This Critical Patch resolves the following issue(s):
Deep Discovery Inspector is affected by the following vulnerabilities:
Solution
This critical patch fixes the vulnerabilities.
There are no files included in this Critical Patch release.
To download or view electronic versions of the documentation set for this product, go to http://docs.trendmicro.com
To access the Online Help, go to http://docs.trendmicro.com
1. Deep Discovery Inspector 6.7 GM Build 1077 - English - Linux - x64
To install:
To roll back to the previous build:
No post-installation steps are required.
NOTE: Trend Micro recommends that you update your scan engine and virus pattern files immediately after installing the product.
There are no known issues for this Critical Patch release.
Sometimes, the Monitored Network Throughput widget on Trend Vision One's Security Dashboard displays an incorrect graph that shows a higher value than the actual throughput.
Solution
This hotfix reduces the possibility of this issue occurring.
Deep Discovery Inspector tries to download a Certificate Revocation List (CRL) from crl.xrampsecurity.com.
This action should only happen when Deep Discovery Inspector is deployed in inline mode.
Solution
This hotfix ensures that Deep Discovery Inspector downloads the Certificate Revocation List only when deployed in inline mode.
The timestamp displayed on the Administration > System Logs screen of the management console might show a 30-minute discrepancy with the Deep Discovery Inspector system time. This discrepancy is due to the system time zone being set to a half-hour time zone.
Solution
This hotfix resolves this issue.
Deep Discovery Inspector is affected by the CVE-2024-6387 and CVE-2024-6409 vulnerabilities.
Solution
This Hotfix resolves these vulnerabilities.
An internal error triggers in Deep Discovery Inspector due to a network connection issue. This error causes a defect that blocks all subsequent attempts to connect to Trend Vision One.
Solution
This hotfix resolves this issue.
Under certain circumstances, Deep Discovery Inspector restarts unexpectedly.
Solution
This hotfix updates Network Content Inspection Engine to resolve this issue.
Deep Discovery Inspector cannot import backup files if the number of elements in the Network Groups and Assets settings included in the backup exceeds the limit.
Solution
This hotfix increases the number of elements allowed in the Network Groups and Assets settings backup to resolve the issue.
Deep Discovery Inspector is affected by CVE-2022-31629.
Solution
This hotfix resolves this issue.
Deep Discovery Inspector cannot use Smart Protection Server as the server for Certified Safe Software Service.
Solution
This hotfix resolves the issue.
Once enabled, Threat Intelligence Sharing (Administration > Integrated Products/Services > Threat Intelligence Sharing) cannot be disabled.
Solution
This hotfix resolves the issue.
The following vulnerabilities affect Deep Discovery Inspector:
Solution
This hotfix upgrades the Apache HTTP server included with Deep Discovery Inspector to fix the vulnerabilities.
When the 'Retry unsuccessful updates' option is enabled (Administration > Updates > Component Updates > Source), Deep Discovery Inspector may run out of memory if it cannot connect to the ActiveUpdate Server.
Solution
This hotfix resolves this issue.
The process 'marsd' stops, causing Deep Discovery Inspector not to send activity data to Trend Vision One.
The issue happens when Deep Discovery Inspector connects to Trend Vision One through the service proxy, and Network Sensor is enabled.
Solution
This critical patch resolves the issue.
Network traffic dump does not work in the troubleshooting pages.
Solution
This hotix resolves this issue.
This hotfix adds support for the “Subject Alternative Name” extension when creating certificate signing requests.