Sep 23, 2020
In this release, we've updated one of our Ubuntu Linux policies, improved scan performance, improved fingerprint accuracy, and made several fixes.
Improved
- Updated Ubuntu Linux policy: We updated our Defense Information Systems Agency (DISA) Canonical Ubuntu 16.04 policy to version 1, release 2.
- Improved scan performance: We improved scan performance when detecting HTTPS-based endpoints on non-standard ports.
- Improved fingerprint accuracy: We improved the accuracy of software fingerprints for per-user installations of Mozilla Firefox.
Fixed
- In accordance with our end-of-life announcement, we removed the ability to create a legacy AWS Dynamic Discovery connection from the Security Console. AWS Asset Sync is the supported Dynamic Discovery connection going forward.
- Following up with the fix provided in product version 6.6.43, we shipped an additional fix to further address memory consumption issues with sites that are configured to scan many live assets or with full port coverage.
- We updated our check logic for several F5 BIG-IP vulnerabilities to resolve false positive results. Additionally, our solutions now indicate whether F5 has published a fix or not.
- We updated the logic used by several rules in the Windows Server 2019 CIS Benchmark to correctly check the
type
attribute instead of thekey
attribute. - We fixed an issue that prevented Docker container enumeration from being successful with all shells.
- We fixed an issue where a single Java instance could be fingerprinted more than once and lead to duplicate vulnerability results.