was enhanced in HTML/HTM attachments.

EMPS-14981

Empsf_parser consumed high memory when the header was very large. This issue is resolved.

EMPS-15227

URL Extraction was enhanced in html/htm attachments

EMPS-15412

403 error was displayed when accessing the Email Security — Server Web UI. This issue is resolved.

EMPS-15912

FAUDE Bottlenecks were caused when a managed appliance was connected to a Central Management System appliance. This issue is resolved.

EMPS-16083

The total submission count appeared as sum of total attachment and total url. This issue is resolved. Now, total_sub is equal to total_att and Tot_Dup column appears in the generated report.

EMPS-16126

All downloaded quarantine emails from Email Security — Server appliance have broken formats. This issue was related to DOS vs. Unix Line Endings and has been resolved.

EMPS-16196

The Queued Email tab has the Next page option now.

EMPS-16626

Disable VRFY cli command is added.

EMPS-16396

When the server name is mis-configured, rsyslog notifications are delayed or not sent form Email Security — Server appliance to the server. This issue is fixed.

EMPS-16337

The maildrop displayed emails of 2021 as if they had arrived in 2022 on the Web UI. This issue is resolved.

EMPS-16403

"Tot_dup" columns were missing from the CSV file of Email Hourly Stat report in Email Security — Server 9.1.0 and later. This issue has been resolved.

EMPS-16421

Password extraction failed when the subject was encoded and password was present in subject. This issue is fixed.

Note

For CJK language, this does not work either, if password is not ASCII.

EMPS-16443

Emails were blocked even after the URL was removed from the Blocked list. This issue is resolved.

EMPS-16446

New CLI's are introduced to configure controlled live mode.

EMPS-16452

An issue was recorded in the data cleanup logic after the high watermark on the events was reached. As a result of this, the script started deleting excessive non-malicious data and by the time retro alert was received, the corresponding email data was deleted. The issue is addressed now.

EMPS-16499

When a rsyslog consumer is deleted successfully from Email Security — Server appliance, the change is not shown in the output of the "show fenotify healthcheck command.

EMPS-16513

When an email was searched by its released status, there was a timed out. This issue is resolved.

EMPS-16586

UI and MD5 has been removed from webUI as part of new changes introduced in R 10.0. Hence, counter will not be seen increasing for URL and MD5-Checksum in CLI's as well.

EMPS-16594

The Email Security — Server appliance used timezone instead of UTC (which was the case in previous versions). This issue is fixed.

EMPS-16600

Email quarantine redirection from the processed emails screen added special characters to message IDs. This issue has been fixed.

EMPS-16618

Users can now create domain without next-hop via CLI.

EMPS-16630

Empsf_parser consumed high memory while parsing large emails. This issue has been fixed.

EMPS-16772

Issue with the "reset factory" options not working has been fixed.

EMPS-16819

URL rewrite delivered distorted emails when enabled, This issue is resolved.

EMPS-16827

The Email Security — Server appliance removes Return-path header while analyzing and relaying the email to the next hop. This issue is resolved.

EMPS-16920

The Email Security — Server appliance could not extract multilevel zip with non ascii zip inside. This has been fixed.

EMPS-16954

Email Security — Server was preventing pether3 from transmitting data. This issue is resolved now.

EMPS-16960

An issue that occurred when the BCC list gets a copy of the email with altered subject has been fixed.

EMPS-17021

When URL Rewrite was enabled on Email Security — Server appliance, certain emails got were converted to unreadable characters. This issue is resolved.

EMPS-17062

The phishing URL hostname was detected as invalid and marked as benign by Email Security — Server . This issue is resolved.

WEBUI-14724

Naming a custom dashboard using non-ASCII and hyphen characters failed on the Web UI with the following error message: "Please enter a valid name". This issue is resolved.