Trellix Enterprise Security Manager 11.6.10 addresses known issues.
This release is cumulative and includes all features and fixes from the previous release. We recommend that you always upgrade to the most current update.
Release details of Trellix ESM 11.6.10
For release dates and version number, see KB90422.
Rating
The rating defines the urgency for installing this update. This update is recommended for all environments. Apply this update at the earliest convenience.
Upgrade considerations
Trellix ESM 11.6.x and higher do not support environments configured with distributed Trellix ESM. See Upgrade HA receivers to upgrade to 11.6.x version for the first time.
New or changed
Trellix ESM does not support UCF data for newly created ISOs, which results in an empty compliance dashboard. Existing users can continue to utilize the current data, however there will not be any new updates.
Trellix ESM no longer supports integration with SAP data sources.
Resolved issues
This release provides resolution for the following issues.
Category | Reference | Resolution |
|---|---|---|
Software Upgrade | SIEM-33687 | Upgraded the RPM packages to version 4.14.0 to resolve vulnerabilities. |
User Interface | SIEM-39244 | Fixed the issue where Dashboard queries displayed inconsistent data in the UI. |
User Interface | SIEM-39674 | Fixed an issue where an additional checkbox appeared on the Privileges page in ESM Properties without a corresponding name assigned to it. |
User Interface (Health Mon) | SIEM-39727 | Fixed an issue that caused a red flag in the receiver device. |
User Interface | SIEM-39755 | Fixed the issue which caused the radio buttons on the SNMP Settings page to be disabled. |
Software Upgrade | SIEM-39768 | Upgraded the OpenLDAP package to version 2.5.16 to resolve vulnerabilities. |
Correlation | SIEM-39888 | Fixed an issue that prevented alarms from triggering when the corresponding watchlist was updated. |
User Interface | SIEM-39901 | Fixed an issue where the Reports layout failed to save after upgrading to version 11.6.9. |
User Interface | SIEM-39915 | Fixed an issue where the data source health check script failed to execute. |
User Interface | SIEM-39916 | Fixed an issue where numerous examples of log events were displayed on a single line. |
User Interface | SIEM-39947 | Fixed an issue that displayed an undefined error when setting up message forwarding. |
This release provides resolution for the following content issues through a rule update since Trellix ESM 11.6.8.
Category | Reference | Resolution |
|---|---|---|
3rd party | SIEM-39734 | Updated parsing rules 1008031, 1008049, 1057097 and 1057102 for the Juniper Networks data source. |
3rd party | SIEM-39750 | Added the parsing rule 1070854 for the VMWare data source. |
3rd party | SIEM-39866 | Fixed an issue that caused the ASP parser to crash when parsing a Unicode NULL character. |
3rd party | SIEM-39867 | Fixed an issue that caused isef.parser to terminate when multiple data sources were added. |
3rd party | SIEM-39929 | Fixed an issue that prevented the parserctl service from functioning. |
Known issues
For a list of known issues in this product release, see KB90422.