UTM Version 9.352-6 and 9.318-5 released (Do not install!!)

DO NOT INSTALL - THE UPDATES ARE FAULTY (Read this thread through!)

News

· Security Update
Remarks

· System will be rebooted
Bugfixes

36115 WebAdmin reflective XSS Vulnerability
36126 OpenSSL security update 1.0.1q

  • Installed on one UTM and 2 more will go in overnight.
    This update should quell some of the security questions.

    Ian
  • Updated first 7 customers locally, performed tests, and did 42 this afternoon...all good so far ;)
  • Anyone else having issues with the Flow Monitor view throwing the error "Backend connection failed, please click Shift-Reload to try again." on the UTM management page?
    It's only there since upgrading this morning.
  • I just upgraded this morning and I am receiving the "Backend connection failed, please click Shift-Reload to try again." on the UTM management page as well.
  • I too am seeing an issue with "Flow Monitor view"
  • In reply to SteveMiller:

    , Can you guys tell us the version number you are using 9.35x or 9.31x? Also, did you try an aditional reboot after the update just to make sure everything synced up properly? (not that it should matter and is still a bug nonetheless)


    Thanks.

  • In reply to Billybob:

    My version is 9.352-6 I did try one more reboot after the initial reboot on install. When clicking on the Flow Monitor it is not displaying anything as well. You just get the errors in the background. The errors will keep popping up while clicking on different menus on the UTM page until you log out and log back in.
  • In reply to MattTwombly:

    Concurrent Connections window on the Dashboard no longer working, just shows a non-existent image location.  (9.352-6)

    When I brought my Webadmin page up the first time as well, there was some POST error I couldn't read fast enough. Before logging in, it was something about 'tamper on back end'. I will try to find it perhaps in a log file.  I could have read it wrong, but I haven't found anything at all in any logs yet.  I will have to look tomorrow when I get more time.

  • Since Version 9.352-6 the Backend Connection hung up, when i open the Flow Monitor.

    I can reproduce this on all GWs under my control who have the 9.352-6 installed (SG125W and SG430).

    In ATOP the DIsk Usage and The CPU goes to nearly 100% when i open the flow Monitor.

    Can anyone else confirm this?

  • In reply to PeteGaryga:

    Same problem with Flow Monitor and Concurrent Connections, as reported by others.

    Release 9.352-6

  • Hi all:

    First of all, many thanks for pointing our attention to this issue.

    We had been able to reproduce and identify the source of the issue in the so-called Flow Monitor and will provide a fix in a future version.

    Cheers,
    Sascha Rudolph
    Senior Software Engineer
  • There is also another issue in the Daily Executive Report that gets emailed. All the graphs are just red X's. I just noticed it this morning as it is my first report since upgrading.
  • We have the same issue with Flow Monitor after the Update
  • In reply to MattTwombly:

    Hi Guys,

    I'm also having no graphs on the Daily Executive Report since this last update.
  • Another one release to be skipped...:)