3CX DLL-Sideloading attack: What you need to know
We discovered that since yesterday many firewalls are flooding us with the UP2DATE Notification:
[INFO-301] New Firmware Up2Date is ready for installation
The Firewalls seem to download the Update 9.712013 and 9.713019 over and over again (about every 1 hour).
Anyone else having this issue?
Installed Firmware: 9.711005
Hi solae ,
Thanks for reaching out to Sophos Community and hope you are well.
For the meantime you could push through with the update or uncheck notification under Notifications settings for INFO-301 - Email as workaround.
I would be recommending you to open a support Ticket for this if you are keen for this to be looked by an engineer. Then, once you have opened a ticket kindly DM me or reply on this thread the assigned case number so we can also follow progress on our end.
Thanks for your time and patience and Thank you for choosing Sophos.
Raphael AlganesCommunity Support Engineer | Sophos Technical SupportSophos Support Videos | Product Documentation | @SophosSupport | Sign up for SMS AlertsIf a post solves your question use the 'Verify Answer' link.
I opened a Case: 05968626
Yes, we allready disabled some of the 301-Notifications as a workaround.
Thank you the Case ID.
We have reached out to the DEV team about this case, once there’s an update, we’ll update this thread.
As i understand, there was a missing Update on one of the Update-Servers.
Sophos fixed it and we are no longer getting the notifications.
Many thanks for this update and information, We're glad that the issue was already fixed.
Thanks for your time and patience and Thank you for choosing Sophos
Correct, one of the update servers was missing the required download file.
After the fix, the up2date server is serving the correct file, which stopped the UTM from trying to download the update repeatedly and thus stopped the alert