Release Post: Sophos Firewall v19.5 is Now Available
Old v19.0 MR1 thread: Sophos Firewall: v19.0 MR1: Feedback and experiences
EAP Sub thread: SFOS v19.5 Early Access Program
EAP 19.5 Thread: Sophos Firewall: v19.5 EAP1: Feedback and experiences
The v19.5 GA is released on 17 Nov 2022 and should be available to all devices already. But it is not.
Here is explainded that the time from "Soft Release Phase" to "Available to all" is typically 2 to 5 weeks. (Firewall Firmware Release Process and Timeline)
Does anyone know the reason for this delay?
It would be great to know why, a good reason is Jetzt patchen! Tausende Firewalls von Sophos angreifbar | heise online but Sophos says nothing ....
This news article has no relationship to the 19.5 release? What response are you looking for?
V19.5 was rather slow in deployment due the upcoming issues found in staging and addressed first.
Sorry it has, you should update to 19.5 due a security risk ....
Which CVE are you referring? Because the Heise Article only reflects are report, which scanned the internet for outdated (3 years old) firewalls, reachable by the internet. Did you review the link, heise is refering?
As far as I know is the CVE already fixed in v19.0 if the automatic Hotfix Feature is enabled. This Heise Article links to a Sophos Articel which descibes how to check if hotfix is installed...
LuCar Toni Thanks for your reply!
LuCar Toni said:V19.5 was rather slow in deployment due the upcoming issues found in staging and addressed first.
This explaines why the v19.5 is not available to all devices, already.
It is CVE-2022-3236 and here is the link for how to check the hotfix: https://support.sophos.com/support/s/article/KB-000044539?language=en_US